Skip to content

Fixed false positive in the detection of PyInstaller 3.x#1051

Merged
metthal merged 6 commits intomasterfrom
LZ_PyInstallerYaraRuleFix
Jan 12, 2022
Merged

Fixed false positive in the detection of PyInstaller 3.x#1051
metthal merged 6 commits intomasterfrom
LZ_PyInstallerYaraRuleFix

Conversation

@ladislav-zezula
Copy link
Copy Markdown
Contributor

  • YARA rule for PyInstaller 3.x no longer detects DLLs like 602a21507939a71fe3ac045b81498a0f6a6dac68da45491a10950019fcd154a8
  • YARA rule for PyInstaller 3.x now also detects EXEs created with newer version of PyInstaller

Copy link
Copy Markdown
Member

@metthal metthal left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@metthal metthal merged commit 3951bfd into master Jan 12, 2022
@metthal metthal deleted the LZ_PyInstallerYaraRuleFix branch January 12, 2022 12:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants