Skip to content

v1.0.0

Compare
Choose a tag to compare
@shu-tom shu-tom released this 30 Jul 00:35
· 24 commits to master since this release

New

  • Added x64 support to malstrscan
  • Added support for Njrat
  • Added support for TrickBot
  • Added support for Remcos
  • Added support for QuasarRAT
  • Added support for static configuration type Ursnif
  • Added support for new types of TSCookie
  • Added new function in emotetscan

Update

  • Updated Ursnif yara rule
  • Updated nanocorescan pattern rule
  • Updated version info of PlugX configuration data

Bug fix

  • Fixed an issue of emotetscan function
  • Fixed bug that cannot do rescan with ursnifscan
  • Fixed a bug that ursnifscan can not parse data without PE header
  • Fixed a bug that quasarscan fails to decode config
  • Fixed a bug where datperscan did not successful termination when config decoding failed