mario.haustein@hrz.tu-chemnitz.de Mario Haustein sam@gentoo.org Sam James YARA is a tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families (or whatever you want to describe) based on textual or binary patterns. Enable cockoo module Enable dex module Enable dotnet module Enable macho module Enable magic module Enable rules profiling Pulls in python binding via dev-python/yara-python VirusTotal/yara