What the YARA feed covers

The figures below are measured on the pack you download, not on our working repositories. No detection logic is published here.

Measured on the pack published on 2026-09-04 (manifest 2026.09.04)19,914 entries in total.

Malware type

Ransomware240
Remote access trojan176
Credential stealer136
Loader130
Unclassified19,232

Families covered

Base4,296
Trojan1,382
Cert937
Blocklist931
Indicator848
Malware525
Ransomware461
Apt357
Maldriver209
Backdoor206
Rt155
Arc126
Exploit118
Nimrev111
Revil102
Akira101
Rusty98
Cobaltstrike92
Quasar85
Tool75
Wpbrutebot74
Infostealer73
Hacktool72
Nodestealer65
Xtunnel61
Rugmi59
Gcleaner58
Chir57
Hellokitty57
Avoslocker53
Cryptolocker52
Medusalocker52
Rustyclaw52
Xworm52
Mal50
Vermin49
Msil44
Cobalt44
Void44
Aspxspy43

Rule origin

Open-source base, validated and converted12,313
Written by ThreatClaw7,601
← Back to the YARA feed