Skip to main content
Glama
Kirandawadi

Volatility3 MCP Server

by Kirandawadi
APT_Pipcreat.yar888 B
/* This Yara ruleset is under the GNU-GPLv2 license (http://www.gnu.org/licenses/gpl-2.0.html) and open to any user or organization, as long as you use it under this license. */ rule APT_Win_Pipcreat { meta: author = "chort (@chort0)" description = "APT backdoor Pipcreat" filetype = "pe,dll" date = "2013-03" MD5 = "f09d832bea93cf320986b53fce4b8397" // (incorrectly?) identified as Hupigon by many AV on VT Reference = "http://www.cyberengineeringservices.com/login-exe-analysis-trojan-pipcreat/" version = "1.0" strings: $strA = "pip creat failed" wide fullword $strB = "CraatePipe" ascii fullword $strC = "are you there? " wide fullword $strD = "success kill process ok" wide fullword $strE = "Vista|08|Win7" wide fullword $rut = "are you there!@#$%^&*()_+" ascii fullword condition: $rut or (2 of ($str*)) }

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/Kirandawadi/volatility3-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server