Skip to content

information: daily ftm ignore types #1549

@Sanesecurity

Description

@Sanesecurity

Wikipedia has a good list of file type magics:

https://en.wikipedia.org/wiki/List_of_file_signatures

Attached is the most the above filetypes, converted to ftm format and CL_TYPE_ANY:CL_TYPE_IGNORED added

Attached could be used to ignore more non-malware file-types in the future.

The attached, would need editing to give better names and remove any types which are likely to contain malware.

wikiconvert.zip

Quick Examples to speed up scanning:

0:0:38425053:psd-PhotoshopDocumentfile:CL_TYPE_ANY:CL_TYPE_IGNORED
0:0:41542654464F524D:djvu-DjVudocument:CL_TYPE_ANY:CL_TYPE_IGNORED

0:0:2142444E:pst-MicrosoftOutlookPersonalStorageTablefile:CL_TYPE_ANY:CL_TYPE_IGNORED

0:0:23204469736B2044657363726970746F:vmdk-VMware4VirtualDiskdescriptionfile-splitdisk-:CL_TYPE_ANY:CL_TYPE_IGNORED
0:0:3C3C3C204F726163:vdi-VirtualBoxVirtualHardDiskfileformat:CL_TYPE_ANY:CL_TYPE_IGNORED

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions