There are multiple rules in the main rules directory that are related to specific threat or malware families. These rules should be moved to their corresponding rules-emerging-threats (ET) sub-folders to maintain proper organization and consistency.
Some example includes:
Potential NetWire RAT Activity - Registry (d218616-71b0-4c40-855b-9dbe75510f7f)
Pandemic Registry Key (47e0852a-cf81-4494-a8e6-31864f8c86ed)