Code Monkey home page Code Monkey logo

awesome-malware-analysis's People

Contributors

1ultimat3 avatar alexcpsec avatar cccs-kevin avatar chan9390 avatar cugu avatar elhoim avatar flautossec avatar granet avatar hslatman avatar jandersoncampelo avatar keithjjones avatar knowmalware avatar liamrandall avatar magicansk avatar mikesxrs avatar miqueet avatar osospeed avatar patrikhudak avatar pe3zx avatar petruisfan avatar phretor avatar polluxavenger avatar pr0teus avatar ramadhanamizudin avatar readmecritic avatar rshipp avatar thatling avatar thomasthelen avatar uppusaikiran avatar zbetcheckin avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

awesome-malware-analysis's Issues

Addition to 'Online Scanners and Sandboxes'

We are running a free malware analysis service at https://www.hybrid-analysis.com/

Some statistics: https://www.hybrid-analysis.com/statistics

Sample report #1 (malicious word file): https://www.hybrid-analysis.com/sample/65ad508855b19d4f00ca11fe197b1372068c2e0946deb57c8cacb61da4305d43?environmentId=4

Sample report #2 (Bartalex): https://www.hybrid-analysis.com/sample/580bb47de41dddb39966f26a2508b75c4177303d8dbad7ca9a2520694643e713?environmentId=2#dropped-files

Sample report #3: https://www.hybrid-analysis.com/sample/2b6b690e1bbe6d222654912f042ab2157bfc0ea773a7bd8a1645c2f308e0f182?environmentId=2

Payload Security is an IT-Security startup company from Germany and what's special about the sandbox system is that we statically analyze memory dumps and run a data-flow analysis using additional runtime information (what we call 'hybrid analysis') to extract more API calls/Strings, which in turn are piped to the behavior signature interface. You can see these 'annotated disassembly streams' if you click on a process (see Sample report #3) in the 'Hybrid Analysis' section. In that case, a detailed tabbed view is opened.

Would be happy to see our service added to your extensive list.

Threat Intelligence Free Solution - Karma

Hi,

You can add Karma to your list.

Karma is a free web solution that can be used to add the organization assets (domains, websites, networks, etc), and Karma periodically search this assets on various Threat Intelligence Feeds and reports if any of this assets is listed.

Also, Karma alerts on bad configurations, like DNS open zone transfers, bad SSL configurations and more.

Link: https://karma.securetia.com

Regards!

Malware analysis

Sorry I want to ask. In the analysis of malware there are 3 stages that can be used ie surface analysis, runtime analysis, and static analysis. In the third stage there are many tools, what tools is best used in the stage of Surface analysis, runtime analysis, and static analysis ??
Thanks you

Sent from my OPPO F1f using FastHub

add Yomi Hunter

Hi,
could you consider to add yomi.yoroi.company free sandbox to "Online Scanners and Sandboxes" ?

Virusign

I was wanting to know how to get access to virusign, it says you need a user/pass but there's no other information about it that I can find.

Validate pull requests with Travis

Hello, I wrote a tool that can validate README links (valid URLs, not duplicate). It can be run when someone submits a pull request.

It is currently being used by

Examples

If you are interested, connect this repo to https://travis-ci.org/ and add a .travis.yml file to the project.

See https://github.com/dkhamsing/awesome_bot for options, more information
Feel free to leave a comment πŸ˜„

Add PPEE (puppy)

It's a lightweight yet strong tool for static investigation of suspicious files which is useful for reversers, malware researchers and those who want inspect PE files in more details.
https://www.mzrst.com/

trouble instalation fame

hello my name is agus, can you help me, there i have trouble for instalation fame, or you have video instalation ?
thanks.

Clean MX link broken

The link for Clean MX doesn't work

This site can’t be reachedThe connection was reset.
Try:

Checking the connection
ERR_CONNECTION_RESET

kernelmode.info

http://www.kernelmode.info/forum/ is a great forum with a wealth of information regarding the latest threats. Unpacked malware ready for analysis can be found there along with malware-specific caveats. Maybe there can be a place for it in this list?

Add MalPipe

I'd like to add MalPipe to the list, however I'm not really sure if we should place it in the "malware collection", "Open Source intelligence" or some other section.

The MalPipe repo at https://github.com/silascutler/MalPipe says:

"MalPipe is a modular malware (and indicator) collection and processing framework. It is designed to pull malware, domains, URLs and IP addresses from multiple feeds, enrich the collected data and export the results."

Missing a few sites

Missing ipvoid.com, ipvoid.com, cymon.io and badips.com under Domain Analysis

Binwalk

I don't see binwalk as one of the tools listed. It might not be specifically targeted for malware analysis, but very useful for file carving and binary file analysis. Imho.

http://binwalk.org/

Bokken new web

Hi,

Thanks for including Bokken on the list. Could you, please, update the link to the new Bokken website?

http://www.bokken.re/

Thanks,

Clean up repository

Hi

Thanks for the great resources in this repo! While skimming the entries, I noticed a few little things:

  1. ZeuS Tracker seems to be no longer active.
  2. NetworkTotal seems to be no longer active
  3. Bro is now called Zeek

Would it be possible to add such minor improvements in one PR

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    πŸ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. πŸ“ŠπŸ“ˆπŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❀️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.