This commit is contained in:
dadokkio 2021-02-04 16:49:48 +01:00
parent 7334c054d0
commit 10032a46ba
5 changed files with 83 additions and 46 deletions

View File

@ -1,25 +1,39 @@
{
"name": "Malwares_GetReport",
"version": "1.0",
"author": "LDO-CERT",
"url": "https://github.com/TheHive-Project/Cortex-Analyzers",
"license": "AGPL-V3",
"description": "Get the latest Malwares report for a file, hash, domain or an IP address.",
"dataTypeList": ["file", "hash", "domain", "ip"],
"baseConfig": "Malwares",
"config": {
"check_tlp": true,
"max_tlp": 3,
"service": "get"
},
"command": "Malwares/malwares.py",
"configurationItems": [
{
"name": "key",
"description": "Malwares.com API Key",
"type": "string",
"multi": false,
"required": true
}
]
"name": "Malwares_GetReport",
"version": "1.0",
"author": "LDO-CERT",
"url": "https://github.com/TheHive-Project/Cortex-Analyzers",
"license": "AGPL-V3",
"description": "Get the latest Malwares report for a file, hash, domain or an IP address.",
"dataTypeList": ["file", "hash", "domain", "ip"],
"baseConfig": "Malwares",
"config": {
"check_tlp": true,
"max_tlp": 3,
"service": "get"
},
"command": "Malwares/malwares.py",
"configurationItems": [
{
"name": "key",
"description": "Malwares.com API Key",
"type": "string",
"multi": false,
"required": true
}
],
"registration_required": true,
"subscription_required": true,
"free_subscription": true,
"service_homepage": "https://www.malwares.com/",
"service_logo": {
"path": "assets/malwares.png",
"caption": "logo"
},
"screenshots": [
{
"path": "assets/long_report.png",
"caption": "Malwares: long report"
}
]
}

View File

@ -1,25 +1,39 @@
{
"name": "Malwares_Scan",
"version": "1.0",
"author": "LDO-CERT",
"url": "https://github.com/TheHive-Project/Cortex-Analyzers",
"license": "AGPL-V3",
"description": "Use Malwares' API to scan a file or URL.",
"dataTypeList": ["file", "url"],
"baseConfig": "Malwares",
"config": {
"check_tlp": true,
"service": "scan",
"max_tlp": 1
},
"command": "Malwares/malwares.py",
"configurationItems": [
{
"name": "key",
"description": "Malwares.com API Key",
"type": "string",
"multi": false,
"required": true
}
]
"name": "Malwares_Scan",
"version": "1.0",
"author": "LDO-CERT",
"url": "https://github.com/TheHive-Project/Cortex-Analyzers",
"license": "AGPL-V3",
"description": "Use Malwares' API to scan a file or URL.",
"dataTypeList": ["file", "url"],
"baseConfig": "Malwares",
"config": {
"check_tlp": true,
"service": "scan",
"max_tlp": 1
},
"command": "Malwares/malwares.py",
"configurationItems": [
{
"name": "key",
"description": "Malwares.com API Key",
"type": "string",
"multi": false,
"required": true
}
],
"registration_required": true,
"subscription_required": true,
"free_subscription": true,
"service_homepage": "https://www.malwares.com/",
"service_logo": {
"path": "assets/malwares.png",
"caption": "logo"
},
"screenshots": [
{
"path": "assets/long_report.png",
"caption": "Malwares: long report"
}
]
}

View File

@ -0,0 +1,9 @@
### Malwares
[Malwares](https://www.malwares.com/) is a web service to collect, analyze and detect various malicious codes or malwares such as Trojans, Viruses, Worms so that customers or end-users can make proper security policies to take countermeasures against security threats.
The analyzer comes in a two flavour that permit you to query different data types (file, hash, domain, ip) or submit new sample for analysis (file, hash).
#### Requirements
You need a valid Malware API subscription to use the analyzer.
- Provide your API key as values for the `key` parameter.

Binary file not shown.

After

Width:  |  Height:  |  Size: 50 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 6.7 KiB