文件和Karton框架的分析工件yara匹配器
项目描述
YaraMatcher karton服务
使用yara规则扫描分析和样本,并使用适当的标签生成任务。
作者: CERT.pl
维护者: nazywam
消耗
{
"type": "sample",
"stage": "recognized",
"kind": "runnable"
}, {
"type": "sample",
"stage": "recognized",
"kind": "dump"
}, {
"type": "analysis",
"kind": "cuckoo1"
}, {
"type": "analysis",
"kind": "drakrun"
}, {
"type": "analysis",
"kind": "joesandbox"
}
产生
{
"type": "sample",
"stage": "analyzed"
}
用法
首先,确保您已设置好核心系统: https://github.com/CERT-Polska/karton
然后从PyPi安装karton-yaramatcher
$ pip install karton-yaramatcher
并通过指向您的YARA规则仓库来运行karton服务
$ karton-yaramatcher --rules yara_rule_directory
项目详情
关闭
karton_yaramatcher-1.3.0-py3-none-any.whl的哈希值
算法 | 哈希摘要 | |
---|---|---|
SHA256 | f674e0562c81f125edadf963cdf0bd16abc25bbf7b88ff9c5359d7a38d9fa85a |
|
MD5 | 55341725c3ed9f2d611d098a6a0ac29c |
|
BLAKE2b-256 | 2cd07a920fe7255ab7cc5f1fab566c078162941edd15ef3b6ef9d9555c69358b |