drakvuf-sandbox
CAPEv2
Our great sponsors
drakvuf-sandbox | CAPEv2 | |
---|---|---|
2 | 5 | |
983 | 1,669 | |
2.0% | - | |
8.5 | 9.9 | |
14 days ago | 4 days ago | |
Python | Python | |
GNU General Public License v3.0 or later | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
drakvuf-sandbox
-
Want to setup a malware analysis Sandbox on Windows 10. Almost giving up...
Why not have a look at DRAKVUF? Supports W10 2004 guests: https://github.com/CERT-Polska/drakvuf-sandbox
-
Similar to cuckoo sandbox
Try Drakvuf Sandbox. It's actively maintained by CERT.PL team
CAPEv2
-
Does anyone installed cuckoo sandbox recently?
https://github.com/kevoreilly/CAPEv2 is a more "production ready" solution.
-
Looking for a good alternative to AppAnyRun
CAPEv2 CUCKOO Sandbox
- Since Cuckoo is not longer officially supported and the 3.0 project revival by Hatching seems dead what sandboxes that are standalone do you use?
-
mmm ITRG is stinky
Usually Windows Defender gets false positives and I ignore them, but for good measure, I decided to scan two of the .exe files that were a part of this torrent using VirusTotal. First one picked up nothing, second one also had no detections, however: "Matches rule EternalRomance by kevoreilly from ruleset EternalRomance at https://github.com/kevoreilly/CAPEv2"
- Dynamic Analysis Tools
What are some alternatives?
flare-vm - A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
cuckoo3 - Cuckoo 3 is a Python 3 open source automated malware analysis system.
Detect-It-Easy - Program for determining types of files for Windows, Linux and MacOS.
cuckoo - Cuckoo Sandbox is an automated dynamic malware analysis system
theZoo - A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Fegaria-Remastered - Similar to my other project Fegaria, but with improved graphics, collisions and terrain generation.
qiling - A True Instrumentable Binary Emulation Framework
yarGen - yarGen is a generator for YARA rules
dumpulator - An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in general (sandboxing).
simplify - Android virtual machine and deobfuscator
ace-firefist - Attack chain emulator. Write recipes for initial access easily