Skip to content

c2dc/nastyware-analyser

Repository files navigation

Nastyware Analyser

Framework developer to provide information for the Nastyware Monitor usage.

Malware Datasource

Program developed to enable easy download and manipulation of publicly distributed malwares available by trusted sources.

PE Datasource

Powershell scripts to list and zip all the Portable Executable (PE) files from a Windows Machine

PE Analyser

Set of tools to manipulate data generated by both "Malware Datasource" or "PE Datasource" modules

Future Work

malware-datasource

  • Deixar scripts prontos para downloads de malwares (> 1000)

pe-datasource

  • Deixar scripts prontos para downloads de goodwares (> 1000)

pe-analyser

  • Estruturar código para criação de novos metodos de analise (ex: facilitar novos métodos de analise por matriz de distancias)
  • Utilizar TF-IDF (nova classe de analise por TF-IDF)
    • Clusterizar amostras
    • Métodos de Machine Learning para classificação de clusters (Random Forest)