-
|Wazuh version|Component|Install type|Install method|Platform|
|---|---|---|---|---|
| 3.11 | Modulesd | Manager/Agent | Packages/Sources | All platforms |
YARA is a powerful tool developed and m…
-
Describe the bug
----------------
When running clam in a container, it often ends up being killed by OOM. This might be because clam doesn't know how much memory it can use.
How to reproduc…
-
how can I customize the cuckoo result juat to make a single result if it malware or not ?
-
Thanks for creating an issue! But first: did you read our community guidelines?
https://cuckoo.sh/docs/introduction/community.html
##### My issue is: While starting the cuckoo I am getting an erro…
-
Hello,
I would like to share with you an improvement concerning the parsing of "report.json" file using by the API.
The generated report is done using this part of the cuckoo's code :
https://git…
-
Unipacker fully supports PEtite, so why does it not recognize it? Asks for start and end address.
-
```
root@testserver:~# mkdir -p c99test && cd c99test/
root@testserver:~/c99test# wget https://www.r57shell.net/shells/c99.rar
--2023-03-14 10:42:06-- https://www.r57shell.net/shells/c99.rar
Reso…
-
I think pe.section_exists(name) would be a useful addition and make for cleaner sigs over having to write an inline for loop in the script to see if it exists. Possibly worth supporting regex for name…
dzzie updated
4 years ago
-
Compile on windows, add MSVCRTD.LIB to linker and add this to yara.c
```
#if defined(_DEBUG)
#define _CRTDBG_MAP_ALLOC
#include
#include
#endif
```
Also call this at the end of main
```
…
-
# API outline
## Inputs
The items that can be fed into the API that populate the model _(outlined below)_
- [x] From file paths
- [x] From memory (`byte[]`)
## Model
The in-memory model of a…