mandiant / flare-vm

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
Apache License 2.0
6.55k stars 915 forks source link

New Flare-vm Image Missing Apps #440

Closed reben-f5 closed 1 year ago

reben-f5 commented 1 year ago

Hello,

Just wanted to inform you that I have installed (couple of times) latest Flare-vm v4 on Win10 10.0.19042 (20h2). However, noticed that some of the applications had not been added, or removed from this new version such as "Autopsy, MalOfficeScanner, etc..." name few that I know and Forensic folder contains only yara application nothing else, not sure if this is messed up or not?

Afaik, the older version was very well located all applications in the right places.

I hope someone will review this version and adding more (or missing ones) back to it in future.

Thanks!

mr-tz commented 1 year ago

Did you select these tools to be installed in the UI or via a custom configuration XML file?

By default, only the core tools are installed. If you have suggestions for updates to the list (https://github.com/mandiant/flare-vm/blob/main/config.xml) we're grateful for suggestions and PRs.

reben-f5 commented 1 year ago

I have selected all apps to be in and whatever was given during installation, so I haven't missed any but it looks like by default those mentioned apps had been removed from it. I will keep a list of what would be great in Flare-vm next time and will inform you ASAP. Thanks!

mr-tz commented 1 year ago

Ah, gotcha. For missing packages please report them at https://github.com/mandiant/VM-Packages.