• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

DRAKVUF Sandbox v0.18.1 - automated hypervisor-level malware analysis system

Status
Not open for further replies.

itsMe

*KillmeMories*
Staff member
Administrator
Super Moderator
Hacker
Specter
Crawler
Shadow
Joined
Jan 8, 2019
Messages
56,623
Solutions
2
Reputation
32
Reaction score
100,455
Points
2,313
Credits
32,750
‎6 Years of Service‎
 
76%
sandbox.png


DRAKVUF Sandbox is an automated black-box malware analysis system with a DRAKVUF engine under the hood.

This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get insight on whether the file is truly malicious or not.

Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs.

Supported hardware&software

In order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements:

    Processor: Intel processor with VT-x and EPT features
    Host system: Debian 10 Buster/Ubuntu 18.04 Bionic/Ubuntu 20.04 Focal with at least 2 core CPU and 5 GB RAM
    Guest system: Windows 7 (x64), Windows 10 (x64; experimental support)

Nested virtualization:

    KVM does work, however it is considered experimental. If you experience any bugs, please report them to us for further investigation.
    Due to lack of exposed CPU features, hosting drakvuf-sandbox in cloud is not supported (although it might change in the future)
    Hyper-V does not work
    Xen does work out of the box
    VMware Workstation Player does work, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required

To see this hidden content, you must like this content.
 
DRAKVUF Sandbox v0.18.1
To see this hidden content, you must like this content.
 
Status
Not open for further replies.
Back
Top