Skip to main content

CLI wrapper for malware bazaar API (bazaar.abuse.ch)

Project description

(Malware)Bazaar

A MalwareBazaar API wrapper and CLI

Installation

pip install malwarebazaar

or, for pure cli usage, you can grab one of the prebuilt binaries.

Usage

Python

from malwarebazaar.api import Bazaar

bazaar = Bazaar("myapikey")
response = bazaar.query_hash("Hash to search for.")
file = bazaar.download_file("Sha256 hash for file to donwload.")

CLI

$ bazaar init myapikey
Successfully set API-Key!
$ bazaar query hash f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
Filename:       03891ab57eb301579005f62953dfd21e.exe
MD5:            03891ab57eb301579005f62953dfd21e
SHA1:           41efd56ea49b72c6dd53b5341f295e549b1b64a5
SHA256:         f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
Imphash:        f34d5f2d4577ed6d9ceec516c1f5a744
Signature:      RedLineStealer
Tags:           exe, RedLineStealer
$ bazaar download f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
$ file f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.zip 
f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.zip: Zip archive data, at least v5.1 to extract
$ bazaar download f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807 --unzip
$ file f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.exe 
f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.exe: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

malwarebazaar-0.1.0.tar.gz (8.5 kB view details)

Uploaded Source

Built Distribution

malwarebazaar-0.1.0-py3-none-any.whl (11.6 kB view details)

Uploaded Python 3

File details

Details for the file malwarebazaar-0.1.0.tar.gz.

File metadata

  • Download URL: malwarebazaar-0.1.0.tar.gz
  • Upload date:
  • Size: 8.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.5 CPython/3.8.10 Linux/5.4.0-74-generic

File hashes

Hashes for malwarebazaar-0.1.0.tar.gz
Algorithm Hash digest
SHA256 8d5bd01c3153fee4ed2203d4dd62c63d16fe45c22f72355bda372d31a0e44cd9
MD5 b737f85a3538610a941a4897711b0291
BLAKE2b-256 8d095d0c721b97c002b2f94e98a7146ea26a87db7492936cd109a98bc48ff194

See more details on using hashes here.

File details

Details for the file malwarebazaar-0.1.0-py3-none-any.whl.

File metadata

  • Download URL: malwarebazaar-0.1.0-py3-none-any.whl
  • Upload date:
  • Size: 11.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.5 CPython/3.8.10 Linux/5.4.0-74-generic

File hashes

Hashes for malwarebazaar-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 d8e489bb7a529a681071f5f0e2588c07790695ba440e2e5bfa1fdc0ef9849cdf
MD5 d8a7ac23204005ff66f437038e496259
BLAKE2b-256 6e20302aad955d233bb2f2be4e844350a0edbbbf703fc5a76c610db233e8c286

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page