Skip to main content

CLI wrapper for malware bazaar API (bazaar.abuse.ch)

Project description

(Malware)Bazaar

A MalwareBazaar API wrapper and CLI

Installation

If you want to use the API only:

pip install malwarebazaar

If you want to use the CLI:

pip install malwarebazaar[cli]

Note: Previous versions also included pre-built binaries, however, I stopped adding them. Please just use a local python environment instead.

Usage

Python

from malwarebazaar.api import Bazaar

bazaar = Bazaar("myapikey")
response = bazaar.query_hash("Hash to search for.")
file = bazaar.download_file("Sha256 hash for file to donwload.")

CLI

$ bazaar init myapikey
Successfully set API-Key!
$ bazaar query hash f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
Filename:       03891ab57eb301579005f62953dfd21e.exe
MD5:            03891ab57eb301579005f62953dfd21e
SHA1:           41efd56ea49b72c6dd53b5341f295e549b1b64a5
SHA256:         f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
Imphash:        f34d5f2d4577ed6d9ceec516c1f5a744
Signature:      RedLineStealer
Tags:           exe, RedLineStealer
$ bazaar download f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807
$ file f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.zip 
f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.zip: Zip archive data, at least v5.1 to extract
$ bazaar download f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807 --unzip
$ file f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.exe 
f670080b1f42d1b70a37adda924976e6d7bd62bf77c35263aff97e7968291807.exe: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

malwarebazaar-0.1.5.tar.gz (9.1 kB view details)

Uploaded Source

Built Distribution

malwarebazaar-0.1.5-py3-none-any.whl (12.3 kB view details)

Uploaded Python 3

File details

Details for the file malwarebazaar-0.1.5.tar.gz.

File metadata

  • Download URL: malwarebazaar-0.1.5.tar.gz
  • Upload date:
  • Size: 9.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.2.2 CPython/3.10.6 Linux/5.19.0-76051900-generic

File hashes

Hashes for malwarebazaar-0.1.5.tar.gz
Algorithm Hash digest
SHA256 5ab79f3db666fdb3edfaa722a967faa74a1269c7173b094769a2009d3ca848c0
MD5 d67ccd29ed5267eaf364a2b218d86e0b
BLAKE2b-256 e9b752c99343016dbed51bab7dd757ef2f02883013c750d291c3975bc6635a34

See more details on using hashes here.

File details

Details for the file malwarebazaar-0.1.5-py3-none-any.whl.

File metadata

  • Download URL: malwarebazaar-0.1.5-py3-none-any.whl
  • Upload date:
  • Size: 12.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.2.2 CPython/3.10.6 Linux/5.19.0-76051900-generic

File hashes

Hashes for malwarebazaar-0.1.5-py3-none-any.whl
Algorithm Hash digest
SHA256 b38cec35cb5ab530b5ddfdfc7886207b5fef0f5d4c169867be99715c310154b3
MD5 36b22860c17b53a2300c4a3ba1818c05
BLAKE2b-256 ccce7a687ab1a673b5348b27304bddffb379d6e7bda6cf104677bcf46121f5ed

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page