Skip to content

malice-plugins/drweb

Repository files navigation

malice-drweb

Circle CI License Docker Stars Docker Pulls Docker Image

Malice Dr.WEB AntiVirus Plugin

This repository contains a Dockerfile of drweb.


Dependencies

Installation

  1. Install Docker.
  2. Download trusted build from public docker store: docker pull malice/drweb

Usage

docker run --rm malice/drweb EICAR

Or link your own malware folder:

$ docker run --rm -v /path/to/malware:/malware:ro malice/drweb FILE

Usage: drweb [OPTIONS] COMMAND [arg...]

Malice Dr.WEB AntiVirus Plugin

Version: v0.1.0, BuildTime: 20180909

Author:
  blacktop - <https://github.com/blacktop>

Options:
  --verbose, -V          verbose output
  --elasticsearch value  elasticsearch url for Malice to store results [$MALICE_ELASTICSEARCH_URL]
  --table, -t            output as Markdown table
  --callback, -c         POST results back to Malice webhook [$MALICE_ENDPOINT]
  --proxy, -x            proxy settings for Malice webhook endpoint [$MALICE_PROXY]
  --timeout value        malice plugin timeout (in seconds) (default: 120) [$MALICE_TIMEOUT]
  --help, -h             show help
  --version, -v          print the version

Commands:
  update  Update virus definitions
  web     Create a Dr.WEB scan web service
  help    Shows a list of commands or help for one command

Run 'drweb COMMAND --help' for more information on a command.

Sample Output

{
  "drweb": {
    "infected": true,
    "result": "EICAR Test File (NOT a Virus!)",
    "engine": "7.00.33.06080",
    "database": "7208559",
    "updated": "20180909"
  }
}

Dr.WEB

Infected Result Engine Updated
true EICAR Test File (NOT a Virus!) 7.00.33.06080 20180909

Documentation

Issues

Find a bug? Want more features? Find something missing in the documentation? Let me know! Please don't hesitate to file an issue.

TODO

  • add licence expiration detection
  • expose WEB ui

CHANGELOG

See CHANGELOG.md

Contributing

See all contributors on GitHub.

Please update the CHANGELOG.md and submit a Pull Request on GitHub.

License

MIT Copyright (c) 2016 blacktop