Thursday, November 15, 2012

Windows Malware samples Database Downloader Script[bash]

Windows Malware samples Database Downloader Script[bash]


--- By nu11_()_v0!d
A Team OpenFire Production




Need a large number of malware samples for Windows ?
Make ur Malware database for Research ?
>> >> >>
>> >>
>>
Here is a bash script I whipped up to download 'executable' on an hourly basis from Clean MX's mailing list. This
places all samples in a folder I created in /usr/share/malware

Name it windows_malware_database_TOF.sh

rootdir="/usr/share/malware"
day=`date +%Y%m%d`
 
url=`echo "wget -qO - http://lists.clean-mx.com/pipermail/viruswatch/$day/thread.html |\
awk '/\[Virus/'|tail -n 1|sed 's:\": :g' |\
awk '{print \"http://lists.clean-mx.com/pipermail/viruswatch/$day/\"$3}'"|sh`
 
filename=`wget -qO - http://lists.clean-mx.com/pipermail/viruswatch/$day/thread.html |\
awk '/\[Virus/'|tail -n 1|sed 's:": :g' |awk '{print $3}'`
 
links -dump $url$filename | awk '/Up/'|grep "TR\|exe" | awk '{print $2,$8,$10,$11,$12"\n"}' > $rootdir/$filename
 
dirname=`wget -qO - http://lists.clean-mx.com/pipermail/viruswatch/$day/thread.html |\
awk '/\[Virus/'|tail -n 1|sed 's:": :g' |awk '{print $3}'|sed 's:.html::g'`
 
rm -rf $rootdir/$dirname
mkdir $rootdir/$dirname
 
cd $rootdir
 
grep "exe$" $filename |awk '{print "wget \""$5"\""}' | sh
ls *.exe | xargs md5 >> checksums
mv *.exe $dirname
 
rm -r $rootdir/*exe*
mv checksums $rootdir/$dirname
mv $filename $rootdir/$dirname
 
Use It for Your Fruitful; Research !!!!
Need suggestion !!!