8000 VirusTotal Integration · Issue #163 · Yelp/osxcollector · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
This repository was archived by the owner on Oct 5, 2019. It is now read-only.
This repository was archived by the owner on Oct 5, 2019. It is now read-only.
VirusTotal Integration #163
Open
Open
@DFIR-Zach

Description

@DFIR-Zach

I just now see that you forked off of OSXAuditor. They had a feature to compare file reputations against Team Cymru's MHR, VirusTotal, or your own local database. Is this feature in osxcollector or intend to be brought into the tool? Right now we are manually checking the md5s pulled from the osxcollector json file in external sources.

We are trying to use this application to compare a mac machine using before and after snapshots of osxcollector to try and see if there was a compromise by using the delta data. If anyone has any thoughts of how we could better utilize this tool for our use case it would be GREATLY appreciated. Thanks!

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      0