Skip to content

MultiAV scanner with Python and JSON REST API using Malice Docker AV Containers and Docker-Machine based Autoscaling

License

Notifications You must be signed in to change notification settings

jampe/MultiAV-Extended

 
 

Repository files navigation

MultiAV: Extended

Combine the awesome approaches of blacktop's av docker plugins with joxeankoret's MultiAV! Pure simplicity and pythonness! Autoscale support for huge scan tasks using docker-machine included!

Quicklinks:

Key Features

  • Quick installation - No AV installation required, everything is handled by MultiAV and is powered by docker containers
  • Easy integration - Access via web interface, REST API or python client
  • Secure by design - All engines operate in isolated docker containers preventing access the samples to gain access to the infrastructure
  • Stay in control of your samples - No leaks to AV vendors by design
  • Reproducible, reliable results - Reports specially designed to contain all information required to reproduce scan results
  • Effortless updating - One click AV engine update, guarantee that the shown av versions are used for scans (no unnoticed updates possible by design)
  • Multiple scanning strategies - define how your scans are executed / scheduled. Locally, Locally with a global limit or using the powerfull auto scaleing system supporting 17 hypervisors and cloud computing services
  • Scan samples with 14 AV plugins:
    • Avast[Requires License] - Repo: here
    • Avg - Repo: here
    • Avira[Requires License] - Repo: here
    • BitDefender[Requires License] - Repo: here
    • Comodo - Repo: here
    • ClamAV - Repo: here
    • DrWeb - Repo: here
    • FProt - Repo: here
    • EScan - Repo: here
    • FSecure - Repo: here
    • Kaspersky[Requires License] - Repo: here
    • McAfee - Repo: here
    • Sophos - Repo: here
    • Windows Defender - Repo: here
  • Gain additional information using 7 Intel, File format or Metadata plugins:
    • FileInfo (exiftool, TRiD and ssdeep) - Repo: here
    • Floss - Repo: here
    • NationalSoftwareReferenceLibrary - Repo: here
    • PEScan - Repo: here
    • VirusTotal[Requires API Key] - Repo: here
    • Yara - Repo: here

MultiAV: Extended in Action

Sample Upload Page

multiav-upload

Scan Result Live Tracking

multiav-scan-running

Search the Report DB

multiav-search

Live System Overview

multiav-autoscale-overview

Update AntiVirus Engines

Update in progress multiav-update-in-progress Update complete multiav-update-complete

About

MultiAV scanner with Python and JSON REST API using Malice Docker AV Containers and Docker-Machine based Autoscaling

Topics

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages

  • Python 73.5%
  • JavaScript 15.9%
  • HTML 7.7%
  • CSS 2.6%
  • Makefile 0.3%