It does static analysis of malware. I've only used it on a Flare-VM, but at a minimum it requires flarestrings and floss installed on a Windows machine.
Oh yeah, it needs a config.py
file with your VirusTotal API key.
vt_keys = ["key goes here"]
Searches for possible IoCs, checks IoCs and hashes against VirusTotal API, parses PE structure for basic file information, import hash, DLLs and functions used and whether it's likely still packed.
python3 BigBrainalyzer.py <path to directory of samples>
Samples must be unzipped. The final step of BigBrainalyzer zips the malware with the password infected
.
There's very little error handling or comments, and the code is a mess, so good luck. Feel free to make PRs, ping me on discord, steal some or all of this, whatever.
And thank you HuskyHacks and mtaggart, this project is heavily influenced by Blue Jupyter