IRMA is an asynchronous and customizable analysis system for suspicious files. The repository is an IRMA project and contains the source code for the IRend Frontend, which is a Python-based application that provides a way to store crawler analysis in a database and display it either through a web client or a CLI-client.
IRMA is an open source platform designed to help detect and analyze malicious files.
Once you install IRMA on your network, your data remains on it.
Each submitted archive analyzed in various ways. He is currently working with many anti-virus machines, but will add other "detectors".
File analysis process
- An analysis starts when a user uploads files to Frontend.
- Controls it frontend for existing files and Results for SQL. If needed, it saves new files and scan calls to Brain .
- The program sends secondary tasks to Test (s) when needed.
- The researchers they process their assignments and send the results to Brain .
- Brain sends results to Frontend .
Installation
$ git clone https://github.com/quarkslab/irma $ cd irma $ vagrant up
Command line interface
Web interface
Information about the installation and use of the prelettertos, you will find here.