Author Topic: [Request] Help me to gather clean file samples  (Read 869 times)

0 Members and 1 Guest are viewing this topic.

Offline Deque

  • P.I.N.N.
  • Global Moderator
  • Overlord
  • *
  • Posts: 1203
  • Cookies: 518
  • Programmer, Malware Analyst
    • View Profile
[Request] Help me to gather clean file samples
« on: June 20, 2014, 09:46:41 pm »
Hello EZ.

I have a request and hope that someone is willing to help me out.
I am currently working on my master thesis, writing a PE library and malware detector. I have enough malicious file samples, but I need clean ones too to improve the detector as it works with statistical information. I have already gathered some samples from my Win 7 64 Bit machine and a VM with Win XP. I think I need more diverse samples from different OS.

I am looking for samples from e.g. Win 7 32 Bit, Win 8, Win Vista.
Everything equal or above Win NT 3.1 suffices. ;)

So if anyone has a Windows system installed (e.g. in a VM, I don't care as long as it isn't infected) and would be willing to gather some PE samples for me, I would be greatful.

There is a program that will copy the files: https://github.com/IOActive/SearchAndCollect
I have also written a Java program that searches all PE files recursively from a starting folder and copies them into a destination folder, if you prefer this.

Thank you.
Deque

Edit: If you know another way of getting a lot clean samples, let me know as well.
« Last Edit: June 20, 2014, 09:51:18 pm by Deque »

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: [Request] Help me to gather clean file samples
« Reply #1 on: June 21, 2014, 07:54:31 am »
If it helps you can check my project dir for some exe's: http://9v.lt/projects/index.php?dir=
For that project you linked to, I didn't bother to compile it :P if you could provide and exe, that'd be great...

Offline Deque

  • P.I.N.N.
  • Global Moderator
  • Overlord
  • *
  • Posts: 1203
  • Cookies: 518
  • Programmer, Malware Analyst
    • View Profile
Re: [Request] Help me to gather clean file samples
« Reply #2 on: June 21, 2014, 08:44:51 am »
If it helps you can check my project dir for some exe's: http://9v.lt/projects/index.php?dir=
For that project you linked to, I didn't bother to compile it :P if you could provide and exe, that'd be great...

I will give you my program, but I am in a hurry right now; I am leaving the town, will be back on monday and post my program then.
Thanks a lot for your support.

Offline Deque

  • P.I.N.N.
  • Global Moderator
  • Overlord
  • *
  • Posts: 1203
  • Cookies: 518
  • Programmer, Malware Analyst
    • View Profile
Re: [Request] Help me to gather clean file samples
« Reply #3 on: June 22, 2014, 04:02:45 pm »
Here is the pe file finder I made: https://github.com/katjahahn/PortEx/raw/master/progs/pefilefinder.jar (6.55 KB)

Run on commandline: java -jar pefilefinder.jar <startfolder for recursive search>

Thanks for helping me out!

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: [Request] Help me to gather clean file samples
« Reply #4 on: June 23, 2014, 09:56:42 am »
PM sent.

Offline Deque

  • P.I.N.N.
  • Global Moderator
  • Overlord
  • *
  • Posts: 1203
  • Cookies: 518
  • Programmer, Malware Analyst
    • View Profile
Re: [Request] Help me to gather clean file samples
« Reply #5 on: June 28, 2014, 12:50:20 pm »
@Kulver: I would like to put you into the acknowledgements of my thesis, because you gathered file samples for you. But I need to know, which name I should put there. Your nick? Your real name?  Or just without mentioning who it was, but thanking all people who gathered files? (Three people by now)
« Last Edit: June 28, 2014, 12:50:46 pm by Deque »

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: [Request] Help me to gather clean file samples
« Reply #6 on: June 28, 2014, 07:17:43 pm »
Thanks for that :) you can put the nickname or just say thanks, whatever is better for you...

Offline kenjoe41

  • Symphorophiliac Programmer
  • Administrator
  • Baron
  • *
  • Posts: 990
  • Cookies: 224
    • View Profile
Re: [Request] Help me to gather clean file samples
« Reply #7 on: June 28, 2014, 08:50:31 pm »
@Kulver: I would like to put you into the acknowledgements of my thesis, because you gathered file samples for you. But I need to know, which name I should put there. Your nick? Your real name?  Or just without mentioning who it was, but thanking all people who gathered files? (Three people by now)
Damn, i gave it my all C:\ path, almost 2+Gb.
Looked for you some time back to ask where am gonna spent my night dropping them but to no vail. Anyway i compressed them to 400-500-ish which should be uploadable. Any ideas or should i just pick afew and send them?
If you can't explain it to a 6 year old, you don't understand it yourself.
http://upload.alpha.evilzone.org/index.php?page=img&img=GwkGGneGR7Pl222zVGmNTjerkhkYNGtBuiYXkpyNv4ScOAWQu0-Y8[<NgGw/hsq]>EvbQrOrousk[/img]

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: [Request] Help me to gather clean file samples
« Reply #8 on: June 28, 2014, 09:02:38 pm »
Try splitting it up and use Mediafire.

Offline Deque

  • P.I.N.N.
  • Global Moderator
  • Overlord
  • *
  • Posts: 1203
  • Cookies: 518
  • Programmer, Malware Analyst
    • View Profile
Re: [Request] Help me to gather clean file samples
« Reply #9 on: June 29, 2014, 12:48:32 pm »
See Kulver. ^