10.23721/100/17127
External Data Source
theZoo
IMPACT
2018
en
thezoo, 1230, source, inferlink corporation, external, corporation, inferlink, external data source, malware, live, easy, promoting, pleasure, retrieving, samples, joy, hopes, fashion, organized, fast, offer, objective, repository, code, analysis, people, dangerous, enable, running, tisf, shalev, public, remember, automatically, network, recommend, equivalents, hard, possibility, disclaimer, additions, yuval, born, specific, spread, unconstrained, environment, encrypted, infect, versions, worms, advanced, analyse, project, decided, block, connection, maintained, locked, educational, vicious, created, savvy, gather, operate, purpose, nativ, purposes, absolutely, vm, safe, guest, job, reason, accessible, shahak, study, internal, virtual, other, access
17127
1230
A repository of LIVE malware for your own joy and pleasure. theZoo's objective is to offer a fast and easy way of retrieving malware samples and source code in an organized fashion in hopes of promoting malware research.
theZoo is a project created to make the possibility of malware analysis open and available to the public. Since we have found out that almost all versions of malware are very hard to come by in a way which will allow analysis, we have decided to gather all of them for you in an accessible and safe way.theZoo was born by Yuval tisf Nativ and is now maintained by Shahak Shalev.
Disclaimer: theZoo's purpose is to allow the study of malware and enable people who are interested in malware analysis (or maybe even as a part of their job) to have access to live malware, analyse the ways they operate, and maybe even enable advanced and savvy people to block specific malware within their own environment.
Please remember that these are live and dangerous malware! They come encrypted and locked for a reason! Do NOT run them unless you are absolutely sure of what you are doing! They are to be used only for educational purposes (and we mean that!) !!!
We recommend running them in a VM which has no internet connection (or an internal virtual network if you must) and without guest additions or any equivalents. Some of them are worms and will automatically try to spread out. Running them unconstrained means that you will infect yourself or others with vicious and dangerous malware!!!