Skip to main content

Hfinger - fingerprinting malware HTTP requests stored in pcap files

Project description

Hfinger - fingerprinting malware HTTP requests

Tool for fingerprinting malware HTTP requests. Based on Tshark and written in Python3. Working prototype stage :-)

It's main objective is to provide a representation of malware requests in a shorter form than printing whole request, but still human interpretable. This representation should be unique between malware families, what means that any fingerprint should be seen only for one particular family.

Project's website: https://github.com/CERT-Polska/hfinger.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

hfinger-0.2.1.tar.gz (32.7 kB view details)

Uploaded Source

Built Distribution

hfinger-0.2.1-py3-none-any.whl (29.9 kB view details)

Uploaded Python 3

File details

Details for the file hfinger-0.2.1.tar.gz.

File metadata

  • Download URL: hfinger-0.2.1.tar.gz
  • Upload date:
  • Size: 32.7 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.4.1 importlib_metadata/4.0.0 pkginfo/1.7.0 requests/2.25.1 requests-toolbelt/0.9.1 tqdm/4.60.0 CPython/3.6.9

File hashes

Hashes for hfinger-0.2.1.tar.gz
Algorithm Hash digest
SHA256 2c6785735af886149dca4e6d4e165f7d9bada52bdf3a6ebea653dbacdb3883e3
MD5 a686613ebc6b97416c4c11d97f3c4f23
BLAKE2b-256 a1803bf132ea7f45f41c4d07dc618d7175a189e2edbfb2f5520e3be2fc37fc86

See more details on using hashes here.

File details

Details for the file hfinger-0.2.1-py3-none-any.whl.

File metadata

  • Download URL: hfinger-0.2.1-py3-none-any.whl
  • Upload date:
  • Size: 29.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.4.1 importlib_metadata/4.0.0 pkginfo/1.7.0 requests/2.25.1 requests-toolbelt/0.9.1 tqdm/4.60.0 CPython/3.6.9

File hashes

Hashes for hfinger-0.2.1-py3-none-any.whl
Algorithm Hash digest
SHA256 a1a7258ef1e2dcdf4a19b22d5c5f4ddcb5b3eaeeb24e7343e31e8a525e17cb5f
MD5 92c0c59e82558791227ceb83a18425f2
BLAKE2b-256 089b04a2dc4adb40d1fe4a5af3c69832aa0a969023a446fa0bccfe5b66ddda1a

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page