-
Notifications
You must be signed in to change notification settings - Fork 34
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Add Custom Magic for Quarantine #243
Add Custom Magic for Quarantine #243
Conversation
Add AhnLab quarantine magic Add AhnLab quarantine magic
Can you please resolve the conflicts? |
Move McAfee BUP to identify.py
# Conflicts: # assemblyline/common/custom.magic
During OLE_CLSID_GUID extraction, it should compare the buffer bytes against bytes, not string.
vs.
|
Codecov Report
@@ Coverage Diff @@
## master #243 +/- ##
==========================================
+ Coverage 65.20% 66.02% +0.82%
==========================================
Files 119 119
Lines 10411 10762 +351
==========================================
+ Hits 6788 7106 +318
- Misses 3623 3656 +33
Continue to review full report at Codecov.
|
@malvidin Can you please resolve the conflicts so that we can move on with this ticket? 😄 |
Added a few quarantine file types from DeXRAY. The McAfee file typing to
quarantine/mcafee
may not work, as the file command may still apply theComposite Document File V2 Document
magic.