# fabrimagic72/malware-samples

A collection of malware samples caught by several honeypots i manage

Repository: https://github.com/fabrimagic72/malware-samples
Canonical: https://ross.abutalabs.com/products/malware-samples
License Family: other
Topics: malware, honeypot, botnet, malware-analysis, malware-samples, malwareanalysis, wannacry, uiwix, ransomware, eternalblue, eternalrocks, trickbot
Last push: 2021-09-15T15:08:54+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 3415, "days_push": 1813, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1840, forks 422 (observed 2026-08-28T04:05:42.976093+00:00)

## What it is
A dataset of real malware samples collected from distributed honeypots worldwide, including ransomware like WannaCry and botnets like EternalRocks. Archives are password-protected ('infected') for safe storage and are intended for analysis and reverse engineering.

## Use cases
- download malware samples for reverse engineering
- build a malware analysis lab dataset
- train malware detection models on real samples
- study ransomware like wannacry and eternalrocks
- research botnet behavior from honeypot captures
- test antivirus and sandbox detection coverage

## When to choose
- you need real-world malware specimens for security research or reverse engineering
- you want samples caught by honeypots rather than curated public dumps
- you are testing detection tools against live threats

## When to avoid
- you need a safe or sanitized dataset for teaching beginners
- your environment cannot safely contain live malware
- you expect documentation or tooling rather than raw samples

## Facets
- artifact type: dataset
- maturity: maintenance
- function: security, reverse-engineering, vulnerability-scanning
- domain: security, reverse-engineering, penetration-testing
- platform: cross-platform
- tags: malware-samples, honeypot, ransomware, botnet, malware-analysis, password-protected-archives

## Member repositories
- fabrimagic72/malware-samples (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:42.976093+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:18:03.679319+00:00, confidence not recorded.
  - readme: https://github.com/fabrimagic72/malware-samples (fetched 2026-08-28T04:05:42.976093+00:00, sha d1279d1216c6)
- Data as of 2026-08-30T08:39:29.467469+00:00.
