{"repo":"mandiant/flare-vm","free":true,"listed":false,"github":"https://github.com/mandiant/flare-vm","clone":"git clone https://github.com/mandiant/flare-vm.git","description":"A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.","language":"PowerShell","stars":8944,"topics":["malware-analysis","reverse-engineering","flare"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"FLARE-VM Welcome to FLARE-VM - a collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a virtual machine (VM). FLARE-VM was designed to solve the problem of reverse engineering tool curation and relies on two main technologies: Chocolatey and Boxstarter. Chocolatey is a Windows-based Nuget package management system, where a \"package\" is essentially a ZIP file containing PowerShell installation scripts that download and configure a specific tool. Boxstarter leverages Chocolatey packages to automate the installation of software and create repeatable, scripted Windows environments. Requirements FLARE-VM should ONLY be installed on a virtual machine . The VM should satisfy the following requirements: Windows ≥ 10 PowerShell ≥ 5 Disk capacity of at least 60 GB and memory of at least 2GB Usernames without spaces or other special characters Internet connection Tamper Protection and any Anti-Malware solution (e.g., Windows Defender) disabled, preferably via Group Policy Windows Updates Disabled Installation instruction This section documents the steps to install FLARE-VM. You may also find useful the Building a VM for Reverse Engineering and Malware Analysis! Installing the FLARE-VM video. Pre-installation Prepare a Windows 10+ virtual machine Install Windows in the virtual machine, for example using the raw Windows 10 ISO from https://www.microsoft.com/en-us/software-download/windows10ISO En","default_branch":null,"files":null,"tree":[],"storefront":"/r/mandiant","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/mandiant/flare-vm/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}