Aleph Icon



Open Source Malware Analysis Pipeline System

Add a Review
0 Downloads (This Week)
Last Update:



Aleph is designed to pipeline the analysis of malware samples. It has a series of collectors that will gather samples from many sources and shove them into the pipeline. The sample manager has a series of plugins that are ran against the sample and returns found data into JSON form.

These JSON data can be further processed and queried in a objective manner instead of grepping and regexing.

Go to and grab the code!

Aleph Web Site


  • FileCollector: grabs samples from a local directory
  • MailCollector: grabs samples from email attachments on a IMAP folder
  • PEInfo: extracts info from PE files such as entrypoint, number of sections and some PE characteristics (SEH/ASLR/DEP)
  • ZipArchivePlugin: extracts zip files and puts their contents back into analysis queue
  • StringsPlugin: extracts strings from sample into three categories: All Strings, URI Strings and Filename Strings (not 100% but we do our best)
  • VirustotalPlugin: check a sample SHA256 hash against Virustotal database and get the report. If that hash doesnt exist, send the file to analisys
  • TrID: check the filetype of a sample


Other Useful Business Software

Avoid hiccups: deliver native mobile apps seamlessly Icon

Feel confident that you're keeping your apps and customers safe and secure. See how far you can take your apps with a free 30-day trial. Start today.

Avoid hiccups: deliver native mobile apps seamlessly Icon
Ninety percent of Fortune 500 companies trust the Microsoft Cloud, and so can you. Azure helps protect your assets through a rigorous methodology and focus on security, privacy, compliance, and transparency. Azure has been recognized as the most trusted cloud for U.S government institutions, including FedRAMP High authorization that covers 18 Azure services.
Write a Review

User Reviews

Be the first to post a review of Aleph!

Additional Project Details


English, Brazilian Portuguese, Spanish

Intended Audience

Security Professionals, Security

User Interface


Programming Language




Thanks for helping keep SourceForge clean.

Screenshot instructions:
Red Hat Linux   Ubuntu

Click URL instructions:
Right-click on ad, choose "Copy Link", then paste here →
(This may not be possible with some types of ads)

More information about our ad policies

Briefly describe the problem (required):

Upload screenshot of ad (required):
Select a file, or drag & drop file here.

Please provide the ad click URL, if possible:

Get latest updates about Open Source Projects, Conferences and News.

No, thanks