PLAYCAT

PLAYCAT

Participant
Статус
Online
Joined
9/3/20
Messages
12
Reaction score
0
Loki is a scanner for detecting signs of hacking. Hacking detection is based on 3 detection methods:
1. File names (match the regular expression of the full path of the file);
2. Checking with Yara rules (search for compliance with Yara signatures based on the contents of files and process memory);
3. Checking hashes (comparing scanned files with hashes (MD5, SHA1, SHA256) of known malicious files);


Installation:
$ pip2 install psutil netaddr pylzma colorama
$ git clone https://github.com/Neo23x0/Loki
$ cd Loki/

Usage:
$ python2 loki-upgrader.py
$ python2 loki.py -h
 
Top