linux-malware-detect
linux-malware-detect copied to clipboard
Automatic decoding of the files?
Hello,
i assume when bad guy learns that his bad script was removed or his account suspended, he will try to encode file to stay away from being detected. Does LMD have option to decode encoded files? The CXS paid software does this. If this is good idea, i propose as a feature request.
I assume LMD having hashes for bad encoded files too, but this is not what i am talking about. I mean LMD can decode and then detect bad code even the encoded file is not yet on any blacklist.
See there i am not alone probably facing encoded files: https://github.com/rfxn/linux-malware-detect/issues/170
thank You