Skip to content
This repository has been archived by the owner on Aug 16, 2022. It is now read-only.

PaloAltoNetworks/WireLurkerDetector

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

27 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

WireLurker Detector

Description

This project provides script and/or tool to detect the WireLurker malware family found by Palo Alto Networks in Nov 2014.

For details of the WireLurker:

Usage for OS X users

  1. Open the Terminal application in your OS X system;

  2. Execute this command to download the script:

curl -O https://raw.githubusercontent.com/PaloAltoNetworks/WireLurkerDetector/master/WireLurkerDetectorOSX.py
  1. Run the script in the Terminal:
python WireLurkerDetectorOSX.py
  1. Read the output messages and detection result.

For Windows users

We described how to technically detect the Windows variant of WireLurker in this document: HOWTO-Windows.md . Please take a look at it if you would like to contribute on it.

Here are some Windows detection tools developed by others. Remember to thanks them!

Issues

For any issue on the code and its result, please create a issue here: https://github.com/PaloAltoNetworks/WireLurkerDetector/issues