diff options
| -rw-r--r-- | scan.sh | 48 |
1 files changed, 48 insertions, 0 deletions
| @@ -0,0 +1,48 @@ | |||
| 1 | #/bin/bash | ||
| 2 | |||
| 3 | diff_folder=false | ||
| 4 | |||
| 5 | SCAN_CMD='./yara -r ./malwares.yara -f' | ||
| 6 | |||
| 7 | show_help() { | ||
| 8 | cat << EOF | ||
| 9 | Usage ${0##*/} [-dhw] | ||
| 10 | -d Path to the diff folder | ||
| 11 | -h Show this help message | ||
| 12 | -w Provide a whitelist file, containing one path per line | ||
| 13 | EOF | ||
| 14 | } | ||
| 15 | |||
| 16 | OPTIND=1 | ||
| 17 | while getopts "hw:d:" opt; do | ||
| 18 | case "$opt" in | ||
| 19 | h) | ||
| 20 | show_help | ||
| 21 | exit 0 | ||
| 22 | ;; | ||
| 23 | d) | ||
| 24 | diff_folder="$OPTARG" | ||
| 25 | ;; | ||
| 26 | '?') | ||
| 27 | show_help | ||
| 28 | exit 1 | ||
| 29 | ;; | ||
| 30 | esac | ||
| 31 | done | ||
| 32 | shift "$((OPTIND-1))" | ||
| 33 | |||
| 34 | if [ ! -d "$diff_folder" ]; then | ||
| 35 | echo "[-] Invalid previous_scan directory: " "$diff_folder" | ||
| 36 | exit 1 | ||
| 37 | fi | ||
| 38 | |||
| 39 | previous_scan="$(ls -t "$diff_folder" | head -1)" | ||
| 40 | if [ -z "$previous_scan" ]; then | ||
| 41 | echo "[*] No previous scan found: This will be the first one." | ||
| 42 | $SCAN_CMD "$@" | sort | tee > "$diff_folder/$(date +%s)" | ||
| 43 | exit 0 | ||
| 44 | fi | ||
| 45 | |||
| 46 | diff <($SCAN_CMD "$@" | sort | tee "$diff_folder/$(date +%s)") <(cat "$diff_folder"/"$previous_scan") | ||
| 47 | |||
| 48 | exit 0 | ||
