Re: Is XNews a Vector for Malware?
- From: Sebastian Gottschalk <seppi@xxxxxxxxx>
- Date: Tue, 22 Aug 2006 21:48:53 +0200
bassbag wrote:
For retrospective tests avcomaparatives uses only new malware.
I know. But even those samples hardly represent reality.
F.e. what are those malicious scripts supposed to be? I've got some of
my fully valid and purposeful batch scripts recognized as
Generic/Batch.Delete.
What about code morphing? What about common EXE packers/crypters? What
about single point scanning vs. fuzzy signatures? What about strong vs.
weak signature properties?
.
- Follow-Ups:
- Re: Is XNews a Vector for Malware?
- From: bassbag
- Re: Is XNews a Vector for Malware?
- References:
- Is XNews a Vector for Malware?
- From: Jay Stallworth
- Re: Is XNews a Vector for Malware?
- From: Jay Stallworth
- Re: Is XNews a Vector for Malware?
- From: Ron Lopshire
- Re: Is XNews a Vector for Malware?
- From: Sebastian Gottschalk
- Re: Is XNews a Vector for Malware?
- From: bassbag
- Is XNews a Vector for Malware?
- Prev by Date: Re: Is XNews a Vector for Malware?
- Next by Date: Re: Lets talk about firewalls - what do we as a group think a firewall should be/have?
- Previous by thread: Re: Is XNews a Vector for Malware?
- Next by thread: Re: Is XNews a Vector for Malware?
- Index(es):