Re: Is XNews a Vector for Malware?



bassbag wrote:

For retrospective tests avcomaparatives uses only new malware.

I know. But even those samples hardly represent reality.

F.e. what are those malicious scripts supposed to be? I've got some of
my fully valid and purposeful batch scripts recognized as
Generic/Batch.Delete.

What about code morphing? What about common EXE packers/crypters? What
about single point scanning vs. fuzzy signatures? What about strong vs.
weak signature properties?
.