TT Livescan Database Update 3-18-10

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Threaded View

The database has been updated with approximately 30k in new
definitions.  In the coming weeks, there will be a major build release
that will involve new heuristics and an executable packer database
that contains nearly 4000 headers used in the detection of malware.


Re: TT Livescan Database Update 3-18-10

Quoted text here. Click to load it

Sounds like you've been very busy. Congrats on the packer database. Does it
identify the packer being used if known as well? Or, is it just for the
assistance in detection of possible malware?

"Hrrngh! Someday I'm going to hurl this...hrrngh.. nudge
this boulder right down a cliff." - Goblin Warrior

Re: TT Livescan Database Update 3-18-10

The packer database will be used to detect what type of packer was
used to compress the executable.  Beyond that, I'll be adding in an
option for using an external decompression routines if a file returns
a positive packer check.

Site Timeline