Focus on Virus
RE: Extracting signature snippets from AV databases May 08 2006 09:56PM
Bill Stout (bill stout greenborder com) (2 replies)
Re: Extracting signature snippets from AV databases May 09 2006 07:58PM
Yuri Slobodyanyuk (yurisk inbox ru) (1 replies)
Nothing directly answering your question comes to mind, but to get you
started here's a link to the "Ad-Aware PR" article at the www.rootkit.com
http://www.rootkit.com/newsread.php?newsid=471

With quite extensive reversing of Adaware workings.
The common sense tells me that such
information should be available on the Net, will try to Google it later.

SideNote: few years ago I watched the heated dabate on some forum (don't
remember any details) where AV vendor representative was accusing
open-source AV developers of reverse-engineering the virus-signatures
instead of gathering their own, so logic
says it has been done before by someone.

[ reply ]
Re: Extracting signature snippets from AV databases May 09 2006 10:53PM
Nick FitzGerald (nick virus-l demon co uk)
Re: Extracting signature snippets from AV databases May 09 2006 03:04PM
Kenneth Bechtel (kbechtel teamanti-virus org)


 

Privacy Statement
Copyright 2010, SecurityFocus