TT Livescan Database Update 3-18-10

D

Dustin Cook

The database has been updated with approximately 30k in new
definitions. In the coming weeks, there will be a major build release
that will involve new heuristics and an executable packer database
that contains nearly 4000 headers used in the detection of malware.

Sounds like you've been very busy. Congrats on the packer database. Does it
identify the packer being used if known as well? Or, is it just for the
assistance in detection of possible malware?
 
I

idbeholda

The packer database will be used to detect what type of packer was
used to compress the executable. Beyond that, I'll be adding in an
option for using an external decompression routines if a file returns
a positive packer check.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top