Exetools

Exetools (https://forum.exetools.com/index.php)
-   Source Code (https://forum.exetools.com/forumdisplay.php?f=46)
-   -   [C++] C++11 Signature Scanning (https://forum.exetools.com/showthread.php?t=16459)

atom0s 01-26-2015 02:26

Quote:

Originally Posted by mr.exodia (Post 96965)
After some reading it appears to be using Aho-Corasick or the Booyer-more string search algorithms, which is nice indeed. It is very unfortunate that the signature search is so tightly integrated with the codebase, otherwise I would have added it to the tests...

There are a handful of regex scans inside of it as well.

As for saying that stuff in this thread is not real signature scanning, I'm not sure why you would think that. Everything posted here are all valid methods of scanning for signatures regardless of what kind of software it is used within.

sh3dow 02-03-2015 01:00

if antivirus have good algorithms why not see Norton Antivirus 2006 source code


All times are GMT +8. The time now is 23:29.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX