View Single Post
  #1  
Old 03-26-2018, 06:16
tecnmarl tecnmarl is offline
Friend
 
Join Date: Mar 2018
Location: Italy
Posts: 9
Rept. Given: 0
Rept. Rcvd 0 Times in 0 Posts
Thanks Given: 1
Thanks Rcvd at 6 Times in 4 Posts
tecnmarl Reputation: 0
The key is not the timing. Usually, the timing doesn't play a major role in the following analyses. A good hint might be understanding when the payload gets detected.
Try to make some borderline programs: some that you think will trigger the red flag and some, doing similar things, that won't trigger it. After this, you should start to see a pattern.

If you were an antivirus programmer, what would you check for?
Reply With Quote
The Following 2 Users Say Thank You to tecnmarl For This Useful Post:
0xall0c (03-27-2018), niculaita (03-27-2018)