Our server costs ~$56 per month to run. Please consider donating or becoming a Patron to help keep the site running. Help us gain new members by following us on Twitter and liking our page on Facebook!
Current time: April 25, 2024, 5:09 pm

Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Test if a ZIP is infected
#21
RE: Test if a ZIP is infected
(June 10, 2020 at 3:03 pm)FlatAssembler Wrote:
Abaddon_ire Wrote:Fuck that.
Well, you asked me to link you to the source code, and I did. What are you complaining about then?
You misunderstand. I am not complaining about you, I am complaining about the fact that all of my dev rig sits in an office 10 kilometers away that I have not sat in for two months. For obvious reasons. Or is it three months by now? My point is that, while I know that I have the gear to analyse it, I can't right this minute lay hands on it. Ironically, I used to maintain the same setup in my home but intentionally stopped that because I found myself on duty 24/7 and that is not healthy.

(June 10, 2020 at 3:03 pm)FlatAssembler Wrote:
Abaddon_ire Wrote:On top of that you are surely aware that delving into another persons code is fraught with difficulty.
Well, now I know the exact files that are being detected as malware: "bottles.exe" and "rose.exe". Their source code are files "bottles.aec" and "rose.aec", "bottles.aec" is 80 lines of code, while "rose.aec" is 73 lines of code. So, together, they are 153 lines of code, examining it shouldn't be too hard.
Good. That at least gives me a starting point to poke at. Is there anything in those that you think might be the trigger? I will likely get to it at the weekend, but the more you can add the better.
Reply
#22
RE: Test if a ZIP is infected
(June 11, 2020 at 12:24 am)Abaddon_ire Wrote:
(June 10, 2020 at 3:03 pm)FlatAssembler Wrote: Well, you asked me to link you to the source code, and I did. What are you complaining about then?
You misunderstand. I am not complaining about you, I am complaining about the fact that all of my dev rig sits in an office 10 kilometers away that I have not sat in for two months. For obvious reasons. Or is it three months by now? My point is that, while I know that I have the gear to analyse it, I can't right this minute lay hands on it. Ironically, I used to maintain the same setup in my home but intentionally stopped that because I found myself on duty 24/7 and that is not healthy.

(June 10, 2020 at 3:03 pm)FlatAssembler Wrote: Well, now I know the exact files that are being detected as malware: "bottles.exe" and "rose.exe". Their source code are files "bottles.aec" and "rose.aec", "bottles.aec" is 80 lines of code, while "rose.aec" is 73 lines of code. So, together, they are 153 lines of code, examining it shouldn't be too hard.
Good. That at least gives me a starting point to poke at. Is there anything in those that you think might be the trigger? I will likely get to it at the weekend, but the more you can add the better.
OK, I submitted that as a false positive for Microsoft Windows Defender, and, after a few hours, a security analyst responded to me that I am right and that there is an error in Windows Defender which will be fixed as soon as possible.
Reply



Possibly Related Threads...
Thread Author Replies Views Last Post
  [Serious] Anyone here use ECU Test? Jehanne 2 519 September 1, 2022 at 7:20 pm
Last Post: Jehanne
  Help unzipping old zip files popeyespappy 29 2515 December 19, 2018 at 8:10 pm
Last Post: ignoramus
  My maturity test FlatAssembler 14 1621 January 10, 2018 at 3:05 pm
Last Post: SteelCurtain
  Google's Mobile-Friendly Test Driving Me Batty: What am I Doing Wrong? Rhondazvous 10 2816 August 14, 2015 at 12:05 pm
Last Post: Longhorn
  Broadband speed test Darwinian 3 1834 April 18, 2014 at 6:23 am
Last Post: Sejanus
  Can anyone help beta test my webcam app? Tiberius 2 1771 April 26, 2013 at 9:20 am
Last Post: panda bear
  Hypercube Beta Test Darwinian 16 5683 June 24, 2012 at 6:50 am
Last Post: Darwinian
  Reliable internet speed test? Oldandeasilyconfused 8 5304 April 17, 2012 at 11:30 am
Last Post: venmalathy



Users browsing this thread: 1 Guest(s)