Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Oh, and all your EXE-files will also be marked as viruses by the way (since you're most likely using a "self-executing-unpacker-code + data" architecture, which is considered a risk-factor by most antiviruses, no idea why).

Because most malware does this exact thing to obfuscate its payload. Here's a good example of the relative entropy distribution of malware executables versus non-malware executables on page 26 and 27: http://www.virusbtn.com/pdf/conference_slides/2007/CaseyShee...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: