How Avast stopped the malware while all the protection disabled? Or I missed something here?
What happened here is, I just watched:
First, he is running the malware (no idea what malware, not mentioned).
Secondly, he wants to see if there is behavioural detection. However, he is very incompetent and confused, and turns off behavioural shield (the very shield he wants to test), leaving the AV component, already seen to trigger detection,
on.
Furthermore, Avast, even upon turning AV module off, still uses the AV module in the following cases:
- If there is an alert prompt, file will be scanned for viruses, even with AV off.
- Behavioural blocking checks in the cloud if file is known malicious. Just because it displays an alert, doesn't mean it was behavioural detection, many of the behavioural detections are merely hash-based.
- Web Shield upon terminating a connection, would remove the malware, even with AV off.
for BD, he switched everything off.