Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
Security Apps
AVG
AVG/Avast could be lying....
Message
<blockquote data-quote="Trident" data-source="post: 1034948" data-attributes="member: 99014"><p>[USER=94948]@Pilot777[/USER] hello and belated welcome to MalwareTips.</p><p></p><p>As [USER=7463]@cruelsister[/USER] and [USER=78686]@SeriousHoax[/USER] previously pointed out, this is ransomware-as-a-service (RAAS) and the sample is malformed for one reason or another, perhaps someone’s had a little play with it.</p><p></p><p>As a security vendor Avast does not participate in malware creation and distribution (it is a criminal offence as well). In fact, Avast has released decryptors throughout the years for various ransomware families/strains.</p><p></p><p>I believe the Avast parser may be unable to read the file properly or due to the sample being damaged, they may have refused to add detection, as a properly-working sample may already be covered by other detections and protection methods. It my have been miscommunication between the support agent and the analyst. For more information, it would be best to reply to this email and ask Avast.</p><p></p><p>It has been discussed by [USER=86910]@struppigel[/USER] who works at GData on another thread that not everything that gives off a malicious vibe gets added to definitions. They are not a recycle bin, they are operated in accordance with strict policies that different vendors have implemented. For example Symantec would refuse to add artefacts by themselves not malicious (for example a driver that has been used as part of BYOVD attack or a PDF that contains links to malicious sites). Avira would add a detection for everything in definitions.</p><p></p><p>Avast would certainly add a detection for something that’s truly malicious and has been sent to them, regardless whether it’s a working day or festive.</p></blockquote><p></p>
[QUOTE="Trident, post: 1034948, member: 99014"] [USER=94948]@Pilot777[/USER] hello and belated welcome to MalwareTips. As [USER=7463]@cruelsister[/USER] and [USER=78686]@SeriousHoax[/USER] previously pointed out, this is ransomware-as-a-service (RAAS) and the sample is malformed for one reason or another, perhaps someone’s had a little play with it. As a security vendor Avast does not participate in malware creation and distribution (it is a criminal offence as well). In fact, Avast has released decryptors throughout the years for various ransomware families/strains. I believe the Avast parser may be unable to read the file properly or due to the sample being damaged, they may have refused to add detection, as a properly-working sample may already be covered by other detections and protection methods. It my have been miscommunication between the support agent and the analyst. For more information, it would be best to reply to this email and ask Avast. It has been discussed by [USER=86910]@struppigel[/USER] who works at GData on another thread that not everything that gives off a malicious vibe gets added to definitions. They are not a recycle bin, they are operated in accordance with strict policies that different vendors have implemented. For example Symantec would refuse to add artefacts by themselves not malicious (for example a driver that has been used as part of BYOVD attack or a PDF that contains links to malicious sites). Avira would add a detection for everything in definitions. Avast would certainly add a detection for something that’s truly malicious and has been sent to them, regardless whether it’s a working day or festive. [/QUOTE]
Insert quotes…
Verification
Post reply
Top