Presentation is loading. Please wait.

Presentation is loading. Please wait.

“When combining the results from all four AV engines, less than 40% of the binaries were detected.” Source: CAMP: Content-Agnostic Malware Protection.

Similar presentations


Presentation on theme: "“When combining the results from all four AV engines, less than 40% of the binaries were detected.” Source: CAMP: Content-Agnostic Malware Protection."— Presentation transcript:

1

2 “When combining the results from all four AV engines, less than 40% of the binaries were detected.” Source: CAMP: Content-Agnostic Malware Protection Proceedings of 20th Annual Network & Distributed System Security Symposium https://www.cs.jhu.edu/~moheeb/aburajab-ndss-13.pdf

3

4

5

6

7

8

9

10

11

12

13

14

15

16 sigcheck -e –vs -vr -u -s c:\

17 strings

18

19

20

21

22

23

24

25

26

27

28

29

30

31

32

33

34

35

36

37

38 http://www.microsoft.com/security/portal/threat/encyclopedia/Entry.aspx?Name=Rogue%3AWin32%2FFakePAV

39

40

41

42

43

44

45

46

47

48

49

50

51

52 http://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?Name=Trojan%3AWin32%2FRansom.FS

53

54

55

56

57

58

59 http://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?Name=Win32%2FSirefef Give a man a stolen credit card & he'll eat like a king for a day. Teach a man to phish and he'll be set for life. -- Ancient Nigerian proverb

60

61 Prevent and Detect

62 www.russinovich.com

63


Download ppt "“When combining the results from all four AV engines, less than 40% of the binaries were detected.” Source: CAMP: Content-Agnostic Malware Protection."

Similar presentations


Ads by Google