Results 1 to 4 of 4

Thread: Anti-Spyware coding

Hybrid View

  1. #1
    Junior Member
    Join Date
    Mar 2007
    Location
    Bay Area
    Posts
    17
    If this is going to be something that is truly independent then you may have to compile a database of known malware yourself, which is a huge task, and then figure out a method for identifing them (i.e. how your going to code the engine and what your going to use as signatures for the files...). Other then that, if you dont mind spending some $$$, you can check to see how much it would cost to purchase a database and what not.

    I did a quick google and found this: http://www.emsisoft.com/en/support/malware/

    I hope that helps

    I was working on a similar project myself, but i was just compiling a database of non-malacious start up applications....

    Im interested to see how it turns out


  2. #2
    Senior Member nihil's Avatar
    Join Date
    Jul 2003
    Location
    United Kingdom: Bridlington
    Posts
    17,188
    I would suggest that this is a waste of time?.................... the one thing that you can say about any pattern or signature based system is that it is obsolete before you have even finished loading it?

    I think that encipher's approach shows more promise................ decide what should be allowed to run.............like application "A" runs processes "x", "y" and "z"................if "A" hasn't been started, neither should the others?

    Also look for opening of ports and attempts to "phone home"...................

Similar Threads

  1. FTC holding spyware workshop - speak up!
    By ric-o in forum Spyware / Adware
    Replies: 1
    Last Post: March 10th, 2005, 07:09 PM
  2. Replies: 12
    Last Post: February 9th, 2005, 08:11 PM
  3. Spyware Information., tools/tips for removal of spyware.
    By saintakaagni in forum Spyware / Adware
    Replies: 6
    Last Post: February 4th, 2004, 11:48 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •