eWeek: Virus attack surmounts AV Defenses

|

http://www.eweek.com/article2/0,1759,1756636,00.asp?kc=EWRSS03119TX1K0000594

Did you see this article "New Virus Attack Technique Bypasses Filters"? (1/31/2005 in eWeek)

I'd really like to know what antivirus venders were so incompetent that they couldn't scan inside of the rar compressed format.

Was this caused by people not scanning all files?
Was it the usual case of virus defs being a reactive protection measure?
Was the antivirus software unable to look inside the rar format?

Is it really new for viruses to be inside rar file? I could have sworn mydoom was doing that back when antivirus vendors failed to protect us from password protected zips.

If you you must take action each time the enemy thinks of a new attack, you're AV solutions obsolete.

Categories

About this Entry

This page contains a single entry by Roger published on January 31, 2005 6:24 PM.

Filtering By Filetype was the previous entry in this blog.

Weak Link is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Add to Google
Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla Powered by Movable Type 4.2-en