Monthly Archives: November 2011

How to bypass AV

Posted on November 25, 2011 by Chad Loeven

We came across this presentation given by Andrew King at this year’s Toorcon in San Diego and thought it was worth posting for some Thanksgiving reading. You’ll be able to follow along just fine if, like Andrew, you believe building polymorphic … Continue reading

Down and Dirty with Duqu – Analysis with ECAT

Posted on November 21, 2011 by Pascal Longpre

As part of our series looking at how ECAT V.3.2 detects and analyzes threats on compromised endpoints, we continue with one that has been getting a lot of attention in the media for some time now – Duqu. To recap … Continue reading

Poison Ivy (“Nitro”) and ECAT analysis

Posted on November 2, 2011 by Chad Loeven

In this blog post we continue in our series looking at how ECAT detects and analyses compromises that evade traditional detection This time, we’ve taken a look at a recent rev of Poison Ivy that was brought into the limelight by Symantec’s report … Continue reading

Silicium and Opswat partner to integrate Metascan, ECAT

Posted on November 2, 2011 by Chad Loeven

Silicium Security integrates ECAT with OPSWAT’s Metascan to provide multiple engine malware scanning technology inside ECAT advanced malware detection for endpoints Montreal, QC, — November 1st, 2011 — Silicium Security, the provider of ECAT advanced malware detection, today announced that it … Continue reading