eli5 Why do anti viruses flag illicit software as viruses even if there are none?

79 views

eli5 Why do anti viruses flag illicit software as viruses even if there are none?

In: 8

5 Answers

Anonymous 0 Comments

Modern anti viruses and security tools use signature based detectors and TTP based detectors (tactics, techniques, and procedures or the HOW of how attackers breach a system). If a signature (think of a programs name) matches a bad signature or looks like a signature that follows a “bad code” pattern, it will get flagged. Since a computer doesn’t know that you, in fact, want this file to change something on purpose, it will usually quarantine it or remove it automatically. Better safe than sorry they say.

You are viewing 1 out of 5 answers, click here to view all answers.