Lagarvp Posted November 4, 2014 Hello ..I have a problem related the detection.. when i change some bytes.. only the date. of file..it become clean... Share this post Link to post Share on other sites
SAS Customer Service Posted November 4, 2014 Lagarvp, By editing the PE header you are changing the contents of the file. If okAudio.exe was being detected based on a condition identifying the PE header, it will no longer be detected if you edit the PE header's contents. If you think this might be a false positive, you can send us the file for analysis through SUPERAntiSpyware's built-in tool. Share this post Link to post Share on other sites
Lagarvp Posted November 4, 2014 The malware builder only have to change that info to make they malware undetected? that is not good sir.. because is very easy to edit that info.. Share this post Link to post Share on other sites
nighthawkext Posted November 6, 2014 Lagarvp, Each type of malware has to be detected in a unique way. Many many pieces of the files in a strain of malware change constantly.. it's all easy to edit and change. Share this post Link to post Share on other sites