Author Topic: Avast's challenge  (Read 810 times)

0 Members and 1 Guest are viewing this topic.

Offline AndyFul

  • Newbie
  • *
  • Posts: 2
Avast's challenge
« on: April 02, 2024, 04:37:45 PM »
Hi,

Here is a video test from the MalwaeTips forum about tampering with Avast's drivers and protected services:
https://malwaretips.com/threads/avasts-challenge.129933/

New video, where Avast is tampered with but not crushed:
https://youtu.be/tf3eMYnxgxI


« Last Edit: April 02, 2024, 05:36:19 PM by AndyFul »

Offline GeorgeP

  • Administrator
  • Jr. Member
  • *
  • Posts: 39
Re: Avast's challenge
« Reply #1 on: April 09, 2024, 02:52:19 PM »
Hi AndyFul,

The video is not clear on what actions are being taken, we would need some more information e.g. the script that's executed, for us to pass it to engineering.

That being said, there also seems to be a discrepancy in the timing e.g. between reboots, the system time is not consistent.

Thank you

Offline AndyFul

  • Newbie
  • *
  • Posts: 2
Re: Avast's challenge
« Reply #2 on: April 10, 2024, 01:28:51 PM »
I decided to submit details only to the AV vendors. I already did it for Kaspersky, Microsoft, Check Point, and Emsisoft.
Anyway, one of MT members already contacted Avast (without submitting details):
https://malwaretips.com/threads/avasts-challenge.129933/post-1081550
It seems that Avast staff knows the attack method, because no one contacted me. If necessary the Avast staff can contact me via my email (known to Administrators of this forum).
I posted here two videos. The second video was made several hours later.
« Last Edit: April 10, 2024, 01:33:45 PM by AndyFul »

Offline GeorgeP

  • Administrator
  • Jr. Member
  • *
  • Posts: 39
Re: Avast's challenge
« Reply #3 on: April 11, 2024, 11:13:54 AM »
I am from the Avast team - we will contact you directly

Offline Tom610

  • Full Member
  • ***
  • Posts: 126
Re: Avast's challenge
« Reply #4 on: April 11, 2024, 05:36:10 PM »
Wondering if this issue has it's underlying reason in a security flaw of the operating system...