Closed botherder closed 8 years ago
I think a lot of false positives can be resolved by not caring about the index.dat
file - does that file contain anything useful at all anyway?
Has the signature changed?
Not really, aside from changing to the latest Signature API.
I removed the index.dat
thing as it was causing pretty much only false positives. Guess this can be closed.
The signature
infostealer_browser.py
raises way too many false positives and it's causing considerable issues, needs to be fixed.