HotFinger
HotFinger copied to clipboard
False detections by antivirus software
In VirusTotal, 6/67 engines falsely detect hotfinger.exe as malicious. This is bad because the 6 engines include popular antivirus software such as Avast, AVG, Cylance & Symantec. Users do not like this, so do something about it. Possible solutions:
-
Carefully modify HotFinger to resolve false positives one by one. However, this is non-trivial because 4 out of the 6 false detections are based on heuristics (that is, cannot be addressed by changing few bytes in the
hotfinger.exeexecutable). -
Do not modify HotFinger itself, but use existing packer/protector to make
hotfinger.exeundetectable. Writing a custom "dropper" is also an option.