1 Reply Latest reply on Dec 3, 2009 1:57 PM by GWIRT

    Best Practices for: Exclude by creation or by date

      Under "What not to scan" there is an option to exclude by file age either by Modified, Assessed or Created.   What are the pro's and cons's of utilizing this option within On-Access scanning and/or On-Demand scanning.
      I have read a couple of post stating that some malicious software can change the date so that "Modified, Assessed or Created" date is somewhat irrelevant.  Meaning, the malicious software is able to install and run without being detected (if "exclude by file age" is used).