|
|
|
|
|
by lucb1e
1400 days ago
|
|
I considered that but it didn't seem logical. If it's on purpose, it would be trivial to change the URL and then go "ok it's clean now please remove the flag" How does keeping secret (from the bad guys) where the malware is thwart the bad guys? |
|
Or the bad guys themselves do that pretending to be the site owner. MS analysts can only inspect the normal site and the malicious URL that has now been removed in order to unblock it.
This is how abuse and IR works, I am surprised at the naivette of the responses here.