Providing Free and Editor Tested Downloads

< HOME | MAC | GEEK - WEAR | SHOPPING | SUPPORT FORUM | TOP DOWNLOADS | >
Major Geeks.com- Trying to get a date since 2002.

Admin Tools
All In One
Android
Anti-Spyware
Anti-Virus
Appearance
Back Up
Benchmarking
Bios
Browsers
CD\DVD\Blu-Ray
Covert Ops
Data Recovery
Diagnostics
Drive Cleaners
Drive Utilities
Driver Tools
Drivers
Ergonomics
Firewalls
Game Tweaks
Graphics
Input Device
Internet Tools
Mail Utilities
Memory
Messaging
Microsoft
Misc
Monitoring
Multimedia
Networking
Office Tools
ProcessManagement
Processor
Registry
Security
System Info
Toys
Video
Macintosh
Games
News Archive
- Off Base
- Way Off Base


· NVIDIA GeForce Experience 1.5.0.0
· Wipe 2013.55
· Wavepad 5.45
· McAfee Stinger 11.0.0.308
· Calendarscope 6.0.0
· Ashampoo Snap 6.0.5
· AppRemover 3.0.9.2
· EagleGet 1.0.7.0 Beta
· Hamachi 2.1.0.362
· Ashampoo WinOptimizer 10.02.05

· New? Start Here
· Top Freeware Picks
· Malware Removal
· Compatibility Database
· Geektionary
· Geek Shopping
· Free Magazines
· Useful Links
· Top Freeware Picks
· Folding@Home
· About Us
· Copyright
· Privacy
· Terms Of Service
· Uninstall

There are currently 3750 user(s) online:
Google, Live Search, MSN, Yahoo

YouTube

FaceBook

Twitter

RSS / XML Feed

Pintrest



Follow @majorgeeks
· Google · Yahoo · MSN


1. K-Lite Codec Pack Update
2. IObit SmartDefrag
3. Malwarebytes Anti-Malware
4. Win7codecs
5. IObit Malware Fighter
6. JetClean
7. x64 Components
8. Windows 8 Codecs
9. SpywareBlaster
10. Advanced SystemCare Free 6.2.0.254 (0424)
More >>

The plane! The plane! Fantasy Island airplane used to smuggle drugs after show finished (Video)

What's The Best Browser to Protect You against Malware?

Friday Photo Bombs!

Female fan who flipped off Noah in photo identified as Filomena Tobias

7-Data-Recovery 3 Day Giveaway - $29.95 Value!

Majorgeeks updates website to new CMS and design – didn’t break EVERYTHING

First time setup and installation of an SSD drive

Friday Photo Bombs!

NASA dumping Windows for Linux

World Of Warcraft loses 1.3 million subscribers in 3 months





MajorGeeks.com » News » July 2012 » Behavior analysis added to VirusTotal online scanner

Behavior analysis added to VirusTotal online scanner


Posted on: 07/25/2012 04:34 PM [ Comments ]


The developers of the VirusTotal online virus scanner service are currently testing a new sandbox feature to provide users with more meaningful scan results. In a post on the company's blog, software architect and developer Emiliano Martinez says that, for this purpose, samples uploaded to the service are executed in a controlled sandbox environment where their actions can be "recorded in order to give the analyst a high level overview of what the sample is doing".

An analysis of the uploaded file's behavior is then displayed in a new "Behavioral information" tab as part of the scan results. VirusTotal logs file and registry activities as well as new processes and code injections. The scanner also issues a notification when a file directly sends commands to certain device drivers.

With the free online service, users can submit URLs and files to be analysed by various antivirus engines and scanners for malicious content such as viruses, worms and trojans. However, it is often only the heuristics that flag up issues – which can be identified by result descriptions that contain keywords such as "Heur", "Suspicious" or "Generic". Occasionally, this causes legitimate files to be regarded as suspected viruses without giving users the option to establish whether there is an actual threat.

Even a sandbox analysis carries a residual risk as some trojans quietly check whether they are being executed in a virtual environment when they're launching. If this is the case, they will act inconspicuously, only launching their malicious payload on a real Windows system.

The behavior analysis is currently being carried out by the scan engines at a different time than the virus analysis. It only scans executable files that are less than 8 MB in size and were previously unknown to VirusTotal. Therefore, it makes sense to keep the results page open and reload it occasionally to check whether a new data has been added.

Martinez notes that the behavior analysis is still in its early days, and that there is no guarantee that uploaded files will undergo the added analysis. The company uses Claudio Guarnieri's open source Cuckoo sandbox. Incidentally, VirusTotal is far from being the only online tool to use a sandbox: Anubis, MWAnalysis CWSandbox and ThreatExpert have offered similar services for quite some time.








Like it? Share it....




Comments
comments powered by Disqus

« R.I.P: Sherman Hemsley. Thanks for the laughs · Behavior analysis added to VirusTotal online scanner · OWC Mercury Aura Pro Express 6G SSD Review @ SSD Review »

MajorGeeks.com » News » July 2012 » Behavior analysis added to VirusTotal online scanner
© 2000-2013 MajorGeeks.com
Powered by Contentteller® Business Edition