Recommended Posts

I'm in the process of testing antivirus software for my office. I'm deciding between two different applications, and I'd like to have some side-by-side comparisons of how well they work. I'm not interested in charts or anything like that that has already been done. I want to see for myself, a live test, of how effective each AV product is.

My users are fairly good at contracting viruses ( :p ), but I can't seem to find any! I'm using IE8 and surfing the internet without any AV software. I'm going to tons of warez & crackz sites, clicking on all the links I can find. My biggest problem is staying away from the porn, since anyone that walks around the corner will see that on my screen. I disabled images for IE to avoid this, but that probably also hindered my ability to get infected.

I already tried the Eicar test virus, but this is not a substantial test as far as I'm concerned. I want to get (a lot) of real viruses. Does anyone know of a sample I can get? If you have a known bad link, post it up!

Link to comment
https://www.neowin.net/forum/topic/883170-where-can-i-download-a-virus/
Share on other sites

Personally I would use data found by other trusted sources. Just because an anti virus can pick up something in one of your tests doesn't mean it will pick up something else in the future.

What I meant by my OP was that I've already looked at all of the data collected by the "professionals" and am interested in a live demo as well. Of course I've taken into account the standardized benchmarks.

http://www.eicar.org/anti_virus_test_file.htm

That is the only test file that I know of offhand-

I would in the past say do a search for bonzi buddy-- not really a virus but a difficult spyware to get rid of- I would also say do a search for spyware sherrif -- not really the removal but maybe one of those links could get you infected.

http://www.eicar.org/anti_virus_test_file.htm

That is the only test file that I know of offhand-

I would in the past say do a search for bonzi buddy-- not really a virus but a difficult spyware to get rid of- I would also say do a search for spyware sherrif -- not really the removal but maybe one of those links could get you infected.

LOL Bonzi Buddy... I remember that gay little purple ape from the late 90s. As mentioned in my OP, I don't want Eicar. Already tried it, and it's not really a sufficient AV test. It will let you know if your AV engine is working, but can't demonstrate effectiveness at removing a true infection.

I'm in the process of testing antivirus software for my office. I'm deciding between two different applications, and I'd like to have some side-by-side comparisons of how well they work. I'm not interested in charts or anything like that that has already been done. I want to see for myself, a live test, of how effective each AV product is.

My users are fairly good at contracting viruses ( :p ), but I can't seem to find any! I'm using IE8 and surfing the internet without any AV software. I'm going to tons of warez & crackz sites, clicking on all the links I can find. My biggest problem is staying away from the porn, since anyone that walks around the corner will see that on my screen. I disabled images for IE to avoid this, but that probably also hindered my ability to get infected.

I already tried the Eicar test virus, but this is not a substantial test as far as I'm concerned. I want to get (a lot) of real viruses. Does anyone know of a sample I can get? If you have a known bad link, post it up!

The most virus alerts I've ever gotten were torrent finds looking for "NERO" burning software...practically EVERY SINGLE ONE! I finally bought one, since no one could post a good/working copy.

No insult to you, but I simply cannot fathom how on earth you feel a live demonstration would somehow sway your choice in picking an AV. So the AV detects it? So what, that's like 1 out of a billion viruses. Perhaps you should leave the AV testing to those that actually know what they're doing (presumably they don't need to go around on tech sites asking for viruses to compile their tests...) and perhaps you might try a nicer attitude also.

Unless of course, this is all a ruse and you actually just want a virus so you can infect somebody that's ****ed you off (wouldn't be the first time it's happened)

No insult to you, but I simply cannot fathom how on earth you feel a live demonstration would somehow sway your choice in picking an AV. So the AV detects it? So what, that's like 1 out of a billion viruses. Perhaps you should leave the AV testing to those that actually know what they're doing (presumably they don't need to go around on tech sites asking for viruses to compile their tests...) and perhaps you might try a nicer attitude also.

Unless of course, this is all a ruse and you actually just want a virus so you can infect somebody that's ****ed you off (wouldn't be the first time it's happened)

I don't appreciate the accusation. I tend to have a short attitude with those that post dumbass responses without reading posts (not referring to you, but see above). I choose to test this way because that's what I want. If you don't want to help, then fine. And when you say "leave the testing to those that know what they're doing", I know what I'm doing. I know that I clean viruses off of machines (far) too often, and I know an effective removal when I see it (Malwarebytes, for example, in many cases). I'd like to see this for myself with one of the AV apps I'm testing. Is that OK with you?

I don't appreciate the accusation. I tend to have a short attitude with those that post dumbass responses without reading posts (not referring to you, but see above). I choose to test this way because that's what I want. If you don't want to help, then fine. And when you say "leave the testing to those that know what they're doing", I know what I'm doing. I know that I clean viruses off of machines (far) too often, and I know an effective removal when I see it (Malwarebytes, for example, in many cases). I'd like to see this for myself with one of the AV apps I'm testing. Is that OK with you?

By "know what I'm doing" I assume you mean when the box comes up that asks whether you want to delete the virus or not you know to press "yes"? Seriously, in comparison to the companies out there that dedicate their entire business model to the study of real viruses, their patterns, and anti-virus software heuristics, I'd say your own 'test' is pretty fruitless - if you're serious about protecting your corporate environment, you'll forget endangering it more by downloading viruses on it, and instead do some in-depth study of existing published material on which corporate anti virus solutions work the best.

here is what I would do, start going to torrent sites and clicking on ads. there are plenty of viruses there. you want more go to off the wall porn sites, if they don't have anything on their websites click on the ads. finally go to warez sites and password crack sites and click on the ads there. it is almost ridiculous how easy this stuff is to get on your computer when you try to get stuff for free/work around licensing.

you can also try downloading torrents, I would say about 50-70% are loaded with viruses/malware.

By "know what I'm doing" I assume you mean when the box comes up that asks whether you want to delete the virus or not you know to press "yes"? Seriously, in comparison to the companies out there that dedicate their entire business model to the study of real viruses, their patterns, and anti-virus software heuristics, I'd say your own 'test' is pretty fruitless - if you're serious about protecting your corporate environment, you'll forget endangering it more by downloading viruses on it, and instead do some in-depth study of existing published material on which corporate anti virus solutions work the best.

While I agree somewhat, reading can only go so far. I don't know any IT admin who has purchased the licenses for a domain/workgroup/massive networrk to an av product without actually trying it first. There is nothing wrong with throwing a couple viruses/malware at them in a sandbox and seeing how they react and behave. If you even take it from an end user perspective, seeing how they react to these programs and viruses could be valuable information. I'd almost call someone an incompetent/lazy admin if they didn't do this.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Now comes with a money back guarantee instead of a replacement! Hah
    • Rufus 4.15.2391 Beta by Razvan Serea Rufus is a small utility that helps format and create bootable USB flash drives, such as USB keys/pendrives, memory sticks, etc. Despite its small size, Rufus provides everything you need! Oh, and Rufus is fast. For instance it's about twice as fast as UNetbootin, Universal USB Installer or Windows 7 USB download tool, on the creation of a Windows 7 USB installation drive from an ISO (with honorable mention to WiNToBootic for managing to keep up). It is also marginally faster on the creation of Linux bootable USBs from ISOs. A non-exhaustive list of Rufus supported ISOs is available here. It can be especially useful for cases where: you need to create USB installation media from bootable ISOs (Windows, Linux, UEFI, etc.) you need to work on a system that doesn't have an OS installed you need to flash a BIOS or other firmware from DOS you want to run a low-level utility Rufus 4.15.2391 Beta changelog: Improve the guards for using the "silent" option Improve the ability to cancel during write retries Fix unrestricted XML entity expansion and integer overflow in ezxml parser (courtesy of @esadowski4) [GHSA-55r2-34wg-8mv9] Fix "silent" Windows installation failing at 75% in most cases [#2960] Fix a crash during boot when using UEFI:NTFS on Snapdragon X based ARM64 platforms [#2934] Fix the first WUE option always being checked by default [#2965] Fix an infinite loop when using Windows ISOs that contain multiple WIMs Fix "Enable runtime UEFI media validation" checkbox not always being properly enabled Other WUE improvements/fixes for OneDrive removal and username validation (with thanks to @christian8641) [#2984, #2991] Download: Rufus 4.15 Beta | 1.9 MB (Open Source) Links: Rufus Home Page | Project Page @GitHub | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Media Player Classic - Home Cinema 2.7.3 by Razvan Serea Media Player Classic - Home Cinema (MPC-HC) is a free and open-source video and audio player for Windows. MPC-HC is based on the original Guliverkli project (which is no longer maintained) and contains many additional features and bug fixes. As the continuation of the original Media Player Classic, MPC-HC isn’t flashy but it works with nearly any media format. MPC-HC uses DXVA technology to pass decoding operations to your modern video card, enhancing your viewing experience. And MPC-HC supports both physical and software DVDs with menus, chapter navigation, and subtitles. Overview of features A lot of people seem to be unaware of some of the awesome features that have been added to MPC-HC in the past years. Here is a list of useful options and features that everyone should know about: Dark interface Menu > View > Dark Theme When using dark theme it is also possible to change the height of the seekbar and size of the toolbar buttons. Options > Advanced Video preview on the seekbar Options > Tweaks > Show preview on seek bar Adjust playback speed Menu > Play > Playback rate The buttons in the player that control playback rate take a 2x step by default. This can be customized to smaller values (like 10%): Options > Playback > Speed step Adjusting playback speed works best with the internal audio renderer. This also has automatic pitch correction. Options > Playback > Output > Audio Renderer MPC-HC can remember playback position, so you can resume from that point later Options > Player > History You can quickly seek through a video with Ctrl + Mouse Scrollwheel. You can jump to next/previous file in a folder by pressing PageUp/PageDown. You can perform automatic actions at end of file. For example to go to next file or close player. Options > Playback > After Playback (permanent setting) Menu > Play > After Playback (for current file only) A-B repeat - You can loop a segment of a video. Press [ and ] to set start and stop markers. You can rotate/flip/mirror/stretch/zoom the video Menu > View > Pan&Scan This is also easily done with hotkeys (see below). There are lots of keyboard hotkeys and mouse actions to control the player. They can be customized as well. Options > Player > Keys Tip: there is a search box above the table. You can stream videos directly from Youtube and many other video websites You can stream videos directly from Youtube and many other video websites Put yt-dlp.exe or youtube-dl.exe in the MPC-HC installation folder. Then you can open website URLs in the player: Menu > File > Open File/URL You can even download those videos: Menu > File > Save a copy Tip: to be able to download in best quality with yt-dlp/youtube-dl, it is recommended to also put ffmpeg.exe in the MPC-HC folder. Several YDL configuration options are found here: Options > Advanced This includes an option to specify the location of the .exe in case you don't want to put it in MPC-HC folder. Play HDR video This requires using madVR or MPC Video Renderer. After installation these renderers can be selected here: Options > Playback > Output Ability to search for and download subtitles, either automatically or manually (press D): Options > Subtitles > Misc Besides all these (new) features, there have also been many bugfixes and internal improvements in the player in the past years that give better performance and stability. It also has updated internal codecs. Support was added for CUE sheets, WebVTT subtitles, etc. Media Player Classic - Home Cinema 2.7.3 changelog: Updated LAV Filters to version 0.82 Updated MPC Video Renderer to version 0.10.4.2550 Updated MPC Audio Renderer A few crash fixes, bug fixes and small improvements. Download: MPC-HC 2.7.3 (x64) | Standalone | ~20.0 MB (Open Source) Download: MPC-HC 2.7.3 (x86) | Standalone Links: MPC-HC Home Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Microsoft will finally let you sign in to Edge with a Google account by Usama Jawad As things currently stand, Microsoft Edge only allows you to sign in to the browser with a Microsoft Account (MSA). This allows you to sync your browser settings and other data across other devices, as long as you sign in with the same account. However, Microsoft is now modifying this mechanism in a way that will likely please many users. In an update to its Microsoft 365 Roadmap, Microsoft has indicated that it will soon let users sign into Edge using a Google account from the profile menu and the Edge sign-in screen. This will be in addition to the MSA login option, and it opens up new doors for people who prefer using Edge, but cannot be bothered to configure a Microsoft account. This brings several advantages such as the ability to sync your data across devices using just a Google account. It may even facilitate flexible single sign-on (SSO) experiences where you can quickly login to websites and services through a single Google account that is presented as the preferred sign-in option. Up until now, Microsoft allowed customers to indirectly use a Google account, by configuring a Google account as a Microsoft account, or by setting up a one-way sync option between Edge and Chrome. This is a rather interesting development, especially considering that Google Chrome still limits you to a Google account sign-in, but it will be interesting to see if the company reciprocates Microsoft's gesture in the future. This is not the only recent instance in which Microsoft has extended a handshake to Google via Edge. In April 2026, it began tracking the development of a work search banner for Google Search queries, just like the one present in Edge. However, if we go back almost seven years, to January 2020, Microsoft had emphasized that it had no plans to "integrate Google services into Microsoft Edge by default", in response to people requesting Google sign-in services on Edge. Fast-forward to today, and Microsoft is planning to release this feature in July 2026, with IT admins having the option to control its availability on Windows and macOS through the NonMicrosoftAccountSignInEnabled policy.
    • If they ever come out and say the AI is no longer accessible to the gen pop people aren't going to know how to tie their own shoelaces.
  • Recent Achievements

    • One Month Later
      Vincian earned a badge
      One Month Later
    • First Post
      Jocimo earned a badge
      First Post
    • Week One Done
      suprememobiles48 earned a badge
      Week One Done
    • One Month Later
      Windows Guy earned a badge
      One Month Later
    • One Month Later
      Prasann earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      509
    2. 2
      +Edouard
      172
    3. 3
      PsYcHoKiLLa
      89
    4. 4
      Steven P.
      76
    5. 5
      neufuse
      69
  • Tell a friend

    Love Neowin? Tell a friend!