Recommended Posts

I'm in the process of testing antivirus software for my office. I'm deciding between two different applications, and I'd like to have some side-by-side comparisons of how well they work. I'm not interested in charts or anything like that that has already been done. I want to see for myself, a live test, of how effective each AV product is.

My users are fairly good at contracting viruses ( :p ), but I can't seem to find any! I'm using IE8 and surfing the internet without any AV software. I'm going to tons of warez & crackz sites, clicking on all the links I can find. My biggest problem is staying away from the porn, since anyone that walks around the corner will see that on my screen. I disabled images for IE to avoid this, but that probably also hindered my ability to get infected.

I already tried the Eicar test virus, but this is not a substantial test as far as I'm concerned. I want to get (a lot) of real viruses. Does anyone know of a sample I can get? If you have a known bad link, post it up!

Link to comment
https://www.neowin.net/forum/topic/883170-where-can-i-download-a-virus/
Share on other sites

Personally I would use data found by other trusted sources. Just because an anti virus can pick up something in one of your tests doesn't mean it will pick up something else in the future.

What I meant by my OP was that I've already looked at all of the data collected by the "professionals" and am interested in a live demo as well. Of course I've taken into account the standardized benchmarks.

http://www.eicar.org/anti_virus_test_file.htm

That is the only test file that I know of offhand-

I would in the past say do a search for bonzi buddy-- not really a virus but a difficult spyware to get rid of- I would also say do a search for spyware sherrif -- not really the removal but maybe one of those links could get you infected.

http://www.eicar.org/anti_virus_test_file.htm

That is the only test file that I know of offhand-

I would in the past say do a search for bonzi buddy-- not really a virus but a difficult spyware to get rid of- I would also say do a search for spyware sherrif -- not really the removal but maybe one of those links could get you infected.

LOL Bonzi Buddy... I remember that gay little purple ape from the late 90s. As mentioned in my OP, I don't want Eicar. Already tried it, and it's not really a sufficient AV test. It will let you know if your AV engine is working, but can't demonstrate effectiveness at removing a true infection.

I'm in the process of testing antivirus software for my office. I'm deciding between two different applications, and I'd like to have some side-by-side comparisons of how well they work. I'm not interested in charts or anything like that that has already been done. I want to see for myself, a live test, of how effective each AV product is.

My users are fairly good at contracting viruses ( :p ), but I can't seem to find any! I'm using IE8 and surfing the internet without any AV software. I'm going to tons of warez & crackz sites, clicking on all the links I can find. My biggest problem is staying away from the porn, since anyone that walks around the corner will see that on my screen. I disabled images for IE to avoid this, but that probably also hindered my ability to get infected.

I already tried the Eicar test virus, but this is not a substantial test as far as I'm concerned. I want to get (a lot) of real viruses. Does anyone know of a sample I can get? If you have a known bad link, post it up!

The most virus alerts I've ever gotten were torrent finds looking for "NERO" burning software...practically EVERY SINGLE ONE! I finally bought one, since no one could post a good/working copy.

No insult to you, but I simply cannot fathom how on earth you feel a live demonstration would somehow sway your choice in picking an AV. So the AV detects it? So what, that's like 1 out of a billion viruses. Perhaps you should leave the AV testing to those that actually know what they're doing (presumably they don't need to go around on tech sites asking for viruses to compile their tests...) and perhaps you might try a nicer attitude also.

Unless of course, this is all a ruse and you actually just want a virus so you can infect somebody that's ****ed you off (wouldn't be the first time it's happened)

No insult to you, but I simply cannot fathom how on earth you feel a live demonstration would somehow sway your choice in picking an AV. So the AV detects it? So what, that's like 1 out of a billion viruses. Perhaps you should leave the AV testing to those that actually know what they're doing (presumably they don't need to go around on tech sites asking for viruses to compile their tests...) and perhaps you might try a nicer attitude also.

Unless of course, this is all a ruse and you actually just want a virus so you can infect somebody that's ****ed you off (wouldn't be the first time it's happened)

I don't appreciate the accusation. I tend to have a short attitude with those that post dumbass responses without reading posts (not referring to you, but see above). I choose to test this way because that's what I want. If you don't want to help, then fine. And when you say "leave the testing to those that know what they're doing", I know what I'm doing. I know that I clean viruses off of machines (far) too often, and I know an effective removal when I see it (Malwarebytes, for example, in many cases). I'd like to see this for myself with one of the AV apps I'm testing. Is that OK with you?

I don't appreciate the accusation. I tend to have a short attitude with those that post dumbass responses without reading posts (not referring to you, but see above). I choose to test this way because that's what I want. If you don't want to help, then fine. And when you say "leave the testing to those that know what they're doing", I know what I'm doing. I know that I clean viruses off of machines (far) too often, and I know an effective removal when I see it (Malwarebytes, for example, in many cases). I'd like to see this for myself with one of the AV apps I'm testing. Is that OK with you?

By "know what I'm doing" I assume you mean when the box comes up that asks whether you want to delete the virus or not you know to press "yes"? Seriously, in comparison to the companies out there that dedicate their entire business model to the study of real viruses, their patterns, and anti-virus software heuristics, I'd say your own 'test' is pretty fruitless - if you're serious about protecting your corporate environment, you'll forget endangering it more by downloading viruses on it, and instead do some in-depth study of existing published material on which corporate anti virus solutions work the best.

here is what I would do, start going to torrent sites and clicking on ads. there are plenty of viruses there. you want more go to off the wall porn sites, if they don't have anything on their websites click on the ads. finally go to warez sites and password crack sites and click on the ads there. it is almost ridiculous how easy this stuff is to get on your computer when you try to get stuff for free/work around licensing.

you can also try downloading torrents, I would say about 50-70% are loaded with viruses/malware.

By "know what I'm doing" I assume you mean when the box comes up that asks whether you want to delete the virus or not you know to press "yes"? Seriously, in comparison to the companies out there that dedicate their entire business model to the study of real viruses, their patterns, and anti-virus software heuristics, I'd say your own 'test' is pretty fruitless - if you're serious about protecting your corporate environment, you'll forget endangering it more by downloading viruses on it, and instead do some in-depth study of existing published material on which corporate anti virus solutions work the best.

While I agree somewhat, reading can only go so far. I don't know any IT admin who has purchased the licenses for a domain/workgroup/massive networrk to an av product without actually trying it first. There is nothing wrong with throwing a couple viruses/malware at them in a sandbox and seeing how they react and behave. If you even take it from an end user perspective, seeing how they react to these programs and viruses could be valuable information. I'd almost call someone an incompetent/lazy admin if they didn't do this.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft confirms Windows 11 26H2, urges IT admins to prepare for release by Usama Jawad Windows 11 typically follows an annual update cycle, but Microsoft recently broke that tradition a bit by releasing a "26H1" version in the first half of this year as a "scoped" build for select new silicon PCs only. This version was not available for customers using 24H2 and 25H2 builds, as Microsoft is busy preparing version 26H2 for them, confirmed officially for the first time. In a Windows IT Pro blog, Microsoft has urged IT admins to prepare for the upcoming release of Windows 11 version 26H2. The company has confirmed that this will be a small enablement package (eKB) that will simply light up certain disabled features that are already present in the operating system's code base. This means that the "refined" Windows update and deployment experience will be simpler and quicker, with minimal disruptions, as the feature update will simply toggle a few flags rather than performing a complete replacement. Microsoft has explained that this is all possible because the standard Windows 11 releases share the same servicing branch and hence, the same source code. However, this also means that Windows 11 26H1 users won't be able to upgrade to 26H2 as that is a different branch, but this is something we have known for a while now. Similar to previous annual feature updates, Windows 11 26H2 will offer the following support cycles: 24 months of support for Home, Pro, Pro EDU, and Pro for Workstations editions 36 months of support for Enterprise, Education, IoT Enterprise, and Enterprise Multi-session editions Microsoft has not confirmed a concrete release date for Windows 11 26H2, but noted that it is "coming soon". If we go by the ongoing release cadence, we can expect it to begin rolling out in early October 2026. As such, IT admins have been encouraged to begin validating Windows Insider releases in the Experimental Channel, plan rollout rings, and strategize the utilization of their existing deployment tools.
    • Windows 11 gets new audio improvements in the latest builds by Taras Buria Today's Experimental builds (26H1 and Future Platforms, formerly Canary) pack several audio-related improvements. If your device is enrolled in the Experimental Channel (26H1), you can download build 28120.2315, while those in the Future Platforms version have build 29613.1000 to try. Here is what is new in build 29613.1000: [Audio] Following up on our previous improvements, we’re making some more adjustments to Settings > System > Sounds based on your feedback. Namely, we’ve updated the “All sound devices” page so: You now have the ability to change default devices from this page. Each of the devices displayed on this page now has a little volume meter next to it to show if there is audio actively playing. We’ve adjusted the page design slightly so now you can filter whether you’re viewing input or output devices. We’ve added toggles so you can choose if you want to hide or show disabled, disconnected, and unplugged devices on this page. We’ve also updated the input and output audio properties page for devices in Settings to now include jack information for those that need it. And here is the changelog for build 28120.2315: This update includes a small number of minor bug fixes and improvements. [Accessibility] This update improves caption style responsiveness by redrawing captions immediately for caption style changes. If no current caption is visible, a sample caption string is displayed. [Audio] This update improves the reliability of the inbox HD Audio driver. You can find the official release notes for build 28120.2315 here and for build 29613.1000 here.
    • I agree with what I think you are saying, just not in the way you are saying it. Like any tool, the amount it represents your work is perorational to the effort you put into it. It is similar to why 2nd grade math students learning to add and subtract are not allowed to use calculators, but a high-school calculous student is. For the 2nd grader, that tool would completely replace the work they are doing, for the calculous student the same tool allows them to work far more effectively while in no way replacing their effort or knowable. If you spend 30 seconds writing a prompt, then the image that comes out is no more "yours" than if you found the same image with a Google Image search. However, many of these generative tools also support highly iterative processes that allow back and forth, and merging generated images with photos or human created images. I am sure you would agree that a human spending hours of time working on a project, even if AI was involved in the process, still reflects that human's work.
    • Windows 11 version 26H2 is now available for testing in the latest preview build by Taras Buria Friday Windows 11 preview builds are here. Insiders in the Experimental (formerly Dev) and Beta Channel can download builds 26300.8697 and 26220.8690. There are no new features, but Microsoft is officially moving the Experimental Channel to version 26H2. In addition, Microsoft is improving the copy dialog in File Explorer, the Start menu reliability, and fixing virtualization issues. Here is the changelog: [General] With today’s build, Windows Insiders in the Experimental channel will see the versioning updated under Settings > System > About (and winver) to version 26H2. For more information, see the Windows Insiders blog. [File Explorer] We’ve improved the visual consistency and reliability of the Copy dialog in Dark mode, including its launch experience and the expanded progress view. [Start menu] - Also available in Beta Improved reliability of Start menu reflecting newly installed or removed apps without requiring sign-out or restart. [Taskbar] Fixed an issue for Insiders using the new smaller taskbar option, where the system tray might get cut off or pushed off screen. [Settings] - Also available in Beta Improved reliability of Settings > Apps > Startup. [Virtualization] - Also available in Beta This update addresses an issue that could result in bugchecks citing HYPERVISOR_ERROR (0x20001) and KMODE_EXCEPTION_NOT_HANDLED (0x1E) errors after installing the latest flights on some devices during system restarts, virtual machine operations, or while running some gaming applications. You can find the official changelog for the Experimental build here and for the Beta build here.
    • I've always preferred this possibility. There is something that feels good about the idea that all matter in the universe will eventually come back together and maybe even result in another big bang. The idea that the universe would fizzle out over the eons and forever drift apart is a little depressing. I realize it is not logical to let a basic human desire for life to have a grand everlasting meaning change the way I feel about a scientific theory, but I am human, so that is how I feel :-).
  • Recent Achievements

    • Collaborator
      ryansurfer98 went up a rank
      Collaborator
    • Week One Done
      Eurosoft10 earned a badge
      Week One Done
    • One Month Later
      Eurosoft10 earned a badge
      One Month Later
    • One Year In
      Skeet Campbell earned a badge
      One Year In
    • One Month Later
      Sharbel earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      577
    2. 2
      +Edouard
      190
    3. 3
      Michael Scrip
      77
    4. 4
      PsYcHoKiLLa
      76
    5. 5
      Steven P.
      73
  • Tell a friend

    Love Neowin? Tell a friend!