Monday, January 30, 2012

Virus Total..

or...

Virus Totally undetected,

or...

Totally gone to shit,

or...

Fuck, you just made my job that much harder!

Anyways.. I had to rant.. enough embarrassment, besides.. "Blogging" is like graffiti with punctuation!

Now, onto the goods dammit!

In the past, VirusTotal provided a unique feature that would scan the domain of a URL and then grab the associated file type the web-server was offering up. For example:

hxxp://www.thisisabadfile.com/bad/file/virus.exe

VirusTotal would scan the domain: thisisabadfile

Then

VirusTotal would simultaneously scan the file: virus.exe

This provided a great way to analyze files and domains.

However, this feature no longer exists.

VirusTotal has moved their services to the cloud and domain/file checking is no longer rolled into one operation.

VirusTotal forces the user to "Upload" a file to use this functionality.

For security analysts on a secure network segment, they can not always pull down or obtain a copy/sample of the malicious/suspected file to submit.

Tisk tisk VT.. I've lost faith.. Hopefully you fix this!

To be continued..

No comments:

Post a Comment