KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
More difficulties of testing<br />
� Can the test environment be considered<br />
realistic?<br />
– Many malware detect VMware and other vm<br />
– Single tests may run for a few minutes, real users use<br />
their computer for hours<br />
� A better setup would require:<br />
– One physical machine per AV in parallel with identical<br />
hardware<br />
– “dummy” dummy” robots mimicking users<br />
– Knowing which malware are the most common<br />
– Gaining access to new samples near release time<br />
2010-05-10 EICAR 2010