KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
KEYNOTE TALK AVerify: AN OPEN-SOURCE ANTI-VIRUS - Eicar
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
Planned tests #3: real-world<br />
� This is slightly harder:<br />
malware<br />
– Find a new threat after it is released<br />
– Repeatedly scan with each anti-virus to determine the<br />
reaction time of AV companies<br />
� Or use any older but common threat<br />
� Install the threat, create a snapshot<br />
– Determine how it installs and stays persistent<br />
– Attempt to disinfect with each AV<br />
– Use a LiveCD to check for successful disinfection on<br />
disk<br />
2010-05-10 EICAR 2010