View Full Version : Need to find viruses and spyware for testing
Is there a site I can use (or something I can download) to intentionally infect a PC? I'm putting together a bootable rescue CD and I want to run it through it's paces.
tia
-OC
Jcranmer
10-13-2004, 11:43 AM
Check here:
http://www.eicar.org/anti_virus_test_file.htm
For the eicar test virus. it's not really a virus, but all virus checkers should detect it. It's not exactly what you were asking for, but it a start. :)
DarkFury
10-13-2004, 12:05 PM
Is there a site I can use (or something I can download) to intentionally infect a PC? I'm putting together a bootable rescue CD and I want to run it through it's paces.
tia
-OC
Well you could set up each PC with a "hotmail" account and then open up all the e-mails that say
"Here's the file that you requested". :D
redcolours
10-13-2004, 01:36 PM
go and look for FREE demos and FREE games - usually has gator and the usual spyware $h!t along with the main free game.
download those pr0n programs? heh - though you may not want to do that if its for work.
look for lycos toolbar crap, maybe bonzi buddy bull$h1t. those are what always comes up when i check for spyware in infected systems.
go and look for FREE demos and FREE games - usually has gator and the usual spyware $h!t along with the main free game.
download those pr0n programs? heh - though you may not want to do that if its for work.
look for lycos toolbar crap, maybe bonzi buddy bull$h1t. those are what always comes up when i check for spyware in infected systems.
Not for work, no. Laying the groundwork for my own small business.
DarkFury
10-13-2004, 02:06 PM
Before and after you get the PC infected with nasties... be sure to use Ghost so that you can recreate a "controlled environment". :D
Before and after you get the PC infected with nasties... be sure to use Ghost so that you can recreate a "controlled environment". :D
Yep, done that part already. The CD I've made provides drive imaging ability, McAfee command line anti virus, and AdAware for spyware removal. Now I just need to fully test it, which I need viruses and spyware for. I'd also like to add secondary A/V and spyware apps since not all of them cathc the saem stuff. There are things that Spybot catches that AdAware doesn't, for example.
Jeffbx
10-14-2004, 03:56 AM
Pfft - just load a basic image of W2K or XP & don't apply any security updates or service packs. Put it on an unprotected internet connection & let it sit for a few hours. You'll get infected pretty quickly, I'd bet.
Pfft - just load a basic image of W2K or XP & don't apply any security updates or service packs. Put it on an unprotected internet connection & let it sit for a few hours. You'll get infected pretty quickly, I'd bet.
Heh. That's not a bad idea.
cruelpupet
10-14-2004, 09:01 AM
127.0.0.1 sitefinder.verisign.com
127.0.0.1 sitefinder-idn.verisign.com
127.0.0.1 is.netster.com
127.0.0.1 search.netster.com
127.0.0.1 uu-3-130.buydomains.com
127.0.0.1 ns1.maximumhost.com
127.0.0.1 ns1.rosexxxgarden.com
127.0.0.1 ns2.rosexxxgarden.com
127.0.0.1 ns3.totalnic.net
127.0.0.1 coolwebsearsh.com
127.0.0.1 viewpoint.com
127.0.0.1 devils****.com
those are some of the sites i have blocked...that infect PC's or collect information
Yep, done that part already. The CD I've made provides drive imaging ability, McAfee command line anti virus, and AdAware for spyware removal. Now I just need to fully test it, which I need viruses and spyware for. I'd also like to add secondary A/V and spyware apps since not all of them cathc the saem stuff. There are things that Spybot catches that AdAware doesn't, for example.
There was a nifty piece of spyware that I was infected with that Deleted Adaware and Spybot.
Adaware was able to be reinstalled...but any window that contained the word "Spybot" was closed and any file deleted.
rajatQ2
10-14-2004, 02:12 PM
Pfft - just load a basic image of W2K or XP & don't apply any security updates or service packs. Put it on an unprotected internet connection & let it sit for a few hours. You'll get infected pretty quickly, I'd bet.
we do this in our lab at work. its called a "honeypot". It is quite easy for you to do. To collect more virii, add some services like IIS or Sql server, unpatched.
Take it offline after a few hours though. Our challenge in keeping it running at a big corporation is, how do you keep the infected machine from propagating viruses? We could be liable for any damage it causes.
KCEnder
10-15-2004, 10:16 AM
if you look for program key code cracks on google, then run the exe's you will get infected quickly.
Thanks for all the help, everyone. I appreciate it. :)
Powered by vBulletin® Version 4.1.12 Copyright © 2013 vBulletin Solutions, Inc. All rights reserved.