home.social

#virustotal — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #virustotal, aggregated by home.social.

fetched live
  1. Also back to #VirusTotal saying Microsoft would flag it as Malware too.

    Well just uploaded the file there and it says it doesn't. And "Final determination: Not malware"

    However a local scan with Windows Defender is kinda stupid as it says "No current threats" as well as "1 threat found" but then doesn't do any alarming?!?

    Anyway that's the kind of quality I've come to expect from #Microslop these days...

    #Microsoft

  2. Also back to #VirusTotal saying Microsoft would flag it as Malware too.

    Well just uploaded the file there and it says it doesn't. And "Final determination: Not malware"

    However a local scan with Windows Defender is kinda stupid as it says "No current threats" as well as "1 threat found" but then doesn't do any alarming?!?

    Anyway that's the kind of quality I've come to expect from #Microslop these days...

    #Microsoft

  3. Also back to #VirusTotal saying Microsoft would flag it as Malware too.

    Well just uploaded the file there and it says it doesn't. And "Final determination: Not malware"

    However a local scan with Windows Defender is kinda stupid as it says "No current threats" as well as "1 threat found" but then doesn't do any alarming?!?

    Anyway that's the kind of quality I've come to expect from #Microslop these days...

    #Microsoft

  4. Also back to #VirusTotal saying Microsoft would flag it as Malware too.

    Well just uploaded the file there and it says it doesn't. And "Final determination: Not malware"

    However a local scan with Windows Defender is kinda stupid as it says "No current threats" as well as "1 threat found" but then doesn't do any alarming?!?

    Anyway that's the kind of quality I've come to expect from #Microslop these days...

    #Microsoft

  5. Also #VirusTotal apparently flags an exe that iterates over all available drive letters as "checks-usb-bus". Even though it literally doesn't...

  6. Also #VirusTotal apparently flags an exe that iterates over all available drive letters as "checks-usb-bus". Even though it literally doesn't...

  7. Also #VirusTotal apparently flags an exe that iterates over all available drive letters as "checks-usb-bus". Even though it literally doesn't...

  8. Also #VirusTotal apparently flags an exe that iterates over all available drive letters as "checks-usb-bus". Even though it literally doesn't...

  9. Is it just me or has #VirusTotal become almost entirely useless at this point?

    Currently looking at a file from 2018 and it shows up with 29/69 positive. All just "Unwanted/Win32.Agent.C2359729", "GrayWare/Win32.Creprote", "Unsafe", "Trojan:Win32/Pepatch", "Trojan Horse", "Trojan.Agent/Generic".

    But when I look at the sandbox results it likely tripped because:
    1) starts WER (Windows Error Reporter) aka. the app crashes.
    2) Opens a paypal link
    3) Paypal showing a recaptcha

    #infosec #itsecurity

  10. Is it just me or has #VirusTotal become almost entirely useless at this point?

    Currently looking at a file from 2018 and it shows up with 29/69 positive. All just "Unwanted/Win32.Agent.C2359729", "GrayWare/Win32.Creprote", "Unsafe", "Trojan:Win32/Pepatch", "Trojan Horse", "Trojan.Agent/Generic".

    But when I look at the sandbox results it likely tripped because:
    1) starts WER (Windows Error Reporter) aka. the app crashes.
    2) Opens a paypal link
    3) Paypal showing a recaptcha

    #infosec #itsecurity

  11. Is it just me or has #VirusTotal become almost entirely useless at this point?

    Currently looking at a file from 2018 and it shows up with 29/69 positive. All just "Unwanted/Win32.Agent.C2359729", "GrayWare/Win32.Creprote", "Unsafe", "Trojan:Win32/Pepatch", "Trojan Horse", "Trojan.Agent/Generic".

    But when I look at the sandbox results it likely tripped because:
    1) starts WER (Windows Error Reporter) aka. the app crashes.
    2) Opens a paypal link
    3) Paypal showing a recaptcha

    #infosec #itsecurity

  12. Is it just me or has #VirusTotal become almost entirely useless at this point?

    Currently looking at a file from 2018 and it shows up with 29/69 positive. All just "Unwanted/Win32.Agent.C2359729", "GrayWare/Win32.Creprote", "Unsafe", "Trojan:Win32/Pepatch", "Trojan Horse", "Trojan.Agent/Generic".

    But when I look at the sandbox results it likely tripped because:
    1) starts WER (Windows Error Reporter) aka. the app crashes.
    2) Opens a paypal link
    3) Paypal showing a recaptcha

    #infosec #itsecurity

  13. A #Wordpress site belonging to an friend (I’m not the admin...) was successfully hacked using #wp2shell (17.07.2026; #CVE-2026-63030), just 5 days after the first exploit published (20.07.). Another 5 days later, the website was abused for SEO spamming and for hosting phishing…

    If you haven't already, update your Wordpress (preferably yesterday…) and also enable automatic updates for themes and plug-ins!

    I found several PHP backdoors/webshells (see @abuse_ch Malware Bazaar and #VirusTotal (hashes below)). Interestingly, not every sample was detected by the #YARA rules from @cyb3rops and github.com/ruppde/yara_rules.

    tl;dr #wp2shell is being actively exploited, patch immediately and enable automatic updates.

    Hashes:
    1093b4045b45a8498d146e31788c25769f992056c8ffc582b5d8c06598598966
    05e3884a478d3bc8fd7285dabb74107422f1615d2d7f80df9b8438d4beb663da
    bb9136494a546368e7c9b6252c2e1c5af9327c07947908a9ba6fdd78fb4bf4cf
    1e7ca9074cc2eca8d366022629f665d9ffaa79e0621bb579bf5aabe681cb07e8
    8ebaf3ba0be7b62269aaf333cfaf66c1dea6e8ee495a917691beb550b4bbf0ab
    e3fb920aa70c7ad5c67b4d9b8e60954f5e0c1a07c0eba09505816b966f4d1a3c
    165e94c87ef17389c8de25ba2a6c31b348e3c916dab89d0dd3708156414f3de5
    b55cf5af8b57e9d56c69d00e023e2384c7eb184614c2a2a283062ebeaf4a26c6
    a46230a1638b9b341d15a640ead1b885548c1d1e5a149657e8e315540a068be8
    7918f29993383e579ef33bd0d8e766fd2ce047dce83bac51efb5fe17578b6cdf
    ae9ee9db7c41e04c531298782b908766c769a899aa92df3f64f4a83baa77ad09

  14. A #Wordpress site belonging to an friend (I’m not the admin...) was successfully hacked using #wp2shell (17.07.2026; CVE-2026-63030 + CVE-2026-60137), just 5 days after the first exploit published (20.07.). Another 5 days later, the website was abused for SEO spamming and for hosting phishing…

    If you haven't already, update your Wordpress (preferably yesterday…; >=v7.0.2 or >= 6.9.5) and also enable automatic updates for themes and plug-ins!

    I found several PHP backdoors/webshells (see @abuse_ch Malware Bazaar and #VirusTotal (hashes below)). Interestingly, not every sample was detected by the #YARA rules from @cyb3rops and github.com/ruppde/yara_rules.

    tl;dr #wp2shell is being actively exploited, patch immediately and enable automatic updates.

    Hashes:
    1093b4045b45a8498d146e31788c25769f992056c8ffc582b5d8c06598598966
    05e3884a478d3bc8fd7285dabb74107422f1615d2d7f80df9b8438d4beb663da
    bb9136494a546368e7c9b6252c2e1c5af9327c07947908a9ba6fdd78fb4bf4cf
    1e7ca9074cc2eca8d366022629f665d9ffaa79e0621bb579bf5aabe681cb07e8
    8ebaf3ba0be7b62269aaf333cfaf66c1dea6e8ee495a917691beb550b4bbf0ab
    e3fb920aa70c7ad5c67b4d9b8e60954f5e0c1a07c0eba09505816b966f4d1a3c
    165e94c87ef17389c8de25ba2a6c31b348e3c916dab89d0dd3708156414f3de5
    b55cf5af8b57e9d56c69d00e023e2384c7eb184614c2a2a283062ebeaf4a26c6
    a46230a1638b9b341d15a640ead1b885548c1d1e5a149657e8e315540a068be8
    7918f29993383e579ef33bd0d8e766fd2ce047dce83bac51efb5fe17578b6cdf
    ae9ee9db7c41e04c531298782b908766c769a899aa92df3f64f4a83baa77ad09

  15. A #Wordpress site belonging to an friend (I’m not the admin...) was successfully hacked using #wp2shell (17.07.2026; #CVE-2026-63030), just 5 days after the first exploit published (20.07.). Another 5 days later, the website was abused for SEO spamming and for hosting phishing…

    If you haven't already, update your Wordpress (preferably yesterday…) and also enable automatic updates for themes and plug-ins!

    I found several PHP backdoors/webshells (see @abuse_ch Malware Bazaar and #VirusTotal (hashes below)). Interestingly, not every sample was detected by the #YARA rules from @cyb3rops and github.com/ruppde/yara_rules.

    tl;dr #wp2shell is being actively exploited, patch immediately and enable automatic updates.

    Hashes:
    1093b4045b45a8498d146e31788c25769f992056c8ffc582b5d8c06598598966
    05e3884a478d3bc8fd7285dabb74107422f1615d2d7f80df9b8438d4beb663da
    bb9136494a546368e7c9b6252c2e1c5af9327c07947908a9ba6fdd78fb4bf4cf
    1e7ca9074cc2eca8d366022629f665d9ffaa79e0621bb579bf5aabe681cb07e8
    8ebaf3ba0be7b62269aaf333cfaf66c1dea6e8ee495a917691beb550b4bbf0ab
    e3fb920aa70c7ad5c67b4d9b8e60954f5e0c1a07c0eba09505816b966f4d1a3c
    165e94c87ef17389c8de25ba2a6c31b348e3c916dab89d0dd3708156414f3de5
    b55cf5af8b57e9d56c69d00e023e2384c7eb184614c2a2a283062ebeaf4a26c6
    a46230a1638b9b341d15a640ead1b885548c1d1e5a149657e8e315540a068be8
    7918f29993383e579ef33bd0d8e766fd2ce047dce83bac51efb5fe17578b6cdf
    ae9ee9db7c41e04c531298782b908766c769a899aa92df3f64f4a83baa77ad09

  16. A #Wordpress site belonging to an friend (I’m not the admin...) was successfully hacked using #wp2shell (17.07.2026; #CVE-2026-63030), just 5 days after the first exploit published (20.07.). Another 5 days later, the website was abused for SEO spamming and for hosting phishing…

    If you haven't already, update your Wordpress (preferably yesterday…) and also enable automatic updates for themes and plug-ins!

    I found several PHP backdoors/webshells (see @abuse_ch Malware Bazaar and #VirusTotal (hashes below)). Interestingly, not every sample was detected by the #YARA rules from @cyb3rops and github.com/ruppde/yara_rules.

    tl;dr #wp2shell is being actively exploited, patch immediately and enable automatic updates.

    Hashes:
    1093b4045b45a8498d146e31788c25769f992056c8ffc582b5d8c06598598966
    05e3884a478d3bc8fd7285dabb74107422f1615d2d7f80df9b8438d4beb663da
    bb9136494a546368e7c9b6252c2e1c5af9327c07947908a9ba6fdd78fb4bf4cf
    1e7ca9074cc2eca8d366022629f665d9ffaa79e0621bb579bf5aabe681cb07e8
    8ebaf3ba0be7b62269aaf333cfaf66c1dea6e8ee495a917691beb550b4bbf0ab
    e3fb920aa70c7ad5c67b4d9b8e60954f5e0c1a07c0eba09505816b966f4d1a3c
    165e94c87ef17389c8de25ba2a6c31b348e3c916dab89d0dd3708156414f3de5
    b55cf5af8b57e9d56c69d00e023e2384c7eb184614c2a2a283062ebeaf4a26c6
    a46230a1638b9b341d15a640ead1b885548c1d1e5a149657e8e315540a068be8
    7918f29993383e579ef33bd0d8e766fd2ce047dce83bac51efb5fe17578b6cdf
    ae9ee9db7c41e04c531298782b908766c769a899aa92df3f64f4a83baa77ad09

  17. Grüne Häkchen bei VirusTotal bedeuten nicht, dass eine App garantiert sauber ist. Und rote Warnungen beweisen umgekehrt noch lange keine Malware.

    Unser POC zeigt, wie fragwürdig manche Treffer zustande kommen: Bei einer APK reichte bereits das AndroidManifest.xml mit seinen Metadaten und Berechtigungen für Warnungen - ganz ohne ausführbaren Schadcode. Besonders absurd: Ein Scanner wollte die App nur freigeben, wenn sie im Google Play Store erscheint.

    Scanner liefern lediglich Hinweise. Warum man genauer hinschauen sollte und weshalb der Play Store kein Vertrauensanker sein darf. 👇

    kuketz-blog.de/wie-viel-verlas

    #Android #VirusTotal #FDroid #OpenSource #ITSecurity

    @IzzyOnDroid

  18. Grüne Häkchen bei VirusTotal bedeuten nicht, dass eine App garantiert sauber ist. Und rote Warnungen beweisen umgekehrt noch lange keine Malware.

    Unser POC zeigt, wie fragwürdig manche Treffer zustande kommen: Bei einer APK reichte bereits das AndroidManifest.xml mit seinen Metadaten und Berechtigungen für Warnungen - ganz ohne ausführbaren Schadcode. Besonders absurd: Ein Scanner wollte die App nur freigeben, wenn sie im Google Play Store erscheint.

    Scanner liefern lediglich Hinweise. Warum man genauer hinschauen sollte und weshalb der Play Store kein Vertrauensanker sein darf. 👇

    kuketz-blog.de/wie-viel-verlas

    #Android #VirusTotal #FDroid #OpenSource #ITSecurity

    @IzzyOnDroid

  19. Grüne Häkchen bei VirusTotal bedeuten nicht, dass eine App garantiert sauber ist. Und rote Warnungen beweisen umgekehrt noch lange keine Malware.

    Unser POC zeigt, wie fragwürdig manche Treffer zustande kommen: Bei einer APK reichte bereits das AndroidManifest.xml mit seinen Metadaten und Berechtigungen für Warnungen - ganz ohne ausführbaren Schadcode. Besonders absurd: Ein Scanner wollte die App nur freigeben, wenn sie im Google Play Store erscheint.

    Scanner liefern lediglich Hinweise. Warum man genauer hinschauen sollte und weshalb der Play Store kein Vertrauensanker sein darf. 👇

    kuketz-blog.de/wie-viel-verlas

    #Android #VirusTotal #FDroid #OpenSource #ITSecurity

    @IzzyOnDroid

  20. Grüne Häkchen bei VirusTotal bedeuten nicht, dass eine App garantiert sauber ist. Und rote Warnungen beweisen umgekehrt noch lange keine Malware.

    Unser POC zeigt, wie fragwürdig manche Treffer zustande kommen: Bei einer APK reichte bereits das AndroidManifest.xml mit seinen Metadaten und Berechtigungen für Warnungen - ganz ohne ausführbaren Schadcode. Besonders absurd: Ein Scanner wollte die App nur freigeben, wenn sie im Google Play Store erscheint.

    Scanner liefern lediglich Hinweise. Warum man genauer hinschauen sollte und weshalb der Play Store kein Vertrauensanker sein darf. 👇

    kuketz-blog.de/wie-viel-verlas

    #Android #VirusTotal #FDroid #OpenSource #ITSecurity

    @IzzyOnDroid

  21. Grüne Häkchen bei VirusTotal bedeuten nicht, dass eine App garantiert sauber ist. Und rote Warnungen beweisen umgekehrt noch lange keine Malware.

    Unser POC zeigt, wie fragwürdig manche Treffer zustande kommen: Bei einer APK reichte bereits das AndroidManifest.xml mit seinen Metadaten und Berechtigungen für Warnungen - ganz ohne ausführbaren Schadcode. Besonders absurd: Ein Scanner wollte die App nur freigeben, wenn sie im Google Play Store erscheint.

    Scanner liefern lediglich Hinweise. Warum man genauer hinschauen sollte und weshalb der Play Store kein Vertrauensanker sein darf. 👇

    kuketz-blog.de/wie-viel-verlas

    #Android #VirusTotal #FDroid #OpenSource #ITSecurity

    @IzzyOnDroid

  22. Я прошёл крипто-развод до конца и реверснул дрейнер: 12 доменов и не меньше $784k у ~70 жертв

    Самое странное в этом дрейнере - его не видит ни один антивирус. VirusTotal: 0 из 91, а кошельки пустеют. Размотал всю схему: как жертва подписывает свой слив сама и куда уходят деньги.

    habr.com/ru/articles/1050718/

    #расследование #криптовалюты #фишинг #Binance #дрейнер #crypto_drainer #реверсинжиниринг #OSINT #VirusTotal

  23. Я прошёл крипто-развод до конца и реверснул дрейнер: 12 доменов и не меньше $784k у ~70 жертв

    Самое странное в этом дрейнере - его не видит ни один антивирус. VirusTotal: 0 из 91, а кошельки пустеют. Размотал всю схему: как жертва подписывает свой слив сама и куда уходят деньги.

    habr.com/ru/articles/1050718/

    #расследование #криптовалюты #фишинг #Binance #дрейнер #crypto_drainer #реверсинжиниринг #OSINT #VirusTotal

  24. Я прошёл крипто-развод до конца и реверснул дрейнер: 12 доменов и не меньше $784k у ~70 жертв

    Самое странное в этом дрейнере - его не видит ни один антивирус. VirusTotal: 0 из 91, а кошельки пустеют. Размотал всю схему: как жертва подписывает свой слив сама и куда уходят деньги.

    habr.com/ru/articles/1050718/

    #расследование #криптовалюты #фишинг #Binance #дрейнер #crypto_drainer #реверсинжиниринг #OSINT #VirusTotal

  25. Watch out as scammers abuse GitHub, SourceForge, YouTube, and VirusTotal trust signals to spread a crypto clipper targeting Windows and Mac users.

    Read: hackread.com/scammers-fake-git

  26. Watch out as scammers abuse GitHub, SourceForge, YouTube, and VirusTotal trust signals to spread a crypto clipper targeting Windows and Mac users.

    Read: hackread.com/scammers-fake-git

    #CyberSecurity #Malware #Crypto #GitHub #YouTube #VirusTotal

  27. Watch out as scammers abuse GitHub, SourceForge, YouTube, and VirusTotal trust signals to spread a crypto clipper targeting Windows and Mac users.

    Read: hackread.com/scammers-fake-git

    #CyberSecurity #Malware #Crypto #GitHub #YouTube #VirusTotal

  28. Watch out as scammers abuse GitHub, SourceForge, YouTube, and VirusTotal trust signals to spread a crypto clipper targeting Windows and Mac users.

    Read: hackread.com/scammers-fake-git

    #CyberSecurity #Malware #Crypto #GitHub #YouTube #VirusTotal

  29. Watch out as scammers abuse GitHub, SourceForge, YouTube, and VirusTotal trust signals to spread a crypto clipper targeting Windows and Mac users.

    Read: hackread.com/scammers-fake-git

    #CyberSecurity #Malware #Crypto #GitHub #YouTube #VirusTotal

  30. I've found some old files way deep in the depths of my NAS and wanted to upload the then-famous NrZuName.dll for #klickTel to the @internetarchive . However, the upload was removed automatically.

    After checking the files on #VirusTotal, it appears that the EXE gets wrongly flagged by several engines, even though the "Code insights" truthfully say:

    The sample is a benign command-line utility named 'nr2name.exe' designed to look up names associated with a given number. It validates command-line arguments, dynamically loads a local helper library 'NrZuName.dll' via LoadLibraryA, and calls the exported function 'SucheNamen' using GetProcAddress. The program features descriptive console output and standard error handling, with no indicators of malicious behavior, evasion techniques, or suspicious API usage.

    Even the DLL itself gets flagged by 2 engines: Cynet (“Malicious (score: 100)”) and Kingsoft (“Malware.kb.a.889”), which both don't seem very trustworthy to me.

    Looks like, this is a recurring problem, too:

    Looks like this piece of software won't be preserved, then.

  31. I've found some old files way deep in the depths of my NAS and wanted to upload the then-famous NrZuName.dll for #klickTel to the @internetarchive . However, the upload was removed automatically.

    After checking the files on #VirusTotal, it appears that the EXE gets wrongly flagged by several engines, even though the "Code insights" truthfully say:

    The sample is a benign command-line utility named 'nr2name.exe' designed to look up names associated with a given number. It validates command-line arguments, dynamically loads a local helper library 'NrZuName.dll' via LoadLibraryA, and calls the exported function 'SucheNamen' using GetProcAddress. The program features descriptive console output and standard error handling, with no indicators of malicious behavior, evasion techniques, or suspicious API usage.

    Even the DLL itself gets flagged by 2 engines: Cynet (“Malicious (score: 100)”) and Kingsoft (“Malware.kb.a.889”), which both don't seem very trustworthy to me.

    Looks like, this is a recurring problem, too:

    Looks like this piece of software won't be preserved, then.

  32. I appreciate that #virustotal gives you a free API key, but the limitations on looking up files is seriously frustrating. One file every 15 seconds?

    Call me crazy, but for their purposes, wouldn't it be beneficial to have a higher limit?

    Also does anyone know of a virus scanning website with a higher rate API?

  33. I appreciate that #virustotal gives you a free API key, but the limitations on looking up files is seriously frustrating. One file every 15 seconds?

    Call me crazy, but for their purposes, wouldn't it be beneficial to have a higher limit?

    Also does anyone know of a virus scanning website with a higher rate API?

  34. I appreciate that #virustotal gives you a free API key, but the limitations on looking up files is seriously frustrating. One file every 15 seconds?

    Call me crazy, but for their purposes, wouldn't it be beneficial to have a higher limit?

    Also does anyone know of a virus scanning website with a higher rate API?

  35. I appreciate that #virustotal gives you a free API key, but the limitations on looking up files is seriously frustrating. One file every 15 seconds?

    Call me crazy, but for their purposes, wouldn't it be beneficial to have a higher limit?

    Also does anyone know of a virus scanning website with a higher rate API?

  36. I appreciate that #virustotal gives you a free API key, but the limitations on looking up files is seriously frustrating. One file every 15 seconds?

    Call me crazy, but for their purposes, wouldn't it be beneficial to have a higher limit?

    Also does anyone know of a virus scanning website with a higher rate API?

  37. It's been a while since I've found a need to do this, and I assume tools have changed a bit, so some #FediHelp would be appreciated...

    What is the most accurate way to find existing #DomainNames , or more specifically, #SubDomains , where I already know the #TLD ?

    #VirusTotal allows me to drill down from the main serving IP address to get to the #ASN - then reference the "Relations" tab for passive #DNS replication -BUT- I suspect the list may only be partially complete and/or 'outdated'.

  38. It's been a while since I've found a need to do this, and I assume tools have changed a bit, so some #FediHelp would be appreciated...

    What is the most accurate way to find existing #DomainNames , or more specifically, #SubDomains , where I already know the #TLD ?

    #VirusTotal allows me to drill down from the main serving IP address to get to the #ASN - then reference the "Relations" tab for passive #DNS replication -BUT- I suspect the list may only be partially complete and/or 'outdated'.

  39. @virustotal maybe it's worth to look into increasing free quota based on quality of reports. If a source reports a lot of malware with unique signatures then perhaps you don't want to enforce the default quota and miss out on reports (on days where the source is busy).

    I bet you already have some sort of usefulness score for sources anyway ?!

    #infosec #dfir #security #cybersecurity #virustotal

  40. @virustotal maybe it's worth to look into increasing free quota based on quality of reports. If a source reports a lot of malware with unique signatures then perhaps you don't want to enforce the default quota and miss out on reports (on days where the source is busy).

    I bet you already have some sort of usefulness score for sources anyway ?!

    #infosec #dfir #security #cybersecurity #virustotal

  41. 🔥 TRENDING

    📢 VirusTotal APK 病毒检测统计 20220101-20220831

    🔗 blog.trustlook.com/virustotal-

    #Virustotal #GlobalFeed #News #EN

    <i>Automatically posted by Global Feed Bot</i>

  42. 🔥 TRENDING

    📢 VirusTotal APK 病毒检测统计 20220101-20220831

    🔗 blog.trustlook.com/virustotal-

    #Virustotal #GlobalFeed #News #EN

    <i>Automatically posted by Global Feed Bot</i>

  43. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  44. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  45. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  46. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  47. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  48. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  49. Die Virenklatsche hat mal wieder einen erwischt, den der Spamfilter nicht auf dem Schirm hatte. 13 von 63 Scannern bei #Virustotal kannten die Prüfsumme. Es lohnt sich immer wieder, mehrere "lines of defense" zu haben.

    Wie das bei mir läuft? Im Procmail laufen einige Filter, von denen eines per Python-Script die Prüfsummen der Attachments einzeln bei Virustotal prüft. So bleiben die eigentlichen Daten vertraulich und es geht dort erheblich schneller mit 50+ Scannern als mit einem lokal.

  50. 🔥 TRENDING

    📢 VirusTotal APK 病毒检测统计 20220101-20220831

    🔗 blog.trustlook.com/virustotal-

    #Virustotal #GlobalFeed #News #EN

    <i>Automatically posted by Global Feed Bot</i>

    🚀

  51. Apparently we reached the state of #Thoughtcrime punishment, it's called #precrime and on virustotal. Microsoft and Sophos just "blocked" (aka content filter says it's porn... whuat?) a friend's website because the #AI was suspicious of his AI website probably because on #Virustotal PreCrime is flagging it as will-be-malicious-in-the-future.

    I want my Internet back.