Test Viruses for Download

Virucyde

Junior Member
Sep 19, 2011
18
0
0
Me and my boss at work spent about two hours the other day trying to infect a virtual machine with no AV, minimal updates, and running Win7. After running through plenty of random torrents with cracks for games not released yet, doing everything from IE8, with all security settings set on their lowest, clicking every link that said Download! and installing plenty of free cursors, smileys, and silly games, we were left with a bogged down machine, but no viruses.

Specifically we were hoping to pick up some of the scarewares, or perhaps the TDSS variants, or the ZeroAccess rootkit, but instead we just got a lot of crapware that could've been removed from Add/Remove Programs.

Does anyone have a nice collection of virus droppers I can utilize to teach techs basic virus removal on a virtual machine? Because even when I try, I can't seem to pick one up
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
I used to have about 10GB of samples lying around. If you want to get something nasty, try some software crackz and you may end up with TDL-4, I hear that's one of their main MOs. Or try the Zeus tracker sites like https://zeustracker.abuse.ch/monitor.php.

Also remember that a lot of malware is VM-aware and won't run on a VM, and some of it is also time-delayed... there was one family where I'd install the Trojan, then turn the system's clock forward a day to get it to activate. If you do infect the VM, remember it can attack other systems and shares on the network just like a real system. Infecting your shares, injecting malicious Iframes into your other systems' network packets, subverting your router... make sure you know what you're doing

Anyway, your best bet for malware practice is a physical machine with a CPU that doesn't feature hardware-enforced DEP (or has it disabled in the BIOS), and preferably loaded with highly out-of-date installations of Java, Adobe Reader, Flash Player, QuickTime and RealPlayer. I used Win2000, a 1GHz Duron, a 15000rpm SCSI drive and Acronis TrueImage, so I could re-image in ~2 minutes and be ready for another go.
 
Last edited:
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |