in

eEye Digital Security

The endpoint to vulnerability starts here.

 

sending samples

Last post 06-28-2009 4:16 PM by amvinfe. 4 replies.
Page 1 of 1 (5 items)
Sort Posts: Previous Next
  • 06-27-2009 5:06 PM

    sending samples

     Hello to the whole community,
    where we can send infected samples that Blink does not recognize?
    Thank you

    Marco

    amvinfe at suspectfile dot com

     

  • 06-27-2009 8:17 PM In reply to

    Re: sending samples

         If I remember correctly, you need to zip them up with the password "infected" on the zipped archive.  Each zip archive can contain no more than 10 files and can not be larger than 10mb in size.  Send your email with your attachment(s) to malware@eeye.com and explain that you need the files submitted to Norman.  If you have any issues let us know.

     

  • 06-28-2009 2:21 AM In reply to

    Re: sending samples

     

    Thanks for the information.
    I'm testing this product and I have seen that the detection of malware is pretty low, I feel rather good firewall.

    Regards

    Marco
  • 06-28-2009 7:54 AM In reply to

    Re: sending samples

    Yes, Norman is not the strongest product when trying to detect Malware, however, its Sandbox technology is what makes special when compared to other AV applications.  Keep in mind that when your testing Blink, remember that it is not trying to compete with everyone else on how many signatures (out of a total number of "known" ones) does it detect.  Blink is focused on protecting you from vulnerabilities being exploited (which pulls most of your Malware to your system) in the first place.  If your new to Blink (and I don't know if you are or are not) I tried to create a post explaining why Blink is different located here:

    http://forums.eeye.com/forums/t/998.aspx

  • 06-28-2009 4:16 PM In reply to

    Re: sending samples

     

    Hi,
    yes indeed I am very pleased the integrated modules, that unfortunately repeat Norman is not the best even if comprehensive technology sandbox.
    In suspectfile(dot)com we have seen those problems have this antivirus in identifying malware, unfortunate that the eEye Digital Security is not supported on a different product or at least not make a speech with the company other than Norwegian.
    Sandbox was released 4 years ago now and big steps forward have not been made.
    In 2006 and 2007 I conducted the test on 26 antivirus and I have not been able to find a low detection of malware by Norman, the best thing is just heuristics and detection of dialers, nothing more. www(dot)suspectfile(dot)com/report.php
    A suite should be complete shame that Blink can not have a reliable partner.
    Last night I did check the archive that I first happened on the PC, a file with 31 infected samples, 5 were found to be Norman but the other 26 did not detect anything and note that samples are recognized by other companies for at least 3 months; )
    Now send the first block of files, I get to laugh at the thought that the files that I have to check about 500 MB 

    Ciao
    Marco
Page 1 of 1 (5 items)
© 1995 - 2009 eEye Incorporated