Bit9 product joins the service
Bit9's FileAdvisor joins the list of engines included at VirusTotal. This is an interesting inclusion because of FileAdvisor nature: basically it works like a white list of legit applications. This can be very useful for people scanning samples that may look suspicious but that are in fact simply part of legit applications. Bit9 people is also including malware descriptions in their database, so it can also detect malicious samples. Although the report of this engine may not be very descriptive, in the additional information part of the report, in case of a positive detection, FileAdvisor will include an URL with a description of the scanned file.
|
"You searched for
MD5: 1234567890...
Your hash has been found in 12345... Package(s).
Click here to Login or Register to view more information."
I don't like to sign up!
"Not analyzed yet" should be greyed-out like "no virus found".
Hello,
Congratulation on your significant number of new engines that were added !!
Also I was wondering if you could add the Comodo Antivirus Engine since its quite good ??
Thanks
Al968
I don't get this fileadvisor
Ok so I scan the mydoom worm on vt and results are
Ewido 4.0 02.21.2007 Worm.Mydoom.m
FileAdvisor 1 02.22.2007 Low threat detected
Fortinet 2.85.0.0 02.22.2007 W32/MyDoom.BB@mm
Fileadvisor say low threat detected
LOW!!!!!!! I thought mydoom was one of the biggest worms around
what a joke
sahbdhsgsgdghsvdgsgdsddssatbdycgvfhf.
In response to joe..
"I don't get this fileadvisor"
Clearly.
From the OP:
"basically it works like a white list of legit applications"
If someone thinks the file is bad, but it is actually legit and apart of say firefox then it will tell them that it is apart of firefox instead of simply returning no result found.
I mean..did you even read the original post?
Yeah I did read it, im just confused to why it say low threat detected. goof
Hello, Can you please update the clamav engine
Reason: sometimes its not detecting viruses as it should, I run two version of clamav on my computer, the old version just like yours will NOT detect the file but the new version will detect the virus, this may have something to do with the f-level
Thank You Jcanto for releasing 0.90.1 and fixing the problem i discribed in clamav mailing list
i am fed up the virus and i went free downloading virus
FileAdvisor is nothing else than a scam to get you to sign up to them and give them your particulars. Even then it's practically useless - stay away!
And shame to VirusTotal for taking part in this. I suggest you switch over to "Online malware scan" at http://virusscan.jotti.org/ until VirusTotal come to their senses and ditch FileAdvisor.
lol omg OMG O M G FUCK YOU
tìm hiểu các chương trình duyệt virust mới nhất
eu quero remover todos os virus
EICAR TEST FILE no reaction from FileAdvisor:)
Please send trackbacks to: http://blog.hispasec.nospam/virustotal/19/tbZ3ping
Replace "nospam" with "com"
There are no trackbacks.