<?xml version="1.0" encoding="us-ascii" ?>
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
>
<channel>
	<title>Blog VirusTotal</title>
	<link>http://blog.hispasec.com/virustotal</link>
	<description></description>
	<language>es</language>
	
	<ttl>60</ttl>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>	

	<image>
		<url>http://blog.hispasec.com/virustotal/images/minilogo.png</url>
		<title></title>
		<link>http://blog.hispasec.com/virustotal</link>
	</image>

    <pubDate>Thu, 26 Nov 2009 21:54:49 +0000</pubDate>

		<item>
		<title>VirusTotal Uploader 2.0</title>
		<link>http://blog.hispasec.com/virustotal/47</link>

		<pubDate>Thu, 26 Nov 2009 21:54:49 +0000</pubDate>
		<dc:creator>Gynvael Coldwind</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/47</guid>
		<description>We are proud to present the new version of VirusTotal Uploader with the digit '2' in the version string.&lt;p&gt; 
There are quite a few changes introduced in the new version, including the old functionality being tweaked, as well as various new features being added. At the same time, we managed to keep the Uploader very light-weighted, so it won't take neither too much disk space (below 0.2 MB) nor CPU power.&lt;br&gt; 
&lt;center&gt;
&lt;img src=&quot;http://blog.hispasec.com/virustotal/images/vtu2-3.png&quot; border=0 style=&quot;float: none;&quot;&gt;&lt;/a&gt;
&lt;/center&gt;

At this time, we would like to thank you for the feedback we have received from you so far, all the e-mails were read and taken into account while designing the second version of the Uploader, greatly affecting the shape of the final release!&lt;p&gt; 
Let's start with the original functionality tweaks!&lt;p&gt; 
First of all, you are now able to upload up to 5 files at a time, which comes in handy in case of multiple-file malware queries. Additionally, the file limit has been increased to 20 MB per file.&lt;p&gt; 
Second frequently requested tweak is a pre-upload check if the file is already present in the VirusTotal database. In this version, the Uploader calculates a hash of the file before uploading it, and checks if it appears in the database. If so, the file doesn't get uploaded, saving both time and transfer. Of course, you are still able to force the uploading of the file for reanalysis.&lt;p&gt; 
Additionally, many old functionality bugs have been fixed.&lt;p&gt;
As for the new features: you can now execute the Uploader as a standalone application! In this mode, it is possible to upload a selected process executable, selected from the process list, to the VT, you can drag&amp;drop files for uploading, as well as enter an URL address with a suspicious file, which will get safely uploaded to the VirusTotal for analysis!&lt;br&gt;
&lt;center&gt;
&lt;img src=&quot;http://blog.hispasec.com/virustotal/images/vtu2.png&quot; border=0 style=&quot;float: none;&quot;&gt;&lt;/a&gt;
&lt;/center&gt;
You can download the VirusTotal Uploader 2.0 &lt;a href=&quot;http://www.virustotal.com/vtsetup.exe&quot;&gt;here&lt;/A&gt;. Any feedback is welcome, so if you like our application, have found a bug, or have a feature request, don't hesitate to write us.</description>
	</item>
		<item>
		<title>Extra metadata field: sigcheck</title>
		<link>http://blog.hispasec.com/virustotal/46</link>

		<pubDate>Wed, 16 Sep 2009 11:32:00 +0000</pubDate>
		<dc:creator>jcanto</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/46</guid>
		<description>We've added Microsoft's &lt;a href=&quot;http://technet.microsoft.com/en-us/sysinternals/bb897441.aspx&quot;&gt;Sigcheck&lt;/a&gt; results in the VT reports. It is a very interesting tool that shows information about files, and specially interesting, about digital signatures. I want to thank Microsoft people (specially to Mark Russinovich) for the permission to use it here.</description>
	</item>
		<item>
		<title>VirusTotal += Jiangmin</title>
		<link>http://blog.hispasec.com/virustotal/45</link>

		<pubDate>Mon, 15 Jun 2009 09:05:26 +0000</pubDate>
		<dc:creator>jcanto</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/45</guid>
		<description>Today we're including the AV engine from &lt;a href=&quot;http://global.jiangmin.com/&quot;&gt;Jiangmin&lt;/a&gt;, a Chinese antivirus company. I would like to thank Shaowen for his help during the integration of this engine. </description>
	</item>
		<item>
		<title>Extra metadata field: PDFiD</title>
		<link>http://blog.hispasec.com/virustotal/44</link>

		<pubDate>Tue, 21 Apr 2009 11:04:39 +0000</pubDate>
		<dc:creator>jcanto</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/44</guid>
		<description>We have added the &lt;a href=&quot;http://blog.didierstevens.com&quot;&gt;Didier Stevens'&lt;/a&gt; &lt;a href=&quot;http://blog.didierstevens.com/2009/03/31/pdfid/&quot;&gt;PDFiD&lt;/a&gt; tool result in the VT reports. This is an interesting tool as it checks the PDF content to identify several keywords thay may help identifying potentially suspicious documents. He also included a &lt;a href=&quot;http://blog.didierstevens.com/programs/pdf-tools/#pdfid&quot;&gt;reference about the keywords&lt;/a&gt;, explaining their meaning. I want to thank Didier for all his help in the integration of this cool tool.</description>
	</item>
		<item>
		<title>Extra metadata field: RDS</title>
		<link>http://blog.hispasec.com/virustotal/43</link>

		<pubDate>Wed, 25 Mar 2009 10:05:09 +0000</pubDate>
		<dc:creator>jcanto</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/43</guid>
		<description>We've just added a new metadata in the reports: the results of the Reference Data Set from &lt;a href=&quot;http://www.nsrl.nist.gov&quot;&gt;NIST NSRL&lt;/a&gt;, a quite big set information of known files. Quoting from their web site:

&lt;i&gt;&quot; The RDS is a collection of digital signatures of known, traceable software applications. There are application hash values in the hash set which may be considered malicious, i.e. steganography tools and hacking scripts. There are no hash values of illicit data, i.e. child abuse images. &quot;&lt;/i&gt;

I want to thank NIST people for giving us their permission to use this valuable resource.</description>
	</item>
		<item>
		<title>VirusTotal += Antiy</title>
		<link>http://blog.hispasec.com/virustotal/42</link>

		<pubDate>Tue, 24 Mar 2009 11:16:37 +0000</pubDate>
		<dc:creator>jcanto</dc:creator>
		
		<category>News</category>
		<guid>http://blog.hispasec.com/virustotal/42</guid>
		<description>Today we've included the Antiy-AVL engine from &lt;a href=&quot;http://www.antiy.com&quot;&gt;Antiy&lt;/a&gt;, a Chinese antivirus company. Thanks to Song Bing for helping in the integration of this scanner.</description>
	</item>
	
</channel>
</rss>