Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

please don't use virustotal. #2

Closed
khraoverflow opened this issue Mar 1, 2020 · 1 comment
Closed

please don't use virustotal. #2

khraoverflow opened this issue Mar 1, 2020 · 1 comment

Comments

@khraoverflow
Copy link

khraoverflow commented Mar 1, 2020

using virustotal is not a very smart move ...as it sends automated reports about your obfuscation method to all AV companies.... now 3 detected you... a week later 30 will detect your method ...
so please don't use virustotal or any online mutliscanner for that matter...in fact i was making something similar for the past two weeks , the antivirus i tested against didn't detect anything ...then two days ago it started to detecting it and it's flaged as malware and automatically removed ... note it did not detect anything before. i havent tested your version against the antivirus ..but am guessing it will get detected especially if it's starting automatically from another process.
actually virustotal states this in their homepage : "By submitting your file to VirusTotal you are asking VirusTotal to share your submission with the security community "

@onSec-fr
Copy link
Owner

onSec-fr commented Mar 3, 2020

Hi @khraoverflow and ty for your feedback.

To be clear, i'm not a black hat but someone passionate about infosec working for a safer internet, and more generally for a safer world.
I am aware that total virus is using the data we provide and i'm ok with that.
I hope that security vendors will improve and learn :)
it was just a poc to point out that http traffic isn't taken seriously enough.

Best regards

@onSec-fr onSec-fr closed this as completed Mar 9, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants