OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: malware scanning

From: Jamie Riden (jamie.ridengmail.com)
Date: Mon Jan 05 2009 - 12:00:36 CST


2008/12/22 <sisram2gmail.com>:
> Is there any commercial / free tool to externally scan websites for malwares?

I agree with another poster, Capture HPC is a good, free tool for
doing this. It essentially visits the site using a high-interaction
honeypot and looks for state changes in the VM.

Are you wanting to do this for lots of sites? e.g. are you an admin
checking on sites their users visit, or just keeping an eye on a
couple of sites you visit/run to make sure everything's OK?

(I've not used FireEye's tool, so can't give you a comparison, sorry.)

cheers,
 Jamie
--
Jamie Riden / jamesreurope.com / jamiehoneynet.org.uk
http://www.ukhoneynet.org/members/jamie/

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
to learn more.
------------------------------------------------------------------------