• Home
  • About 404TS
  • Contact

404 Tech Support

Where IT Help is Found

  • Articles
    • Code
    • Entertainment
    • Going Green
    • Hardware, Gadgets, and Products
    • Management
    • Network
    • News
    • Operating Systems
    • Security and Privacy
    • Software
    • System Administration
    • Talking Points
    • Tech Solutions
    • Web
    • Webmaster
  • Reviews
  • Media
    • Infographics
    • Videos
  • Tech Events
  • Tools
    • How do I find my IP address?
    • Browser and plugin tests
  • Get a Technical Consultation
You are here: Home / Articles / Security and Privacy / Get a second opinion on a suspicious file

Get a second opinion on a suspicious file

2013-07-19 by Jason

I have seen more than my fair share of malware infected PCs. Fortunately it’s not due to infecting my own computers but working on client computers. After seeing enough of them, you know some trends that virus families tend to share. For example, an executable file in the user’s profile folder or a jibberish name in the AppData folder with an executable or dll file in it that is started at logon through the Registry… those are usually suspect and related to the malware infection. They might not always be malicious files though, so it would be nice to be able to check the file to know for sure. You can typically right-click on the file and run a scan on the file with your antivirus (You do have an antivirus installed, right?) but this is the same antivirus that let the file in in the first place.

You can get more than a second opinion on the file through the website VirusTotal. Just visit the website and upload the suspicious file (up to 64 MB in size) and submit it. After the file uploads the server, it will hash the file and search its database to see if it has seen the file before. If a recent scan has been run on it, you can jump directly to the report, saving you and the site time from running a scan again.

virustotal

If VirusTotal has not seen the file before or you elect to run an updated scan on a previous report, the site will check the file against 46 different antivirus programs. The report will tell you if any antivirus programs detected the file as bad and using which antivirus definition. Instead of relying on just one antivirus, you can use the site to check the file against the majority of other security software packages out there.

virustotal report

Even if a file is not suspicious but you just want to double-check it before you run the file, VirusTotal works great. The site is also good if you suspect your AV is throwing a false positive for a file. I should also mention that it is a free service. In addition to scanning files, you can scan URLs using the VirusTotal URL Scanner. It utilizes 33 different URL scanners to check if a website is suspicious or has a bad reputation.

I have had a few instances when VirusTotal would not work or didn’t like the file I was trying to upload or perhaps the installed malware was blocking the upload from even completing correctly. Scary! At those times, I have searched around for other multi-AV scanners and found a few alternatives which confirmed that indeed the file was a known bad guy. Some others you might try out include: VirSCAN and Jotti.

“Two heads are better than one!” The same can be said about antivirus engines.

Filed Under: Security and Privacy

Trending

  • 2011 Pwnie Award Winners Announced For Achievements and Failures In Security
    In News, Security and Privacy
  • Logitech introduces two new Orion Cherry mechanical keyboards
    In Hardware, Gadgets, and Products
  • Steganography
    In Security and Privacy

Latest Media Posts

Find Out Where To Download SNES ROMs

Find Out Where To Download SNES ROMs

Multifunctional Video Conversion Tools – Wondershare Video Converter

Multifunctional Video Conversion Tools – Wondershare Video Converter

  • Popular
  • Latest
  • Today Week Month All
  • How to ‘Unblock’ multiple files at a time with PowerShell How to 'Unblock' multiple files at a time with PowerShell
  • Increase IIS Private Memory Limit to improve WSUS availability Increase IIS Private Memory Limit to improve WSUS availability
  • SOLVED: “This modification is not allowed because the selection is locked.” SOLVED: "This modification is not allowed because the selection is locked."
  • Creating and editing views in phpMyAdmin Creating and editing views in phpMyAdmin
  • Configure Outlook to recurring appointments for the last weekday of the month Configure Outlook to recurring appointments for the last weekday of the month
  • 3d rendering circuit cloud for cloud computing technology Build and Deploy a Modern Web 3.0 Blockchain App in 2022
  • Telecom Application Development: When to Outsource Telecom Application Development: When to Outsource
  • Printer printing document wirelessly from mobile phone or smartphone wifi connection vector flat cartoon illustration, file air print on fax or ink jet via cellphone bluetooth modern design Why Your Business Needs Online Fax Services In 2022
  • 6 Best Ways to Protect Your Business Account 6 Best Ways to Protect Your Business Account
  • How to download videos from Instagram How to download videos from Instagram
Ajax spinner

Elevator Pitch

404 Tech Support documents solutions to IT problems, shares worthwhile software and websites, and reviews hardware, consumer electronics, and technology-related books.

Subscribe to 404TS articles by email.

Recent Posts

  • Build and Deploy a Modern Web 3.0 Blockchain App in 2022
  • Telecom Application Development: When to Outsource
  • Why Your Business Needs Online Fax Services In 2022

Search

FTC Disclaimer

404TechSupport is an Amazon.com affiliate; when you click on an Amazon link from 404TS, the site gets a cut of the proceeds from whatever you buy. This site also uses Skimlinks for smart monetization of other affiliate links.
Use of this site requires displaying and viewing ads as they are presented.

Copyright © 2022 · Magazine Pro Theme on Genesis Framework · WordPress · Log in