We’re evaluating a new antivirus solution, and our intention is to infect the hell out of a test XP system and see how the new product handles it. The problem is, while some of our customers are damned good at installing every random piece of crap on the internet on their work PCs, the tech staff seems to be having trouble. I don’t know if they just naturally avoid malware or what, but we’d really like to get one of those godawful ones that holds your PC hostage.
Suggestions? That preferably don’t include porn sites?
I recommend .cn and .ru sites. Maybe look for free software/drivers/mp3s. It’s the wild west in Russia and China, internet-wise (well, a rather politically censored wild west for china, but still).
you can probably also check out adblock/host file/spwarekiller blacklists.
edit:one quick google hosts file blacklist search and:
IMPORTANT: Many of the sites listed in this database (i.e. those with the EXP or EMD classification) WILL INFECT your computer. DO NOT visit them if you do not know what you are doing. (classification explanations)
The pirate bay. Just keep running searches, within a few minutes one of their skeezy ad networks will pwn your PC. I can neither confirm nor deny the fact it hit one of my machines yesterday.
I had a wicked virus on my PC a month or so ago. Ended up nuking my Windows partition but there was still some .exe’s infected when I reinstalled on my Apps partition.
Usenet. Take a look in the porn or piracy binary newsgroups. Pretty much any attachment under 5mb with an “exe” extension. I’d recommend keeping the machine physically segregated from the rest of your network.
If you want to check whether a file is infected before you test it on your anti-virus virustotal.com is a useful benchmark.
try here (http://www.pinoychannel.tv/)and click on all the adds. I’m constantly cleaning my wife’s family’s computer because they go here and click on everything in site even after I tell them not to. They are really stupid.
Or go to 4chan and start clicking random links on /b/. You will get shit in a hurry, especially if the link is shortened so you can’t tell where it goes.