A forum for reverse engineering, OS internals and malware analysis 

Ask your beginner questions here.
 #27800  by islogged
 Mon Feb 01, 2016 8:30 am
Hi,

I'm new here, and i'm newbie ...
Just i want to learn and understand ...

Question 1 : *.bin file i download here are (in all the cases) ineffective right ?
Question 2 : If i scan a Conficker Virus (for example), why i got differents names results (1 different name by antivirus) : https://www.virustotal.com/fr/file/ef4c ... /analysis/
Question 3 : Then is the Hash is the only ID of a Virus ?
Question 4 : Where i can find a BD who associate : [A Virus Name] with his [Hash] ?

Thank you !
 #27805  by EP_X0FF
 Tue Feb 02, 2016 7:12 am
islogged wrote:Hi,

I'm new here, and i'm newbie ...
Just i want to learn and understand ...

Question 1 : *.bin file i download here are (in all the cases) ineffective right ?
Question 2 : If i scan a Conficker Virus (for example), why i got differents names results (1 different name by antivirus) : https://www.virustotal.com/fr/file/ef4c ... /analysis/
Question 3 : Then is the Hash is the only ID of a Virus ?
Question 4 : Where i can find a BD who associate : [A Virus Name] with his [Hash] ?

Thank you !
1. What does it mean, "ineffective"?
2. Ask AV, they use random generator for naming malware
3. No.
4. https://www.virustotal.com/en/documentation/searching/