- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is there a malware file available to test FortiSandbox?
Hi all,
I'm wondering if there's a test malware file that will not trigger the AV but only the FortiSandbox engine, something like eicar but for FortiSandbox.
PAN has one that is used to test wildfire, curious if Fortinet have one too?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes , google wicar they have sample malware that you can test similar to eicar. You can manual select and upload samples into sandbox or wildfire for analysis.
Ken
PCNSE
NSE
StrongSwan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Nice, thanks for the tip emnoc! I'll give it a test now.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi all,
FYI I've found there's two sandbox test files available from the fortiguard website:
http://www.fortiguard.com/encyclopedia/demo/fsa_dropper.exe http://www.fortiguard.com/encyclopedia/demo/fsa_downloader.exe
Both will trigger the sandbox but not the FortiGate AV.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
neonbit wrote:Dear all,Hi all,
FYI I've found there's two sandbox test files available from the fortiguard website:
http://www.fortiguard.com/encyclopedia/demo/fsa_dropper.exe http://www.fortiguard.com/encyclopedia/demo/fsa_downloader.exe
Both will trigger the sandbox but not the FortiGate AV.
Can help me with "testing file" like this, link above have die
Thanks
Luan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi all,
The links from fortiguard seemed to be outdated.
Is there any new test malware file around to trigger fortisandbox cloud and on-premise?
Thanks a lot
Thrillseeker
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I would ask the Fortinet team to add it to the metal test FWIW
http://metal.fortiguard.com/tests/
This would provide or should provide a simple pass and fail output
Ken
PCNSE
NSE
StrongSwan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
A plain text EICAR test file (hosted on eicar.org over a HTTPS connection) to test basic AV scanning on the FortiGate using deep inspection. |
|
A machine learning sample file to test AI-based malware detection on the FortiGate. |
|
A zero-day sample virus file to test the outbreak prevention feature of the AV profile. |
|
Files that are detected by a sandbox. This requires FortiSandbox integration with the FortiGate. |
