This site was designed to allow security professionals the ability to asses
the effectiveness of their proxy solution. These test include Anti-Virus, Content Filtering,
Content Security and Bandwidth Management.
Web Anti-Virus is a much touted term about scanning web content. But the wrong solution can
lead to a false sense of security or disaster for web application performance. The following
links will allow testing of both the response time and thoroughness of the web a/v solution:
- Virus Test Patterns
- Compressed Viruses
- Change of Extension
- Encoded Viruses
- Compression Formats
- Mail Attachments
- Applets
- MS JPEG Exploits
Virus Test
Patterns
Compressed
Viruses Tests
Change of
Extension Tests
Same tests as above, but the
extension of the file has been changed.
If your anti-virus software only checks
certain extensions, ignoring mime-types,
then this attack will thwart your
A/V efforts.
- eicar.bin : File EICAR without its extension EXE but BIN
- level1.bin : Level1 file without its extension ZIP but BIN
Encoded Virus
Tests
Similar to the above test,
but now the files have been UUencoded
and the extensions changed.
- Level2uue.bin : UUEncoded file level2.zip without its extension
zip but BIN
Compression
Formats Tests
Tests for different compression
types. With or without proper extensions.
Mail Attachment Tests
Windows XP JPEG Overflow Exploit Tests
*Apparent Data Type Testing
- Executible file renamed as a gif file: wget.gif
Click
here to view Customer Case Studies. |