VirusTotal
In this book and in research of antivirus bypass techniques in general, we will use platforms such as VirusTotal a lot.
VirusTotal (https://www.virustotal.com/) is a very well-known and popular malware-scanning platform.
VirusTotal includes detection engines of various security vendors that can be checked against when uploading files, to check whether these detection engines detect a file as malware or even as suspicious, searching values such as the Uniform Resource Locator (URL), Internet Protocol (IP) addresses, and hashes of already uploaded files. VirusTotal provides many more features, such as a VirusTotal graph, which provide the capability to check relations of files, URLs, and IP addresses and cross-referencing between them.
Platforms such as VirusTotal are very useful to us to understand whether our malware that is based on some of our bypass techniques actually bypasses part—or even all—of the antivirus engines present in the relevant platform...