Google's VirusTotal Security Service Can Now Scan Firmware for Malware

Advertisement
By Gadgets 360 Staff | Updated: 29 January 2016 12:32 IST
Google's VirusTotal Security Service Can Now Scan Firmware for Malware
Google's free Internet security service, VirusTotal, which scans the image files of running processes, trigger scans of remote URL content before saving it to disk, and more, has now received a new feature where it can tell if the firmware is infected.

According to Francisco Santos of VirusTotal, antivirus software usually doesn't scan the BIOS of a computer, which means this layer remains unseen and a breach can fly under the radar. In a blog post, the company also gave few examples where attackers have taken advantage of firmware malware including NSA which has been alleged by Snowden's leaks to infect BIOS firmware and Lenovo's service engine among others.

"To all effects BIOS is a firmware which loads into memory at the beginning of the boot process, its code is on a flash memory chip soldered onto the mainboard. Since the BIOS boots a computer and helps load the operating system, by infecting it attackers can deploy malware that survives reboots, system wiping and reinstallations, and since antiviruses are not scanning this layer, the compromise can fly under the radar," writes Santos.

With the new tools, VirusTotal can characterise firmware images as legitimate or malicious. Some of the basic tasks that the new tool will perform include Apple Mac BIOS detection and reporting; strings-based brand heuristic detection, to identify target systems; extraction of certificates both from the firmware image and from executable files contained in it; PCI class code enumeration, allowing device class identification; ACPI tables tags extraction; NVAR variable names enumeration; option ROM extraction, entry point decompilation and PCI feature listing; extraction of BIOS Portable Executables and identification of potential Windows Executables contained within the image, and SMBIOS characteristics reporting.

The company also suggests users to remove private information before performing BIOS dumps and uploading to VirusTotal. The company says that private information could be saved by certain vendors such as Wi-Fi passwords in BIOS variables in order to remember certain settings across system reinstalls.

Advertisement

"If you are on a Mac, DarwinDumper will allow you to easily strip sensitive information by checking the "Make dumps private" option," notes the company. To recall, Google acquired the free Internet security service VirusTotal back in 2012.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Google, Internet, VirusTotal
Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo Y400 Pro 5G India Launch Today: All You Need to Know
  2. OTT Releases This Week: Ground Zero, Detective Sherdil, Found S2, and More
  3. Oppo Reno 14 5G Series Teased to Launch in India Soon
  4. Samsung Galaxy M36 5G India Launch Date and Key Features Revealed
  5. Nothing Phone 3 to Get New Glyph Matrix Interface on the Rear Panel
  6. Vivo Y400 Pro 5G With 5,500mAh Battery Launched in India: Price, Features
  7. Samsung Galaxy Z Fold 7 Leaked Renders Suggest Design Changes
  8. YouTube Shorts Will Soon Let You Create AI Video Clips With Veo 3 Model
  9. Samsung Galaxy S25 FE Leaked Render Suggests Improved Design
  10. Realme 15 Series Said to Launch in July; Lite Variant Leaked Online
  1. Vivo Y400 Pro 5G With 50-Megapixel Rear Camera, 5,500mAh Battery Launched in India: Price, Specifications
  2. Samsung Galaxy S25 FE Renders Leak Online, Suggesting Familiar Design With Thinner Bezels
  3. Samsung Galaxy Z Flip 7 Leaked Renders Suggest Edge-to-Edge Cover Display
  4. YouTube Shorts to Bring Google’s Veo 3 Video Generation Model With Audio Support 'This Summer'
  5. Samsung Galaxy Z Fold 7 Leaked Renders Hint at Design Changes; Storage Options Tipped
  6. Vivo Y400 Pro 5G Launching Today: Price in India, Expected Features and Specifications
  7. Fast Radio Bursts Reveal Universe’s Missing Matter Hidden in Cosmic Intergalactic Fog
  8. Apollo Astronauts Found Orange Glass Beads on the Moon, Scientists Now Know Why
  9. World’s Oldest Tailored Dress Found in Egyptian Tomb Dates Back Over 5,000 Years
  10. Ancient Footprints in White Sands Confirm Humans Reached America 23,000 Years Ago
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.