VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:40
Behavior list
Basic Information
MD5:33465622daee54d2c8469e497019de21
file type:Autoit
Production company:
version:5.0.0.0---5,9,28,1564
Shell or compiler information:PACKER:UPX 0.89.6 - 1.02 / 1.05 - 1.24 -> Markus & Laszlo [Overlay]
Subfile information:Thunder.exe / 733a645c347886282b0e4d87f9df65f5 / EXE
upx_c_3682b8a0dumpFile / f86e75cada0216ca3b1f85af51ab275b / EXE
RegSetup.exe / b55904046347b085e65c7ee821ebcc02 / EXE
emule_kernel.dll / a27badc9b7c29bb0870408abdc1ea9a8 / DLL
default.tzs / 1394ed0c633f68214c0a2f61d22cf1d4 / zip
bt_kernel.dll / 2a4e7c0ba3e67369c8e676623ea213d6 / DLL
p2sp.dll / 57d9f21226a36b9f0ed5a0d1476a6f21 / DLL
XLGUIDevEnv.dll / 4e4b44af2eb73a568c308d548b1c5ac3 / DLL
xunleiBHO_Now.dll / 0cecc27315cbddd9f074638a0dfffa38 / DLL
XunLeiBHO.dll / 0cecc27315cbddd9f074638a0dfffa38 / DLL
BaseCommunity.dll / 84021b8b18e12a9f5a30dcf389811444 / DLL
p2p.dll / 3730b4f21c79110334cb9d151e1a0baf / DLL
unins000.exe / 58187e96da5b217268bfdc684fb14e9d / EXE
ptl.dll / 8ab5a6b0bc53577d02ecb6513bac3d38 / DLL
sqlite3.dll / b47d4478cc51f0b4ebb8de60171a1240 / DLL
XLGUIPlatform.dll / 4ac6344e2cbad08388ed3565e8dc272c / DLL
DllNewTask.dll / 8d205d98e0ef82b62c30513ff0c025a6 / DLL
ThunderStorage.dll / bd90aed748fdc03779df6b3466e9d6e6 / DLL
download_interface.dll / c3f07ba64fc9b669c02e7cf50b5ba378 / DLL
Key behavior
Behavior description:检测自身是否被调试
details:N/A
Behavior description:隐藏指定窗口
details:[Window,Class] = [AutoIt v3,AutoIt v3]
[Window,Class] = [,{AC08E3BA-F5BF-47C5-AC40-86711647F172}]
[Window,Class] = [thunder_backwnd,TfrmCmdCenter]
[Window,Class] = [,{E6AD94D5-F740-4A90-81AF-97C45AA204B3}]
[Window,Class] = [迅雷5,Afx:00400000:0:00000000:00000000:00020367]
[Window,Class] = [GDETMainFrame,ATL:267D0B18]
[Window,Class] = [GDETMdiClient,ATL:267D0920]
[Window,Class] = [GDETMdiContainer,ATL:267D0C58]
[Window,Class] = [GDETMdiTabOwner,ATL:267D0D10]
[Window,Class] = [GDETFuntionHost,ATL:267D09B0]
[Window,Class] = [MyDownload,ATL:267D0FD8]
[Window,Class] = [GDETCommandBarWnd,ATL:267D0BA8]
[Window,Class] = [,ATL:267D1B50]
[Window,Class] = [,tooltips_class32]
[Window,Class] = [GDETGenericPane,ATL:267D0848]
Behavior description:修改注册表_BHO
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{889D2FEB-5411-4565-8998-1DD2C5261283}\
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01443AEC-0FD1-40fd-9C87-E93D1494C233}\
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
DfSharedHeap3EBB8E
DFMap0-4111282
DfRoot0003EBB8E
xl_ds_shared_memory_processid_2052
Thunder-App-Info
thunder_open_thunderlink
MSCTF.MarshalInterface.FileMap.IAI..CFMOH
MSCTF.MarshalInterface.FileMap.IAI.B.CFMOH
MSCTF.MarshalInterface.FileMap.IAI.C.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.D.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.E.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.F.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.G.BHMOH
Local\UrlZonesSM_Administrator
Behavior description:设置特殊文件夹属性
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
Behavior description:按名称获取主机地址
details:client.update.sandai.net
biz5.sandai.net
hub5pn.sandai.net
hub5pnc.sandai.net
hub5u.sandai.net
computer
hub5c.sandai.net
xmlconf.client.xunlei.com
msg.client.xxxxxx.com
login3.reg2t.sandai.net
portal.i.xunlei.com
portal2.i.xunlei.com
score.phub.sandai.net
ab2.vip.xunlei.com
hubciddata.sa~dai.net
Process behavior
Behavior description:创建新文件进程
details:ImagePath = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\Program\Thunder.exe, CmdLine = "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\Program\Thunder.exe"
Behavior description:枚举进程
details:N/A
File behavior
Behavior description:创建可执行文件
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut4.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\RegSetup.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\unins000.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\libexpat.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\LinkSimulate.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\TDMediaDetector.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\TDMediaDetector5.9.28.1564.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\ThunderAgent.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\ThunderAgent5.9.28.1564.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\UserAgent.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\XunLeiBHO.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\zlib1.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\BrowserHelp\ed2kProcess.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\BrowserHelp\ThunderComponent.dll
Behavior description:查找文件
details:FileName = C:\DOCUME~1
FileName = C:\Documents and Settings\ADMINI~1
FileName = C:\Documents and Settings\Administrator\LOCALS~1
FileName = C:\Documents and Settings\Administrator\Local Settings\Temp
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\1445843412.779452.exe
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\RegSetup.exe
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\unins000.dat
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\unins000.exe
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\dh_rule.xml
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\libexpat.dll
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\LinkSimulate.dll
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\TDMediaDetector.dll
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\TDMediaDetector5.9.28.1564.dll
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\ThunderAgent.dll
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
DfSharedHeap3EBB8E
DFMap0-4111282
DfRoot0003EBB8E
xl_ds_shared_memory_processid_2052
Thunder-App-Info
thunder_open_thunderlink
MSCTF.MarshalInterface.FileMap.IAI..CFMOH
MSCTF.MarshalInterface.FileMap.IAI.B.CFMOH
MSCTF.MarshalInterface.FileMap.IAI.C.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.D.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.E.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.F.BGMOH
MSCTF.MarshalInterface.FileMap.IAI.G.BHMOH
Local\UrlZonesSM_Administrator
Behavior description:重命名文件
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\xunleiBHO_OLD_0.dll
Behavior description:设置特殊文件夹属性
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
Behavior description:修改文件内容
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut5.tmp---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\unins000.dat---> Offset = 12288
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut6.tmp---> Offset = 196608
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut7.tmp---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\dh_rule.xml---> Offset = 4096
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut8.tmp---> Offset = 69632
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut9.tmp---> Offset = 73728
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autA.tmp---> Offset = 81920
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autB.tmp---> Offset = 81920
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autC.tmp---> Offset = 28672
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autD.tmp---> Offset = 28672
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autE.tmp---> Offset = 20480
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\autF.tmp---> Offset = 196608
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut10.tmp---> Offset = 196608
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\aut11.tmp---> Offset = 61440
Behavior description:修改新生成的可执行文件
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\TDMediaDetector5.9.28.1564.dll---> Offset = 262144
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Thunder Network\Thunder\ComDlls\ThunderAgent5.9.28.1564.dll---> Offset = 65536
Network behavior
Behavior description:发送一个已连接的套接字数据
details:SOCKET = 0x00000350, TotalSize = 290, Offset = 0, ReadSize = 290.
Behavior description:下载文件
details:URLDownloadToFileW: http://modules.client.xunlei.com/dapconf.ini ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\\xmpconf_.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\xmpconf_.ini
Behavior description:连接指定站点
details:InternetConnectA: ServerName = xmlconf.client.xunlei.com, PORT = 80
InternetConnectA: ServerName = 127.0.0.1, PORT = 80
Behavior description:建立到一个指定的套接字连接
details:127.0.0.1:1034
219.133.40.1:9936
219.133.40.1:80
Behavior description:读取网络文件
details:hFile = 0x000005f0, BytesToRead =2048, BytesRead = 2048.
hFile = 0x000005d4, BytesToRead =2048, BytesRead = 2048.
hFile = 0x000007f0, BytesToRead =2048, BytesRead = 2048.
Behavior description:打开HTTP请求
details:HttpOpenRequestA: xmlconf.client.xunlei.com:80/skin5.9.28.xml, hConnect = 0x000005f4
HttpOpenRequestA: 127.0.0.1:80/app5.9.28.xml, hConnect = 0x000005d0
HttpOpenRequestA: 127.0.0.1:80/apptop_5.9.28.conf, hConnect = 0x000007ec
Behavior description:按名称获取主机地址
details:client.update.sandai.net
biz5.sandai.net
hub5pn.sandai.net
hub5pnc.sandai.net
hub5u.sandai.net
computer
hub5c.sandai.net
xmlconf.client.xunlei.com
msg.client.xxxxxx.com
login3.reg2t.sandai.net
portal.i.xunlei.com
portal2.i.xunlei.com
score.phub.sandai.net
ab2.vip.xunlei.com
hubciddata.sa~dai.net
Registry behavior
Behavior description:修改注册表_浏览器右键菜单
details:\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载\
\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载\Contexts
\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载全部链接\
\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载全部链接\Contexts
Behavior description:修改注册表_浏览器默认下载工具
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\Internet Explorer\DownloadUI
Behavior description:修改注册表_BHO
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{889D2FEB-5411-4565-8998-1DD2C5261283}\
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01443AEC-0FD1-40fd-9C87-E93D1494C233}\
Behavior description:修改注册表
details:\REGISTRY\MACHINE\SOFTWARE\Classes\XunLeiBHO.ThunderIEHelper.1\
\REGISTRY\MACHINE\SOFTWARE\Classes\XunLeiBHO.ThunderIEHelper.1\CLSID\
\REGISTRY\MACHINE\SOFTWARE\Classes\XunLeiBHO.ThunderIEHelper\
\REGISTRY\MACHINE\SOFTWARE\Classes\XunLeiBHO.ThunderIEHelper\CLSID\
\REGISTRY\MACHINE\SOFTWARE\Classes\XunLeiBHO.ThunderIEHelper\CurVer\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\ProgID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\VersionIndependentProgID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\InprocServer32\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\InprocServer32\ThreadingModel
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\TypeLib\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283}\Version\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{87CA3845-37FE-414C-81CF-E08A7D0F6779}\1.0\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{87CA3845-37FE-414C-81CF-E08A7D0F6779}\1.0\0\win32\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{87CA3845-37FE-414C-81CF-E08A7D0F6779}\1.0\FLAGS\
Behavior description:删除注册表键值_IE连接设置
details:\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
Other behavior
Behavior description:检测自身是否被调试
details:N/A
Behavior description:创建互斥体
details:CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Global\thunder5_app_mutex
thunder6_app_mutex
thunder_srvice_keep_alive_mutex_name_2052
oleacc-msaa-loaded
MSCTF.Shared.MUTEX.ELH
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
Behavior description:内联HOOK
details:C:\WINDOWS\system32\USER32.dll--->EnableScrollBar Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->GetScrollInfo Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->GetScrollPos Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->GetScrollRange Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->SetScrollInfo Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->SetScrollPos Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->SetScrollRange Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->ShowScrollBar Offset = 0x0
C:\WINDOWS\system32\USER32.dll--->SetCursor Offset = 0x0
Behavior description:查找指定窗口
details:NtUserFindWindowEx: [Class,Window] = [,thunder_welcome]
NtUserFindWindowEx: [Class,Window] = [,Microsoft Visual C++ Runtime Library]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [,{45F272B4-61DA-4bca-91CF-05C1B80A0F77}]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
Behavior description:获取系统权限
details:SE_LOAD_DRIVER_PRIVILEGE
Behavior description:窗口信息
details:Pid = 2052, Hwnd=0x10332, Text = GDETMainFrame, ClassName = ATL:267D0B18.
Pid = 2052, Hwnd=0x1033e, Text = GDETFuntionHost, ClassName = ATL:267D09B0.
Pid = 2052, Hwnd=0x10394, Text = GDETGenericPane, ClassName = ATL:267D0848.
Pid = 2052, Hwnd=0x1033c, Text = GDETFuntionHost, ClassName = ATL:267D09B0.
Pid = 2052, Hwnd=0x2037e, Text = GDETGenericPane, ClassName = ATL:267D0848.
Pid = 2052, Hwnd=0x1038e, Text = GDETGenericPane, ClassName = ATL:267D0848.
Pid = 2052, Hwnd=0x10388, Text = Category_BK_Wnd, ClassName = Afx:00400000:0.
Pid = 2052, Hwnd=0x1038a, Text = XunleiTreeCtrl, ClassName = SysTreeView32.
Pid = 2052, Hwnd=0x10382, Text = ToolBoxPanel, ClassName = ATL:267D12A8.
Pid = 2052, Hwnd=0x10334, Text = GDETMdiClient, ClassName = ATL:267D0920.
Pid = 2052, Hwnd=0x10336, Text = GDETMdiContainer, ClassName = ATL:267D0C58.
Pid = 2052, Hwnd=0x1036e, Text = GDETDockingView, ClassName = ATL:267D06D8.
Pid = 2052, Hwnd=0x20346, Text = GDETCommandBarDock, ClassName = ATL:267D07B0.
Pid = 2052, Hwnd=0x10356, Text = GDETCommandBarWnd, ClassName = ATL:267D0BA8.
Pid = 2052, Hwnd=0x10368, Text = GDETGenericPane, ClassName = ATL:267D0848.
Behavior description:直接操作物理设备
details:\??\PhysicalDrive0
Behavior description:隐藏指定窗口
details:[Window,Class] = [AutoIt v3,AutoIt v3]
[Window,Class] = [,{AC08E3BA-F5BF-47C5-AC40-86711647F172}]
[Window,Class] = [thunder_backwnd,TfrmCmdCenter]
[Window,Class] = [,{E6AD94D5-F740-4A90-81AF-97C45AA204B3}]
[Window,Class] = [迅雷5,Afx:00400000:0:00000000:00000000:00020367]
[Window,Class] = [GDETMainFrame,ATL:267D0B18]
[Window,Class] = [GDETMdiClient,ATL:267D0920]
[Window,Class] = [GDETMdiContainer,ATL:267D0C58]
[Window,Class] = [GDETMdiTabOwner,ATL:267D0D10]
[Window,Class] = [GDETFuntionHost,ATL:267D09B0]
[Window,Class] = [MyDownload,ATL:267D0FD8]
[Window,Class] = [GDETCommandBarWnd,ATL:267D0BA8]
[Window,Class] = [,ATL:267D1B50]
[Window,Class] = [,tooltips_class32]
[Window,Class] = [GDETGenericPane,ATL:267D0848]
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号