VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:76
Behavior list
Basic Information
MD5:bf6c78509abb13657fd304e777888a7a
file type:zip
Production company:
version:
Shell or compiler information:
Subfile information:keyboardtestutility.exedumpFile / 752748d800d80c1f3769d1d529d828d8 / EXE
keyboardtestutility.exe / 752748d800d80c1f3769d1d529d828d8 / EXE
使用说明.txtdumpFile / e4f9c4b1874875860f24e3908e1e4587 / Unknown
使用说明.txt / e4f9c4b1874875860f24e3908e1e4587 / Unknown
键盘按键测试软件(Keyboard Test Utility)下载 v1.0.1.0绿色版_ - pc6下载站.urldumpFile / 70f52d8724b3c477cfafbb08bb7899aa / Unknown
键盘按键测试软件(Keyboard Test Utility)下载 v1.0.1.0绿色版_ - pc6下载站.url / 70f52d8724b3c477cfafbb08bb7899aa / Unknown
Key behavior
Behavior description:设置消息钩子
details:c:\%temp%\1418366360.018416.exe_7zdump\keyboardtestutility.exe
File behavior
Behavior description:修改文件内容
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\WINGDNG3.TTF---> Offset = 0
Other behavior
Behavior description:窗口信息
details:Pid = 876, Hwnd=0xc01d6, Text = VK Code:, ClassName = Static.
Pid = 876, Hwnd=0xb01c6, Text = Scan Code:, ClassName = Static.
Pid = 876, Hwnd=0xb01b0, Text = Reset, ClassName = Button.
Pid = 876, Hwnd=0xa018c, Text = About..., ClassName = Button.
Pid = 876, Hwnd=0xd0180, Text = Keyboard Test Utility, ClassName = KeyboardTestUtilityWClass.
Behavior description:创建互斥体
details:oleacc-msaa-loaded
Behavior description:设置消息钩子
details:c:\%temp%\1418366360.018416.exe_7zdump\keyboardtestutility.exe
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号