VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:77
Behavior list
Basic Information
MD5:c650582d891cfeb1f2f97b983f1f0a34
file type:EXE
Production company:PainteR
version:1.1.0.0---1.1.0.0
Shell or compiler information:PACKER:UPX 0.89.6 - 1.02 / 1.05 - 1.24 (Delphi) stub -> Markus & Laszlo
Subfile information:upx_c_418f259adumpFile / 43b6c3b48098b40456ceb489e167e846 / EXE
Key behavior
Behavior description:隐藏指定窗口
details:[Window,Class] = [,ComboLBox]
Registry behavior
Behavior description:修改注册表
details:\REGISTRY\USER\S-1-5-21-1482476501-1645522239-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\X\BaseClass
Other behavior
Behavior description:窗口信息
details:Pid = 1032, Hwnd=0xc01c2, Text = Patch for activation Adobe After Effects CC 2014 (64-Bit). - Install application to the default folder and click "Patch"., ClassName = TsMemo.
Pid = 1032, Hwnd=0xa0198, Text = PainteR, ClassName = TsEdit.
Pid = 1032, Hwnd=0xe016e, Text = amtlib.dll, ClassName = TsEdit.
Pid = 1032, Hwnd=0xc01d6, Text = Adobe After Effects CC 2014 (64-Bit), ClassName = TsComboBox.
Pid = 1032, Hwnd=0xa018c, Text = Music, ClassName = TCheckBox.
Pid = 1032, Hwnd=0xb01b0, Text = Backup, ClassName = TCheckBox.
Pid = 1032, Hwnd=0xa01aa, Text = About, ClassName = TButton.
Pid = 1032, Hwnd=0xb0184, Text = Patch, ClassName = TButton.
Pid = 1032, Hwnd=0xb01de, Text = Universal Adobe Patcher, ClassName = TfrmMain.
Behavior description:隐藏指定窗口
details:[Window,Class] = [,ComboLBox]
Behavior description:获取系统权限
details:SE_LOAD_DRIVER_PRIVILEGE
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号