VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
ESPI11.dll    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:ESPI11.dll
file type:DLLx86
Threat level:malicious
MD5:b4c2caaa15d4e505ad2858ab15eafb58
sha256:93e03eadd330242f2394c15cd32857194e5b80f6300835ef77f8558ca70a2ef1
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
udp:0
smtp:0
icmp:0
irc:0
hosts:0
Document release report
File release report not detected
File process number report
nofind
Document behavior signature report
Low risk behavior
General behavior:Contains ability to find and load resources of a specific module
Suspicious behavior0
High risk behavior0
Low risk behavior
System Environment Detection:Contains functionality to query system information
Suspicious behavior0
High risk behavior0
Low risk behavior
General behavior:One or more processes crashed
Suspicious behavior0
High risk behavior0
Low risk behavior0
Suspicious behavior
Reverse Engineering:Checks if process is being debugged by a debugger
High risk behavior0
Static information
Section name:.text
Virtual address:0x00001000
Physical address:0x00001000
Physical size:0x00010000
Section permissions:R-E
Section name:.rdata
Virtual address:0x00011000
Physical address:0x00011000
Physical size:0x00004000
Section permissions:R--
Section name:.data
Virtual address:0x00015000
Physical address:0x00015000
Physical size:0x00004000
Section permissions:RW-
Section name:.inidata
Virtual address:0x0001c000
Physical address:0x00019000
Physical size:0x00001000
Section permissions:RW-
Section name:.rsrc
Virtual address:0x0001d000
Physical address:0x0001a000
Physical size:0x00001000
Section permissions:R--
Section name:.reloc
Virtual address:0x0001e000
Physical address:0x0001b000
Physical size:0x00003000
Section permissions:R--
import_hash:c92d1559d1e105113857a14029426d8c
time_stamp:2008-01-15 12:27:54
entry_point_section:.text
entry_point_section:.text
image_base:0x10000000
entry_point:0x486b
name:RT_VERSION
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0001d058
size:0x00000300

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号