VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
virtualdrivemaster.exe    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:virtualdrivemaster.exe
file type:EXEx86
Threat level:suspicious
MD5:b913c151d3049e575361bd5febc9fed0
sha256:b3dfe273471a1812da08a25c69c69392aac51d47dcde2afa9b0527c0d10a51f3
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
udp:0
smtp:0
icmp:0
irc:0
hosts:0
Document release report
file name:TweakCubeVD.sys
file type:PE32 executable (native) Intel 80386, for MS Windows
file size:160048
MD5:b8c4a2c07721712f1b4e9e75e7c5d617
File process number report
Process details:共分析了1个进程
Document behavior signature report
No file behavior report detected
Static information
Section name:.text
Virtual address:0x00001000
Physical address:0x00000400
Physical size:0x00040600
Section permissions:R-E
Section name:.rdata
Virtual address:0x00042000
Physical address:0x00040a00
Physical size:0x0000d000
Section permissions:R--
Section name:.data
Virtual address:0x0004f000
Physical address:0x0004da00
Physical size:0x00002400
Section permissions:RW-
Section name:.rsrc
Virtual address:0x00054000
Physical address:0x0004fe00
Physical size:0x00083000
Section permissions:R--
Section name:.reloc
Virtual address:0x000d7000
Physical address:0x000d2e00
Physical size:0x00004000
Section permissions:R--
import_hash:15a5a454fc3698f0e4089ad629fed1e4
time_stamp:2014-06-27 20:04:33
entry_point_section:.text
entry_point_section:.text
image_base:0x400000
entry_point:0x30cf2
name:DRIVERFILE
language:LANG_NEUTRAL
filetype:PE32 executable (native) Intel 80386, for MS Windows
sublanguage:SUBLANG_NEUTRAL
offset:0x00054ed0
size:0x00027130
name:DRIVERFILE
language:LANG_NEUTRAL
filetype:PE32+ executable (native) x86-64, for MS Windows
sublanguage:SUBLANG_NEUTRAL
offset:0x0007c000
size:0x00042320
name:JPG
language:LANG_CHINESE
filetype:JPEG image data, JFIF standard 1.01
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000be320
size:0x00002077
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 114 x 22, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c0398
size:0x00000496
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 6 x 6, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c0830
size:0x00000065
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c0898
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 17 x 80, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c08ec
size:0x000000e2
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 17 x 80, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c09d0
size:0x000000d9
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 46 x 46, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c0aac
size:0x00000a6c
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c1518
size:0x00000ae8
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2000
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2054
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 46 x 46, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c20a8
size:0x00000ab1
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2b5c
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2bb0
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2c04
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2c58
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2cac
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2d00
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2d54
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2da8
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 90 x 22, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2dfc
size:0x000000fc
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 90 x 22, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c2ef8
size:0x000002f1
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 881 x 26, 8-bit/color RGB, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c31ec
size:0x00000962
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 72 x 20, 8-bit/color RGBA, interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c3b50
size:0x00000483
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 77 x 80, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c3fd4
size:0x0000043f
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 77 x 80, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c4414
size:0x00000507
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 77 x 80, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c491c
size:0x00000dce
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 1 x 1, 1-bit grayscale, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c56ec
size:0x00000051
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c5740
size:0x000006f0
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c5e30
size:0x000006d9
name:PNG
language:LANG_CHINESE
filetype:PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000c650c
size:0x00000651
name:RT_ICON
language:LANG_ENGLISH
filetype:PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
sublanguage:SUBLANG_ENGLISH_US
offset:0x000c6b60
size:0x00006819
name:RT_ICON
language:LANG_ENGLISH
filetype:dBase IV DBT of \200.DBF, blocks size 64, block length 16896, next free block index 40
sublanguage:SUBLANG_ENGLISH_US
offset:0x000cd37c
size:0x00004228
name:RT_ICON
language:LANG_ENGLISH
filetype:data
sublanguage:SUBLANG_ENGLISH_US
offset:0x000d15a4
size:0x000025a8
name:RT_ICON
language:LANG_ENGLISH
filetype:data
sublanguage:SUBLANG_ENGLISH_US
offset:0x000d3b4c
size:0x000010a8
name:RT_ICON
language:LANG_ENGLISH
filetype:GLS_BINARY_LSB_FIRST
sublanguage:SUBLANG_ENGLISH_US
offset:0x000d4bf4
size:0x00000468
name:RT_MENU
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d505c
size:0x00000060
name:RT_MENU
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d50bc
size:0x0000002e
name:RT_DIALOG
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d50ec
size:0x0000011e
name:RT_DIALOG
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d520c
size:0x0000036c
name:RT_DIALOG
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d5578
size:0x00000684
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d5bfc
size:0x00000056
name:RT_STRING
language:LANG_CHINESE
filetype:dBase IV DBT of a.DBF, blocks size 6619218, next free block index 327680
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d5c54
size:0x0000002a
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d5c80
size:0x00000296
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d5f18
size:0x00000328
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d6240
size:0x0000027c
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d64bc
size:0x00000106
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d65c4
size:0x000000da
name:RT_STRING
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000d66a0
size:0x000001f8

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号