VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load
华为ONT组播版本配置工具.exe    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:华为ONT组播版本配置工具.exe
file type:EXEx86
Submission time:2018-12-22 14:00:26
Threat level:malicious
MD5:efafefa8c2b53c17f19631d75f19cea3
sha256:a3b6b88c4bee07b58800bcd3d545d5ee8ad805c0ea0111fb9e4b8ae9e109a94a
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
Document release report
file name:ontsoftwarebroardcaster.ini
file type:ASCII text, with CRLF line terminators
file size:4596
MD5:40e16fa33c83eeb4fe628bbd1c873eb6
File process number report
Process details:0
Document behavior signature report
Static information
PE section table information
Section name:lS8TSGXu
Virtual address:0x00001000
Physical address:0x00000000
Physical size:0x00000000
Section permissions:RWE
Section name:HWB8zP1w
Virtual address:0x0020f000
Physical address:0x00000400
Physical size:0x00001600
Section permissions:RWE
Section name:QrVbjeUa
Virtual address:0x00211000
Physical address:0x00001a00
Physical size:0x00215200
Section permissions:RW-
Section name:LEXmTy1n
Virtual address:0x00427000
Physical address:0x00216c00
Physical size:0x00000600
Section permissions:RW-
Section name:niBTgJWZ
Virtual address:0x00428000
Physical address:0x00217200
Physical size:0x00028600
Section permissions:R--
Section name:sfW0L9wz
Virtual address:0x00451000
Physical address:0x0023f800
Physical size:0x00000400
Section permissions:R--
Section name:.text
Virtual address:0x00452000
Physical address:0x0023fc00
Physical size:0x00002000
Section permissions:RWE
PE basic information
import_hash:527d186806fe2e22c11bfe9cfd5a6088
time_stamp:2014-08-15 09:55:16
entry_point_section:HWB8zP1w
entry_point_section:HWB8zP1w
image_base:0x400000
entry_point:0x20f2fd
PE resource information
name:BIN
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c7ac8
size:0x000169d6
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de4a0
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de5d8
size:0x000000b4
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de6b8
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de808
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de958
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001deaa8
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001debf8
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001ded48
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dee98
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001defe8
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df138
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df288
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df3d8
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df528
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df678
size:0x00000134
name:RT_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df7c8
size:0x00000134
name:RT_BITMAP
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfa38
size:0x000000b8
name:RT_BITMAP
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfaf0
size:0x00000144
name:RT_ICON
language:LANG_CHINESE
filetype:GLS_BINARY_LSB_FIRST
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00428c40
size:0x00000468
name:RT_ICON
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x004290b8
size:0x000010a8
name:RT_ICON
language:LANG_CHINESE
filetype:dBase IV DBT of `.DBF, blocks size 48, next free block index 40
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0042a170
size:0x000025a8
name:RT_ICON
language:LANG_CHINESE
filetype:dBase IV DBT of 200.DBF, blocks size 64, next free block index 40
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0042c728
size:0x00004228
name:RT_ICON
language:LANG_CHINESE
filetype:FoxPro FPT, blocks size 0, next free block index 671088640
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00430960
size:0x00005488
name:RT_ICON
language:LANG_CHINESE
filetype:dBase IV DBT of 300.DBF, blocks size 96, next free block index 40
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00435df8
size:0x000094a8
name:RT_ICON
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0043f2b0
size:0x00010828
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001afe90
size:0x00010828
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c06b8
size:0x00004228
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c48e0
size:0x000010a8
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c5988
size:0x00000368
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c5d30
size:0x000007a8
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c64f0
size:0x00000128
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6630
size:0x00000128
name:RT_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6770
size:0x00000128
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c68b0
size:0x0000019e
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6a50
size:0x000007ca
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c7220
size:0x0000004a
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c7270
size:0x00000140
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c73b0
size:0x00000088
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df918
size:0x000000e2
name:RT_DIALOG
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfa00
size:0x00000034
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfc38
size:0x00000060
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfc98
size:0x0000004e
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfce8
size:0x0000002c
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfd18
size:0x00000084
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dfda0
size:0x000001c4
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e00c0
size:0x0000014e
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dffb0
size:0x0000010e
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e0550
size:0x00000050
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dff68
size:0x00000044
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e04c0
size:0x00000068
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e0210
size:0x000001b2
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e03c8
size:0x000000f4
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e0528
size:0x00000024
name:RT_STRING
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001e05a0
size:0x000001a6
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de690
size:0x00000022
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dee80
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de7f0
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001ded30
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001debe0
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df510
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001dea90
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df120
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001de940
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001defd0
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df270
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df3c0
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df660
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df7b0
size:0x00000014
name:RT_GROUP_CURSOR
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001df900
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:MS Windows icon resource - 7 icons, 16x16, 256-colors
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0044fda8
size:0x00000068
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c5cf0
size:0x0000003e
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c64d8
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6618
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6758
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c6898
size:0x00000014
name:RT_VERSION
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0044fe70
size:0x00000314
name:RT_MANIFEST
language:LANG_CHINESE
filetype:XML document text
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00450194
size:0x0000031f
name:None
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x001c7a70
size:0x00000055

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号