VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
LUNA_PAK_TOOL.exe    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:LUNA_PAK_TOOL.exe
file type:EXEx86
Threat level:malicious
MD5:3bd93035ef8d2662a227a3f898b1cc5b
sha256:b63a0a6ec6356c0ef2f18a3ead81de2dc7b8ed26bb81d2350431c19978d997d7
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
udp:0
smtp:0
icmp:0
irc:0
hosts:0
Document release report
file name:exmlparser.fne
file type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
file size:86016
MD5:894889a8e1f12bb71c40e8b0327ecbf2
file name:pbshell.fne
file type:PE32 executable (DLL) (GUI) Intel 80386 (stripped to external PDB), for MS Windows
file size:37888
MD5:e56637fcb1f84e8291a884afae7d0da4
file name:iext.fnr
file type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
file size:204800
MD5:9b9516e2a751201377241f2cfce229e5
file name:xplib.fne
file type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
file size:53248
MD5:d24c8433e42ea94f32457986bf62868b
file name:krnln.fnr
file type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
file size:1105920
MD5:397f6c24b818f62071f898159e7c74ea
File process number report
Process details:共分析了1个进程
Document behavior signature report
No file behavior report detected
Static information
Section name:.text
Virtual address:0x00001000
Physical address:0x00001000
Physical size:0x00006000
Section permissions:RWE
Section name:.rdata
Virtual address:0x00007000
Physical address:0x00007000
Physical size:0x00001000
Section permissions:R--
Section name:.data
Virtual address:0x00008000
Physical address:0x00008000
Physical size:0x00002000
Section permissions:RW-
Section name:.data
Virtual address:0x0000a000
Physical address:0x0000a000
Physical size:0x00006000
Section permissions:RWE
Section name:.rsrc
Virtual address:0x00010000
Physical address:0x00010000
Physical size:0x00001000
Section permissions:R--
import_hash:9165ea3e914e03bda3346f13edbd6ccd
time_stamp:1972-12-25 13:33:23
entry_point_section:.text
entry_point_section:.text
image_base:0x400000
entry_point:0x1189
name:RT_ICON
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000100a0
size:0x000008a8
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:MS Windows icon resource - 1 icon
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00010948
size:0x00000014

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号