VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
LOL热键连招助手v1.3_se.exe    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:LOL热键连招助手v1.3_se.exe
file type:EXEx86
Submission time:2019-03-18 10:31:40
Threat level:malicious
MD5:cd7478e75317c3c59ec124d975f4255b
sha256:8f21efda383a0e0c4b6935608276e6e189f6a4d5b0a0b1e2439804c9ac75c82b
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
udp:0
smtp:0
icmp:0
irc:0
hosts:0
Document release report
File release report not detected
File process number report
Process details:共分析了1个进程
Document behavior signature report
No file behavior report detected
Static information
Section name:.text
Virtual address:0x00001000
Physical address:0x00001000
Physical size:0x00310000
Section permissions:RWE
Section name:.YouSB
Virtual address:0x00739000
Physical address:0x00311000
Physical size:0x00114000
Section permissions:RWE
Section name:.idata
Virtual address:0x0084d000
Physical address:0x00425000
Physical size:0x00001000
Section permissions:RW-
Section name:.rsrc
Virtual address:0x0084e000
Physical address:0x00426000
Physical size:0x00012000
Section permissions:RW-
Section name:.YouSB
Virtual address:0x00860000
Physical address:0x00438000
Physical size:0x00001000
Section permissions:R--
import_hash:17ec81557d1b9796aba65fa564bd5abe
time_stamp:2019-01-17 13:28:09
entry_point_section:.YouSB
entry_point_section:.YouSB
image_base:0x400000
entry_point:0x84b18e
name:RT_ICON
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0084e1f0
size:0x000002e8
name:RT_ICON
language:LANG_CHINESE
filetype:GLS_BINARY_LSB_FIRST
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0084e4d8
size:0x00000128
name:RT_ICON
language:LANG_NEUTRAL
filetype:data
sublanguage:SUBLANG_NEUTRAL
offset:0x0084e600
size:0x00010828
name:RT_GROUP_ICON
language:LANG_NEUTRAL
filetype:MS Windows icon resource - 1 icon
sublanguage:SUBLANG_NEUTRAL
offset:0x0085ee44
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:MS Windows icon resource - 1 icon
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0085ee58
size:0x00000014
name:RT_GROUP_ICON
language:LANG_CHINESE
filetype:MS Windows icon resource - 1 icon
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0085ee6c
size:0x00000014
name:RT_VERSION
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x0085ee80
size:0x0000025c
name:RT_MANIFEST
language:LANG_NEUTRAL
filetype:XML document text
sublanguage:SUBLANG_NEUTRAL
offset:0x0085f0dc
size:0x000001cd

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号