1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
Safety rating:76 |
Behavior list |
Basic Information | |
---|---|
MD5: | 1096e9cf5c953ab08b7279aba5c470a9 |
file type: | EXE |
Production company: | |
version: | |
Shell or compiler information: | COMPILER:Microsoft Visual C++ 6.0 [Overlay] |
Key behavior | |
---|---|
Behavior description: | 设置特殊文件夹属性 |
details: | C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files |
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5 | |
C:\Documents and Settings\Administrator\Local Settings\History | |
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5 | |
C:\Documents and Settings\Administrator\Cookies |
Process behavior | |
---|---|
Behavior description: | 枚举进程 |
details: | N/A |
File behavior | |
---|---|
Behavior description: | 设置特殊文件夹属性 |
details: | C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files |
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5 | |
C:\Documents and Settings\Administrator\Local Settings\History | |
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5 | |
C:\Documents and Settings\Administrator\Cookies | |
Behavior description: | 修改文件内容 |
details: | C:\Program Files\AppPatch\4.dll---> Offset = 0 |
Behavior description: | 修改新生成的可执行文件 |
details: | C:\Program Files\AppPatch\4.dll---> Offset = 4096 |
Network behavior | |
---|---|
Behavior description: | 联网打开网址 |
details: | InternetOpenUrlA: http://www.youjiaovip.com/4.dll hInternet = 0x000006c0 |
Behavior description: | 下载文件 |
details: | C:\Program Files\AppPatch\4.dll |
Behavior description: | 读取网络文件 |
details: | hFile = 0x000006c0, BytesToRead =1024, BytesRead = 1024. |
Run screenshot |
---|
![]() |