VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

   File information

Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis

Basic Information

MD5:248274dd8f10fc30cc035279ae95b21f
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
Package names:
Minimum operating environment:
copyright:

Key behavior

Behavior description: 设置特殊文件夹属性
details: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies

File behavior

Behavior description: 设置特殊文件夹属性
details: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies

Network behavior

Behavior description: 联网打开网址
details: InternetOpenUrlA: http://www.cfxy.me/notice_id2.txt hInternet = 0x000006bc
InternetOpenUrlA: http://www.cfxy.me/ppslink.txt hInternet = 0x000006ac
InternetOpenUrlA: http://www.cfxy.me/haozip2link.txt hInternet = 0x000006a4
InternetOpenUrlA: http://download.pplive.com/PPTV_forqd47.exe hInternet = 0x000006a8
InternetOpenUrlA: http://www.cfxy.me/dubalink.txt hInternet = 0x00000690
InternetOpenUrlA: http://dl1sw.baidu.com/client/20131014/sdmini/Online_30091_s.exe hInternet = 0x0000068c
InternetOpenUrlA: http://d.union.ijinshan.com/duba/link/KAVSETUPS_66_1001.exe hInternet = 0x00000658

Other behavior

Behavior description: 窗口信息
details: Pid = 1460, Hwnd=0xb0184, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xa01aa, Text = InfoStatusCode, ClassName = Static.
Pid = 1460, Hwnd=0xb01c6, Text = 错误, ClassName = #32770.
Pid = 1460, Hwnd=0xb01aa, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xc0184, Text = 取消, ClassName = Button.
Pid = 1460, Hwnd=0xa018c, Text = 安装免费pptv网络电视,海外大片、高清影视、动漫卡通、娱乐选秀、各地电视台,尽可一览无余。, ClassName = Button(CheckBox).
Pid = 1460, Hwnd=0xe016e, Text = 金山毒霸2013永久免费,革命性杀毒体系,全球首创敢赔模式,秒杀全新病毒,难以置信的轻巧快速!, ClassName = Button(CheckBox).
Pid = 1460, Hwnd=0xa0198, Text = 百度杀毒,永久免费、安静不骚扰。, ClassName = Button(CheckBox).
Pid = 1460, Hwnd=0xc01c6, Text = 如遇杀毒软件提示是否允许,请设为允许,谢谢!, ClassName = #32770.
Pid = 1460, Hwnd=0xc01e8, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xa0196, Text = InfoStatusCode, ClassName = Static.
Pid = 1460, Hwnd=0xd01a4, Text = 错误, ClassName = #32770.
Pid = 1460, Hwnd=0xb0170, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xb01ce, Text = InfoStatusCode, ClassName = Static.
Pid = 1460, Hwnd=0xc01b4, Text = 错误, ClassName = #32770.
Behavior description: 创建互斥体
details: oleacc-msaa-loaded