1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
Safety rating:76 |
Behavior list |
Basic Information | |
---|---|
MD5: | 378a3677742333d8657feca4c8abc12f |
file type: | EXE |
Production company: | Sys8.cc |
version: | 1.1.12.29---1.1.12.29 |
Shell or compiler information: | PACKER:UPX 0.89.6 - 1.02 / 1.05 - 1.24 -> Markus & Laszlo |
Subfile information: | upx_c_600b6794dumpFile / 38d8ab387996c3d1f320734472d5cc99 / EXE |
Key behavior | |
---|---|
Behavior description: | 屏蔽窗口关闭消息 |
details: | hWnd = 0x000e031e, Text = Syser Group, ClassName = Syser MessageBox. |
Behavior description: | 获取TickCount值 |
details: | TickCount = 1074890, SleepMilliseconds = 15. |
TickCount = 1074905, SleepMilliseconds = 15. | |
TickCount = 1083733, SleepMilliseconds = 15. | |
TickCount = 1083749, SleepMilliseconds = 15. | |
TickCount = 1101672, SleepMilliseconds = 16. | |
TickCount = 1102219, SleepMilliseconds = 16. |
File behavior | |
---|---|
Behavior description: | 覆盖已有文件 |
details: | C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT |
Behavior description: | 修改文件内容 |
details: | C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT ---> Offset = 0 |
Registry behavior | |
---|---|
Behavior description: | 修改注册表 |
details: | \REGISTRY\MACHINE\SOFTWARE\BBEXKSpeeder\Warning |
Other behavior | |
---|---|
Behavior description: | 创建互斥体 |
details: | CTF.LBES.MutexDefaultS-* |
CTF.Compart.MutexDefaultS-* | |
CTF.Asm.MutexDefaultS-* | |
CTF.Layouts.MutexDefaultS-* | |
CTF.TMD.MutexDefaultS-* | |
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-* | |
MSCTF.Shared.MUTEX.ELH | |
MSCTF.Shared.MUTEX.AEI | |
Behavior description: | 创建事件对象 |
details: | EventName = MSCTF.SendReceive.Event.AEI.IC |
EventName = MSCTF.SendReceiveConection.Event.AEI.IC | |
Behavior description: | 查找指定窗口 |
details: | NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,] |
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,] | |
Behavior description: | 获取TickCount值 |
details: | TickCount = 1074890, SleepMilliseconds = 15. |
TickCount = 1074905, SleepMilliseconds = 15. | |
TickCount = 1083733, SleepMilliseconds = 15. | |
TickCount = 1083749, SleepMilliseconds = 15. | |
TickCount = 1101672, SleepMilliseconds = 16. | |
TickCount = 1102219, SleepMilliseconds = 16. | |
Behavior description: | 屏蔽窗口关闭消息 |
details: | hWnd = 0x000e031e, Text = Syser Group, ClassName = Syser MessageBox. |
Behavior description: | 窗口信息 |
details: | Pid = 2108, Hwnd=0xe031e, Text = Syser Group, ClassName = Syser MessageBox. |
Run screenshot |
---|
![]() |