VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:78
Behavior list
Basic Information
MD5:59de00bbf939e5129ec15f67c8b63a40
file type:Rar
Production company:
version:
Shell or compiler information:COMPILER:不是有效的PE文件
Subfile information:server_windows_amd64.exedumpFile / 6ba18b6d98a551be3f7bf44894e8bc62 / EXE
server_windows_amd64.exe / 6ba18b6d98a551be3f7bf44894e8bc62 / EXE
client_windows_amd64.exedumpFile / a17e0a77d49111a6ec627e743ed78035 / EXE
client_windows_amd64.exe / a17e0a77d49111a6ec627e743ed78035 / EXE
server_windows_386.exedumpFile / 542097a154c351d80e821d3b5bd09feb / EXE
server_windows_386.exe / 542097a154c351d80e821d3b5bd09feb / EXE
client_windows_386.exedumpFile / 13d927f1320a42465ed2cf028fd157cd / EXE
client_windows_386.exe / 13d927f1320a42465ed2cf028fd157cd / EXE
KcptunGUI.exedumpFile / 5f1d922b38d102e80b8b7bf370c6ef22 / EXE
KcptunGUI.exe / 5f1d922b38d102e80b8b7bf370c6ef22 / EXE
KcptunGUI.exe.configdumpFile / 71461ab2548c7c83e71620615b4075f0 / Unknown
KcptunGUI.exe.config / 71461ab2548c7c83e71620615b4075f0 / Unknown
Process behavior
Behavior description:创建本地线程
details:TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2900, StartAddress = 004536A0, Parameter = 4CB3C000
TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2904, StartAddress = 004536A0, Parameter = 4CB3C280
TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2908, StartAddress = 004536A0, Parameter = 4CB3C500
TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2912, StartAddress = 004536A0, Parameter = 4CB3C780
TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2920, StartAddress = 004536A0, Parameter = 4CBAA280
TargetProcess: server_windows_386.exe, InheritedFromPID = 1944, ProcessID = 2884, ThreadID = 2924, StartAddress = 004536A0, Parameter = 4CBAA500
Other behavior
Behavior description:创建事件对象
details:EventName = DINPUTWINMM
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号