VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:84
Behavior list
Basic Information
MD5:7e9a9dd508ad309f9e0f837498375da5
file type:EXE
Production company:北京谋智网络技术有限公司
version:9.20.0.0---1.0
Shell or compiler information:PACKER:ASProtect 2.0x Registered -> Alexey Solodovnikov
Subfile information:aspr.ske.2.x_a_4d9f6117dumpFile / b69ea10e74e3657e631c0c0c2d194e9a / EXE
Registry behavior
Behavior description:修改注册表
details:\REGISTRY\MACHINE\SOFTWARE\Classes\.key\
Behavior description:删除注册表键值
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\PCHealth\ErrorReporting\DW\DWFileTreeRoot
Behavior description:删除注册表键
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\PCHealth\ErrorReporting\DW\
Other behavior
Behavior description:窗口信息
details:Pid = 588, Hwnd=0xb02d8, Text = 确定, ClassName = Button.
Pid = 588, Hwnd=0x9032c, Text = 取消, ClassName = Button.
Pid = 588, Hwnd=0xa0302, Text = "0x0040123c" 指令引用的 "0x00000000" 内存。该内存不能为 "written"。 要终止程序,请单击“确定”。 要调试程序,请单击“取消”。, ClassName = Static.
Behavior description:创建事件对象
details:EventName = Global\userenv: User Profile setup event
Behavior description:搜索kernel32.dll基地址
details:Instruction Address = 0x00412737
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号