VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load
VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Basic Information

file name: 00马大帅
file size: 363235
file type: text/plain
MD5: bb67be9f66dde44949c050589437cb06
sha1: f53a0c62c197adab55d7a8b3bffc30f9829a37ee

 CreateProcess

ApplicationName:
CmdLine:
childid: 1656
childname: wscript.exe
childpath: C:\Windows\SysWOW64\wscript.exe
drop_type:
name:
noNeedLine:
path:
pid: 2960

 Malicious

attck_tactics: 基础信息获取
level: 1
matchedinfo: 通过文件遍历查找指定目标文件
num: 232
process_id: 1656
process_name: wscript.exe
rulename: 遍历文件
attck_tactics: 其他恶意行为
level: 1
matchedinfo: 一般被用于文件的加密、数据的加密传输或可能被用于勒索者病毒中
num: 286
process_id: 1656
process_name: wscript.exe
rulename: 调用加密算法库