VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load
VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Basic Information

file name: 00通灵王
file size: 208730
file type: text/plain
MD5: 7646f258d7156d9e66c1904319b7cf7c
sha1: baf7ef210318ee9be56db85e11f2963a13430267

 CreateProcess

ApplicationName:
CmdLine:
childid: 2144
childname: wscript.exe
childpath: C:\Windows\SysWOW64\wscript.exe
drop_type:
name:
noNeedLine:
path:
pid: 3044

 Malicious

attck_tactics: 基础信息获取
level: 1
matchedinfo: 通过文件遍历查找指定目标文件
num: 232
process_id: 2144
process_name: wscript.exe
rulename: 遍历文件
attck_tactics: 其他恶意行为
level: 1
matchedinfo: 一般被用于文件的加密、数据的加密传输或可能被用于勒索者病毒中
num: 286
process_id: 2144
process_name: wscript.exe
rulename: 调用加密算法库