VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load
VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Basic Information

file name: 00熊出没之夺宝熊兵
file size: 102400
file type: application/x-dosexec
MD5: 5a41bab0fa335410eaf6b3f41b49b55b
sha1: 660292c93540b8d9fbd20412b35bed1be72ef43e

 CreateProcess

ApplicationName:
CmdLine:
childid: 2800
childname: 1620824409983_5a41bab0fa335410eaf6b3f41b49b55b.exe
childpath: C:\Users\Administrator\AppData\Local\Temp\1620824409983_5a41bab0fa335410eaf6b3f41b49b55b.exe
drop_type:
name:
noNeedLine:
path:
pid: 2776

 Malicious

attck_tactics: 基础信息获取
level: 1
matchedinfo: 通过文件遍历查找指定目标文件
num: 222
process_id: 2800
process_name: 1620824409983_5a41bab0fa335410eaf6b3f41b49b55b.exe
rulename: 遍历文件
attck_tactics: 防御逃逸
level: 2
matchedinfo: 检查程序运行时监视鼠标是否移动。一般被恶意软件用于沙盒逃逸
num: 496
process_id: 2800
process_name: 1620824409983_5a41bab0fa335410eaf6b3f41b49b55b.exe
rulename: 获取当前鼠标位置