VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:75
Behavior list
Basic Information
MD5:c477931c7eb01ea0bbb83ab54a9c2a54
file type:zip
Production company:
version:
Shell or compiler information:
Subfile information:pnVY.htadumpFile / c061564c10d46674041dc7ec1006927b / Unknown
hnLuZFn.htadumpFile / a070b0147f59afdc793ccdd9ae45b064 / Unknown
yyNGZVu.htadumpFile / 6fdeadc6dea8605b329b5518ce6df87c / Unknown
U9wDZi.htadumpFile / c846218f9b8c75e5007b8f76f9dfac3d / Unknown
185.zipdumpFile / 7a194b060003a3db2f9c39588a246538 / zip
185.zip / 7a194b060003a3db2f9c39588a246538 / zip
183.zipdumpFile / 979c55e51cbe0c6d28af23a6e643a411 / zip
183.zip / 979c55e51cbe0c6d28af23a6e643a411 / zip
184.zipdumpFile / ea7eaaae912e90b9dc036930c8cc57c3 / zip
186.zipdumpFile / 4a57a793682b27b289a29ca2ad422609 / zip
184.zip / ea7eaaae912e90b9dc036930c8cc57c3 / zip
186.zip / 4a57a793682b27b289a29ca2ad422609 / zip
Key behavior
Behavior description:屏蔽窗口关闭消息
details:hWnd = 0x00090358, Text = 16 位 MS-DOS 子系统, ClassName = #32770.
Other behavior
Behavior description:屏蔽窗口关闭消息
details:hWnd = 0x00090358, Text = 16 位 MS-DOS 子系统, ClassName = #32770.
Behavior description:窗口信息
details:Pid = 588, Hwnd=0xd035e, Text = 关闭(&C), ClassName = Button.
Pid = 588, Hwnd=0x1002c8, Text = 忽略(&I), ClassName = Button.
Pid = 588, Hwnd=0x1802fe, Text = C:\%temp%\****.exe NTVDM CPU 遇到无效的指令。 CS:0b70 IP:00b9 OP:8f 5c 67 eb 57 选择“关闭”终止应用程序。, ClassName = Static.
Pid = 588, Hwnd=0x90358, Text = 16 位 MS-DOS 子系统, ClassName = #32770.
Behavior description:样本控制台输出内容
details:N/A
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号