VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:81
Behavior list
Basic Information
MD5:f5b5c4c2fae7aba1e1041f3bfed8c04a
file type:Nsis
Production company:
version:
Shell or compiler information:COMPILER:NSIS
Subfile information:upx_c_c665614bdumpFile / 3b5086021f3f6a5a3d0c1251c2e0999f / EXE
[NSIS].nsi / c8ff395f9792e7775a094fa1daaed5c5 / Unknown
Key behavior
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.EHF..OLKGH
MSCTF.MarshalInterface.FileMap.EHF.B.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.C.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.D.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.E.NMKGH
MSCTF.MarshalInterface.FileMap.EHF.F.NMKGH
MSCTF.MarshalInterface.FileMap.EHF.G.NMKGH
MSCTF.Shared.SFM.EHF
MSCTF.MarshalInterface.FileMap.EHF.H.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.I.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.J.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.K.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.L.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.M.MEBLH
Behavior description:屏蔽窗口关闭消息
details:hWnd = 0x000202a2, Text = 软耱嚯?鲨 Stamina 2.5 (1 皴眚狃 2007 ??), ClassName = #32770.
Process behavior
Behavior description:枚举进程
details:N/A
File behavior
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.EHF..OLKGH
MSCTF.MarshalInterface.FileMap.EHF.B.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.C.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.D.OLKGH
MSCTF.MarshalInterface.FileMap.EHF.E.NMKGH
MSCTF.MarshalInterface.FileMap.EHF.F.NMKGH
MSCTF.MarshalInterface.FileMap.EHF.G.NMKGH
MSCTF.Shared.SFM.EHF
MSCTF.MarshalInterface.FileMap.EHF.H.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.I.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.J.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.K.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.L.MEBLH
MSCTF.MarshalInterface.FileMap.EHF.M.MEBLH
Other behavior
Behavior description:创建互斥体
details:CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
MSCTF.Shared.MUTEX.ELH
MSCTF.Shared.MUTEX.EHF
Behavior description:屏蔽窗口关闭消息
details:hWnd = 0x000202a2, Text = 软耱嚯?鲨 Stamina 2.5 (1 皴眚狃 2007 ??), ClassName = #32770.
Behavior description:查找指定窗口
details:NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
Behavior description:窗口信息
details:Pid = 1344, Hwnd=0x202a6, Text = 玉蜞眍忤螯, ClassName = Button.
Pid = 1344, Hwnd=0x202a8, Text = 悟戾磬, ClassName = Button.
Pid = 1344, Hwnd=0x202b2, Text = < Back, ClassName = Button.
Pid = 1344, Hwnd=0x302ba, Text = Nullsoft Install System v1.98, ClassName = Static.
Pid = 1344, Hwnd=0x202d6, Text = C:\Program Files\Stamina, ClassName = Edit.
Pid = 1344, Hwnd=0x202d8, Text = 吾珙?.., ClassName = Button.
Pid = 1344, Hwnd=0x202c4, Text = 象螯 篑蜞眍怅?, ClassName = Static.
Pid = 1344, Hwnd=0x202c8, Text = Space available: 5.8GB, ClassName = Static.
Pid = 1344, Hwnd=0x202c6, Text = Space required: 5.8MB, ClassName = Static.
Pid = 1344, Hwnd=0x302da, Text = 玉蜞眍怅?Stamina 2.5 (觌噔栲蝮痦 蝠屙噫屦 + MP3 痨囗赅) 磬 忄?觐祜. 念镱腠栩咫 玮箨? 赅痱桧觇 ??? 祛骓?耜圜囹?磬 http://s, ClassName = Static.
Pid = 1344, Hwnd=0x202a2, Text = 软耱嚯?鲨 Stamina 2.5 (1 皴眚狃 2007 ??), ClassName = #32770.
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号