VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
servercc.exe_打乱 - 副本 - 副本.exe    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:servercc.exe_打乱 - 副本 - 副本.exe
file type:EXEx86
Threat level:malicious
MD5:0e41b946fb548f05538577e364ca3b63
sha256:416c72e69709c7efc8ff8bdffc3bc4a2efdba6cc6d4d522d2fbb0ab366893e2e
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Undetected intelligence determination system
Network behavior report
domains:0
dns:0
http:0
udp:0
smtp:0
icmp:0
irc:0
hosts:0
Document release report
File release report not detected
File process number report
nofind
Document behavior signature report
No file behavior report detected
Static information
Section name:.text
Virtual address:0x00001000
Physical address:0x00000400
Physical size:0x00000600
Section permissions:RWE
Section name:.rdata
Virtual address:0x00004000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.data
Virtual address:0x00005000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.idata
Virtual address:0x00007000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.rsrc
Virtual address:0x00008000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.reloc
Virtual address:0x0002d000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:dfryvfz
Virtual address:0x00035000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.shoooo
Virtual address:0x00036000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.data
Virtual address:0x0004d000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.data
Virtual address:0x0004e000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.text
Virtual address:0x0004f000
Physical address:0x00000a00
Physical size:0x00000000
Section permissions:RWE
Section name:.shoooo
Virtual address:0x00050000
Physical address:0x00000a00
Physical size:0x00017600
Section permissions:RWE
import_hash:09d0478591d4f788cb3e5ea416c25237
time_stamp:2009-12-04 21:35:59
entry_point_section:.text
entry_point_section:.text
image_base:0x400000
entry_point:0x1000
name:DLL
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x000082d0
size:0x0001da00
name:RT_CURSOR
language:LANG_ENGLISH
filetype:empty
sublanguage:SUBLANG_ENGLISH_US
offset:0x000264c8
size:0x00000134
name:RT_BITMAP
language:LANG_CHINESE
filetype:empty
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00025fe0
size:0x000004e8
name:RT_GROUP_CURSOR
language:LANG_ENGLISH
filetype:empty
sublanguage:SUBLANG_ENGLISH_US
offset:0x00026600
size:0x00000014
name:RT_VERSION
language:LANG_CHINESE
filetype:data
sublanguage:SUBLANG_CHINESE_SIMPLIFIED
offset:0x00050180
size:0x00000310

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号