VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load
VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

00饥饿游戏    Threatbook file behavior analysis report

Basic Information

file name: 00饥饿游戏
file type: DLLx86
Threat level: clean
MD5: 24f2451dc5b60ef4cfff81f7bcd662c2
sha256: f8eb700ae08c7f5b6d45460b00368505b149105cb444a0797bf1a299088874a2

Document Threat Intelligence IOC Report

No intelligence IOC detected

Intelligence decision system

Undetected intelligence determination system

Network behavior report

domains: 0

Document release report

File release report not detected

File process number report

nofind

Document behavior signature report

Low risk behavior
Network correlation: {"en": "Generates some ICMP traffic", "cn": "样本产生了ICMP流量"}
Suspicious behavior 0
High risk behavior 0
Low risk behavior 0
Low risk behavior
Static File Characteristics: {"en": "PE file does not import any functions", "cn": "此可执行文件没有导入任何函数"}
High risk behavior 0

Static information

Section name: .text
Virtual address: 0x00002000
Physical address: 0x00000200
Physical size: 0x0009d000
Section permissions: R-E
Section name: .rsrc
Virtual address: 0x000a0000
Physical address: 0x0009d200
Physical size: 0x00000e00
Section permissions: R--
Section name: .reloc
Virtual address: 0x000a2000
Physical address: 0x0009e000
Physical size: 0x00000200
Section permissions: R--
import_hash:
time_stamp: 2014-05-12 23:58:16
entry_point_section: .text
image_base: 0x400000
entry_point: 0x9ef3e
PE resource information 0