VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load
VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

a79aeb16f72ca6893d3fd425016571be    Threatbook file behavior analysis report

Basic Information

file name: a79aeb16f72ca6893d3fd425016571be
file type: DLLx86
Threat level: malicious
MD5: a79aeb16f72ca6893d3fd425016571be
sha256: b39c296cade5d04bad3d8b81fc9b36152d733f2ff3973a3b02e3fac8404d24f6

Document Threat Intelligence IOC Report

No intelligence IOC detected

Intelligence decision system

Undetected intelligence determination system

Network behavior report

domains: 0

Document release report

File release report not detected

File process number report

nofind

Document behavior signature report

No file behavior report detected

Static information

Section name: .text
Virtual address: 0x00001000
Physical address: 0x00000400
Physical size: 0x00000928
Section permissions: R-E
Section name: .rdata
Virtual address: 0x00002000
Physical address: 0x00000e00
Physical size: 0x00000054
Section permissions: R--
Section name: .data
Virtual address: 0x00003000
Physical address: 0x00001000
Physical size: 0x000000a8
Section permissions: RW-
Section name: .idata
Virtual address: 0x00004000
Physical address: 0x00001200
Physical size: 0x000002c0
Section permissions: RW-
Section name: .reloc
Virtual address: 0x00005000
Physical address: 0x00001800
Physical size: 0x000000a0
Section permissions: ---
Section name: .edata
Virtual address: 0x00006000
Physical address: 0x00001a00
Physical size: 0x00000048
Section permissions: R--
import_hash: f226b826cd84e9d22f32db364ed41df6
time_stamp: 2004-07-06 06:58:54
entry_point_section: .text
image_base: 0x10000000
entry_point: 0x1190
PE resource information 0