VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:3%Antivirus software(1/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2017-12-18 14:26:04 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 2.0 1970-01-01 Found nothing 5
asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 1
avast 170303-1 4.7.4 2017-03-03 Found nothing 60
avg 2109/14726 10.0.1405 2017-12-17 Found nothing 60
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 5
baidusd 1.0 1.0 2017-03-22 Found nothing 1
bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
clamav 24134 0.97.5 2017-12-16 Found nothing 60
drweb 5.0.2.3300 5.0.1.1 2017-11-04 Found nothing 60
fortinet 1.000, 53.767, 53.678, 53.700 5.4.247 2017-12-18 Found nothing 60
fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
gdata 25.15227 25.15227 2017-12-17 Found nothing 13
ikarus 4.00.01 V1.32.31.0 2017-12-17 Found nothing 60
jiangmin 16.0.100 1.0.0.0 2017-12-17 Found nothing 2
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
kingsoft 2.1 2.1 2017-12-17 Android.RISKWARE.luomao.cr.(kcloud) 4
mcafee 8620 5400.1158 2017-08-12 Found nothing 60
nod32 6584 3.0.21 2017-12-16 Found nothing 60
panda 9.05.01 9.05.01 2017-12-16 Found nothing 4
pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
qh360 1.0.1 1.0.1 1.0.1 Found nothing 3
qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
quickheal 14.00 14.00 2017-11-18 Found nothing 3
rising 2985 2985 2017-09-22 Found nothing 1
sophos 5.32 3.65.2 2016-10-10 Found nothing 60
symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2017-12-10 Found nothing 1
tws 17.47.17308 1.0.2.2108 2017-12-17 Found nothing 14
vba 3.12.29.5 beta 3.12.29.5 beta 2017-12-15 Found nothing 60
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.BLUETOOTH_ADMIN 搜寻蓝牙设备
android.permission.INTERNET 连接网络(2G或3G)
android.permission.VIBRATE 允许设备震动
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:15dc2845359e4a3465f0c9efbfa92a2b
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.androidemu.nes
最低运行环境:Android 1.5
版权:Android
关键行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: Global\Cor_Private_IPCBlock_1476
Global\Cor_Public_IPCBlock_1476
CiceroSharedMemDefaultS-*
\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
Global\NLS_00000804_Exception_Table_3_2
Global\NLS_CodePage_936_3_2_0_0
MSCTF.MarshalInterface.FileMap.AEF..MAIHH
MSCTF.MarshalInterface.FileMap.AEF.B.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.C.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.D.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.E.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.F.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.G.MAIHH
Global\netfxcustomperfcounters.1.0.net clr networking
MSCTF.Shared.SFM.AEF
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 按名称获取主机地址
详情信息: wpad.
blitzforum.net
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Run\sysDrvHandler
进程行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: Global\Cor_Private_IPCBlock_1476
Global\Cor_Public_IPCBlock_1476
CiceroSharedMemDefaultS-*
\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
Global\NLS_00000804_Exception_Table_3_2
Global\NLS_CodePage_936_3_2_0_0
MSCTF.MarshalInterface.FileMap.AEF..MAIHH
MSCTF.MarshalInterface.FileMap.AEF.B.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.C.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.D.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.E.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.F.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.G.MAIHH
Global\netfxcustomperfcounters.1.0.net clr networking
MSCTF.Shared.SFM.AEF
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 按名称获取主机地址
详情信息: wpad.
blitzforum.net
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Run\sysDrvHandler
文件行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: Global\Cor_Private_IPCBlock_1476
Global\Cor_Public_IPCBlock_1476
CiceroSharedMemDefaultS-*
\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
Global\NLS_00000804_Exception_Table_3_2
Global\NLS_CodePage_936_3_2_0_0
MSCTF.MarshalInterface.FileMap.AEF..MAIHH
MSCTF.MarshalInterface.FileMap.AEF.B.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.C.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.D.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.E.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.F.MAIHH
MSCTF.MarshalInterface.FileMap.AEF.G.MAIHH
Global\netfxcustomperfcounters.1.0.net clr networking
MSCTF.Shared.SFM.AEF
行为描述: 创建可执行文件
详情信息: C:\Documents and Settings\Administrator\Application Data\drvhandler.exe
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT---> Offset = 0
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 查找文件
详情信息: FileName = C:\WINDOWS
FileName = C:\WINDOWS\WinSxS
FileName = C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
FileName = C:\WINDOWS\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.INI
FileName = C:\Documents and Settings\Administrator\Local Settings\Temp
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\1444157397.827842.exe
FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\996E.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.INI
网络行为
VirSCANVirSCAN
行为描述: 按名称获取主机地址
详情信息: wpad.
blitzforum.net
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Run\sysDrvHandler
其他行为
VirSCANVirSCAN
行为描述: 调用Sleep函数
详情信息: [1]: MilliSeconds = 30000.
[2]: MilliSeconds = 300000.
[3]: MilliSeconds = 300000.
[4]: MilliSeconds = 30000.
[6]: MilliSeconds = 30000.
[5]: MilliSeconds = 300000.
[7]: MilliSeconds = 30000.
[8]: MilliSeconds = 300000.
[9]: MilliSeconds = 30000.
[10]: MilliSeconds = 300000.
行为描述: 创建互斥体
详情信息: CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
RasPbFile
MSCTF.Shared.MUTEX.ELH
Global\.net clr networking
MSCTF.Shared.MUTEX.AEF
行为描述: 窗口信息
详情信息: Pid = 1476, Hwnd=0x202cc, Text = Form1, ClassName = WindowsForms10.Window.8.app.0.378734a.
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 获取TickCount值
详情信息: TickCount = 520000, SleepMilliseconds = 30000.
TickCount = 790015, SleepMilliseconds = 300000.
TickCount = 790031, SleepMilliseconds = 300000.
TickCount = 790046, SleepMilliseconds = 300000.
TickCount = 790062, SleepMilliseconds = 300000.
TickCount = 790078, SleepMilliseconds = 300000.
TickCount = 790093, SleepMilliseconds = 300000.
TickCount = 790109, SleepMilliseconds = 300000.
TickCount = 790125, SleepMilliseconds = 300000.
TickCount = 790140, SleepMilliseconds = 300000.
TickCount = 790156, SleepMilliseconds = 300000.
TickCount = 790171, SleepMilliseconds = 300000.
TickCount = 790187, SleepMilliseconds = 300000.
TickCount = 790203, SleepMilliseconds = 300000.
TickCount = 790218, SleepMilliseconds = 300000.
动态列表行为
VirSCANVirSCAN
行为描述: 窗口信息
详情信息: {"text": "选择游戏", "class": "android.widget.TextView"}
{"text": "/sdcard", "class": "android.widget.EditText"}
{"text": "此目录没有可读取的文件", "class": "android.widget.TextView"}
行为描述: 添加View
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@41554690', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#8010100 pfl=0x8 wanim=0x1030001}', u'android.view.CompatibilityInfoHolder@414b8718']
行为描述: 解析通用资源标识符
详情信息: file:///android_asset/faq.html
Activities
VirSCANVirSCAN
活动名 类型
MainActivity android.intent.action.MAIN
MainActivity android.intent.category.DEFAULT
MainActivity android.intent.category.LAUNCHER
EmulatorActivity android.intent.action.VIEW
EmulatorActivity android.intent.category.DEFAULT
危险函数
VirSCANVirSCAN
函数名称 信息
android/app/NotificationManager;->notify 信息通知栏
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.BLUETOOTH_ADMIN 搜寻蓝牙设备
android.permission.INTERNET 连接网络(2G或3G)
android.permission.VIBRATE 允许设备震动
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
服务列表
VirSCANVirSCAN
名称
com.androidemu.nes.EmulatorService
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0x272d515d
META-INF/CERT.SF 0xdfcba2ed
META-INF/CERT.RSA 0xf229dba4
res/drawable/sdcard.png 0x36d785bb
res/xml/preferences.xml 0x302dec73
res/layout/device_list.xml 0xdbf163ea
res/drawable/ic_menu_fast_forward.png 0x499fe96a
res/drawable/ic_menu_open.png 0x4d5bc4e
res/menu/emulator.xml 0xd202cc33
res/raw/buttons.png 0x628b191a
resources.arsc 0x74c75c75
res/layout/device_name.xml 0x6e1463ec
res/layout/file_chooser.xml 0x47a82792
res/raw/dpad.png 0xfb4ebf8b
res/drawable/ic_menu_disconnect.png 0xd778d9f4
assets/faq.html 0xa6c7c778
AndroidManifest.xml 0x3a3e11c1
assets/copying.html 0xf1e3f517
res/menu/key_profiles.xml 0xd4f6b36b
res/drawable/game_gripper.png 0x4a1d84a8
res/layout/shortcut.xml 0x8f33e010
res/layout/seekbar_dialog.xml 0x84708292
res/raw/select_start_buttons.png 0x2383b22f
res/menu/file_chooser.xml 0xaa4595f2
res/layout/new_cheat.xml 0x763412a9
res/layout/state_slot_item.xml 0x93cdb0ff
res/drawable/up_dir.png 0x834352e0
res/layout/new_profile.xml 0x9e99b229
res/layout/wifi_connect.xml 0xcdffc6cd
res/layout/cheats.xml 0xe4417379
res/drawable/ic_menu_netplay.png 0x68629b69
res/layout/game_gripper.xml 0xc68c834e
res/menu/main_context.xml 0xeb1d09ce
classes.dex 0x107319e6
res/drawable/ic_menu_refresh.png 0xd8e13f97
lib/armeabi/libemumedia.so 0xcfabee5
res/menu/main.xml 0xfb4a291d
res/layout/emulator.xml 0x6e81d3e7
res/drawable/app_icon.png 0x72b6d82b
lib/armeabi/libnes.so 0xc7599086
lib/armeabi/libemu.so 0x1b6b4026
assets/legal.html 0xdc17cb6c
res/menu/cheats.xml 0x68925461
res/drawable/ic_menu_change_disk.png 0xb61e0a7d
res/raw/extra_buttons.png 0xfe2545b6
运行截图
VirSCANVirSCAN
VirSCAN