VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Antivirus software(0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2016-05-20 13:17:13 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 150725-1 4.7.4 2015-07-25 Found nothing 60
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 60
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 4
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 60
clamav 19861 0.97.5 2014-12-31 Found nothing 60
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 60
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 60
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 60
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 60
gdata 25.6643 25.6643 2016-05-19 Found nothing 9
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 60
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 41
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
kingsoft 2.1 2.1 2013-09-22 Found nothing 4
mcafee 7638 5400.1158 2014-11-30 Found nothing 60
nod32 0920 3.0.21 2014-12-23 Found nothing 60
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 60
qh360 1.0.1 1.0.1 1.0.1 Found nothing 2
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 60
quickheal 14.00 14.00 2015-07-25 Found nothing 2
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 1
sophos 5.08 3.55.0 2014-12-01 Found nothing 60
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 60
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 2
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 13
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 60
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_EXTERNAL_STORAGE 读外部存储器(如:SD卡)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.RECEIVE_USER_PRESENT
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.SYSTEM_OVERLAY_WINDOW
android.permission.BROADCAST_STICKY 发送持久广播
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.WRITE_CONTACTS 写入联系人信息
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.CHANGE_CONFIGURATION 修改当前设置(如:本地化)
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:6e9f41d58f9882ec17cd179b6b5635cc
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:jgqrur.dcpw.danp.cz
最低运行环境:Android 2.3, 2.3.1, 2.3.2
版权:okkpvjqo
进程行为
VirSCANVirSCAN
文件行为
VirSCANVirSCAN
行为描述: 创建文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp
行为描述: 创建可执行文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp
行为描述: 覆盖已有文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp
行为描述: 复制文件
详情信息: C:\WINDOWS\system32\ntdll.dll ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\13.tmp
C:\WINDOWS\system32\user32.dll ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\14.tmp
C:\WINDOWS\system32\gdi32.dll ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\15.tmp
行为描述: 删除文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> Offset = 65536
C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> Offset = 131072
C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> Offset = 196608
C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> Offset = 262144
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> Offset = 65536
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> Offset = 131072
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> Offset = 196608
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> Offset = 262144
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> Offset = 65536
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> Offset = 131072
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> Offset = 196608
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> Offset = 262144
其他行为
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
MSCTF.Shared.MUTEX.ELH
MSCTF.Shared.MUTEX.MEJ
行为描述: 创建事件对象
详情信息: EventName = DINPUTWINMM
EventName = MSCTF.SendReceiveConection.Event.MEJ.IC
EventName = MSCTF.SendReceive.Event.MEJ.IC
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 窗口信息
详情信息: Pid = 2376, Hwnd=0x70338, Text = 伪装标题名为:培训教程, ClassName = Button(CheckBox).
Pid = 2376, Hwnd=0x80326, Text = 高度:, ClassName = _EL_Label.
Pid = 2376, Hwnd=0x6034e, Text = 宽度:, ClassName = _EL_Label.
Pid = 2376, Hwnd=0xa0302, Text = 300, ClassName = Edit.
Pid = 2376, Hwnd=0xe031e, Text = 300, ClassName = Edit.
Pid = 2376, Hwnd=0x9032c, Text = 确认, ClassName = Button.
Pid = 2376, Hwnd=0x1002d8, Text = zwify 专用(百度云在线播放缩小器), ClassName = WTWindow.
行为描述: 调整进程token权限
详情信息: SE_DEBUG_PRIVILEGE
行为描述: 枚举窗口
详情信息: N/A
行为描述: 可执行文件签名信息
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp(签名验证: 通过)
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp(签名验证: 通过)
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp(签名验证: 通过)
行为描述: 可执行文件MD5
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\13.tmp ---> 9e762b21dd4d10695799a9a6e9570b79
C:\Documents and Settings\Administrator\Local Settings\Temp\14.tmp ---> f697644d5f59050fbe6af896c19cca93
C:\Documents and Settings\Administrator\Local Settings\Temp\15.tmp ---> 2ccdf9fc160e3af611510decc1359516
Activities
VirSCANVirSCAN
活动名 类型
com.android.sp.WelcomeActivity android.intent.action.MAIN
com.android.sp.WelcomeActivity android.intent.category.LAUNCHER
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_EXTERNAL_STORAGE 读外部存储器(如:SD卡)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.RECEIVE_USER_PRESENT
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.SYSTEM_OVERLAY_WINDOW
android.permission.BROADCAST_STICKY 发送持久广播
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.WRITE_CONTACTS 写入联系人信息
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.CHANGE_CONFIGURATION 修改当前设置(如:本地化)
服务列表
VirSCANVirSCAN
名称
com.android.sp.service.CoreService
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0x90fef732
META-INF/ZXKEY_KE.SF 0x9ed4e6fc
META-INF/ZXKEY_KE.RSA 0x206540b9
AndroidManifest.xml 0x6cdeb09d
assets/img/kefu.png 0x4a641ef4
assets/use_item.html 0x5e0b870d
assets/user_connect.html 0x5fb70b45
assets/viixr.jar 0xcbc5c282
classes.dex 0x8fec028d
lib/armeabi/libviixr.so 0x66fdd2e3
res/drawable-hdpi/ic_launcher.png 0x4363b4e9
res/drawable-hdpi/icon_loading_2.png 0x4aa7ea6c
res/drawable-mdpi/ic_launcher.png 0x6a84dfd9
res/drawable-xhdpi/alipay.png 0xd2896cdd
res/drawable-xhdpi/ic_launcher.png 0x4a68614f
res/drawable-xhdpi/ic_pay_bottom_text.png 0x2bdc2a07
res/drawable-xhdpi/ic_pay_dialog_bg.png 0xcbcab5d9
res/drawable-xhdpi/weixin_pay.png 0x43734f34
res/drawable-xxhdpi/ic_back.png 0xc4e4c585
res/drawable-xxhdpi/tab1.png 0x729acca4
res/drawable-xxhdpi/tab1_p.png 0xd4e2bf7f
res/drawable-xxhdpi/tab2.png 0x9a79297f
res/drawable-xxhdpi/tab2_p.png 0x861840bf
res/drawable-xxhdpi/tab3.png 0x7124bad0
res/drawable-xxhdpi/tab3_p.png 0xbd24a673
res/drawable-xxhdpi/tab4.png 0xfa075e18
res/drawable-xxhdpi/tab4_p.png 0x782703c9
res/drawable-xxhdpi/tab5.png 0xc031022d
res/drawable-xxhdpi/tab5_p.png 0xe74028e2
res/drawable-xxxhdpi/back.png 0x23f1af9d
res/drawable-xxxhdpi/check_update.png 0xd9ff7d13
res/drawable-xxxhdpi/feedback.png 0xb3b96878
res/drawable-xxxhdpi/ic_launcher.png 0xcb3e2252
res/drawable-xxxhdpi/ic_vip.png 0x8a12c0d0
res/drawable-xxxhdpi/ic_vip_n.png 0x6e9955c5
res/drawable-xxxhdpi/shop.png 0x162d0112
res/drawable-xxxhdpi/user_liuyan.png 0xc3c5abc5
res/drawable-xxxhdpi/user_po.png 0x41d19dd5
res/drawable/bg_confire.xml 0xae62a5f9
res/drawable/chat_circle_shape.xml 0xfd217d80
res/drawable/load_shape.xml 0x13c387d
res/drawable/loading.xml 0x8bf37e02
res/drawable/shape_login.xml 0xc2d5f8bd
res/drawable/shape_login_btn.xml 0x27dfd928
res/drawable/tab_font_selector.xml 0xb9368c6
res/drawable/tab_menu_1.xml 0xe4cca011
res/drawable/tab_menu_2.xml 0x3ff6fb6b
res/drawable/tab_menu_3.xml 0x76e0cdbd
res/drawable/tab_menu_4.xml 0x52f34bde
res/drawable/tab_menu_5.xml 0x1be57d08
res/layout/activity__wft_action.xml 0xf80e7f94
res/layout/activity_main.xml 0x85c86554
res/layout/activity_web.xml 0x81d806b8
res/layout/loading.xml 0x164985d3
res/layout/media_palyer.xml 0xed6cc4e
res/layout/nav_tab_item.xml 0xf7eec781
res/layout/pay.xml 0xdc1e71d4
res/layout/player_loading.xml 0x7a12f47b
res/layout/tab1.xml 0xacd7e810
res/layout/tab2.xml 0x3277a3b7
res/layout/tab3.xml 0x47e8652a
res/layout/tab4.xml 0xd44632b8
res/layout/tab5.xml 0x41c9224e
res/layout/welcome.xml 0xd7e5c130
res/raw/video.mp4 0xcada0b7e
resources.arsc 0x3c49bdee
运行截图
VirSCANVirSCAN
VirSCAN