Virustotal download
Author: n | 2025-04-24
VirusTotal Uploader, free and safe download. VirusTotal Uploader latest version: Downloadable antivirus tool from VirusTotal. Download VirusTotal Scan for Firefox. Scan URL with VirusTotal
GitHub - VirusTotal/qt-virustotal-uploader: VirusTotal
The 02/27/25 catalog release contains bug, feature and security-related updates.New Products:Absolute Secure Access Client (MSI-x64) | 13.52.15012.0Airbox Mission Control (MSI-x64) | 6.4.0.0Amazon Connect Client (MSI-x64) | 2.0.3.0Dell Display and Peripheral Manager (EXE-x64) | 2.0.0.72HP Client Management Script Library (EXE-x64) | 1.8.1.0QZ Tray (EXE-x64) | 2.2.4.0SketchUp Pro 2025 (EXE-x64) | 25.0.571.0Turbo-Chart (MSI-x86) | 2.0.6.5Fixes and Improvements:Removed manual download requirement for VMware Workstation Player 17Added Widgets.exe & CefSharp.BrowserSubprocess.exe to Manage Conflicting Processes list for OBS StudioUpdates and Base Applications Added:4K Video Downloader+ 25.0.2.185 (MSI-x64)4K Video Downloader+ 25.0.2.185 (MSI-x86)Release Notes for 4K Video Downloader+ 25.0.2.185Release Type: N/AScan Detection Ratio 0/59 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 0/65 | VirusTotal Latest Scan Results (MSI-x86)Beyond Compare 5 5.0.6.30713 (EXE-x64)Beyond Compare 5 5.0.6.30713 (User-x64)Release Notes for Beyond Compare 5 5.0.6.30713Release Type: ⬤ | ⬤Scan Detection Ratio 0/72 | VirusTotal Latest Scan ResultsCLion 2024 243.25659.42 (EXE-x64)CLion Latest 243.25659.42 (EXE-x64)Release Notes for CLion 2024 243.25659.42Release Type: ⬤Scan Detection Ratio N/A | VirusTotal Latest Scan ResultsDeezer 7.0.31 (User-x64)Release Notes for Deezer 7.0.31 (User-x64)Release Type: N/AScan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)Devolutions Workspace 2024.3.7 (MSI-x64)Release Notes for Devolutions Workspace 2024.3.7 (MSI-x64)Release Type: ⬤Scan Detection Ratio 0/62 | VirusTotal Latest Scan Results (MSI-x64)Draftable Desktop 25.2.0 (MSI-x86)Draftable Desktop 25.2.0 (User-x86)Release Notes for Draftable Desktop 25.2.0Release Type: TBDScan Detection Ratio 0/46 | VirusTotal Latest Scan Results (MSI-x86)Scan Detection Ratio N/A | VirusTotal Latest Scan Results (User-x86)Element 1.11.94 (User-x64)Release Notes for Element 1.11.94 (User-x64)Release Type: N/AScan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)Elgato 4K Capture Utility 1.7.15.10334 (MSI-x64)Release Notes for Elgato 4K Capture Utility 1.7.15.10334 (MSI-x64)Release Type: TBDScan Detection Ratio 0/56 | VirusTotal Latest Scan Results (MSI-x64)FlashBack Express 6.17.0.560 (x64)Release Notes for FlashBack Express 6.17.0.560 (x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/69 | VirusTotal Latest Scan Results (x64)FlexWhere for Desktop 3.4.1 (MSI)Release Notes for FlexWhere for If you have a list of hashes, you can bulk file hash check with VirusTotal. You will need the VirusTotal API key. There are many tools available, but if you want to use a tool that is going to ingest API key from your account – make sure it is from reputable source. Didier Stevens is a reputable part of security community and “SANS.org” – we will cover his script.Affiliate: Experience limitless no-code automation, streamline your workflows, and effortlessly transfer data between apps with Make.com.Currently there are several official sources for the script, so you will know where to find it: Official Didier Stevens Blog page for virustotal-search.py 1.1.4 – based on Python 2. Official Didier Stevens Blog page for virustotal-search.py 1.1.5 – based on Python 2. Latest Beta version on GitHub for virustotal-search.py 1.1.6 – based on Python 3. This is current Beta page, currently there is v1.1.6, but could be later version.How to install Didier Stevens “virustotal-search.py” script1. Download latest version of Python 3 2. Install it – check usage for PATH environment variable and for easier future updates install to the root of your C: drive. Example for Python 3.9.5:C:\Python39\3. Navigate to Didier Stevens virustotal-search.py Github page 4. On top of the page Right Click the [Raw] button and [Save link as]. Save the file in the place that you will find it later, for example:C:\tools\Didier Stevens\virustotal-search\virustotal-search-1.1.6.py5. Sign up for VirusTotal for free. 6. After you login to VT, click your profile button, then [API Key]. Copy this API key so you can use it later, maybe save to text file. * Free VirusTotal Public API key can be used for 4 hash requests per minute and 500 hashes per day. Same goes for the script itself, it will not send more than 4 requests per minute. It was scripted that way and if you have a premium account with bigger quota, the script will still send 4 requests per minute. Keep that in mind. After your reach your daily quota of 500 requests with free account – VT will send you an email and the scriptGitHub - VirusTotal/qt-virustotal-uploader: VirusTotal Uploader
Sigcheck 2.54 This is a lightweight command line utility that verifies that images are digitally signed, displaying info related to timestamp and versionSigcheck is a handy and reliable application designed to show file version number, timestamp information, and digital signature details, including certificate chains.Usage: sigcheck [-a][-h][-i][-e][-n][[-s]|[-c|-ct]|[-m]][-q][-r][-u][-vt][-v[r][n]][-f catalog file] · a - Show extended version information· c - CSV output with comma delimiter· ct - CSV output with tab delimiter· e - Scan executable images only (regardless of their extension)· f - Look for signature in the specified catalog file· h - Show file hashes· i - Show catalog name and image signers· m - Dump manifest· n - Only show file version number· q - Quiet (no banner)· r - Disable check for certificate revocation· s - Recurse subdirectories· u - If VirusTotal check is enabled, show files that are unknown by VirusTotal or have non-zero detection, otherwise show only unsigned files.· v[rn] - Query VirusTotal for malware based on file hash. Add 'r' to open reports for files with non-zero detection. Files reported as not previously scanned will be uploaded to VirusTotal unless the 'n' option is specified. Note scan results may not be available for five of more minutes.· vt - Before using VirusTotal features, you must accept VirusTotal terms of service. If you haven't accepted the terms and you omit this option, you will be interactively prompted.Operating system:Windows All Program specification:Technical details:Version: 2.54File size: 514 MBFile name: Sigcheck.zipLast update: 30 Aug 2016Platform: Windows AllLicense: FreewareCompany: Sysinternals (View more)Related Programs: MagicBD 3.5MagicBD is a graphic software which can be used to draw many kinds of iconographies, illustrations and sketch maps.It can also be used to edit images to process them or get some special effects.Price: $28, Rating: 10, Downloads: 234 Download Pos Free Photo Editor 1.36Pos Free Photo Editor is a free photo editor from the authors of the best free professional photo editor - Photo Pos Pro free photo editor. The software is simple and very user friendly photo editor, that lets you easily view, and enhance your photosPrice: $0.00, Rating: 10, Downloads: 190 Download 5DFly Photo Design 4.1.30Design over 10 photos by few mouse clicks. Easily create photo book, collage, calendar, greeting cards, wedding photos and more artworks.Price: $39.95, Rating: 0, Downloads: 171 Download Citra FX 1.3Citra FX is a photo filter effects software.Price: $ 29, Rating: 10, Downloads: 162 Download Image Frame 1.2Image Frame is a Photoshop-compatible plug-in for easy creation naturally-look 3D frame. Add frame and text to your photos. You can apply rectangular and elliptical frame, change frame profile, material, and lightening.Price: $14.95, Rating: 10, Downloads: 160 Download User Rating Rating: 2.2 out of 5 Based on 13 ratings. 13 user reviews. Currently 2.15 out of 512345. VirusTotal Uploader, free and safe download. VirusTotal Uploader latest version: Downloadable antivirus tool from VirusTotal.VirusTotal = Vir.IT ~ VirusTotal Blog
Processes, or simply keeping an eye on your system's resources, Process Explorer has the features you need to get the job done.To get the most out of Process Explorer, take the time to explore its many features and customization options. With a little practice, you'll be able to use this tool to optimize your system's performance and keep it running smoothly.FAQWhat is Process Explorer?Process Explorer is a powerful system monitoring tool developed by Sysinternals, now part of Microsoft. It provides a detailed view of the processes running on your computer, including information about CPU usage, memory consumption, and more.How do I download Process Explorer?You can download Process Explorer from the Sysinternals website.How do I terminate a rogue process in Process Explorer?To terminate a rogue process in Process Explorer, right-click on the process in the Process List and select 'Kill Process'.How do I use VirusTotal integration in Process Explorer?To use VirusTotal integration in Process Explorer, right-click on a process in the Process List and select 'Check VirusTotal'. Process Explorer will upload the file to VirusTotal and display the results in a new window.You Might Also LikeHow to Optimize Windows PerformanceBest System Monitoring Tools in 2024Troubleshooting Common PC Issues Citation @article{how-to-use-process-explorer-for-advanced-system-monitoring, title = {How to Use Process Explorer for Advanced System Monitoring in 2024}, author = {Toxigon}, year = 2024, journal = {Toxigon Blog}, url = { } Types, making them particularly useful for describing scenarios involving multiple artifacts. For instance, the malicious file config.lnk file (SHA-256 hash 85b317bb4463a93ecc4d25af872401984d61e9ddcee4c275ea1f1d9875b5fa61) communicates with the IP address 149.51.230[.]198 to download a payload. In the context of VirusTotal, this relationship is represented through the communicating_files relationship of the ip_address object, which is directly related to 149.51.230[.]198. communicating_files stores information about all files, in the form of file objects, observed to communicate with the IP address during sandbox execution. VirusTotal executes submitted executable files in sandboxes to capture behaviors and artifacts visible only while the file is executing, such as started processes, network communications, changes to the file system, or strings present in process memory. The communicating_files relationship Top-level collections group all objects of the same type. The top-level collections that VirusTotal currently implements are files (a set of all objects of type file), urls (a set of all objects of type url), ips (a set of all objects of type ip), domains (a set of all objects of type domain), collections (a set of all objects of type collection), threat actors (a set of all objects of type threat_actor), and references (a set of all objects of type reference).The object of type collection is not to be confused with top-level collections. This object groups multiple objects of the same or different types given a user-specified context, such as a threat actor, a malicious campaign, or a malware family.The top-level collections enable operations that relate to the set of all objects of a given type. Such an operation is submitting a new file for analysis, which adds an object of type file to the files collection. Querying VirusTotalVirusTotal exposes two interfaces for interacting with its dataset: the platform’s graphical user interface (GUI) for manual interaction and the application program interface (API) for programmatic interaction. The VirusTotal GUI The VirusTotal GUI is the web interface of the platform. To query VirusTotal using the GUI, users enter a search query into the search field. A search query is composed of one or multiple search filters. A search filter can be a value uniquely identifying a submitted artifact – a URL, domain, file hash (MD5, SHA-1, or SHA-256), or an IP address. This filter cannot be combined with other filters and is used for retrieving information related to only a single submitted artifact. When a user inputs a value, VirusTotal retrieves the corresponding artifact and relatedVirusTotal and Chronicle ~ VirusTotal Blog
Instance, the malicious file config.lnk file (SHA-256 hash 85b317bb4463a93ecc4d25af872401984d61e9ddcee4c275ea1f1d9875b5fa61) communicates with the IP address 149.51.230[.]198 to download a payload.In the context of VirusTotal, this relationship is represented through the communicating_files relationship of the ip_address object, which is directly related to 149.51.230[.]198. communicating_files stores information about all files, in the form of file objects, observed to communicate with the IP address during sandbox execution. VirusTotal executes submitted executable files in sandboxes to capture behaviors and artifacts visible only while the file is executing, such as started processes, network communications, changes to the file system, or strings present in process memory.The communicating_files relationshipTop-level collections group all objects of the same type. The top-level collections that VirusTotal currently implements are files (a set of all objects of type file), urls (a set of all objects of type url), ips (a set of all objects of type ip), domains (a set of all objects of type domain), collections (a set of all objects of type collection), threat actors (a set of all objects of type threat_actor), and references (a set of all objects of type reference).The object of type collection is not to be confused with top-level collections. This object groups multiple objects of the same or different types given a user-specified context, such as a threat actor, a malicious campaign, or a malware family.The top-level collections enable operations that relate to the set of all objects of a given type. Such an operation is submitting a new file for analysis, which adds an object of type file to the files collection.Querying VirusTotalVirusTotal exposes two interfaces for interacting with its dataset: the platform’s graphical user interface (GUI) for manual interaction and the application program interface (API) for programmatic interaction.The VirusTotal GUIThe VirusTotal GUI is the web interface of the platform. To query VirusTotal using the GUI, users enter a search query into the search field. A search query is composed of one or multiple search filters.A search filter can be a value uniquely identifying a submitted artifact – a URL, domain, file hash (MD5, SHA-1, or SHA-256), or an IP address. This filter cannot be combined with other filters and is used for retrieving information related to only a single submitted artifact.When a user inputs a value, VirusTotal retrieves the corresponding artifact and related information from its dataset and displays this data to the user as a web analysis report. To retrieve the artifactbotherder/virustotal: VirusTotal tools - GitHub
0/59 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 0/60 | VirusTotal Latest Scan Results (MSI-x86)Master Packager 24.9.9118Release Notes for Master Packager 24.9.9118Release Type: ⬤ | ⬤Scan Detection Ratio 1/58 | VirusTotal Latest Scan ResultsMerciApp 2.7.3 (User-x64)Release Notes for MerciApp 2.7.3 (User-x64)Release Type: N/AScan Detection Ratio 1/66 | VirusTotal Latest Scan Results (User-x64)Microsoft Visual Studio Code 1.96.1 (User-x64)Microsoft Visual Studio Code 1.96.1 (x64)Release Notes for Microsoft Visual Studio Code 1.96.1Release Type: ⬤ | ⬤Scan Detection Ratio 0/70 | VirusTotal Latest Scan Results (User-x64)Scan Detection Ratio 0/70 | VirusTotal Latest Scan Results (x64)monday 1.0.36 (EXE-x64)monday 1.0.36 (MSI-x64)monday 1.0.36 (User-x64)Release Notes for monday 1.0.36Release Type: N/AScan Detection Ratio 0/67 | VirusTotal Latest Scan Results (EXE-x64)Scan Detection Ratio 0/61 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 0/67 | VirusTotal Latest Scan Results (User-x64)OpenBoard 1.7.3 (EXE)Release Notes for OpenBoard 1.7.3 (EXE)Release Type: ⬤Scan Detection Ratio 2/61 | VirusTotal Latest Scan Results (EXE)Opera 115.0.5322.109 (x64)Opera 115.0.5322.109 (x86)Release Notes for Opera 115.0.5322.109Release Type: ⬤Scan Detection Ratio 0/65 | VirusTotal Latest Scan Results (x64)Scan Detection Ratio 0/66 | VirusTotal Latest Scan Results (x86)PLSQL Developer 16 16.0.1.2149 (MSI-x64)PLSQL Developer 16 16.0.1.2149 (MSI-x86)PLSQL Developer Latest 16.0.1.2149 (MSI-x64)PLSQL Developer Latest 16.0.1.2149 (MSI-x86)Release Notes for PLSQL Developer 16 16.0.1.2149Release Type: ⬤Scan Detection Ratio 1/61 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 1/60 | VirusTotal Latest Scan Results (MSI-x86)Proton Mail 1.6.0 (User-x64)Release Notes for Proton Mail 1.6.0 (User-x64)Release Type: N/AScan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)QTextPad 1.12 (EXE-x64)Release Notes for QTextPad 1.12 (EXE-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 1/71 | VirusTotal Latest Scan Results (EXE-x64)ReluxDesktop 2025.1.0 (EXE-x86)Release Notes for ReluxDesktop 2025.1.0Release Type: ⬤Scan Detection Ratio 0/96 | VirusTotal Latest Scan Results (URL Scan)Salesforce CLI v2 2.70.7 (EXE-x64)Release Notes for Salesforce CLI v2 2.70.7 (EXE-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/58 | VirusTotal Latest Scan Results (EXE-x64)SecureCRT 9.6.1 (EXE-x64)SecureCRT 9.6.1 (EXE-x86)Release Notes for SecureCRT 9.6.1Release Type: ⬤Scan Detection Ratio 0/72 | VirusTotal Latest Scan Results (EXE-x64)Scan Detection Ratio 0/68 | VirusTotal Latest Scan Results (EXE-x86)SecureFX 9.6.1 (EXE-x64)SecureFX 9.6.1 (EXE-x86)Release Notes for SecureFX 9.6.1Release Type: ⬤Scan Detection Ratio 0/72 | VirusTotal Latest Scan Results (EXE-x64)Scan Detection Ratio 0/72 | VirusTotal Latest Scan Results (EXE-x86)SoapUI 5.8.0 (EXE-x64)Release Notes for SoapUI 5.8.0 (EXE-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/66 | VirusTotal Latest Scan Results (EXE-x64)Twingate 20.24.351.8715 (MSI-x64)Release Notes for Twingate 20.24.351.8715 (MSI-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/61 | VirusTotal Latest Scan Results (MSI-x64)VidCoder 11.9 (User-x64)Release Notes for VidCoder 11.9 (User-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/67 | VirusTotal Latest Scan Results (User-x64)Vivi 3.9.1 (MSI-x64)Release Notes for Vivi 3.9.1 (MSI-x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/46 | VirusTotal Latest Scan Results (MSI-x64)VSCodium 1.96.0.24352 (EXE-x64)VSCodium 1.96.0.24352 (MSI-x64)VSCodium 1.96.0.24352 (User-x64)Release Notes for VSCodium 1.96.0.24352Release Type: ⬤ | ⬤Scan Detection Ratio 0/68 | VirusTotal Latest Scan Results (EXE-x64)Scan Detection Ratio 0/56 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)Wasmer 5.0.4 (EXE-x86)Release Notes for Wasmer 5.0.4 (EXE-x86)Release Type: ⬤Scan Detection Ratio 1/70 | VirusTotal Latest Scan Results (EXE-x86)Wildix Collaboration 2.6.11 (EXE-x64)Wildix Collaboration. VirusTotal Uploader, free and safe download. VirusTotal Uploader latest version: Downloadable antivirus tool from VirusTotal. Download VirusTotal Scan for Firefox. Scan URL with VirusTotalVirusTotal/qt-virustotal-uploader - GitHub
AboutGitHub Action to upload and scan files with VirusTotal.UsageScan local filesScan assets of a published releaseScan through VirusTotal MonitorCustomizinginputsoutputsContributingLicenseUsageScan local filesThis action can be used to scan local files with VirusTotal:name: buildpermissions: contents: readon: push:jobs: build: runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@v4 - name: Set up Go uses: actions/setup-go@v5 - name: Build run: | GOOS=windows GOARCH=386 go build -o ./ghaction-virustotal-win32.exe -v -ldflags "-s -w" GOOS=windows GOARCH=amd64 go build -o ./ghaction-virustotal-win64.exe -v -ldflags "-s -w" - name: VirusTotal Scan uses: crazy-max/ghaction-virustotal@v4 with: vt_api_key: ${{ secrets.VT_API_KEY }} files: | ./ghaction-virustotal-win32.exe ./ghaction-virustotal-win64.exeScan assets of a published releaseYou can also use this action to scan assets of a published release on GitHubwhen a release eventis triggered:name: releasedpermissions: contents: readon: release: types: - publishedjobs: virustotal: runs-on: ubuntu-latest steps: - name: VirusTotal Scan uses: crazy-max/ghaction-virustotal@v4 with: vt_api_key: ${{ secrets.VT_API_KEY }} files: | .exe$If you set update_release_body: true input, analysis link(s) will be appendedto the release body:name: releasedpermissions: contents: readon: release: types: - publishedjobs: virustotal: runs-on: ubuntu-latest permissions: # required to write GitHub Release body contents: write steps: - name: VirusTotal Scan uses: crazy-max/ghaction-virustotal@v4 with: vt_api_key: ${{ secrets.VT_API_KEY }} update_release_body: true files: | .exe$And will look like this:Scan through VirusTotal MonitorTo scan your assets through VirusTotal Monitor you can use the followingworkflow:name: buildpermissions: contents: readon: push:jobs: build: runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@v4 - name: Set up Go uses: actions/setup-go@v5 - name: Build run: | GOOS=windows GOARCH=386 go build -o ./ghaction-virustotal-win32.exe -v -ldflags "-s -w" GOOS=windows GOARCH=amd64 go build -o ./ghaction-virustotal-win64.exe -v -ldflags "-s -w" - name: VirusTotal Monitor Scan uses: crazy-max/ghaction-virustotal@v4 with: vt_api_key: ${{ secrets.VT_API_KEY }} vt_monitor: true monitor_path: /ghaction-virustotal files: | ./ghaction-virustotal-*.exeCustomizinginputsFollowing inputs can be used as step.with keysNameTypeDefaultDescriptionvt_api_keyStringVirusTotal API key to upload assets (required)filesStringNewline-delimited list of path globs/patterns for asset files to upload for analysis (required)vt_monitorBoolfalseIf enabled, files will be uploaded to VirusTotal Monitor endpointmonitor_path¹String/A path relative to current monitor user root folder to upload filesupdate_release_body²BoolfalseIf enabled, analysis link(s) will be appended to the release bodygithub_token³StringGitHub Token used to create an authenticated client for GitHub API as provided by secretsrequest_rateNumber0API request-rate in requests/minute. Set to 4 or lower when using the standard free public API. 0 to disable rate-limit.Note¹ Only available if vt_monitor is enabled.² Only available if release event is triggered in your workflow.³ Required if release event is triggered in your workflow.outputsThe following outputs are availableNameTypeDescriptionanalysisStringAnalysis results formatted as = (comma separated)ContributingWant to contribute? Awesome! The most basicComments
The 02/27/25 catalog release contains bug, feature and security-related updates.New Products:Absolute Secure Access Client (MSI-x64) | 13.52.15012.0Airbox Mission Control (MSI-x64) | 6.4.0.0Amazon Connect Client (MSI-x64) | 2.0.3.0Dell Display and Peripheral Manager (EXE-x64) | 2.0.0.72HP Client Management Script Library (EXE-x64) | 1.8.1.0QZ Tray (EXE-x64) | 2.2.4.0SketchUp Pro 2025 (EXE-x64) | 25.0.571.0Turbo-Chart (MSI-x86) | 2.0.6.5Fixes and Improvements:Removed manual download requirement for VMware Workstation Player 17Added Widgets.exe & CefSharp.BrowserSubprocess.exe to Manage Conflicting Processes list for OBS StudioUpdates and Base Applications Added:4K Video Downloader+ 25.0.2.185 (MSI-x64)4K Video Downloader+ 25.0.2.185 (MSI-x86)Release Notes for 4K Video Downloader+ 25.0.2.185Release Type: N/AScan Detection Ratio 0/59 | VirusTotal Latest Scan Results (MSI-x64)Scan Detection Ratio 0/65 | VirusTotal Latest Scan Results (MSI-x86)Beyond Compare 5 5.0.6.30713 (EXE-x64)Beyond Compare 5 5.0.6.30713 (User-x64)Release Notes for Beyond Compare 5 5.0.6.30713Release Type: ⬤ | ⬤Scan Detection Ratio 0/72 | VirusTotal Latest Scan ResultsCLion 2024 243.25659.42 (EXE-x64)CLion Latest 243.25659.42 (EXE-x64)Release Notes for CLion 2024 243.25659.42Release Type: ⬤Scan Detection Ratio N/A | VirusTotal Latest Scan ResultsDeezer 7.0.31 (User-x64)Release Notes for Deezer 7.0.31 (User-x64)Release Type: N/AScan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)Devolutions Workspace 2024.3.7 (MSI-x64)Release Notes for Devolutions Workspace 2024.3.7 (MSI-x64)Release Type: ⬤Scan Detection Ratio 0/62 | VirusTotal Latest Scan Results (MSI-x64)Draftable Desktop 25.2.0 (MSI-x86)Draftable Desktop 25.2.0 (User-x86)Release Notes for Draftable Desktop 25.2.0Release Type: TBDScan Detection Ratio 0/46 | VirusTotal Latest Scan Results (MSI-x86)Scan Detection Ratio N/A | VirusTotal Latest Scan Results (User-x86)Element 1.11.94 (User-x64)Release Notes for Element 1.11.94 (User-x64)Release Type: N/AScan Detection Ratio 0/69 | VirusTotal Latest Scan Results (User-x64)Elgato 4K Capture Utility 1.7.15.10334 (MSI-x64)Release Notes for Elgato 4K Capture Utility 1.7.15.10334 (MSI-x64)Release Type: TBDScan Detection Ratio 0/56 | VirusTotal Latest Scan Results (MSI-x64)FlashBack Express 6.17.0.560 (x64)Release Notes for FlashBack Express 6.17.0.560 (x64)Release Type: ⬤ | ⬤Scan Detection Ratio 0/69 | VirusTotal Latest Scan Results (x64)FlexWhere for Desktop 3.4.1 (MSI)Release Notes for FlexWhere for
2025-03-28If you have a list of hashes, you can bulk file hash check with VirusTotal. You will need the VirusTotal API key. There are many tools available, but if you want to use a tool that is going to ingest API key from your account – make sure it is from reputable source. Didier Stevens is a reputable part of security community and “SANS.org” – we will cover his script.Affiliate: Experience limitless no-code automation, streamline your workflows, and effortlessly transfer data between apps with Make.com.Currently there are several official sources for the script, so you will know where to find it: Official Didier Stevens Blog page for virustotal-search.py 1.1.4 – based on Python 2. Official Didier Stevens Blog page for virustotal-search.py 1.1.5 – based on Python 2. Latest Beta version on GitHub for virustotal-search.py 1.1.6 – based on Python 3. This is current Beta page, currently there is v1.1.6, but could be later version.How to install Didier Stevens “virustotal-search.py” script1. Download latest version of Python 3 2. Install it – check usage for PATH environment variable and for easier future updates install to the root of your C: drive. Example for Python 3.9.5:C:\Python39\3. Navigate to Didier Stevens virustotal-search.py Github page 4. On top of the page Right Click the [Raw] button and [Save link as]. Save the file in the place that you will find it later, for example:C:\tools\Didier Stevens\virustotal-search\virustotal-search-1.1.6.py5. Sign up for VirusTotal for free. 6. After you login to VT, click your profile button, then [API Key]. Copy this API key so you can use it later, maybe save to text file. * Free VirusTotal Public API key can be used for 4 hash requests per minute and 500 hashes per day. Same goes for the script itself, it will not send more than 4 requests per minute. It was scripted that way and if you have a premium account with bigger quota, the script will still send 4 requests per minute. Keep that in mind. After your reach your daily quota of 500 requests with free account – VT will send you an email and the script
2025-04-12Sigcheck 2.54 This is a lightweight command line utility that verifies that images are digitally signed, displaying info related to timestamp and versionSigcheck is a handy and reliable application designed to show file version number, timestamp information, and digital signature details, including certificate chains.Usage: sigcheck [-a][-h][-i][-e][-n][[-s]|[-c|-ct]|[-m]][-q][-r][-u][-vt][-v[r][n]][-f catalog file] · a - Show extended version information· c - CSV output with comma delimiter· ct - CSV output with tab delimiter· e - Scan executable images only (regardless of their extension)· f - Look for signature in the specified catalog file· h - Show file hashes· i - Show catalog name and image signers· m - Dump manifest· n - Only show file version number· q - Quiet (no banner)· r - Disable check for certificate revocation· s - Recurse subdirectories· u - If VirusTotal check is enabled, show files that are unknown by VirusTotal or have non-zero detection, otherwise show only unsigned files.· v[rn] - Query VirusTotal for malware based on file hash. Add 'r' to open reports for files with non-zero detection. Files reported as not previously scanned will be uploaded to VirusTotal unless the 'n' option is specified. Note scan results may not be available for five of more minutes.· vt - Before using VirusTotal features, you must accept VirusTotal terms of service. If you haven't accepted the terms and you omit this option, you will be interactively prompted.Operating system:Windows All Program specification:Technical details:Version: 2.54File size: 514 MBFile name: Sigcheck.zipLast update: 30 Aug 2016Platform: Windows AllLicense: FreewareCompany: Sysinternals (View more)Related Programs: MagicBD 3.5MagicBD is a graphic software which can be used to draw many kinds of iconographies, illustrations and sketch maps.It can also be used to edit images to process them or get some special effects.Price: $28, Rating: 10, Downloads: 234 Download Pos Free Photo Editor 1.36Pos Free Photo Editor is a free photo editor from the authors of the best free professional photo editor - Photo Pos Pro free photo editor. The software is simple and very user friendly photo editor, that lets you easily view, and enhance your photosPrice: $0.00, Rating: 10, Downloads: 190 Download 5DFly Photo Design 4.1.30Design over 10 photos by few mouse clicks. Easily create photo book, collage, calendar, greeting cards, wedding photos and more artworks.Price: $39.95, Rating: 0, Downloads: 171 Download Citra FX 1.3Citra FX is a photo filter effects software.Price: $ 29, Rating: 10, Downloads: 162 Download Image Frame 1.2Image Frame is a Photoshop-compatible plug-in for easy creation naturally-look 3D frame. Add frame and text to your photos. You can apply rectangular and elliptical frame, change frame profile, material, and lightening.Price: $14.95, Rating: 10, Downloads: 160 Download User Rating Rating: 2.2 out of 5 Based on 13 ratings. 13 user reviews. Currently 2.15 out of 512345
2025-04-08Processes, or simply keeping an eye on your system's resources, Process Explorer has the features you need to get the job done.To get the most out of Process Explorer, take the time to explore its many features and customization options. With a little practice, you'll be able to use this tool to optimize your system's performance and keep it running smoothly.FAQWhat is Process Explorer?Process Explorer is a powerful system monitoring tool developed by Sysinternals, now part of Microsoft. It provides a detailed view of the processes running on your computer, including information about CPU usage, memory consumption, and more.How do I download Process Explorer?You can download Process Explorer from the Sysinternals website.How do I terminate a rogue process in Process Explorer?To terminate a rogue process in Process Explorer, right-click on the process in the Process List and select 'Kill Process'.How do I use VirusTotal integration in Process Explorer?To use VirusTotal integration in Process Explorer, right-click on a process in the Process List and select 'Check VirusTotal'. Process Explorer will upload the file to VirusTotal and display the results in a new window.You Might Also LikeHow to Optimize Windows PerformanceBest System Monitoring Tools in 2024Troubleshooting Common PC Issues Citation @article{how-to-use-process-explorer-for-advanced-system-monitoring, title = {How to Use Process Explorer for Advanced System Monitoring in 2024}, author = {Toxigon}, year = 2024, journal = {Toxigon Blog}, url = { }
2025-04-15Types, making them particularly useful for describing scenarios involving multiple artifacts. For instance, the malicious file config.lnk file (SHA-256 hash 85b317bb4463a93ecc4d25af872401984d61e9ddcee4c275ea1f1d9875b5fa61) communicates with the IP address 149.51.230[.]198 to download a payload. In the context of VirusTotal, this relationship is represented through the communicating_files relationship of the ip_address object, which is directly related to 149.51.230[.]198. communicating_files stores information about all files, in the form of file objects, observed to communicate with the IP address during sandbox execution. VirusTotal executes submitted executable files in sandboxes to capture behaviors and artifacts visible only while the file is executing, such as started processes, network communications, changes to the file system, or strings present in process memory. The communicating_files relationship Top-level collections group all objects of the same type. The top-level collections that VirusTotal currently implements are files (a set of all objects of type file), urls (a set of all objects of type url), ips (a set of all objects of type ip), domains (a set of all objects of type domain), collections (a set of all objects of type collection), threat actors (a set of all objects of type threat_actor), and references (a set of all objects of type reference).The object of type collection is not to be confused with top-level collections. This object groups multiple objects of the same or different types given a user-specified context, such as a threat actor, a malicious campaign, or a malware family.The top-level collections enable operations that relate to the set of all objects of a given type. Such an operation is submitting a new file for analysis, which adds an object of type file to the files collection. Querying VirusTotalVirusTotal exposes two interfaces for interacting with its dataset: the platform’s graphical user interface (GUI) for manual interaction and the application program interface (API) for programmatic interaction. The VirusTotal GUI The VirusTotal GUI is the web interface of the platform. To query VirusTotal using the GUI, users enter a search query into the search field. A search query is composed of one or multiple search filters. A search filter can be a value uniquely identifying a submitted artifact – a URL, domain, file hash (MD5, SHA-1, or SHA-256), or an IP address. This filter cannot be combined with other filters and is used for retrieving information related to only a single submitted artifact. When a user inputs a value, VirusTotal retrieves the corresponding artifact and related
2025-04-07Instance, the malicious file config.lnk file (SHA-256 hash 85b317bb4463a93ecc4d25af872401984d61e9ddcee4c275ea1f1d9875b5fa61) communicates with the IP address 149.51.230[.]198 to download a payload.In the context of VirusTotal, this relationship is represented through the communicating_files relationship of the ip_address object, which is directly related to 149.51.230[.]198. communicating_files stores information about all files, in the form of file objects, observed to communicate with the IP address during sandbox execution. VirusTotal executes submitted executable files in sandboxes to capture behaviors and artifacts visible only while the file is executing, such as started processes, network communications, changes to the file system, or strings present in process memory.The communicating_files relationshipTop-level collections group all objects of the same type. The top-level collections that VirusTotal currently implements are files (a set of all objects of type file), urls (a set of all objects of type url), ips (a set of all objects of type ip), domains (a set of all objects of type domain), collections (a set of all objects of type collection), threat actors (a set of all objects of type threat_actor), and references (a set of all objects of type reference).The object of type collection is not to be confused with top-level collections. This object groups multiple objects of the same or different types given a user-specified context, such as a threat actor, a malicious campaign, or a malware family.The top-level collections enable operations that relate to the set of all objects of a given type. Such an operation is submitting a new file for analysis, which adds an object of type file to the files collection.Querying VirusTotalVirusTotal exposes two interfaces for interacting with its dataset: the platform’s graphical user interface (GUI) for manual interaction and the application program interface (API) for programmatic interaction.The VirusTotal GUIThe VirusTotal GUI is the web interface of the platform. To query VirusTotal using the GUI, users enter a search query into the search field. A search query is composed of one or multiple search filters.A search filter can be a value uniquely identifying a submitted artifact – a URL, domain, file hash (MD5, SHA-1, or SHA-256), or an IP address. This filter cannot be combined with other filters and is used for retrieving information related to only a single submitted artifact.When a user inputs a value, VirusTotal retrieves the corresponding artifact and related information from its dataset and displays this data to the user as a web analysis report. To retrieve the artifact
2025-04-22