查看: 6666|回复: 20
收起左侧

[病毒样本] 精睿样本测试(16.9.23)

[复制链接]
轩夏
发表于 2016-9-23 09:02:30 | 显示全部楼层 |阅读模式
地址:

https://pan.baidu.com/s/1i5rxui5 提取密码  b3ak
http://www.vdisk.cn/down/index/19735015

密码:bbs.vc52.cn
数量:50
Eset小粉絲
发表于 2016-9-23 09:03:14 | 显示全部楼层
本帖最后由 Eset小粉絲 于 2016-9-23 09:08 编辑

AVIRA 34X

[mw_shl_code=css,true]Start of the scan: Friday, 23 September, 2016  09:06

Starting the file scan:

Begin scan in 'C:\Users\User\Desktop\2016.9.23'
C:\Users\User\Desktop\2016.9.23\01.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.71882 Java script virus
C:\Users\User\Desktop\2016.9.23\02.vir
  [DETECTION] Is the TR/Crypt.ZPACK.rvjbg Trojan
C:\Users\User\Desktop\2016.9.23\03.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.71883 Java script virus
C:\Users\User\Desktop\2016.9.23\05.vir
  [DETECTION] Is the TR/Injector.BWG.9 Trojan
C:\Users\User\Desktop\2016.9.23\07.vir
  [DETECTION] Is the TR/Dropper.VB.hvbqr Trojan
C:\Users\User\Desktop\2016.9.23\09.vir
  [DETECTION] Is the TR/Peals.vhklb Trojan
C:\Users\User\Desktop\2016.9.23\14.vir
    [0] Archive type: ACE
    --> Marchiti_output957275F.exe
        [DETECTION] Is the TR/Dropper.VB.qtsdu Trojan
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\15.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.709124 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\17.vir
  [DETECTION] Is the TR/Crypt.ZPACK.oadna Trojan
C:\Users\User\Desktop\2016.9.23\18.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.82734 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\19.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.71883 Java script virus
C:\Users\User\Desktop\2016.9.23\20.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\User\Desktop\2016.9.23\21.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.DHF Java script virus
C:\Users\User\Desktop\2016.9.23\24.vir
  [DETECTION] Is the TR/Crypt.EPACK.adh Trojan
C:\Users\User\Desktop\2016.9.23\26.vir
  [DETECTION] Contains virus patterns of Adware ADWARE/FileFinder.ckjhu
C:\Users\User\Desktop\2016.9.23\27.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.709124 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\28.vir
  [DETECTION] Is the TR/Crypt.XPACK.Gen7 Trojan
C:\Users\User\Desktop\2016.9.23\29.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.71882 Java script virus
C:\Users\User\Desktop\2016.9.23\30.vir
    [0] Archive type: ACE
    --> Invitation.exe
        [DETECTION] Is the TR/AD.Fareit.ryhau Trojan
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\31.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.9.23\33.vir
  [DETECTION] Is the TR/AD.Ursnif.dvlov Trojan
C:\Users\User\Desktop\2016.9.23\34.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.9.23\35.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.82734 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\36.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.71882 Java script virus
C:\Users\User\Desktop\2016.9.23\37.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.9.23\38.vir
    [0] Archive type: ACE
    --> IMG_9758.exe
        [DETECTION] Is the TR/Dropper.VB.saizz Trojan
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\39.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.CG.100 Java script virus
C:\Users\User\Desktop\2016.9.23\40.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Krypt.919161 Java script virus
C:\Users\User\Desktop\2016.9.23\41.vir
  [DETECTION] Contains code of the W2000M/Agent.78870 macro virus
C:\Users\User\Desktop\2016.9.23\43.vir
    [0] Archive type: ZIP
    --> word/embeddings/oleObject1.bin
        [1] Archive type: OLE
      --> Object
          [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.67788 Java script virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\44.vir
    [0] Archive type: RAR
    --> Atraso en cuotas posible inclusion en las centrales de riesgo aviso #7736262672882826627282.exe
        [DETECTION] Is the TR/Samca.cvjws Trojan
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.9.23\45.vir
  [DETECTION] Contains code of the W2000M/Agent.78872 macro virus
C:\Users\User\Desktop\2016.9.23\46.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.9.23\50.vir
  [DETECTION] Is the TR/Dropper.eznzo Trojan[/mw_shl_code]
轩夏
 楼主| 发表于 2016-9-23 09:05:39 | 显示全部楼层
MSE

[mw_shl_code=css,true]Scan started on Fri Sep 23 09:05:08 2016

C:\Users\XuanXia\Desktop\2016.9.23\01.vir->(SCRIPT0000)                                                                                         Infected: TrojanDownloader:JS/Swabfex.P
C:\Users\XuanXia\Desktop\2016.9.23\02.vir                                                                                                       Infected: Backdoor:Win32/Vawtrak.E
C:\Users\XuanXia\Desktop\2016.9.23\03.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.P
C:\Users\XuanXia\Desktop\2016.9.23\09.vir                                                                                                       Infected: Worm:Win32/Gamarue.AU
C:\Users\XuanXia\Desktop\2016.9.23\13.vir                                                                                                       Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.9.23\14.vir->Marchiti_output957275F.exe                                                                           Infected: Trojan:Win32/Dynamer!ac[non_writable_container]
C:\Users\XuanXia\Desktop\2016.9.23\15.vir->word/vbaProject.bin                                                                                  Infected: TrojanDownloader:O97M/Donoff.CJ
C:\Users\XuanXia\Desktop\2016.9.23\16.vir                                                                                                       Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.9.23\17.vir                                                                                                       Infected: Worm:Win32/Gamarue
C:\Users\XuanXia\Desktop\2016.9.23\18.vir->word/vbaProject.bin                                                                                  Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.9.23\19.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.P
C:\Users\XuanXia\Desktop\2016.9.23\21.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.C
C:\Users\XuanXia\Desktop\2016.9.23\24.vir                                                                                                       Infected: TrojanDownloader:Win32/Silcon
C:\Users\XuanXia\Desktop\2016.9.23\27.vir->word/vbaProject.bin                                                                                  Infected: TrojanDownloader:O97M/Donoff.CJ
C:\Users\XuanXia\Desktop\2016.9.23\29.vir->(SCRIPT0000)                                                                                         Infected: TrojanDownloader:JS/Swabfex.P
C:\Users\XuanXia\Desktop\2016.9.23\30.vir->Invitation.exe                                                                                       Infected: Trojan:Win32/Dynamer!ac[non_writable_container]
C:\Users\XuanXia\Desktop\2016.9.23\31.vir                                                                                                       Infected: TrojanDownloader:JS/Nemucod.FG
C:\Users\XuanXia\Desktop\2016.9.23\33.vir                                                                                                       Infected: TrojanSpy:Win32/Ursnif.HP
C:\Users\XuanXia\Desktop\2016.9.23\34.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.C
C:\Users\XuanXia\Desktop\2016.9.23\35.vir->word/vbaProject.bin                                                                                  Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.9.23\36.vir->(SCRIPT0000)                                                                                         Infected: TrojanDownloader:JS/Swabfex.P
C:\Users\XuanXia\Desktop\2016.9.23\37.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.C
C:\Users\XuanXia\Desktop\2016.9.23\39.vir                                                                                                       Infected: TrojanDownloader:JS/Swabfex.C
C:\Users\XuanXia\Desktop\2016.9.23\40.vir                                                                                                       Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.9.23\41.vir                                                                                                       Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.9.23\44.vir->Atraso en cuotas posible inclusion en las centrales de riesgo aviso #7736262672882826627282.exe      Infected: Backdoor:Win32/Xtrat!rfn [non_writable_container]
C:\Users\XuanXia\Desktop\2016.9.23\46.vir                                                                                                       Infected: TrojanDownloader:JS/Nemucod.FG
C:\Users\XuanXia\Desktop\2016.9.23\49.vir->(SCRIPT0001)                                                                                         Infected: Ransom:JS/Brolo.C
Successfully checked: C:\Users\XuanXia\Desktop\2016.9.23

Scan ended on Fri Sep 23 09:05:16 2016

Time: 8 second(s). [0h:00m:08s]
Files/second: 25 (1923 Kb/s).
Objects scanned: 206.
Infected: 28. Suspicious: 0. Clean: 178. Different virus bodies: 14.
Files: 89. Directories: 1. Archives: 11. Packed: 1. Mail files: 0.
Warnings: 28. Scan errors: 0. Protected: 0. Damaged: 0. Unknown method: 0. Spanned: 0.[/mw_shl_code]
心醉咖啡
发表于 2016-9-23 09:13:10 | 显示全部楼层
本帖最后由 心醉咖啡 于 2016-9-23 09:32 编辑

二扫再kill10X

扫描时间:[2016-09-23 09:12:31]
扫描用时:[00:00:06]
扫描类型:自定义查杀
扫描文件总数:129
扫描速度:18文件/秒
发现威胁:1个
清除威胁:1个
=============================================
[2016-09-23 09:12:48]
威胁:f:\浏览器下载\2016.9.23\11.vir
类型:win32.heur.kvmh008.a.(kcloud)
处理方式:删除
狐狸糊涂
发表于 2016-9-23 09:15:16 | 显示全部楼层
本帖最后由 狐狸糊涂 于 2016-9-23 09:25 编辑

BD杀37,余13

[mw_shl_code=css,true]C:\Users\lixia\Desktop\2016.9.23\09.vir Trojan.GenericKD.3539497 Deleted
C:\Users\lixia\Desktop\2016.9.23\45.vir Trojan.GenericKD.3541301 Deleted
C:\Users\lixia\Desktop\2016.9.23\16.vir=>(INFECTED_JS) JS:Trojan.JS.Agent.NYO Deleted
C:\Users\lixia\Desktop\2016.9.23\34.vir Generic.JS.NemucodA.57FDC160 Deleted
C:\Users\lixia\Desktop\2016.9.23\24.vir Trojan.GenericKD.3514330 Deleted
C:\Users\lixia\Desktop\2016.9.23\18.vir=>word/vbaProject.bin W97M.Downloader.EJD Disinfected
C:\Users\lixia\Desktop\2016.9.23\33.vir Trojan.GenericKD.3540584 Deleted
C:\Users\lixia\Desktop\2016.9.23\27.vir=>word/vbaProject.bin W97M.Downloader.EJA Deleted
C:\Users\lixia\Desktop\2016.9.23\40.vir Generic.JS.NemucodA.841C6248 Deleted
C:\Users\lixia\Desktop\2016.9.23\39.vir Trojan.JS.Agent.NWH Deleted
C:\Users\lixia\Desktop\2016.9.23\05.vir Gen:Variant.Kazy.300120 Deleted
C:\Users\lixia\Desktop\2016.9.23\41.vir VBA:Trojan.VBA.Downloader.AL Disinfected
C:\Users\lixia\Desktop\2016.9.23\31.vir=>(INFECTED_JS) JS:Trojan.JS.Downloader.FHK Deleted
C:\Users\lixia\Desktop\2016.9.23\13.vir W97M.Dropper.GG Disinfected
C:\Users\lixia\Desktop\2016.9.23\26.vir Gen:Variant.Strictor.113924 Deleted
C:\Users\lixia\Desktop\2016.9.23\37.vir Trojan.JS.RQJ Deleted
C:\Users\lixia\Desktop\2016.9.23\30.vir=>Invitation.exe Trojan.GenericKD.3539458 Moved to Quarantine
C:\Users\lixia\Desktop\2016.9.23\36.vir=>(INFECTED_JS) JS:Trojan.JS.Downloader.FON Deleted
C:\Users\lixia\Desktop\2016.9.23\35.vir=>word/vbaProject.bin W97M.Downloader.EJD Disinfected
C:\Users\lixia\Desktop\2016.9.23\32.vir Trojan.Agent.BYSJ Deleted
C:\Users\lixia\Desktop\2016.9.23\50.vir Gen:Variant.Razy.95126 Deleted
C:\Users\lixia\Desktop\2016.9.23\46.vir=>(INFECTED_JS) JS:Trojan.JS.Downloader.FHK Deleted
C:\Users\lixia\Desktop\2016.9.23\28.vir Gen:Variant.Zusy.206395 Deleted
C:\Users\lixia\Desktop\2016.9.23\12.vir Trojan.Upatre.Crypted.2 Deleted
C:\Users\lixia\Desktop\2016.9.23\15.vir=>word/vbaProject.bin W97M.Downloader.EJC Moved to Quarantine
C:\Users\lixia\Desktop\2016.9.23\44.vir=>Atraso en cuotas posible inclusion en las centrales de riesgo aviso #7736262672882826627282.exe Gen:Variant.Zusy.206329 Moved to Quarantine
C:\Users\lixia\Desktop\2016.9.23\07.vir Trojan.GenericKD.3539538 Deleted
C:\Users\lixia\Desktop\2016.9.23\20.vir Gen:Variant.MSILPerseus.51546 Deleted
C:\Users\lixia\Desktop\2016.9.23\02.vir Trojan.GenericKD.3534491 Deleted
C:\Users\lixia\Desktop\2016.9.23\19.vir=>(INFECTED_JS) JS:Trojan.Crypt.PV Deleted
C:\Users\lixia\Desktop\2016.9.23\01.vir=>(INFECTED_JS) JS:Trojan.JS.Downloader.FON Deleted
C:\Users\lixia\Desktop\2016.9.23\29.vir=>(INFECTED_JS) JS:Trojan.JS.Downloader.FON Deleted
C:\Users\lixia\Desktop\2016.9.23\21.vir Trojan.GenericKD.3539851 Deleted
C:\Users\lixia\Desktop\2016.9.23\03.vir=>(INFECTED_JS) JS:Trojan.Crypt.PV Deleted
C:\Users\lixia\Desktop\2016.9.23\14.vir=>Marchiti_output957275F.exe Gen:Variant.Razy.90815 Moved to Quarantine
C:\Users\lixia\Desktop\2016.9.23\17.vir Trojan.GenericKD.3537761 Deleted
[/mw_shl_code]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
蓝天二号
发表于 2016-9-23 09:15:46 | 显示全部楼层
本帖最后由 蓝天二号 于 2016-9-23 09:18 编辑

AVG 28X





本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
南海游仙
发表于 2016-9-23 09:17:19 | 显示全部楼层
心醉咖啡 发表于 2016-9-23 09:13
扫描时间:[2016-09-23 09:12:31]
扫描用时:[00:00:06]
扫描类型:自定义查杀

真感人
欧阳宣
头像被屏蔽
发表于 2016-9-23 09:18:17 | 显示全部楼层
本帖最后由 欧阳宣 于 2016-9-23 09:21 编辑

gdata检测36,修复2个
[mw_shl_code=css,true]Object: 07.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3539538 (Engine A)

Object: 09.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3539497 (Engine A)

Object: 05.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Gen:Variant.Kazy.300120 (Engine A)

Object: 02.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3534491 (Engine A)

Archive: 01.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Downloader.FON (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\01.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Downloader.FON

Object: 12.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.Upatre.Crypted.2 (Engine A)

Object: 13.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: W97M.Dropper.GG (Engine A)

Archive: 14.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: Gen:Variant.Razy.90815 (Engine A)
Object: Marchiti_output957275F.exe
        In archive: D:\Virus\2016.9.23\14.vir
        Status: Virus detected
        Virus: Gen:Variant.Razy.90815

Archive: 16.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Agent.NYO (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\16.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Agent.NYO

Object: 17.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3537761 (Engine A)

Archive: 18.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: W97M.Downloader.EJD (Engine A)
Object: word/vbaProject.bin
        In archive: D:\Virus\2016.9.23\18.vir
        Status: Virus detected
        Virus: W97M.Downloader.EJD

Archive: 15.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: W97M.Downloader.EJC (Engine A)
Object: word/vbaProject.bin
        In archive: D:\Virus\2016.9.23\15.vir
        Status: Virus detected
        Virus: W97M.Downloader.EJC

Archive: 03.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.Crypt.PV (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\03.vir
        Status: Virus detected
        Virus: JS:Trojan.Crypt.PV

Object: 24.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3514330 (Engine A)

Archive: 19.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.Crypt.PV (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\19.vir
        Status: Virus detected
        Virus: JS:Trojan.Crypt.PV

Object: 20.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Gen:Variant.MSILPerseus.51546 (Engine A)

Archive: 27.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: W97M.Downloader.EJC (Engine A)
Object: word/vbaProject.bin
        In archive: D:\Virus\2016.9.23\27.vir
        Status: Virus detected
        Virus: W97M.Downloader.EJC

Object: 28.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Gen:Variant.Zusy.206395 (Engine A)

Archive: 29.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Downloader.FON (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\29.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Downloader.FON

Archive: 30.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: Trojan.GenericKD.3539458 (Engine A)
Object: Invitation.exe
        In archive: D:\Virus\2016.9.23\30.vir
        Status: Virus detected
        Virus: Trojan.GenericKD.3539458

Object: 21.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3539851 (Engine A)

Object: 32.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.Agent.BYSJ (Engine A)

Object: 33.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3540584 (Engine A)

Object: 26.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Gen:Variant.Strictor.113924 (Engine A)

Object: 34.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Generic.JS.NemucodA.57FDC160 (Engine A)

Archive: 31.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Downloader.FHK (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\31.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Downloader.FHK

Archive: 36.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Downloader.FON (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\36.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Downloader.FON

Object: 39.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.JS.Agent.NWH (Engine A)

Object: 40.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Generic.JS.NemucodA.841C6248 (Engine A)

Object: 41.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: VBA:Trojan.VBA.Downloader.AL (Engine A)

Archive: 35.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: W97M.Downloader.EJD (Engine A)
Object: word/vbaProject.bin
        In archive: D:\Virus\2016.9.23\35.vir
        Status: Virus detected
        Virus: W97M.Downloader.EJD

Archive: 44.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: Gen:Variant.Zusy.206329 (Engine A)
Object: Atraso en cuotas posible inclusion en las centrales de riesgo aviso #7736262672882826627282.exe
        In archive: D:\Virus\2016.9.23\44.vir
        Status: Virus detected
        Virus: Gen:Variant.Zusy.206329

Archive: 46.vir
        Path: D:\Virus\2016.9.23
        Status: Virus, file deleted
        Virus: JS:Trojan.JS.Downloader.FHK (Engine A)
Object: (INFECTED_JS)
        In archive: D:\Virus\2016.9.23\46.vir
        Status: Virus detected
        Virus: JS:Trojan.JS.Downloader.FHK

Object: 37.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.JS.RQJ (Engine A)

Object: 45.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Trojan.GenericKD.3541301 (Engine A)

Object: 50.vir
        Path: D:\Virus\2016.9.23
        Status: Virus removed
        Virus: Gen:Variant.Razy.95126 (Engine A)[/mw_shl_code]
心醉咖啡
发表于 2016-9-23 09:34:19 | 显示全部楼层

国内靠云来作弊真好,这不二扫又杀了10个。只要靠云入个md5管他变种再入就是了,反正云端病毒库被搞得多大用户也不知道
Luca.l
发表于 2016-9-23 09:41:41 | 显示全部楼层
[mw_shl_code=html,true]【扫描信息】

开始时间:2016-9-23 09:41:11
扫描用时:00:00:01
扫描类型:指定位置杀毒
扫描引擎:管家云查杀引擎 管家反病毒引擎 管家系统修复引擎
扫描状态:扫描完成


【扫描结果】

扫描文件数:50
发现风险数:10
已处理风险数:10


---------------------
2016-9-23 09:41:14 MD5:e44995fd82f2bb553e073d7c1fff1e59 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\17.vir [Win32.Trojan.Inject.Auto]  [删除成功]
2016-9-23 09:41:14 MD5:7ab3ddd360ab838b48bb3cc5c6336c62 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\33.vir [Win32.Trojan-spy.Zbot.Akpf]  [删除成功]
2016-9-23 09:41:14 MD5:24dc82346bfd6090f6e0a953713a1e63 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\09.vir [Win32.Trojan.Crypt.Hsjc]  [删除成功]
2016-9-23 09:41:14 MD5:f31e094f78668fc80853cf4233df942a C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\28.vir [Win32.Trojan.Crypt.Dzte]  [删除成功]
2016-9-23 09:41:14 MD5:ea11f3509b62044b69853b08af4a807c C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\07.vir [Win32.Trojan.Vbkryjetor.Ajkz]  [删除成功]
2016-9-23 09:41:14 MD5:fd233e5b54e34e370ff7dd941d78c41f C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\26.vir [Win32.Trojan.Strictor.Edxb]  [删除成功]
2016-9-23 09:41:14 MD5:f7802e223a3220ee87e4e315439d75ff C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\05.vir [Win32.Trojan.Inject.Edwy]  [删除成功]
2016-9-23 09:41:14 MD5:8bf5e135414df9a81162521d6cbaf6b7 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\24.vir [Win32.Trojan.Generic.Efld]  [删除成功]
2016-9-23 09:41:15 MD5:e9ee00ed37d0b0f36c7b4fc803c3f646 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\02.vir [Win32.Trojan.Fakedoc.Auto]  [删除成功]
2016-9-23 09:41:15 MD5:2f776218cf08f38382a8c01a5242bac4 C:\Users\Joyzz_Android01\Desktop\样本\2016.9.23\20.vir [Win32.Trojan.Dropper.Hugd]  [删除成功]
---------------------
[/mw_shl_code]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-17 04:40 , Processed in 0.179662 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表