123
返回列表 发新帖
楼主: csklho
收起左侧

[病毒样本] 1.exe

  [复制链接]
反病毒测试员
发表于 2017-7-20 07:25:54 | 显示全部楼层
瑞星KILL
欧阳宣
头像被屏蔽
发表于 2017-7-20 09:09:07 来自手机 | 显示全部楼层
趋势双击翻车
skycai
发表于 2017-7-20 09:41:22 | 显示全部楼层

2楼扫的出你扫不出?
猥琐大叔
发表于 2017-7-20 09:56:06 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
,就一个.
发表于 2017-7-20 11:59:37 | 显示全部楼层

GD

Suspicious access to your file system has been detected, which suggests an encryption Trojan.

The following processes were therefore interrupted by G DATA for security reasons:
        ----------------------------------------------------------------
        D:\360极速浏览器下载\1\1.exe (PID 5328)
        C:\Windows\explorer.exe (PID 5980)
        C:\Program Files (x86)\PowerShadow\App\PsFrame.exe (PID 4684)
        C:\Program Files\2345Soft\HaoZip\HaoZip.exe (PID 2796)
        C:\Users\Administrator\AppData\Local\360Chrome\Chrome\Application\360chrome.exe (PID 356)
        ----------------------------------------------------------------

If blocked, the following programs responsible will be moved to Quarantine:
        ----------------------------------------------------------------
        D:\360极速浏览器下载\1\1.exe
        ----------------------------------------------------------------

Detected suspicious activities:
        ----------------------------------------------------------------
        Deleted: Volume Shadow Copies
        Created: C:\ProgramData\PowerShadow\Frame.trf
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\lockfile
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old~RF76a31.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOCK
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\data_reduction_proxy_leveldb\000003.log
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\6AED.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\Login Data-journal
        Created: C:\Users\Administrator\AppData\Local\Temp\etilqs_0BeqNcV9NHGzAVu
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Web Data-journal
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cookies-journal
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000622
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\History-journal
        Created: C:\Users\Administrator\AppData\Local\Temp\etilqs_VmWzyDpxyAMVAcM
        Created: C:\Users\Administrator\AppData\Local\Temp\etilqs_cqsdaQMpvjvI1w1
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Sync360_V8.sqlite3-journal
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\81D1.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\360mobilefav.dat~RF7821e.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Extension State\LOG.old~RF78357.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Extension State\LOCK
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\360sefav.dat-journal
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\8C13.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\Bookmarks~RF78c6f.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\8D5C.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Local State~RF78da7.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000623
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Favicons-journal
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\908A.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\Preferences~RF790b4.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\9136.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Network Persistent State~RF79160.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\9176.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\9187.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Session Storage\LOG.old~RF792b8.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Session Storage\LOCK
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000624
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\9C94.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\TransportSecurity~RF79cab.TMP
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\A4E2.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\A4E3.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\A4E4.tmp
        Created: D:\360极速浏览器下载\AF64.tmp
        Created: D:\360极速浏览器下载\1.rar:Zone.Identifier
        Created: C:\Users\Administrator\AppData\Local\Temp\360se_dcs.wav
        Created: C:\Users\Administrator\AppData\Roaming\HaoZip\HZ~B709.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA42.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA53.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA54.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA55.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA56.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA57.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA58.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA69.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA6A.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA6B.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA6C.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA7C.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\JumpListIcons\BA7D.tmp
        Created: C:\Users\Administrator\AppData\Local\Temp\~HZBA75.tmp
        Created: C:\Users\Administrator\AppData\Local\Temp\~HZBA76.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\BD1E.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\Preferences~RF7bd33.TMP
        Created: C:\Users\Administrator\AppData\Local\Temp\etilqs_r5qD6bseDgLUz04
        Created: C:\Users\Administrator\AppData\Roaming\HaoZip\AvScanLib\LocalLib.v1.2.2.data
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000625
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000626
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000627
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\Cache\f_000628
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\E539.tmp
        Created: C:\Users\Administrator\AppData\Local\360Chrome\Chrome\User Data\Default\360UID38663595_V8\Preferences~RF7e54d.TMP
        Created: C:\Users\Administrator\AppData\Local\Temp\etilqs_dddOmhklbSDmtON
        Created: D:\360极速浏览器下载\1\1.exe
        Created: C:\Users\Administrator\AppData\Roaming\HaoZip\HaoZip.stat.lock
        Created: C:\Users\Administrator\AppData\Roaming\Info.hta
        ----------------------------------------------------------------

The user blocked access.
诸葛亮
发表于 2017-7-20 12:39:58 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
zst470396853
发表于 2017-7-20 13:47:52 | 显示全部楼层
,就一个. 发表于 2017-7-20 11:59
GD

Suspicious access to your file system has been detected, which suggests an encryption Trojan ...

我测试了GD  看来GD本地化还是做的不够好啊

我开腾讯游戏平台玩LOL  上网保护会报毒拦截   玩游戏中还蓝屏   无赖换回卡巴.......
,就一个.
发表于 2017-7-20 17:57:38 | 显示全部楼层
zst470396853 发表于 2017-7-20 13:47
我测试了GD  看来GD本地化还是做的不够好啊

我开腾讯游戏平台玩LOL  上网保护会报毒拦截   玩游戏中还 ...

我家里电脑基本不玩游戏 都在网吧玩 我用GD 杀酷狗 迅雷 无所谓 杀了酷狗 迅雷 可以正常运行  
yutian8888
发表于 2017-7-20 23:03:35 | 显示全部楼层
greenfinger168 发表于 2017-7-19 19:05
ESET 6个月前就发现了

6个月前发现的是winrar  
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 06:39 , Processed in 0.097586 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表