楼主: billgates1996
收起左侧

[病毒样本] 精睿论坛样本测试(04.15)

  [复制链接]
billgates1996
 楼主| 发表于 2012-4-15 13:11:25 | 显示全部楼层
zhanghongyuan1 发表于 2012-4-15 12:34
占位(avira)

敢用IDM咩

http://www.vdisk.cn/down/index/9987879
ygj67
发表于 2012-4-15 13:11:46 | 显示全部楼层
http://www.vdisk.cn/down/index/9987879威盘链接。
656635525
发表于 2012-4-15 13:11:56 | 显示全部楼层
本帖最后由 656635525 于 2012-4-15 13:41 编辑



AVG MISS 11X

已完成扫描 "外壳扩展扫描(Shell Extension Scan)"。
感染;"45";"0";"45"
选择要扫描的文件夹:;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415;"
扫描开始时间:;"2012年4月15日, 13:32:48"
扫描完成时间:;"2012年4月15日, 13:32:54 (5 秒)"
扫描的对象总数:;"94"
启动此扫描的用户:;"cface"

感染
;"文件";"病毒名称";"结果"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-9.vc52";"发现病毒 Script/PDF.Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-6.vc52";"发现病毒 Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-5.vc52";"特洛伊木马 Generic5_c.BSNR";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-49.vc52";"发现病毒 Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-46.vc52";"特洛伊木马 Agent3.BMIF";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-45.vc52";"发现病毒 Script/PDF.Exploit.AT";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-44.vc52";"发现病毒 Win32/Heur";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-43.vc52";"特洛伊木马 Startpage.QQP";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-42.vc52";"特洛伊木马 PSW.Generic9.BWGP";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-41.vc52";"发现病毒 Win32/Sality";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-40.vc52";"发现病毒 Worm/Delf.JON";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-4.vc52";"发现病毒 W97M/Lakko";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-39.vc52";"特洛伊木马 Constructor.DXM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-38.vc52";"特洛伊木马 Dropper.Generic5.RTA";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-37.vc52";"发现 Luhe.Packed.S";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-36.vc52";"特洛伊木马 Agent_r.AIT";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-35.vc52";"发现病毒 Win32/Themida";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-34.vc52";"特洛伊木马 BackDoor.Generic15.YXR";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-33.vc52";"发现病毒 Win32/Xpaj";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-32.vc52";"特洛伊木马 Dropper.Generic5.YFU";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-30.vc52";"特洛伊木马 Dropper.Generic5.LRN";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-3.vc52";"发现病毒 Script/PDF.Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-29.vc52";"特洛伊木马 Generic20.BSZG";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52:\تشفيري خام.exe";"特洛伊木马 Injector.IM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52:\1.exe:\تشفيري خام.exe";"特洛伊木马 Injector.IM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52:\1.exe:\server.exe";"特洛伊木马 Downloader.Generic10.XMS";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52:\1.exe:\server klen.scr";"发现病毒 Win32/Virut";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52:\1.exe";"特洛伊木马 Injector.IM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-27.vc52";"特洛伊木马 Injector.IM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-26.vc52";"特洛伊木马 PSW.Generic9.BUFT";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-25.vc52";"特洛伊木马 PSW.Generic9.BOPM";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-24.vc52";"发现病毒 Win32/Cryptor";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-23.vc52";"特洛伊木马 Dropper.Generic2.BUTI";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-22.vc52";"特洛伊木马 PSW.Agent.7.BK";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-20.vc52";"特洛伊木马 Generic_r.APP";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-2.vc52";"发现病毒 Win32/Cryptor";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-19.vc52";"特洛伊木马 PSW.Generic9.BSQE";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-18.vc52";"特洛伊木马 SHeur2.ZAS";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-17.vc52";"发现病毒 Win32/Parite";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-16.vc52";"发现病毒 Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-15.vc52";"特洛伊木马 Downloader.VB.TSB";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-12.vc52";"发现病毒 Win32/Parite";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-11.vc52";"发现病毒 Exploit";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-1.vc52";"特洛伊木马 Dropper.Generic5.CELN";"恶意文件"
;"C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\vc520415\BillLb-0415-0.vc52";"发现病毒 Script/PDF.Exploit";"恶意文件"

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
saga3721
发表于 2012-4-15 13:15:56 | 显示全部楼层
ADSLgg 发表于 2012-4-15 13:08
哈哈,这头像,很可爱很有活力


原本要用的那个更可爱,可是论坛说帧数太多不给用……这下辨识度比以前高了吧
其实我觉得你的签名图片很漂亮,像女孩子用的
ADSLgg
发表于 2012-4-15 13:20:20 | 显示全部楼层
billgates1996 发表于 2012-4-15 13:11
敢用IDM咩

http://www.vdisk.cn/down/index/9987879

哈哈,,引起公愤了
784696777
发表于 2012-4-15 13:22:00 | 显示全部楼层
q管(q管云+金山云+红伞)部分文件为清除

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hx1997
发表于 2012-4-15 13:22:54 | 显示全部楼层
Malcide Scanner
Version - 1.0.674

Heuristics - Extreme

Scanning now...
Date - 2012/4/15   Time - 13:20:40
Targets:
    C:\Users\Gateway\Desktop\vc520415

C:\Users\Gateway\Desktop\vc520415\BillLb-0415-1.vc52 - Win32.Malware.VB.JunkCode
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-12.vc52 - HEUR:Win32.Virus.Gen
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-15.vc52 - Win32.Malware.VB.JunkCode
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-17.vc52 - HEUR:Win32.Virus.Gen
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-18.vc52 - HEUR:Win32.Virus.Gen
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-23.vc52 - HEUR:Win32.Virus.Gen
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-24.vc52 - HEUR:Win32.Packed.Gen.4
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 - HEUR:Win32.Trojan-Dropper.RARSfx
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-29.vc52 - HEUR:Win32.Trojan.Crypted.4
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-30.vc52 - Win32.Malware.VB.JunkCode
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-33.vc52 - HEUR:Win32.Virus.Gen.3
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-35.vc52 - Win32.Packed.Themida.1
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-36.vc52 - HEUR:Win32.Virus.Gen
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-37.vc52 - HEUR:Win32.Virus.Gen.3
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-38.vc52 - Win32.Malware.VB.JunkCode
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-39.vc52 - HEUR:Win32.Virus.Gen.2
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-41.vc52 - HEUR:Win32.Virus.Gen.2
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-44.vc52 - HEUR:Win32.Packed.Gen.3

51 Objects scanned
5 Malicious objects found
13 Suspicious objects found
18 Threats found

Finish time - 13:20:58
Duration - 18 seconds (00:00:18)
784696777
发表于 2012-4-15 13:24:49 | 显示全部楼层
金山再扫

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hx1997
发表于 2012-4-15 13:26:08 | 显示全部楼层
ESET killed 39×, missed 11×.

To ESET.

C:\Users\Gateway\Desktop\vc520415\BillLb-0415-0.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-0.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-0.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-1.vc52 - probably a variant of Win32/Injector.ILI trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-1.vc52 - probably a variant of Win32/Injector.ILI trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-1.vc52 - probably a variant of Win32/Injector.ILI trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-11.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-11.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-11.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-12.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-12.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-12.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-14.vc52 » NSIS » OCSetupHlp.dll - Win32/OpenCandy potentially unsafe application
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-15.vc52 - a variant of Win32/TrojanDownloader.VB.PKJ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-15.vc52 - a variant of Win32/TrojanDownloader.VB.PKJ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-15.vc52 - a variant of Win32/TrojanDownloader.VB.PKJ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-16.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-16.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-16.vc52 - JS/Exploit.Pdfka.PIN trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-17.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-17.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-17.vc52 - Win32/Parite.B virus - cleaned - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-19.vc52 - Win32/PSW.Delf.NQS trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-19.vc52 - Win32/PSW.Delf.NQS trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-19.vc52 - Win32/PSW.Delf.NQS trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-2.vc52 - a variant of Win32/Kryptik.ACGF trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-2.vc52 - a variant of Win32/Kryptik.ACGF trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-2.vc52 - a variant of Win32/Kryptik.ACGF trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-20.vc52 - Win32/SpamTool.Tedroo.AQ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-20.vc52 - Win32/SpamTool.Tedroo.AQ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-20.vc52 - Win32/SpamTool.Tedroo.AQ trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-22.vc52 - a variant of Win32/Kryptik.AEAB trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-22.vc52 - a variant of Win32/Kryptik.AEAB trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-22.vc52 - a variant of Win32/Kryptik.AEAB trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-23.vc52 - a variant of Win32/TrojanDropper.VB.NRO trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-23.vc52 - a variant of Win32/TrojanDropper.VB.NRO trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-23.vc52 - a variant of Win32/TrojanDropper.VB.NRO trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-24.vc52 - a variant of Win32/Kryptik.ACOD trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-24.vc52 - a variant of Win32/Kryptik.ACOD trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-24.vc52 - a variant of Win32/Kryptik.ACOD trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-25.vc52 - a variant of Win32/Kryptik.ABNW trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-25.vc52 - a variant of Win32/Kryptik.ABNW trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-25.vc52 - a variant of Win32/Kryptik.ABNW trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-26.vc52 - a variant of Win32/Injector.POA trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-26.vc52 - a variant of Win32/Injector.POA trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-26.vc52 - a variant of Win32/Injector.POA trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 » RAR » ______ ___.exe - Win32/Virut.NBP virus
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 » RAR » 1.exe » RAR » ______ ___.exe - Win32/Virut.NBP virus
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 » RAR » 1.exe » RAR » server.exe - Win32/Virut.NBP virus
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 » RAR » 1.exe » RAR » server klen.scr - Win32/Virut.NBP virus
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-28.vc52 - Win32/InstallCore.H potentially unwanted application - action selection postponed until scan completion
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-28.vc52 - Win32/InstallCore.H potentially unwanted application - action selection postponed until scan completion
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-29.vc52 - a variant of Win32/Kryptik.JXC trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-29.vc52 - a variant of Win32/Kryptik.JXC trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-29.vc52 - a variant of Win32/Kryptik.JXC trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-3.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-3.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-3.vc52 - PDF/Exploit.Pidief.PHG trojan - cleaned by deleting - quarantined
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-30.vc52 - Win32/TrojanDropper.VB.NYX trojan - cleaned by deleting - quarantined


ESET 日志有问题,复制不完...
还是超过剪贴板字数?
hx1997
发表于 2012-4-15 13:30:59 | 显示全部楼层
来个复古。

正在扫描...
日期: 2012/4/15   时间: 13:30:19
扫描目标:
    C:\Users\Gateway\Desktop\vc520415

C:\Users\Gateway\Desktop\vc520415\BillLb-0415-1.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-10.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-12.vc52 - Win32/HEUR.ModifiedPE 应用程序
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-13.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-14.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-15.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-17.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-18.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-2.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-20.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-22.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-23.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-25.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-26.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-27.vc52 - Win32/Dropper:HEUR.RarSfx 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-28.vc52 > UPX - Win32/HEUR.ModifiedPE 应用程序
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-29.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-30.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-31.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-32.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-33.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-34.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-35.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-36.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-37.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-38.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-40.vc52 > UPX - Win32/HEUR.ModifiedPE 应用程序
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-41.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-42.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-43.vc52 - Win32/HEUR.FakeExtension 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-44.vc52 - Win32/HEUR.Unknown 木马
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-46.vc52 > UPX - Win32/HEUR.ModifiedPE 应用程序
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-47.vc52 > UPX - Win32/HEUR.ModifiedPE 应用程序
C:\Users\Gateway\Desktop\vc520415\BillLb-0415-5.vc52 - Win32/HEUR.FakeExtension 木马

已扫描对象数: 50
威胁数: 34
完成时间: 13:30:36
扫描用时: 17 秒 (00:00:17)
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-20 19:20 , Processed in 0.098961 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表