[mw_shl_code=css,true]
Dr.Web Scanner SE for Windows v9.1.3.08170
Platform: Windows 10 Professional x64/WOW (Build 10240)
Scanning Engine version: 10.0.8.8100
Virus Finding Engine version: 7.0.14.8060
-----------------------------------------------------------------------------
Start scanning
-----------------------------------------------------------------------------
Object(s) to scan:
- C:\Users\Shiloh\Desktop\2015.8.31
C:\Users\Shiloh\Desktop\2015.8.31\01.vir:Zone.Identifier - Ok - 9ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\02.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\03.vir - infected with Trojan.Siggen6.47749
C:\Users\Shiloh\Desktop\2015.8.31\03.vir - infected - 346ms, 562176 bytes
C:\Users\Shiloh\Desktop\2015.8.31\03.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\01.vir is NSIS container
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\script.bin - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\_g8LfKPP9ncbeBXsM6 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\Lavonne - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\blt_plus.gif - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\broccoli.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir\_殌\System.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\01.vir - container - 552ms, 598987 bytes
C:\Users\Shiloh\Desktop\2015.8.31\04.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\04.vir - infected with Trojan.Dridex.179
C:\Users\Shiloh\Desktop\2015.8.31\04.vir - infected - 337ms, 227840 bytes
C:\Users\Shiloh\Desktop\2015.8.31\05.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\06.vir - is hacktool program Tool.Linux.Scanner.1
C:\Users\Shiloh\Desktop\2015.8.31\06.vir - infected - 7ms, 596756 bytes
C:\Users\Shiloh\Desktop\2015.8.31\06.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\07.vir is ZIP archive
C:\Users\Shiloh\Desktop\2015.8.31\07.vir\A1-2015-21-08.exe - infected with Trojan.Inject1.55577
C:\Users\Shiloh\Desktop\2015.8.31\07.vir\A1-2015-21-08.exe - infected
C:\Users\Shiloh\Desktop\2015.8.31\07.vir - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\07.vir - infected archive - 22ms, 111802 bytes
C:\Users\Shiloh\Desktop\2015.8.31\07.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\05.vir - infected with Trojan.Upatre.7448
C:\Users\Shiloh\Desktop\2015.8.31\05.vir - infected - 289ms, 53760 bytes
C:\Users\Shiloh\Desktop\2015.8.31\08.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\09.vir is ZIP archive
C:\Users\Shiloh\Desktop\2015.8.31\09.vir\Invoice.scr - infected with Trojan.Upatre.7434
C:\Users\Shiloh\Desktop\2015.8.31\09.vir\Invoice.scr - infected
C:\Users\Shiloh\Desktop\2015.8.31\09.vir - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\09.vir - infected archive - 8ms, 13609 bytes
C:\Users\Shiloh\Desktop\2015.8.31\09.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\02.vir - infected with Trojan.Dyre.553
C:\Users\Shiloh\Desktop\2015.8.31\02.vir - infected - 1096ms, 604160 bytes
C:\Users\Shiloh\Desktop\2015.8.31\10.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\08.vir - Ok - 423ms, 875520 bytes
C:\Users\Shiloh\Desktop\2015.8.31\11.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\10.vir - infected with BackDoor.Cybergate.1
C:\Users\Shiloh\Desktop\2015.8.31\10.vir - infected - 443ms, 279552 bytes
C:\Users\Shiloh\Desktop\2015.8.31\12.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\13.vir is RTF container
C:\Users\Shiloh\Desktop\2015.8.31\13.vir\OLEstream-1 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\13.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\13.vir - container - 42ms, 1021114 bytes
C:\Users\Shiloh\Desktop\2015.8.31\13.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\14.vir - infected with W97M.DownLoader.586
C:\Users\Shiloh\Desktop\2015.8.31\14.vir - infected - 6ms, 89088 bytes
C:\Users\Shiloh\Desktop\2015.8.31\14.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\15.vir is ZIP archive
>C:\Users\Shiloh\Desktop\2015.8.31\12.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\12.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\12.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\12.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\12.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\12.vir - container - 384ms, 1188864 bytes
C:\Users\Shiloh\Desktop\2015.8.31\15.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\16.vir is PDF container
>>C:\Users\Shiloh\Desktop\2015.8.31\16.vir\JavaString[00000001][00000051] is JS-HTML container
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\JavaString[00000001][00000051]\JSTAG_1[20][53] - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\JavaString[00000001][00000051] - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe - packed by UPX
>>C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B] is OPEN XML container
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\[Content_Types].xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\_rels\.rels - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\_rels\document.xml.rels - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\document.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\vbaProject.bin - infected with W97M.DownLoader.552
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\vbaProject.bin - infected
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\_rels\vbaProject.bin.rels - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\theme\theme1.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\vbaData.xml - Ok
>C:\Users\Shiloh\Desktop\2015.8.31\11.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\settings.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\11.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\docProps\app.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\styles.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\docProps\core.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\fontTable.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B]\word\webSettings.xml - Ok
C:\Users\Shiloh\Desktop\2015.8.31\16.vir\EmbeddedStream[00000001][0000008B] - infected container
C:\Users\Shiloh\Desktop\2015.8.31\16.vir - infected container
C:\Users\Shiloh\Desktop\2015.8.31\16.vir - infected container - 145ms, 42605 bytes
C:\Users\Shiloh\Desktop\2015.8.31\16.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\11.vir\data002 is ZLIB container
C:\Users\Shiloh\Desktop\2015.8.31\11.vir\data002\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\11.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\11.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\11.vir - container - 715ms, 1325568 bytes
C:\Users\Shiloh\Desktop\2015.8.31\17.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>>>C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe is AUTOIT container
C:\Users\Shiloh\Desktop\2015.8.31\18.vir - Ok - 572ms, 1230848 bytes
C:\Users\Shiloh\Desktop\2015.8.31\18.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\19.vir is 7-ZIP archive
C:\Users\Shiloh\Desktop\2015.8.31\19.vir\Visit original article link for more resources.url - Ok
>>>>C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Users\bsc\AppData\Local\AutoIt v3\Aut2Exe\aut462E.tmp.tok - packed by ASCRIPT
>>C:\Users\Shiloh\Desktop\2015.8.31\19.vir\adobe.snr.patch-painter.exe - packed by UPX
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Users\bsc\AppData\Local\AutoIt v3\Aut2Exe\aut462E.tmp.tok - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\W10Privacy\Languages.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\W10Privacy\W10Privacy_HOSTS.txt - Ok
C:\Users\Shiloh\Desktop\2015.8.31\19.vir\adobe.snr.patch-painter.exe - infected with Trojan.KillProc.34763
C:\Users\Shiloh\Desktop\2015.8.31\19.vir\adobe.snr.patch-painter.exe - infected
C:\Users\Shiloh\Desktop\2015.8.31\19.vir - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\Icons\Leeres_Icon.ico - Ok
C:\Users\Shiloh\Desktop\2015.8.31\19.vir - infected archive - 387ms, 605689 bytes
C:\Users\Shiloh\Desktop\2015.8.31\17.vir - infected with Trojan.PWS.Steam.2912
C:\Users\Shiloh\Desktop\2015.8.31\17.vir - infected - 1069ms, 790528 bytes
C:\Users\Shiloh\Desktop\2015.8.31\19.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\20.vir:Zone.Identifier - Ok - 7ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\tools\Anheften.vbs - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\W10Privacy\Tools\Internet Explorer_X64.lnk - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe\Systemsoftware\MyApps\AutoIT_v3\BSC-Scripte\W10Privacy\Tools\Internet Explorer_X86.lnk - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir\W10Privacy.exe - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\15.vir - archive - 1535ms, 639227 bytes
C:\Users\Shiloh\Desktop\2015.8.31\21.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\20.vir - infected with Trojan.PWS.Siggen1.40960
C:\Users\Shiloh\Desktop\2015.8.31\20.vir - infected - 308ms, 98554 bytes
C:\Users\Shiloh\Desktop\2015.8.31\22.vir:Zone.Identifier - Ok - 9ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\22.vir - infected with BackDoor.DaVinci.29
C:\Users\Shiloh\Desktop\2015.8.31\22.vir - infected - 332ms, 1064448 bytes
C:\Users\Shiloh\Desktop\2015.8.31\23.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\24.vir is ZIP archive
>>C:\Users\Shiloh\Desktop\2015.8.31\24.vir\Ausgleich an Peter Mattiske - Stellvertretender Rechtsanwalt DirectPay GmbH 27.08.2015.zip is ZIP archive
>C:\Users\Shiloh\Desktop\2015.8.31\21.vir - packed by UPX
C:\Users\Shiloh\Desktop\2015.8.31\24.vir\Ausgleich an Peter Mattiske - Stellvertretender Rechtsanwalt DirectPay GmbH 27.08.2015.zip\Peter Mattiske Ausgleich - Stellvertretender Rechtsanwalt DirectPay GmbH.com - infected with Trojan.DownLoader16.469
C:\Users\Shiloh\Desktop\2015.8.31\24.vir\Ausgleich an Peter Mattiske - Stellvertretender Rechtsanwalt DirectPay GmbH 27.08.2015.zip\Peter Mattiske Ausgleich - Stellvertretender Rechtsanwalt DirectPay GmbH.com - infected
C:\Users\Shiloh\Desktop\2015.8.31\24.vir\Ausgleich an Peter Mattiske - Stellvertretender Rechtsanwalt DirectPay GmbH 27.08.2015.zip - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\24.vir - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\24.vir - infected archive - 32ms, 68066 bytes
C:\Users\Shiloh\Desktop\2015.8.31\24.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\21.vir - Ok - 730ms, 621675 bytes
C:\Users\Shiloh\Desktop\2015.8.31\25.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\23.vir is 7-ZIP archive
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\settings\SplashScreen.jpg - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\VirtualBox.ico - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\LiesMich.txt - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\ReadMe.txt - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\catalan.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\chinese.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\english.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\french.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\german.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\italian.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\japanese.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\polish.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\portuguese.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\russian.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\settings\settings.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\spanish.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\language\ukrainian.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\settings\vboxinstall.ini - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\ColorConstants.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\Constants.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\DirConstants.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\FileConstants.au3 - Ok
>C:\Users\Shiloh\Desktop\2015.8.31\25.vir - packed by UPX
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\FrameConstants.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\GUIConstantsEx.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\IE.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\Portable-VirtualBox.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\ProcessConstants.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\String.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\UpDate.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\source\WinAPIError.au3 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\26.vir - infected with Trojan.Packed.21724
C:\Users\Shiloh\Desktop\2015.8.31\26.vir - infected - 307ms, 73728 bytes
C:\Users\Shiloh\Desktop\2015.8.31\26.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\25.vir - infected with DDoS.Ender.3
C:\Users\Shiloh\Desktop\2015.8.31\25.vir - infected - 641ms, 142848 bytes
C:\Users\Shiloh\Desktop\2015.8.31\27.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\7z.exe - packed by UPX
C:\Users\Shiloh\Desktop\2015.8.31\27.vir - infected with Trojan.KeyLogger.23529
C:\Users\Shiloh\Desktop\2015.8.31\27.vir - infected - 315ms, 692224 bytes
C:\Users\Shiloh\Desktop\2015.8.31\28.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\29.vir is JAR container
C:\Users\Shiloh\Desktop\2015.8.31\29.vir\META-INF\MANIFEST.MF - Ok
C:\Users\Shiloh\Desktop\2015.8.31\29.vir\data - Ok
C:\Users\Shiloh\Desktop\2015.8.31\29.vir\CkfxBrLd_jRquh_08kQrm8T_653.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\29.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\29.vir - container - 31ms, 91351 bytes
C:\Users\Shiloh\Desktop\2015.8.31\29.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\7z.exe - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\devcon_x64.exe - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\devcon_x86.exe - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe - packed by MPRESS
>>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe\data003 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\30.vir - infected with Trojan.PWS.Steam.5605
C:\Users\Shiloh\Desktop\2015.8.31\30.vir - infected - 351ms, 1089536 bytes
C:\Users\Shiloh\Desktop\2015.8.31\30.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe\data004 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\mpress.exe - Ok
>C:\Users\Shiloh\Desktop\2015.8.31\31.vir is RAR archive
C:\Users\Shiloh\Desktop\2015.8.31\31.vir\Call of DDoS\Call of DDoS.exe - infected with Trojan.MulDrop2.39589
C:\Users\Shiloh\Desktop\2015.8.31\31.vir\Call of DDoS\Call of DDoS.exe - infected
C:\Users\Shiloh\Desktop\2015.8.31\31.vir\Call of DDoS\JRPC.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\31.vir\Call of DDoS\XDevkit.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\31.vir - infected archive
C:\Users\Shiloh\Desktop\2015.8.31\31.vir - infected archive - 93ms, 749167 bytes
C:\Users\Shiloh\Desktop\2015.8.31\31.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\32.vir is JAR container
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\META-INF\MANIFEST.MF - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\b.txt - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\a.txt - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\a\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAw.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\b\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAw.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\c\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAw.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\c\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAk.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\d\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAw.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\d\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAk.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\Main.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAw.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir\ASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAASSAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAk.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\32.vir - container - 93ms, 96581 bytes
C:\Users\Shiloh\Desktop\2015.8.31\32.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\Portable-VirtualBox.exe is AUTOIT container
>>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\Portable-VirtualBox.exe\Users\Runarb\AppData\Local\AutoIt v3\Aut2Exe\aut185B.tmp.tok - packed by ASCRIPT
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\Portable-VirtualBox.exe\Users\Runarb\AppData\Local\AutoIt v3\Aut2Exe\aut185B.tmp.tok - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\Portable-VirtualBox.exe - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\snetcfg_x64.exe - Ok
>C:\Users\Shiloh\Desktop\2015.8.31\28.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\snetcfg_x86.exe - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\28.vir\data001 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\28.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\28.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\28.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\28.vir - container - 1102ms, 326656 bytes
C:\Users\Shiloh\Desktop\2015.8.31\33.vir:Zone.Identifier - Ok - 7ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\33.vir - infected with Trojan.DownLoader15.59920
C:\Users\Shiloh\Desktop\2015.8.31\33.vir - infected - 280ms, 8205 bytes
C:\Users\Shiloh\Desktop\2015.8.31\34.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\upx.exe - packed by UPX
C:\Users\Shiloh\Desktop\2015.8.31\35.vir - infected with Trojan.Siggen.65341
C:\Users\Shiloh\Desktop\2015.8.31\35.vir - infected - 339ms, 265216 bytes
C:\Users\Shiloh\Desktop\2015.8.31\35.vir:Zone.Identifier - Ok - 7ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\upx.exe - Ok
C:\Users\Shiloh\Desktop\2015.8.31\36.vir - probably infected with SCRIPT.Virus
C:\Users\Shiloh\Desktop\2015.8.31\36.vir - infected - 152ms, 99563 bytes
C:\Users\Shiloh\Desktop\2015.8.31\36.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\7z.dll - packed by UPX
>C:\Users\Shiloh\Desktop\2015.8.31\34.vir is AUTOIT container
>>C:\Users\Shiloh\Desktop\2015.8.31\34.vir\Users\ethan the cum squirt\AppData\Local\AutoIt v3\Aut2Exe\aut2644.tmp.tok - packed by ASCRIPT
C:\Users\Shiloh\Desktop\2015.8.31\34.vir\Users\ethan the cum squirt\AppData\Local\AutoIt v3\Aut2Exe\aut2644.tmp.tok - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir\Portable-VirtualBox\data\tools\7z.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\23.vir - archive - 2710ms, 1558177 bytes
C:\Users\Shiloh\Desktop\2015.8.31\37.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\37.vir - infected with Trojan.KeyLogger.23529
C:\Users\Shiloh\Desktop\2015.8.31\37.vir - infected - 366ms, 667136 bytes
C:\Users\Shiloh\Desktop\2015.8.31\38.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\34.vir\Users\ethan the cum squirt\AppData\Local\Temp\RazorCrypt\q2Y4AsDKMT - Ok
C:\Users\Shiloh\Desktop\2015.8.31\34.vir\Users\ethan the cum squirt\AppData\Local\Temp\RazorCrypt\pFBp0U8Ebk - Ok
C:\Users\Shiloh\Desktop\2015.8.31\34.vir\Users\ethan the cum squirt\AppData\Local\Temp\RazorCrypt\qMzStTqKTr - Ok
C:\Users\Shiloh\Desktop\2015.8.31\34.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\34.vir - container - 1187ms, 1263616 bytes
C:\Users\Shiloh\Desktop\2015.8.31\39.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\38.vir is NSIS container
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\script.bin - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\_g8LfKPP9ncbeBXsM6 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\Lydia - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\rules_90231135.js - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\mod_csgo.png - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\38.vir\tag(1) is JS-HTML container
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\tag(1)\JSFile_1[0][12f7] - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\tag(1) - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\default(5).jpg - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\Manchuria.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir\_殌\System.dll - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\38.vir - container - 572ms, 604105 bytes
C:\Users\Shiloh\Desktop\2015.8.31\40.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\39.vir is RAR archive
C:\Users\Shiloh\Desktop\2015.8.31\39.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\39.vir - ignored, unpack error - 583ms, 1749540 bytes
C:\Users\Shiloh\Desktop\2015.8.31\41.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\42.vir is JAR container
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\META-INF\MANIFEST.MF - Ok
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\b.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\c.class - Ok
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\d.class - infected with Java.Jacksbot.3
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\d.class - infected
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\enc.dat - Ok
C:\Users\Shiloh\Desktop\2015.8.31\42.vir\key.dat - Ok
C:\Users\Shiloh\Desktop\2015.8.31\42.vir - infected container
C:\Users\Shiloh\Desktop\2015.8.31\42.vir - infected container - 53ms, 183331 bytes
C:\Users\Shiloh\Desktop\2015.8.31\42.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\43.vir is ZIP archive
>C:\Users\Shiloh\Desktop\2015.8.31\40.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\classes.dex - Ok
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\AndroidManifest.xml - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data003 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\resources.arsc - Ok
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data004 - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data005 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data005 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\META-INF\MANIFEST.MF - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\META-INF\SIGNFILE.SF - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir\META-INF\SIGNFILE.RSA - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\43.vir - archive - 50ms, 7896 bytes
C:\Users\Shiloh\Desktop\2015.8.31\43.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data006 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data006 - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data007 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\40.vir\data007 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\40.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\40.vir - container - 428ms, 656384 bytes
C:\Users\Shiloh\Desktop\2015.8.31\44.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\41.vir - infected with Trojan.DownLoader15.60567
C:\Users\Shiloh\Desktop\2015.8.31\41.vir - infected - 313ms, 306176 bytes
C:\Users\Shiloh\Desktop\2015.8.31\45.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\44.vir - packed by SHAOLIN
C:\Users\Shiloh\Desktop\2015.8.31\45.vir - infected with Trojan.DownLoader11.32458
C:\Users\Shiloh\Desktop\2015.8.31\45.vir - infected - 333ms, 201728 bytes
C:\Users\Shiloh\Desktop\2015.8.31\46.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.8.31\44.vir - packed by UPX
>C:\Users\Shiloh\Desktop\2015.8.31\46.vir is BINARYRES container
>>C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data001 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data001\EGEmzSO - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data004 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data005 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data006 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data007 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data008 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data009 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data010 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data011 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir\data012 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\46.vir - container - 468ms, 399872 bytes
C:\Users\Shiloh\Desktop\2015.8.31\47.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\47.vir - infected with Trojan.DownLoader15.43774
C:\Users\Shiloh\Desktop\2015.8.31\47.vir - infected - 287ms, 225280 bytes
C:\Users\Shiloh\Desktop\2015.8.31\48.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>>>C:\Users\Shiloh\Desktop\2015.8.31\44.vir - packed by BINARYRES
C:\Users\Shiloh\Desktop\2015.8.31\44.vir - Ok - 816ms, 485888 bytes
C:\Users\Shiloh\Desktop\2015.8.31\49.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.8.31\48.vir - infected with Trojan.DownLoader5.18733
C:\Users\Shiloh\Desktop\2015.8.31\48.vir - infected - 295ms, 139776 bytes
C:\Users\Shiloh\Desktop\2015.8.31\50.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.8.31\49.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data001 - Ok
>>C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data002 is NET container
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data004 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data005 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data006 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir\data007 - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir - Ok
C:\Users\Shiloh\Desktop\2015.8.31\49.vir - container - 433ms, 414720 bytes
C:\Users\Shiloh\Desktop\2015.8.31\50.vir - infected with Trojan.PWS.Steam.5707
C:\Users\Shiloh\Desktop\2015.8.31\50.vir - infected - 1066ms, 904704 bytes
Total 26115140 bytes in 100 files scanned (261 objects, 5 containers)
Total 70 files (222 objects) are clean
Total 29 files are infected
Total 1 file are suspicious
Total 1 file is raised error condition
Scan time is 00:00:08.529
-----------------------------------------------------------------------------
Start curing
-----------------------------------------------------------------------------
C:\Users\Shiloh\Desktop\2015.8.31\03.vir - quarantined - 1021 ms
C:\Users\Shiloh\Desktop\2015.8.31\04.vir - quarantined - 75 ms
C:\Users\Shiloh\Desktop\2015.8.31\06.vir - quarantined - 39 ms
C:\Users\Shiloh\Desktop\2015.8.31\07.vir - quarantined - 27 ms
C:\Users\Shiloh\Desktop\2015.8.31\05.vir - quarantined - 47 ms
C:\Users\Shiloh\Desktop\2015.8.31\09.vir - quarantined - 24 ms
C:\Users\Shiloh\Desktop\2015.8.31\02.vir - quarantined - 67 ms
C:\Users\Shiloh\Desktop\2015.8.31\10.vir - quarantined - 182 ms
C:\Users\Shiloh\Desktop\2015.8.31\14.vir - cured - 19 ms
C:\Users\Shiloh\Desktop\2015.8.31\16.vir - quarantined - 26 ms
C:\Users\Shiloh\Desktop\2015.8.31\19.vir - quarantined - 39 ms
C:\Users\Shiloh\Desktop\2015.8.31\17.vir - quarantined - 73 ms
C:\Users\Shiloh\Desktop\2015.8.31\20.vir - quarantined - 39 ms
C:\Users\Shiloh\Desktop\2015.8.31\22.vir - quarantined - 88 ms
C:\Users\Shiloh\Desktop\2015.8.31\24.vir - quarantined - 27 ms
C:\Users\Shiloh\Desktop\2015.8.31\26.vir - quarantined - 52 ms
C:\Users\Shiloh\Desktop\2015.8.31\25.vir - quarantined - 305 ms
C:\Users\Shiloh\Desktop\2015.8.31\27.vir - quarantined - 65 ms
C:\Users\Shiloh\Desktop\2015.8.31\30.vir - quarantined - 88 ms
C:\Users\Shiloh\Desktop\2015.8.31\31.vir - quarantined - 43 ms
C:\Users\Shiloh\Desktop\2015.8.31\33.vir - quarantined - 36 ms
C:\Users\Shiloh\Desktop\2015.8.31\35.vir - quarantined - 70 ms
C:\Users\Shiloh\Desktop\2015.8.31\36.vir - quarantined - 27 ms
C:\Users\Shiloh\Desktop\2015.8.31\37.vir - quarantined - 107 ms
C:\Users\Shiloh\Desktop\2015.8.31\42.vir - quarantined - 30 ms
C:\Users\Shiloh\Desktop\2015.8.31\41.vir - quarantined - 74 ms
C:\Users\Shiloh\Desktop\2015.8.31\45.vir - quarantined - 52 ms
C:\Users\Shiloh\Desktop\2015.8.31\47.vir - quarantined - 44 ms
C:\Users\Shiloh\Desktop\2015.8.31\48.vir - quarantined - 51 ms
C:\Users\Shiloh\Desktop\2015.8.31\50.vir - quarantined - 73 ms
Total 26115140 bytes in 100 files scanned (261 objects, 5 containers)
Total 70 files (222 objects) are clean
Total 29 files are infected
Total 1 file are suspicious
Total 30 files are neutralized
Total 1 file is raised error condition
Scan time is 00:00:08.529[/mw_shl_code] |