楼主: 潘达达
收起左侧

[病毒样本] 精睿样本测试(15.10.21)

  [复制链接]
坏脾气的男生
发表于 2015-10-21 12:02:52 | 显示全部楼层
费尔杀14个
百度国际版每一次扫描结果都不一样,第一次扫描14个。第二次扫描杀24个,第三次扫描17个,第四次扫描22个。第五次扫描15个。百度国际版杀毒看心情。
cxy密斯
发表于 2015-10-21 12:47:54 | 显示全部楼层
本帖最后由 cxy密斯 于 2015-10-21 12:49 编辑

[mw_shl_code=css,true]
Dr.Web Scanner SE for Windows v11.0.0.09070
Scanning Engine version: 11.0.0.10140
Virus Finding Engine version: 7.0.16.10090
-----------------------------------------------------------------------------
Start scanning
-----------------------------------------------------------------------------
Object(s) to scan:
- C:\Users\Shiloh\Desktop\2015.10.21

C:\Users\Shiloh\Desktop\2015.10.21\01.vir:Zone.Identifier - Ok - 19ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\02.vir - infected with Trojan.DownLoader17.21459
C:\Users\Shiloh\Desktop\2015.10.21\02.vir - infected - 44ms, 237370 bytes
C:\Users\Shiloh\Desktop\2015.10.21\02.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\03.vir is MAIL container
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\1.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\7.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\8.part - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\03.vir\9.part is ACTIVEMIME container
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\9.part\Storage0 - infected with W97M.DownLoader.673
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\9.part\Storage0 - infected
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\9.part - infected container
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\10.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\11.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\12.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir\13.reexport - Ok
C:\Users\Shiloh\Desktop\2015.10.21\03.vir - infected mail
C:\Users\Shiloh\Desktop\2015.10.21\03.vir - infected mail - 112ms, 92325 bytes
C:\Users\Shiloh\Desktop\2015.10.21\03.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\04.vir is RAR archive
C:\Users\Shiloh\Desktop\2015.10.21\04.vir\Payment_Proof.PDF.exe - infected with Trojan.PWS.Stealer.15120
C:\Users\Shiloh\Desktop\2015.10.21\04.vir\Payment_Proof.PDF.exe - infected
C:\Users\Shiloh\Desktop\2015.10.21\04.vir - infected archive
C:\Users\Shiloh\Desktop\2015.10.21\04.vir - infected archive - 55ms, 690223 bytes
C:\Users\Shiloh\Desktop\2015.10.21\04.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\01.vir - packed by UPX
C:\Users\Shiloh\Desktop\2015.10.21\01.vir - Ok - 347ms, 269932 bytes
C:\Users\Shiloh\Desktop\2015.10.21\05.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\06.vir is MAIL container
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\1.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\7.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\8.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\9.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\10.part - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\06.vir\11.part is ACTIVEMIME container
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\11.part\Storage0 - infected with W97M.DownLoader.673
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\11.part\Storage0 - infected
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\11.part - infected container
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\12.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir\13.reexport - Ok
C:\Users\Shiloh\Desktop\2015.10.21\06.vir - infected mail
C:\Users\Shiloh\Desktop\2015.10.21\06.vir - infected mail - 83ms, 82661 bytes
C:\Users\Shiloh\Desktop\2015.10.21\06.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\05.vir - Ok - 50ms, 86020 bytes
C:\Users\Shiloh\Desktop\2015.10.21\07.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\08.vir - Ok - 27ms, 57348 bytes
C:\Users\Shiloh\Desktop\2015.10.21\08.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\07.vir is NSIS container
C:\Users\Shiloh\Desktop\2015.10.21\07.vir\script.bin - Ok
C:\Users\Shiloh\Desktop\2015.10.21\07.vir\_殌\a0e0cb77-6c42-4cf0-b26d-a01789a24c19.dll - Ok
C:\Users\Shiloh\Desktop\2015.10.21\07.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\07.vir - container - 454ms, 52221 bytes
C:\Users\Shiloh\Desktop\2015.10.21\09.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\10.vir is ZIP archive
C:\Users\Shiloh\Desktop\2015.10.21\09.vir - infected with Trojan.PWS.Siggen1.31985
C:\Users\Shiloh\Desktop\2015.10.21\09.vir - infected - 103ms, 622596 bytes
C:\Users\Shiloh\Desktop\2015.10.21\10.vir\COPY1173929.exe - infected with BackDoor.Comet.2667
C:\Users\Shiloh\Desktop\2015.10.21\10.vir\COPY1173929.exe - infected
C:\Users\Shiloh\Desktop\2015.10.21\10.vir - infected archive
C:\Users\Shiloh\Desktop\2015.10.21\10.vir - infected archive - 31ms, 176016 bytes
C:\Users\Shiloh\Desktop\2015.10.21\10.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\11.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\12.vir is RAR archive
C:\Users\Shiloh\Desktop\2015.10.21\12.vir\Scanned Copy.exe - infected with Trojan.PWS.Stealer.16093
C:\Users\Shiloh\Desktop\2015.10.21\12.vir\Scanned Copy.exe - infected
C:\Users\Shiloh\Desktop\2015.10.21\12.vir - infected archive
C:\Users\Shiloh\Desktop\2015.10.21\12.vir - infected archive - 36ms, 166725 bytes
C:\Users\Shiloh\Desktop\2015.10.21\12.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\11.vir - infected with Trojan.Inject2.7045
C:\Users\Shiloh\Desktop\2015.10.21\11.vir - infected - 58ms, 164868 bytes
C:\Users\Shiloh\Desktop\2015.10.21\13.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\13.vir - is adware program Adware.Mutabaha.762
C:\Users\Shiloh\Desktop\2015.10.21\13.vir - infected - 52ms, 435716 bytes
C:\Users\Shiloh\Desktop\2015.10.21\14.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\15.vir is RTF container
C:\Users\Shiloh\Desktop\2015.10.21\15.vir\OLEstream-1 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\15.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\15.vir - container - 19ms, 433993 bytes
C:\Users\Shiloh\Desktop\2015.10.21\15.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\16.vir is MAIL container
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\1.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\7.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\8.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\9.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\10.part - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\16.vir\11.part is ACTIVEMIME container
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\11.part\Storage0 - infected with W97M.DownLoader.671
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\11.part\Storage0 - infected
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\11.part - infected container
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\12.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir\13.reexport - Ok
C:\Users\Shiloh\Desktop\2015.10.21\16.vir - infected mail
C:\Users\Shiloh\Desktop\2015.10.21\16.vir - infected mail - 89ms, 77739 bytes
C:\Users\Shiloh\Desktop\2015.10.21\16.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\14.vir - packed by UPX
C:\Users\Shiloh\Desktop\2015.10.21\17.vir - infected with Trojan.Kovter.118
C:\Users\Shiloh\Desktop\2015.10.21\17.vir - infected - 30ms, 352305 bytes
C:\Users\Shiloh\Desktop\2015.10.21\17.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\14.vir - Ok - 297ms, 243308 bytes
C:\Users\Shiloh\Desktop\2015.10.21\18.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\18.vir - infected with Trojan.PWS.Stealer.16182
C:\Users\Shiloh\Desktop\2015.10.21\18.vir - infected - 77ms, 1005060 bytes
C:\Users\Shiloh\Desktop\2015.10.21\19.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\19.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.10.21\19.vir\data001 - infected with Trojan.iBryte.568
C:\Users\Shiloh\Desktop\2015.10.21\19.vir\data001 - infected
C:\Users\Shiloh\Desktop\2015.10.21\19.vir\data002 - infected with Trojan.iBryte.568
C:\Users\Shiloh\Desktop\2015.10.21\19.vir\data002 - infected
C:\Users\Shiloh\Desktop\2015.10.21\19.vir - infected container
C:\Users\Shiloh\Desktop\2015.10.21\19.vir - infected container - 115ms, 732108 bytes
C:\Users\Shiloh\Desktop\2015.10.21\20.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\21.vir - infected with Trojan.DownLoader14.8234
C:\Users\Shiloh\Desktop\2015.10.21\21.vir - infected - 23ms, 372740 bytes
C:\Users\Shiloh\Desktop\2015.10.21\21.vir:Zone.Identifier - Ok - 6ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\20.vir - packed by UPX
>C:\Users\Shiloh\Desktop\2015.10.21\22.vir is NET container
C:\Users\Shiloh\Desktop\2015.10.21\22.vir\QlIsRldcckKzWSPowlA - Ok
C:\Users\Shiloh\Desktop\2015.10.21\22.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\22.vir - container - 160ms, 606212 bytes
C:\Users\Shiloh\Desktop\2015.10.21\22.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>>C:\Users\Shiloh\Desktop\2015.10.21\20.vir is AUTOIT container
>>>C:\Users\Shiloh\Desktop\2015.10.21\20.vir\Documents and Settings\(x10)4<8=8AB@0B>@\Local Settings\Application Data\AutoIt v3\Aut2Exe\aut42A.tmp.tok - packed by ASCRIPT
C:\Users\Shiloh\Desktop\2015.10.21\20.vir\Documents and Settings\(x10)4<8=8AB@0B>@\Local Settings\Application Data\AutoIt v3\Aut2Exe\aut42A.tmp.tok - Ok
C:\Users\Shiloh\Desktop\2015.10.21\20.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\20.vir - container - 873ms, 392708 bytes
C:\Users\Shiloh\Desktop\2015.10.21\23.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\23.vir is 7-ZIP archive
C:\Users\Shiloh\Desktop\2015.10.21\23.vir\hwdpsilcmdl.bat - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\23.vir\hwdpsilcmdl.js is JS-HTML container
C:\Users\Shiloh\Desktop\2015.10.21\23.vir\hwdpsilcmdl.js\JSFile_1[0][569] - Ok
C:\Users\Shiloh\Desktop\2015.10.21\23.vir\hwdpsilcmdl.js - Ok
C:\Users\Shiloh\Desktop\2015.10.21\23.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\23.vir - archive - 110ms, 118345 bytes
C:\Users\Shiloh\Desktop\2015.10.21\24.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\25.vir - infected with Linux.BackDoor.Tsunami.144
C:\Users\Shiloh\Desktop\2015.10.21\25.vir - infected - 0ms, 44404 bytes
C:\Users\Shiloh\Desktop\2015.10.21\25.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\26.vir - Ok - 9ms, 158307 bytes
C:\Users\Shiloh\Desktop\2015.10.21\26.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\24.vir - infected with Trojan.Upatre.8866
C:\Users\Shiloh\Desktop\2015.10.21\24.vir - infected - 53ms, 32260 bytes
C:\Users\Shiloh\Desktop\2015.10.21\27.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\28.vir - Ok - 9ms, 10854 bytes
C:\Users\Shiloh\Desktop\2015.10.21\28.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\27.vir - Ok - 71ms, 160260 bytes
C:\Users\Shiloh\Desktop\2015.10.21\29.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\30.vir - infected with Trojan.PWS.Siggen1.41834
C:\Users\Shiloh\Desktop\2015.10.21\30.vir - infected - 20ms, 194564 bytes
C:\Users\Shiloh\Desktop\2015.10.21\30.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\29.vir - Ok - 269ms, 786948 bytes
C:\Users\Shiloh\Desktop\2015.10.21\31.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\32.vir - Ok - 8ms, 41988 bytes
C:\Users\Shiloh\Desktop\2015.10.21\32.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\31.vir - infected with BackDoor.Bladabindi.1056
C:\Users\Shiloh\Desktop\2015.10.21\31.vir - infected - 24ms, 24068 bytes
C:\Users\Shiloh\Desktop\2015.10.21\33.vir:Zone.Identifier - Ok - 12ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\34.vir - infected with Linux.DDoS.60
C:\Users\Shiloh\Desktop\2015.10.21\34.vir - infected - 12ms, 625711 bytes
C:\Users\Shiloh\Desktop\2015.10.21\34.vir:Zone.Identifier - Ok - 7ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\35.vir - Ok - 10ms, 10246 bytes
C:\Users\Shiloh\Desktop\2015.10.21\35.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\36.vir is RAR archive
C:\Users\Shiloh\Desktop\2015.10.21\36.vir\Purchase-Order.exe - infected with Trojan.MulDrop6.10042
C:\Users\Shiloh\Desktop\2015.10.21\36.vir\Purchase-Order.exe - infected
C:\Users\Shiloh\Desktop\2015.10.21\36.vir - infected archive
C:\Users\Shiloh\Desktop\2015.10.21\36.vir - infected archive - 26ms, 156535 bytes
C:\Users\Shiloh\Desktop\2015.10.21\36.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\33.vir - packed by FLY-CODE
C:\Users\Shiloh\Desktop\2015.10.21\37.vir - Ok - 75ms, 364548 bytes
C:\Users\Shiloh\Desktop\2015.10.21\37.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\38.vir is BINARYRES container
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data004 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data005 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data006 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data007 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data008 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data009 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data010 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data011 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data012 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data013 - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data014 is NET container
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data014 - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data015 is NET container
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data015 - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data016 is NET container
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data016 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir\data017 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\38.vir - container - 148ms, 582660 bytes
C:\Users\Shiloh\Desktop\2015.10.21\38.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\39.vir - infected with Trojan.PWS.Panda.5255
C:\Users\Shiloh\Desktop\2015.10.21\39.vir - infected - 29ms, 679428 bytes
C:\Users\Shiloh\Desktop\2015.10.21\39.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\40.vir is BINARYRES container
>>C:\Users\Shiloh\Desktop\2015.10.21\40.vir\data001 is NET container
C:\Users\Shiloh\Desktop\2015.10.21\40.vir\data001 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\40.vir\data002 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\40.vir\data003 - Ok
C:\Users\Shiloh\Desktop\2015.10.21\40.vir - Ok
C:\Users\Shiloh\Desktop\2015.10.21\40.vir - container - 140ms, 185348 bytes
C:\Users\Shiloh\Desktop\2015.10.21\40.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\41.vir - is adware program Adware.Downware.12413
C:\Users\Shiloh\Desktop\2015.10.21\41.vir - infected - 30ms, 87284 bytes
C:\Users\Shiloh\Desktop\2015.10.21\41.vir:Zone.Identifier - Ok - 6ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\42.vir - Ok - 18ms, 14340 bytes
C:\Users\Shiloh\Desktop\2015.10.21\42.vir:Zone.Identifier - Ok - 5ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\43.vir - infected with Trojan.DownLoader17.17909
C:\Users\Shiloh\Desktop\2015.10.21\43.vir - infected - 48ms, 272388 bytes
C:\Users\Shiloh\Desktop\2015.10.21\43.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\44.vir - infected with Trojan.DownLoader17.9792
C:\Users\Shiloh\Desktop\2015.10.21\44.vir - infected - 39ms, 242180 bytes
C:\Users\Shiloh\Desktop\2015.10.21\44.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\45.vir - infected with BackDoor.Wirenet.9
C:\Users\Shiloh\Desktop\2015.10.21\45.vir - infected - 14ms, 86020 bytes
C:\Users\Shiloh\Desktop\2015.10.21\45.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\46.vir is ZIP archive
C:\Users\Shiloh\Desktop\2015.10.21\46.vir\DOCUMENTS.exe - infected with Trojan.Siggen6.50718
C:\Users\Shiloh\Desktop\2015.10.21\46.vir\DOCUMENTS.exe - infected
C:\Users\Shiloh\Desktop\2015.10.21\46.vir - infected archive
C:\Users\Shiloh\Desktop\2015.10.21\46.vir - infected archive - 51ms, 827815 bytes
C:\Users\Shiloh\Desktop\2015.10.21\46.vir:Zone.Identifier - Ok - 4ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\47.vir is MAIL container
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\1.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\7.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\8.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\9.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\10.part - Ok
>>C:\Users\Shiloh\Desktop\2015.10.21\47.vir\11.part is ACTIVEMIME container
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\11.part\Storage0 - infected with W97M.DownLoader.671
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\11.part\Storage0 - infected
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\11.part - infected container
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\12.part - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir\13.reexport - Ok
C:\Users\Shiloh\Desktop\2015.10.21\47.vir - infected mail
C:\Users\Shiloh\Desktop\2015.10.21\47.vir - infected mail - 108ms, 77743 bytes
C:\Users\Shiloh\Desktop\2015.10.21\47.vir:Zone.Identifier - Ok - 3ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\48.vir - infected with Trojan.DownLoader14.60807
C:\Users\Shiloh\Desktop\2015.10.21\48.vir - infected - 12ms, 105476 bytes
C:\Users\Shiloh\Desktop\2015.10.21\48.vir:Zone.Identifier - Ok - 5ms, 26 bytes
>C:\Users\Shiloh\Desktop\2015.10.21\49.vir - packed by UPX
C:\Users\Shiloh\Desktop\2015.10.21\49.vir - infected with Trojan.Encoder.2630
C:\Users\Shiloh\Desktop\2015.10.21\49.vir - infected - 120ms, 899296 bytes
C:\Users\Shiloh\Desktop\2015.10.21\49.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\50.vir - infected with W97M.DownLoader.659
C:\Users\Shiloh\Desktop\2015.10.21\50.vir - infected - 9ms, 79364 bytes
C:\Users\Shiloh\Desktop\2015.10.21\50.vir:Zone.Identifier - Ok - 4ms, 26 bytes
C:\Users\Shiloh\Desktop\2015.10.21\33.vir - Ok - 18087ms, 72708 bytes
-----------------------------------------------------------------------------
Start curing
-----------------------------------------------------------------------------

C:\Users\Shiloh\Desktop\2015.10.21\02.vir - quarantined - 1691 ms
C:\Users\Shiloh\Desktop\2015.10.21\03.vir - quarantined - 43 ms
C:\Users\Shiloh\Desktop\2015.10.21\04.vir - quarantined - 58 ms
C:\Users\Shiloh\Desktop\2015.10.21\06.vir - quarantined - 44 ms
C:\Users\Shiloh\Desktop\2015.10.21\09.vir - quarantined - 130 ms
C:\Users\Shiloh\Desktop\2015.10.21\10.vir - quarantined - 36 ms
C:\Users\Shiloh\Desktop\2015.10.21\12.vir - quarantined - 52 ms
C:\Users\Shiloh\Desktop\2015.10.21\11.vir - quarantined - 153 ms
C:\Users\Shiloh\Desktop\2015.10.21\13.vir - quarantined - 53 ms
C:\Users\Shiloh\Desktop\2015.10.21\16.vir - quarantined - 40 ms
C:\Users\Shiloh\Desktop\2015.10.21\17.vir - quarantined - 54 ms
C:\Users\Shiloh\Desktop\2015.10.21\18.vir - quarantined - 100 ms
C:\Users\Shiloh\Desktop\2015.10.21\19.vir - quarantined - 62 ms
C:\Users\Shiloh\Desktop\2015.10.21\21.vir - quarantined - 70 ms
C:\Users\Shiloh\Desktop\2015.10.21\25.vir - quarantined - 42 ms
C:\Users\Shiloh\Desktop\2015.10.21\24.vir - quarantined - 60 ms
C:\Users\Shiloh\Desktop\2015.10.21\30.vir - quarantined - 63 ms
C:\Users\Shiloh\Desktop\2015.10.21\31.vir - quarantined - 89 ms
C:\Users\Shiloh\Desktop\2015.10.21\34.vir - quarantined - 66 ms
C:\Users\Shiloh\Desktop\2015.10.21\36.vir - quarantined - 61 ms
C:\Users\Shiloh\Desktop\2015.10.21\39.vir - quarantined - 85 ms
C:\Users\Shiloh\Desktop\2015.10.21\41.vir - quarantined - 77 ms
C:\Users\Shiloh\Desktop\2015.10.21\43.vir - quarantined - 82 ms
C:\Users\Shiloh\Desktop\2015.10.21\44.vir - quarantined - 84 ms
C:\Users\Shiloh\Desktop\2015.10.21\45.vir - quarantined - 62 ms
C:\Users\Shiloh\Desktop\2015.10.21\46.vir - quarantined - 58 ms
C:\Users\Shiloh\Desktop\2015.10.21\47.vir - quarantined - 44 ms
C:\Users\Shiloh\Desktop\2015.10.21\48.vir - quarantined - 61 ms
C:\Users\Shiloh\Desktop\2015.10.21\49.vir - quarantined - 160 ms
C:\Users\Shiloh\Desktop\2015.10.21\50.vir - quarantined - 53 ms

Total 14292582 bytes in 100 files scanned (171 objects, 5 containers)
Total 70 files (126 objects) are clean
Total 30 files (31 objects) are infected
Total 30 files (31 objects) are neutralized
Scan time is 00:00:22.883[/mw_shl_code]
伽蓝迹丶舞风
发表于 2015-10-21 13:00:05 | 显示全部楼层
wjy19800315 发表于 2015-10-21 11:30
说真话
在于用户交互上目前来说,gdata看着最舒服,智能上诺顿最省心,半智能半交互上卡巴不错,avast与 ...

你说的对,但其实还是我们自己个人的使用感受居多。像我家人就比较喜欢诺顿,智能到快没有交互了
我说小a的交互方式比较好,也不是说其他杀软就差。主要是感觉小a的设置比较人性化,包括弹窗,查看详细什么的。

还有速度上小a确实很强,我用过这么多,感觉就eset可以跟小a媲美了,不管是平时使用还是扫样本,扫描弹窗处理都是瞬间完成。
像红伞,处理什么都要读条,Gdata的修复速度,诺顿隔离排除那些很纠结,你应该懂

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
yuzhi3366853
发表于 2015-10-21 13:15:55 | 显示全部楼层
伽蓝迹丶舞风 发表于 2015-10-21 13:00
你说的对,但其实还是我们自己个人的使用感受居多。像我家人就比较喜欢诺顿,智能到快没有交互了
...

小A遇到多数病毒的时候的处理速度确实比其他的要快上不少
ELOHIM
发表于 2015-10-21 13:19:27 | 显示全部楼层
wjy19800315 发表于 2015-10-21 11:30
说真话
在于用户交互上目前来说,gdata看着最舒服,智能上诺顿最省心,半智能半交互上卡巴不错,avast与 ...

说的真入心。
cxy密斯
发表于 2015-10-21 13:34:51 | 显示全部楼层
伽蓝迹丶舞风 发表于 2015-10-21 13:00
你说的对,但其实还是我们自己个人的使用感受居多。像我家人就比较喜欢诺顿,智能到快没有交互了
...

BD修复也不快,卡巴扫描还好,监控是最烦的,点到手软
开开心心卖手机
发表于 2015-10-21 13:52:17 | 显示全部楼层
AVG 2016 kill 38x
其中修复2x
833754
发表于 2015-10-21 14:47:08 | 显示全部楼层
请问在实机直接解压这个病毒样本包,但不双击解压后的文件,会中毒吗?
驭龙
发表于 2015-10-21 14:53:22 | 显示全部楼层
胖福 发表于 2015-10-21 10:19
诺顿扫描剩余27个!

双击剩余SONAR杀掉11个:

那个下载的文件不是智能下载分析,智能下载分析的报法是WS.Reputation.1,而这个是Suspicion Cloud,应该不是智能下载分析
胖福
发表于 2015-10-21 14:57:59 | 显示全部楼层
驭龙 发表于 2015-10-21 14:53
那个下载的文件不是智能下载分析,智能下载分析的报法是WS.Reputation.1,而这个是Suspicion Cloud,应该 ...

按报法上确实不是!我把衍生物提取出来压缩再解压就不报了,然后又实机不小心双击了衍生物,SONAR直接杀了衍生物!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-21 05:20 , Processed in 0.097878 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表