https://www.virustotal.com/en/fi ... b715bc480/analysis/
SHA256: d876c6224be8b1039626e218ba897498510a8aa6f07ecdd2e1539e8b715bc480
File name: order.exe
Detection ratio: 2 / 54
Analysis date: 2015-12-08 10:03:20 UTC ( 1 minute ago )
2015/12/8 18:06:12,C:\Windows\explorer.exe,53,Allowed ;执行应用程序 ("C:\Users\WWWW\Desktop\AA\order.exe" )
2015/12/8 18:06:24,C:\Users\WWWW\Desktop\AA\order.exe,40,Blocked ;以修改权限打开进程或线程 (explorer.exe(pid=2980))
2015/12/8 18:06:32,C:\Users\WWWW\Desktop\AA\order.exe,26,Blocked ;修改受保护的注册表键 (HKCU\Software\Microsoft\Windows\CurrentVersion\Run,{092408E0-6900-3800-4000-9CBAEEF114})
2015/12/8 18:06:34,C:\Users\WWWW\Desktop\AA\order.exe,53,Allowed ;执行应用程序 ("C:\windows\system32\svchost.exe")
……
|