AVG:
扫描:miss;
双击:实机双击(不入沙),等了一会儿,IDP击杀之(提示重启,重启后,可能回滚不彻底,衍生物继续被IDP击杀,继续重启,世界和平了)。
"";"IDP.Trojan.04E74D86, C:\Users\killer.Killer-PC\Desktop\cf83a91443bf82aa39a2b686eac31b195880cf0da5194c5e98470c51e31b2710.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2015/12/9, 20:27:40"
"";", C:\Users\killer.Killer-PC\Desktop\cf83a91443bf82aa39a2b686eac31b195880cf0da5194c5e98470c51e31b2710.exe";"Object was blocked";"Process";"2015/12/9, 20:27:40"
"";", C:\Windows\explorer.exe";"Object was blocked";"Process";"2015/12/9, 20:27:40"
"";"IDP.Trojan.04E74D86, C:\ProgramData\VyLBSsBEGthkXH.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2015/12/9, 20:30:42"
"";", C:\ProgramData\VyLBSsBEGthkXH.exe";"Object was blocked";"Process";"2015/12/9, 20:30:42"
"";", C:\ProgramData\VyLBSsBEGthkXH.exe";"Object was blocked";"Process";"2015/12/9, 20:30:42"
"";", C:\Windows\explorer.exe";"Object was blocked";"Process";"2015/12/9, 20:30:42"
"";", C:\ProgramData\VyLBSsBEGthkXH.exe";"Object was blocked";"Process";"2015/12/9, 20:30:42"
"";", HKEY_USERS\S-1-5-21-1910074467-3606790842-1030588025-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\XVCSBGFIBEODGFKMTAAXVSVAEU";"Deleted, Moved to Virus Vault";"Registry value";"2015/12/9, 20:30:42"
"";", C:\Users\killer.Killer-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\360极速浏览器.lnk";"Healed, Moved to Virus Vault";"File or Directory";"2015/12/9, 20:30:42"
"";", C:\Users\killer.Killer-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\在沙盘中运行网页浏览器.lnk";"Healed, Moved to Virus Vault";"File or Directory";"2015/12/9, 20:30:42"
"";", C:\Users\killer.Killer-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\迅雷极速版.lnk";"Healed, Moved to Virus Vault";"File or Directory";"2015/12/9, 20:30:42" |