SHA256: 7a0fccb32749527e4bba767d88b459bb097a75dd497f821d7aa32b6bccc3484c
File name: 7a0fccb32749527e4bba767d88b459bb097a75dd497f821d7aa32b6bccc3484c.exe
Detection ratio: 6 / 54
Analysis date: 2015-12-16 13:37:30 UTC ( 0 minutes ago )
https://www.virustotal.com/en/fi ... nalysis/1450273050/
2015/12/16 21:37:43,C:\Windows\explorer.exe,53,Allowed ;执行应用程序 ("C:\Users\AAA\Desktop\a\7a0fccb32749527e4bba767d88b459bb097a75dd497f821d7aa32b6bccc3484c.exe" )
2015/12/16 21:38:24,C:\Users\AAA\Desktop\a\7a0fccb32749527e4bba767d88b459bb097a75dd497f821d7aa32b6bccc3484c.exe,53,Allowed ;执行应用程序 ("C:\windows\syswow64\explorer.exe")
2015/12/16 21:38:26,C:\Windows\SysWOW64\explorer.exe,26,Blocked ;修改受保护的注册表键 (HKCU\Software\Microsoft\Windows\CurrentVersion\Run,8992d5819c)
2015/12/16 21:38:29,C:\Windows\SysWOW64\explorer.exe,53,Allowed ;执行应用程序 (-k netsvcs)
2015/12/16 21:38:36,C:\Windows\SysWOW64\svchost.exe,48,Blocked ;出站网络访问
建立 出站 网络连接 (TCP)
远程地址=allisonvieira.com.br(94.23.8.214) 远程端口=80
|