SHA256: 816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09
File name: 816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe
Detection ratio: 3 / 54
Analysis date: 2015-12-16 14:01:38 UTC ( 1 minute ago )
https://www.virustotal.com/en/fi ... nalysis/1450274498/
2015/12/16 22:01:44,C:\Windows\explorer.exe,53,Allowed ;执行应用程序 ("C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe" )
2015/12/16 22:01:50,C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe,53,Allowed ;执行应用程序 ("C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe" )
2015/12/16 22:02:17,C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe,26,Blocked ;修改受保护的注册表键 (HKCU\Software\Microsoft\Windows\CurrentVersion\Run,{36638998-312E-703D-F5E6-0AF97B3D9689})
2015/12/16 22:02:19,C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe,26,Blocked ;修改受保护的注册表键 (HKCU\Software\Microsoft\Windows\CurrentVersion\Run,YpnPack)
2015/12/16 22:02:21,C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe,50,Allowed ;使用 DNS 解析服务访问网络
2015/12/16 22:02:26,C:\Users\AAA\Desktop\a\816ad839af056de15b624aff8cc0aa39452d0f4bed5b0150c067b924ef653e09.exe,48,Allowed ;出站网络访问
|