AVG:
扫描:miss;
双击:实机双击(不入沙),不久IDP击杀之。
"";"IDP.ALEXA.51, C:\Users\killer\Desktop\777.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2015/12/27, 14:19:41"
"";", C:\Users\killer\Desktop\777.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", C:\Users\killer\AppData\Local\Temp\tmpAD1D.tmp.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", C:\Windows\System32\rundll32.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", C:\Users\killer\AppData\Roaming\Microsoft\Crypto\RSA\RSA954269045.dll";"Deleted, Moved to Virus Vault";"File or Directory";"2015/12/27, 14:19:41"
"";", C:\Users\killer\AppData\Local\Temp\tmpAD1D.tmp.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2015/12/27, 14:19:41"
"";", C:\Users\killer\Desktop\777.exe";"Object was blocked";"Process";"2015/12/27, 14:19:41"
"";", HKEY_USERS\S-1-5-21-1910074467-3606790842-1030588025-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\RSA954269045";"Deleted, Moved to Virus Vault";"Registry value";"2015/12/27, 14:19:41"
|