AVG:
扫描:pass;
双击:关闭监控,实机双击,楼主几乎所有的远控样本都被IDP通缉,IDP 击杀之。
"";"IDP.ALEXA.51, C:\Users\kiiler\Desktop\新建文件夹\QQ截图.com";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/7, 12:47:06"
"";", C:\Users\kiiler\AppData\Roaming\fa98b94e04a60288a827f0d18f9734c7\crossfire.exe";"Object was blocked";"Process";"2016/2/7, 12:47:06"
"";", C:\Users\kiiler\AppData\Roaming\fa98b94e04a60288a827f0d18f9734c7\Release.dll";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/7, 12:47:06"
"";", C:\Users\kiiler\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fa98b94e04a60288a827f0d18f9734c7.lnk";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/7, 12:47:06"
"";", C:\Users\kiiler\AppData\Roaming\fa98b94e04a60288a827f0d18f9734c7\crossfire.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/7, 12:47:06"
"";", C:\Users\kiiler\Desktop\新建文件夹\QQ截图.com";"Object was blocked";"Process";"2016/2/7, 12:47:06"
|