AVG:
扫描:killed(什么鬼。。。。。。);
"";"Trojan horse Generic37.ANOD, c:\Users\killer\Desktop\Locky Ransomware.exe";"Healed, Moved to Virus Vault";"File or Directory";"2016/2/17, 12:57:45"
双击:关闭监控,实机双击,IDP击杀之。(连同衍生物,又现ARES)
"";"IDP.ARES.Generic, C:\Users\killer\AppData\Local\Temp\svchost.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/17, 12:59:10"
"";", C:\USERS\KILLER\DESKTOP\新建文件夹\LOCKY RANSOMWARE.EXE";"Object was blocked";"Process";"2016/2/17, 12:59:10"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2016/2/17, 12:59:10"
"";", C:\USERS\KILLER\APPDATA\LOCAL\TEMP\SYS533E.TMP";"Deleted";"File or Directory";"2016/2/17, 12:59:10"
"";", HKEY_USERS\S-1-5-21-540828005-2055914412-3868506426-1000\SOFTWARE\LOCKY";"Deleted, Moved to Virus Vault";"Registry
key";"2016/2/17, 12:59:10"
"";", C:\Users\killer\AppData\Local\Temp\svchost.exe";"Object was blocked";"Process";"2016/2/17, 12:59:10"
|