AVG:
扫描:miss;
双击:实机双击,IDP击杀之。(包括衍生物“qvfpwwdistby.exe”及本体,并阻止cmd.exe的后续操作)
"";"IDP.ALEXA.51, C:\USERS\KILLER\DESKTOP\155D.TMP.EXE";"Deleted";"File or Directory";"2016/2/18, 12:24:45"
"";", C:\USERS\KILLER\DESKTOP\155D.TMP.EXE";"Object was blocked";"Process";"2016/2/18, 12:24:45"
"";", C:\Windows\qvfpwwdistby.exe";"Object was blocked";"Process";"2016/2/18, 12:24:45"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2016/2/18, 12:24:45"
"";", C:\Windows\qvfpwwdistby.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/18, 12:24:45"
"";", C:\USERS\KILLER\DESKTOP\155D.TMP.EXE";"Object was blocked";"Process";"2016/2/18, 12:24:45"
|