AVG:
扫描:kill all files;
"";"Trojan horse FileCryptor.HOF, C:\Users\killer\Desktop\1.exe";"Unresolved"
"";"Trojan horse FileCryptor.HOF, C:\Users\killer\Desktop\2.exe";"Unresolved"
双击:关闭监控,实机双击,IDP双杀。(又现ARES及ALEXA)
"";"IDP.ALEXA.51, C:\USERS\KILLER\DESKTOP\1.EXE";"Deleted";"File or Directory";"2016/2/25, 22:46:40"
"";", C:\USERS\KILLER\DESKTOP\1.EXE";"Object was blocked";"Process";"2016/2/25, 22:46:40"
"";", C:\Windows\umvkrbtqahig.exe";"Object was blocked";"Process";"2016/2/25, 22:46:40"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2016/2/25, 22:46:40"
"";", C:\Windows\umvkrbtqahig.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/25, 22:46:40"
"";", C:\USERS\KILLER\DESKTOP\1.EXE";"Object was blocked";"Process";"2016/2/25, 22:46:40"
"";"IDP.ARES.Generic, C:\USERS\KILLER\DESKTOP\2.EXE";"Deleted";"File or Directory";"2016/2/25, 22:47:29"
"";", C:\USERS\KILLER\DESKTOP\2.EXE";"Object was blocked";"Process";"2016/2/25, 22:47:29"
"";", C:\Windows\gnyaesbpkspb.exe";"Object was blocked";"Process";"2016/2/25, 22:47:29"
"";", C:\Windows\System32\cmd.exe";"Object was blocked";"Process";"2016/2/25, 22:47:29"
"";", C:\Windows\gnyaesbpkspb.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/25, 22:47:29"
"";", C:\USERS\KILLER\DESKTOP\2.EXE";"Object was blocked";"Process";"2016/2/25, 22:47:29"
|