查看: 4703|回复: 29
收起左侧

[病毒样本] 精睿样本测试(16.7.20)

  [复制链接]
轩夏
发表于 2016-7-20 09:37:00 | 显示全部楼层 |阅读模式
地址:

https://pan.baidu.com/s/1pKBkcm3  提取密码  np2e

密码:bbs.vc52.cn
数量:50
Eset小粉絲
发表于 2016-7-20 09:40:46 | 显示全部楼层
本帖最后由 Eset小粉絲 于 2016-7-20 09:48 编辑

Avira 45X

[mw_shl_code=css,true]Start of the scan: Wednesday, 20 July, 2016  09:40

Starting the file scan:

Begin scan in 'C:\Users\User\Desktop\2016.7.20'
C:\Users\User\Desktop\2016.7.20\01.vir
  [DETECTION] Is the TR/Dldr.Agent.xofo Trojan
C:\Users\User\Desktop\2016.7.20\03.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\04.vir
  [DETECTION] Contains recognition pattern of the JS/Nemucod.aipfva Java script virus
C:\Users\User\Desktop\2016.7.20\05.vir
  [DETECTION] Is the TR/Dropper.MSIL.inqx Trojan
C:\Users\User\Desktop\2016.7.20\06.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.20\07.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\08.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\09.vir
  [DETECTION] Is the TR/Dynamer.ubbp Trojan
C:\Users\User\Desktop\2016.7.20\10.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\11.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\12.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\13.vir
  [DETECTION] Is the TR/Confuser.88576.14 Trojan
C:\Users\User\Desktop\2016.7.20\15.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\16.vir
  [DETECTION] Contains suspicious code HEUR/Malware
C:\Users\User\Desktop\2016.7.20\17.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.kse Java script virus
C:\Users\User\Desktop\2016.7.20\18.vir
  [DETECTION] Is the TR/Downloader.tizt Trojan
C:\Users\User\Desktop\2016.7.20\19.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\20.vir
  [DETECTION] Is the TR/Dropper.MSIL.watp Trojan
C:\Users\User\Desktop\2016.7.20\21.vir
  [DETECTION] Contains code of the W2000M/Agent.3957507 macro virus
C:\Users\User\Desktop\2016.7.20\22.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\23.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\24.vir
  [DETECTION] Contains code of the W2000M/Agent.3957665 macro virus
C:\Users\User\Desktop\2016.7.20\26.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\27.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\28.vir
  [DETECTION] Is the TR/Dropper.VB.ydjq Trojan
C:\Users\User\Desktop\2016.7.20\30.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\32.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.20\33.vir
  [DETECTION] Is the TR/ATRAPS.wxvl Trojan
C:\Users\User\Desktop\2016.7.20\34.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\35.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\36.vir
  [DETECTION] Is the TR/Crypt.ZPACK.xbrz Trojan
C:\Users\User\Desktop\2016.7.20\37.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\User\Desktop\2016.7.20\38.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\39.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.20\40.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.20\41.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\42.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\43.vir
  [DETECTION] Is the TR/Crypt.ZPACK.bjbs Trojan
C:\Users\User\Desktop\2016.7.20\44.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\45.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\46.vir
  [DETECTION] Is the TR/Jord.byrs Trojan
C:\Users\User\Desktop\2016.7.20\47.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\48.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\49.vir
    [0] Archive type: ZIP
    --> xl/vbaProject.bin
        [DETECTION] Contains suspicious code HEUR/Macro.Downloader
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.20\50.vir
    [0] Archive type: ZIP
    --> main/Start.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.844 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> main/??aux.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.1338 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> main/??Prn.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.707 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> main/??nUL.class
        [DETECTION] Contains recognition pattern of the JS/Agent.EB.84 Java script virus
        [WARNING]   Infected files in archives cannot be repaired
    --> main/??Nul.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.236 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> main/??CoN.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.944 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> 986005950-4 PAYOUT CONFIRMATIONS2.jar
        [1] Archive type: ZIP
      --> main/Start.class
          [DETECTION] Contains recognition pattern of the JAVA/Adwind.844 Java virus
          [WARNING]   Infected files in archives cannot be repaired
      --> main/??aux.class
          [DETECTION] Contains recognition pattern of the JAVA/Adwind.1338 Java virus
          [WARNING]   Infected files in archives cannot be repaired
      --> main/??Prn.class
          [DETECTION] Contains recognition pattern of the JAVA/Adwind.707 Java virus
          [WARNING]   Infected files in archives cannot be repaired
      --> main/??nUL.class
          [DETECTION] Contains recognition pattern of the JS/Agent.EB.84 Java script virus
          [WARNING]   Infected files in archives cannot be repaired
      --> main/??Nul.class
          [DETECTION] Contains recognition pattern of the JAVA/Adwind.236 Java virus
          [WARNING]   Infected files in archives cannot be repaired
      --> main/??CoN.class
          [DETECTION] Contains recognition pattern of the JAVA/Adwind.944 Java virus
          [WARNING]   Infected files in archives cannot be repaired[/mw_shl_code]
轩夏
 楼主| 发表于 2016-7-20 09:43:27 | 显示全部楼层
MSE
[mw_shl_code=css,true]Scan started on Wed Jul 20 09:40:52 2016

C:\Users\XuanXia\Desktop\2016.7.20\03.vir->[WsfCmtOut]->(SCRIPT0001)              Infected: TrojanDownloader:JS/Nemucod.FJ [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\04.vir                                         Infected: TrojanDownloader:JS/Nemucod.FJ
C:\Users\XuanXia\Desktop\2016.7.20\05.vir                                         Infected: Backdoor:MSIL/Bladabindi.AJ
C:\Users\XuanXia\Desktop\2016.7.20\06.vir                                         Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.20\07.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\08.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\10.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\11.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\12.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\14.vir->[CalleencPacked]->[CalleencPacked]     Infected: TrojanDownloader:JS/Psyme.AG [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\15.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\17.vir                                         Infected: TrojanDownloader:JS/Nemucod.FJ
C:\Users\XuanXia\Desktop\2016.7.20\19.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\20.vir                                         Infected: Backdoor:MSIL/Bladabindi
C:\Users\XuanXia\Desktop\2016.7.20\22.vir->[WsfCmtOut]->(SCRIPT0001)              Infected: TrojanDownloader:JS/Nemucod.FJ [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\23.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\24.vir                                         Infected: Trojan:O97M/Madeba.A!det
C:\Users\XuanXia\Desktop\2016.7.20\26.vir->[WsfCmtOut]->(SCRIPT0001)              Infected: TrojanDownloader:JS/Nemucod.FJ [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\27.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\30.vir->[WsfCmtOut]->(SCRIPT0001)              Infected: TrojanDownloader:JS/Nemucod.FJ [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\32.vir                                         Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.20\33.vir                                         Infected: Ransom:Win32/Exxroute.B
C:\Users\XuanXia\Desktop\2016.7.20\34.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\35.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\36.vir                                         Infected: Trojan:Win32/Gatak!rfn
C:\Users\XuanXia\Desktop\2016.7.20\38.vir->[WsfCmtOut]->(SCRIPT0001)              Infected: TrojanDownloader:JS/Nemucod.FJ [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.20\39.vir                                         Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.20\40.vir                                         Infected: TrojanDownloader:JS/Nemucod.FJ
C:\Users\XuanXia\Desktop\2016.7.20\41.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\42.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\44.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\45.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\46.vir                                         Infected: Trojan:Win32/Greeodode!rfn
C:\Users\XuanXia\Desktop\2016.7.20\47.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\48.vir->word/vbaProject.bin                    Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\49.vir->xl/media/image1.jpeg                   Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.20\50.vir->main/??con.class#1                     Infected: Trojan:Java/Adwind.P
C:\Users\XuanXia\Desktop\2016.7.20\50.vir->986005950-4 PAYOUT CONFIRMATIONS2.jar  Infected: Trojan:Java/Adwind.P
Successfully checked: C:\Users\XuanXia\Desktop\2016.7.20

Scan ended on Wed Jul 20 09:41:09 2016

Time: 17 second(s). [0h:00m:17s]
Files/second: 22 (748 Kb/s).
Objects scanned: 375.
Infected: 38. Suspicious: 0. Clean: 337. Different virus bodies: 11.
Files: 49. Directories: 1. Archives: 33. Packed: 14. Mail files: 1.
Warnings: 38. Scan errors: 0. Protected: 0. Damaged: 0. Unknown method: 0. Spanned: 0.[/mw_shl_code]
蓝天二号
发表于 2016-7-20 09:43:36 | 显示全部楼层
卡巴斯基





本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
欧阳宣
头像被屏蔽
发表于 2016-7-20 09:56:19 | 显示全部楼层
管家国际版检测42,修复1个
[mw_shl_code=css,true]2016-7-20 09:55:11 MD5:642c352d34dd4a696d5f5781ce1b8773 D:\Virus\2016.7.20\03.vir [Trojan.Script.DJA]  [Delete success]
2016-7-20 09:55:11 MD5:8e7bddeabe7a5645fe69a5de4048d4c3 D:\Virus\2016.7.20\45.vir [Trojan.Doc.Downloader.NN]  [Delete success]
2016-7-20 09:55:11 MD5:9b6f417ca3bbd20e3a638967163c7847 D:\Virus\2016.7.20\44.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:12 MD5:116c1ec860634ac482ae84cf075c1bc9 D:\Virus\2016.7.20\34.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:12 MD5:ff6c544f2adb672a883a6803dc7d204a D:\Virus\2016.7.20\24.vir [W97M.Downloader.DVB]  [Clean success]
2016-7-20 09:55:12 MD5:710f36df1f00fa095fd6e16f322e7353 D:\Virus\2016.7.20\46.vir [Trojan.GreenDispenser.A]  [Delete success]
2016-7-20 09:55:12 MD5:adc6d16749bf6250544191dcecc9bd83 D:\Virus\2016.7.20\50.vir --> 986005950-4 PAYOUT CONFIRMATIONS2.jar --> main/??con.class [Java.Trojan.Adwind.AU]  [Delete success]
2016-7-20 09:55:12 MD5:3d0423bb585c9cf9827a0b142c79ceb6 D:\Virus\2016.7.20\09.vir [Trojan.GenericKD.3412230]  [Delete success]
2016-7-20 09:55:12 MD5:719f7b1b9cde7cbc4b5f2c664d54a695 D:\Virus\2016.7.20\40.vir [Generic.JS.DownloaderAG.1C6234DF]  [Delete success]
2016-7-20 09:55:12 MD5:f54fd68f0a64f790544e43b934cb03cf D:\Virus\2016.7.20\43.vir [Gen:Variant.Razy.79745]  [Delete success]
2016-7-20 09:55:12 MD5:c244cf8c37ce36bbd68e33fb0d0b5c1e D:\Virus\2016.7.20\19.vir [Trojan.Doc.Downloader.NV]  [Delete success]
2016-7-20 09:55:12 MD5:d72c4e240bf788cf117ad0365dfdea1e D:\Virus\2016.7.20\48.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:13 MD5:9be93a16b8e03cd10b786fcfa456a324 D:\Virus\2016.7.20\08.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:13 MD5:2e124fc934eba7f696cb8f488d80fec4 D:\Virus\2016.7.20\20.vir [Trojan.GenericKD.3411549]  [Delete success]
2016-7-20 09:55:13 MD5:9ef9b02855f4248e2107d3837eef6d59 D:\Virus\2016.7.20\27.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:13 MD5:45905f7cc2f52e2f6d92e718bddd3f3d D:\Virus\2016.7.20\36.vir [Gen:Variant.Razy.68404]  [Delete success]
2016-7-20 09:55:13 MD5:4393ac434c33b33282d18c55fbcd0f79 D:\Virus\2016.7.20\14.vir [Trojan.Script.427816]  [Delete success]
2016-7-20 09:55:13 MD5:adc6d16749bf6250544191dcecc9bd83 D:\Virus\2016.7.20\50.vir --> main/??con.class [Java.Trojan.Adwind.AU]  [Delete success]
2016-7-20 09:55:13 MD5:1b41c48c063ce682d85162ced8e29eb6 D:\Virus\2016.7.20\42.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:13 MD5:8079d66417f4f23c172aaa711877ce34 D:\Virus\2016.7.20\06.vir [Trojan.GenericKD.3409048]  [Delete success]
2016-7-20 09:55:13 MD5:0ee7974a7f327d13be9a9671271fc86c D:\Virus\2016.7.20\23.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:14 MD5:9ca23c7c6dec09e3b686bdf0f6192bbb D:\Virus\2016.7.20\32.vir [Trojan.GenericKD.3409028]  [Delete success]
2016-7-20 09:55:14 MD5:739d6e0f43fc672c05e45c2b7d54bacf D:\Virus\2016.7.20\01.vir [Gen:Variant.Application.Strictor.108911]  [Delete success]
2016-7-20 09:55:14 MD5:adc6d16749bf6250544191dcecc9bd83 D:\Virus\2016.7.20\50.vir --> 986005950-4 PAYOUT CONFIRMATIONS2.jar --> main/??nUL.class [Java.Trojan.Adwind.AU]  [Delete success]
2016-7-20 09:55:14 MD5:20a8b1c65cb6e35327fdc77f6f840acf D:\Virus\2016.7.20\11.vir [Trojan.Doc.Downloader.NW]  [Delete success]
2016-7-20 09:55:14 MD5:a52959c80d58ef3f8e58096cd8e7696b D:\Virus\2016.7.20\39.vir [Trojan.GenericKD.3409074]  [Delete success]
2016-7-20 09:55:14 MD5:4410474e2931dfb84fb68e835355d289 D:\Virus\2016.7.20\16.vir [Gen:Win32.ExplorerHijack.hKX@a8mlbBo]  [Delete success]
2016-7-20 09:55:14 MD5:8b2b0f2ac3e76b5a3f1be4ba8be11f1a D:\Virus\2016.7.20\17.vir [Trojan.JS.Downloader.DQA]  [Delete success]
2016-7-20 09:55:15 MD5:efe9471d387f0b5804a46902608ae63d D:\Virus\2016.7.20\04.vir [Trojan.GenericKD.3335974]  [Delete success]
2016-7-20 09:55:15 MD5:267105dab29e6d81ed215c1957e8f7d3 D:\Virus\2016.7.20\47.vir [Trojan.Doc.Downloader.NN]  [Delete success]
2016-7-20 09:55:15 MD5:6475c53a2544851c0269f67a5bf45d42 D:\Virus\2016.7.20\07.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:15 MD5:deabd448e73ceb674b56dea8a932b6b0 D:\Virus\2016.7.20\35.vir [Trojan.Doc.Downloader.NS]  [Delete success]
2016-7-20 09:55:15 MD5:9cd47577649a3dc46e0223b8f56cb088 D:\Virus\2016.7.20\26.vir [Trojan.Script.DJB]  [Delete success]
2016-7-20 09:55:15 MD5:8d80eb183ffbb659995e02a331642e89 D:\Virus\2016.7.20\12.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:15 MD5:1d6488a91c26012b7af63c0e6701ac53 D:\Virus\2016.7.20\37.vir [Gen:Variant.Razy.76521]  [Delete success]
2016-7-20 09:55:15 MD5:adc6d16749bf6250544191dcecc9bd83 D:\Virus\2016.7.20\50.vir --> main/??nUL.class [Java.Trojan.Adwind.AU]  [Delete success]
2016-7-20 09:55:15 MD5:9a6144b1360a4498de94cec04f93fc2c D:\Virus\2016.7.20\41.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:16 MD5:f84c82324f57c92b31f8a62f3a9a12f8 D:\Virus\2016.7.20\33.vir [Gen:Variant.Razy.61999]  [Delete success]
2016-7-20 09:55:16 MD5:bf8e8d6732c04c62eb5a61801b541cbc D:\Virus\2016.7.20\13.vir [Trojan.GenericKD.3412723]  [Delete success]
2016-7-20 09:55:16 MD5:776a19025c7f851bf89a313f73942dd2 D:\Virus\2016.7.20\05.vir [Trojan.GenericKD.3398616]  [Delete success]
2016-7-20 09:55:16 MD5:cdf3e1b06e2689d2a654166cce992173 D:\Virus\2016.7.20\49.vir --> xl/vbaProject.bin [W97M.Downloader.DVH]  [Delete success]
2016-7-20 09:55:16 MD5:c7e7adc3b71a049d7847865c39f77355 D:\Virus\2016.7.20\10.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-20 09:55:16 MD5:a57111d6f3eeecb91b32bfef5d386770 D:\Virus\2016.7.20\38.vir [Trojan.Script.DJB]  [Delete success]
2016-7-20 09:55:16 MD5:6945c07c6ca087433feb8bb99fa74834 D:\Virus\2016.7.20\28.vir [Trojan.GenericKD.3408995]  [Delete success]
2016-7-20 09:55:16 MD5:bfb0e56d21ba838e6a04a24290becd7b D:\Virus\2016.7.20\15.vir [Trojan.Doc.Downloader.NN]  [Delete success][/mw_shl_code]
XZ8SM7Sx0bVkoUV
发表于 2016-7-20 09:57:55 | 显示全部楼层
火绒 34文件

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xyz0703
发表于 2016-7-20 09:59:00 | 显示全部楼层
本帖最后由 xyz0703 于 2016-7-20 10:01 编辑

BD
[mw_shl_code=css,true]
Scanned items : 264
Infected items : 45
Suspicious items : 2
Resolved items : 47
Unresolved items : 0 (no issues remained unresolved)

Resolved issues:
Object Path Threat Name Final Status

D:\Users‘ Documents\Desktop\2016.7.20\34.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\13.vir Trojan.GenericKD.3412723 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\14.vir Trojan.Script.427816 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\08.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\32.vir Trojan.GenericKD.3409028 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\44.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\50.vir=>main/??nUL.class Java.Trojan.Adwind.AU Deleted
D:\Users‘ Documents\Desktop\2016.7.20\05.vir Trojan.GenericKD.3398616 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\50.vir=>main/??con.class Java.Trojan.Adwind.AU Clean
D:\Users‘ Documents\Desktop\2016.7.20\36.vir Gen:Variant.Razy.68404 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\48.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\49.vir=>xl/vbaProject.bin W97M.Downloader.DVH Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\47.vir Trojan.Doc.Downloader.NN Deleted
D:\Users‘ Documents\Desktop\2016.7.20\16.vir Gen:Win32.ExplorerHijack.hKX@a8mlbBo Deleted
D:\Users‘ Documents\Desktop\2016.7.20\50.vir=>986005950-4 PAYOUT CONFIRMATIONS2.jar=>main/??con.class Java.Trojan.Adwind.AU Clean
D:\Users‘ Documents\Desktop\2016.7.20\28.vir Trojan.GenericKD.3408995 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\46.vir Trojan.GreenDispenser.A Deleted
D:\Users‘ Documents\Desktop\2016.7.20\09.vir Trojan.GenericKD.3412230 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\45.vir Trojan.Doc.Downloader.NN Deleted
D:\Users‘ Documents\Desktop\2016.7.20\50.vir=>986005950-4 PAYOUT CONFIRMATIONS2.jar=>main/??nUL.class Java.Trojan.Adwind.AU Deleted
D:\Users‘ Documents\Desktop\2016.7.20\26.vir Trojan.Script.DJB Deleted
D:\Users‘ Documents\Desktop\2016.7.20\01.vir Gen:Variant.Application.Strictor.108911 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\30.vir Trojan.Script.DJD Moved to Quarantine
D:\Users‘ Documents\Desktop\2016.7.20\42.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\06.vir Trojan.GenericKD.3409048 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\24.vir W97M.Downloader.DVB Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\27.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\20.vir Trojan.GenericKD.3411549 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\23.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\41.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\43.vir Gen:Variant.Razy.79745 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\07.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\04.vir Trojan.GenericKD.3335974 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\22.vir Trojan.Script.DJD Moved to Quarantine
D:\Users‘ Documents\Desktop\2016.7.20\40.vir Generic.JS.DownloaderAG.1C6234DF Deleted
D:\Users‘ Documents\Desktop\2016.7.20\39.vir Trojan.GenericKD.3409074 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\38.vir Trojan.Script.DJB Deleted
D:\Users‘ Documents\Desktop\2016.7.20\17.vir Trojan.JS.Downloader.DQA Deleted
D:\Users‘ Documents\Desktop\2016.7.20\35.vir Trojan.Doc.Downloader.NS Deleted
D:\Users‘ Documents\Desktop\2016.7.20\19.vir Trojan.Doc.Downloader.NV Deleted
D:\Users‘ Documents\Desktop\2016.7.20\37.vir Gen:Variant.Razy.76521 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\15.vir Trojan.Doc.Downloader.NN Deleted
D:\Users‘ Documents\Desktop\2016.7.20\33.vir Gen:Variant.Razy.61999 Deleted
D:\Users‘ Documents\Desktop\2016.7.20\12.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\10.vir=>word/vbaProject.bin W97M.Downloader.DUT Disinfected
D:\Users‘ Documents\Desktop\2016.7.20\11.vir Trojan.Doc.Downloader.NW Deleted
D:\Users‘ Documents\Desktop\2016.7.20\03.vir Trojan.Script.DJA Deleted
[/mw_shl_code]
Sailer.X 该用户已被删除
发表于 2016-7-20 10:26:19 | 显示全部楼层
COMODO 1X

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xcvbaby
发表于 2016-7-20 10:48:33 | 显示全部楼层
百度杀毒:29(未开启比特梵德引擎)

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ysj963
发表于 2016-7-20 10:53:32 | 显示全部楼层
eset 45X
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-14 09:54 , Processed in 0.132496 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表