查看: 4443|回复: 19
收起左侧

[病毒样本] 精睿样本测试(16.7.21)

[复制链接]
轩夏
发表于 2016-7-21 09:11:56 | 显示全部楼层 |阅读模式
地址:

https://pan.baidu.com/s/1dEOvIWp  提取密码  raan

密码:bbs.vc52.cn
数量:50
欧阳宣
头像被屏蔽
发表于 2016-7-21 09:16:01 | 显示全部楼层
本帖最后由 欧阳宣 于 2016-7-21 09:17 编辑

TAV(无BD)检测13个。
轩夏
 楼主| 发表于 2016-7-21 09:17:49 | 显示全部楼层
MSE
[mw_shl_code=css,true]Scan started on Thu Jul 21 09:16:31 2016

C:\Users\XuanXia\Desktop\2016.7.21\02.vir                              Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.21\03.vir                              Infected: Worm:Win32/Gamarue.AU
C:\Users\XuanXia\Desktop\2016.7.21\11.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\13.vir                              Infected: Trojan:Win32/Vreikstadi
C:\Users\XuanXia\Desktop\2016.7.21\15.vir                              Infected: Trojan:Win32/Kovter!rfn
C:\Users\XuanXia\Desktop\2016.7.21\16.vir                              Infected: Trojan:Java/Adwind.P
C:\Users\XuanXia\Desktop\2016.7.21\18.vir                              Infected: TrojanDownloader:JS/Nemucod.GM
C:\Users\XuanXia\Desktop\2016.7.21\24.vir                              Infected: TrojanSpy:Win32/Ranbyus
C:\Users\XuanXia\Desktop\2016.7.21\25.vir                              Infected: TrojanDownloader:JS/Nemucod.GL
C:\Users\XuanXia\Desktop\2016.7.21\26.vir                              Infected: TrojanDownloader:JS/Nemucod.GM
C:\Users\XuanXia\Desktop\2016.7.21\27.vir->(nsis-instdata)             Infected: Ransom:Win32/Cerber.A [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.21\27.vir->(nsis-1-ProxySettings.dll   Infected: VirTool:Win32/Injector.FD [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.21\29.vir->Kjsio/x.class               Infected: Trojan:Java/Adwind.P
C:\Users\XuanXia\Desktop\2016.7.21\29.vir->Kjsio/g.class               Infected: Trojan:Java/Adwind.P
C:\Users\XuanXia\Desktop\2016.7.21\29.vir->Kjsio/v.class               Infected: Trojan:Java/Adwind.P
C:\Users\XuanXia\Desktop\2016.7.21\31.vir                              Infected: Ransom:Win32/Locky!rfn
C:\Users\XuanXia\Desktop\2016.7.21\33.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\34.vir                              Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.21\35.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\36.vir                              Infected: TrojanDownloader:JS/Nemucod.FJ
C:\Users\XuanXia\Desktop\2016.7.21\37.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\38.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\39.vir                              Infected: HackTool:MSIL/Boilod.A
C:\Users\XuanXia\Desktop\2016.7.21\40.vir->(RtfBody)                   Infected: Exploit:Win32/BlueRid.A [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.21\41.vir                              Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.21\42.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\43.vir->(part0005:)->(ActiveMime)   Infected: TrojanDownloader:O97M/Bartallex [non_writable_container]
C:\Users\XuanXia\Desktop\2016.7.21\44.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\45.vir                              Infected: TrojanDownloader:JS/Nemucod.FJ
C:\Users\XuanXia\Desktop\2016.7.21\47.vir                              Infected: TrojanDownloader:JS/Nemucod
C:\Users\XuanXia\Desktop\2016.7.21\48.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff
C:\Users\XuanXia\Desktop\2016.7.21\50.vir->word/vbaProject.bin         Infected: TrojanDownloader:O97M/Donoff

Successfully checked: C:\Users\XuanXia\Desktop\2016.7.21

Scan ended on Thu Jul 21 09:16:51 2016

Time: 20 second(s). [0h:00m:20s]
Files/second: 17 (744 Kb/s).
Objects scanned: 345.
Infected: 32. Suspicious: 0. Clean: 313. Different virus bodies: 16.
Files: 87. Directories: 1. Archives: 60. Packed: 7. Mail files: 3.
Warnings: 32. Scan errors: 0. Protected: 0. Damaged: 0. Unknown method: 0. Spanned: 0.[/mw_shl_code]
540923555
发表于 2016-7-21 09:20:34 | 显示全部楼层
本帖最后由 540923555 于 2016-7-21 09:29 编辑

wd占位
联网查杀+修复=31个
欧阳宣
头像被屏蔽
发表于 2016-7-21 09:24:27 | 显示全部楼层
本帖最后由 欧阳宣 于 2016-7-21 09:37 编辑

管家国际版……

36x

[mw_shl_code=css,true]2016-7-21 09:36:24 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/MaIn.class [Java.Trojan.Adwind.BQ]  [Delete success]
2016-7-21 09:36:24 MD5:116f3b2b57c25a035984b4548a0a21eb D:\Virus\2016.7.21\06.vir [Trojan.GenericKD.3413561]  [Delete success]
2016-7-21 09:36:24 MD5:cbf5aaa36e115ec09d2a8aa5f041e3e8 D:\Virus\2016.7.21\50.vir [Trojan.Doc.Downloader.NO]  [Delete success]
2016-7-21 09:36:24 MD5:7e3a03177127030cfe848ca39b2c4a28 D:\Virus\2016.7.21\36.vir [Trojan.JS.Downloader.DQA]  [Delete success]
2016-7-21 09:36:24 MD5:05fddefd228a20fa0d82b469c3bbd76d D:\Virus\2016.7.21\29.vir --> Kjsio/n.class [Trojan.JAVA.Adwind.CQ]  [Delete success]
2016-7-21 09:36:24 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????IiIIIIiIIi.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:25 MD5:2fb921732760632aac24e6d11fdfe104 D:\Virus\2016.7.21\17.vir [Gen:Variant.Kazy.405368]  [Delete success]
2016-7-21 09:36:25 MD5:fff7c61b7e2b2e4ec323a5d94a4e8f9d D:\Virus\2016.7.21\10.vir [Trojan.GenericKD.3416543]  [Delete success]
2016-7-21 09:36:25 MD5:fd1014acfd6fd7d28e980b2774749f96 D:\Virus\2016.7.21\45.vir [Trojan.JS.Downloader.DPK]  [Delete success]
2016-7-21 09:36:25 MD5:a5fd5640be6f9ad66f38af572239857e D:\Virus\2016.7.21\13.vir [Trojan.Agent.BWGT]  [Delete success]
2016-7-21 09:36:25 MD5:bbbc369907c7d09c534d2ec307ae301e D:\Virus\2016.7.21\43.vir --> (base64) --> (Active Mime) [W97M.Downloader.AVY]  [Delete success]
2016-7-21 09:36:25 MD5:afc5a7e4ee67faf857007a873d5f0409 D:\Virus\2016.7.21\33.vir [Trojan.Doc.Downloader.NN]  [Delete success]
2016-7-21 09:36:25 MD5:fed363a6a494edfca7bb68e8bea4acd2 D:\Virus\2016.7.21\26.vir [Trojan.JS.Downloader.DQS]  [Delete success]
2016-7-21 09:36:25 MD5:52091b1761f82b7647829a7132e757a5 D:\Virus\2016.7.21\39.vir [Gen:Variant.Kazy.795257]  [Delete success]
2016-7-21 09:36:25 MD5:80c90b224fb9fd9d058f75a2b1aaf25f D:\Virus\2016.7.21\03.vir [Trojan.GenericKD.3417845]  [Delete success]
2016-7-21 09:36:26 MD5:bfc70b8eafcee8b1a9e1848550e7b86e D:\Virus\2016.7.21\38.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-21 09:36:26 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????IIiIiiIiIi.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:26 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????IiIiIIIIII.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:26 MD5:64b7d51ee00a9654fb5d58ea5b6f9ccc D:\Virus\2016.7.21\08.vir [Trojan.GenericKD.3417450]  [Delete success]
2016-7-21 09:36:26 MD5:80c1e7a59b5660954957aca2d9e9d88b D:\Virus\2016.7.21\48.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-21 09:36:26 MD5:339ddbbae30283e6d2a06bf5b7275c6d D:\Virus\2016.7.21\35.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-21 09:36:26 MD5:05fddefd228a20fa0d82b469c3bbd76d D:\Virus\2016.7.21\29.vir --> Kjsio/q.class [Trojan.JAVA.Adwind.CQ]  [Delete success]
2016-7-21 09:36:26 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????iiiIiiiIII.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:26 MD5:4a99ad1ff9e5b5b78ff6cca2d188bed7 D:\Virus\2016.7.21\02.vir [Trojan.GenericKD.3409031]  [Delete success]
2016-7-21 09:36:27 MD5:fe423eddd2944646eb6035cae7766344 D:\Virus\2016.7.21\22.vir [Trojan.GenericKD.3397870]  [Delete success]
2016-7-21 09:36:27 MD5:830da1187914715232d9183d1f9a8e29 D:\Virus\2016.7.21\07.vir --> p.class [Trojan.GenericKD.3405220]  [Delete success]
2016-7-21 09:36:27 MD5:c124ed0f95b861f36e89743189e5c1a1 D:\Virus\2016.7.21\14.vir [Trojan.GenericKD.3418181]  [Delete success]
2016-7-21 09:36:27 MD5:d69023962e3dbbd8ad74fce999a548e7 D:\Virus\2016.7.21\44.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-21 09:36:27 MD5:b0637b411bdbe834c21acbec47e707cc D:\Virus\2016.7.21\42.vir --> word/vbaProject.bin [W97M.Downloader.DUT]  [Delete success]
2016-7-21 09:36:27 MD5:05fddefd228a20fa0d82b469c3bbd76d D:\Virus\2016.7.21\29.vir --> Kjsio/h.class [Trojan.JAVA.Adwind.CQ]  [Delete success]
2016-7-21 09:36:27 MD5:a3f925281a169acec8ad546e32fec1d4 D:\Virus\2016.7.21\21.vir [W97M.Downloader.DWA]  [Delete success]
2016-7-21 09:36:27 MD5:8dd8b8eb17e29f0e26aa445bf66f1391 D:\Virus\2016.7.21\31.vir [Trojan.Agent.BVLG]  [Delete success]
2016-7-21 09:36:27 MD5:4e46b74b6d7774bafcd9b5c4c555b59d D:\Virus\2016.7.21\49.vir [Gen:Variant.Strictor.104394]  [Delete success]
2016-7-21 09:36:28 MD5:72d6fa44288d61a55a7e5b1e27097e9c D:\Virus\2016.7.21\37.vir [Trojan.Doc.Downloader.NO]  [Delete success]
2016-7-21 09:36:28 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????iiIIiIiIiI.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:28 MD5:40d293e51ffca46fd280480aad2d3a6b D:\Virus\2016.7.21\16.vir --> compos/_w_?????????????????iiIiIIIIII.class [Trojan.Java.Adwind.CB]  [Delete success]
2016-7-21 09:36:28 MD5:896922553012262aa98c6354a75157c8 D:\Virus\2016.7.21\47.vir [Trojan.GenericKD.3410434]  [Delete success]
2016-7-21 09:36:28 MD5:0640c309d4e41755fa1118dd0940037e D:\Virus\2016.7.21\12.vir [Gen:Variant.Zusy.199691]  [Delete success]
2016-7-21 09:36:28 MD5:28c6ba5cd82d12f6cc7afbfed4ed4c2b D:\Virus\2016.7.21\34.vir [Trojan.JS.Downloader.DQA]  [Delete success]
2016-7-21 09:36:28 MD5:05fddefd228a20fa0d82b469c3bbd76d D:\Virus\2016.7.21\29.vir --> Kjsio/g.class [Application.Java.Adwind.C]  [Delete success]
2016-7-21 09:36:28 MD5:5e81cfaf4c1e11099d4cbb8f38121a28 D:\Virus\2016.7.21\24.vir [Trojan.GenericKD.3417746]  [Delete success]
2016-7-21 09:36:28 MD5:a540e661ec90ba0654324643502bfd32 D:\Virus\2016.7.21\01.vir [Linux.DnsChanger.N]  [Delete success]
2016-7-21 09:36:29 MD5:5c5c80c9fcd9108b425649abfff4d6a4 D:\Virus\2016.7.21\15.vir [Gen:Variant.Symmi.66668]  [Delete success]
2016-7-21 09:36:29 MD5:928e9b38f8d9490f459403a004a96759 D:\Virus\2016.7.21\41.vir [Trojan.GenericKD.3409079]  [Delete success]
2016-7-21 09:36:29 MD5:dbae4eef7ba4a3091813d2d34363b976 D:\Virus\2016.7.21\18.vir [Trojan.JS.Downloader.DQV]  [Delete success][/mw_shl_code]
skyboybone
发表于 2016-7-21 09:31:24 | 显示全部楼层
好久没来了

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
XZ8SM7Sx0bVkoUV
发表于 2016-7-21 09:56:15 | 显示全部楼层
火绒

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xcvbaby
发表于 2016-7-21 10:30:50 | 显示全部楼层
百度杀毒;22  (不开BD引擎)

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Eset小粉絲
发表于 2016-7-21 11:12:13 | 显示全部楼层
Avira 34X

[mw_shl_code=css,true]Start of the scan: Thursday, 21 July, 2016  11:08

Starting the file scan:

Begin scan in 'C:\Users\User\Desktop\2016.7.21'
C:\Users\User\Desktop\2016.7.21\02.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.21\03.vir
  [DETECTION] Is the TR/PSW.Siggen.84480 Trojan
C:\Users\User\Desktop\2016.7.21\06.vir
  [DETECTION] Is the TR/AD.Dorkbot.Y.irag Trojan
C:\Users\User\Desktop\2016.7.21\07.vir
    [0] Archive type: ZIP
    --> c.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.7979 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> h.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.43234 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> j.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.89793 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> m.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> t.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.5 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> f.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.65454 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> p.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.2 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> e.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.65564 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> i.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.7656757 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> x.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.6 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> r.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.3 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> Eng.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.654545 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> z.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.7 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> a.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.654456 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> s.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.4 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> o.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.54334.1 Java virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\10.vir
    [0] Archive type: ZIP
    --> com/sun/jna/CommandHotToolBox/RightAdvancedJustInput/GroundHotCatePack.class
        [DETECTION] Contains recognition pattern of the EXP/JAVA.Adwind.AX.Gen exploit
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\11.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.3835160 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\12.vir
  [DETECTION] Is the TR/Dropper.MSIL.swmy Trojan
C:\Users\User\Desktop\2016.7.21\13.vir
  [DETECTION] Contains recognition pattern of the DR/Delphi.zrbg dropper
C:\Users\User\Desktop\2016.7.21\14.vir
  [DETECTION] Is the TR/Dropper.MSIL.pcrw Trojan
C:\Users\User\Desktop\2016.7.21\16.vir
    [0] Archive type: ZIP
    --> compos/_w_?????????????????iiiiIIIIIi.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.95656 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiiiiIiIII.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.9532 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IIIiIiiIii.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.9555 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiiiIiIiii.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.9799 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IIiIiiIiIi.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.95425 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiIIiIiIiI.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.95466 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IiIIIIiIIi.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.95421 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IIiIIIiIii.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.96772 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiIIIIiIIi.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.98784 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiiIiiiIII.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.96456 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/MaIn.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.9576 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IiIiIIIIII.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.96634 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiIIIIiiii.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.96222 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiIiIIIiIi.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.94324 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????iiIiIIIIII.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.97754 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IiIiIIiiiI.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.97858 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> compos/_w_?????????????????IIIiiIIIII.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.95473 Java virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\17.vir
  [DETECTION] Is the TR/Dropper.MSIL.kamc Trojan
C:\Users\User\Desktop\2016.7.21\18.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.21\22.vir
  [DETECTION] Is the TR/AD.WahkyStealer.Y.mgzh Trojan
C:\Users\User\Desktop\2016.7.21\24.vir
  [DETECTION] Is the TR/Crypt.Xpack.seka Trojan
C:\Users\User\Desktop\2016.7.21\26.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen6 HTML script virus
C:\Users\User\Desktop\2016.7.21\29.vir
    [0] Archive type: ZIP
    --> Kjsio/n.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.44146 Java virus
        [WARNING]   Infected files in archives cannot be repaired
    --> Kjsio/g.class
        [DETECTION] Contains recognition pattern of the JAVA/Adwind.44147 Java virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\31.vir
  [DETECTION] Is the TR/Locky.554435467 Trojan
C:\Users\User\Desktop\2016.7.21\33.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\34.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.kse Java script virus
C:\Users\User\Desktop\2016.7.21\35.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\36.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.kse Java script virus
C:\Users\User\Desktop\2016.7.21\37.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\38.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\39.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\User\Desktop\2016.7.21\40.vir
  [DETECTION] Contains recognition pattern of the EXP/CVE-2010-3333 exploit
C:\Users\User\Desktop\2016.7.21\41.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.21\42.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\43.vir
    [0] Archive type: MIME
    --> AV000000f6.AV$
        [1] Archive type: OLE
      --> Object
          [DETECTION] Contains code of the W2000M/Agent.36220 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\44.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\45.vir
  [DETECTION] Contains recognition pattern of the VBS/Dldr.Nemucod.AM VBS script virus
C:\Users\User\Desktop\2016.7.21\47.vir
  [DETECTION] Contains recognition pattern of the HTML/ExpKit.Gen2 HTML script virus
C:\Users\User\Desktop\2016.7.21\48.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.AM.45050 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\User\Desktop\2016.7.21\49.vir
  [DETECTION] Is the TR/Agent.nfad Trojan
C:\Users\User\Desktop\2016.7.21\50.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Dldr.Agent.dfgh macro virus
        [WARNING]   Infected files in archives cannot be repaired[/mw_shl_code]
Llano_心情
发表于 2016-7-21 11:22:23 | 显示全部楼层
百度国内【关闭大B引擎

断网 kill x 18
[mw_shl_code=css,true]扫描结果
扫描文件数:50
发现风险数:18
已处理风险数:0


风险情况详情:

病毒木马名:VBA.Trojan-Downloader.Agent.ami.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\11.vir  病毒木马类型:下载者木马 未处理
病毒木马名:JS.Trojan-Downloader.Nemucod.bv.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\34.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\35.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\33.vir  病毒木马类型:下载者木马 未处理
病毒木马名:JS.Trojan-Downloader.Nemucod.bv.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\36.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\38.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\37.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\42.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\44.vir  病毒木马类型:下载者木马 未处理
病毒木马名:JS.Trojan.Nemucod.ff.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\45.vir  病毒木马类型:恶意木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\48.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\50.vir  病毒木马类型:下载者木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9995.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\06.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9996.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\03.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9994.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\12.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9993.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\13.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9997.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\14.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.WisdomEyes.150615.9950.9999.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\39.vir  病毒木马类型:恶意木马 未处理[/mw_shl_code]

联网 kill x 27
[mw_shl_code=css,true]扫描结果
扫描文件数:50
发现风险数:27
已处理风险数:0


风险情况详情:

病毒木马名:Win32.Trojan-Downloader.Wauchos.gt.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\03.vir  病毒木马类型:下载者木马 未处理
病毒木马名:Win32.Trojan.Injector.ngyd.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\06.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Injector.cnqw.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\08.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Gen.CCE03.cdq.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\09.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Injector.yr.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\12.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Injector.rq.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\13.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Injector.hpdt.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\14.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Kovter.iu.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\15.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Kryptik.jb.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\17.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Worm.Autorun.ere.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\22.vir  病毒木马类型:蠕虫病毒 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.ami.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\11.vir  病毒木马类型:下载者木马 未处理
病毒木马名:Win32.Trojan-Spy.Ranbyus.mz.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\24.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Injector.hria.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\27.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Kryptik.nuce.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\31.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Immirat.ih.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\39.vir  病毒木马类型:恶意木马 未处理
病毒木马名:Win32.Trojan.Generic.gqe.cav  路径:C:\Users\魔法llano\Desktop\2016.7.21\49.vir  病毒木马类型:恶意木马 未处理
病毒木马名:JS.Trojan-Downloader.Nemucod.bv.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\34.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\35.vir  病毒木马类型:下载者木马 未处理
病毒木马名:JS.Trojan-Downloader.Nemucod.bv.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\36.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\33.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\37.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\38.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\42.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\44.vir  病毒木马类型:下载者木马 未处理
病毒木马名:JS.Trojan.Nemucod.ff.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\45.vir  病毒木马类型:恶意木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.amj.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\48.vir  病毒木马类型:下载者木马 未处理
病毒木马名:VBA.Trojan-Downloader.Agent.aoh.bav  路径:C:\Users\魔法llano\Desktop\2016.7.21\50.vir  病毒木马类型:下载者木马 未处理[/mw_shl_code]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-14 10:22 , Processed in 0.140954 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表