12
返回列表 发新帖
楼主: 轩夏
收起左侧

[病毒样本] 精睿样本测试(16.9.19)

[复制链接]
qq271199810
发表于 2016-9-19 09:37:39 | 显示全部楼层
本帖最后由 qq271199810 于 2016-9-19 09:40 编辑

avast解压杀13 扫描杀13剩余24
不宜诺斯艾里斯
发表于 2016-9-19 10:09:10 | 显示全部楼层
卡巴 解压28kill 扫描1kill
skycai
发表于 2016-9-19 10:29:38 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
bbszy
发表于 2016-9-19 10:35:47 | 显示全部楼层
本帖最后由 bbszy 于 2016-9-19 10:46 编辑

mcafee 37x 其中修复1x
好想用EMSI
发表于 2016-9-19 10:42:59 | 显示全部楼层
时间  文件路径  威胁类型  结果  对应进程  
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\46.vir.html  Trojan.Obfus/JS!1.A5EB  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\16.vir.exe>>147CDD218CBE  Ransom.Vaultcrypt!8.6376  清除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\28.vir.exe  Downloader.Silcon!8.2D0A  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\37.vir.exe  Malware.TrojanSpy!8.1BF  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\39.vir.exe  Trojan.Generic!8.C3  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\40.vir.exe  Trojan.VBInject!1.64FE  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\41.vir.exe  Trojan.DownloadSponsor!1.A479  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\42.vir.exe  Trojan.Injector!8.C4  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\47.vir.dll  Ransom.Locky!8.1CD4  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\49.vir.exe  Dropper.Generic!8.35E  删除   
2016-09-19 10:40:31  D:\360极速浏览器下载\2016.9.19\50.vir.exe  Trojan.Inject!8.103  删除   
2016-09-19 10:40:30  D:\360极速浏览器下载\2016.9.19\32.vir.html>>jscript  Trojan.Obfus/JS!1.A5EB  删除   
2016-09-19 10:40:29  D:\360极速浏览器下载\2016.9.19\21.vir.html  Trojan.Obfus/JS!1.A5EB  删除   
2016-09-19 10:40:29  D:\360极速浏览器下载\2016.9.19\02.vir.exe  Malware.Obscure/Heur!1.9E03  删除   
2016-09-19 10:40:29  D:\360极速浏览器下载\2016.9.19\14.vir.exe  Malware.Undefined!8.C  删除   
2016-09-19 10:40:29  D:\360极速浏览器下载\2016.9.19\22.vir.dll  Ransom.Locky!8.1CD4  删除   
2016-09-19 10:40:29  D:\360极速浏览器下载\2016.9.19\24.vir.html  Trojan.Obfus/JS!1.A5EB  删除   
瑞星V17
欧阳宣
头像被屏蔽
发表于 2016-9-19 11:56:01 | 显示全部楼层
诺顿检测31个,修复0
[mw_shl_code=css,true]Resolved Threats:
Risks in compressed file "12.vir"
Type: Compressed
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
1 Infected File
[__substg1.0_37010102] inside of [d:\virus\2016.9.19\12.vir] - Fully Resolved


Bloodhound.PDF.3
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Heuristic Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\11.vir - Deleted
1 Browser Cache



JS.Downloader
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
14 Infected Files
d:\virus\2016.9.19\10.vir - Deleted
d:\virus\2016.9.19\19.vir - Deleted
d:\virus\2016.9.19\21.vir - Deleted
d:\virus\2016.9.19\24.vir - Deleted
d:\virus\2016.9.19\25.vir - Deleted
d:\virus\2016.9.19\04.vir - Deleted
d:\virus\2016.9.19\17.vir - Deleted
d:\virus\2016.9.19\05.vir - Deleted
d:\virus\2016.9.19\18.vir - Deleted
d:\virus\2016.9.19\29.vir - Deleted
d:\virus\2016.9.19\45.vir - Deleted
d:\virus\2016.9.19\46.vir - Deleted
d:\virus\2016.9.19\32.vir - Deleted
d:\virus\2016.9.19\34.vir - Deleted
1 Browser Cache



Trojan.Swifi
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\26.vir - Deleted
1 Browser Cache



Heur.AdvML.B
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Heuristic Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\15.vir - Deleted
1 Browser Cache



Heur.AdvML.B
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Heuristic Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\16.vir - Deleted
1 Browser Cache



Trojan.Gen.2
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
4 Infected Files
d:\virus\2016.9.19\22.vir - Deleted
d:\virus\2016.9.19\28.vir - Deleted
d:\virus\2016.9.19\37.vir - Deleted
d:\virus\2016.9.19\50.vir - Deleted
1 Browser Cache



Trojan.Gen
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
4 Infected Files
d:\virus\2016.9.19\14.vir - Deleted
d:\virus\2016.9.19\47.vir - Deleted
d:\virus\2016.9.19\49.vir - Deleted
d:\virus\2016.9.19\42.vir - Deleted
1 Browser Cache



Trojan.Dualtoy
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\30.vir - Deleted
1 Browser Cache



Heur.AdvML.B
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Heuristic Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\39.vir - Deleted
1 Browser Cache



Backdoor.Trojan
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Virus
Status: Fully Resolved
-----------
3 Registry Entries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\->EnableLUA:1 - Repaired
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile->DoNotAllowExceptions:1 - Repaired
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile->DoNotAllowExceptions:1 - Repaired
1 Infected File
d:\virus\2016.9.19\02.vir - Deleted
1 Browser Cache



Heur.AdvML.B
Type: Anomaly
Risk: High (High Stealth, High Removal, High Performance, High Privacy)
Categories: Heuristic Virus
Status: Fully Resolved
-----------
1 Infected File
d:\virus\2016.9.19\40.vir - Deleted
1 Browser Cache[/mw_shl_code]
心醉咖啡
发表于 2016-9-19 12:30:51 | 显示全部楼层
wajika
发表于 2016-9-19 12:57:03 | 显示全部楼层
病毒信息
附件 2016.9.19.7z 含有JS/DwnLdr-OPS;Troj/JSDldr-TL;Troj/JSDown-CQ;Troj/PDFJs-O;Troj/DocDl-EUP;Troj/JsDwnLdr-T;JS/Dwnldr-OPP;JS/DwnLdr-OPI;JS/Dldr-NR;Mal/RansomDl-C;JS/Dldr-NR;JS/Dwnldr-OPP;Troj/JSDldr-TF;JS/DwnLdr-OPF;JS/Dwnldr-OPP;Troj/DocDL-EUM;JS/Dldr-NR;Mal/Locky-B病毒  清除失败
Prince云
发表于 2016-9-19 13:40:28 | 显示全部楼层
本帖最后由 Prince云 于 2016-9-19 14:00 编辑

360 Total Security【联网】扫描0X,上传17未知文件分析,分析7文件为病毒,10文件为无威胁!
[mw_shl_code=html,true]360 Total Security扫描日志
扫描时间:2016-09-19 13:33:15
扫描用时:00:00:04
扫描项目总数:50
威胁总数:0
处理威胁数:0
扫描选项
----------------------
扫描压缩包:否
常规引擎设置:未开启小红伞和Bitdefender引擎
扫描内容
----------------------
C:\Users\MICROMINE\桌面\2016.9.19\
扫描结果
======================
未发现威胁[/mw_shl_code]



上传后扫描7X
[mw_shl_code=html,true]360 Total Security扫描日志
扫描时间:2016-09-19 13:58:54
扫描用时:00:00:05
扫描项目总数:50
威胁总数:7
处理威胁数:7
扫描选项
----------------------
扫描压缩包:否
常规引擎设置:未开启小红伞和Bitdefender引擎
扫描内容
----------------------
C:\Users\MICROMINE\桌面\2016.9.19\
扫描结果
======================
高风险项目
----------------------
C:\Users\MICROMINE\桌面\2016.9.19\15.vir        HEUR/QVM03.0.EC4A.Malware.Gen        已处理
C:\Users\MICROMINE\桌面\2016.9.19\28.vir        Win32/Trojan.3d3        已处理
C:\Users\MICROMINE\桌面\2016.9.19\37.vir        Win32/Trojan.4d4        已处理
C:\Users\MICROMINE\桌面\2016.9.19\42.vir        Win32/Trojan.Dropper.fb7        已处理
C:\Users\MICROMINE\桌面\2016.9.19\49.vir        HEUR/QVM03.0.EC4A.Malware.Gen        已处理
C:\Users\MICROMINE\桌面\2016.9.19\47.vir        Script/Virus.bc3        已处理
C:\Users\MICROMINE\桌面\2016.9.19\50.vir        HEUR/QVM03.0.EC4A.Malware.Gen        已处理[/mw_shl_code]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Eset小粉絲
发表于 2016-9-20 10:54:36 | 显示全部楼层
AVIRA 18号的库杀 35X 20号的库 再杀1个
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-14 04:14 , Processed in 0.096894 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表