AVG:
双击:关闭监控,实机双击,连窝端。【下载下来的exe被干掉,回滚顺便把js带走】
"";"IDP.Program.D1B0A5C0, C:\Users\abori\AppData\Local\Temp\38878243.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/10/1, 10:06:21"
"";", C:\Windows\System32\wscript.exe";"Object was blocked";"Process";"2016/10/1, 10:06:21"
"";", C:\Windows\System32\wscript.exe";"Object was blocked";"Process";"2016/10/1, 10:06:21"
"";", C:\Users\abori\AppData\Local\Microsoft\Windows\INetCache\IE\XQHOSKD1\gum[1].exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/10/1, 10:06:21"
"";", C:\Users\abori\Desktop\N59069406394.js";"Deleted, Moved to Virus Vault";"File or Directory";"2016/10/1, 10:06:21"
"";", C:\Users\abori\AppData\Local\Temp\38878243.exe";"Object was blocked";"Process";"2016/10/1, 10:06:21"
|