本帖最后由 wuwu123400 于 2016-11-17 10:02 编辑
sep14 bh主动 智能扫描 社区和symantec信任 9:50更新完成
kill 22 剩下 28
日志:
[mw_shl_code=css,true]
"07.vir","W97M.Downloader","已隔离","压缩的文件; 病毒","手动扫描","C:\Users\888\Downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仍包含 1 个受感染的项目","隔离","隔离","不操作 (仅记录)","已经成功地隔离了文件。","2016/11/17 9:47:03"
"04.vir","Trojan.Gen","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:34"
"06.vir","JS.Downloader","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:34"
"10.vir","Heur.AdvML.A","仅记录","启发式病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:35"
"10.vir","Heur.AdvML.A","仅记录","启发式病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:36"
"11.vir","Heur.AdvML.B","已通过删除清除","启发式病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","已删除","已删除","清除安全风险","隔离","已成功地删除了文件。","2016/11/17 9:47:36"
"15.vir","Ransom.Locky","已通过删除清除","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","已删除","已删除","清除安全风险","隔离","已成功地删除了文件。","2016/11/17 9:47:37"
"16.vir","Infostealer.Limitail","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:55"
"19.vir","Trojan.Malscript!html","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:55"
"26.vir","W97M.Downloader","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:47:59"
"28.vir","Heur.AdvML.A","仅记录","启发式病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:48:05"
"35.vir","Heur.AdvML.B","仅记录","启发式病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:48:18"
"5857.","Trojan.Mdropper","已通过删除清除","压缩的文件; 病毒","手动扫描","C:\Users\888\Downloads\2016.11.17\39.vir","WIN-V0KQJOQKF86","888","已删除","已删除","清除安全风险","隔离","已成功地删除了文件。","2016/11/17 9:48:44"
"39.vir","Trojan.Mdropper","已删除","压缩的文件; 病毒","手动扫描","C:\Users\888\Downloads\2016.11.17\","WIN-V0KQJOQKF86","888","已删除","已删除","删除","不操作 (仅记录)","已成功地删除了文件。","2016/11/17 9:48:44"
"39.vir","Trojan.Mdropper","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:48:45"
"40.vir","Ransom.Locky","仅记录","病毒","手动扫描","c:\users\888\downloads\2016.11.17\","WIN-V0KQJOQKF86","888","仅记录","c:\users\888\downloads\2016.11.17\","清除安全风险","隔离","文件保持未变。","2016/11/17 9:49:00"[/mw_shl_code]
bd 2017 扫描最高 atc最高 9:50更新完成
kill 24 剩26
日志:
[mw_shl_code=css,true]<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\29.vir" threatType="0" threatName="Trojan.Downloader.JS.ZH" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\50.vir" threatType="0" threatName="W97M.Downloader.ERB" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\37.vir" threatType="0" threatName="Trojan.JS.Agent.OKU" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\46.vir" threatType="0" threatName="Trojan.JS.Downloader.GYQ" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\25.vir" threatType="0" threatName="Trojan.VBS.Downloader.VC" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\43.vir" threatType="0" threatName="W97M.Dropper.GK" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\39.vir=>(objdata)=>(MSComctlLib.ListViewCtrl.2)" threatType="0" threatName="Exploit.CVE-2012-0158.Gen" action="5" allActions="1 5 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\48.vir" threatType="0" threatName="W97M.Downloader.ERB" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\13.vir" threatType="0" threatName="Trojan.GenericKD.3709388" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\06.vir" threatType="0" threatName="Gen:Heur.JS.Downloader.3" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\42.vir" threatType="0" threatName="Trojan.JS.Downloader.GYP" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\44.vir" threatType="0" threatName="Trojan.GenericKD.3689401" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\16.vir" threatType="0" threatName="Trojan.Agent.CBAC" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\34.vir" threatType="0" threatName="Trojan.GenericKD.3700894" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\39.vir=>(objdata)=>(Embedded DocFile g)" threatType="0" threatName="Exploit.CVE-2012-0158.Gen" action="5" allActions="1 5 1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\07.vir=>[Subject: Companies House - new company complaint][Date: Wed, 2 Nov 2016 08:09:28 -0400]=>Complaint.doc" threatType="0" threatName="Trojan.Doc.Downloader.VU" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\49.vir" threatType="0" threatName="Gen:Variant.Razy.105913" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\04.vir" threatType="0" threatName="Gen:Variant.Barys.385" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\40.vir" threatType="0" threatName="Trojan.RanSerKD.3693589" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\36.vir" threatType="0" threatName="Trojan.GenericKD.3712595" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\27.vir" threatType="0" threatName="Trojan.PDF.Phishing.FK" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\23.vir" threatType="0" threatName="Trojan.HTML.Phishing.OU" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\15.vir" threatType="0" threatName="Trojan.GenericKD.3708305" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\17.vir" threatType="0" threatName="Trojan.GenericKD.3712808" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\20.vir" threatType="0" threatName="Trojan.Generic.4975592" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\02.vir=>word/embeddings/oleObject1.bin" threatType="0" threatName="W97M.Downloader.ERM" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />
<Item type="0" objectType="0" path="C:\Users\666\Downloads\2016.11.17\10.vir" threatType="0" threatName="Trojan.RanSerKD.3711206" action="5" allActions="1 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType="" />[/mw_shl_code] |