楼主: Eset小粉絲
收起左侧

[病毒样本] 精睿样本测试(17.5.19)

  [复制链接]
aerbeisi
发表于 2017-5-19 20:55:36 | 显示全部楼层
8小时后,rising 68——>82个
Eset小粉絲
 楼主| 发表于 2017-5-19 21:22:58 | 显示全部楼层
担心中毒的小白 发表于 2017-5-19 20:34
avast扫描有点尴尬 余65(其中一个是我改格式的bat)

我這裏測剩50
Kyo.BA
发表于 2017-5-19 21:53:25 | 显示全部楼层
Dr.Web监控杀55个,扫描2个,剩余63
mak999
发表于 2017-5-20 02:34:34 | 显示全部楼层
42x

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
瑜辰双飞
发表于 2017-5-20 12:50:29 | 显示全部楼层
540923555 发表于 2017-5-19 15:39
WD删除70,修复3,未检出47,查杀率60.83%

WD功能再全一点就完美了。
jianguil
发表于 2017-5-20 14:38:56 | 显示全部楼层
784696777 发表于 2017-5-19 11:22
eset杀81修复4未检出35

ESET比卡巴还牛啊。》?
rancepenn
发表于 2017-5-20 15:26:49 | 显示全部楼层
bdts解压完还剩69个,再次扫描最终剩60个
Eset小粉絲
 楼主| 发表于 2017-5-20 17:52:26 | 显示全部楼层
Avira 72x
[mw_shl_code=css,true]Starting the file scan:

Begin scan in 'C:\Users\Ivan\Desktop\2017.5.19\'
C:\Users\Ivan\Desktop\2017.5.19\002.vir
  [DETECTION] Is the TR/Crypt.ZPACK.asmxp Trojan
C:\Users\Ivan\Desktop\2017.5.19\003.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\005.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.bzfqb Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\006.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\009.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\010.vir
  [DETECTION] Is the TR/Dropper.MSIL.ydcli Trojan
C:\Users\Ivan\Desktop\2017.5.19\011.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.xupbk Java script virus
C:\Users\Ivan\Desktop\2017.5.19\012.vir
  [DETECTION] Is the TR/Dropper.VB.phziz Trojan
C:\Users\Ivan\Desktop\2017.5.19\015.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.fbqvk Java script virus
C:\Users\Ivan\Desktop\2017.5.19\017.vir
  [DETECTION] Is the TR/Crypt.Xpack.tixpa Trojan
C:\Users\Ivan\Desktop\2017.5.19\020.vir
  [DETECTION] Is the TR/Dropper.MSIL.hgwkh Trojan
C:\Users\Ivan\Desktop\2017.5.19\023.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\024.vir
  [DETECTION] Contains recognition pattern of the JAVA/Kryptik.bfsbu Java virus
C:\Users\Ivan\Desktop\2017.5.19\027.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.hlwrn Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\028.vir
  [DETECTION] Is the TR/AD.MalwareCrypter.hwuxf Trojan
C:\Users\Ivan\Desktop\2017.5.19\031.vir
  [DETECTION] Contains a recognition pattern of the (harmful) BDS/DarkKomet.GS back-door program
C:\Users\Ivan\Desktop\2017.5.19\032.vir
    [0] Archive type: Portable Executable Resource
    --> CABINET
        [1] Archive type: CAB (Microsoft)
      --> z.cmd
          [DETECTION] Is the TR/AD.CeeInject.eqtqu Trojan
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\033.vir
  [DETECTION] Is the TR/Small.muasi Trojan
C:\Users\Ivan\Desktop\2017.5.19\034.vir
  [DETECTION] Is the TR/ATRAPS.xqfgu Trojan
C:\Users\Ivan\Desktop\2017.5.19\036.vir
  [DETECTION] Is the TR/Pakes.vfmhe Trojan
C:\Users\Ivan\Desktop\2017.5.19\040.vir
  [DETECTION] Is the TR/Crypt.Xpack.kmzhd Trojan
C:\Users\Ivan\Desktop\2017.5.19\041.vir
  [DETECTION] Is the TR/Dropper.VB.edctk Trojan
C:\Users\Ivan\Desktop\2017.5.19\042.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\043.vir
  [DETECTION] Is the TR/Dropper.VB.jtvzj Trojan
C:\Users\Ivan\Desktop\2017.5.19\044.vir
  [DETECTION] Is the TR/Crypt.Xpack.amoye Trojan
C:\Users\Ivan\Desktop\2017.5.19\046.vir
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\048.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.cduce Java script virus
C:\Users\Ivan\Desktop\2017.5.19\049.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2820914 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\050.vir
  [DETECTION] Is the TR/Dropper.MSIL.yyeoj Trojan
C:\Users\Ivan\Desktop\2017.5.19\052.vir
  [DETECTION] Is the TR/Dropper.VB.pdgks Trojan
C:\Users\Ivan\Desktop\2017.5.19\054.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\055.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.hljpk Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\059.vir
  [DETECTION] Contains recognition pattern of the JAVA/Dldr.Banload.anoxm Java virus
C:\Users\Ivan\Desktop\2017.5.19\060.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\061.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\062.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\064.vir
  [DETECTION] Is the TR/Crypt.Xpack.dqzdg Trojan
C:\Users\Ivan\Desktop\2017.5.19\065.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.ledfd Java script virus
C:\Users\Ivan\Desktop\2017.5.19\069.vir
    [0] Archive type: ZIP
    --> word/embeddings/oleObject1.bin
        [1] Archive type: OLE
      --> Object
          [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.wgn Java script virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\070.vir
  [DETECTION] Contains recognition pattern of the W32/Nimnul.D Windows virus
C:\Users\Ivan\Desktop\2017.5.19\072.vir
  [DETECTION] Is the TR/FileCoder.dzpsz Trojan
C:\Users\Ivan\Desktop\2017.5.19\074.vir
  [DETECTION] Is the TR/FileCoder.hswfp Trojan
C:\Users\Ivan\Desktop\2017.5.19\075.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\077.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\078.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.nvgdy Java script virus
C:\Users\Ivan\Desktop\2017.5.19\079.vir
  [DETECTION] Is the TR/Crypt.ZPACK.lvyob Trojan
C:\Users\Ivan\Desktop\2017.5.19\080.vir
  [DETECTION] Is the TR/Injector.kabqy Trojan
C:\Users\Ivan\Desktop\2017.5.19\083.vir
  [DETECTION] Is the TR/Dropper.VB.kjgkl Trojan
C:\Users\Ivan\Desktop\2017.5.19\084.vir
  [DETECTION] Is the TR/Dropper.VB.hefin Trojan
C:\Users\Ivan\Desktop\2017.5.19\086.vir
  [DETECTION] Is the TR/Dropper.VB.bowtv Trojan
C:\Users\Ivan\Desktop\2017.5.19\087.vir
  [DETECTION] Is the TR/AD.UrsnifDropper.cdhem Trojan
C:\Users\Ivan\Desktop\2017.5.19\091.vir
  [DETECTION] Is the TR/Drop.Agent.irpim Trojan
C:\Users\Ivan\Desktop\2017.5.19\092.vir
  [DETECTION] Is the TR/Genasom.nelvt Trojan
C:\Users\Ivan\Desktop\2017.5.19\093.vir
  [DETECTION] Is the TR/FileCoder.krkbg Trojan
C:\Users\Ivan\Desktop\2017.5.19\094.vir
  [DETECTION] Is the TR/AD.PandaBanker.caajv Trojan
C:\Users\Ivan\Desktop\2017.5.19\095.vir
  [DETECTION] Is the TR/Dropper.MSIL.kjvxl Trojan
C:\Users\Ivan\Desktop\2017.5.19\096.vir
  [DETECTION] Is the TR/Rozena.woltr Trojan
C:\Users\Ivan\Desktop\2017.5.19\097.vir
  [DETECTION] Contains code of the W97M/Agent.2773915 Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\098.vir
  [DETECTION] Is the TR/Dropper.VB.dtetj Trojan
C:\Users\Ivan\Desktop\2017.5.19\099.vir
    [0] Archive type: ZIP
    --> word/embeddings/oleObject1.bin
        [DETECTION] Contains recognition pattern of the JS/Dldr.Nemucod.cju Java script virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\101.vir
  [DETECTION] Is the TR/Crypt.ZPACK.yiinl Trojan
C:\Users\Ivan\Desktop\2017.5.19\104.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.yecpf Java script virus
Successful Cloud SDK initialization and license check.
The file 'C:\Users\Ivan\Desktop\2017.5.19\105.vir' was scanned with the Protection Cloud. SHA256 = 2CE5572666744934BECEE2CD1102E32B553FB8328D2C0142223F3DB3067AFE1B
C:\Users\Ivan\Desktop\2017.5.19\106.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\107.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2820914 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\108.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\109.vir
  [DETECTION] Is the TR/Crypt.Xpack.eoadb Trojan
C:\Users\Ivan\Desktop\2017.5.19\110.vir
  [DETECTION] Is the TR/Dropper.VB.pdgks Trojan
C:\Users\Ivan\Desktop\2017.5.19\111.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.kkgpa Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\113.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.bowtp Java script virus
C:\Users\Ivan\Desktop\2017.5.19\114.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\119.vir
  [DETECTION] Is the TR/Dropper.VB.zfxjy Trojan
The file 'C:\Users\Ivan\Desktop\2017.5.19\120.vir' was scanned with the Protection Cloud. SHA256 = 91046F39340DC6D81549FD08F0B7D145C715E8ED3D19AB94D8A56B034BAD2E62
Begin scan in 'C:\Users\Ivan\Desktop\2017.5.19\'
C:\Users\Ivan\Desktop\2017.5.19\002.vir
  [DETECTION] Is the TR/Crypt.ZPACK.asmxp Trojan
C:\Users\Ivan\Desktop\2017.5.19\003.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\005.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.bzfqb Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\006.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\009.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\010.vir
  [DETECTION] Is the TR/Dropper.MSIL.ydcli Trojan
C:\Users\Ivan\Desktop\2017.5.19\011.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.xupbk Java script virus
C:\Users\Ivan\Desktop\2017.5.19\012.vir
  [DETECTION] Is the TR/Dropper.VB.phziz Trojan
C:\Users\Ivan\Desktop\2017.5.19\015.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.fbqvk Java script virus
C:\Users\Ivan\Desktop\2017.5.19\017.vir
  [DETECTION] Is the TR/Crypt.Xpack.tixpa Trojan
C:\Users\Ivan\Desktop\2017.5.19\020.vir
  [DETECTION] Is the TR/Dropper.MSIL.hgwkh Trojan
C:\Users\Ivan\Desktop\2017.5.19\023.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\024.vir
  [DETECTION] Contains recognition pattern of the JAVA/Kryptik.bfsbu Java virus
C:\Users\Ivan\Desktop\2017.5.19\027.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.hlwrn Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\028.vir
  [DETECTION] Is the TR/AD.MalwareCrypter.hwuxf Trojan
C:\Users\Ivan\Desktop\2017.5.19\031.vir
  [DETECTION] Contains a recognition pattern of the (harmful) BDS/DarkKomet.GS back-door program
C:\Users\Ivan\Desktop\2017.5.19\032.vir
    [0] Archive type: Portable Executable Resource
    --> CABINET
        [1] Archive type: CAB (Microsoft)
      --> z.cmd
          [DETECTION] Is the TR/AD.CeeInject.eqtqu Trojan
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\033.vir
  [DETECTION] Is the TR/Small.muasi Trojan
C:\Users\Ivan\Desktop\2017.5.19\034.vir
  [DETECTION] Is the TR/ATRAPS.xqfgu Trojan
C:\Users\Ivan\Desktop\2017.5.19\036.vir
  [DETECTION] Is the TR/Pakes.vfmhe Trojan
C:\Users\Ivan\Desktop\2017.5.19\040.vir
  [DETECTION] Is the TR/Crypt.Xpack.kmzhd Trojan
C:\Users\Ivan\Desktop\2017.5.19\041.vir
  [DETECTION] Is the TR/Dropper.VB.edctk Trojan
C:\Users\Ivan\Desktop\2017.5.19\042.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\043.vir
  [DETECTION] Is the TR/Dropper.VB.jtvzj Trojan
C:\Users\Ivan\Desktop\2017.5.19\044.vir
  [DETECTION] Is the TR/Crypt.Xpack.amoye Trojan
The file 'C:\Users\Ivan\Desktop\2017.5.19\045.vir' was scanned with the Protection Cloud. SHA256 = 469AA590C407471103502B6A166E472156C9ACE1BD5AC3BC1A279E3066642DFF
C:\Users\Ivan\Desktop\2017.5.19\045.vir (SHA-256: 469aa590c407471103502b6a166e472156c9ace1bd5ac3bc1a279e3066642dff)
  [DETECTION] Contains suspicious code HEUR/APC (Cloud)
C:\Users\Ivan\Desktop\2017.5.19\046.vir
  [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\048.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.cduce Java script virus
C:\Users\Ivan\Desktop\2017.5.19\049.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2820914 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\050.vir
  [DETECTION] Is the TR/Dropper.MSIL.yyeoj Trojan
The file 'C:\Users\Ivan\Desktop\2017.5.19\051.vir' was scanned with the Protection Cloud. SHA256 = 8DB73783A361BBA484B19E7F1ADD4C402C9981CC9E9375466BB5C05A8A8D999D
C:\Users\Ivan\Desktop\2017.5.19\052.vir
  [DETECTION] Is the TR/Dropper.VB.pdgks Trojan
C:\Users\Ivan\Desktop\2017.5.19\054.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\055.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.hljpk Word macro virus
The file 'C:\Users\Ivan\Desktop\2017.5.19\057.vir' was scanned with the Protection Cloud. SHA256 = D4A899E2CE21A8548E1C6FC6C8B69C450EE592F19664EA59ADC653BAB963037F
C:\Users\Ivan\Desktop\2017.5.19\059.vir
  [DETECTION] Contains recognition pattern of the JAVA/Dldr.Banload.anoxm Java virus
C:\Users\Ivan\Desktop\2017.5.19\060.vir
  [DETECTION] Is the TR/ATRAPS.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\061.vir
    [0] Archive type: ZIP
    --> word/vbaProject.bin
        [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\062.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\064.vir
  [DETECTION] Is the TR/Crypt.Xpack.dqzdg Trojan
C:\Users\Ivan\Desktop\2017.5.19\065.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.ledfd Java script virus
C:\Users\Ivan\Desktop\2017.5.19\069.vir
    [0] Archive type: ZIP
    --> word/embeddings/oleObject1.bin
        [1] Archive type: OLE
      --> Object
          [DETECTION] Contains recognition pattern of the JS/Dldr.Locky.wgn Java script virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\070.vir
  [DETECTION] Contains recognition pattern of the W32/Nimnul.D Windows virus
C:\Users\Ivan\Desktop\2017.5.19\072.vir
  [DETECTION] Is the TR/FileCoder.dzpsz Trojan
C:\Users\Ivan\Desktop\2017.5.19\074.vir
  [DETECTION] Is the TR/FileCoder.hswfp Trojan
C:\Users\Ivan\Desktop\2017.5.19\075.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\077.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\078.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.nvgdy Java script virus
C:\Users\Ivan\Desktop\2017.5.19\079.vir
  [DETECTION] Is the TR/Crypt.ZPACK.lvyob Trojan
C:\Users\Ivan\Desktop\2017.5.19\080.vir
  [DETECTION] Is the TR/Injector.kabqy Trojan
C:\Users\Ivan\Desktop\2017.5.19\083.vir
  [DETECTION] Is the TR/Dropper.VB.kjgkl Trojan
C:\Users\Ivan\Desktop\2017.5.19\084.vir
  [DETECTION] Is the TR/Dropper.VB.hefin Trojan
C:\Users\Ivan\Desktop\2017.5.19\086.vir
  [DETECTION] Is the TR/Dropper.VB.bowtv Trojan
C:\Users\Ivan\Desktop\2017.5.19\087.vir
  [DETECTION] Is the TR/AD.UrsnifDropper.cdhem Trojan
C:\Users\Ivan\Desktop\2017.5.19\091.vir
  [DETECTION] Is the TR/Drop.Agent.irpim Trojan
C:\Users\Ivan\Desktop\2017.5.19\092.vir
  [DETECTION] Is the TR/Genasom.nelvt Trojan
C:\Users\Ivan\Desktop\2017.5.19\093.vir
  [DETECTION] Is the TR/FileCoder.krkbg Trojan
C:\Users\Ivan\Desktop\2017.5.19\094.vir
  [DETECTION] Is the TR/AD.PandaBanker.caajv Trojan
C:\Users\Ivan\Desktop\2017.5.19\095.vir
  [DETECTION] Is the TR/Dropper.MSIL.kjvxl Trojan
C:\Users\Ivan\Desktop\2017.5.19\096.vir
  [DETECTION] Is the TR/Rozena.woltr Trojan
C:\Users\Ivan\Desktop\2017.5.19\097.vir
  [DETECTION] Contains code of the W97M/Agent.2773915 Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\098.vir
  [DETECTION] Is the TR/Dropper.VB.dtetj Trojan
C:\Users\Ivan\Desktop\2017.5.19\099.vir
    [0] Archive type: ZIP
    --> word/embeddings/oleObject1.bin
        [DETECTION] Contains recognition pattern of the JS/Dldr.Nemucod.cju Java script virus
        [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\101.vir
  [DETECTION] Is the TR/Crypt.ZPACK.yiinl Trojan
C:\Users\Ivan\Desktop\2017.5.19\104.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.yecpf Java script virus
The file 'C:\Users\Ivan\Desktop\2017.5.19\105.vir' was found in the cache; the Protection Cloud scan was skipped. SHA256 = 2CE5572666744934BECEE2CD1102E32B553FB8328D2C0142223F3DB3067AFE1B
C:\Users\Ivan\Desktop\2017.5.19\106.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\107.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2820914 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\108.vir
    [0] Archive type: PDF
    --> pdf_file_3.avp
        [1] Archive type: ZIP
      --> word/vbaProject.bin
          [DETECTION] Contains code of the W2000M/Agent.2773916 macro virus
          [WARNING]   Infected files in archives cannot be repaired
C:\Users\Ivan\Desktop\2017.5.19\109.vir
  [DETECTION] Is the TR/Crypt.Xpack.eoadb Trojan
C:\Users\Ivan\Desktop\2017.5.19\110.vir
  [DETECTION] Is the TR/Dropper.VB.pdgks Trojan
C:\Users\Ivan\Desktop\2017.5.19\111.vir
  [DETECTION] Contains code of the W97M/Dldr.Agent.kkgpa Word macro virus
C:\Users\Ivan\Desktop\2017.5.19\113.vir
  [DETECTION] Contains recognition pattern of the JS/Dldr.Agent.bowtp Java script virus
C:\Users\Ivan\Desktop\2017.5.19\114.vir
  [DETECTION] Is the TR/Dropper.Gen Trojan
C:\Users\Ivan\Desktop\2017.5.19\119.vir
  [DETECTION] Is the TR/Dropper.VB.zfxjy Trojan
The file 'C:\Users\Ivan\Desktop\2017.5.19\120.vir' was found in the cache; the Protection Cloud scan was skipped. SHA256 = 91046F39340DC6D81549FD08F0B7D145C715E8ED3D19AB94D8A56B034BAD2E62[/mw_shl_code]
jose
发表于 2017-5-20 17:54:16 | 显示全部楼层
jianguil 发表于 2017-5-20 14:38
ESET比卡巴还牛啊。》?

那肯定是不可能的,个人觉得卡巴和ESET不是一个量级的。精睿的样本,对ESET友好很正常。
liyang1755
发表于 2017-5-21 14:18:58 | 显示全部楼层
360杀81修复4未检出35
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 12:50 , Processed in 0.102023 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表