楼主: www-tekeze
收起左侧

[病毒样本] 样本集奉上_10

[复制链接]
zdlzp
发表于 2018-7-4 16:52:38 | 显示全部楼层
www-tekeze 发表于 2018-7-4 16:48
这是什么杀软,和火绒一样都不报?

火绒,正在双击中
cloud01
头像被屏蔽
发表于 2018-7-4 16:53:03 | 显示全部楼层
eset  7月3日 20点库  42/50   84%
zhoutaoyu
发表于 2018-7-4 16:57:52 | 显示全部楼层
楼主出差回来啦,棒棒哒。

20180704 16:56
BD右键扫描:37/50   74%
xcvbaby
发表于 2018-7-4 17:00:42 | 显示全部楼层
毒霸   10/50

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
帝辛
发表于 2018-7-4 17:03:42 | 显示全部楼层
强。。。里面居然有一个腾讯CF在线下载器。检查过。有腾讯的数字签名。应该不会假。哪来的样本源。这么牛?
dreams521
发表于 2018-7-4 17:06:45 | 显示全部楼层
帝辛 发表于 2018-7-4 17:03
强。。。里面居然有一个腾讯CF在线下载器。检查过。有腾讯的数字签名。应该不会假。哪来的样本源。这么牛?

呢个咖啡猫和拼图也很有意思
帝辛
发表于 2018-7-4 17:09:35 | 显示全部楼层
本帖最后由 帝辛 于 2018-7-4 17:11 编辑

BD 剩余14个。其中:扫描杀50-17=33个  
ATD击杀3个。
14个中。一个腾讯在线安装包。应该是白文件。检查过。有腾讯的数字签名、
有一个是流氓。黄色骗钱的捆绑安装器。
剩余多半打不开    10项打不开或者是运行自退出或者是报错或者是检测虚拟机。总之用不了。
真正只有3个完全miss BD完全没检测出来。下次推荐使用1234命名。我就可以详细贴出来了。
其中有几个是可能威胁电脑。大概三四个吧。要手动选择操作。
Severn'
发表于 2018-7-4 17:09:55 | 显示全部楼层
红伞
33/50=66%

扫描开始时间: 2018-07-04 11:05:54
07/04/2018,11-05-54        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\00aaae4dbf8166b37b4204ec5ea545f8.vir' 的“无误报”状态
07/04/2018,11-05-54        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\00aaae4dbf8166b37b4204ec5ea545f8.vir
07/04/2018,11-05-54        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.fjjki'
07/04/2018,11-05-54        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01a07a90a66348fa97013b6b2ff1e53a.vir' 的“无误报”状态
07/04/2018,11-05-54        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01a07a90a66348fa97013b6b2ff1e53a.vir
07/04/2018,11-05-54        [INFO]        [DETECTION] file contains 'Worm/Generic.24869'
07/04/2018,11-05-54        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01dfcf14819176c2a0473d7208ad51c1.vir' 的“无误报”状态
07/04/2018,11-05-54        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01dfcf14819176c2a0473d7208ad51c1.vir
07/04/2018,11-05-54        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.bfssv'
07/04/2018,11-05-54        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0afbd6be4df29551e35ceab27dcf65cf.vir' 的“无误报”状态
07/04/2018,11-05-54        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0afbd6be4df29551e35ceab27dcf65cf.vir
07/04/2018,11-05-54        [INFO]        [DETECTION] file contains 'TR/AD.TrickBot.ospwc'
07/04/2018,11-05-55        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c4656a58d72104a584aca0bdd07b9a0.vir' 的“无误报”状态
07/04/2018,11-05-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c4656a58d72104a584aca0bdd07b9a0.vir
07/04/2018,11-05-55        [INFO]        [DETECTION] file contains 'HEUR/AGEN.1029958'
07/04/2018,11-05-55        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c9fd70a78ee92180e21875581106295.vir' 的“无误报”状态
07/04/2018,11-05-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c9fd70a78ee92180e21875581106295.vir
07/04/2018,11-05-55        [INFO]        [DETECTION] file contains 'HEUR/AGEN.1022336'
07/04/2018,11-05-55        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0f41b002adf7b2030157da819267bce0.vir' 的“无误报”状态
07/04/2018,11-05-55        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0f41b002adf7b2030157da819267bce0.vir
07/04/2018,11-05-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0f41b002adf7b2030157da819267bce0.vir
07/04/2018,11-05-55        [INFO]        [DETECTION] file contains 'TR/Downloader.49a088'
07/04/2018,11-05-55        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1aade3b4bec69d9a923cb1e9831405c0.vir' 的“无误报”状态
07/04/2018,11-05-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1aade3b4bec69d9a923cb1e9831405c0.vir
07/04/2018,11-05-55        [INFO]        [DETECTION] file contains 'TR/Crypt.Xpack.qcxqa'
07/04/2018,11-05-55        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1b4d3c4125c3aa620a470b65d7a664c6.vir' 的“无误报”状态
07/04/2018,11-05-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1b4d3c4125c3aa620a470b65d7a664c6.vir
07/04/2018,11-05-55        [INFO]        [DETECTION] file contains 'TR/Crypt.Agent.vyosn'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1bfa401c-aef1-11e6-aa2d-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1bfa401c-aef1-11e6-aa2d-80e65024849a.vir
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1bfa401c-aef1-11e6-aa2d-80e65024849a.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'PUA/Agent.Bundle.55322'
07/04/2018,11-05-56        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1c078e8c-310e-11e8-9167-80e65024849a.vir
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1c16636469c63cdeb9c48e6c7fbb3258.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1c16636469c63cdeb9c48e6c7fbb3258.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'TR/SPY.KeyLogger.whlgd'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1ce0846fe8a09f289fe5c0d26c0e79f2.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1ce0846fe8a09f289fe5c0d26c0e79f2.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'Worm/Gamarue.hctaa'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d58d6ec609428e74f912929ff88cc8e.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d58d6ec609428e74f912929ff88cc8e.vir
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d58d6ec609428e74f912929ff88cc8e.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'HEUR/APC'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d642a531e5c032720bfc3d5f202e4df.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d642a531e5c032720bfc3d5f202e4df.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'TR/Spy.Gen'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1db0fa3456b2265a5f188e0099244c95.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1db0fa3456b2265a5f188e0099244c95.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'BDS/Backdoor.Gen'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1dd3ae8ba9b73a36bc5db256a45938ca.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1dd3ae8ba9b73a36bc5db256a45938ca.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'TR/Spy.Gen'
07/04/2018,11-05-56        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1f56477213a560eb28b6d1b7cfdae996.vir' 的“无误报”状态
07/04/2018,11-05-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1f56477213a560eb28b6d1b7cfdae996.vir
07/04/2018,11-05-56        [INFO]        [DETECTION] file contains 'TR/Agent.205312.D'
07/04/2018,11-05-57        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1f5b2580-564d-11e7-ad7a-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2a208c66-ae92-11e6-b8cf-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2ab08a94-310e-11e8-93a3-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2ab08a94-310e-11e8-93a3-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.cvrel'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2adda71a8af70140665fd91f1cecfc5f.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2adda71a8af70140665fd91f1cecfc5f.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'Adware/Coupons.xxfcr'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2b97155e-310e-11e8-88ee-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2b97155e-310e-11e8-88ee-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.fiwad'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c1ef76405d4c62f32b75cd29df2c0f8.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c1ef76405d4c62f32b75cd29df2c0f8.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'PUA/ICLoader.Gen7'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c82fadc-310e-11e8-ad18-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c82fadc-310e-11e8-ad18-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.geeqz'
07/04/2018,11-05-57        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d4ff10a-564d-11e7-8d4b-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d57ecf2cdb2334135c094ead729c614.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d57ecf2cdb2334135c094ead729c614.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Obfuscate.XX.420'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d7197d1-310e-11e8-94aa-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d7197d1-310e-11e8-94aa-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Dropper.MSIL.nkklo'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2e3d29440fa07500cafb61086ca4954c.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2e3d29440fa07500cafb61086ca4954c.vir
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2fdaf9edcc2f875468c39ac4531028a3.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2fdaf9edcc2f875468c39ac4531028a3.vir
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2fdaf9edcc2f875468c39ac4531028a3.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'PUA/Redcap'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b6be19e-ae92-11e6-8e46-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b6be19e-ae92-11e6-8e46-80e65024849a.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Maltule.wyqlk'
07/04/2018,11-05-57        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b8f63fb8b01751cb762f1d6b5b091be.vir' 的“无误报”状态
07/04/2018,11-05-57        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b8f63fb8b01751cb762f1d6b5b091be.vir
07/04/2018,11-05-57        [INFO]        [DETECTION] file contains 'TR/Kryptik.uwadh'
07/04/2018,11-05-58        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3c69cd68abbf06603de76e05e2fe2d6f.vir' 的“无误报”状态
07/04/2018,11-05-58        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3c69cd68abbf06603de76e05e2fe2d6f.vir
07/04/2018,11-05-58        [INFO]        [DETECTION] file contains 'TR/Crypt.Agent.zlvsw'
07/04/2018,11-05-58        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3d17b3903787ec236f4fa2258f4052cc.vir' 的“无误报”状态
07/04/2018,11-05-58        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3d17b3903787ec236f4fa2258f4052cc.vir
07/04/2018,11-05-58        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3df46b97-4ffa-11e7-abba-80e65024849a.vir' 的“无误报”状态
07/04/2018,11-05-58        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3df46b97-4ffa-11e7-abba-80e65024849a.vir
07/04/2018,11-05-58        [INFO]        [DETECTION] file contains 'ADWARE/Adware.Gen7'
07/04/2018,11-05-58        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3ec67acd30d4143d299302c6fa2e30b0.vir' 的“无误报”状态
07/04/2018,11-05-58        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3ec67acd30d4143d299302c6fa2e30b0.vir
07/04/2018,11-05-58        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3ec67acd30d4143d299302c6fa2e30b0.vir
07/04/2018,11-05-58        [INFO]        [DETECTION] file contains 'TR/Dldr.Delphi.941d95'
07/04/2018,11-05-58        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3fdf97f1a7e8d0664d1236d9c5b20e93.vir' 的“无误报”状态
07/04/2018,11-05-58        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3fdf97f1a7e8d0664d1236d9c5b20e93.vir
07/04/2018,11-06-03        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3fece669cf39153d28e366d19993c4d2.vir' 的“无误报”状态
07/04/2018,11-06-03        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3fece669cf39153d28e366d19993c4d2.vir
07/04/2018,11-06-03        [INFO]        [DETECTION] file contains 'TR/Keylogger.glbzc'
07/04/2018,11-06-03        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4bef8206990765ed4a289a5830f2a55c.vir' 的“无误报”状态
07/04/2018,11-06-03        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4bef8206990765ed4a289a5830f2a55c.vir
07/04/2018,11-06-03        [INFO]        [DETECTION] file contains 'TR/Drop.DanaBot.fckjk'
07/04/2018,11-06-03        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4ccf0e46730a357a34a3080ea581aaff.vir' 的“无误报”状态
07/04/2018,11-06-03        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4ccf0e46730a357a34a3080ea581aaff.vir
07/04/2018,11-06-03        [INFO]        [DETECTION] file contains 'TR/CoinMiner.egvlj'
07/04/2018,11-06-03        [INFO]        FP 报告文件 'c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4f8236028e9317c5f89f944d5b43c710.vir' 的“无误报”状态
07/04/2018,11-06-03        [INFO]        文件已通过 Protection Cloud扫描。 SHA256 = c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4f8236028e9317c5f89f944d5b43c710.vir
07/04/2018,11-06-14        [INFO]        repair.rdf loaded (version: 1.0.42.70)
07/04/2018,11-06-14        [INFO]        Repair of Generic started.
07/04/2018,11-06-15        [INFO]        Repair of Generic finished successfully.
07/04/2018,11-06-15        [INFO]        Repair of TR/Dropper.MSIL.fjjki started.
07/04/2018,11-06-20        [ERROR]        bad conversion
07/04/2018,11-06-21        [INFO]        Repair of TR/Dropper.MSIL.fjjki finished successfully.
07/04/2018,11-06-22        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\00aaae4dbf8166b37b4204ec5ea545f8.vir
07/04/2018,11-06-22        [INFO]        [ACTION] Clean
07/04/2018,11-06-22        [INFO]        Repair of Worm/Generic.24869 started.
07/04/2018,11-06-27        [ERROR]        bad conversion
07/04/2018,11-06-27        [INFO]        Repair of Worm/Generic.24869 finished successfully.
07/04/2018,11-06-27        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01a07a90a66348fa97013b6b2ff1e53a.vir
07/04/2018,11-06-27        [INFO]        [ACTION] Clean
07/04/2018,11-06-27        [INFO]        Repair of TR/Dropper.MSIL.bfssv started.
07/04/2018,11-06-31        [ERROR]        bad conversion
07/04/2018,11-06-32        [INFO]        Repair of TR/Dropper.MSIL.bfssv finished successfully.
07/04/2018,11-06-32        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\01dfcf14819176c2a0473d7208ad51c1.vir
07/04/2018,11-06-32        [INFO]        [ACTION] Clean
07/04/2018,11-06-32        [INFO]        Repair of TR/AD.TrickBot.ospwc started.
07/04/2018,11-06-36        [ERROR]        bad conversion
07/04/2018,11-06-37        [INFO]        Repair of TR/AD.TrickBot.ospwc finished successfully.
07/04/2018,11-06-37        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0afbd6be4df29551e35ceab27dcf65cf.vir
07/04/2018,11-06-37        [INFO]        [ACTION] Clean
07/04/2018,11-06-37        [INFO]        Repair of HEUR/AGEN.1029958 started.
07/04/2018,11-06-41        [ERROR]        bad conversion
07/04/2018,11-06-41        [INFO]        Repair of HEUR/AGEN.1029958 finished successfully.
07/04/2018,11-06-41        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c4656a58d72104a584aca0bdd07b9a0.vir
07/04/2018,11-06-41        [INFO]        [ACTION] Clean
07/04/2018,11-06-41        [INFO]        Repair of HEUR/AGEN.1022336 started.
07/04/2018,11-06-45        [ERROR]        bad conversion
07/04/2018,11-06-46        [INFO]        Repair of HEUR/AGEN.1022336 finished successfully.
07/04/2018,11-06-46        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0c9fd70a78ee92180e21875581106295.vir
07/04/2018,11-06-46        [INFO]        [ACTION] Clean
07/04/2018,11-06-46        [INFO]        Repair of TR/Downloader.49a088 started.
07/04/2018,11-06-50        [ERROR]        bad conversion
07/04/2018,11-06-50        [INFO]        Repair of TR/Downloader.49a088 finished successfully.
07/04/2018,11-06-50        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\0f41b002adf7b2030157da819267bce0.vir
07/04/2018,11-06-50        [INFO]        [ACTION] Clean
07/04/2018,11-06-50        [INFO]        Repair of TR/Crypt.Xpack.qcxqa started.
07/04/2018,11-06-54        [ERROR]        bad conversion
07/04/2018,11-06-55        [INFO]        Repair of TR/Crypt.Xpack.qcxqa finished successfully.
07/04/2018,11-06-55        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1aade3b4bec69d9a923cb1e9831405c0.vir
07/04/2018,11-06-55        [INFO]        [ACTION] Clean
07/04/2018,11-06-55        [INFO]        Repair of TR/Crypt.Agent.vyosn started.
07/04/2018,11-06-59        [ERROR]        bad conversion
07/04/2018,11-06-59        [INFO]        Repair of TR/Crypt.Agent.vyosn finished successfully.
07/04/2018,11-06-59        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1b4d3c4125c3aa620a470b65d7a664c6.vir
07/04/2018,11-06-59        [INFO]        [ACTION] Clean
07/04/2018,11-06-59        [INFO]        Repair of PUA/Agent.Bundle.55322 started.
07/04/2018,11-07-03        [ERROR]        bad conversion
07/04/2018,11-07-12        [INFO]        Repair of PUA/Agent.Bundle.55322 finished successfully.
07/04/2018,11-07-12        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1bfa401c-aef1-11e6-aa2d-80e65024849a.vir
07/04/2018,11-07-12        [INFO]        [ACTION] Clean
07/04/2018,11-07-12        [INFO]        Repair of TR/SPY.KeyLogger.whlgd started.
07/04/2018,11-07-16        [ERROR]        bad conversion
07/04/2018,11-07-16        [INFO]        Repair of TR/SPY.KeyLogger.whlgd finished successfully.
07/04/2018,11-07-16        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1c16636469c63cdeb9c48e6c7fbb3258.vir
07/04/2018,11-07-16        [INFO]        [ACTION] Clean
07/04/2018,11-07-16        [INFO]        Repair of Worm/Gamarue.hctaa started.
07/04/2018,11-07-20        [ERROR]        bad conversion
07/04/2018,11-07-20        [INFO]        Repair of Worm/Gamarue.hctaa finished successfully.
07/04/2018,11-07-21        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1ce0846fe8a09f289fe5c0d26c0e79f2.vir
07/04/2018,11-07-21        [INFO]        [ACTION] Clean
07/04/2018,11-07-21        [INFO]        Repair of HEUR/APC started.
07/04/2018,11-07-25        [ERROR]        bad conversion
07/04/2018,11-07-25        [INFO]        Repair of HEUR/APC finished successfully.
07/04/2018,11-07-25        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d58d6ec609428e74f912929ff88cc8e.vir
07/04/2018,11-07-25        [INFO]        [ACTION] Clean
07/04/2018,11-07-25        [INFO]        Repair of TR/Spy.Gen started.
07/04/2018,11-07-29        [ERROR]        bad conversion
07/04/2018,11-07-30        [INFO]        Repair of TR/Spy.Gen finished successfully.
07/04/2018,11-07-30        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1d642a531e5c032720bfc3d5f202e4df.vir
07/04/2018,11-07-30        [INFO]        [ACTION] Clean
07/04/2018,11-07-30        [INFO]        Repair of BDS/Backdoor.Gen started.
07/04/2018,11-07-33        [ERROR]        bad conversion
07/04/2018,11-07-34        [INFO]        Repair of BDS/Backdoor.Gen finished successfully.
07/04/2018,11-07-34        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1db0fa3456b2265a5f188e0099244c95.vir
07/04/2018,11-07-34        [INFO]        [ACTION] Clean
07/04/2018,11-07-34        [INFO]        Repair of TR/Spy.Gen started.
07/04/2018,11-07-38        [ERROR]        bad conversion
07/04/2018,11-07-38        [INFO]        Repair of TR/Spy.Gen finished successfully.
07/04/2018,11-07-38        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1dd3ae8ba9b73a36bc5db256a45938ca.vir
07/04/2018,11-07-38        [INFO]        [ACTION] Clean
07/04/2018,11-07-38        [INFO]        Repair of TR/Agent.205312.D started.
07/04/2018,11-07-43        [ERROR]        bad conversion
07/04/2018,11-07-43        [INFO]        Repair of TR/Agent.205312.D finished successfully.
07/04/2018,11-07-43        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\1f56477213a560eb28b6d1b7cfdae996.vir
07/04/2018,11-07-43        [INFO]        [ACTION] Clean
07/04/2018,11-07-43        [INFO]        Repair of TR/Dropper.MSIL.cvrel started.
07/04/2018,11-07-47        [ERROR]        bad conversion
07/04/2018,11-07-47        [INFO]        Repair of TR/Dropper.MSIL.cvrel finished successfully.
07/04/2018,11-07-48        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2ab08a94-310e-11e8-93a3-80e65024849a.vir
07/04/2018,11-07-48        [INFO]        [ACTION] Clean
07/04/2018,11-07-48        [INFO]        Repair of Adware/Coupons.xxfcr started.
07/04/2018,11-07-51        [ERROR]        bad conversion
07/04/2018,11-07-52        [INFO]        Repair of Adware/Coupons.xxfcr finished successfully.
07/04/2018,11-07-52        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2adda71a8af70140665fd91f1cecfc5f.vir
07/04/2018,11-07-52        [INFO]        [ACTION] Clean
07/04/2018,11-07-52        [INFO]        Repair of TR/Dropper.MSIL.fiwad started.
07/04/2018,11-07-56        [ERROR]        bad conversion
07/04/2018,11-07-56        [INFO]        Repair of TR/Dropper.MSIL.fiwad finished successfully.
07/04/2018,11-07-56        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2b97155e-310e-11e8-88ee-80e65024849a.vir
07/04/2018,11-07-56        [INFO]        [ACTION] Clean
07/04/2018,11-07-56        [INFO]        Repair of PUA/ICLoader.Gen7 started.
07/04/2018,11-08-00        [ERROR]        bad conversion
07/04/2018,11-08-00        [INFO]        Repair of PUA/ICLoader.Gen7 finished successfully.
07/04/2018,11-08-00        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c1ef76405d4c62f32b75cd29df2c0f8.vir
07/04/2018,11-08-00        [INFO]        [ACTION] Clean
07/04/2018,11-08-00        [INFO]        Repair of TR/Dropper.MSIL.geeqz started.
07/04/2018,11-08-04        [ERROR]        bad conversion
07/04/2018,11-08-04        [INFO]        Repair of TR/Dropper.MSIL.geeqz finished successfully.
07/04/2018,11-08-04        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2c82fadc-310e-11e8-ad18-80e65024849a.vir
07/04/2018,11-08-04        [INFO]        [ACTION] Clean
07/04/2018,11-08-04        [INFO]        Repair of TR/Obfuscate.XX.420 started.
07/04/2018,11-08-08        [ERROR]        bad conversion
07/04/2018,11-08-09        [INFO]        Repair of TR/Obfuscate.XX.420 finished successfully.
07/04/2018,11-08-09        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d57ecf2cdb2334135c094ead729c614.vir
07/04/2018,11-08-09        [INFO]        [ACTION] Clean
07/04/2018,11-08-09        [INFO]        Repair of TR/Dropper.MSIL.nkklo started.
07/04/2018,11-08-12        [ERROR]        bad conversion
07/04/2018,11-08-13        [INFO]        Repair of TR/Dropper.MSIL.nkklo finished successfully.
07/04/2018,11-08-13        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2d7197d1-310e-11e8-94aa-80e65024849a.vir
07/04/2018,11-08-13        [INFO]        [ACTION] Clean
07/04/2018,11-08-13        [INFO]        Repair of PUA/Redcap started.
07/04/2018,11-08-16        [ERROR]        bad conversion
07/04/2018,11-08-17        [INFO]        Repair of PUA/Redcap finished successfully.
07/04/2018,11-08-17        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\2fdaf9edcc2f875468c39ac4531028a3.vir
07/04/2018,11-08-17        [INFO]        [ACTION] Clean
07/04/2018,11-08-17        [INFO]        Repair of TR/Maltule.wyqlk started.
07/04/2018,11-08-20        [ERROR]        bad conversion
07/04/2018,11-08-21        [INFO]        Repair of TR/Maltule.wyqlk finished successfully.
07/04/2018,11-08-21        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b6be19e-ae92-11e6-8e46-80e65024849a.vir
07/04/2018,11-08-21        [INFO]        [ACTION] Clean
07/04/2018,11-08-21        [INFO]        Repair of TR/Kryptik.uwadh started.
07/04/2018,11-08-25        [ERROR]        bad conversion
07/04/2018,11-08-25        [INFO]        Repair of TR/Kryptik.uwadh finished successfully.
07/04/2018,11-08-25        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3b8f63fb8b01751cb762f1d6b5b091be.vir
07/04/2018,11-08-25        [INFO]        [ACTION] Clean
07/04/2018,11-08-25        [INFO]        Repair of TR/Crypt.Agent.zlvsw started.
07/04/2018,11-08-29        [ERROR]        bad conversion
07/04/2018,11-08-29        [INFO]        Repair of TR/Crypt.Agent.zlvsw finished successfully.
07/04/2018,11-08-29        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3c69cd68abbf06603de76e05e2fe2d6f.vir
07/04/2018,11-08-29        [INFO]        [ACTION] Clean
07/04/2018,11-08-29        [INFO]        Repair of ADWARE/Adware.Gen7 started.
07/04/2018,11-08-33        [ERROR]        bad conversion
07/04/2018,11-08-33        [INFO]        Repair of ADWARE/Adware.Gen7 finished successfully.
07/04/2018,11-08-33        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3df46b97-4ffa-11e7-abba-80e65024849a.vir
07/04/2018,11-08-33        [INFO]        [ACTION] Clean
07/04/2018,11-08-33        [INFO]        Repair of TR/Dldr.Delphi.941d95 started.
07/04/2018,11-08-37        [ERROR]        bad conversion
07/04/2018,11-08-37        [INFO]        Repair of TR/Dldr.Delphi.941d95 finished successfully.
07/04/2018,11-08-38        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3ec67acd30d4143d299302c6fa2e30b0.vir
07/04/2018,11-08-38        [INFO]        [ACTION] Clean
07/04/2018,11-08-38        [INFO]        Repair of TR/Keylogger.glbzc started.
07/04/2018,11-08-41        [ERROR]        bad conversion
07/04/2018,11-08-41        [INFO]        Repair of TR/Keylogger.glbzc finished successfully.
07/04/2018,11-08-42        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\3fece669cf39153d28e366d19993c4d2.vir
07/04/2018,11-08-42        [INFO]        [ACTION] Clean
07/04/2018,11-08-42        [INFO]        Repair of TR/Drop.DanaBot.fckjk started.
07/04/2018,11-08-45        [ERROR]        bad conversion
07/04/2018,11-08-46        [INFO]        Repair of TR/Drop.DanaBot.fckjk finished successfully.
07/04/2018,11-08-46        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4bef8206990765ed4a289a5830f2a55c.vir
07/04/2018,11-08-46        [INFO]        [ACTION] Clean
07/04/2018,11-08-46        [INFO]        Repair of TR/CoinMiner.egvlj started.
07/04/2018,11-08-49        [ERROR]        bad conversion
07/04/2018,11-08-50        [INFO]        Repair of TR/CoinMiner.egvlj finished successfully.
07/04/2018,11-08-50        [INFO]        c:\users\linqinpeng\downloads\新建文件夹 (4)\新建文件夹\4ccf0e46730a357a34a3080ea581aaff.vir
07/04/2018,11-08-50        [INFO]        [ACTION] Clean

---------------------------------------------------------

End of scan : 2018-07-04 11:08:50
Duration : 02m:55s:691ms

The scan has been done completely.

      1 Scanned directories
      9 Scanned archives
     51 Scanned files
      0 Skipped files
      0 Ignored files
     33 Detected files
     33 Infected files cleaned
      0 Warnings
Severn'
发表于 2018-7-4 17:14:08 | 显示全部楼层
帝辛 发表于 2018-7-4 17:03
强。。。里面居然有一个腾讯CF在线下载器。检查过。有腾讯的数字签名。应该不会假。哪来的样本源。这么牛?

应该是白文件吧
zdlzp
发表于 2018-7-4 17:19:06 | 显示全部楼层
本帖最后由 zdlzp 于 2018-7-4 17:20 编辑

有几个添加启动项、几个不是WIN32的、几个加驱、一个拼图、一个桌面猫、一个未知病毒
病毒名称:BEHAV:Trojan/TrustExploit.A
文件路径:C:\Documents and Settings\桌面\下载\VirusSamples_10\4bef8206990765ed4a289a5830f2a55c.vir.exe
用户操作:已清除
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-1 02:42 , Processed in 0.094018 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表