Avira 25/26 96.15%
- Start of the scan: 2018-07-06 10:14:18
- 07/06/2018,10-14-31 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(1).exe'
- 07/06/2018,10-14-31 [INFO] The file 'c:\users\**\desktop\infected\0706(1).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = C7C733AE4D51947C6C51E6C6DE7BB4D4F67A85DB2B8E3B7FA5C4B112868335E0
- 07/06/2018,10-14-31 [INFO] c:\users\**\desktop\infected\0706(1).exe
- 07/06/2018,10-14-31 [INFO] [DETECTION] file contains 'HEUR/APC'
- 07/06/2018,10-14-44 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(11).exe'
- 07/06/2018,10-14-44 [INFO] The file 'c:\users\**\desktop\infected\0706(11).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = FFEAC7355FE721376A5D19B9E0A35C97D8BF5A9A9BE48D956F4946105B9287B6
- 07/06/2018,10-14-44 [INFO] c:\users\**\desktop\infected\0706(11).exe
- 07/06/2018,10-14-44 [INFO] [DETECTION] file contains 'DR/Delphi.Gen'
- 07/06/2018,10-14-56 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(12).exe'
- 07/06/2018,10-14-56 [INFO] The file 'c:\users\**\desktop\infected\0706(12).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 2B79C546219ABDBCC01480F6BBB7AACC560E7BCE3E416580AB76BC02190C0722
- 07/06/2018,10-14-56 [INFO] c:\users\**\desktop\infected\0706(12).exe
- 07/06/2018,10-14-56 [INFO] [DETECTION] file contains 'TR/Crypt.EPACK.2b79c5'
- 07/06/2018,10-15-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(13).exe'
- 07/06/2018,10-15-12 [INFO] The file 'c:\users\**\desktop\infected\0706(13).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 2D06596582F9041E44F5F6C9BB33E746F2C7C91331C313DF81B918B90097185C
- 07/06/2018,10-15-12 [INFO] c:\users\**\desktop\infected\0706(13).exe
- 07/06/2018,10-15-12 [INFO] [DETECTION] file contains 'HEUR/APC'
- 07/06/2018,10-15-24 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(14).exe'
- 07/06/2018,10-15-24 [INFO] The file 'c:\users\**\desktop\infected\0706(14).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 87A35A4A2920CB05E2E0A3D98F3EF57869F5C518FA295DFAB46408F5C51B65A6
- 07/06/2018,10-15-24 [INFO] c:\users\**\desktop\infected\0706(14).exe
- 07/06/2018,10-15-24 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.87a35a'
- 07/06/2018,10-15-24 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(15).exe'
- 07/06/2018,10-15-24 [INFO] c:\users\**\desktop\infected\0706(15).exe
- 07/06/2018,10-15-24 [INFO] [DETECTION] file contains 'TR/Dropper.Gen'
- 07/06/2018,10-15-37 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(16).exe'
- 07/06/2018,10-15-37 [INFO] The file 'c:\users\**\desktop\infected\0706(16).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 3D59D03B04F2C8CB7B29D408D5AC73CF57CA42DAFDBEBF4AAA2C5BAA62CAF05C
- 07/06/2018,10-15-37 [INFO] c:\users\**\desktop\infected\0706(16).exe
- 07/06/2018,10-15-37 [INFO] [DETECTION] file contains 'TR/Dropper.VB.Gen9'
- 07/06/2018,10-15-37 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(17).exe'
- 07/06/2018,10-15-37 [INFO] c:\users\**\desktop\infected\0706(17).exe
- 07/06/2018,10-15-37 [INFO] [DETECTION] file contains 'SPR/Tool.Mailpassview.473'
- 07/06/2018,10-15-52 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(18).exe'
- 07/06/2018,10-15-52 [INFO] The file 'c:\users\**\desktop\infected\0706(18).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = A25D285A6908046FD8454BFAB6A85ECAB7F0326554B1234FDAF2E15A2790ED39
- 07/06/2018,10-15-52 [INFO] c:\users\**\desktop\infected\0706(18).exe
- 07/06/2018,10-15-52 [INFO] [DETECTION] file contains 'TR/Kryptik.a25d28'
- 07/06/2018,10-15-52 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(19).exe'
- 07/06/2018,10-15-52 [INFO] c:\users\**\desktop\infected\0706(19).exe
- 07/06/2018,10-15-52 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.Gen'
- 07/06/2018,10-16-04 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(2).exe'
- 07/06/2018,10-16-04 [INFO] The file 'c:\users\**\desktop\infected\0706(2).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 8282D4691003338686620699353CEBD913D4139A03484B6A424B869DFB0320D6
- 07/06/2018,10-16-04 [INFO] c:\users\**\desktop\infected\0706(2).exe
- 07/06/2018,10-16-04 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.8282d4'
- 07/06/2018,10-16-17 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(20).exe'
- 07/06/2018,10-16-17 [INFO] The file 'c:\users\**\desktop\infected\0706(20).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 1DCA625A670F45765572B78E5C84CD8D6F2945D95AA5FEA4F772010D08AA1023
- 07/06/2018,10-16-17 [INFO] c:\users\**\desktop\infected\0706(20).exe
- 07/06/2018,10-16-17 [INFO] [DETECTION] file contains 'HEUR/APC'
- 07/06/2018,10-16-29 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(21).exe'
- 07/06/2018,10-16-29 [INFO] The file 'c:\users\**\desktop\infected\0706(21).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 80EC49C3F893BCBDE123B99DA2183B2F5DA3553F25EEF96F1AE6DC4C3259E9F7
- 07/06/2018,10-16-29 [INFO] c:\users\**\desktop\infected\0706(21).exe
- 07/06/2018,10-16-29 [INFO] [DETECTION] file contains 'DR/Delphi.Gen'
- 07/06/2018,10-16-42 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(22).exe'
- 07/06/2018,10-16-42 [INFO] The file 'c:\users\**\desktop\infected\0706(22).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 681535ACCA914749A1938F759390E9FD696FC8405073D0464F48B9B657FD13AD
- 07/06/2018,10-16-42 [INFO] c:\users\**\desktop\infected\0706(22).exe
- 07/06/2018,10-16-42 [INFO] [DETECTION] file contains 'TR/Dropper.VB.Gen9'
- 07/06/2018,10-16-54 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(23).exe'
- 07/06/2018,10-16-54 [INFO] The file 'c:\users\**\desktop\infected\0706(23).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = AF7FCAE9AD1F1C075699A30DA2909C8DBA81043FBEFC7AE7F2FF8FDAABE838E2
- 07/06/2018,10-16-54 [INFO] c:\users\**\desktop\infected\0706(23).exe
- 07/06/2018,10-16-54 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.af7fca'
- 07/06/2018,10-16-54 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(24).exe'
- 07/06/2018,10-16-54 [INFO] c:\users\**\desktop\infected\0706(24).exe
- 07/06/2018,10-16-54 [INFO] [DETECTION] file contains 'TR/ATRAPS.Gen'
- 07/06/2018,10-16-55 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(25).exe'
- 07/06/2018,10-16-55 [INFO] c:\users\**\desktop\infected\0706(25).exe
- 07/06/2018,10-16-55 [INFO] [DETECTION] file contains 'TR/Agent.fjjrc'
- 07/06/2018,10-17-07 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(26).exe'
- 07/06/2018,10-17-07 [INFO] The file 'c:\users\**\desktop\infected\0706(26).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 2DAD3ECDE48F0F696F104EA598CC5F33ADCBF486EAD2CF6D3C90E36FFB388335
- 07/06/2018,10-17-07 [INFO] c:\users\**\desktop\infected\0706(26).exe
- 07/06/2018,10-17-07 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.2dad3e'
- 07/06/2018,10-17-07 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(3).exe'
- 07/06/2018,10-17-07 [INFO] c:\users\**\desktop\infected\0706(3).exe
- 07/06/2018,10-17-07 [INFO] [DETECTION] file contains 'TR/Kryptik.eaiiy'
- 07/06/2018,10-17-19 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(4).exe'
- 07/06/2018,10-17-19 [INFO] The file 'c:\users\**\desktop\infected\0706(4).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 0B9AC8FC1D6E433C3D01071B12222BE4F45F9B87B283FF883D5643FF8EA4E2A0
- 07/06/2018,10-17-19 [INFO] c:\users\**\desktop\infected\0706(4).exe
- 07/06/2018,10-17-19 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.0b9ac8'
- 07/06/2018,10-17-19 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(5).exe'
- 07/06/2018,10-17-19 [INFO] c:\users\**\desktop\infected\0706(5).exe
- 07/06/2018,10-17-19 [INFO] [DETECTION] file contains 'HEUR/AGEN.1013209'
- 07/06/2018,10-17-32 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(6).exe'
- 07/06/2018,10-17-32 [INFO] The file 'c:\users\**\desktop\infected\0706(6).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 38861C0F07D7A2EBC823BAF0BB4C11ED0B20D078E57830697B22C7EFB1073E5A
- 07/06/2018,10-17-32 [INFO] c:\users\**\desktop\infected\0706(6).exe
- 07/06/2018,10-17-32 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.38861c'
- 07/06/2018,10-17-32 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(7).exe'
- 07/06/2018,10-17-32 [INFO] c:\users\**\desktop\infected\0706(7).exe
- 07/06/2018,10-17-32 [INFO] [DETECTION] file contains 'TR/Crypt.XDR.Gen'
- 07/06/2018,10-17-44 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(8).exe'
- 07/06/2018,10-17-44 [INFO] The file 'c:\users\**\desktop\infected\0706(8).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = 66A527A237D03252888BCCDA5D83F9F4C695A82793079D0ABF2EBCC8204CC6D5
- 07/06/2018,10-17-44 [INFO] c:\users\**\desktop\infected\0706(8).exe
- 07/06/2018,10-17-44 [INFO] [DETECTION] file contains 'TR/Crypt.XPACK.66a527'
- 07/06/2018,10-17-56 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\0706(9).exe'
- 07/06/2018,10-17-56 [INFO] The file 'c:\users\**\desktop\infected\0706(9).exe' has been uploaded to the Protection Cloud and analyzed. SHA256 = CCE95E54469F470C174721071D820D874584606D11290BF171804D20F6A3012D
- 07/06/2018,10-17-56 [INFO] c:\users\**\desktop\infected\0706(9).exe
- 07/06/2018,10-17-56 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.cce95e'
复制代码 |