查看: 3946|回复: 48
收起左侧

[病毒样本] 样本集奉上_42

  [复制链接]
www-tekeze
发表于 2018-8-12 20:14:13 | 显示全部楼层 |阅读模式
85枚样本送上,已检查过没有重复文件,快来快来,扫描? 双击? 一概欢迎!  

PS:1. 原始样本50枚,另有加UPX壳或修改MD5的35枚。查杀结果格式:  S: xx/50,M: xx/35,Total: xx/85
       2. 智量对脚本、文本类的不报,这是目前官方的策略,因此检出率可能会偏低。


蓝奏云盘,下载挺快。。。https://www.lanzous.com/i1mus8j    密码:infected

评分

参与人数 1人气 +1 收起 理由
dreams521 + 1 追剧中,过来补一刀吧

查看全部评分

dreams521
发表于 2018-8-12 20:14:41 | 显示全部楼层
本帖最后由 dreams521 于 2018-8-12 20:38 编辑

卡巴  S: 40/50,M: 23/35,Total: 63/85  74%




12.08.2018 20.16.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(3)M.vir//js.js;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(3)M.vir//js.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/12/2018 20:16:04
12.08.2018 20.16.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(3)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(3)M.vir;08/12/2018 20:16:04
12.08.2018 20.15.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0001;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0001;HEUR:Trojan-Dropper.Script.Generic;木马程序;08/12/2018 20:15:39
12.08.2018 20.15.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:39
12.08.2018 20.15.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000//word/vbaProject.bin//Module3;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000//word/vbaProject.bin//Module3;Trojan-Downloader.MSWord.Agent.bha;木马程序;08/12/2018 20:15:39
12.08.2018 20.15.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000//word/vbaProject.bin//form.o.Odish;C:\Users\Administrator\Desktop\456\Samp(29).vir//data0000//word/vbaProject.bin//form.o.Odish;Trojan-Downloader.VBS.Agent.cis;木马程序;08/12/2018 20:15:39
12.08.2018 20.15.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(29).vir;C:\Users\Administrator\Desktop\456\Samp(29).vir;UDS:Trojan-Downloader.MSWord.Agent.bha;木马程序;08/12/2018 20:15:39
12.08.2018 20.15.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(30).vir;C:\Users\Administrator\Desktop\456\Samp(30).vir;Trojan.Win32.Inject.vtun;木马程序;08/12/2018 20:15:38
12.08.2018 20.15.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(31).vir;C:\Users\Administrator\Desktop\456\Samp(31).vir;HEUR:Trojan-Ransom.Win32.Agent.gen;木马程序;08/12/2018 20:15:38
12.08.2018 20.15.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(32).vir;C:\Users\Administrator\Desktop\456\Samp(32).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:38
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(33).vir;C:\Users\Administrator\Desktop\456\Samp(33).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(35).vir//data0000;C:\Users\Administrator\Desktop\456\Samp(35).vir//data0000;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(35).vir;C:\Users\Administrator\Desktop\456\Samp(35).vir;HEUR:Exploit.PDF.Generic;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(36).vir;C:\Users\Administrator\Desktop\456\Samp(36).vir;Trojan-Downloader.JS.Agent.asdfvw;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(37).vir;C:\Users\Administrator\Desktop\456\Samp(37).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(34).vir;C:\Users\Administrator\Desktop\456\Samp(34).vir;UDS:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(38).vir;C:\Users\Administrator\Desktop\456\Samp(38).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:37
12.08.2018 20.15.35;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\456\Samp(39).vir;C:\Users\Administrator\Desktop\456\Samp(39).vir;08/12/2018 20:15:35
12.08.2018 20.15.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(39).vir//Document(128).jse;C:\Users\Administrator\Desktop\456\Samp(39).vir//Document(128).jse;Trojan-Downloader.JS.Agent.asdfxs;木马程序;08/12/2018 20:15:35
12.08.2018 20.15.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(41).vir;C:\Users\Administrator\Desktop\456\Samp(41).vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:35
12.08.2018 20.15.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(42).vir;C:\Users\Administrator\Desktop\456\Samp(42).vir;Trojan-Spy.Win32.Zbot.vlvb;木马程序;08/12/2018 20:15:35
12.08.2018 20.15.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(43).vir;C:\Users\Administrator\Desktop\456\Samp(43).vir;Trojan-Ransom.Win32.Zerber.uft;木马程序;08/12/2018 20:15:35
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(44).vir;C:\Users\Administrator\Desktop\456\Samp(44).vir;HEUR:Trojan-Ransom.Win32.Agent.gen;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(46).vir;C:\Users\Administrator\Desktop\456\Samp(46).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(47).vir;C:\Users\Administrator\Desktop\456\Samp(47).vir;Trojan-Ransom.Win32.Fury.kg;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(48).vir;C:\Users\Administrator\Desktop\456\Samp(48).vir;Backdoor.Win32.Farfli.aoan;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(49).vir;C:\Users\Administrator\Desktop\456\Samp(49).vir;Trojan.Win32.Inject.wmvb;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(10)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(10)M.vir;Trojan.Win32.Inject.vtun;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(11)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(11)M.vir;HEUR:Trojan-Ransom.Win32.Agent.gen;木马程序;08/12/2018 20:15:34
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(12)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(12)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(13)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(13)M.vir;HEUR:Trojan-Banker.Win32.NeutrinoPOS.gen;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(16)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(16)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(17)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(17)M.vir;HEUR:Trojan-Ransom.Win32.Agent.gen;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(18)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(18)M.vir;Trojan.Win32.Crypt.ewj;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(19)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(19)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:32
12.08.2018 20.15.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(20)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(20)M.vir;HEUR:Trojan-Banker.Win32.NeutrinoPOS.gen;木马程序;08/12/2018 20:15:31
12.08.2018 20.15.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(22)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(22)M.vir;Trojan-Ransom.Win32.Blocker.hgks;木马程序;08/12/2018 20:15:31
12.08.2018 20.15.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(24)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(24)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:31
12.08.2018 20.15.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(25)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(25)M.vir;HEUR:Trojan.Win32.Invader;木马程序;08/12/2018 20:15:31
12.08.2018 20.15.23;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(28)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(28)M.vir;Trojan-Ransom.Win32.Fury.c;木马程序;08/12/2018 20:15:23
12.08.2018 20.15.23;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(29)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(29)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:23
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(30)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(30)M.vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(31)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(31)M.vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(32)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(32)M.vir;HEUR:Trojan-Spy.MSIL.Generic;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(33)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(33)M.vir;Trojan-Spy.Win32.Zbot.vlvb;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(34)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(34)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(35)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(35)M.vir;Trojan.Win32.Inject.wmvb;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(5)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(5)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(9)M.vir;C:\Users\Administrator\Desktop\456\VirusSamples_42M\Samp(9)M.vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:22
12.08.2018 20.15.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(1).vir;C:\Users\Administrator\Desktop\456\Samp(1).vir;Trojan-Ransom.Win32.Fury.c;木马程序;08/12/2018 20:15:21
12.08.2018 20.15.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(2).vir;C:\Users\Administrator\Desktop\456\Samp(2).vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:21
12.08.2018 20.15.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(3).vir;C:\Users\Administrator\Desktop\456\Samp(3).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:21
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(28).vir;C:\Users\Administrator\Desktop\456\Samp(28).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(27).vir;C:\Users\Administrator\Desktop\456\Samp(27).vir;HEUR:Trojan-Spy.MSIL.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(26).vir;C:\Users\Administrator\Desktop\456\Samp(26).vir;UDS:Trojan-Ransom.Win32.Agent.zsl;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(24).vir;C:\Users\Administrator\Desktop\456\Samp(24).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(19).vir//js.js;C:\Users\Administrator\Desktop\456\Samp(19).vir//js.js;UDS:Trojan-Downloader.JS.SLoad.gen;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(19).vir;C:\Users\Administrator\Desktop\456\Samp(19).vir;UDS:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(23).vir;C:\Users\Administrator\Desktop\456\Samp(23).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(22).vir;C:\Users\Administrator\Desktop\456\Samp(22).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(21).vir;C:\Users\Administrator\Desktop\456\Samp(21).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(18).vir;C:\Users\Administrator\Desktop\456\Samp(18).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(17).vir;C:\Users\Administrator\Desktop\456\Samp(17).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:20
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(16).vir;C:\Users\Administrator\Desktop\456\Samp(16).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(15).vir;C:\Users\Administrator\Desktop\456\Samp(15).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(14).vir;C:\Users\Administrator\Desktop\456\Samp(14).vir;Trojan-Spy.Win32.Zbot.ybbj;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(13).vir;C:\Users\Administrator\Desktop\456\Samp(13).vir;UDS:Trojan.Win32.Inject.sb;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(10).vir;C:\Users\Administrator\Desktop\456\Samp(10).vir;Trojan-Ransom.Win32.Blocker.hgks;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(11).vir;C:\Users\Administrator\Desktop\456\Samp(11).vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\456\Samp(8).vir;C:\Users\Administrator\Desktop\456\Samp(8).vir;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(8).vir//Receipt(564).jse;C:\Users\Administrator\Desktop\456\Samp(8).vir//Receipt(564).jse;Trojan-Downloader.JS.Agent.asdfxs;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(6).vir;C:\Users\Administrator\Desktop\456\Samp(6).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(7).vir;C:\Users\Administrator\Desktop\456\Samp(7).vir;UDS:DangerousObject.Multi.Generic;08/12/2018 20:15:19
12.08.2018 20.15.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\456\Samp(5).vir;C:\Users\Administrator\Desktop\456\Samp(5).vir;HEUR:Trojan.Win32.Generic;木马程序;08/12/2018 20:15:19



剩余样本



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1人气 +1 收起 理由
dongwenqi + 1 版区有你更精彩: )

查看全部评分

Jirehlov1234
发表于 2018-8-12 20:17:16 | 显示全部楼层
BD

46/50+24/35=70/85
Severn'
发表于 2018-8-12 20:19:07 | 显示全部楼层
本帖最后由 Severn' 于 2018-8-12 21:00 编辑

小红伞占位,,

看到楼下有人发了,我还是清理完....不测了

楼下那兄弟说他用的是红伞测试版,,让我也测测,,

M清空,
剩4  9 20 40 45 50,
79/85=93%
www-tekeze
 楼主| 发表于 2018-8-12 20:21:50 | 显示全部楼层
dreams521 发表于 2018-8-12 20:14
卡巴  S: 40/50,M: 12/35,Total: 52/85

这个成绩。。
chenQK
发表于 2018-8-12 20:23:42 | 显示全部楼层
江民
S: 24/50,M: 22/35,Total: 47/85
更新后还是47个 真没用图片是没更新的 更新后一个都没搞定

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
静影沉璧
发表于 2018-8-12 20:24:43 | 显示全部楼层
本帖最后由 静影沉璧 于 2018-8-12 21:56 编辑

SEP,MES的虚拟机崩了,这回主要测双击
BD2019 虚拟机
双击:
成功防御:
The file c:\users\administrator\desktop\virussamples_42m\samp(25)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(5)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(19)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(1)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(2)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(10)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(21)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(22)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
The file c:\users\administrator\desktop\virussamples_42m\samp(6)m.exe is infected with Atc4.Detection and was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
Samp4,9,20,15M无法运行
Samp12,23M驻留内存
PS:这次的双击样本很考验主防,每一个都触发了ATD
附上扫描日志:
S:实际46/50
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(7).vir Gen:Heur.Locky.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(8).vir=>Receipt(564).jse Trojan.Script.Agent.JX Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(17).vir Gen:Variant.Razy.22806 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(2).vir Exploit.Agent.KF Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(35).vir=>(INFECTED_JS) PDF:Exploit.PDF-JS.AHA Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(14).vir Gen:Variant.Razy.138713 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(29).vir=>134324.docm=>word/vbaProject.bin W97m.Downloader.FRP Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(32).vir Gen:Variant.Ransom.HydraCrypt.8 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(50).vir Trojan.Ransom.CerberKD.12024580 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(1).vir Trojan.AgentWDCR.DKO Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(6).vir Gen:Variant.Zusy.163299 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(13).vir Trojan.NSIS.Androm.CM Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(27).vir Trojan.GenericKD.30653167 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(45).vir Trojan.GenericKD.12544720 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(47).vir Trojan.GenericKD.5692456 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(26).vir Trojan.Agent.BWRM Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(44).vir Trojan.Ransom.Cerber.JD Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(5).vir Trojan.Injector.BLQ Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(49).vir Trojan.GenericKD.3523264 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(48).vir Trojan.GenericKD.3745776 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(28).vir Gen:Variant.Barys.54892 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(46).vir Gen:Variant.Razy.127930 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(25).vir Trojan.GenericKD.5288128 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(43).vir Trojan.RanSerKD.3575445 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(31).vir=>(NSIS o)=>lzma_solid_nsis0003 Trojan.Generic.15298456 Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(22).vir Gen:Variant.Zusy.271267 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(40).vir Java.Exploit.CVE-2013-2460.A Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(24).vir Trojan.Generic.22515258 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(42).vir Trojan.GenericKD.2460447 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(41).vir=>vsdw33fdwe.dll Gen:Variant.MSILPerseus.6518 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(23).vir Gen:Variant.Symmi.44322 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(31).vir=>(NSIS o)=>lzma_solid_nsis0001 Trojan.Agent.BOPM Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(39).vir=>Document(128).jse Trojan.Script.Agent.JX Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(19).vir Trojan.GenericKD.12691248 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(37).vir VB:Trojan.VBS.Agent.AQN Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(16).vir Gen:Variant.Razy.156486 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(34).vir Trojan.Agent.CBWW Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(15).vir Gen:Variant.Razy.188331 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(33).vir Trojan.GenericKD.30698889 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(38).vir Trojan.Bedep.Gen.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(31).vir=>(NSIS o)=>lzma_solid_nsis0002 Trojan.Agent.BOPN Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(30).vir Gen:Variant.Graftor.269501 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(10).vir Gen:Variant.Zusy.146130 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(31).vir=>(NSIS o)=>lzma_solid_nsis0000 Trojan.NSIS.Androm.7 Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(3).vir Trojan.BRMon.Gen.3 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(36).vir=>(INFECTED_JS) JS:Trojan.JS.Agent.OGJ Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(18).vir Gen:Variant.Razy.12550 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(21).vir Trojan.GenericKD.3881966 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42\Samp(11).vir Gen:Heur.Zboter.5 Deleted
M:实际24/35
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(8)M.vir Trojan.Agent.BWRM Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(35)M.vir Trojan.GenericKD.3523264 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(34)M.vir Gen:Variant.Razy.127930 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(7)M.vir Trojan.Agent.COKY Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(9)M.vir Gen:Variant.Ursu.206313 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(11)M.vir=>(NSIS o)=>lzma_solid_nsis0003 Trojan.Generic.15298456 Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(20)M.vir Gen:Heur.BrResMon.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(13)M.vir Gen:Trojan.Heur.JP.hmGfaCtelEci Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(31)M.vir Gen:Heur.Zboter.5 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(33)M.vir Trojan.GenericKD.2460447 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(17)M.vir=>(heurC) Zum.Ransom.NSIS.Cerber.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(29)M.vir Trojan.Injector.BLQ Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(14)M.vir Trojan.Agent.CBWW Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(32)M.vir Trojan.GenericKD.30653167 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(3)M.vir=>(ZIP Sfx o)=>(ZIP comment) Trojan.ScriptKD.6871 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(12)M.vir Gen:Variant.Ransom.HydraCrypt.19 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(30)M.vir Gen:Heur.Locky.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(28)M.vir Trojan.AgentWDCR.DKO Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(3)M.vir=>(ZIP Sfx o)=>js.js Trojan.JS.Agent.SAI Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(17)M.vir=>(NSIS o)=>lzma_solid_nsis0004 Trojan.AgentWDCR.JTY Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(27)M.vir Gen:Variant.Ursu.9987 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(26)M.vir Gen:Trojan.Heur.wmKfzq@VoRei Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(4)M.vir Trojan.Ransom.Spora.Gen.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(24)M.vir=>(heurC) Zum.Ransom.NSIS.Cerber.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(18)M.vir Gen:Trojan.Heur2.LPThmGfauE67In Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(11)M.vir=>(NSIS o)=>lzma_solid_nsis0000 Trojan.NSIS.Androm.7 Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(11)M.vir=>(NSIS o)=>lzma_solid_nsis0001 Trojan.Agent.BOPM Moved to Quarantine
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(16)M.vir=>(heurC) Zum.Ransom.NSIS.Cerber.1 Deleted
C:\Users\Administrator\Desktop\VirusSamples_42M\Samp(11)M.vir=>(NSIS o)=>lzma_solid_nsis0002 Trojan.Agent.BOPN Moved to Quarantine
Total:79/85=92.9%
dreams521
发表于 2018-8-12 20:26:20 | 显示全部楼层

刚才计算错了,已修改
YU2711
发表于 2018-8-12 20:29:30 | 显示全部楼层
NS  20:25

S:43/50
M:30/35
T:73/85
温馨小屋
头像被屏蔽
发表于 2018-8-12 20:34:26 | 显示全部楼层
本帖最后由 温馨小屋 于 2018-8-12 20:37 编辑

ESET



S: 48/50,M: 33/35,Total: 81/85  还有一个文件信誉不良


95.2%

您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-6-26 10:44 , Processed in 0.115075 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表