查看: 7271|回复: 75
收起左侧

[病毒样本] 样本集奉上_50

  [复制链接]
www-tekeze
发表于 2018-8-20 20:25:44 | 显示全部楼层 |阅读模式
300枚样本送上,类型为doc、xls、eml,已检查过没有重复文件,快来快来,扫描? 双击? 一概欢迎!  

PS:智量对.eml 的不报,这是目前官方的策略,因此检出率会偏低。


蓝奏云盘,下载挺快。。。 https://www.lanzous.com/i1p28ta    密码:infected
Jerry.Lin
发表于 2018-8-20 20:25:53 | 显示全部楼层
本帖最后由 191196846 于 2018-8-20 20:33 编辑

ESET
49/300


  1. Log
  2. Scan Log
  3. Version of detection engine: 17881 (20180814)
  4. Date: 2018/8/20  Time: 20:28:29
  5. Scanned disks, folders and files: C:\Users\LH\Desktop\VirusSamples_50
  6. C:\Users\LH\Desktop\VirusSamples_50\Samp(102).vir - Win32/Agent.SEQ trojan - cleaned
  7. C:\Users\LH\Desktop\VirusSamples_50\Samp(107).vir - VBA/TrojanDownloader.Agent.FTY trojan - cleaned
  8. C:\Users\LH\Desktop\VirusSamples_50\Samp(119).vir - VBA/TrojanDownloader.Agent.DWT trojan - cleaned
  9. C:\Users\LH\Desktop\VirusSamples_50\Samp(122).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  10. C:\Users\LH\Desktop\VirusSamples_50\Samp(125).vir - Win32/Agent.SLF trojan - cleaned
  11. C:\Users\LH\Desktop\VirusSamples_50\Samp(127).vir - a variant of Generik.GWKZTXC trojan - cleaned by deleting [1]
  12. C:\Users\LH\Desktop\VirusSamples_50\Samp(130).vir - VBA/TrojanDownloader.Agent.CIG trojan - cleaned
  13. C:\Users\LH\Desktop\VirusSamples_50\Samp(148).vir - W97M/TrojanDownloader.Agent.NDF trojan - cleaned
  14. C:\Users\LH\Desktop\VirusSamples_50\Samp(16).vir - VBA/Kryptik.T trojan - cleaned
  15. C:\Users\LH\Desktop\VirusSamples_50\Samp(162).vir - VBA/TrojanDownloader.Agent.EFK trojan - cleaned
  16. C:\Users\LH\Desktop\VirusSamples_50\Samp(169).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CED trojan - action selection postponed until scan completion
  17. C:\Users\LH\Desktop\VirusSamples_50\Samp(170).vir - VBA/TrojanDownloader.Agent.CNB trojan - cleaned
  18. C:\Users\LH\Desktop\VirusSamples_50\Samp(173).vir - VBA/Kryptik.T trojan - cleaned
  19. C:\Users\LH\Desktop\VirusSamples_50\Samp(175).vir - VBA/TrojanDownloader.Agent.FTY trojan - cleaned
  20. C:\Users\LH\Desktop\VirusSamples_50\Samp(180).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CEF trojan - action selection postponed until scan completion
  21. C:\Users\LH\Desktop\VirusSamples_50\Samp(181).vir - VBA/TrojanDownloader.Agent.IDD trojan - cleaned by deleting [1]
  22. C:\Users\LH\Desktop\VirusSamples_50\Samp(183).vir - VBA/TrojanDownloader.Agent.CCI trojan - cleaned by deleting [1]
  23. C:\Users\LH\Desktop\VirusSamples_50\Samp(185).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CED trojan - action selection postponed until scan completion
  24. C:\Users\LH\Desktop\VirusSamples_50\Samp(186).vir - VBA/TrojanDownloader.Agent.DVR trojan - cleaned
  25. C:\Users\LH\Desktop\VirusSamples_50\Samp(188).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  26. C:\Users\LH\Desktop\VirusSamples_50\Samp(190).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.CFL trojan - action selection postponed until scan completion
  27. C:\Users\LH\Desktop\VirusSamples_50\Samp(193).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CTS trojan - action selection postponed until scan completion
  28. C:\Users\LH\Desktop\VirusSamples_50\Samp(194).vir - LNK/TrojanDownloader.Agent.HT trojan - cleaned by deleting [1]
  29. C:\Users\LH\Desktop\VirusSamples_50\Samp(196).vir - a variant of Generik.EXPPGQN trojan - cleaned by deleting [1]
  30. C:\Users\LH\Desktop\VirusSamples_50\Samp(198).vir - Win32/Agent.SLF trojan - cleaned
  31. C:\Users\LH\Desktop\VirusSamples_50\Samp(20).vir - Win32/Agent.SEQ trojan - cleaned
  32. C:\Users\LH\Desktop\VirusSamples_50\Samp(203).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.BPB trojan - action selection postponed until scan completion
  33. C:\Users\LH\Desktop\VirusSamples_50\Samp(206).vir - PowerShell/TrojanDownloader.Agent.Q trojan - cleaned
  34. C:\Users\LH\Desktop\VirusSamples_50\Samp(208).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.DWT trojan - action selection postponed until scan completion
  35. C:\Users\LH\Desktop\VirusSamples_50\Samp(214).vir » ZIP » word/document.xml - VBA/DDE.F trojan - action selection postponed until scan completion
  36. C:\Users\LH\Desktop\VirusSamples_50\Samp(216).vir - VBA/TrojanDownloader.Agent.FTY trojan - cleaned
  37. C:\Users\LH\Desktop\VirusSamples_50\Samp(217).vir - VBA/TrojanDownloader.Agent.FSY trojan - cleaned
  38. C:\Users\LH\Desktop\VirusSamples_50\Samp(218).vir - Win32/Agent.SEQ trojan - cleaned by deleting [1]
  39. C:\Users\LH\Desktop\VirusSamples_50\Samp(219).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.DFN trojan - action selection postponed until scan completion
  40. C:\Users\LH\Desktop\VirusSamples_50\Samp(22).vir - VBA/TrojanDownloader.Agent.HTZ trojan - cleaned
  41. C:\Users\LH\Desktop\VirusSamples_50\Samp(222).vir - Win32/Agent.SEQ trojan - cleaned by deleting [1]
  42. C:\Users\LH\Desktop\VirusSamples_50\Samp(223).vir - VBA/TrojanDownloader.Agent.DTM trojan - cleaned
  43. C:\Users\LH\Desktop\VirusSamples_50\Samp(225).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.EDD trojan - action selection postponed until scan completion
  44. C:\Users\LH\Desktop\VirusSamples_50\Samp(226).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.CFL trojan - action selection postponed until scan completion
  45. C:\Users\LH\Desktop\VirusSamples_50\Samp(228).vir - VBA/TrojanDropper.Agent.BDO trojan - cleaned
  46. C:\Users\LH\Desktop\VirusSamples_50\Samp(230).vir - VBA/TrojanDownloader.Agent.IDD trojan - cleaned by deleting [1]
  47. C:\Users\LH\Desktop\VirusSamples_50\Samp(231).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.DIL trojan - action selection postponed until scan completion
  48. C:\Users\LH\Desktop\VirusSamples_50\Samp(234).vir - DOC/TrojanDownloader.Agent.JW trojan - cleaned by deleting [1]
  49. C:\Users\LH\Desktop\VirusSamples_50\Samp(236).vir - VBA/Kryptik.T trojan - cleaned
  50. C:\Users\LH\Desktop\VirusSamples_50\Samp(239).vir - VBA/TrojanDownloader.Agent.CJQ trojan - cleaned
  51. C:\Users\LH\Desktop\VirusSamples_50\Samp(244).vir - Win32/Exploit.CVE-2017-0199.AK trojan - cleaned by deleting [1]
  52. C:\Users\LH\Desktop\VirusSamples_50\Samp(245).vir » ZIP » word/document.xml - VBA/DDE.F trojan - action selection postponed until scan completion
  53. C:\Users\LH\Desktop\VirusSamples_50\Samp(246).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  54. C:\Users\LH\Desktop\VirusSamples_50\Samp(247).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.DIL trojan - action selection postponed until scan completion
  55. C:\Users\LH\Desktop\VirusSamples_50\Samp(248).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.DCE trojan - action selection postponed until scan completion
  56. C:\Users\LH\Desktop\VirusSamples_50\Samp(249).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  57. C:\Users\LH\Desktop\VirusSamples_50\Samp(257).vir - VBA/Kryptik.T trojan - cleaned
  58. C:\Users\LH\Desktop\VirusSamples_50\Samp(258).vir - VBA/Kryptik.T trojan - cleaned
  59. C:\Users\LH\Desktop\VirusSamples_50\Samp(26).vir - VBA/TrojanDownloader.Agent.HQE trojan - cleaned
  60. C:\Users\LH\Desktop\VirusSamples_50\Samp(260).vir - VBA/TrojanDownloader.Agent.DXE trojan - cleaned
  61. C:\Users\LH\Desktop\VirusSamples_50\Samp(261).vir - VBA/TrojanDownloader.Agent.LM trojan - cleaned
  62. C:\Users\LH\Desktop\VirusSamples_50\Samp(264).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CEF trojan - action selection postponed until scan completion
  63. C:\Users\LH\Desktop\VirusSamples_50\Samp(270).vir - Win32/Exploit.CVE-2017-0199.AK trojan - cleaned by deleting [1]
  64. C:\Users\LH\Desktop\VirusSamples_50\Samp(276).vir - PowerShell/TrojanDownloader.Agent.Q trojan - cleaned
  65. C:\Users\LH\Desktop\VirusSamples_50\Samp(277).vir » ZIP » word/document.xml - VBA/DDE.B trojan - action selection postponed until scan completion
  66. C:\Users\LH\Desktop\VirusSamples_50\Samp(278).vir » OLEDATA » st11.exe - Win32/PSW.Fareit.A trojan - deleted
  67. C:\Users\LH\Desktop\VirusSamples_50\Samp(279).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CTS trojan - action selection postponed until scan completion
  68. C:\Users\LH\Desktop\VirusSamples_50\Samp(28).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  69. C:\Users\LH\Desktop\VirusSamples_50\Samp(281).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  70. C:\Users\LH\Desktop\VirusSamples_50\Samp(283).vir - LNK/TrojanDownloader.Agent.HS trojan - cleaned by deleting [1]
  71. C:\Users\LH\Desktop\VirusSamples_50\Samp(287).vir - VBA/TrojanDownloader.Agent.CIG trojan - cleaned
  72. C:\Users\LH\Desktop\VirusSamples_50\Samp(29).vir - LNK/TrojanDownloader.Agent.BI trojan - cleaned by deleting [1]
  73. C:\Users\LH\Desktop\VirusSamples_50\Samp(291).vir - Win32/Exploit.CVE-2017-0199.FB trojan - cleaned by deleting [1]
  74. C:\Users\LH\Desktop\VirusSamples_50\Samp(293).vir - VBA/TrojanDownloader.Agent.FHL trojan - cleaned
  75. C:\Users\LH\Desktop\VirusSamples_50\Samp(294).vir - VBA/TrojanDownloader.Agent.IDD trojan - cleaned by deleting [1]
  76. C:\Users\LH\Desktop\VirusSamples_50\Samp(295).vir - Win32/Agent.SEQ trojan - cleaned
  77. C:\Users\LH\Desktop\VirusSamples_50\Samp(3).vir - VBA/TrojanDropper.Agent.BDO trojan - cleaned
  78. C:\Users\LH\Desktop\VirusSamples_50\Samp(34).vir - Win32/Agent.SEQ trojan - cleaned
  79. C:\Users\LH\Desktop\VirusSamples_50\Samp(35).vir - VBA/TrojanDownloader.Agent.HXK trojan - cleaned
  80. C:\Users\LH\Desktop\VirusSamples_50\Samp(36).vir - VBA/TrojanDownloader.Agent.FSY trojan - cleaned
  81. C:\Users\LH\Desktop\VirusSamples_50\Samp(38).vir - VBA/TrojanDownloader.Agent.CIV trojan - cleaned
  82. C:\Users\LH\Desktop\VirusSamples_50\Samp(4).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.DIL trojan - action selection postponed until scan completion
  83. C:\Users\LH\Desktop\VirusSamples_50\Samp(43).vir - PowerShell/TrojanDownloader.Agent.Q trojan - cleaned
  84. C:\Users\LH\Desktop\VirusSamples_50\Samp(44).vir - VBA/TrojanDownloader.Agent.MD trojan - cleaned
  85. C:\Users\LH\Desktop\VirusSamples_50\Samp(47).vir - VBA/Kryptik.T trojan - cleaned
  86. C:\Users\LH\Desktop\VirusSamples_50\Samp(54).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  87. C:\Users\LH\Desktop\VirusSamples_50\Samp(59).vir - VBA/DDE.D trojan - cleaned by deleting [1]
  88. C:\Users\LH\Desktop\VirusSamples_50\Samp(63).vir - VBA/TrojanDownloader.Agent.FUT trojan - cleaned
  89. C:\Users\LH\Desktop\VirusSamples_50\Samp(64).vir » ZIP » word/vbaProject.bin - VBA/TrojanDownloader.Agent.CFL trojan - action selection postponed until scan completion
  90. C:\Users\LH\Desktop\VirusSamples_50\Samp(71).vir - LNK/TrojanDownloader.Agent.BI trojan - cleaned by deleting [1]
  91. C:\Users\LH\Desktop\VirusSamples_50\Samp(73).vir - VBA/TrojanDownloader.Agent.MD trojan - cleaned
  92. C:\Users\LH\Desktop\VirusSamples_50\Samp(83).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CEF trojan - action selection postponed until scan completion
  93. C:\Users\LH\Desktop\VirusSamples_50\Samp(84).vir - VBA/TrojanDownloader.Agent.FOP trojan - cleaned
  94. C:\Users\LH\Desktop\VirusSamples_50\Samp(86).vir - VBA/Kryptik.T trojan - cleaned
  95. C:\Users\LH\Desktop\VirusSamples_50\Samp(89).vir - VBA/TrojanDownloader.Agent.FHL trojan - cleaned
  96. C:\Users\LH\Desktop\VirusSamples_50\Samp(92).vir - VBA/TrojanDownloader.Agent.CIG trojan - cleaned
  97. C:\Users\LH\Desktop\VirusSamples_50\Samp(95).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CTS trojan - action selection postponed until scan completion
  98. C:\Users\LH\Desktop\VirusSamples_50\Samp(96).vir - Win32/Agent.SEQ trojan - cleaned
  99. C:\Users\LH\Desktop\VirusSamples_50\Samp(98).vir - VBA/TrojanDropper.Agent.SY trojan - cleaned by deleting [1]
  100. C:\Users\LH\Desktop\VirusSamples_50\Samp(99).vir » ZIP » xl/vbaProject.bin - VBA/TrojanDownloader.Agent.CCI trojan - action selection postponed until scan completion
  101. Number of scanned objects: 635
  102. Number of threats found: 96
  103. Number of cleaned objects: 96
  104. Time of completion: 20:30:41  Total scanning time: 132 sec (00:02:12)

  105. Notes:
  106. [1] Object has been deleted as it only contained the virus body.
复制代码

静影沉璧
发表于 2018-8-20 20:27:28 | 显示全部楼层
本帖最后由 静影沉璧 于 2018-8-20 22:18 编辑

BD2019:
实际:删除126+修复130=256/300 85.3%
  1. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(99).vir Trojan.GenericKD.3790164 Deleted
  2. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(166).vir=>[Subject: uk_confirmation_ph690373679.pdf][Date: Thu, 30 Mar 2017 17:14:14 +0530]=>uk_confirmation_ph690373679.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  3. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(95).vir Trojan.GenericKD.4000018 Deleted
  4. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(122).vir Trojan.GenericKD.3789448 Deleted
  5. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(65).vir=>[Subject: Invoice INV0000980][Date: Tue, 31 Oct 2017 18:17:02 +0530]=>Invoice INV0000980.doc Trojan.GenericKD.6181923 Deleted
  6. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(94).vir=>[Subject: uk_confirmation_ph184650070.pdf][Date: Thu, 30 Mar 2017 14:28:24 +0200]=>uk_confirmation_ph184650070.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715278 Deleted
  7. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(124).vir=>[Subject: Please find attached a XLS Invoice 28697][Date: Tue, 29 Nov 2016 13:39:08 +0530]=>INVOICE.TAM_28697_20161129_1E4F735BA.xls Trojan.Doc.Downloader.WN Deleted
  8. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(72).vir=>[Subject: 9346 [recipient]][Date: Thu, 27 Apr 2017 03:00:37 -0000]=>63043088778557.zip=>1.doc=>(objdata)=>(Embedded DocFile g) Exploit.CVE-2017-0199.Gen Deleted
  9. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(255).vir=>[From: <jiggymovementbusiness@gmail.com>][Date: Thu, 19 Jan 2017 16:52:30 -0000]=>EMAIL_327120_[recipient].zip=>(dummy) Trojan.Oroles.Gen.2 Deleted
  10. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(62).vir=>[Subject: CC Confirmation]=>skm_c554e67954647183.7z=>SKM_C554e16098284038.vbs VB:Trojan.VBS.Agent.AQD Moved to Quarantine
  11. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(96).vir VB:Trojan.Agent.CZVU Deleted
  12. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(205).vir Trojan.GenericKD.4812613 Deleted
  13. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(102).vir VB:Trojan.Valyria.1125 Deleted
  14. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(272).vir=>[Subject: Receipt-70724][Date: Mon, 31 Jul 2017 16:02:29 +0430]=>P70724.zip=>19367.2017-07-31_31.97.09.vbs w97m.Agent.DG Deleted
  15. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(89).vir W97m.Downloader.GMA Deleted
  16. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(90).vir=>[Subject: File COPY.29112016.7955.XLS Sent 29=>11=>2016][Date: Tue, 29 Nov 2016 14:21:45 -0300]=>COPY.29112016.7955.XLS=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  17. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(232).vir=>[Subject: Message from "RNP002673C28069"][Date: Tue, 08 Aug 2017 05:15:41 -0500]=>20170808051541.zip=>201708085655.js Trojan.GenericKD.5788559 Deleted
  18. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(253).vir=>[Subject: DEA3ADF1CC0BB6B7][Date: Tue, 26 Jul 2016 09:54:07 -0500]=>DEA3ADF1CC0BB6B7.docm=>word/vbaProject.bin W97M.Downloader.EAB Deleted
  19. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(86).vir VB:Trojan.Agent.CZVU Deleted
  20. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(98).vir=>word/vbaProject.bin W97M.Downloader.EXH Deleted
  21. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(210).vir=>[Subject: 45462 [recipient]][Date: Thu, 27 Apr 2017 07:15:20 -0000]=>993051853636.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  22. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(240).vir=>[Subject: Emailed Invoice - 635418]=>i_635418.7z=>I_362789.js=>(INFECTED_JS) JS:Trojan.JS.Agent.QYD Moved to Quarantine
  23. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(290).vir=>[Subject: ][Date: Wed, 02 Aug 2017 10:56:45 -0000]=>EMAIL_2990067725884_[recipient].zip=>134383275.zip=>7oSZHYt.js=>(INFECTED_JS) JS:Trojan.Cryxos.1223 Deleted
  24. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(92).vir VB:Trojan.Valyria.11 Deleted
  25. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(56).vir=>[Subject: Picture][Date: Mon, 12 Sep 2016 19:31:03 +0530]=>WP_20160830_11_61_3_Pro.zip=>14YQg739.wsf Gen:Heur.JS.Downloader.2 Deleted
  26. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(201).vir=>[Subject: Your Booking 0953541][Date: Thu, 30 Mar 2017 15:52:39 +0530]=>Direct-Documentation 0953541-1.zip=>Direct-Documentation 1530219.zip=>Direct-Documentation 1530219/Direct-Documentation 1530219.vbs VB:Trojan.Valyria.330 Deleted
  27. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(71).vir Trojan.GenericKD.6181525 Deleted
  28. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(69).vir=>[Subject: FW: Invoice][Date: Thu, 28 Apr 2016 16:16:07 +0300]=>413C2_scan-invoice_D08DA1.zip=>ee642.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HT Deleted
  29. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(35).vir VB:Trojan.Valyria.1715 Deleted
  30. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(97).vir=>[Subject: Your Booking 43738143][Date: Thu, 30 Mar 2017 14:54:02 +0530]=>Direct-Documentation 43738143-1.zip=>Direct-Documentation 1530219.zip=>Direct-Documentation 1530219/Direct-Documentation 1530219.vbs VB:Trojan.Valyria.330 Deleted
  31. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(83).vir=>xl/vbaProject.bin X97M.Downloader.CL Deleted
  32. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(197).vir=>[Subject: Your Booking 87091629][Date: Thu, 30 Mar 2017 05:29:15 -0500]=>Direct-Documentation 87091629-1.zip=>Direct-Documentation 1530219.zip=>Direct-Documentation 1530219/Direct-Documentation 1530219.vbs VB:Trojan.Valyria.330 Deleted
  33. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(88).vir=>[Subject: You have a new secure message waiting ][Date: Tue, 1 Aug 2017 15:08:17 -0400]=>SecureMessage.doc VB:Trojan.VBA.Agent.JW Deleted
  34. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(1).vir=>[Subject: Website Job Application][Date: Thu, 16 Nov 2017 07:21:03 +0100]=>LINDA's Resume.doc W97m.Downloader.GMA Deleted
  35. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(93).vir Trojan.JS.RKN Deleted
  36. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(198).vir VB:Trojan.Valyria.933 Deleted
  37. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(279).vir Trojan.GenericKD.4002740 Deleted
  38. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(210).vir=>[Subject: 45462 [recipient]][Date: Thu, 27 Apr 2017 07:15:20 -0000]=>993051853636.zip=>9826.js=>(INFECTED_JS) JS.Remucod.2.Gen Deleted
  39. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(67).vir=>[Subject: eVoice Voicemail (Callback: 295-306-5228)][Date: Thu, 26 Apr 2018 12:29:15 -0500]=>wav445F.20180426726.zip=>wav213F.2018042652801.url Trojan.Downloader.URI.Gen Deleted
  40. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(79).vir=>[Subject: Invoice INV0000089][Date: Tue, 31 Oct 2017 16:39:04 +0700]=>Invoice INV0000089.doc Trojan.GenericKD.6182080 Deleted
  41. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(158).vir=>[Subject: uk_confirmation_ph309931744.pdf][Date: Thu, 30 Mar 2017 17:07:45 +0530]=>uk_confirmation_ph309931744.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  42. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(81).vir=>[Subject: Envio de Boleto - URGENTE - GRUPO FREITAS][Date: Fri, 6 Oct 2017 08:09:44 +0200 (CEST)]=>1508201700016067882247230289631.pdf Trojan.PDF.Phishing.RL Deleted
  43. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(250).vir=>[Subject: ][Date: Tue, 03 Oct 2017 19:30:12 -0000]=>04143368910.zip=>11150.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  44. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(87).vir=>[Subject: uk_confirmation_ph676423423.pdf][Date: Thu, 30 Mar 2017 14:50:53 +0300]=>uk_confirmation_ph676423423.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  45. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(78).vir=>[From: [recipient's email address]][Date: Thu, 20 Apr 2017 06:14:37 -0000]=>EMAIL_4546735537_[recipient].zip=>7755.zip=>7755.js=>(INFECTED_JS) JS:Trojan.Cryxos.620 Deleted
  46. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(256).vir=>[Subject: NatWest][Date: Mon, 21 Aug 2017 12:24:55 +0300]=>NatWest258345907_2243.doc W97M.Downloader.GCY Deleted
  47. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(84).vir VB:Trojan.Valyria.1055 Deleted
  48. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(135).vir=>[Subject: File COPY.29112016.11089.XLS Sent 29/11/2016][Date: Tue, 29 Nov 2016 16:16:11 +0200]=>COPY.29112016.11089.XLS Trojan.GenericKD.3790164 Deleted
  49. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(125).vir VB:Trojan.Agent.CZVU Deleted
  50. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(206).vir VB:Trojan.Valyria.773 Deleted
  51. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(85).vir=>[Subject: Financial statement][Date: Fri, 22 Jul 2016 00:46:30 +0300]=>daniel_45914.zip=>INV000 5cbd.js Trojan.JS.Agent.MJD Deleted
  52. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(80).vir=>[Subject: CCE28122017_009548][Date: Thu, 28 Dec 2017 11:32:59 +0200]=>CCE28122017_009548.7z=>CCE28122017_001978.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  53. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(267).vir=>[Subject: File COPY.29112016.6596.XLS Sent 29/11/2016][Date: Tue, 29 Nov 2016 23:25:35 +0700]=>COPY.29112016.6596.XLS X97M.Downloader.CD Deleted
  54. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(82).vir=>[Subject: Please find attached invoice no: 7475458263][Date: Mon, 21 Nov 2016 14:25:13 +0500]=>pmED847.zip=>JVCKEE503541.js Trojan.RanSerKD.3737651 Deleted
  55. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(73).vir W97M.Downloader.LZ Deleted
  56. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(214).vir=>word/document.xml Trojan.Downloader.DDE.Gen.1 Deleted
  57. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(75).vir=>[Subject: Invoice INV0000736][Date: Thu, 07 Dec 2017 15:48:47 +0530]=>invoice inv0000736.7z=>Invoice INV0000699.vbs VB:Trojan.VBS.Agent.AQF Moved to Quarantine
  58. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(70).vir=>[Subject: uk_confirmation_ph441639703.pdf][Date: Thu, 30 Mar 2017 17:01:59 +0530]=>uk_confirmation_ph441639703.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  59. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(68).vir=>[Subject: Invoice_4819463][Date: Wed, 27 Dec 2017 17:24:33 +0530]=>invoice_4819463.7z=>Invoice_9616548.js Trojan.JS.Downloader.IGK Moved to Quarantine
  60. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(276).vir VB:Trojan.VBA.Agent.JW Deleted
  61. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(78).vir=>[From: [recipient's email address]][Date: Thu, 20 Apr 2017 06:14:37 -0000]=>EMAIL_4546735537_[recipient].zip=>7755.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  62. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(66).vir=>[Subject: list of activities][Date: Tue, 26 Jul 2016 14:12:53 +0100]=>smith_92668.zip=>activities -74AD-..wsf Trojan.JS.Downloader.DRV Deleted
  63. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(60).vir=>[Subject: Scan #CBAFC82B93_54EB5B04D5][Date: Thu, 19 May 2016 16:40:58 +0200]=>MSG000244771637272.docm=>word/vbaProject.bin W97M.Downloader.CUL Deleted
  64. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(63).vir VB:Trojan.VBA.Agent.QV Deleted
  65. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(72).vir=>[Subject: 9346 [recipient]][Date: Thu, 27 Apr 2017 03:00:37 -0000]=>63043088778557.zip=>1.doc=>(objdata)=>() Exploit.CVE-2017-0199.Gen Deleted
  66. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(207).vir=>[Subject: Website Job Application][Date: Thu, 16 Nov 2017 13:43:50 +0100]=>Sally's Resume.doc W97m.Downloader.GMA Deleted
  67. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(244).vir=>(objdata)=>(Embedded DocFile g) Exploit.CVE-2017-0199.Gen Deleted
  68. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(59).vir Trojan.AgentWDCR.MLM Deleted
  69. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(129).vir=>[Subject: Please find attached a XLS Invoice 21078][Date: Tue, 29 Nov 2016 17:35:13 +0530]=>INVOICE.TAM_21078_20161129_E3DBB2719.xls Trojan.GenericKD.3789819 Deleted
  70. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(64).vir Trojan.GenericKD.3925861 Deleted
  71. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(53).vir=>[Subject: Order #59909][Date: Tue, 3 Apr 2018 13:06:45 +0600]=>DOC2182929709.zip=>DOC2182929709.js=>(INFECTED_JS) JS:Trojan.JS.Agent.SGP Deleted
  72. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(176).vir=>[Subject: Budget report][Date: Mon, 12 Sep 2016 20:57:22 +0700]=>fb1fe573a08d.zip=>(dummy) JS.TeslaCrypt.4.Gen Deleted
  73. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(40).vir=>[Subject: Courier was not able to deliver your parcel (ID07907895, U][Date: Fri, 30 Jun 2017 12:57:06 -0300]=>UPS-Package-07907895.zip=>UPS-Package-07907895=>UPS-Package-07907895.doc.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HZQ Deleted
  74. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(283).vir Trojan.GenericKD.6181923 Deleted
  75. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(77).vir=>[Subject: uk_confirmation_ph509169944.pdf][Date: Thu, 30 Mar 2017 16:42:36 +0530]=>uk_confirmation_ph509169944.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  76. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(54).vir Trojan.GenericKD.3790235 Deleted
  77. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(61).vir Trojan.Downloader.JS.SA Deleted
  78. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(21).vir=>[Subject: Your Amazon.com order has dispatched (#291-2608445-1000757][Date: Mon, 21 Nov 2016 15:07:48 +0530]=>ORDER-291-2608445-1000757.zip=>YHIOE303045.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HAZ Deleted
  79. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(55).vir=>[Subject: Message from KM_C224e][Date: Fri, 02 Jun 2017 15:42:21 +0530]=>skm_c224e47704213294.pdf=>810FY6KLZEW4739.docm=>word/vbaProject.bin VB:Trojan.VBA.Downloader.FI Deleted
  80. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(49).vir=>[Subject: 018648 =?iso-2022-jp?B?GyRCIVo4eDYmTkE2YkBBNWE9cSVHITwlP0F][Date: Wed, 6 Sep 2017 09:09:47 +0200]=>=?iso-2022-jp?b?gyrco1lkj0vbstwhshsoqjiwmtcumdkumduplnhscw= VB:Trojan.VBA.Agent.LW Deleted
  81. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(157).vir Trojan.GenericKD.5592324 Deleted
  82. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(48).vir=>[Subject: uk_confirmation_ph389067635.pdf][Date: Thu, 30 Mar 2017 17:24:37 +0530]=>uk_confirmation_ph389067635.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715278 Deleted
  83. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(50).vir=>[Subject: Payment Invoice #46607][Date: Tue, 3 Apr 2018 15:17:00 +0700]=>DOC2212438286.zip=>DOC2212438286.js=>(INFECTED_JS) JS:Trojan.JS.Agent.SGP Deleted
  84. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(123).vir=>[Subject: File COPY.29112016.0076.XLS Sent 29/11/2016][Date: Tue, 29 Nov 2016 21:28:24 +0530]=>COPY.29112016.0076.XLS X97M.Downloader.CB Deleted
  85. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(44).vir W97M.Downloader.LZ Deleted
  86. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(47).vir VB:Trojan.Agent.CZVU Deleted
  87. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(43).vir VB:Trojan.VBA.Agent.LW Deleted
  88. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(41).vir=>[Subject: Message from "RNP002673C84902"][Date: Tue, 08 Aug 2017 19:38:14 +0530]=>20170808193814.zip=>201708084410.js Trojan.GenericKD.5788494 Deleted
  89. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(169).vir=>xl/vbaProject.bin W97M.Downloader.EVY Deleted
  90. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(32).vir=>[Subject: Scan_130751][Date: Thu, 28 Dec 2017 19:51:51 +0300]=>Scan_130751.7z=>PDF_2457326.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  91. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(4).vir=>word/vbaProject.bin VB:Trojan.Valyria.543 Deleted
  92. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(190).vir Trojan.GenericKD.3934965 Deleted
  93. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(39).vir=>[Subject: Your Booking 14538307][Date: Thu, 30 Mar 2017 11:26:15 +0200]=>Direct-Documentation 14538307-1.zip=>Direct-Documentation 1530219.zip=>Direct-Documentation 1530219/Direct-Documentation 1530219.vbs VB:Trojan.Valyria.330 Deleted
  94. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(19).vir=>[Subject: Re: Enquiry][Date: Thu, 6 Aug 2015 02:38:03 -0700]=>P.O_001_UST-TRADE.jar=>c/CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzl.class Trojan.Java.Adwind.P Deleted
  95. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(38).vir VB:Trojan.VBA.Downloader.CQ Deleted
  96. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(231).vir=>word/vbaProject.bin VB:Trojan.Valyria.543 Deleted
  97. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(51).vir=>[Subject: Scanned document from HP ePrint user][Date: Mon, 30 Oct 2017 19:38:56 +0700]=>untitled-4.doc=>word/document.xml Trojan.Downloader.DDE.Gen.1 Deleted
  98. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(229).vir=>[Subject: Order 86173440 (Acknowledgement)][Date: Thu, 03 Nov 2016 20:32:59 +0300]=>Lx86173440.zip=>zMXDJX5248-1503.vbs Trojan.VBS.Downloader.ZC Deleted
  99. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(121).vir=>[Subject: Document_88529849][Date: Wed, 27 Dec 2017 17:57:49 +0300]=>document_88529849.7z=>Scan_38097849.js Trojan.JS.Downloader.IGK Moved to Quarantine
  100. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(36).vir W97M.Downloader.GNO Deleted
  101. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(37).vir=>[From: Hal <Hal@sabrilex.ru>][Date: Mon, 24 Jul 2017 13:14:23 +0200]=>IMG_1663.ZIP=>01258861149_20170411_826303.wsf Trojan.JS.Agent.QSM Deleted
  102. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(45).vir=>[Subject: Scan #89F0667135_289DD861BC][Date: Tue, 24 May 2016 06:05:04 -0800]=>MSG00000449120194.zip=>XLYG-4006858.js Trojan.GenericKD.3264133 Deleted
  103. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(34).vir VB:Trojan.Agent.CZVU Deleted
  104. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(41).vir=>[Subject: Message from "RNP002673C84902"][Date: Tue, 08 Aug 2017 19:38:14 +0530]=>20170808193814.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  105. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(33).vir=>[Subject: CCE28122017_004413][Date: Thu, 28 Dec 2017 05:07:54 -0700]=>CCE28122017_004413.7z=>CCE28122017_002133.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  106. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(13).vir=>[Subject: 31172 [recipient]][Date: Thu, 27 Apr 2017 15:36:09 -0000]=>7668442274917.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  107. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(299).vir=>[Subject: uk_confirmation_ph492070771.pdf][Date: Thu, 30 Mar 2017 13:19:57 +0200]=>uk_confirmation_ph492070771.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  108. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(109).vir=>[Subject: Message from KM_C224e][Date: Tue, 19 Sep 2017 03:33:48 +0800]=>20171809_61562124834.7z=>20170918_84047158233.vbs VB:Trojan.VBS.Downloader.ADW Moved to Quarantine
  109. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(30).vir=>[Subject: Message from KM_C224e][Date: Fri, 02 Jun 2017 16:14:27 +0530]=>skm_c224e97135190699.pdf=>656NVMPNEQM829.docm=>word/vbaProject.bin VB:Trojan.VBA.Downloader.FI Deleted
  110. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(138).vir=>word/vbaProject.bin W97M.Downloader.CDS Deleted
  111. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(216).vir W97m.Downloader.GNQ Deleted
  112. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(31).vir=>[Subject: Your Ticket #23428][Date: Fri, 16 Mar 2018 08:56:07 -1200]=>DOC4171785589-PDF.7z=>DOC4171785589-PDF.js=>(INFECTED_JS) JS:Trojan.JS.Agent.SFA Deleted
  113. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(224).vir=>[Subject: list of activities][Date: Tue, 26 Jul 2016 17:10:27 +0200]=>finn_2759.zip=>activities -CC7-..wsf Trojan.JS.Downloader.DRV Deleted
  114. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(277).vir=>word/document.xml Trojan.Msword.NYT Deleted
  115. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(298).vir=>[Subject: Status of invoice][Date: Mon, 18 Sep 2017 15:21:26 +0430]=>a2178960-44.7z=>44394795975.vbs Trojan.VBS.Downloader.ADV Moved to Quarantine
  116. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(3).vir W97M.Downloader.CUZ Deleted
  117. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(13).vir=>[Subject: 31172 [recipient]][Date: Thu, 27 Apr 2017 15:36:09 -0000]=>7668442274917.zip=>16324.js=>(INFECTED_JS) JS.Remucod.2.Gen Deleted
  118. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(154).vir=>[Subject: PAYMENT][Date: Wed, 16 Aug 2017 16:26:03 +0530]=>20170816040630314.rar=>20170816715641217.js Trojan.JS.Agent.QVF Moved to Quarantine
  119. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(297).vir=>[Subject: ][Date: Tue, 27 Jun 2017 14:34:48 -0000]=>email_9530546474_[recipient's name].zip=>24703.zip=>24703.js=>(INFECTED_JS) JS:Trojan.Cryxos.960 Deleted
  120. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(295).vir VB:Trojan.Agent.CZVU Deleted
  121. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(291).vir=>(objdata) Exploit.RTF-ObfsStrm.Gen Deleted
  122. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(251).vir=>[Subject: eVoice Voicemail (Callback: 381-381-5001)][Date: Thu, 26 Apr 2018 15:08:25 +0300]=>wav213F.2018042615021.zip=>wav213F.2018042615021.url Trojan.Downloader.URI.Gen Deleted
  123. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(112).vir=>[From: <mathias.heinrich@web.de>][Date: Fri, 13 Jan 2017 14:28:10 -0000]=>6225549306381.zip=>5274.doc VB:Trojan.Valyria.80 Deleted
  124. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(29).vir Trojan.GenericKD.12555822 Deleted
  125. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(113).vir=>[Subject: ][Date: Tue, 03 Oct 2017 22:48:33 -0000]=>28275.zip=>17317.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  126. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(287).vir VB:Trojan.Valyria.62 Deleted
  127. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(285).vir=>[Subject: Scan_386530][Date: Wed, 27 Dec 2017 21:19:14 +0530]=>scan_386530.7z=>Document_22998278.js Trojan.JS.Downloader.IGK Moved to Quarantine
  128. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(233).vir=>[Subject: Your Amazon.com order has dispatched (#478-9353190-9763851][Date: Mon, 21 Nov 2016 15:05:30 +0530]=>ORDER-478-9353190-9763851.zip=>OBMFOR383123.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HAZ Deleted
  129. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(116).vir Trojan.Downloader.JS.SA Deleted
  130. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(292).vir=>[Subject: IMG_3679.JPEG][Date: Tue, 08 Aug 2017 21:42:44 +0100]=>img_3679.zip=>IMG_9456.js Trojan.JS.Downloader.IBF Deleted
  131. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(282).vir=>[Subject: uk_confirmation_ph380268598.pdf][Date: Thu, 30 Mar 2017 16:50:56 +0500]=>uk_confirmation_ph380268598.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  132. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(286).vir=>[Subject: Website Job Application][Date: Thu, 16 Nov 2017 09:18:25 +0100]=>Ruth's Resume.doc W97m.Downloader.GMA Deleted
  133. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(297).vir=>[Subject: ][Date: Tue, 27 Jun 2017 14:34:48 -0000]=>email_9530546474_[recipient's name].zip=>24703.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  134. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(226).vir Trojan.GenericKD.3931190 Deleted
  135. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(280).vir=>[Subject: File COPY.29112016.94437.XLS Sent 29/11/2016][Date: Tue, 29 Nov 2016 21:13:10 +0530]=>COPY.29112016.94437.XLS X97M.Downloader.CE Deleted
  136. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(100).vir=>[Subject: Please find attached invoice no: 8478912583][Date: Mon, 12 Sep 2016 20:32:18 +0800]=>pmBF2EE7B7.zip=>22P5R06.wsf Gen:Heur.JS.Downloader.2 Deleted
  137. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(293).vir W97m.Downloader.GMA Deleted
  138. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(281).vir=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  139. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(167).vir=>[Subject: Re:][Date: Tue, 24 May 2016 14:27:51 +0200]=>to_sign_inv_1D3A514A.zip=>customers 578.wsf Trojan.JS.Agent.LMB Deleted
  140. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(278).vir W97M.Dropper.AE Deleted
  141. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(196).vir VB:Trojan.Agent.CZVU Deleted
  142. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(28).vir Trojan.GenericKD.3789595 Deleted
  143. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(274).vir=>[Subject: 50138 [recipient]][Date: Thu, 27 Apr 2017 11:55:12 -0000]=>84296497.zip=>17779.zip=>17779.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HVH Deleted
  144. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(193).vir Trojan.GenericKD.3994176 Deleted
  145. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(126).vir Trojan.GenericKD.12002525 Deleted
  146. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(177).vir=>[From: <info@snowandice.com>][Date: Wed, 18 Jan 2017 15:12:28 -0000]=>EMAIL_89868_[recipient].zip=>23079_ZIP.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  147. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(273).vir=>[Subject: Document invoice_205_sign_and_return.pdf is complete][Date: Tue, 10 Oct 2017 15:30:41 +0430]=>invoice_205_sign_and_return.7z=>invoice_64789_sign_and_return.vbs VB:Trojan.Agent.COFZ Moved to Quarantine
  148. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(136).vir=>[From: Emilia <Emilia@messerknecht.ch>][Date: Mon, 24 Jul 2017 18:55:13 +0700]=>IMG_4518.ZIP=>01258861149_20170411_402800.wsf Trojan.JS.Agent.QSM Deleted
  149. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(271).vir=>[Subject: uk_confirmation_ph083380077.pdf][Date: Thu, 30 Mar 2017 19:39:30 +0530]=>uk_confirmation_ph083380077.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4716377 Deleted
  150. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(171).vir=>[Subject: avviso di pagamento 21/11/2017][Date: Tue, 21 Nov 2017 10:27:43 +0100]=>94134_[removed].xls VB:Trojan.VBA.Downloader.HT Deleted
  151. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(270).vir=>(objdata)=>(Embedded DocFile g) Exploit.CVE-2017-0199.Gen Deleted
  152. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(106).vir=>[Subject: FW: Invoice][Date: Thu, 28 Apr 2016 20:23:36 +0700]=>craig-forward_2107EF.zip=>bf3f834.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HT Deleted
  153. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(168).vir Trojan.Downloader.JS.SA Deleted
  154. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(268).vir=>[Subject: Invoice INV0000104][Date: Thu, 07 Dec 2017 10:59:52 +0100]=>invoice inv0000104.7z=>Invoice INV0000138.vbs VB:Trojan.VBS.Agent.AQF Moved to Quarantine
  155. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(178).vir=>[Subject: Financial statement][Date: Fri, 22 Jul 2016 05:09:25 +0700]=>rhonda_330F92.zip=>INV000 da0.js Trojan.JS.Agent.MJC Deleted
  156. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(275).vir=>[Subject: Order 24605687 (Acknowledgement)][Date: Thu, 03 Nov 2016 11:22:56 -0500]=>TXymLf24605687.zip=>TmUPy382-1682.vbs Trojan.VBS.Downloader.ZC Deleted
  157. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(194).vir Trojan.GenericKD.6204055 Deleted
  158. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(274).vir=>[Subject: 50138 [recipient]][Date: Thu, 27 Apr 2017 11:55:12 -0000]=>84296497.zip=>17779.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  159. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(27).vir Trojan.GenericKD.12589066 Deleted
  160. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(155).vir=>[Subject: Emailing: IMG_20171221_501005613, IMG_20171221_798070330, ][Date: Thu, 21 Dec 2017 22:24:32 +0700]=>img_20171221_501005613.7z=>IMG_20171221_312327133.js Trojan.JS.Downloader.Nemucod.BL Moved to Quarantine
  161. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(186).vir VB:Trojan.Agent.CZVU Deleted
  162. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(150).vir=>[Subject: UPS Tracking Number for shipment H6902644376][Date: Fri, 28 Apr 2017 14:01:40 +0400]=>H6902644376.rar=>H6902644376.js Trojan.GenericKD.4953926 Moved to Quarantine
  163. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(263).vir=>[Subject: uk_confirmation_ph097166710.pdf][Date: Thu, 30 Mar 2017 13:45:46 +0100]=>uk_confirmation_ph097166710.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715278 Deleted
  164. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(175).vir W97m.Downloader.GNQ Deleted
  165. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(269).vir=>[Subject: Website Job Application][Date: Wed, 15 Nov 2017 06:27:48 +0100]=>Mary's Resume.doc VB:Trojan.Valyria.983 Deleted
  166. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(270).vir=>(objdata)=>() Exploit.CVE-2017-0199.Gen Deleted
  167. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(266).vir=>[Subject: SAFARI LPO [MAL] 988284][Date: Tue, 24 May 2016 20:16:35 +0700]=>LPOMAL988284-C163-1708089.zip=>LIT-1803889.js Trojan.GenericKD.3264118 Deleted
  168. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(262).vir=>[Subject: Account Statement][Date: Thu, 25 Jan 2018 04:34:42 -0800]=>114755590.7z=>114755590.vbs Trojan.Agent.CUAI Moved to Quarantine
  169. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(184).vir=>[Subject: Please find attached a XLS Invoice 55935][Date: Tue, 29 Nov 2016 17:07:04 +0530]=>INVOICE.TAM_55935_20161129_055BB65DD.xls Trojan.GenericKD.3790082 Deleted
  170. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(261).vir W97M.Downloader.IF Deleted
  171. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(260).vir VB:Trojan.Valyria.773 Deleted
  172. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(26).vir VB:Trojan.Valyria.1658 Deleted
  173. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(117).vir=>[Subject: New Doc 2017-10-02 - Page 1]=>new doc 2017-10-02 - page 1.7z=>New Doc 2017-10-02 - Page 2 -8300.js=>(INFECTED_JS) JS:Trojan.JS.Agent.QYD Moved to Quarantine
  174. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(258).vir VB:Trojan.Agent.CZVU Deleted
  175. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(170).vir VB:Trojan.Agent.CZVU Deleted
  176. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(259).vir=>[Subject: Invoice][Date: Wed, 01 Nov 2017 17:44:52 +0530]=>49545_Invoice.doc Trojan.GenericKD.6181525 Deleted
  177. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(142).vir=>[Subject: Re: P.0 18003.][Date: Thu, 6 Aug 2015 03:01:35 -0700]=>P.O_18003.jar=>CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzl.class Java.Trojan.GenericGB.19948 Deleted
  178. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(257).vir VB:Trojan.Agent.CZVU Deleted
  179. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(254).vir=>[Subject: Emailing: IMG_20171221_167023012, IMG_20171221_911069898, ][Date: Thu, 21 Dec 2017 16:34:47 -0200]=>img_20171221_167023012.7z=>IMG_20171221_508871502.js Trojan.JS.Downloader.IGF Moved to Quarantine
  180. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(133).vir=>[Subject: 26567 [recipient]][Date: Thu, 27 Apr 2017 18:00:26 -0000]=>3.zip=>23759.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  181. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(173).vir VB:Trojan.Agent.CZVU Deleted
  182. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(264).vir=>xl/vbaProject.bin VB:Trojan.Valyria.211 Deleted
  183. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(183).vir Trojan.GenericKD.3789563 Deleted
  184. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(159).vir=>[Subject: You have a new secure communication ][Date: Wed, 2 Aug 2017 13:39:41 -0400]=>SecureCommunication.doc Trojan.Doc.Agent.FV Deleted
  185. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(242).vir=>[Subject: FW: Invoice][Date: Thu, 28 Apr 2016 19:45:31 +0530]=>68BBC_scan-invoice_1888CD.zip=>e7bdaa4.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HT Deleted
  186. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(40).vir=>[Subject: Courier was not able to deliver your parcel (ID07907895, U][Date: Fri, 30 Jun 2017 12:57:06 -0300]=>UPS-Package-07907895.zip=>(dummy) JS.TeslaCrypt.4.Gen Deleted
  187. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(250).vir=>[Subject: ][Date: Tue, 03 Oct 2017 19:30:12 -0000]=>04143368910.zip=>11150.zip=>11150.js=>(INFECTED_JS) JS:Trojan.Cryxos.1289 Deleted
  188. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(249).vir=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  189. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(247).vir=>word/vbaProject.bin VB:Trojan.Valyria.543 Deleted
  190. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(209).vir=>[From: <sherryloveless@gmail.com>][Date: Thu, 19 Jan 2017 16:57:47 -0000]=>505635089.zip=>(dummy) Trojan.Oroles.Gen.2 Deleted
  191. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(248).vir=>word/vbaProject.bin VB:Trojan.Valyria.405 Deleted
  192. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(189).vir=>[Subject: CCE28122017_007792][Date: Thu, 28 Dec 2017 15:19:54 +0300]=>CCE28122017_007792.7z=>CCE28122017_008328.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  193. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(245).vir=>word/document.xml Trojan.Downloader.DDE.Gen.1 Deleted
  194. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(255).vir=>[From: <jiggymovementbusiness@gmail.com>][Date: Thu, 19 Jan 2017 16:52:30 -0000]=>EMAIL_327120_[recipient].zip=>22230_ZIP.zip=>22230.doc VB:Trojan.Valyria.138 Deleted
  195. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(174).vir Trojan.JS.RKN Deleted
  196. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(204).vir=>[Subject: PDF_69898][Date: Thu, 28 Dec 2017 20:52:52 +0300]=>PDF_69898.7z=>PDF_6342214.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  197. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(227).vir=>[From: <[recipient]@rma.usda.gov>][Date: Thu, 20 Apr 2017 09:53:39 -0000]=>EMAIL_1874513753_[recipient].zip=>18092.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  198. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(246).vir=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  199. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(161).vir=>[Subject: Please find attached a XLS Invoice 42709][Date: Tue, 29 Nov 2016 03:21:09 -0700]=>INVOICE.TAM_42709_20161129_A805F73C0.xls Trojan.GenericKD.3790281 Deleted
  200. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(243).vir=>[Subject: File COPY.29112016.494446.XLS Sent 29/11/2016][Date: Tue, 29 Nov 2016 21:21:01 +0530]=>COPY.29112016.494446.XLS X97M.Downloader.CC Deleted
  201. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(162).vir VB:Trojan.VBA.Downloader.GQ Deleted
  202. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(24).vir=>[From: <4070703@web.de>][Date: Fri, 28 Jul 2017 22:17:12 -0000]=>EMAIL_537710951959_[recipient].zip=>01637815.zip=>DIy.js=>(INFECTED_JS) JS:Trojan.Cryxos.1145 Deleted
  203. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(120).vir=>[Subject: Re:][Date: Tue, 24 May 2016 18:44:40 +0530]=>to_sign_inv_19D6F7A3.zip=>customers 040.wsf Gen:Heur.JS.Downloader.1 Deleted
  204. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(239).vir VB:Trojan.Valyria.138 Deleted
  205. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(127).vir W97M.Downloader.GCY Deleted
  206. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(208).vir Trojan.GenericKD.5806167 Deleted
  207. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(237).vir=>[Subject: Message from KM_C224e][Date: Fri, 02 Jun 2017 15:36:38 +0530]=>skm_c224e27127577722.pdf=>745FVHCXUFN614.docm=>word/vbaProject.bin VB:Trojan.VBA.Downloader.FI Deleted
  208. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(236).vir VB:Trojan.Agent.CZVU Deleted
  209. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(235).vir=>[Subject: uk_confirmation_ph633892641.pdf][Date: Thu, 30 Mar 2017 19:38:31 +0530]=>uk_confirmation_ph633892641.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4716377 Deleted
  210. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(234).vir Trojan.Exploit.MSOfficeWord.GenericKDS.30602583 Deleted
  211. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(244).vir=>(objdata)=>() Exploit.CVE-2017-0199.Gen Deleted
  212. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(152).vir=>[Subject: Payment_1479][Date: Mon, 31 Jul 2017 14:58:07 +0300]=>P1479.zip=>42421.2017-07-31_15.10.22.vbs Trojan.VBS Deleted
  213. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(23).vir=>[Subject: Emailed Invoice - 631798]=>i_631798.7z=>I_362789.js=>(INFECTED_JS) JS:Trojan.JS.Agent.QYD Moved to Quarantine
  214. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(228).vir W97M.Downloader.CUZ Deleted
  215. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(133).vir=>[Subject: 26567 [recipient]][Date: Thu, 27 Apr 2017 18:00:26 -0000]=>3.zip=>23759.zip=>23759.js=>(INFECTED_JS) JS:Trojan.JS.Downloader.HVH Deleted
  216. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(227).vir=>[From: <[recipient]@rma.usda.gov>][Date: Thu, 20 Apr 2017 09:53:39 -0000]=>EMAIL_1874513753_[recipient].zip=>18092.zip=>18092.js=>(INFECTED_JS) JS:Trojan.Cryxos.620 Deleted
  217. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(225).vir Trojan.GenericKD.12412767 Deleted
  218. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(187).vir=>[Subject: File COPY.29112016.61652.XLS Sent 29=>11=>2016][Date: Tue, 29 Nov 2016 18:07:40 +0300]=>COPY.29112016.61652.XLS=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  219. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(177).vir=>[From: <info@snowandice.com>][Date: Wed, 18 Jan 2017 15:12:28 -0000]=>EMAIL_89868_[recipient].zip=>23079_ZIP.zip=>23079.js Trojan.GenericKD.4412397 Deleted
  220. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(232).vir=>[Subject: Message from "RNP002673C28069"][Date: Tue, 08 Aug 2017 05:15:41 -0500]=>20170808051541.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  221. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(223).vir W97m.Downloader.GBT Deleted
  222. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(222).vir VB:Trojan.Agent.CZVU Deleted
  223. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(148).vir X97M.Downloader.H Deleted
  224. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(220).vir=>[Subject: File_348087][Date: Thu, 28 Dec 2017 23:23:55 +0600]=>File_348087.7z=>Copy_64549058.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  225. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(219).vir Trojan.GenericKD.5085797 Deleted
  226. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(218).vir W97m.Downloader.GPX Deleted
  227. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(212).vir=>[Subject: 24007 [recipient]][Date: Thu, 27 Apr 2017 11:07:14 -0000]=>1473818521163.zip=>6307.js=>(INFECTED_JS) JS.Remucod.2.Gen Deleted
  228. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(217).vir W97M.Downloader.GNO Deleted
  229. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(215).vir=>[Subject: Supplement payment 4158120230][Date: Wed, 11 Oct 2017 16:44:14 +0700]=>F4158120230_11102017.7z=>F8906797410.vbs VB:Trojan.VBS.Agent.AOM Moved to Quarantine
  230. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(18).vir=>[Subject: Status of invoice][Date: Mon, 18 Sep 2017 16:39:33 +0300]=>a2179187-37.7z=>41431435149.vbs Trojan.VBS.Downloader.ADV Moved to Quarantine
  231. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(137).vir=>[Subject: Your Booking 04320655][Date: Thu, 30 Mar 2017 15:52:31 +0530]=>Direct-Documentation 04320655-1.zip=>Direct-Documentation 1530219.zip=>Direct-Documentation 1530219/Direct-Documentation 1530219.vbs VB:Trojan.Valyria.330 Deleted
  232. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(22).vir Trojan.GenericKD.40207607 Deleted
  233. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(57).vir=>[Subject: Please recheck your delivery address (UPS parcel 06520201)][Date: Sun, 2 Jul 2017 04:03:54 +0800]=>UPS-Package-06520201.zip=>UPS-Package-06520201=>UPS-Package-06520201.doc.js=>(INFECTED_JS) JS:Trojan.Agent.CIYK Deleted
  234. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(209).vir=>[From: <sherryloveless@gmail.com>][Date: Thu, 19 Jan 2017 16:57:47 -0000]=>505635089.zip=>8970_ZIP.zip=>8970.doc VB:Trojan.MSWord.Downloader.CD Deleted
  235. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(203).vir=>word/vbaProject.bin W97M.Bendis.CC Deleted
  236. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(202).vir=>[Subject: uk_confirmation_ph398437058.pdf][Date: Thu, 30 Mar 2017 17:36:06 +0530]=>uk_confirmation_ph398437058.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715278 Deleted
  237. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(57).vir=>[Subject: Please recheck your delivery address (UPS parcel 06520201)][Date: Sun, 2 Jul 2017 04:03:54 +0800]=>UPS-Package-06520201.zip=>(dummy) JS.TeslaCrypt.4.Gen Deleted
  238. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(200).vir=>[Subject: CCE28122017_004928][Date: Thu, 28 Dec 2017 20:09:58 +0600]=>CCE28122017_004928.7z=>CCE28122017_005204.vbs Trojan.VBS.Downloader.AFR Moved to Quarantine
  239. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(20).vir VB:Trojan.Agent.CZVU Deleted
  240. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(179).vir=>[From: <g_yorum35@windowslive.com>][Date: Thu, 19 Jan 2017 15:53:03 -0000]=>EMAIL_6161214_[recipient].zip=>32449_ZIP.zip=>32449.doc VB:Trojan.Valyria.138 Deleted
  241. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(199).vir=>[Subject: Message from KM_C224e][Date: Fri, 02 Jun 2017 15:43:17 +0530]=>skm_c224e31729375367.pdf=>307AKH56YVU512.docm Trojan.GenericKD.5249552 Deleted
  242. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(195).vir=>[Subject: Emailing: IMG_20171221_855525309, IMG_20171221_558874225, ][Date: Thu, 21 Dec 2017 13:03:01 +0100]=>img_20171221_855525309.7z=>IMG_20171221_968347573.js Trojan.JS.Downloader.IGE Moved to Quarantine
  243. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(142).vir=>[Subject: Re: P.0 18003.][Date: Thu, 6 Aug 2015 03:01:35 -0700]=>P.O_18003.jar=>c/CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzl.class Trojan.Java.Adwind.P Deleted
  244. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(212).vir=>[Subject: 24007 [recipient]][Date: Thu, 27 Apr 2017 11:07:14 -0000]=>1473818521163.zip=>(dummy) Trojan.Oroles.Gen.8 Deleted
  245. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(111).vir=>[Subject: Receipt 77077-14409][Date: Mon, 24 Oct 2016 19:26:36 +0530]=>Receipt=>Receipt 34469-690103.wsf Trojan.JS.Downloader.FXY Deleted
  246. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(142).vir=>[Subject: Re: P.0 18003.][Date: Thu, 6 Aug 2015 03:01:35 -0700]=>P.O_18003.jar=>CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzf.class Trojan.Java.Adwind.P Deleted
  247. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(192).vir=>[Subject: Status of invoice][Date: Mon, 18 Sep 2017 20:55:39 +0700]=>a2176576-71.7z=>32028947946.vbs Trojan.VBS.Downloader.ADV Moved to Quarantine
  248. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(188).vir=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  249. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(185).vir=>xl/vbaProject.bin W97M.Downloader.EVY Deleted
  250. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(17).vir=>[Subject: Fw:][Date: Tue, 12 Jul 2016 16:02:19 +0200]=>susan_copies_104906.zip=>-SWIFT-43f-.js Generic.JS.DownloaderAG.04355846 Deleted
  251. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(19).vir=>[Subject: Re: Enquiry][Date: Thu, 6 Aug 2015 02:38:03 -0700]=>P.O_001_UST-TRADE.jar=>CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzl.class Java.Trojan.GenericGB.19948 Deleted
  252. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(105).vir=>[Subject: File COPY.29112016.2456.XLS Sent 29=>11=>2016][Date: Tue, 29 Nov 2016 23:30:00 +0700]=>COPY.29112016.2456.XLS=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  253. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(180).vir=>xl/vbaProject.bin X97M.Downloader.CL Deleted
  254. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(176).vir=>[Subject: Budget report][Date: Mon, 12 Sep 2016 20:57:22 +0700]=>fb1fe573a08d.zip=>863AEEA3 Budget_report_xls - 1.js Generic.JS.NemucodA.AD350CF4 Deleted
  255. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(19).vir=>[Subject: Re: Enquiry][Date: Thu, 6 Aug 2015 02:38:03 -0700]=>P.O_001_UST-TRADE.jar=>Main.class Trojan.Java.Adwind.P Deleted
  256. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(265).vir=>[Subject: IMG_5890.GIF][Date: Wed, 09 Aug 2017 03:50:51 +0700]=>img_5890.zip=>IMG_2361.js=>(INFECTED_JS) JS:Trojan.Downloader.JTQX Deleted
  257. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(176).vir=>[Subject: Budget report][Date: Mon, 12 Sep 2016 20:57:22 +0700]=>fb1fe573a08d.zip=>863AEEA3 Budget_report_xls.js Generic.JS.NemucodA.AD350CF4 Deleted
  258. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(19).vir=>[Subject: Re: Enquiry][Date: Thu, 6 Aug 2015 02:38:03 -0700]=>P.O_001_UST-TRADE.jar=>CBRaYGoSqAslV5N2LMjnAIfijUjaJw7cErINltFlUD2VbarFqfRtVTJ0jQ1ZQw2ZXMvqCZgaMwILaBVbxFi6Y7TJPbEji4uI2v6UxnZQwf9tWlUTQzWCr4RcxwTV8UVadJ5IqdhlgRwS6HjzmTpm3fHEHl4Rzipdgrgr0qn7htqJtcFndtcioul6fejHJ0JNDkFuCjnjDalba4Jb1dRaA75JCpu0wu1rhydnX5595ikAB6sw2tfnQoC6Dr1mtlYLEYNBGK6E9ZKjSYJgksNnQEYHJ7ygVPAKzf.class Trojan.Java.Adwind.P Deleted
  259. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(165).vir=>[Subject: File COPY.29112016.6922.XLS Sent 29=>11=>2016][Date: Tue, 29 Nov 2016 16:03:09 +0200]=>COPY.29112016.6922.XLS=>xl/vbaProject.bin Trojan.MSWord.Downloader.AS Deleted
  260. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(164).vir=>[Subject: ][Date: Wed, 02 Aug 2017 12:34:09 -0000]=>EMAIL_3365126820_[recipient].zip=>40613.zip=>pHzI.js=>(INFECTED_JS) JS:Trojan.Cryxos.1223 Deleted
  261. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(177).vir=>[From: <info@snowandice.com>][Date: Wed, 18 Jan 2017 15:12:28 -0000]=>EMAIL_89868_[recipient].zip=>(dummy) Trojan.Oroles.Gen.2 Deleted
  262. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(163).vir=>[Subject: Updated][Date: Tue, 28 Jun 2016 01:17:19 +0300]=>update_greg_015676.zip=>swift c9eb.js Generic.JS.DownloaderAG.1508ACD3 Deleted
  263. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(16).vir VB:Trojan.Agent.CZVU Deleted
  264. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(130).vir VB:Trojan.Valyria.11 Deleted
  265. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(211).vir Trojan.Doc.Agent.FC Deleted
  266. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(179).vir=>[From: <g_yorum35@windowslive.com>][Date: Thu, 19 Jan 2017 15:53:03 -0000]=>EMAIL_6161214_[recipient].zip=>(dummy) Trojan.Oroles.Gen.2 Deleted
  267. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(151).vir=>[Subject: Emailing: 3772626][Date: Mon, 04 Dec 2017 17:54:50 +0530]=>3772626.7z=>IMG_9198.vbs Trojan.GenericKD.12653163 Moved to Quarantine
  268. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(147).vir=>[From: <panakova@technicalmuseum.cz>][Date: Thu, 19 Jan 2017 14:35:12 -0000]=>EMAIL_608170693_[recipient].zip=>13622_ZIP.zip=>13622.doc VB:Trojan.Valyria.138 Deleted
  269. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(128).vir=>[Subject: uk_confirmation_ph937798943.pdf][Date: Thu, 30 Mar 2017 17:09:02 +0530]=>uk_confirmation_ph937798943.zip=>uk_confirmation_ph954869378.zip=>uk_confirmation_ph954869378.exe Trojan.GenericKD.4715170 Deleted
  270. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(14).vir=>[Subject: Document invoice_252_sign_and_return.pdf is complete][Date: Tue, 10 Oct 2017 15:54:30 +0530]=>invoice_252_sign_and_return.7z=>invoice_12397_sign_and_return.vbs VB:Trojan.Agent.COFZ Moved to Quarantine
  271. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(12).vir=>[Subject: Payment Invoice #08152][Date: Tue, 3 Apr 2018 22:02:18 +0800]=>DOC2708740260.zip=>DOC2708740260.js Trojan.GenericKD.30537540 Deleted
  272. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(134).vir=>[Subject: CCE26122017_000092][Date: Tue, 26 Dec 2017 21:54:53 +0700]=>CCE26122017_000092.7z=>CCE26122017_43632.js Trojan.JS.Downloader.IGK Moved to Quarantine
  273. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(131).vir=>[Subject: Invoice][Date: Wed, 01 Nov 2017 17:03:59 +0530]=>328731_Invoice.doc Trojan.GenericKD.6180824 Deleted
  274. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(132).vir=>[Subject: Copy_74025343][Date: Wed, 27 Dec 2017 21:06:49 +0430]=>copy_74025343.7z=>File_42284200.js Trojan.JS.Downloader.IGK Moved to Quarantine
  275. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(103).vir=>[Subject: [ IMPORTANTE ] DENUNCIA DE RACISMO EM SEU PERFIL - 5301438][Date: Fri, 4 Nov 2016 12:30:22 +0000 (UTC)]=>(message body) Trojan.Scam.LN Deleted
  276. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(147).vir=>[From: <panakova@technicalmuseum.cz>][Date: Thu, 19 Jan 2017 14:35:12 -0000]=>EMAIL_608170693_[recipient].zip=>(dummy) Trojan.Oroles.Gen.2 Deleted
  277. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(113).vir=>[Subject: ][Date: Tue, 03 Oct 2017 22:48:33 -0000]=>28275.zip=>17317.zip=>17317.js=>(INFECTED_JS) JS:Trojan.Cryxos.1289 Deleted
  278. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(119).vir VB:Trojan.VBA.Agent.KD Deleted
  279. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(142).vir=>[Subject: Re: P.0 18003.][Date: Thu, 6 Aug 2015 03:01:35 -0700]=>P.O_18003.jar=>Main.class Trojan.Java.Adwind.P Deleted
  280. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(118).vir=>[Subject: Please find attached a XLS Invoice 844370][Date: Tue, 29 Nov 2016 12:38:56 +0200]=>INVOICE.TAM_844370_20161129_3B7365ECB.xls Trojan.GenericKD.3790182 Deleted
  281. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(114).vir=>[Subject: Xenos Allen][Date: Tue, 10 May 2016 20:31:23 +0700]=>181j28.3797-x.dot=>word/vbaProject.bin W97M.Downloader.CDS Deleted
  282. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(104).vir=>[Subject: Scanned image][Date: Wed, 06 Dec 2017 19:48:53 +0530]=>20171206262405.7z=>20171206506954.vbs Trojan.GenericKD.12659047 Moved to Quarantine
  283. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(107).vir W97m.Downloader.GNQ Deleted
  284. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(101).vir=>[Subject: ACH Payment Advice][Date: Thu, 03 May 2018 10:27:30 -0600]=>Scan.doc VB:Trojan.Valyria.1734 Deleted
  285. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(110).vir=>[Subject: Image][Date: Mon, 12 Sep 2016 09:21:38 -0400]=>IG_20160830_9_9_01_Pro.zip=>05omKt2S13.wsf Gen:Heur.JS.Downloader.2 Deleted
  286. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(10).vir=>[Subject: Lisa Maloney manager FedEx][Date: Wed, 28 Mar 2018 22:00:29 +0100]=>TF.48678398483.zip=>TF.48678398483/TF.48678398483.bat Generic.Bat.Downloader.1.97D29B5A Deleted
  287. C:\Users\Administrator.SXCSXC-AJKJJUBR\Desktop\VirusSamples_50\Samp(115).vir=>[Subject: 1 Unread Message of High Priority][Date: Tue, 03 May 2016 14:23:47 +0200]=>detail_robert_919012.zip=>finInfo6506.js=>(INFECTED_JS)
复制代码



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
command360
发表于 2018-8-20 20:28:30 | 显示全部楼层
本帖最后由 command360 于 2018-8-20 20:43 编辑

火绒 20:35
隔离:166/300
修复:83/300

Total:249/300 (83%)

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
dreams521
发表于 2018-8-20 20:28:41 | 显示全部楼层
本帖最后由 dreams521 于 2018-8-20 21:02 编辑

卡巴  20:36     170+(26)/300     65%
PS:26个属于修复样本,剩余样本包含其中所以添加在检出样本.


20.08.2018 20.34.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(115).vir;C:\Users\Administrator\Desktop\123\Samp(115).vir;08/20/2018 20:34:42
20.08.2018 20.34.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(115).vir//data0000//finInfo6506.js;C:\Users\Administrator\Desktop\123\Samp(115).vir//data0000//finInfo6506.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:42
20.08.2018 20.34.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(21).vir;C:\Users\Administrator\Desktop\123\Samp(21).vir;08/20/2018 20:34:39
20.08.2018 20.34.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(21).vir//data0000//YHIOE303045.js;C:\Users\Administrator\Desktop\123\Samp(21).vir//data0000//YHIOE303045.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:39
20.08.2018 20.34.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(232).vir//data0000//201708085655.js;C:\Users\Administrator\Desktop\123\Samp(232).vir//data0000//201708085655.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:36
20.08.2018 20.34.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(232).vir;C:\Users\Administrator\Desktop\123\Samp(232).vir;08/20/2018 20:34:36
20.08.2018 20.34.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(233).vir//data0000//OBMFOR383123.js;C:\Users\Administrator\Desktop\123\Samp(233).vir//data0000//OBMFOR383123.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:32
20.08.2018 20.34.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(233).vir;C:\Users\Administrator\Desktop\123\Samp(233).vir;08/20/2018 20:34:32
20.08.2018 20.34.29;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(292).vir//data0000//IMG_9456.js;C:\Users\Administrator\Desktop\123\Samp(292).vir//data0000//IMG_9456.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:29
20.08.2018 20.34.29;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(292).vir;C:\Users\Administrator\Desktop\123\Samp(292).vir;08/20/2018 20:34:29
20.08.2018 20.34.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000//201708084410.js;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000//201708084410.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:26
20.08.2018 20.34.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0001;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0001;Trojan-Downloader.JS.Agent.nxn;木马程序;08/20/2018 20:34:26
20.08.2018 20.34.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:34:26
20.08.2018 20.34.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000//word/vbaProject.bin//Module2;C:\Users\Administrator\Desktop\123\Samp(41).vir//data0000//word/vbaProject.bin//Module2;Trojan-Downloader.MSWord.Agent.bim;木马程序;08/20/2018 20:34:26
20.08.2018 20.34.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(41).vir;C:\Users\Administrator\Desktop\123\Samp(41).vir;08/20/2018 20:34:26
20.08.2018 20.34.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(82).vir//data0000//JVCKEE503541.js;C:\Users\Administrator\Desktop\123\Samp(82).vir//data0000//JVCKEE503541.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:34:22
20.08.2018 20.34.22;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(82).vir;C:\Users\Administrator\Desktop\123\Samp(82).vir;08/20/2018 20:34:22
20.08.2018 20.34.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(84).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(84).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:34:13
20.08.2018 20.34.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(84).vir;C:\Users\Administrator\Desktop\123\Samp(84).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:34:13
20.08.2018 20.34.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(31).vir;C:\Users\Administrator\Desktop\123\Samp(31).vir;08/20/2018 20:34:04
20.08.2018 20.34.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(31).vir//data0000//DOC4171785589-PDF.js;C:\Users\Administrator\Desktop\123\Samp(31).vir//data0000//DOC4171785589-PDF.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:34:04
20.08.2018 20.33.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(37).vir//data0000//01258861149_20170411_826303.wsf;C:\Users\Administrator\Desktop\123\Samp(37).vir//data0000//01258861149_20170411_826303.wsf;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:33:59
20.08.2018 20.33.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(37).vir;C:\Users\Administrator\Desktop\123\Samp(37).vir;08/20/2018 20:33:59
20.08.2018 20.33.56;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(24).vir//data0000//01637815.zip//DIy.js;C:\Users\Administrator\Desktop\123\Samp(24).vir//data0000//01637815.zip//DIy.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:56
20.08.2018 20.33.56;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(24).vir;C:\Users\Administrator\Desktop\123\Samp(24).vir;08/20/2018 20:33:56
20.08.2018 20.33.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(27).vir;C:\Users\Administrator\Desktop\123\Samp(27).vir;08/20/2018 20:33:50
20.08.2018 20.33.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(27).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(27).vir//data0000;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:50
20.08.2018 20.33.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(27).vir//data0000//JIM;C:\Users\Administrator\Desktop\123\Samp(27).vir//data0000//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:50
20.08.2018 20.33.13;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(22).vir//ThisWorkbook;C:\Users\Administrator\Desktop\123\Samp(22).vir//ThisWorkbook;Trojan-Downloader.MSWord.Agent.byc;木马程序;08/20/2018 20:33:13
20.08.2018 20.33.13;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(22).vir;C:\Users\Administrator\Desktop\123\Samp(22).vir;08/20/2018 20:33:13
20.08.2018 20.33.11;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(26).vir;C:\Users\Administrator\Desktop\123\Samp(26).vir;08/20/2018 20:33:11
20.08.2018 20.33.11;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(26).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(26).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.bzi;木马程序;08/20/2018 20:33:11
20.08.2018 20.33.09;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(28).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(28).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:33:09
20.08.2018 20.33.09;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(28).vir;C:\Users\Administrator\Desktop\123\Samp(28).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:33:09
20.08.2018 20.33.08;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(29).vir;C:\Users\Administrator\Desktop\123\Samp(29).vir;08/20/2018 20:33:08
20.08.2018 20.33.08;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(29).vir//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(29).vir//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:33:08
20.08.2018 20.33.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(35).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(35).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:06
20.08.2018 20.33.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(35).vir;C:\Users\Administrator\Desktop\123\Samp(35).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:06
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(97).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;C:\Users\Administrator\Desktop\123\Samp(97).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(97).vir;C:\Users\Administrator\Desktop\123\Samp(97).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(79).vir//data0000//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(79).vir//data0000//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(79).vir;C:\Users\Administrator\Desktop\123\Samp(79).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(78).vir//data0000//7755.zip//7755.js;C:\Users\Administrator\Desktop\123\Samp(78).vir//data0000//7755.zip//7755.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(78).vir;C:\Users\Administrator\Desktop\123\Samp(78).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(65).vir//data0000//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(65).vir//data0000//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(65).vir;C:\Users\Administrator\Desktop\123\Samp(65).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(61).vir//data0000//Dusty Mcneil.js;C:\Users\Administrator\Desktop\123\Samp(61).vir//data0000//Dusty Mcneil.js;Trojan-Downloader.JS.Cryptoload.cm;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(61).vir;C:\Users\Administrator\Desktop\123\Samp(61).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(53).vir;C:\Users\Administrator\Desktop\123\Samp(53).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(53).vir//data0000//DOC2182929709.js;C:\Users\Administrator\Desktop\123\Samp(53).vir//data0000//DOC2182929709.js;Trojan-Downloader.JS.Agent.oex;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(50).vir;C:\Users\Administrator\Desktop\123\Samp(50).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(50).vir//data0000//DOC2212438286.js;C:\Users\Administrator\Desktop\123\Samp(50).vir//data0000//DOC2212438286.js;Trojan-Downloader.JS.Agent.oex;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(45).vir//data0000//XLYG-4006858.js;C:\Users\Administrator\Desktop\123\Samp(45).vir//data0000//XLYG-4006858.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(45).vir//Package;C:\Users\Administrator\Desktop\123\Samp(45).vir//Package;UDS:DangerousObject.Multi.Generic;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(45).vir//Package//data0000;C:\Users\Administrator\Desktop\123\Samp(45).vir//Package//data0000;Trojan-PSW.Win32.Fareit.bium;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(45).vir;C:\Users\Administrator\Desktop\123\Samp(45).vir;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(39).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;C:\Users\Administrator\Desktop\123\Samp(39).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:33:05
20.08.2018 20.33.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(39).vir;C:\Users\Administrator\Desktop\123\Samp(39).vir;08/20/2018 20:33:05
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(85).vir//data0000//INV000 5cbd.js;C:\Users\Administrator\Desktop\123\Samp(85).vir//data0000//INV000 5cbd.js;UDS:Trojan-Ransom.Win32.Locky.auk;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(85).vir;C:\Users\Administrator\Desktop\123\Samp(85).vir;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(85).vir//data0000//INV000 5cbd.js//data0000;C:\Users\Administrator\Desktop\123\Samp(85).vir//data0000//INV000 5cbd.js//data0000;Trojan-Ransom.Win32.Locky.auk;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc//objdata;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc//objdata;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc//objdata//data0000;C:\Users\Administrator\Desktop\123\Samp(72).vir//data0000//1.doc//objdata//data0000;HEUR:Trojan.OLE2.Badur.urc;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(72).vir;C:\Users\Administrator\Desktop\123\Samp(72).vir;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(34).vir;C:\Users\Administrator\Desktop\123\Samp(34).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(69).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(69).vir//data0000;UDS:Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(69).vir//data0000//ee642.js;C:\Users\Administrator\Desktop\123\Samp(69).vir//data0000//ee642.js;Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(69).vir;C:\Users\Administrator\Desktop\123\Samp(69).vir;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin;UDS:Trojan-Downloader.MSWord.Agent.ahs;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//Module2;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//Module2;Trojan-Downloader.MSWord.Agent.ahu;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//ThisDocument;Trojan-Downloader.MSWord.Agent.ahs;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//Module6;C:\Users\Administrator\Desktop\123\Samp(60).vir//data0000//word/vbaProject.bin//Module6;Trojan-Downloader.MSWord.Agent.ail;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(60).vir;C:\Users\Administrator\Desktop\123\Samp(60).vir;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(49).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(49).vir//data0000;UDS:Trojan-Downloader.MSExcel.Agent.gb;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(49).vir//script.au3;C:\Users\Administrator\Desktop\123\Samp(49).vir//script.au3;HEUR:Trojan.Script.Generic;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(49).vir//data0000//ThisWorkbook;C:\Users\Administrator\Desktop\123\Samp(49).vir//data0000//ThisWorkbook;Trojan-Downloader.MSExcel.Agent.gb;木马程序;08/20/2018 20:33:04
20.08.2018 20.33.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(49).vir;C:\Users\Administrator\Desktop\123\Samp(49).vir;08/20/2018 20:33:04
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(36).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir;C:\Users\Administrator\Desktop\123\Samp(36).vir;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class2;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class2;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class1;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class1;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class0;C:\Users\Administrator\Desktop\123\Samp(36).vir//Class0;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//Module1;C:\Users\Administrator\Desktop\123\Samp(36).vir//Module1;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.33.02;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(36).vir//Module2;C:\Users\Administrator\Desktop\123\Samp(36).vir//Module2;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:33:02
20.08.2018 20.32.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(38).vir;C:\Users\Administrator\Desktop\123\Samp(38).vir;Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:32:59
20.08.2018 20.32.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(40).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(40).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:59
20.08.2018 20.32.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(40).vir;C:\Users\Administrator\Desktop\123\Samp(40).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:59
20.08.2018 20.32.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(40).vir//data0000//UPS-Package-07907895/UPS-Package-07907895.doc.js;C:\Users\Administrator\Desktop\123\Samp(40).vir//data0000//UPS-Package-07907895/UPS-Package-07907895.doc.js;Trojan-Downloader.JS.Agent.oam;木马程序;08/20/2018 20:32:59
20.08.2018 20.32.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(44).vir;C:\Users\Administrator\Desktop\123\Samp(44).vir;08/20/2018 20:32:58
20.08.2018 20.32.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(44).vir//sdfsdfggg;C:\Users\Administrator\Desktop\123\Samp(44).vir//sdfsdfggg;Trojan-Downloader.MSWord.Agent.hx;木马程序;08/20/2018 20:32:58
20.08.2018 20.32.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(43).vir;C:\Users\Administrator\Desktop\123\Samp(43).vir;08/20/2018 20:32:58
20.08.2018 20.32.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(43).vir//ThisWorkbook;C:\Users\Administrator\Desktop\123\Samp(43).vir//ThisWorkbook;Trojan-Downloader.MSExcel.Agent.gb;木马程序;08/20/2018 20:32:58
20.08.2018 20.32.57;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(47).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(47).vir//ThisDocument;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:57
20.08.2018 20.32.57;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(47).vir;C:\Users\Administrator\Desktop\123\Samp(47).vir;08/20/2018 20:32:57
20.08.2018 20.32.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(48).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(48).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.eg;木马程序;08/20/2018 20:32:55
20.08.2018 20.32.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(48).vir;C:\Users\Administrator\Desktop\123\Samp(48).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:55
20.08.2018 20.32.53;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(54).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(54).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:32:53
20.08.2018 20.32.53;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(54).vir;C:\Users\Administrator\Desktop\123\Samp(54).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:53
20.08.2018 20.32.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(56).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(56).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:52
20.08.2018 20.32.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(56).vir//data0000//14YQg739.wsf;C:\Users\Administrator\Desktop\123\Samp(56).vir//data0000//14YQg739.wsf;Trojan-Downloader.JS.Agent.mjx;木马程序;08/20/2018 20:32:52
20.08.2018 20.32.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(56).vir;C:\Users\Administrator\Desktop\123\Samp(56).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:52
20.08.2018 20.32.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(57).vir//data0000//UPS-Package-06520201/UPS-Package-06520201.doc.js;C:\Users\Administrator\Desktop\123\Samp(57).vir//data0000//UPS-Package-06520201/UPS-Package-06520201.doc.js;HEUR:Trojan.Script.Generic;木马程序;08/20/2018 20:32:52
20.08.2018 20.32.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(57).vir;C:\Users\Administrator\Desktop\123\Samp(57).vir;08/20/2018 20:32:52
20.08.2018 20.32.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(59).vir;C:\Users\Administrator\Desktop\123\Samp(59).vir;Trojan-Downloader.MSWord.Agent.bql;木马程序;08/20/2018 20:32:51
20.08.2018 20.32.45;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(63).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(63).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:45
20.08.2018 20.32.45;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(63).vir;C:\Users\Administrator\Desktop\123\Samp(63).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:45
20.08.2018 20.32.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(64).vir//word/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(64).vir//word/vbaProject.bin//Module1;Trojan-Downloader.MSWord.Agent.axb;木马程序;08/20/2018 20:32:43
20.08.2018 20.32.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(64).vir;C:\Users\Administrator\Desktop\123\Samp(64).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:43
20.08.2018 20.32.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(66).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(66).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:42
20.08.2018 20.32.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(66).vir//data0000//activities -74AD-..wsf;C:\Users\Administrator\Desktop\123\Samp(66).vir//data0000//activities -74AD-..wsf;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:42
20.08.2018 20.32.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(66).vir;C:\Users\Administrator\Desktop\123\Samp(66).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:42
20.08.2018 20.32.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(71).vir;C:\Users\Administrator\Desktop\123\Samp(71).vir;Trojan-Downloader.MSWord.Agent.btr;木马程序;08/20/2018 20:32:41
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:40
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:40
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(70).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:40
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(70).vir;C:\Users\Administrator\Desktop\123\Samp(70).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:40
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(73).vir;C:\Users\Administrator\Desktop\123\Samp(73).vir;08/20/2018 20:32:40
20.08.2018 20.32.40;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(73).vir//sdfsdfggg;C:\Users\Administrator\Desktop\123\Samp(73).vir//sdfsdfggg;Trojan-Downloader.MSWord.Agent.hx;木马程序;08/20/2018 20:32:40
20.08.2018 20.32.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:38
20.08.2018 20.32.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:38
20.08.2018 20.32.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(77).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:38
20.08.2018 20.32.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(77).vir;C:\Users\Administrator\Desktop\123\Samp(77).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:38
20.08.2018 20.32.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(83).vir//xl/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(83).vir//xl/vbaProject.bin//Module1;Trojan-Dropper.MSWord.Agent.ph;木马程序;08/20/2018 20:32:31
20.08.2018 20.32.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(83).vir//xl/vbaProject.bin//蒡嗍龛汔;C:\Users\Administrator\Desktop\123\Samp(83).vir//xl/vbaProject.bin//蒡嗍龛汔;Trojan-Downloader.MSExcel.Agent.dr;木马程序;08/20/2018 20:32:31
20.08.2018 20.32.31;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(83).vir;C:\Users\Administrator\Desktop\123\Samp(83).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:31
20.08.2018 20.32.29;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(86).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(86).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:29
20.08.2018 20.32.29;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(86).vir;C:\Users\Administrator\Desktop\123\Samp(86).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:32:29
20.08.2018 20.32.28;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:28
20.08.2018 20.32.28;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:28
20.08.2018 20.32.28;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(87).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:28
20.08.2018 20.32.28;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(87).vir;C:\Users\Administrator\Desktop\123\Samp(87).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:28
20.08.2018 20.32.27;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(89).vir;C:\Users\Administrator\Desktop\123\Samp(89).vir;08/20/2018 20:32:27
20.08.2018 20.32.27;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(89).vir//QvojzRsGS;C:\Users\Administrator\Desktop\123\Samp(89).vir//QvojzRsGS;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:32:27
20.08.2018 20.32.27;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(92).vir;C:\Users\Administrator\Desktop\123\Samp(92).vir;08/20/2018 20:32:27
20.08.2018 20.32.27;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(92).vir//mode;C:\Users\Administrator\Desktop\123\Samp(92).vir//mode;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:32:27
20.08.2018 20.32.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(94).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(94).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.eg;木马程序;08/20/2018 20:32:26
20.08.2018 20.32.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(94).vir;C:\Users\Administrator\Desktop\123\Samp(94).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:26
20.08.2018 20.32.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(95).vir//xl/vbaProject.bin//RID_009;C:\Users\Administrator\Desktop\123\Samp(95).vir//xl/vbaProject.bin//RID_009;Trojan-Downloader.MSExcel.Agent.dm;木马程序;08/20/2018 20:32:26
20.08.2018 20.32.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(95).vir;C:\Users\Administrator\Desktop\123\Samp(95).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:26
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(167).vir//data0000//customers 578.wsf;C:\Users\Administrator\Desktop\123\Samp(167).vir//data0000//customers 578.wsf;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(167).vir;C:\Users\Administrator\Desktop\123\Samp(167).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(164).vir//data0000//40613.zip//pHzI.js;C:\Users\Administrator\Desktop\123\Samp(164).vir//data0000//40613.zip//pHzI.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(164).vir;C:\Users\Administrator\Desktop\123\Samp(164).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(157).vir;C:\Users\Administrator\Desktop\123\Samp(157).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(157).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(157).vir//data0000;Trojan-Downloader.MSOffice.SLoad.g;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(152).vir;C:\Users\Administrator\Desktop\123\Samp(152).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(152).vir//data0000//42421.2017-07-31_15.10.22.vbs;C:\Users\Administrator\Desktop\123\Samp(152).vir//data0000//42421.2017-07-31_15.10.22.vbs;Trojan-Downloader.VBS.Agent.cls;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(154).vir//data0000//20170816715641217.js;C:\Users\Administrator\Desktop\123\Samp(154).vir//data0000//20170816715641217.js;Trojan-Downloader.JS.Agent.ocp;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(154).vir;C:\Users\Administrator\Desktop\123\Samp(154).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(150).vir//data0000//H6902644376.js;C:\Users\Administrator\Desktop\123\Samp(150).vir//data0000//H6902644376.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(150).vir;C:\Users\Administrator\Desktop\123\Samp(150).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(147).vir//data0000//13622_ZIP.zip//13622.doc//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(147).vir//data0000//13622_ZIP.zip//13622.doc//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(147).vir;C:\Users\Administrator\Desktop\123\Samp(147).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(137).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;C:\Users\Administrator\Desktop\123\Samp(137).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(137).vir;C:\Users\Administrator\Desktop\123\Samp(137).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(136).vir//data0000//01258861149_20170411_402800.wsf;C:\Users\Administrator\Desktop\123\Samp(136).vir//data0000//01258861149_20170411_402800.wsf;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(136).vir;C:\Users\Administrator\Desktop\123\Samp(136).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(96).vir;C:\Users\Administrator\Desktop\123\Samp(96).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(133).vir//data0000//23759.zip//23759.js;C:\Users\Administrator\Desktop\123\Samp(133).vir//data0000//23759.zip//23759.js;UDS:Trojan-Downloader.JS.Cryptoload.ayz;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(133).vir;C:\Users\Administrator\Desktop\123\Samp(133).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(120).vir;C:\Users\Administrator\Desktop\123\Samp(120).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(120).vir//data0000//customers 040.wsf;C:\Users\Administrator\Desktop\123\Samp(120).vir//data0000//customers 040.wsf;Trojan-Downloader.JS.Agent.kqe;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(116).vir//data0000//Seymour Downs.js;C:\Users\Administrator\Desktop\123\Samp(116).vir//data0000//Seymour Downs.js;Trojan-Downloader.JS.Cryptoload.cl;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(116).vir;C:\Users\Administrator\Desktop\123\Samp(116).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(113).vir//data0000//17317.zip//17317.js;C:\Users\Administrator\Desktop\123\Samp(113).vir//data0000//17317.zip//17317.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(113).vir;C:\Users\Administrator\Desktop\123\Samp(113).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(174).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(174).vir//data0000;UDS:Trojan-Downloader.HTA.Locky.i;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(174).vir//data0000//confirm_nqu9L5i290.hta;C:\Users\Administrator\Desktop\123\Samp(174).vir//data0000//confirm_nqu9L5i290.hta;UDS:Trojan-Downloader.HTA.Locky.i;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(174).vir;C:\Users\Administrator\Desktop\123\Samp(174).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(112).vir//data0000//5274.doc;C:\Users\Administrator\Desktop\123\Samp(112).vir//data0000//5274.doc;Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(112).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(112).vir//data0000;UDS:Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(112).vir;C:\Users\Administrator\Desktop\123\Samp(112).vir;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(106).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(106).vir//data0000;UDS:Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(106).vir//data0000//bf3f834.js;C:\Users\Administrator\Desktop\123\Samp(106).vir//data0000//bf3f834.js;Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:32:25
20.08.2018 20.32.25;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(106).vir;C:\Users\Administrator\Desktop\123\Samp(106).vir;08/20/2018 20:32:25
20.08.2018 20.32.24;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(101).vir//data0000//JIM;C:\Users\Administrator\Desktop\123\Samp(101).vir//data0000//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:24
20.08.2018 20.32.24;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(101).vir;C:\Users\Administrator\Desktop\123\Samp(101).vir;08/20/2018 20:32:24
20.08.2018 20.32.24;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(101).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(101).vir//data0000;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:24
20.08.2018 20.32.23;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(98).vir//word/vbaProject.bin//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(98).vir//word/vbaProject.bin//ThisDocument;Trojan-Downloader.MSWord.Agent.awt;木马程序;08/20/2018 20:32:23
20.08.2018 20.32.23;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(98).vir;C:\Users\Administrator\Desktop\123\Samp(98).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:23
20.08.2018 20.32.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(99).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(99).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:32:19
20.08.2018 20.32.19;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(99).vir;C:\Users\Administrator\Desktop\123\Samp(99).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:19
20.08.2018 20.32.17;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(100).vir//data0000//22P5R06.wsf;C:\Users\Administrator\Desktop\123\Samp(100).vir//data0000//22P5R06.wsf;Trojan-Downloader.JS.Agent.mjx;木马程序;08/20/2018 20:32:17
20.08.2018 20.32.17;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(100).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(100).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:17
20.08.2018 20.32.17;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(100).vir;C:\Users\Administrator\Desktop\123\Samp(100).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:17
20.08.2018 20.32.16;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(102).vir;C:\Users\Administrator\Desktop\123\Samp(102).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:32:16
20.08.2018 20.32.14;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(110).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(110).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:14
20.08.2018 20.32.14;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(110).vir//data0000//05omKt2S13.wsf;C:\Users\Administrator\Desktop\123\Samp(110).vir//data0000//05omKt2S13.wsf;Trojan-Downloader.JS.Agent.mjx;木马程序;08/20/2018 20:32:14
20.08.2018 20.32.14;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(110).vir;C:\Users\Administrator\Desktop\123\Samp(110).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:14
20.08.2018 20.32.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(107).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(107).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:13
20.08.2018 20.32.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(107).vir;C:\Users\Administrator\Desktop\123\Samp(107).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:13
20.08.2018 20.32.12;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(111).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(111).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:12
20.08.2018 20.32.12;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(111).vir//data0000//Receipt 34469-690103.wsf;C:\Users\Administrator\Desktop\123\Samp(111).vir//data0000//Receipt 34469-690103.wsf;Trojan-Downloader.JS.Agent.mwn;木马程序;08/20/2018 20:32:12
20.08.2018 20.32.12;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(111).vir;C:\Users\Administrator\Desktop\123\Samp(111).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:12
20.08.2018 20.32.09;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(119).vir//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(119).vir//form.o.UserForm1;Trojan-Downloader.MSWord.Agent.bmy;木马程序;08/20/2018 20:32:09
20.08.2018 20.32.09;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(119).vir;C:\Users\Administrator\Desktop\123\Samp(119).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:09
20.08.2018 20.32.08;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(122).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(122).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:32:08
20.08.2018 20.32.08;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(122).vir;C:\Users\Administrator\Desktop\123\Samp(122).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:08
20.08.2018 20.32.07;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(125).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(125).vir//ThisDocument;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:07
20.08.2018 20.32.07;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(125).vir;C:\Users\Administrator\Desktop\123\Samp(125).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:32:07
20.08.2018 20.32.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(126).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(126).vir//data0000;Trojan-Downloader.MSOffice.SLoad.g;木马程序;08/20/2018 20:32:06
20.08.2018 20.32.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(126).vir;C:\Users\Administrator\Desktop\123\Samp(126).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:06
20.08.2018 20.32.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(127).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(127).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:06
20.08.2018 20.32.06;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(127).vir;C:\Users\Administrator\Desktop\123\Samp(127).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:32:06
20.08.2018 20.32.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:05
20.08.2018 20.32.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:05
20.08.2018 20.32.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(128).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:32:05
20.08.2018 20.32.05;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(128).vir;C:\Users\Administrator\Desktop\123\Samp(128).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:05
20.08.2018 20.32.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(130).vir;C:\Users\Administrator\Desktop\123\Samp(130).vir;Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:32:04
20.08.2018 20.32.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(131).vir//data0000//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(131).vir//data0000//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:32:04
20.08.2018 20.32.04;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(131).vir;C:\Users\Administrator\Desktop\123\Samp(131).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:32:04
20.08.2018 20.32.02;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(140).vir;C:\Users\Administrator\Desktop\123\Samp(140).vir;Trojan-Downloader.MSOffice.SLoad.f;木马程序;08/20/2018 20:32:02
20.08.2018 20.32.01;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(148).vir;C:\Users\Administrator\Desktop\123\Samp(148).vir;08/20/2018 20:32:01
20.08.2018 20.32.01;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(148).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(148).vir//ThisDocument;Trojan-Downloader.MSExcel.Agent.k;木马程序;08/20/2018 20:32:01
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:58
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:58
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(158).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:58
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(158).vir;C:\Users\Administrator\Desktop\123\Samp(158).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:58
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(162).vir;C:\Users\Administrator\Desktop\123\Samp(162).vir;08/20/2018 20:31:58
20.08.2018 20.31.58;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(162).vir//Bu莂lmaKitab?;C:\Users\Administrator\Desktop\123\Samp(162).vir//Bu莂lmaKitab?;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:58
20.08.2018 20.31.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(163).vir//data0000//swift c9eb.js;C:\Users\Administrator\Desktop\123\Samp(163).vir//data0000//swift c9eb.js;Trojan-Downloader.JS.Agent.lha;木马程序;08/20/2018 20:31:57
20.08.2018 20.31.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(163).vir;C:\Users\Administrator\Desktop\123\Samp(163).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:57
20.08.2018 20.31.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:55
20.08.2018 20.31.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:55
20.08.2018 20.31.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(166).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:31:55
20.08.2018 20.31.55;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(166).vir;C:\Users\Administrator\Desktop\123\Samp(166).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:55
20.08.2018 20.31.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(168).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(168).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:54
20.08.2018 20.31.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(168).vir//data0000//Cruz Jarvis.js;C:\Users\Administrator\Desktop\123\Samp(168).vir//data0000//Cruz Jarvis.js;Trojan-Downloader.JS.Cryptoload.ci;木马程序;08/20/2018 20:31:54
20.08.2018 20.31.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(168).vir;C:\Users\Administrator\Desktop\123\Samp(168).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:54
20.08.2018 20.31.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(170).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(170).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:54
20.08.2018 20.31.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(170).vir;C:\Users\Administrator\Desktop\123\Samp(170).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:54
20.08.2018 20.31.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(169).vir//xl/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(169).vir//xl/vbaProject.bin//Module1;Trojan-Dropper.MSWord.Agent.ph;木马程序;08/20/2018 20:31:52
20.08.2018 20.31.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(169).vir//xl/vbaProject.bin//蒡嗍龛汔;C:\Users\Administrator\Desktop\123\Samp(169).vir//xl/vbaProject.bin//蒡嗍龛汔;Trojan-Downloader.MSExcel.Agent.dr;木马程序;08/20/2018 20:31:52
20.08.2018 20.31.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(169).vir;C:\Users\Administrator\Desktop\123\Samp(169).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:52
20.08.2018 20.31.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(171).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(171).vir//data0000;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:51
20.08.2018 20.31.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(171).vir//data0000//ThisWorkbook;C:\Users\Administrator\Desktop\123\Samp(171).vir//data0000//ThisWorkbook;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:51
20.08.2018 20.31.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(171).vir;C:\Users\Administrator\Desktop\123\Samp(171).vir;08/20/2018 20:31:51
20.08.2018 20.31.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(269).vir//data0000//UAliKtrOz;C:\Users\Administrator\Desktop\123\Samp(269).vir//data0000//UAliKtrOz;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:51
20.08.2018 20.31.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(269).vir;C:\Users\Administrator\Desktop\123\Samp(269).vir;08/20/2018 20:31:51
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(266).vir//data0000//LIT-1803889.js;C:\Users\Administrator\Desktop\123\Samp(266).vir//data0000//LIT-1803889.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(266).vir;C:\Users\Administrator\Desktop\123\Samp(266).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(265).vir;C:\Users\Administrator\Desktop\123\Samp(265).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(265).vir//data0000//IMG_2361.js;C:\Users\Administrator\Desktop\123\Samp(265).vir//data0000//IMG_2361.js;Trojan.JS.Agent.silepw;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(255).vir//data0000//22230_ZIP.zip//22230.doc//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(255).vir//data0000//22230_ZIP.zip//22230.doc//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(255).vir;C:\Users\Administrator\Desktop\123\Samp(255).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(250).vir//data0000//11150.zip//11150.js;C:\Users\Administrator\Desktop\123\Samp(250).vir//data0000//11150.zip//11150.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(250).vir;C:\Users\Administrator\Desktop\123\Samp(250).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(173).vir;C:\Users\Administrator\Desktop\123\Samp(173).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(173).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(173).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(229).vir//data0000//zMXDJX5248-1503.vbs;C:\Users\Administrator\Desktop\123\Samp(229).vir//data0000//zMXDJX5248-1503.vbs;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(229).vir;C:\Users\Administrator\Desktop\123\Samp(229).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(227).vir;C:\Users\Administrator\Desktop\123\Samp(227).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(227).vir//data0000//18092.zip//18092.js;C:\Users\Administrator\Desktop\123\Samp(227).vir//data0000//18092.zip//18092.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(212).vir//data0000//6307.js;C:\Users\Administrator\Desktop\123\Samp(212).vir//data0000//6307.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(212).vir;C:\Users\Administrator\Desktop\123\Samp(212).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(210).vir;C:\Users\Administrator\Desktop\123\Samp(210).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(210).vir//data0000//9826.js;C:\Users\Administrator\Desktop\123\Samp(210).vir//data0000//9826.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(209).vir//data0000//8970_ZIP.zip//8970.doc//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(209).vir//data0000//8970_ZIP.zip//8970.doc//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(209).vir;C:\Users\Administrator\Desktop\123\Samp(209).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(207).vir//data0000//QvojzRsGS;C:\Users\Administrator\Desktop\123\Samp(207).vir//data0000//QvojzRsGS;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(207).vir;C:\Users\Administrator\Desktop\123\Samp(207).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(201).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;C:\Users\Administrator\Desktop\123\Samp(201).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(201).vir;C:\Users\Administrator\Desktop\123\Samp(201).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(197).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;C:\Users\Administrator\Desktop\123\Samp(197).vir//data0000//Direct-Documentation 1530219.zip//Direct-Documentation 1530219/Direct-Documentation 1530219.vbs;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(197).vir;C:\Users\Administrator\Desktop\123\Samp(197).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(179).vir;C:\Users\Administrator\Desktop\123\Samp(179).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(179).vir//data0000//32449_ZIP.zip//32449.doc//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(179).vir//data0000//32449_ZIP.zip//32449.doc//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(177).vir;C:\Users\Administrator\Desktop\123\Samp(177).vir;08/20/2018 20:31:50
20.08.2018 20.31.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(177).vir//data0000//23079_ZIP.zip//23079.js;C:\Users\Administrator\Desktop\123\Samp(177).vir//data0000//23079_ZIP.zip//23079.js;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:31:50
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(256).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(256).vir//data0000;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(256).vir//data0000//JIM;C:\Users\Administrator\Desktop\123\Samp(256).vir//data0000//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(256).vir;C:\Users\Administrator\Desktop\123\Samp(256).vir;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(242).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(242).vir//data0000;UDS:Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(242).vir//data0000//e7bdaa4.js;C:\Users\Administrator\Desktop\123\Samp(242).vir//data0000//e7bdaa4.js;Trojan-Downloader.JS.Cryptoload.tj;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(242).vir;C:\Users\Administrator\Desktop\123\Samp(242).vir;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(178).vir//data0000//INV000 da0.js;C:\Users\Administrator\Desktop\123\Samp(178).vir//data0000//INV000 da0.js;Trojan-Downloader.JS.Agent.lts;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(178).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(178).vir//data0000;UDS:Trojan-Downloader.JS.Agent.lts;木马程序;08/20/2018 20:31:49
20.08.2018 20.31.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(178).vir;C:\Users\Administrator\Desktop\123\Samp(178).vir;08/20/2018 20:31:49
20.08.2018 20.31.48;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(175).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(175).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:48
20.08.2018 20.31.48;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(175).vir;C:\Users\Administrator\Desktop\123\Samp(175).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:48
20.08.2018 20.31.46;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(176).vir//data0000//863AEEA3 Budget_report_xls.js;C:\Users\Administrator\Desktop\123\Samp(176).vir//data0000//863AEEA3 Budget_report_xls.js;Trojan-Downloader.JS.Agent.mkg;木马程序;08/20/2018 20:31:46
20.08.2018 20.31.46;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(176).vir//data0000//863AEEA3 Budget_report_xls - 1.js;C:\Users\Administrator\Desktop\123\Samp(176).vir//data0000//863AEEA3 Budget_report_xls - 1.js;Trojan-Downloader.JS.Agent.mkg;木马程序;08/20/2018 20:31:46
20.08.2018 20.31.46;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(176).vir;C:\Users\Administrator\Desktop\123\Samp(176).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:46
20.08.2018 20.31.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(180).vir//xl/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(180).vir//xl/vbaProject.bin//Module1;Trojan-Dropper.MSWord.Agent.ph;木马程序;08/20/2018 20:31:43
20.08.2018 20.31.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(180).vir//xl/vbaProject.bin//蒡嗍龛汔;C:\Users\Administrator\Desktop\123\Samp(180).vir//xl/vbaProject.bin//蒡嗍龛汔;Trojan-Downloader.MSExcel.Agent.dr;木马程序;08/20/2018 20:31:43
20.08.2018 20.31.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(180).vir;C:\Users\Administrator\Desktop\123\Samp(180).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:43
20.08.2018 20.31.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(186).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(186).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:42
20.08.2018 20.31.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(186).vir;C:\Users\Administrator\Desktop\123\Samp(186).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:42
20.08.2018 20.31.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(183).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(183).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:31:40
20.08.2018 20.31.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(183).vir;C:\Users\Administrator\Desktop\123\Samp(183).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:40
20.08.2018 20.31.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(185).vir//xl/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(185).vir//xl/vbaProject.bin//Module1;Trojan-Dropper.MSWord.Agent.ph;木马程序;08/20/2018 20:31:40
20.08.2018 20.31.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(185).vir//xl/vbaProject.bin//蒡嗍龛汔;C:\Users\Administrator\Desktop\123\Samp(185).vir//xl/vbaProject.bin//蒡嗍龛汔;Trojan-Downloader.MSExcel.Agent.dr;木马程序;08/20/2018 20:31:40
20.08.2018 20.31.40;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(185).vir;C:\Users\Administrator\Desktop\123\Samp(185).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:40
20.08.2018 20.31.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(188).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(188).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:31:38
20.08.2018 20.31.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(188).vir;C:\Users\Administrator\Desktop\123\Samp(188).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:38
20.08.2018 20.31.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(190).vir//word/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(190).vir//word/vbaProject.bin//Module1;Trojan-Downloader.MSWord.Agent.axb;木马程序;08/20/2018 20:31:37
20.08.2018 20.31.37;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(190).vir;C:\Users\Administrator\Desktop\123\Samp(190).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:37
20.08.2018 20.31.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(193).vir//xl/vbaProject.bin//RID_009;C:\Users\Administrator\Desktop\123\Samp(193).vir//xl/vbaProject.bin//RID_009;Trojan-Downloader.MSExcel.Agent.dm;木马程序;08/20/2018 20:31:36
20.08.2018 20.31.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(193).vir;C:\Users\Administrator\Desktop\123\Samp(193).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:36
20.08.2018 20.31.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(194).vir;C:\Users\Administrator\Desktop\123\Samp(194).vir;Trojan-Downloader.MSWord.Agent.bsb;木马程序;08/20/2018 20:31:35
20.08.2018 20.31.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(196).vir;C:\Users\Administrator\Desktop\123\Samp(196).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:35
20.08.2018 20.31.33;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(198).vir;C:\Users\Administrator\Desktop\123\Samp(198).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:33
20.08.2018 20.31.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(202).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(202).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.eg;木马程序;08/20/2018 20:31:30
20.08.2018 20.31.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(202).vir;C:\Users\Administrator\Desktop\123\Samp(202).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:30
20.08.2018 20.31.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//e;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//e;Trojan-Downloader.VBS.Agent.byt;木马程序;08/20/2018 20:31:26
20.08.2018 20.31.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//ul;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//ul;Trojan-Downloader.VBS.Agent.byv;木马程序;08/20/2018 20:31:26
20.08.2018 20.31.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(203).vir//word/vbaProject.bin//Module1;Trojan-Downloader.MSWord.Agent.aog;木马程序;08/20/2018 20:31:26
20.08.2018 20.31.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(203).vir;C:\Users\Administrator\Desktop\123\Samp(203).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:26
20.08.2018 20.31.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(206).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(206).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:21
20.08.2018 20.31.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(206).vir;C:\Users\Administrator\Desktop\123\Samp(206).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:21
20.08.2018 20.31.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(208).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(208).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan-Downloader.MSExcel.Agent.fx;木马程序;08/20/2018 20:31:20
20.08.2018 20.31.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(208).vir;C:\Users\Administrator\Desktop\123\Samp(208).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:20
20.08.2018 20.31.14;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(214).vir//word/document.xml;C:\Users\Administrator\Desktop\123\Samp(214).vir//word/document.xml;Exploit.MSWord.DDE.c;木马程序;08/20/2018 20:31:14
20.08.2018 20.31.14;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(214).vir;C:\Users\Administrator\Desktop\123\Samp(214).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:31:14
20.08.2018 20.31.12;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(216).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(216).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:12
20.08.2018 20.31.12;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(216).vir;C:\Users\Administrator\Desktop\123\Samp(216).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:31:12
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir;C:\Users\Administrator\Desktop\123\Samp(217).vir;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(217).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class2;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class2;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class1;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class1;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class0;C:\Users\Administrator\Desktop\123\Samp(217).vir//Class0;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//Module1;C:\Users\Administrator\Desktop\123\Samp(217).vir//Module1;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.10;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(217).vir//Module2;C:\Users\Administrator\Desktop\123\Samp(217).vir//Module2;Trojan-Downloader.MSWord.Agent.bua;木马程序;08/20/2018 20:31:10
20.08.2018 20.31.07;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(219).vir;C:\Users\Administrator\Desktop\123\Samp(219).vir;08/20/2018 20:31:07
20.08.2018 20.31.07;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(219).vir//word/vbaProject.bin//Module2;C:\Users\Administrator\Desktop\123\Samp(219).vir//word/vbaProject.bin//Module2;Trojan-Downloader.MSWord.Agent.bim;木马程序;08/20/2018 20:31:07
20.08.2018 20.31.03;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(218).vir;C:\Users\Administrator\Desktop\123\Samp(218).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:31:03
20.08.2018 20.31.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(221).vir;C:\Users\Administrator\Desktop\123\Samp(221).vir;Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:31:01
20.08.2018 20.31.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(223).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(223).vir//JIM;HEUR:Trojan.Script.Generic;木马程序;08/20/2018 20:31:01
20.08.2018 20.31.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(223).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(223).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.asdfxj;木马程序;08/20/2018 20:31:01
20.08.2018 20.31.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(223).vir;C:\Users\Administrator\Desktop\123\Samp(223).vir;08/20/2018 20:31:01
20.08.2018 20.30.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(222).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(222).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.bdw;木马程序;08/20/2018 20:30:58
20.08.2018 20.30.58;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(222).vir;C:\Users\Administrator\Desktop\123\Samp(222).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:30:58
20.08.2018 20.30.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(224).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(224).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:57
20.08.2018 20.30.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(224).vir//data0000//activities -CC7-..wsf;C:\Users\Administrator\Desktop\123\Samp(224).vir//data0000//activities -CC7-..wsf;Trojan-Downloader.JS.Agent.lup;木马程序;08/20/2018 20:30:57
20.08.2018 20.30.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(224).vir;C:\Users\Administrator\Desktop\123\Samp(224).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:57
20.08.2018 20.30.56;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(225).vir;C:\Users\Administrator\Desktop\123\Samp(225).vir;08/20/2018 20:30:56
20.08.2018 20.30.56;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(225).vir//word/vbaProject.bin//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(225).vir//word/vbaProject.bin//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:30:56
20.08.2018 20.30.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(226).vir//word/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(226).vir//word/vbaProject.bin//Module1;Trojan-Downloader.MSWord.Agent.axb;木马程序;08/20/2018 20:30:52
20.08.2018 20.30.52;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(226).vir;C:\Users\Administrator\Desktop\123\Samp(226).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:52
20.08.2018 20.30.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(228).vir//form.o.eRYTFJHvhsad//data0000;C:\Users\Administrator\Desktop\123\Samp(228).vir//form.o.eRYTFJHvhsad//data0000;HEUR:Trojan.Win32.Generic;木马程序;08/20/2018 20:30:49
20.08.2018 20.30.49;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(228).vir;C:\Users\Administrator\Desktop\123\Samp(228).vir;HEUR:Trojan.Win32.Generic;木马程序;08/20/2018 20:30:49
20.08.2018 20.30.48;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(231).vir;C:\Users\Administrator\Desktop\123\Samp(231).vir;08/20/2018 20:30:48
20.08.2018 20.30.48;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(231).vir//word/vbaProject.bin//JIM;C:\Users\Administrator\Desktop\123\Samp(231).vir//word/vbaProject.bin//JIM;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:30:48
20.08.2018 20.30.46;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(234).vir//word/_rels/document.xml.rels;C:\Users\Administrator\Desktop\123\Samp(234).vir//word/_rels/document.xml.rels;Trojan-Downloader.MSWord.Agent.byb;木马程序;08/20/2018 20:30:46
20.08.2018 20.30.46;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(234).vir;C:\Users\Administrator\Desktop\123\Samp(234).vir;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:30:46
20.08.2018 20.30.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(244).vir//objdata//data0000;C:\Users\Administrator\Desktop\123\Samp(244).vir//objdata//data0000;HEUR:Trojan.OLE2.Badur.urc;木马程序;08/20/2018 20:30:43
20.08.2018 20.30.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(244).vir//objdata;C:\Users\Administrator\Desktop\123\Samp(244).vir//objdata;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:30:43
20.08.2018 20.30.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(244).vir;C:\Users\Administrator\Desktop\123\Samp(244).vir;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:30:43
20.08.2018 20.30.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(235).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(235).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.ef;木马程序;08/20/2018 20:30:42
20.08.2018 20.30.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(235).vir;C:\Users\Administrator\Desktop\123\Samp(235).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:42
20.08.2018 20.30.42;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(236).vir;C:\Users\Administrator\Desktop\123\Samp(236).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:30:42
20.08.2018 20.30.40;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(239).vir;C:\Users\Administrator\Desktop\123\Samp(239).vir;08/20/2018 20:30:40
20.08.2018 20.30.40;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(239).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(239).vir//ThisDocument;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:30:40
20.08.2018 20.30.39;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(241).vir;C:\Users\Administrator\Desktop\123\Samp(241).vir;Trojan-Downloader.MSWord.Agent.baj;木马程序;08/20/2018 20:30:39
20.08.2018 20.30.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(245).vir//word/document.xml;C:\Users\Administrator\Desktop\123\Samp(245).vir//word/document.xml;Exploit.MSWord.DDE.c;木马程序;08/20/2018 20:30:38
20.08.2018 20.30.38;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(245).vir;C:\Users\Administrator\Desktop\123\Samp(245).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:38
20.08.2018 20.30.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(246).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(246).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:30:36
20.08.2018 20.30.36;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(246).vir;C:\Users\Administrator\Desktop\123\Samp(246).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:36
20.08.2018 20.30.35;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(247).vir;C:\Users\Administrator\Desktop\123\Samp(247).vir;08/20/2018 20:30:35
20.08.2018 20.30.35;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(247).vir//word/vbaProject.bin//JIM;C:\Users\Administrator\Desktop\123\Samp(247).vir//word/vbaProject.bin//JIM;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:30:35
20.08.2018 20.30.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(248).vir//word/vbaProject.bin//form.o.Odish;C:\Users\Administrator\Desktop\123\Samp(248).vir//word/vbaProject.bin//form.o.Odish;Trojan-Downloader.VBS.Agent.cis;木马程序;08/20/2018 20:30:34
20.08.2018 20.30.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(248).vir;C:\Users\Administrator\Desktop\123\Samp(248).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:34
20.08.2018 20.30.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(249).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(249).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:30:32
20.08.2018 20.30.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(249).vir;C:\Users\Administrator\Desktop\123\Samp(249).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:32
20.08.2018 20.30.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:30
20.08.2018 20.30.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module2;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module2;Trojan-Downloader.MSWord.Agent.amx;木马程序;08/20/2018 20:30:30
20.08.2018 20.30.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module;Trojan-Downloader.MSWord.Agent.ams;木马程序;08/20/2018 20:30:30
20.08.2018 20.30.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(253).vir//data0000//word/vbaProject.bin//Module1;Trojan-Downloader.MSWord.Agent.amn;木马程序;08/20/2018 20:30:30
20.08.2018 20.30.30;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(253).vir;C:\Users\Administrator\Desktop\123\Samp(253).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:30
20.08.2018 20.30.25;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(257).vir;C:\Users\Administrator\Desktop\123\Samp(257).vir;08/20/2018 20:30:25
20.08.2018 20.30.25;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(257).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(257).vir//ThisDocument;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:25
20.08.2018 20.30.25;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(257).vir//cologne;C:\Users\Administrator\Desktop\123\Samp(257).vir//cologne;Trojan-Dropper.MSOffice.Agent.ae;木马程序;08/20/2018 20:30:25
20.08.2018 20.30.17;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(258).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(258).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:17
20.08.2018 20.30.17;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(258).vir;C:\Users\Administrator\Desktop\123\Samp(258).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:17
20.08.2018 20.30.15;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(259).vir//data0000//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(259).vir//data0000//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:30:15
20.08.2018 20.30.15;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(259).vir;C:\Users\Administrator\Desktop\123\Samp(259).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:15
20.08.2018 20.30.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(260).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(260).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:13
20.08.2018 20.30.13;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(260).vir;C:\Users\Administrator\Desktop\123\Samp(260).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:13
20.08.2018 20.30.12;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(261).vir;C:\Users\Administrator\Desktop\123\Samp(261).vir;08/20/2018 20:30:12
20.08.2018 20.30.12;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(261).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(261).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.hb;木马程序;08/20/2018 20:30:12
20.08.2018 20.30.12;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(261).vir//Module3;C:\Users\Administrator\Desktop\123\Samp(261).vir//Module3;Trojan.VBS.Agent.ur;木马程序;08/20/2018 20:30:12
20.08.2018 20.30.12;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(261).vir//Module1;C:\Users\Administrator\Desktop\123\Samp(261).vir//Module1;Trojan.VBS.Agent.ur;木马程序;08/20/2018 20:30:12
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(263).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(263).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.eg;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(263).vir;C:\Users\Administrator\Desktop\123\Samp(263).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(1).vir;C:\Users\Administrator\Desktop\123\Samp(1).vir;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(1).vir//data0000//QvojzRsGS;C:\Users\Administrator\Desktop\123\Samp(1).vir//data0000//QvojzRsGS;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(297).vir//data0000//24703.zip//24703.js;C:\Users\Administrator\Desktop\123\Samp(297).vir//data0000//24703.zip//24703.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(297).vir;C:\Users\Administrator\Desktop\123\Samp(297).vir;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(10).vir;C:\Users\Administrator\Desktop\123\Samp(10).vir;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(10).vir//data0000//TF.48678398483/TF.48678398483.bat;C:\Users\Administrator\Desktop\123\Samp(10).vir//data0000//TF.48678398483/TF.48678398483.bat;Trojan-Downloader.BAT.Agent.rv;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(264).vir//xl/vbaProject.bin//蒡嗍龛汔;C:\Users\Administrator\Desktop\123\Samp(264).vir//xl/vbaProject.bin//蒡嗍龛汔;Trojan-Downloader.MSExcel.Agent.dr;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(264).vir//xl/vbaProject.bin//Module1;C:\Users\Administrator\Desktop\123\Samp(264).vir//xl/vbaProject.bin//Module1;Trojan-Dropper.MSWord.Agent.ph;木马程序;08/20/2018 20:30:01
20.08.2018 20.30.01;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(264).vir;C:\Users\Administrator\Desktop\123\Samp(264).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:30:01
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(12).vir;C:\Users\Administrator\Desktop\123\Samp(12).vir;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(12).vir//data0000//DOC2708740260.js;C:\Users\Administrator\Desktop\123\Samp(12).vir//data0000//DOC2708740260.js;Trojan-Downloader.JS.Agent.oex;木马程序;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(13).vir//data0000//16324.js;C:\Users\Administrator\Desktop\123\Samp(13).vir//data0000//16324.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(13).vir;C:\Users\Administrator\Desktop\123\Samp(13).vir;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(17).vir//Document(208).jse;C:\Users\Administrator\Desktop\123\Samp(17).vir//Document(208).jse;Trojan-Downloader.JS.Agent.asdfxs;木马程序;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(17).vir//data0000//-SWIFT-43f-.js;C:\Users\Administrator\Desktop\123\Samp(17).vir//data0000//-SWIFT-43f-.js;Trojan-Downloader.JS.Cryptoload.abc;木马程序;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(17).vir;C:\Users\Administrator\Desktop\123\Samp(17).vir;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(290).vir//data0000//134383275.zip//7oSZHYt.js;C:\Users\Administrator\Desktop\123\Samp(290).vir//data0000//134383275.zip//7oSZHYt.js;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:30:00
20.08.2018 20.30.00;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(290).vir;C:\Users\Administrator\Desktop\123\Samp(290).vir;08/20/2018 20:30:00
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(286).vir;C:\Users\Administrator\Desktop\123\Samp(286).vir;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(286).vir//data0000//QvojzRsGS;C:\Users\Administrator\Desktop\123\Samp(286).vir//data0000//QvojzRsGS;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(275).vir//data0000//TmUPy382-1682.vbs;C:\Users\Administrator\Desktop\123\Samp(275).vir//data0000//TmUPy382-1682.vbs;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(275).vir;C:\Users\Administrator\Desktop\123\Samp(275).vir;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(274).vir//data0000//17779.zip//17779.js;C:\Users\Administrator\Desktop\123\Samp(274).vir//data0000//17779.zip//17779.js;UDS:Trojan-Downloader.JS.Cryptoload.ayz;木马程序;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(274).vir;C:\Users\Administrator\Desktop\123\Samp(274).vir;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(272).vir//data0000//19367.2017-07-31_31.97.09.vbs;C:\Users\Administrator\Desktop\123\Samp(272).vir//data0000//19367.2017-07-31_31.97.09.vbs;Trojan-Downloader.VBS.Agent.cls;木马程序;08/20/2018 20:29:59
20.08.2018 20.29.59;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(272).vir;C:\Users\Administrator\Desktop\123\Samp(272).vir;08/20/2018 20:29:59
20.08.2018 20.29.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(270).vir//objdata;C:\Users\Administrator\Desktop\123\Samp(270).vir//objdata;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:29:57
20.08.2018 20.29.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(270).vir//objdata//data0000;C:\Users\Administrator\Desktop\123\Samp(270).vir//objdata//data0000;HEUR:Trojan.OLE2.Badur.urc;木马程序;08/20/2018 20:29:57
20.08.2018 20.29.57;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(270).vir;C:\Users\Administrator\Desktop\123\Samp(270).vir;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:29:57
20.08.2018 20.29.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(271).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(271).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Backdoor.Win32.Dridex.ef;木马程序;08/20/2018 20:29:54
20.08.2018 20.29.54;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(271).vir;C:\Users\Administrator\Desktop\123\Samp(271).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:54
20.08.2018 20.29.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(276).vir//JIM;C:\Users\Administrator\Desktop\123\Samp(276).vir//JIM;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:29:51
20.08.2018 20.29.51;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(276).vir;C:\Users\Administrator\Desktop\123\Samp(276).vir;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:29:51
20.08.2018 20.29.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(277).vir;C:\Users\Administrator\Desktop\123\Samp(277).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:50
20.08.2018 20.29.50;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(277).vir//word/document.xml;C:\Users\Administrator\Desktop\123\Samp(277).vir//word/document.xml;Trojan-Downloader.MSWord.Agent.bpi;木马程序;08/20/2018 20:29:50
20.08.2018 20.29.47;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(278).vir;C:\Users\Administrator\Desktop\123\Samp(278).vir;08/20/2018 20:29:47
20.08.2018 20.29.47;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(278).vir//Module1;C:\Users\Administrator\Desktop\123\Samp(278).vir//Module1;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:29:47
20.08.2018 20.29.47;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(278).vir//C:\Users\M\AppData\Local\Temp\st11.exe;C:\Users\Administrator\Desktop\123\Samp(278).vir//C:\Users\M\AppData\Local\Temp\st11.exe;Trojan-PSW.Win32.Fareit.bium;木马程序;08/20/2018 20:29:47
20.08.2018 20.29.45;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(279).vir;C:\Users\Administrator\Desktop\123\Samp(279).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:45
20.08.2018 20.29.45;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(279).vir//xl/vbaProject.bin//RID_009;C:\Users\Administrator\Desktop\123\Samp(279).vir//xl/vbaProject.bin//RID_009;Trojan-Downloader.MSExcel.Agent.dm;木马程序;08/20/2018 20:29:45
20.08.2018 20.29.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(281).vir;C:\Users\Administrator\Desktop\123\Samp(281).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:43
20.08.2018 20.29.43;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(281).vir//xl/vbaProject.bin//form.o.UserForm1;C:\Users\Administrator\Desktop\123\Samp(281).vir//xl/vbaProject.bin//form.o.UserForm1;Trojan.MSWord.Agent.fp;木马程序;08/20/2018 20:29:43
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:29:41
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:29:41
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(282).vir//data0000//uk_confirmation_ph954869378.zip;UDS:Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:29:41
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(282).vir;C:\Users\Administrator\Desktop\123\Samp(282).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:41
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(283).vir//word/embeddings/oleObject1.bin;C:\Users\Administrator\Desktop\123\Samp(283).vir//word/embeddings/oleObject1.bin;Trojan-Downloader.MSWord.Agent.bqe;木马程序;08/20/2018 20:29:41
20.08.2018 20.29.41;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(283).vir;C:\Users\Administrator\Desktop\123\Samp(283).vir;08/20/2018 20:29:41
20.08.2018 20.29.38;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(287).vir//tmpFACD;C:\Users\Administrator\Desktop\123\Samp(287).vir//tmpFACD;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:29:38
20.08.2018 20.29.38;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(287).vir;C:\Users\Administrator\Desktop\123\Samp(287).vir;08/20/2018 20:29:38
20.08.2018 20.29.36;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(20).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(20).vir//ThisDocument;Trojan-Downloader.MSWord.Agent.bdx;木马程序;08/20/2018 20:29:36
20.08.2018 20.29.36;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(20).vir;C:\Users\Administrator\Desktop\123\Samp(20).vir;08/20/2018 20:29:36
20.08.2018 20.29.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(16).vir//ThisDocument;C:\Users\Administrator\Desktop\123\Samp(16).vir//ThisDocument;HEUR:Trojan.Script.Agent.gen;木马程序;08/20/2018 20:29:34
20.08.2018 20.29.34;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(16).vir;C:\Users\Administrator\Desktop\123\Samp(16).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:29:34
20.08.2018 20.29.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(291).vir//objdata;C:\Users\Administrator\Desktop\123\Samp(291).vir//objdata;HEUR:Trojan.OLE2.Badur.urc;木马程序;08/20/2018 20:29:32
20.08.2018 20.29.32;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(291).vir;C:\Users\Administrator\Desktop\123\Samp(291).vir;HEUR:Exploit.MSOffice.Generic;木马程序;08/20/2018 20:29:32
20.08.2018 20.29.29;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(293).vir;C:\Users\Administrator\Desktop\123\Samp(293).vir;08/20/2018 20:29:29
20.08.2018 20.29.29;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(293).vir//QvojzRsGS;C:\Users\Administrator\Desktop\123\Samp(293).vir//QvojzRsGS;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:29:29
20.08.2018 20.29.26;检测到的对象 ( 文件 ) 已被清除;C:\Users\Administrator\Desktop\123\Samp(4).vir;C:\Users\Administrator\Desktop\123\Samp(4).vir;08/20/2018 20:29:26
20.08.2018 20.29.26;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(4).vir//word/vbaProject.bin//JIM;C:\Users\Administrator\Desktop\123\Samp(4).vir//word/vbaProject.bin//JIM;HEUR:Trojan-Downloader.Script.Generic;木马程序;08/20/2018 20:29:26
20.08.2018 20.29.21;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(295).vir;C:\Users\Administrator\Desktop\123\Samp(295).vir;HEUR:Trojan-Downloader.MSOffice.Generic;木马程序;08/20/2018 20:29:21
20.08.2018 20.29.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(3).vir;C:\Users\Administrator\Desktop\123\Samp(3).vir;HEUR:Trojan.Win32.Generic;木马程序;08/20/2018 20:29:20
20.08.2018 20.29.20;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(3).vir//form.o.eRYTFJHvhsad//data0000;C:\Users\Administrator\Desktop\123\Samp(3).vir//form.o.eRYTFJHvhsad//data0000;HEUR:Trojan.Win32.Generic;木马程序;08/20/2018 20:29:20
20.08.2018 20.29.18;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:18
20.08.2018 20.29.18;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000//uk_confirmation_ph954869378.zip//uk_confirmation_ph954869378.exe;Trojan.Win32.Reconyc.hwem;木马程序;08/20/2018 20:29:18
20.08.2018 20.29.18;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000//uk_confirmation_ph954869378.zip;C:\Users\Administrator\Desktop\123\Samp(299).vir//data0000//uk_confirmation_ph954869378.zip;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:18
20.08.2018 20.29.18;检测到的对象 ( 文件 ) 已删除;C:\Users\Administrator\Desktop\123\Samp(299).vir;C:\Users\Administrator\Desktop\123\Samp(299).vir;UDS:DangerousObject.Multi.Generic;08/20/2018 20:29:18




剩余样本








本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1人气 +1 收起 理由
dongwenqi + 1 版区有你更精彩: )

查看全部评分

梦想起航.
发表于 2018-8-20 20:41:44 | 显示全部楼层
金山    1/300

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
command360
发表于 2018-8-20 20:42:54 | 显示全部楼层
管家 13.0(无BD)20:44
隔离:39/300
修复:12/300(管家修复能力吐槽一下,不知一次弹出删除被感染文件的警告,如图)

Total:51/300 (17%)

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1人气 +1 收起 理由
www-tekeze + 1 感谢解答: )

查看全部评分

www-tekeze
 楼主| 发表于 2018-8-20 20:45:55 | 显示全部楼层

我并没动过MD5 (如果动过我一定会在帖子里注明),不明觉厉,为何如此?
www-tekeze
 楼主| 发表于 2018-8-20 20:46:26 | 显示全部楼层

    这个。。。
www-tekeze
 楼主| 发表于 2018-8-20 20:48:19 | 显示全部楼层
command360 发表于 2018-8-20 20:28
火绒 20:35
隔离:166/300
修复:83/300

没错,修复的很多。。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-19 20:23 , Processed in 0.147414 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表