楼主: Jerry.Lin
收起左侧

[病毒样本] 【开放测试】卡饭病毒样本包 第四十三期 20190301

  [复制链接]
你好,再见
头像被屏蔽
发表于 2019-3-1 19:42:32 | 显示全部楼层
本帖最后由 你好,再见 于 2019-3-1 19:49 编辑
  1. 极宝杀毒 查杀日志

  2. 当前版本:正式版 V1.5

  3. 开始时间:2019年3月1日19时47分53秒

  4. 结束时间:2019年3月1日19时48分11秒

  5. 扫描用时: 18秒

  6. 扫描速度:无

  7. 扫描文件:67个

  8. 发现威胁:66个

  9. 威胁列表:

  10.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_002e9948ff593c09c16061cd02c676e99470b9386ba071de7cb8afc47157655a.exe        Win32/Trojan.BO.4f8

  11.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_08912cf4cd44789e9ef1b830804a2f01f571fad6a1e858296e4a5931a37d967f.exe        HEUR/QVM03.0.8C13.Malware.Gen

  12.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_0beb6ca2d774b6c044091c449dd169260705dcb05daac00066b0d735a1580549.exe        HEUR/QVM10.2.65DB.Malware.Gen

  13.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_0cd324d96e9560bdc17600985fb360b662d53a98e98677ce64f3c08ee63ba054.exe        Win32/Trojan.0a0

  14.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_120cdfbcb025ada491a35f0aebfa143730d8755cd67b8b4a7a701da592f822c7.exe        HEUR/QVM06.2.8425.Malware.Gen

  15.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_1467edba795a5acd85b75ad03001049aa665665023fe368012d30b80407320f6.jar        Win32/Trojan.407

  16.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_17c1b8c5dc105c5489582a96e47d51e09d3e15d517e4229ae01b6d0cc52933ec.exe        Win32/Trojan.PSW.677

  17.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_1a52aa45405316a53a96c5af239a91d69a2841d4ba3b47ed25fc48068274d2a8.exe        Win32/Trojan.Script.ed4

  18.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_2090edbf1bbdb4e47b0ac6d8757708c555f2466df9c2cd8da4583c321c8fb914.exe        HEUR/QVM03.0.8B34.Malware.Gen

  19.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_229fc00c602e1d1cbc8e996dbbdb2083e5b2a272705f8f69ca99c29d237658a0.exe        Win32/Trojan.867

  20.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_2df9a9d394e07ec493ad372df04d942a4a219d14c27f7e68e63b68ef1284d7f0.exe        Win32/Trojan.PSW.4b6

  21.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_331939e5948b99d1d39994b5878d5afb9ed5886c89824f38ed69fc85648e531a.exe        HEUR/QVM10.2.8A7B.Malware.Gen

  22.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3a1df9deda01395615469ad5575f75d46f0b6e73742b60922d6b5dc09c31968e.exe        Win32/Trojan.302

  23.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3a78b524a99630d5c1e4422b0e4da4a3d97b339208a56b5c6e41fced1029d6c6.exe        Win32/Trojan.74b

  24.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3ad3f118ed2d7d50c25ad1e0ffa2c54c7f769b68fb5e98013f50bb5b6d2ff1c4.exe        Win32/Trojan.BO.a9c

  25.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3b4784aabbe2818c9914e9662d45b4d03af8e79fe423315f7299a51ea9d6b9fa.exe        HEUR/QVM20.1.8BD5.Malware.Gen

  26.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3e8f71eaf4bf65a72a9d9797d02fcc3f1d094b5feb2a9a7f46bac484a6e0d7b5.exe        Win32/Trojan.593

  27.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe        Heur.BlockInput.A

  28.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_419af6e20a8ccb0a6dcb6ed609d856b1a6edf52c13505e3c95354d6e7c7afb71.exe        Win32/Trojan.4be

  29.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_4338bf0330dff0e353c4a4a9974c85130dce719c437684a6612ef8561243f8b7.exe        Win32/Trojan.931

  30.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_45ea0b3cd2b5abc89a15bbe8ecb15f7418c8cf6645ab0b6e25501e954af40e97.exe        Win32/Trojan.909

  31.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_488b1c8e9f691b656dbd58b33fe109dd2e76ffeb8f1fbe002751f5cd6ddca6b5.exe        HEUR/QVM03.0.8799.Malware.Gen

  32.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_5339882a3c129a965c07a910485ebd29cbf6aaf6901c0a09d442f955ffebb666.exe        HEUR/QVM06.2.82D3.Malware.Gen

  33.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_56f4955605d1919b0999ce0a609fc72b5bc693c15a8da6c945f7a781cf8b9dcc.exe        JCloud.Black File

  34.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_5b23fd625b5c8301230dc0750ec249f8b637410fb5dac7df882bc059e8551321.exe        Win32/Trojan.8f3

  35.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_5d93c9a2b66e82c49d978415f05b2ab14ecf755f124f3801de973c0a87747ed6.exe        Win32/Trojan.Ransom.8af

  36.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_60159c66c5bf6346e610a810a41e8070548e6086bdcb638085127410f6f67a7d.exe        Win32/Trojan.BO.2b8

  37.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_61cee96961fd1bf9067c15d79f3c7ccde5b5b2e5b0b3a434a4952a2c5676219d.exe        Win32/Trojan.a40

  38.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_63a3642b99a1a73c680ce712da9e51062a0fb0c6e58dded855fa9439c7d99ae4.exe        HEUR/QVM03.0.8AFB.Malware.Gen

  39.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_659a13b50ce69840a8131535f21ef68d0af3cc1865a4ebdddc22e6ab0295db4c.exe        HEUR/QVM10.2.65BB.Malware.Gen

  40.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_65b108fc4049973bcdf4f45340459192cfd83c51434b9b73f34eb926c1eb18de.exe        Win32/Trojan.Generic.a4a

  41.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_6d111c86ee3dc25077ce1d90876a2f068bc82de6da823c4effef40bdea888456.exe        JCloud.Black File

  42.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_732a688e619a0f755e0da9303135aa3360dca3098e113a758f8fa6505b7705c7.exe        Win32/Trojan.8ac

  43.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_732fedbfab68c51ba03101cb89a6b5bd607747ff936052e227f2f4b2ba59f13d.exe        HEUR/QVM05.1.8C56.Malware.Gen

  44.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_73542285e1a49f86c5b9da8edfe86d54c5ac59569373f8b3cb9df5bdbdd01b64.exe        Win32/Trojan.Downloader.0c5

  45.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_748d5515057b852edba1479b26d83166e6ede29266ef7d0840a994d78469c347.exe        HEUR/QVM03.0.8AD7.Malware.Gen

  46.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_7d9da897e4063627d2a8526c484bc7a448274cb16b9e38475fa0b43539bea3a7.exe        Win32/Trojan.bc3

  47.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_8008a8bc04360de923f469ef67d59b397c6f3e61af6ad7b1df2cbb11fb6666b6.exe        Win32/Backdoor.763

  48.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_854c493cb637ab01fc052b339930cee17eb47ae434580ec32e768a0974d2e0b4.exe        Win32/Backdoor.57a

  49.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_8b693c1828f9ac95d35c53e2303edb699b0babd83cb7cd6adac938dccfa1ea68.exe        Win32/Trojan.469

  50.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_8ec053f1467708d8c35664d2443a1885c42a3f7612232cb4e8857a9fa0f13a88.exe        Win32/Trojan.d0f

  51.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_94f33773c739a285d89207ef66124f4d987fd5a7ca6def3a00b23a77d70c9cf2.exe        Win32/Trojan.b47

  52.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_a0d1f747570b228759b24ba1fc912278439fa75c24d414a8223a5f995421e0d3.exe        Win32/Trojan.df4

  53.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_a28b197f2cf9d82101980e302f16732fd09eb9b4760e13699a3c0d2c6cd18cc3.exe        Win32/Trojan.ed8

  54.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_a5dfef9ea9518a207295664c85f386683af0626a9432daf00e83271de0563a61.exe        HEUR/QVM03.0.8557.Malware.Gen

  55.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_a690ed4945ffbe14ddfd3b9088159a8f22917f1fb3a1f61d3d0292764b80963f.exe        Win32/Trojan.0f6

  56.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_a754e27d88f1a39bf4507aaa870381cedc688f265b8ff20956221272f51ed8c5.exe        HEUR/QVM03.0.8A5D.Malware.Gen

  57.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_ac21afe2ad48ddb9951b3d91f1c186739770fd3f57b5a53a5e3b7cd36dad88fa.exe        Win32/Backdoor.388

  58.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_ac5646e82fe91284e50cceb7c6eefb7e2dd2268bc3be7cac8bd954bc790e2265.exe        Win32/Trojan.ed3

  59.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_b2364cdbac07a486df752ad2197a1ae191482e3805b311a757cbfafcff1aedfa.exe        Win32/Trojan.Spy.67f

  60.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_b54cd72e97842fc9312d72bd499ce5cc8df15f513fb5c15633c9b93acbd53030.exe        Heur.BlockInput.A

  61.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_baf4aafd12414a635261c9ec47bdbf72bcfdc511bd314e1fd4bcebf013b43ab9.exe        Win32/Trojan.f71

  62.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_bb24b5a42c049a19c4a04f505de3ecdc617357b2507250c8b490d0199654c2f5.exe        Win32/Virus.PSW.4f9

  63.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_bc4aa393b23725c17d9753a505eea326e15daeb2cc27439ecec9fce15265d9fe.exe        Win32/Trojan.Dropper.e44

  64.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_c7a926261f058421a4961daaec6d6f23c65d83c849140c632385d4b4c17ead00.exe        HEUR/QVM03.0.8A7B.Malware.Gen

  65.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_d89778041a76276bc376228884e174870f324b87ff00360a67deea48f8fd97ba.exe        HEUR/QVM06.2.8A7B.Malware.Gen

  66.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_daa799c96f4a58f638c8cc95972af37b39cae68601bc884812a9ceb725e759ff.exe        HEUR/QVM03.0.8C56.Malware.Gen

  67.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_dd32a0dffa305adb3a55544d32e234ebba1d54d9881c9b76c4779a447cb64c1e.exe        Win32/Trojan.fc4

  68.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_e2e3fabbdec6961a764eb29fc6dc91863a0901740b7517494a01150587ed57d2.exe        JCloud.Black File

  69.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_e32c57ece0e38602e61a3251ff7d7cf0fce004998870edb66f308c8124b9188b.exe        Win32/Trojan.PSW.068

  70.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_e3e24dad84c3b10f151aec9c83085d0730d3b1821bede4282067ceb2f7ce7801.exe        Win32/Trojan.469

  71.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_e8b30564513377b4c0fe3e54c5a07ffb1320ea657ca6a0cee1b6b5d87974c610.exe        Win32/Trojan.565

  72.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_ecd64cab9babd7360be9ebd0560050839ffb07c3e7a8a9fd2a6a83975b3555b3.exe        Heur.Malware09.Sirius

  73.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_f013f173360ca57816a0a92a8f01a3ca0c5229afa5f16d7c3a78a33ac4a7c3ab.exe        Win32/Trojan.Spy.9dd

  74.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_f3c27f7f1cb447c47d76a55acb59ec74f000078b0c0a42aa4e765a908d24aa1f.exe        Win32/Trojan.BO.5a5

  75.         D:\Sirius\未处理\卡饭病~2\Kafan_Sample_ff4c5f6a1a5b68b956970751d56ee7905ec48ad39cc05416ee8ee958ecd0c40e.exe        Win32/Trojan.Ransom.59a
复制代码

huang1111
发表于 2019-3-1 20:09:45 | 显示全部楼层
@191196846   老大,好像时间都过了好久了额
www-tekeze
发表于 2019-3-1 20:10:16 | 显示全部楼层
七游 发表于 2019-3-1 18:08
不是,我意思是说,360TSE的自动上传,全都是用户手动点了才能自动上传。(非个人设置问题)
全都是在扫 ...

我知道你用的国际版,上传的事肯定比较慎重。。。我前面说那些指的是卫士,不矛盾。
Nocria
发表于 2019-3-1 20:19:48 | 显示全部楼层
本帖最后由 humanlwj52 于 2019-3-1 20:57 编辑

测试环境:               Windows 7 SP1 x64
测试产品:               F-Secure Internet Security 17.5
病毒库版本:           20190301_02
测试项目:               扫描
测试配置:               标准
结果:                      扫描(60/67)+运行(4/7) = 总计 (64/67)95.5%

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
x291502676
发表于 2019-3-1 20:52:21 | 显示全部楼层
期待BD双击测试
一下子丫
发表于 2019-3-1 21:30:08 | 显示全部楼层
本帖最后由 一下子丫 于 2019-3-1 22:38 编辑

拿包好久没来拿包了

测试环境:

测试产品:

病毒库版本:30503
截图:


comodo的杀毒还是一如既往的。。。。

其余均已上报。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ziyerain2015
发表于 2019-3-1 22:06:22 | 显示全部楼层
www-tekeze 发表于 2019-3-1 17:56
同一文件夹里的PE文件会被自动上传,但doc/xls/pdf、图片音乐、文本类的应该不会,否则。。


国内自动的扫描EXE就行了吧。白皮书上写了可执行文件上报,上报别的?他一个上市公司你指望企业直接倒闭,一个探头事件就关了整个直播自断一臂了。蹲点么就说说呀哈哈作为散户不鞭策下这些上市公司,还不尾巴上天。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wrb116
发表于 2019-3-1 22:20:02 | 显示全部楼层
本帖最后由 wrb116 于 2019-3-1 22:37 编辑

    测试环境:win10 pro x64 1809
    测试产品:avast pre beta 19.3.2366
    病毒库版本: 190301-2
    测试项目:监控+扫描+沙盒
    测试配置:高敏
    结果:监控(59/67) + 扫描(5/8) + 沙盒(0/3)= 总计 (64/67)95.5%
    日志:
    截图:

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
asdfgpasdfgp
发表于 2019-3-1 22:34:01 | 显示全部楼层
本帖最后由 asdfgpasdfgp 于 2019-3-1 23:58 编辑

测试环境:win10 1803 ×64 实机
测试产品:mcafee防火墙+反病毒套装
病毒库版本:20190301
测试项目:扫描+执行
测试配置:标准
结果:扫描(23/67) + 执行(38/67)= 总计 (61/67)91.04%

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1人气 +1 收起 理由
静影沉璧 + 1

查看全部评分

静影沉璧
发表于 2019-3-1 22:36:00 | 显示全部楼层
本帖最后由 静影沉璧 于 2019-3-1 23:15 编辑

Bitdefender Total Security 2019
Database:20190301 22:43


Scan 57X+Run 4X=61/67 91%

  1. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_94f33773c739a285d89207ef66124f4d987fd5a7ca6def3a00b23a77d70c9cf2.exe=>(Dropped 0)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1770 Deleted
  2. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_ff4c5f6a1a5b68b956970751d56ee7905ec48ad39cc05416ee8ee958ecd0c40e.exe Trojan.GenericKD.31740323 Deleted
  3. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_8b693c1828f9ac95d35c53e2303edb699b0babd83cb7cd6adac938dccfa1ea68.exe Trojan.Agent.DQMX Deleted
  4. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_e3e24dad84c3b10f151aec9c83085d0730d3b1821bede4282067ceb2f7ce7801.exe Gen:Variant.Strictor.182545 Deleted
  5. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_8008a8bc04360de923f469ef67d59b397c6f3e61af6ad7b1df2cbb11fb6666b6.exe Trojan.GenericKD.31739519 Deleted
  6. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_f3c27f7f1cb447c47d76a55acb59ec74f000078b0c0a42aa4e765a908d24aa1f.exe Trojan.GenericKD.41060231 Deleted
  7. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_732fedbfab68c51ba03101cb89a6b5bd607747ff936052e227f2f4b2ba59f13d.exe Trojan.Agent.DQOQ Deleted
  8. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_488b1c8e9f691b656dbd58b33fe109dd2e76ffeb8f1fbe002751f5cd6ddca6b5.exe Trojan.GenericKD.31738410 Deleted
  9. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_f013f173360ca57816a0a92a8f01a3ca0c5229afa5f16d7c3a78a33ac4a7c3ab.exe Trojan.Agent.DQOQ Deleted
  10. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_229fc00c602e1d1cbc8e996dbbdb2083e5b2a272705f8f69ca99c29d237658a0.exe Trojan.GenericKD.41061136 Deleted
  11. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3a1df9deda01395615469ad5575f75d46f0b6e73742b60922d6b5dc09c31968e.exe Gen:Variant.Razy.447766 Deleted
  12. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_e2e3fabbdec6961a764eb29fc6dc91863a0901740b7517494a01150587ed57d2.exe Trojan.GenericKD.31735245 Deleted
  13. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_120cdfbcb025ada491a35f0aebfa143730d8755cd67b8b4a7a701da592f822c7.exe Trojan.GenericKD.31737121 Deleted
  14. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_0cd324d96e9560bdc17600985fb360b662d53a98e98677ce64f3c08ee63ba054.exe Trojan.GenericKD.31739795 Deleted
  15. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_dd32a0dffa305adb3a55544d32e234ebba1d54d9881c9b76c4779a447cb64c1e.exe Trojan.GenericKD.31740207 Deleted
  16. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_002e9948ff593c09c16061cd02c676e99470b9386ba071de7cb8afc47157655a.exe Gen:Variant.Mikey.94331 Deleted
  17. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_d89778041a76276bc376228884e174870f324b87ff00360a67deea48f8fd97ba.exe Trojan.GenericKD.31739903 Deleted
  18. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_ac21afe2ad48ddb9951b3d91f1c186739770fd3f57b5a53a5e3b7cd36dad88fa.exe Gen:Variant.Razy.471988 Deleted
  19. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_61cee96961fd1bf9067c15d79f3c7ccde5b5b2e5b0b3a434a4952a2c5676219d.exe Trojan.GenericKD.31739475 Deleted
  20. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_bc4aa393b23725c17d9753a505eea326e15daeb2cc27439ecec9fce15265d9fe.exe Trojan.GenericKD.41061280 Deleted
  21. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_63a3642b99a1a73c680ce712da9e51062a0fb0c6e58dded855fa9439c7d99ae4.exe Trojan.GenericKD.31740280 Deleted
  22. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_daa799c96f4a58f638c8cc95972af37b39cae68601bc884812a9ceb725e759ff.exe Gen:Suspicious.Cloud.4.Jm1@aW1xtfli Deleted
  23. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_2090edbf1bbdb4e47b0ac6d8757708c555f2466df9c2cd8da4583c321c8fb914.exe Trojan.GenericKD.31740471 Deleted
  24. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_331939e5948b99d1d39994b5878d5afb9ed5886c89824f38ed69fc85648e531a.exe Trojan.GenericKD.31739812 Deleted
  25. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_baf4aafd12414a635261c9ec47bdbf72bcfdc511bd314e1fd4bcebf013b43ab9.exe Trojan.GenericKD.41042208 Deleted
  26. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_45ea0b3cd2b5abc89a15bbe8ecb15f7418c8cf6645ab0b6e25501e954af40e97.exe Trojan.GenericKD.41057304 Deleted
  27. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_b54cd72e97842fc9312d72bd499ce5cc8df15f513fb5c15633c9b93acbd53030.exe Trojan.Inject.AUZ Deleted
  28. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_ecd64cab9babd7360be9ebd0560050839ffb07c3e7a8a9fd2a6a83975b3555b3.exe Trojan.Agent.DQMX Deleted
  29. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  30. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_c7a926261f058421a4961daaec6d6f23c65d83c849140c632385d4b4c17ead00.exe Gen:Variant.Midie.61070 Deleted
  31. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_56f4955605d1919b0999ce0a609fc72b5bc693c15a8da6c945f7a781cf8b9dcc.exe Trojan.GenericKD.31736384 Deleted
  32. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_a690ed4945ffbe14ddfd3b9088159a8f22917f1fb3a1f61d3d0292764b80963f.exe Trojan.GenericKD.31739115 Deleted
  33. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_94f33773c739a285d89207ef66124f4d987fd5a7ca6def3a00b23a77d70c9cf2.exe=>(Dropped 0)=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1770 Deleted
  34. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_8ec053f1467708d8c35664d2443a1885c42a3f7612232cb4e8857a9fa0f13a88.exe Gen:Variant.Ulise.29013 Deleted
  35. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_2df9a9d394e07ec493ad372df04d942a4a219d14c27f7e68e63b68ef1284d7f0.exe=>(NSIS o)=>lzma_solid_nsis0000 Gen:Variant.Nemesis.17 Moved to Quarantine
  36. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_a754e27d88f1a39bf4507aaa870381cedc688f265b8ff20956221272f51ed8c5.exe Trojan.GenericKD.41060772 Deleted
  37. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_a5dfef9ea9518a207295664c85f386683af0626a9432daf00e83271de0563a61.exe Gen:Variant.Midie.61062 Deleted
  38. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3e8f71eaf4bf65a72a9d9797d02fcc3f1d094b5feb2a9a7f46bac484a6e0d7b5.exe Trojan.GenericKD.41054033 Deleted
  39. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_ac5646e82fe91284e50cceb7c6eefb7e2dd2268bc3be7cac8bd954bc790e2265.exe Gen:Variant.Midie.61070 Deleted
  40. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_5b23fd625b5c8301230dc0750ec249f8b637410fb5dac7df882bc059e8551321.exe Gen:Variant.Midie.61062 Deleted
  41. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_7d9da897e4063627d2a8526c484bc7a448274cb16b9e38475fa0b43539bea3a7.exe Generic.MSIL.PasswordStealerA.6724DCEB Deleted
  42. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_73542285e1a49f86c5b9da8edfe86d54c5ac59569373f8b3cb9df5bdbdd01b64.exe Trojan.GenericKD.31739500 Deleted
  43. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_08912cf4cd44789e9ef1b830804a2f01f571fad6a1e858296e4a5931a37d967f.exe Trojan.GenericKD.41059630 Deleted
  44. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_748d5515057b852edba1479b26d83166e6ede29266ef7d0840a994d78469c347.exe Trojan.GenericKD.31740366 Deleted
  45. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_1a52aa45405316a53a96c5af239a91d69a2841d4ba3b47ed25fc48068274d2a8.exe=>(Dropped 0)=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.219 Deleted
  46. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_65b108fc4049973bcdf4f45340459192cfd83c51434b9b73f34eb926c1eb18de.exe Trojan.GenericKD.41059880 Deleted
  47. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_732a688e619a0f755e0da9303135aa3360dca3098e113a758f8fa6505b7705c7.exe Trojan.GenericKD.31739575 Deleted
  48. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_e8b30564513377b4c0fe3e54c5a07ffb1320ea657ca6a0cee1b6b5d87974c610.exe=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1772 Deleted
  49. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_5d93c9a2b66e82c49d978415f05b2ab14ecf755f124f3801de973c0a87747ed6.exe Gen:Variant.Barys.53474 Deleted
  50. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_5339882a3c129a965c07a910485ebd29cbf6aaf6901c0a09d442f955ffebb666.exe Trojan.GenericKD.31735109 Deleted
  51. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_a0d1f747570b228759b24ba1fc912278439fa75c24d414a8223a5f995421e0d3.exe Gen:Variant.Ursu.312572 Deleted
  52. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_60159c66c5bf6346e610a810a41e8070548e6086bdcb638085127410f6f67a7d.exe Trojan.GenericKD.41060127 Deleted
  53. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_1a52aa45405316a53a96c5af239a91d69a2841d4ba3b47ed25fc48068274d2a8.exe=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.219 Deleted
  54. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_6d111c86ee3dc25077ce1d90876a2f068bc82de6da823c4effef40bdea888456.exe Trojan.GenericKD.41057154 Deleted
  55. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  56. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_419af6e20a8ccb0a6dcb6ed609d856b1a6edf52c13505e3c95354d6e7c7afb71.exe Trojan.GenericKD.31737856 Deleted
  57. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3b4784aabbe2818c9914e9662d45b4d03af8e79fe423315f7299a51ea9d6b9fa.exe Gen:Suspicious.Cloud.1.pGW@aiWCjPb Deleted
  58. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_854c493cb637ab01fc052b339930cee17eb47ae434580ec32e768a0974d2e0b4.exe=>(NSIS o)=>zlib_nsis0002 Trojan.GenericKD.41054049 Moved to Quarantine
  59. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  60. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  61. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_1a52aa45405316a53a96c5af239a91d69a2841d4ba3b47ed25fc48068274d2a8.exe=>(Dropped 0)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.219 Deleted
  62. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_17c1b8c5dc105c5489582a96e47d51e09d3e15d517e4229ae01b6d0cc52933ec.exe Trojan.GenericKD.41056350 Deleted
  63. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_2df9a9d394e07ec493ad372df04d942a4a219d14c27f7e68e63b68ef1284d7f0.exe=>(NSIS o)=>lzma_solid_nsis0003 Gen:Variant.Razy.467448 Moved to Quarantine
  64. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3a78b524a99630d5c1e4422b0e4da4a3d97b339208a56b5c6e41fced1029d6c6.exe Gen:Variant.Ursu.312572 Deleted
  65. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>ToolBIT.exe=>(NSIS o)=>zlib_nsis0001=>(RAR Sfx o)=>1.exe Password-protected Not scanned(file was password-protected)
  66. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  67. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  68. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  69. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  70. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>ToolBIT.exe=>(NSIS o)=>zlib_nsis0001=>(RAR Sfx o)=>1.exe Password-protected Not scanned(file was password-protected)
  71. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT r)=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>ToolBIT.exe=>(NSIS o)=>zlib_nsis0001=>(RAR Sfx o)=>1.exe Password-protected Not scanned(file was password-protected)
  72. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  73. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  74. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>(AutoIT Script)=>(unicode) AIT:Trojan.Nymeria.1583 Deleted
  75. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>D:\#?07K,A>DBK\#Stealer\Stealer\?52\Test_1\Loader.exe Trojan.GenericKD.31720482 Deleted
  76. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3feada980237e605429c0eac41cbcab442727b207d1d6ce39d8e12daf608da76.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>SplittedFiles.exe=>D:=>#?07K,A>DBK=>#Stealer=>Stealer=>?52=>Test_1=>ToolBIT.exe=>(NSIS o)=>zlib_nsis0001=>(RAR Sfx o)=>1.exe Password-protected Not scanned(file was password-protected)


  77. C:\Users\Joseph\Desktop\20190301\Kafan_Sample_3ad3f118ed2d7d50c25ad1e0ffa2c54c7f769b68fb5e98013f50bb5b6d2ff1c4.exe Gen:Suspicious.Cloud.8.uG0@a0nH0Uki

  78. Kafan_Sample_4338bf0330dff0e353c4a4a9974c85130dce719c437684a6612ef8561243f8b7

  79. C:\Users\Joseph\AppData\Roaming\3.exe is infected with Gen:Variant.Ransom.Fantom.4
  80. C:\Users\Joseph\AppData\Roaming\2.exe is infected with Trojan.GenericKDZ.53050
  81. C:\Users\Joseph\AppData\Roaming\1.exe is infected with Gen:Variant.Ulise.29003
复制代码







本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-3-29 07:08 , Processed in 0.101708 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表