本帖最后由 SayWhat13 于 2020-3-22 22:24 编辑
Malwarebytes
aspack 13 miss
md5 1 miss
original 1 miss
upx 1 miss
vmprotect 123 miss
zprotect 123 miss
File: 12
Trojan.GuLoader.VB, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\MD5\3.EXE, No Action By User, 10263, 800607, 1.0.21184, 9E78F84817629C1E237408E5, dds, 00643031
Generic.Malware/Suspicious, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\UPX\3.EXE, No Action By User, 0, 392686, 1.0.21184, , shuriken,
MachineLearning/Anomalous.100%, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ASPACK\2.EXE, No Action By User, 0, 392687, 1.0.21184, , shuriken,
MachineLearning/Anomalous.100%, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\UPX\2.EXE, No Action By User, 0, 392687, 1.0.21184, , shuriken,
Trojan.MalPack.AutoIt, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\MD5\2.EXE, No Action By User, 7647, 798318, 1.0.21184, 6666A8E6A8F1DBB2B5239EB1, dds, 00643031
Trojan.GuLoader.VB, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ORIGINAL\3.EXE, No Action By User, 10263, 800607, 1.0.21184, 9E78F84817629C1E237408E5, dds, 00643031
Trojan.MalPack.AutoIt, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ORIGINAL\2.EXE, No Action By User, 7647, 798318, 1.0.21184, 6666A8E6A8F1DBB2B5239EB1, dds, 00643031
Malware.Heuristic.7, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ORIGINAL\4.EXE, No Action By User, 7, 0, 1.0.21184, 7, dds, 00643031
Heuristics.Shuriken, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\MD5\5.EXE, No Action By User, 9944, 167, 1.0.21184, , ame,
Heuristics.Shuriken, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ZPROTECT\5.ZP.EXE, No Action By User, 9944, 167, 1.0.21184, 52030FB7AD21E079C8CED83D, dds, 00643031
Malware.Heuristic.7, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\MD5\4.EXE, No Action By User, 7, 0, 1.0.21184, 7, dds, 00643031
Heuristics.Shuriken, C:\USERS\PRESTON\DOWNLOADS\COMPRESSED\EXE样本5X_195\EXE样本5X_195\ORIGINAL\5.EXE, No Action By User, 9944, 167, 1.0.21184, , ame,
|