本帖最后由 病毒探索者 于 2020-4-16 17:32 编辑
Malwarebytes

run 2.exe killed
- Malwarebytes
- www.malwarebytes.com
- -Log Details-
- Scan Date: 4/16/20
- Scan Time: 2:44 PM
- Log File: ad8bb886-7fad-11ea-9184-000c29928d1b.json
- -Software Information-
- Version: 4.1.0.56
- Components Version: 1.0.875
- Update Package Version: 1.0.22522
- License: Trial
- -System Information-
- OS: Windows 10 (Build 18362.752)
- CPU: x64
- File System: NTFS
- User: DESKTOP-3Q54DFC\virus
- -Scan Summary-
- Scan Type: Custom Scan
- Scan Initiated By: Manual
- Result: Completed
- Objects Scanned: 5
- Threats Detected: 4
- Threats Quarantined: 0
- Time Elapsed: 0 min, 30 sec
- -Scan Options-
- Memory: Disabled
- Startup: Disabled
- Filesystem: Enabled
- Archives: Enabled
- Rootkits: Disabled
- Heuristics: Enabled
- PUP: Detect
- PUM: Detect
- -Scan Details-
- Process: 0
- (No malicious items detected)
- Module: 0
- (No malicious items detected)
- Registry Key: 0
- (No malicious items detected)
- Registry Value: 0
- (No malicious items detected)
- Registry Data: 0
- (No malicious items detected)
- Data Stream: 0
- (No malicious items detected)
- Folder: 0
- (No malicious items detected)
- File: 4
- Trojan.RNDCrypt.MSIL.Generic, C:\USERS\VIRUS\DOWNLOADS\EXE样本5X_254\5.EXE, No Action By User, 10426, 811883, 1.0.22522, , ame,
- Spyware.AgentTesla, C:\USERS\VIRUS\DOWNLOADS\EXE样本5X_254\1.EXE, No Action By User, 3978, 811433, 1.0.22522, , ame,
- Spyware.AgentTesla, C:\USERS\VIRUS\DOWNLOADS\EXE样本5X_254\4.EXE, No Action By User, 3978, 811286, 1.0.22522, , ame,
- Spyware.PoullightStealer, C:\USERS\VIRUS\DOWNLOADS\EXE样本5X_254\3.EXE, No Action By User, 8960, 811718, 1.0.22522, 7, dds, 00678574
- Physical Sector: 0
- (No malicious items detected)
- WMI: 0
- (No malicious items detected)
- (end)
复制代码
|