本帖最后由 YU2711 于 2020-4-20 13:03 编辑
趋势13/14
扫描(6/14)
MD5:1
Original:4
UPX:1
- 2020/4/20 12:38,Trojan.Win32.COBALTSTRIKE.SM,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\4.exe,已移除,即時掃瞄
- 2020/4/20 12:38,TROJ_GEN.R002C0DDK20,病毒,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\Original\2.exe,已移除,即時掃瞄
- 2020/4/20 12:38,TROJ_FRS.VSNW06D20,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\Original\3.exe,已移除,即時掃瞄
- 2020/4/20 12:38,Trojan.Win32.COBALTSTRIKE.SM,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\Original\4.exe,已移除,即時掃瞄
- 2020/4/20 12:38,Trojan.Win32.COBALTSTRIKE.SM,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\4.exe,已移除,手動掃瞄
- 2020/4/20 12:38,TROJ_GEN.R049C0PDJ20,病毒,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\Original\5.exe,已移除,手動掃瞄
复制代码 执行(7/8)
MD5:3
Original:1
UPX:3
- 2020/4/20 12:43,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\1.exe,OUIgo,1.00.0018,OUIGO, le TGV,ZwWriteVirtualMemory,已終止
- 2020/4/20 12:46,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\3.exe,未知,,,C:\Users\UseR\304912040124740\svchost.exe,已終止
- 2020/4/20 12:47,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\5.exe,未知,,,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\5.exe,已清除
- 2020/4/20 12:48,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\Original\1.exe,OUIgo,1.00.0018,OUIGO, le TGV,ZwWriteVirtualMemory,已終止
- 2020/4/20 12:48,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\1.exe,OUIgo,1.00.0018,OUIGO, le TGV,ZwWriteVirtualMemory,已終止
- 2020/4/20 12:49,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\3.exe,未知,,,C:\Users\UseR\203302306117536\svchost.exe,已終止
- 2020/4/20 12:50,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\5.exe,未知,,,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\5.exe,已清除
复制代码- 2020/4/20 12:44,HEU_CDPLC016,安全威脅,C:\Users\UseR\AppData\Local\Temp\~DF6B7303D219966DA6.TMP,已移除,關聯掃瞄
- 2020/4/20 12:47,HEU_FALCONTroj.Win32.Gen.XXBM100FF008,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\MD5\5.exe,已移除,即時掃瞄
- 2020/4/20 12:50,HEU_FALCONTroj.Win32.Gen.XXBM100FF008,安全威脅,C:\Users\UseR\Downloads\EXE样本5X_276\EXE样本5X_276\UPX\5.exe,已移除,即時掃瞄
复制代码 MISS:MD5(2).exe
|