本帖最后由 Nocria 于 2020-5-9 21:11 编辑
IKARUS - 5/17
- [09.05.2020 21:09:44] On-demand scan started: "user_defined"
- [09.05.2020 21:09:44] Found, 0.141s, SigName: "Trojan-Banker.UrSnif", SigId: 3734976, Type: "VIRUS", File: "C:\Users\promi\Desktop\2020-05-07-Valak-with-IcedID-malware-and-artifacts\2020-05-07-Alternate-Data-Stream-from-PowerManagerSpm.jar.bin"
- [09.05.2020 21:09:44] Found, 0.47s, SigName: "Trojan-Banker.UrSnif", SigId: 3734976, Type: "VIRUS", File: "C:\Users\promi\Desktop\2020-05-07-Valak-with-IcedID-malware-and-artifacts\2020-05-07-file.dll.bin"
- [09.05.2020 21:09:44] Found, 0.00s, SigName: "Trojan.Win32.Krypt", SigId: 300337296, Type: "VIRUS", File: "C:\Users\promi\Desktop\2020-05-07-Valak-with-IcedID-malware-and-artifacts\2020-05-07-initial-DLL-for-Valak.bin"
- [09.05.2020 21:09:44] Found, 0.00s, SigName: "Trojan.Agent", SigId: 300426828, Type: "VIRUS", File: "C:\Users\promi\Desktop\2020-05-07-Valak-with-IcedID-malware-and-artifacts\2020-05-07-scheduled-task-for-Valak-1-of-2.txt"
- [09.05.2020 21:09:44] Found, 0.00s, SigName: "Trojan.JS.Agent", SigId: 300426540, Type: "VIRUS", File: "C:\Users\promi\Desktop\2020-05-07-Valak-with-IcedID-malware-and-artifacts\2020-05-07-script-file-for-Valak-infection-s2to.0.txt"
- [09.05.2020 21:09:44] On-demand scan FINISHED: "user_defined"
- [09.05.2020 21:09:44] ----------------------------------------------------
- [09.05.2020 21:09:44] Directories scanned: 1
- [09.05.2020 21:09:44] Files scanned: 27
- [09.05.2020 21:09:44] Virus found: 5
- [09.05.2020 21:09:44] ----------------------------------------------------
复制代码
|