Avira 20x- 06/13/2020,09:13:50.231 [INFO] FP reports status 'NO False Positive' for file 'C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\AppData\Local\service.rre' [I:10, S:111]
- 06/13/2020,09:13:50.231 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\AppData\Local\service.rre
- 06/13/2020,09:13:50.231 [INFO] [DETECTION] file contains 'TR/AD.TrickBot.mrstp'
- 06/13/2020,09:13:50.278 [INFO] FP reports status 'NO False Positive' for file 'C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\AppData\Roaming\SkyTmpl\rdserviceld.glk' [I:10, S:111]
- 06/13/2020,09:13:50.293 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\AppData\Roaming\SkyTmpl\rdserviceld.glk
- 06/13/2020,09:13:50.293 [INFO] [DETECTION] file contains 'TR/AD.TrickBot.mrstp'
- 06/13/2020,09:13:50.293 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_2215.doc
- 06/13/2020,09:13:50.293 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.rlhzb'
- 06/13/2020,09:13:50.293 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_25518.doc
- 06/13/2020,09:13:50.293 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.avhgk'
- 06/13/2020,09:13:50.293 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_3019.doc
- 06/13/2020,09:13:50.293 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.qycrv'
- 06/13/2020,09:13:50.293 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_3142.doc
- 06/13/2020,09:13:50.293 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.hlxmy'
- 06/13/2020,09:13:50.309 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_35354.doc
- 06/13/2020,09:13:50.309 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.jkulg'
- 06/13/2020,09:13:50.309 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_44875.doc
- 06/13/2020,09:13:50.309 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.debkg'
- 06/13/2020,09:13:50.309 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_54899.doc
- 06/13/2020,09:13:50.309 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.tcytq'
- 06/13/2020,09:13:50.309 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_54947.doc
- 06/13/2020,09:13:50.309 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.mwgpz'
- 06/13/2020,09:13:50.309 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_5735.doc
- 06/13/2020,09:13:50.309 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.krnim'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_61478.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.ojfjm'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_64799.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.plyut'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_67630.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.fsnak'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_70738.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.apjhc'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_79172.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.abgrt'
- 06/13/2020,09:13:50.325 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_79335.doc
- 06/13/2020,09:13:50.325 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.imfgn'
- 06/13/2020,09:13:50.340 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_9458.doc
- 06/13/2020,09:13:50.340 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.aroum'
- 06/13/2020,09:13:50.340 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_94755.doc
- 06/13/2020,09:13:50.340 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.ihfcr'
- 06/13/2020,09:13:50.340 [INFO] C:\Users\Administrator.WIN-QN6STSKB9D5\Desktop\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\2020-06-10-Trickbot-gtag-gi6-malware-and-artifacts\word-docs\e-vote_form_97103.doc
- 06/13/2020,09:13:50.340 [INFO] [DETECTION] file contains 'VBA/Dldr.Agent.vtpqh'
复制代码
|