本帖最后由 Nocria 于 2020-12-27 17:54 编辑
IKARUS killed 19x
- [27.12.2020 17:35:31] On-demand scan started: "user_defined"
- [27.12.2020 17:35:31] Found, 0.00s, SigName: "Trojan.MSIL.Agent", SigId: 2915670, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\Base_Good.exe"
- [27.12.2020 17:35:31] Found, 0.63s, SigName: "Trojan.VBS.Agent", SigId: 3554779, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\Dcumentos_Folha1.vbs"
- [27.12.2020 17:35:31] Found, 0.63s, SigName: "Trojan.Win32.RA", SigId: 212010851, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\c16411c57b3536146ac93f380ac547e7109f0c2993b9315268e61af6ea9e84e9.exe"
- [27.12.2020 17:35:31] Found, 0.78s, SigName: "Trojan.AndroidOS.SmsSpy", SigId: 3040001, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\eer123.apk"
- [27.12.2020 17:35:32] Found, 1.79s, SigName: "VBS.Trojan-Downloader.Agent", SigId: 248989397, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\FORMULARIO_DE_NOTIFICACAO_N_0887958472016.PDF.vbs"
- [27.12.2020 17:35:32] Found, 0.46s, SigName: "Trojan-Downloader.Delphi", SigId: 3506042, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\isMiner.exe"
- [27.12.2020 17:35:32] Found, 0.78s, SigName: "Trojan.Win32.SvcMiner", SigId: 3564183, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\NsCpuCNMiner32.exe"
- [27.12.2020 17:35:32] Found, 0.47s, SigName: "Trojan.BAT.KillWin", SigId: 3504500, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\QD.exe"
- [27.12.2020 17:35:32] Found, 0.47s, SigName: "Trojan.SuspectCRC", SigId: 316407012, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\setup_x86_x64_install.exe"
- [27.12.2020 17:35:32] Found, 0.32s, SigName: "Trojan.Win32.VMProtect", SigId: 193994891, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\steam_api.dll"
- [27.12.2020 17:35:32] Found, 0.15s, SigName: "Virus.Ramnit", SigId: 3265625, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本1.exe"
- [27.12.2020 17:35:32] Found, 0.31s, SigName: "PUA.MSIL.Amonetize", SigId: 3539635, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本10.exe"
- [27.12.2020 17:35:32] Found, 0.31s, SigName: "Virus.Ramnit", SigId: 3265625, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本12.exe"
- [27.12.2020 17:35:32] Found, 0.00s, SigName: "Win32.PolyCrypt", SigId: 2879505, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本15.exe"
- [27.12.2020 17:35:32] Found, 0.16s, SigName: "Trojan.Win32.Injector", SigId: 233313350, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本19.exe"
- [27.12.2020 17:35:33] Found, 0.328s, SigName: "Trojan-Downloader.Win32.AutoIt", SigId: 3406367, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本2.exe"
- [27.12.2020 17:35:33] Found, 0.140s, SigName: "not-a-virus:Downloader.YgData", SigId: 3203011, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本6.exe"
- [27.12.2020 17:35:33] Found, 0.218s, SigName: "Trojan.Win32.Spy", SigId: 2763687, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本7.exe"
- [27.12.2020 17:35:33] Found, 0.00s, SigName: "Virus.Win32.Delf", SigId: 1336491, Type: "VIRUS", File: "C:\Users\promi\Desktop\Downloads\Downloads\样本9.exe"
- [27.12.2020 17:35:33] On-demand scan FINISHED: "user_defined"
- [27.12.2020 17:35:33] ----------------------------------------------------
- [27.12.2020 17:35:33] Directories scanned: 2
- [27.12.2020 17:35:33] Files scanned: 32
- [27.12.2020 17:35:33] Virus found: 19
- [27.12.2020 17:35:33] ----------------------------------------------------
复制代码
MBP killed 12x
- Generic.Malware/Suspicious, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\BASE_GOOD.EXE, No Action By User, 0, 392686, 1.0.34855, , shuriken, , 439CB1C533B5604011976F260C951AB5, 983F4C36A88A33095482BD094874062F9A7622A4F9917B8507C56FBD7E0F6FB7
- Generic.Malware/Suspicious, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\C16411C57B3536146AC93F380AC547E7109F0C2993B9315268E61AF6EA9E84E9.EXE, No Action By User, 0, 392686, 1.0.34855, , shuriken, , C270EAF81ECA2E6BE99C1B87AB57E5F8, C16411C57B3536146AC93F380AC547E7109F0C2993B9315268E61AF6EA9E84E9
- Malware.AI.1878529039, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\ISMINER.EXE, No Action By User, 1000000, 0, 1.0.34855, 697868C9F07F31E66FF8140F, dds, 01045975, D6476DC8F05F2C134B8F266136C84794, C51F1179155EA491F2C9BDFEB690F648534100C8839BFDD26B9EB79638598762
- Malware.AI.1463572228, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本1.EXE, No Action By User, 1000000, 0, 1.0.34855, 290C54605355705B573C5704, dds, 01045975, 4E7B2FD95984D06FBDC6BE31BCA6F66F, 54295B4328C0E459CE2DE9A252F402C8F187F9D4593CA70C9FABF40DFA864348
- Trojan.Dropper.WXT.Generic, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\SETUP_X86_X64_INSTALL.EXE, No Action By User, 14013, 892906, 1.0.34855, , ame, , 4E86591CE4784CC248ED7617F13FD847, 9F80C8A06004B110E0EA7B4DE1B998C2BC65199F33168C1E9D245504C4E4F10C
- PUP.Optional.Amonetize, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本10.EXE, No Action By User, 19, 128021, 1.0.34855, , ame, , 45E8EA466CB9317285D850357DA481F1, F4BBBBE8DDC6A63B3A460A597A6564F83FD06909066316C7506E75355185CB8A
- Trojan.BitCoinMiner, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\NSCPUCNMINER32.EXE, No Action By User, 279, 413613, 1.0.34855, 3BF46EA4DD5250C32181B985, dds, 01045975, E3427D9F439AEBEFA3D9C299E2A94AF3, 7374051E75AE97BA687CD153927FACCD21FCDCC0B41A42867D38AC62064F6ABA
- PUP.Optional.MultiPlug, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本15.EXE, No Action By User, 20, 75723, 1.0.34855, , ame, , 2425C36FB68387044B208B83E74E7700, D38FA2DFF87DED2F117CD1E2E14979BB49797D3B93B16AAC9CC87D5ACCB763CC
- Malware.AI.3240555451, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本2.EXE, No Action By User, 1000000, 0, 1.0.34855, C5D82CED802C28EEC126F3BB, dds, 01045975, ACB66C1F9231237C1D48DBBEEFAFB935, C8A781571B1A265F80A7CD677885025627018C22651C73BB9B5AEBCA160E9E7C
- Generic.Malware/Suspicious, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本19.EXE, No Action By User, 0, 392686, 1.0.34855, , shuriken, , A57274C09CFBDBFF3971494A2BFE2670, 331B1FEE4167E2EDB885AC6C5B42AFEABC95003DF02F7300C43149AF83D30078
- PUP.Optional.DriveTheLife, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本8.EXE, No Action By User, 8707, 797772, 1.0.34855, , ame, , 7B69AEE4A6C3CB304325E63B477A26E5, D892DF688DBAAABB1D8458EE88EACBC8C1B70BBEC233D6D77A25C13754FFF94C
- Backdoor.Bifrose, C:\USERS\PROMI\DESKTOP\DOWNLOADS\DOWNLOADS\样本9.EXE, No Action By User, 15, 269048, 1.0.34855, 1AF6EFB196DCCEBAF9BC8EB9, dds, 01045975, 4E6C6573A2272E147F428ED88A277E30, 5F6CBA130C9847F81306C4F77BA2112AD912D1D3F75126BB4A1E81F113BB280B
复制代码 |