查看: 3904|回复: 22
收起左侧

[病毒样本] #PurpleFox #Rootkit #Telegram 相关样本存档 (2022-01-04)

[复制链接]
Jirehlov1234
发表于 2022-1-4 14:28:35 | 显示全部楼层 |阅读模式
本帖最后由 Jirehlov1234 于 2022-1-4 14:30 编辑

https://jirehlov.lanzouo.com/iJ0cgycwmdi

66CC751C4176D902A189840FACFBCE0F    1.rar
383BAC0C4C885F1719BCFB5FDF430EF8    360net.dll
7C728BDEBA5659BE53CF9EF243B1902E    7c728bdeba5659be53cf9ef243b1902e
963A8B3D307992B6E623FF39E34E6A4C    CallDriver.exe
96187E12ED4A6F4306516B48634C0926    chrome_elf.dll
7C074B14A54F7B3846E51CFCA778F66F    Driver.sys
737D760DACCE1C07BDD4F45701427334    EWQIFJGV.7Z
D6A3B7FC3CCD759EB43A2DFF759AEFB0    flash.rar
1EBFAF0C3378504D8E27B301B666EACE    flashx.exe
8B2FD85BFF197BB0AFAD67B42F55B072    hfs.ips.txt
B3ADFEE9E0CA84671118BC0B78CA426A    Huanxun Key验证码.rar
88A17B59FBED4A5A575EA24ED3F6B998    ojbk (2).exe
50D39BEB37C8BEC70015A8FD1414B867    ojbk.exe
80E6B6689B69D50965C473F42AD80FC6    output.174399825.txt
21D6D361F39967184BCBF4192FACFE4D    output.174531663.txt
C073636755B0FBD74436A45DDB89B6B0    QQMusic.exe
BA2B85A44C23769CC557586D9269996D    QQ截图2021231606133521p.exe
82B64806713ABCF0D04F13B6C0774BE3    svchost (2).txt
EFFC18C4E38D93B342B3F38A50DA3F98    svchost.txt
ED1B74827B64FC8913AF19B1B745AD1A    Telegram Desktop.exe
C398B504F74500D6A1A47F72BB45BC83    TextInputh.exe
8E2A89B11885ABE917AAE5C34589F71E    账单明细5.exe

https://www.bleepingcomputer.com ... elegram-installers/
Hacker-云
发表于 2022-1-4 14:42:21 | 显示全部楼层
智量第一遍扫描3个,两分钟后扫描9个。


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Hacker-云
发表于 2022-1-4 14:44:54 | 显示全部楼层
又隔了两分钟,11个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
aboringman
发表于 2022-1-4 15:12:02 | 显示全部楼层
本帖最后由 aboringman 于 2022-1-4 15:38 编辑

360(苦主正主)

  1. 2022-01-04 15:08:58     木马程序(Trojan.Generic)MD5:c398b504f74500d6a1a47f72bb45bc83              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\textinputh.exe
  2. 2022-01-04 15:08:58     木马程序(Trojan.Generic)MD5:8e2a89b11885abe917aae5c34589f71e              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\账单明细5.exe
  3. 2022-01-04 15:08:57     感染型病毒(Win32/Backdoor.Farfli.HgIAShoA)MD5:ed1b74827b64fc8913af19b1b745ad1a已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\telegram desktop.exe
  4. 2022-01-04 15:08:55     感染型病毒(Win32/Backdoor.Farfli.HgEAShwA)MD5:1ebfaf0c3378504d8e27b301b666eace已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\flashx.exe
  5. 2022-01-04 15:08:55     木马程序(Trojan.Generic)MD5:88a17b59fbed4a5a575ea24ed3f6b998              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\ojbk (2).exe
  6. 2022-01-04 15:08:55     木马程序(Trojan.Generic)MD5:50d39beb37c8bec70015a8fd1414b867              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\ojbk.exe
  7. 2022-01-04 15:08:55     木马程序(Trojan.Generic)MD5:c073636755b0fbd74436a45ddb89b6b0              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\qqmusic.exe
  8. 2022-01-04 15:08:55     木马程序(Trojan.Generic)MD5:ba2b85a44c23769cc557586d9269996d              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\qq截图2021231606133521p.exe
  9. 2022-01-04 15:08:54     木马程序(Trojan.Generic)MD5:96187e12ed4a6f4306516b48634c0926              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\chrome_elf.dll
  10. 2022-01-04 15:08:54     恶意软件(Win64/Trojan.Generic.H8gAEpsA)MD5:7c074b14a54f7b3846e51cfca778f66f已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\driver.sys
  11. 2022-01-04 15:08:52     木马程序(Trojan.Generic)MD5:383bac0c4c885f1719bcfb5fdf430ef8              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\360net.dll
  12. D:\360安全浏览器下载\pf\7c728bdeba5659be53cf9ef243b1902e        木马程序(Trojan.Generic)        已删除
复制代码


压缩包部分(四个压缩包解压出来的东西)

  1. 2022-01-04 15:12:12     木马程序(Trojan.Generic)MD5:88a17b59fbed4a5a575ea24ed3f6b998              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\新建文件夹\ojbk.exe
  2. 2022-01-04 15:12:12     木马程序(Trojan.Generic)MD5:8e2a89b11885abe917aae5c34589f71e              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\新建文件夹\账单明细5.exe
  3. 2022-01-04 15:12:12     感染型病毒(Win32/Backdoor.Farfli.HgEAShwA)MD5:1ebfaf0c3378504d8e27b301b666eace已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\新建文件夹\flashx.exe
  4. 2022-01-04 15:12:12     木马程序(Trojan.Generic)MD5:c398b504f74500d6a1a47f72bb45bc83              已删除此文件,如果您发现误删,可从隔离区恢复此文件。        d:\360安全浏览器下载\pf\新建文件夹\谷歌验证码器9.exe
  5. D:\360安全浏览器下载\pf\新建文件夹\360.tct        木马程序(Trojan.Generic)        已删除
复制代码


安全大脑

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
东南大学
发表于 2022-1-4 15:23:27 | 显示全部楼层
大蜘蛛Kill 17个,剩5个
  1. ================================================================
  2. Scan session started 2022/1/4 下午 03:12:34
  3. dwscancl /AR /AC /BI /CL /ARKDB /DR /HA /MA /RA:dwscancl.log /KEY:..\st.drweb.com\static\beta_files\win\12.5\keys\drweb32.key /QNA /AAD:D /AAR:D /ACN:D /ADL:D /AES:R /AHT:D /AIC:D /AIN:D /AJK:D /AML:R /ARW:D /ASU:D c:\Downloads\20220104\pf
  4. ================================================================
  5. Maximum available instances are 2
  6. Total 248 virus bases are loaded from "e:\GitHub\drweb\dwscancl"
  7. drw12000.vdb 12.00 00 b9772b8ff575147348b6bb0208f9f23070556dc0 (2019/03/07 13:29, 775706 records) loaded
  8. drw12001.vdb 12.00 00 7468ea3ea2a44f81aa11555386570e5947ebdae8 (2019/03/07 13:29, 881416 records) loaded
  9. drw12002.vdb 12.00 00 88b1fca76d2448f830ce8ca828620187e71a81b8 (2019/03/07 13:29, 489620 records) loaded
  10. drw12003.vdb 12.00 00 f43ec9078b196a5c185694ad3029d38843328cde (2019/03/07 13:29, 337095 records) loaded
  11. drw12004.vdb 12.00 00 a4edfc7ce8b0afa77af307462eb69c562abe4216 (2019/03/07 13:30, 939674 records) loaded
  12. drw12005.vdb 12.00 00 731cbe4f7e52f5c515032fccd65e78bc0bd1266a (2019/03/07 13:30, 687630 records) loaded
  13. drw12006.vdb 12.00 00 c2778075eccac26d50a20362e235cbcbc0ff67a9 (2019/03/07 13:30,  21130 records) loaded
  14. drw12007.vdb 12.00 00 aaeac66271960b2feee4583a5807ae83b5b78185 (2019/07/08 14:50,  21375 records) loaded
  15. drw12008.vdb 12.00 00 9ff270ad12823f1a1448cb04bcfa628dab9b3844 (2019/07/22 14:17,  20038 records) loaded
  16. drw12009.vdb 12.00 00 26f014d4d67275507df49d5d7336ff8c66859079 (2019/08/05 14:12,  17099 records) loaded
  17. drw12010.vdb 12.00 00 9e7237bce4775a0259e2f84024ae96ac82f4909e (2019/08/19 14:17,  15850 records) loaded
  18. drw12011.vdb 12.00 00 359385bb3c80977806cd9c5fd2a2b0cdde92edc0 (2019/09/02 14:16,  13868 records) loaded
  19. drw12012.vdb 12.00 00 28ed1c07151bc08df52fd51b31bb294ddca5a35e (2019/09/16 14:16,  12534 records) loaded
  20. drw12013.vdb 12.00 00 b4705728b3928e975d21b86eb2f74da2435c516e (2019/09/30 14:12,  23760 records) loaded
  21. drw12014.vdb 12.00 00 6b99d9938e29f474fdcbc6f43ae02df16a7a25d4 (2019/10/14 14:12,   9387 records) loaded
  22. drw12015.vdb 12.00 00 89c9a9b1f43ec5de721607d5076ff1d9935a30ad (2019/10/28 14:20,  13479 records) loaded
  23. drw12016.vdb 12.00 00 fb5a2858fa3f5283677f9f3ca6f5f520dd2de159 (2019/11/11 14:21,  15777 records) loaded
  24. drw12017.vdb 12.00 00 ae9835c5c27dd5a52b1a959d5255cfebd43667e7 (2019/11/26 03:06,  12575 records) loaded
  25. drw12018.vdb 12.00 00 854839e224cdc6efb572d8ceabc01c71a1e15c87 (2019/12/09 14:17,  14357 records) loaded
  26. drw12019.vdb 12.00 00 5e82a41088e636469dfdde8095261024d627821c (2019/12/23 14:15,  14048 records) loaded
  27. drw12020.vdb 12.00 00 a980a356493218ff845c0d88ff49d38b91f0cc28 (2019/12/27 14:11,  14866 records) loaded
  28. drw12021.vdb 12.00 00 a96ce458b87f6e18683e2bd717d9318dd74f1d47 (2020/01/20 14:15,  18482 records) loaded
  29. drw12022.vdb 12.00 00 804257c8ff08ac696f4599761a9911e1a88dd4fb (2020/02/03 14:15,  14858 records) loaded
  30. drw12023.vdb 12.00 00 ff7256f4962e5e00df704c5717c45c1c8a0c7a20 (2020/02/17 14:15,  16956 records) loaded
  31. drw12024.vdb 12.00 00 c7c79cfc142a862b3eafd9001aa57d6a8d9e808d (2020/03/16 14:16,  18447 records) loaded
  32. drw12025.vdb 12.00 00 db9ec6861edeb6951ea5cd37a89444ce42075de2 (2020/03/30 14:13,  12920 records) loaded
  33. drw12026.vdb 12.00 00 578f68d5106f60358e2490f4d0c22fa244c1f45a (2020/04/13 14:19,  25345 records) loaded
  34. drw12027.vdb 12.00 00 4a1e32c2f783377657b3e80717d89c7ad6b495a3 (2020/04/27 14:14,  15148 records) loaded
  35. drw12028.vdb 12.00 00 e7f43278bad93d8869ce998c244038d0809a2d88 (2020/05/11 14:18,  17266 records) loaded
  36. drw12029.vdb 12.00 00 dbecf603c0c3906604ca7bc73de3a653845dbaf4 (2020/05/25 14:14,  18370 records) loaded
  37. drw12030.vdb 12.00 00 6bf146f58963a6180c22200c5ab827a581b79c08 (2020/06/08 14:13,  13483 records) loaded
  38. drw12031.vdb 12.00 00 ea3358bda8c7fbe9acd6a1c4c2b8fac150a24a7c (2020/06/22 14:11,  12793 records) loaded
  39. drw12032.vdb 12.00 00 68719352956032128488899551c6f6219388a7e5 (2020/07/06 14:11,  16317 records) loaded
  40. drw12033.vdb 12.00 00 4d39d278e71216ab038aaaf916d69a1701875a31 (2020/07/20 14:15,  14696 records) loaded
  41. drw12034.vdb 12.00 00 c88f2a5b885b77c0233bea391f27040f2f89ee88 (2020/08/03 14:11,  16440 records) loaded
  42. drw12035.vdb 12.00 00 e04fb9e09cfe22883ba5112241ff57d23fe1ed7c (2020/08/31 14:14,  21672 records) loaded
  43. drw12036.vdb 12.00 00 08889c30e8f69b5454ffc3b4dd61c8bfdef475b5 (2020/09/14 14:12,  16062 records) loaded
  44. drw12037.vdb 12.00 00 1fb73bdb7ef4b016a9d521874861e3b65f57d224 (2020/09/28 14:13,  16127 records) loaded
  45. drw12038.vdb 12.00 00 0451afbcd45cffc514cb1d8819ee70b854e921bd (2020/10/12 14:16,  12226 records) loaded
  46. drw12039.vdb 12.00 00 212f3017d991e696c13b68544d3c3d74dd55595c (2020/10/26 14:19,  13205 records) loaded
  47. drw12040.vdb 12.00 00 30e41bb1f4432b000ec2a2466f629e7559921f33 (2020/11/09 14:19,  12267 records) loaded
  48. drw12041.vdb 12.00 00 e0504ca9a87cd30ed04a882b593b03c8bc783ad6 (2020/11/23 14:19,  13002 records) loaded
  49. drw12042.vdb 12.00 00 067e0ef2978d9443c01be0360774cc5ebd74b7d3 (2020/12/07 14:18,  13543 records) loaded
  50. drw12043.vdb 12.00 00 5aabfb5e7978ec6e5f81e5a578893a9c47f38abf (2020/12/21 14:22,  16090 records) loaded
  51. drw12044.vdb 12.00 00 4ad8eb415c660ee89c578094f865961afb005892 (2021/01/04 14:22,   8650 records) loaded
  52. drw12045.vdb 12.00 00 a48c0cca42e33e421ea83b42303a1169ed01318d (2021/01/18 14:23,   8482 records) loaded
  53. drw12046.vdb 12.00 00 21d27c0fdcc6afb5f72f7d78073c71ee7a009636 (2021/02/01 14:20,   9893 records) loaded
  54. drw12047.vdb 12.00 00 a4798350cf86d0d053c42bdf7aaccea2fce56318 (2021/02/15 14:21,  14892 records) loaded
  55. drw12048.vdb 12.00 00 39c98d0ebd94408554545d5553bb5b6ad53ca98a (2021/03/04 01:53,  22794 records) loaded
  56. drw12049.vdb 12.00 00 9e85c4ca7759451357905706c3d675724f5797bc (2021/03/15 22:36,   7186 records) loaded
  57. drw12050.vdb 12.00 00 5226939fc245491fb8b2b8de9e30c4786edbbedb (2021/03/29 14:27,  14177 records) loaded
  58. drw12051.vdb 12.00 00 5ded9bcaf209b451a3c6ea4a36b7b615cbb6930f (2021/04/12 14:19,  16705 records) loaded
  59. drw12052.vdb 12.00 00 b4e22829f131410bbf53ecec4f91c8fd48df529e (2021/04/26 14:20,  11595 records) loaded
  60. drw12053.vdb 12.00 00 9dd53a9edd285f9b640d667b5474488bef0efdb4 (2021/05/10 14:22,  28503 records) loaded
  61. drw12054.vdb 12.00 00 b1f0d3fbd1dc5bc1a7e06d6fe5005686fccb6731 (2021/05/24 14:23,  13952 records) loaded
  62. drw12055.vdb 12.00 00 b4524afa9c719ca5e4a5f11fbd25577f2b301c6a (2021/06/07 14:22,  16750 records) loaded
  63. drw12056.vdb 12.00 00 fac11097c621ad062681b142f4fff48003062afb (2021/06/21 14:22,   9860 records) loaded
  64. drw12057.vdb 12.00 00 952e76770b040a8ba81a46197721ead673a87927 (2021/07/05 14:24,   9507 records) loaded
  65. drw12058.vdb 12.00 00 696699f5c0f23fadb9af15fa61318555bbbfd0e9 (2021/07/19 14:23,  10566 records) loaded
  66. drw12059.vdb 12.00 00 0c19e2efd32173143109dc92d623ceaa469459d5 (2021/08/02 14:18,  27389 records) loaded
  67. drw12060.vdb 12.00 00 0895734b07159a1fc5352e0f4039d086b41b6b94 (2021/08/16 14:27,   8115 records) loaded
  68. drw12061.vdb 12.00 00 fbac5a4ebcf8cd0df572db3f146d2d773f76544b (2017/06/12 12:13,   8325 records) loaded
  69. drw12062.vdb 12.00 00 80b96fc689e3461fd958f627e55a0f5242a0b019 (2017/06/19 12:25,   4058 records) loaded
  70. drw12063.vdb 12.00 00 557dad93f0d57ba57e083199d57b56995be40413 (2017/06/26 12:14,   6495 records) loaded
  71. drw12064.vdb 12.00 00 a1803bea0a6943f6014472b4d1a15736d66ace80 (2017/07/03 12:16,   8278 records) loaded
  72. drw12065.vdb 12.00 00 4f0e859735afdf855160e9f538936663db7eabad (2017/07/10 12:13,   8464 records) loaded
  73. drw12066.vdb 12.00 00 82adf948e42339f1663506b164df1d27c214322d (2017/07/17 12:14,  11822 records) loaded
  74. drw12067.vdb 12.00 00 c0386fd4f8a982bef0667222ea3357b78fc274bc (2017/07/24 12:16,  12176 records) loaded
  75. drw12068.vdb 12.00 00 2c6e84bd7b92bd872dbe8440f1f4789273c314ee (2017/07/31 12:11,  11516 records) loaded
  76. drw12069.vdb 12.00 00 b1b5dc07129ae9b15a1f6e56a2dea9c536c7c319 (2017/08/07 12:12,  14196 records) loaded
  77. drw12070.vdb 12.00 00 5c1c59b9ce02f2e668349c0733289f71e0c673c9 (2017/08/14 12:11,  13476 records) loaded
  78. drw12071.vdb 12.00 00 78c978eb06574c44924198470b618a4f97a6bc6c (2017/08/21 12:16,  11786 records) loaded
  79. drw12072.vdb 12.00 00 f5355ae9dfa6e1fee46d2b46b0883d13b710671b (2017/08/28 12:16,  14553 records) loaded
  80. drw12073.vdb 12.00 00 3d0e1b42c21643d3a02400deb5bdb147a593edb0 (2017/09/04 12:15,  12965 records) loaded
  81. drw12074.vdb 12.00 00 711ff60f23bf18c5ecda2e10891867b3743a5112 (2017/09/11 12:15,  10046 records) loaded
  82. drw12075.vdb 12.00 00 4ff281cf564bcd5bb8591e083bad64fc6698c2fb (2017/09/18 12:16,  11332 records) loaded
  83. drw12076.vdb 12.00 00 2719641465af8b73f49668d408aeb844d59850c7 (2017/09/25 12:14,  11599 records) loaded
  84. drw12077.vdb 12.00 00 2c6a2d101f824d9d1f8d0f5bf50d913738cdf2c0 (2017/10/02 12:15,  12062 records) loaded
  85. drw12078.vdb 12.00 00 857e319379bd64783132c5720caac0a7d0a3cb58 (2017/10/09 12:16,  11157 records) loaded
  86. drw12079.vdb 12.00 00 0d68fbd4edac958fbc2eecbc5bdb7154496b1a94 (2017/10/17 12:17,  11687 records) loaded
  87. drw12080.vdb 12.00 00 cc5dc6bf42e1a45f36456e32c2abf11bdafdb93a (2017/10/23 12:24,   5096 records) loaded
  88. drw12081.vdb 12.00 00 49d8c46aa13879ff88c32f4d207ba8e39f0ef8bd (2017/10/30 12:15,   8604 records) loaded
  89. drw12082.vdb 12.00 00 ca851bd45aa66e29f939050c39b3ad32083a3b90 (2017/11/06 12:19,  10683 records) loaded
  90. drw12083.vdb 12.00 00 42f9119206b741898ca117172c3bee7ded468360 (2017/11/13 12:16,   7739 records) loaded
  91. drw12084.vdb 12.00 00 eaa458e5fe6cefbdf22712339f6896a57b036b74 (2017/11/20 12:19,  10046 records) loaded
  92. drw12085.vdb 12.00 00 d78eec6858bfff32d9422c45727741bcb122a845 (2017/11/27 12:16,  24762 records) loaded
  93. drw12086.vdb 12.00 00 d431284169762f7dcf492274e11f2081987b7bc0 (2017/12/04 12:21,  32102 records) loaded
  94. drw12087.vdb 12.00 00 89e748a7f10767c068639bae8e2a6cddc43f3cc1 (2017/12/11 12:11,  16502 records) loaded
  95. drw12088.vdb 12.00 00 718c4781aac156703df759cee881d845f0449787 (2017/12/18 12:17,  10540 records) loaded
  96. drw12089.vdb 12.00 00 2d0344aa6a3fba850bc1687b6413b372871962b0 (2017/12/25 12:15,  17896 records) loaded
  97. drw12090.vdb 12.00 00 042c08946ecb9e4db04db5859125805216dbf572 (2018/01/01 12:14,  13711 records) loaded
  98. drw12091.vdb 12.00 00 4e74f849da4f52e78a538277404f59921ce3ba76 (2018/01/08 12:16,   6198 records) loaded
  99. drw12092.vdb 12.00 00 e8da533b8118de98ceabd45a8e1dbbc37e71f49e (2018/01/15 12:12,  13079 records) loaded
  100. drw12093.vdb 12.00 00 90e0bd26f4586a44d9cca78872dc1588d9f2404d (2018/01/22 12:14,   6690 records) loaded
  101. drw12094.vdb 12.00 00 bcd20473c4d2eff5695116ddd95f518fbc0edb05 (2018/01/29 12:18,  12461 records) loaded
  102. drw12095.vdb 12.00 00 daf9c7ce563242a36385e05be2fdca498c8bc9e9 (2018/02/05 12:16,  12627 records) loaded
  103. drw12096.vdb 12.00 00 b6e879e62a95d22b1d8ebb8b49eb76d2e4545cfc (2018/02/12 12:19,  12996 records) loaded
  104. drw12097.vdb 12.00 00 9ca9b8cc3f0da18d3bd1ed7212e628539c2ddba6 (2018/02/19 12:13,  23137 records) loaded
  105. drw12098.vdb 12.00 00 ea6aa0431912be5adf4aff3d292680826d7c23ab (2018/02/26 12:17,   8833 records) loaded
  106. drw12099.vdb 12.00 00 86bea9e9a5c67b44555da7bad6e34807e5373319 (2018/03/05 12:16,  17534 records) loaded
  107. drw1209a.vdb 12.00 00 8df45cfe9c2e3cdd095a4ed0d06bd01886bd1b80 (2018/03/12 12:16,  17975 records) loaded
  108. drw1209b.vdb 12.00 00 efef8ae7fbbf684ff076f554ad3235b4a8453c08 (2018/03/19 12:19,  18357 records) loaded
  109. drw1209c.vdb 12.00 00 dfe0245455e3ea6b15951a8f99bbc06e9893bd96 (2018/04/02 12:16,  29643 records) loaded
  110. drw1209d.vdb 12.00 00 8cc6f9b6925b9126207597c52718ca9a0fcc2d0c (2018/04/09 12:13,  13981 records) loaded
  111. drw1209e.vdb 12.00 00 1e7b848e84d3078a7849836e8abf1220478236d0 (2018/04/23 12:20,  37369 records) loaded
  112. drw1209f.vdb 12.00 00 79d171b46b291307dd5c9c4105814adc6947257b (2018/05/07 20:55,  41390 records) loaded
  113. drw1209g.vdb 12.00 00 fd1f59e96db2320001c7566e403de01be34292b3 (2018/05/21 12:16,  21110 records) loaded
  114. drw1209h.vdb 12.00 00 3ee767c0b0e9df0a07e0ffd90e908f3af0ef3d59 (2018/06/04 12:16,  21001 records) loaded
  115. drw1209i.vdb 12.00 00 9a83ac1293a11e5766da08f4547876fdf305e9d3 (2018/06/18 12:16,  23696 records) loaded
  116. drw1209j.vdb 12.00 00 bc921d36545f1d208a60088f5c59543ec84dead3 (2018/07/02 12:17,  25925 records) loaded
  117. drw1209k.vdb 12.00 00 883017f3bf26b2af92c92ec60b1bab8f73b94198 (2018/07/16 12:17,  27733 records) loaded
  118. drw1209l.vdb 12.00 00 dda30f834cf69922992eb376fc35dc97079e6e32 (2018/07/30 12:20,  26359 records) loaded
  119. drw1209m.vdb 12.00 00 11726292145f4653bbd3ae03497094a413f1d6ef (2018/08/14 00:22,  21477 records) loaded
  120. drw1209n.vdb 12.00 00 5ac82c69939c22e1f0821157193e491fad9b7eb4 (2018/08/27 12:24,  96728 records) loaded
  121. drw1209o.vdb 12.00 00 50c4ff5c6a5c1f7045e3d4017a74505a270f5002 (2018/09/10 12:21,  27967 records) loaded
  122. drw1209p.vdb 12.00 00 26754aafc08bab41c1700506c59f93dd0c5ddf09 (2018/09/24 12:18,  26467 records) loaded
  123. drw1209q.vdb 12.00 00 88f9e790f9306019805d891e476b3766a4c5b4c4 (2018/10/08 12:19,  28568 records) loaded
  124. drw1209r.vdb 12.00 00 d991c1993b78fb432c990771f68b37d8cd8d6614 (2018/10/22 12:17,  28026 records) loaded
  125. drw1209s.vdb 12.00 00 8f418011ac4a178b812f50d3ececce16db0f10f6 (2018/11/22 17:42,  38775 records) loaded
  126. drw1209t.vdb 12.00 00 4bf291615b12df33c6d182e25ac8cc5148022049 (2018/12/03 12:16,  11483 records) loaded
  127. drw1209u.vdb 12.00 00 d19d82907320647b35bd1b3c7ea43163e8350f87 (2018/12/17 12:18,  19857 records) loaded
  128. drw1209v.vdb 12.00 00 f9c7729fb5528283ea98034161af66a1398f6dc4 (2018/12/31 12:12,  12392 records) loaded
  129. drw1209w.vdb 12.00 00 4b7e22eeac42ccc529c841ec55ebbaddfd421e84 (2019/01/07 12:10,   6029 records) loaded
  130. drw1209x.vdb 12.00 00 d108fb1658e2e0abe30e44bf0622ab1070b7957c (2019/01/21 12:12,  16682 records) loaded
  131. drw1209y.vdb 12.00 00 8e38a5aaaa9e5ba22e4aff0b32450e3f7a75979d (2019/02/04 12:10,  20157 records) loaded
  132. drw1209z.vdb 12.00 00 736ceb335c656c5064c90f8ce0d4262952f48252 (2019/02/18 12:12,  24876 records) loaded
  133. drw120a0.vdb 12.00 00 a216f856d29ad5e51041d12c6160485dbff6981f (2019/03/18 12:14,  45042 records) loaded
  134. drw120a1.vdb 12.00 00 7ac7e4540dad1b013dc19f838e818430d811228b (2019/04/01 14:13,  25151 records) loaded
  135. drw120a2.vdb 12.00 00 8bd68e58378df7a4da42bc5d05ecbf2d1d973bf4 (2019/04/15 14:09,  22799 records) loaded
  136. drw120a3.vdb 12.00 00 720bcd982703c2506d29d07186ee4b8d605881e7 (2019/04/29 14:09,  27649 records) loaded
  137. drw120a4.vdb 12.00 00 f3383ca21501220e9abdf5088caaac4ed2450c0f (2019/05/13 14:16,  28535 records) loaded
  138. drw120a5.vdb 12.00 00 c2977571dea15b5fbd63fb230430b00db0e1333c (2019/05/27 14:15,  22930 records) loaded
  139. drw120a6.vdb 12.00 00 a79c3b076119dbea0d240fdbd3e94f385ada6222 (2019/06/10 22:43,  41312 records) loaded
  140. drw120a7.vdb 12.00 00 b2c809c2635e91fdd2b954dec7c351741dd145fb (2019/06/24 14:14,  38682 records) loaded
  141. drw120a8.vdb 12.00 00 b0fb114d44f3c1cff8cdd49607864d0525c88869 (2019/07/08 14:45,  51640 records) loaded
  142. drw120a9.vdb 12.00 00 30566b964b4c73230b2eef76dac5f40d2c59aba8 (2019/07/22 14:12,  46163 records) loaded
  143. drw120aa.vdb 12.00 00 793a3e4650735e5b8671d9bee679c0d8fdce5411 (2019/08/05 14:10,  53552 records) loaded
  144. drw120ab.vdb 12.00 00 10f1727370510bb1496d9646e30038bdb885aeab (2019/08/19 14:15,  53276 records) loaded
  145. drw120ac.vdb 12.00 00 e26dd92a46290dd381c5d640dce72f6f1c985379 (2019/09/02 14:14,  67852 records) loaded
  146. drw120ad.vdb 12.00 00 1e507094aaba4659c79ff32619721df6f6c9ad77 (2019/09/16 14:13,  74453 records) loaded
  147. drw120ae.vdb 12.00 00 a430ced4e998639106f1f58b6366fc20727e02aa (2019/09/30 14:17,  37416 records) loaded
  148. drw120af.vdb 12.00 00 ff47a0f6d39c4205bce21263fe1021f9efed29b4 (2019/10/14 14:12,  40845 records) loaded
  149. drw120ag.vdb 12.00 00 ad03fc6f417adbd7aad323556d1633b613011669 (2019/10/28 14:19,  49024 records) loaded
  150. drw120ah.vdb 12.00 00 4cc36eaec80d1c585ac81df84777b91aee09adc7 (2019/11/11 14:19,  37517 records) loaded
  151. drw120ai.vdb 12.00 00 540d65fe377bc92ac4c54263b1f297d033f7e3ab (2019/11/26 03:09,  27006 records) loaded
  152. drw120aj.vdb 12.00 00 fe6b0f435b5664eece0637b4ddc8ff31d45be3e3 (2019/12/09 14:18,  32389 records) loaded
  153. drw120ak.vdb 12.00 00 5611bcf89e2396b99a7f0c092d6004a79488b7c0 (2019/12/23 14:18, 100156 records) loaded
  154. drw120al.vdb 12.00 00 aef8246304183bb516b190abe8582401e11a2979 (2019/12/27 14:15,  60276 records) loaded
  155. drw120am.vdb 12.00 00 aa4c4d4b966a51b4eaed9b5de4109869cca01105 (2020/01/20 14:15,  57391 records) loaded
  156. drw120an.vdb 12.00 00 0f98d8f6ca8194f03d7b5a59f5ac74ec7778f566 (2020/02/03 14:12,  41921 records) loaded
  157. drw120ao.vdb 12.00 00 959c81dc87bee3451323142f40855660dbd7108b (2020/02/17 14:16,  45235 records) loaded
  158. drw120ap.vdb 12.00 00 d8c775ee71c67d7dfce14f066547e104378b5224 (2020/03/16 14:12,  69074 records) loaded
  159. drw120aq.vdb 12.00 00 3451d66ddff00a269869a830287baf1737c9211f (2020/03/30 14:14,  29181 records) loaded
  160. drw120ar.vdb 12.00 00 c033c8af3a69f09ada55df87f1b15ff7468c7770 (2020/04/13 14:17,  38889 records) loaded
  161. drw120as.vdb 12.00 00 cbb27c4a92f6d08cbad26c742cfa77bc55aa0680 (2020/04/27 14:17,  43316 records) loaded
  162. drw120at.vdb 12.00 00 eb1a2bacbc81df8a5d94e8c83092a05e30bf14d3 (2020/05/11 14:17,  29796 records) loaded
  163. drw120au.vdb 12.00 00 0abf159f6ac5b36fee33b172b807d8879026a27a (2020/05/25 14:15,  47213 records) loaded
  164. drw120av.vdb 12.00 00 001b7d3b05d861db8cd7b03e3a157bee7b5431c8 (2020/06/08 14:18,  23732 records) loaded
  165. drw120aw.vdb 12.00 00 a4b019ac8f4c1d7fd653a7dc24d692b699848c92 (2020/06/22 14:12,  22016 records) loaded
  166. drw120ax.vdb 12.00 00 f9c00f5955db99104a47c6f768181db1079771f4 (2020/07/06 14:11,   9931 records) loaded
  167. drw120ay.vdb 12.00 00 ccd75c1cc7bc8a989572e9f6396016555729f516 (2020/07/20 14:15,  21215 records) loaded
  168. drw120az.vdb 12.00 00 eb28f908da7941a595c814297f0da37451629c0a (2020/08/03 14:14,  45910 records) loaded
  169. drw120b0.vdb 12.00 00 2cd466891c614e8208eedea2b7eb20af1c199b08 (2020/08/31 14:11,  69661 records) loaded
  170. drw120b1.vdb 12.00 00 6509ebbc6f0ca260d06b2eaff01eb2b9e1ae6138 (2020/09/14 14:15,  61796 records) loaded
  171. drw120b2.vdb 12.00 00 063f0277283d6341d03b1e924ebef631c15952b0 (2020/09/28 14:12,  49869 records) loaded
  172. drw120b3.vdb 12.00 00 2b26520be32842f1c31e51f694e295ee95cf4cd3 (2020/10/12 14:16,  26110 records) loaded
  173. drw120b4.vdb 12.00 00 bffecdc5522ad017347c36e670c4a9452372ac29 (2020/10/26 14:20,  52629 records) loaded
  174. drw120b5.vdb 12.00 00 d2e54a2f39e46bca70040ddc34f3ce02c86d05c7 (2020/11/09 14:18,  52882 records) loaded
  175. drw120b6.vdb 12.00 00 d01ef770639796561516914c4d9291e675b0560b (2020/11/23 14:16, 114247 records) loaded
  176. drw120b7.vdb 12.00 00 88ce31b5748c7ea1e780ab3c7ad88f2580424bad (2020/12/07 14:20,  39204 records) loaded
  177. drw120b8.vdb 12.00 00 4224193c113d5259246f618883d4bf79f351d535 (2020/12/21 14:19,   8599 records) loaded
  178. drw120b9.vdb 12.00 00 4529fc118278232e40aa4b9487e44ff896849b36 (2021/01/04 14:19,  15960 records) loaded
  179. drw120ba.vdb 12.00 00 14dafb7038ee3ca3fdd49902e684a33162f8c586 (2021/01/18 14:22,  10468 records) loaded
  180. drw120bb.vdb 12.00 00 17bdd62535f35e1b23fadefe6648ccf550a6773d (2021/02/01 14:21,   8904 records) loaded
  181. drw120bc.vdb 12.00 00 bd9ce6d380d813f029d6fbad1d90f9b647e744d8 (2021/02/15 14:23,  12432 records) loaded
  182. drw120bd.vdb 12.00 00 d30e18c142bc327b9ea7bfbe833956b8bcfa6eb1 (2021/03/04 01:53,  63358 records) loaded
  183. drw120be.vdb 12.00 00 d7738aad2a86f6b54ae6079e971fbad13ca33929 (2021/03/15 22:40,  80302 records) loaded
  184. drw120bf.vdb 12.00 00 b3474c897e51b7197e7384ee4b404b5e7b5b2871 (2021/03/29 14:25,  68219 records) loaded
  185. drw120bg.vdb 12.00 00 528bac2294918e1303b0ba9f98c1cd6cc43f3a9e (2021/04/12 14:22,  37703 records) loaded
  186. drw120bh.vdb 12.00 00 b5e1c850ae376e8dcffe7dcc4c00e408886fe27d (2021/04/26 14:24,  22076 records) loaded
  187. drw120bi.vdb 12.00 00 f86cc2cf03fc68654a3c4e47a334e9c76353f385 (2021/05/10 14:18,  53709 records) loaded
  188. drw120bj.vdb 12.00 00 022b324bb9a473d5eef24bfea5b8f4613aa0193f (2021/05/24 14:24,  76551 records) loaded
  189. drw120bk.vdb 12.00 00 2a642786d5e1bccffce582dde46d7f16c8352b42 (2021/06/07 14:23,  28573 records) loaded
  190. drw120bl.vdb 12.00 00 d59cb2fe90332f116c8340f0bf9a66624130f18d (2021/06/21 14:24,  29792 records) loaded
  191. drw120bm.vdb 12.00 00 4a95838d6e79ef1a6b5c0baaa6a84cebb99ef2ad (2021/07/05 14:24,  78956 records) loaded
  192. drw120bn.vdb 12.00 00 174a7b7a4d88aaaaa798e9ebebde25f611e24452 (2021/07/19 14:21,  45858 records) loaded
  193. drw120bo.vdb 12.00 00 167df3925843be6cc5dc930332f1bfb97bccda74 (2021/08/02 14:23,  27919 records) loaded
  194. drw120bp.vdb 12.00 00 c569442b72ff7a616f3d49dea57c884aa7749f27 (2021/08/16 14:26,  55604 records) loaded
  195. drw120bq.vdb 12.00 00 aa63e222155ab7ba91f088efb55690bcce457e41 (2021/08/30 14:22,  51445 records) loaded
  196. drw120br.vdb 12.00 00 5ad23c90de5b123d2484637b621294a72b7a3c80 (2021/09/13 14:22, 112920 records) loaded
  197. drw120bs.vdb 12.00 00 a7b6b4d15e43554e2aa57bf7fcba94de2286d455 (2021/09/27 14:19,  18899 records) loaded
  198. drw120bt.vdb 12.00 00 c2c943987402266893a0d950134505b86a7ac678 (2021/10/11 14:22,  27467 records) loaded
  199. drw120bu.vdb 12.00 00 346bdbac574aca02a81bc75bbcf504637dc59005 (2021/10/25 14:30,  32922 records) loaded
  200. drw120bv.vdb 12.00 00 d0990cbf92e883a6647a958137c763e0abd67ff0 (2021/11/08 14:21,  18146 records) loaded
  201. drw120bw.vdb 12.00 00 b7d493aba20d1bca0ff9099c36ffc31fd609cdc8 (2021/11/22 14:24,  50035 records) loaded
  202. drw120bx.vdb 12.00 00 083fc1272131cdb2dec04478edea7a0174255339 (2021/12/06 14:24,  39563 records) loaded
  203. drw120by.vdb 12.00 00 6f6d0503a5d201d741788de8a1937881dc6afaeb (2021/12/20 14:26,  34526 records) loaded
  204. drwdaily.vdb 12.00 00 f042ee513415c316bcece5b35da5c08e044c554e (2022/01/02 14:07,  29570 records) loaded
  205. drwebase.vdb 12.00 00 5eba6f4f4502f1dce99344bd74279ea65b01edae (2016/04/01 11:00, 955227 records) loaded
  206. drwnasty.vdb 12.00 00 758d35aee728b1fa1546c724c6939dd38ca2b61e (2016/04/01 08:00, 128578 records) loaded
  207. drwrisky.vdb 12.00 00 ed385fdbca41d914c65015e95f8f983c9ef56954 (2016/04/01 09:00,  47996 records) loaded
  208. drwtoday.vdb 12.00 02 10f20a110cab645b0555e19217c57e384661f44b (2022/01/04 13:21,   1725 records) loaded
  209. dwf12000.vdb 12.00 02 46d85c43a1d93c0355c6ff38d3764cee1b8e136e (2019/03/26 22:05,   8775 records) loaded
  210. dwm12000.vdb 12.00 00 d03ce1992c34a5cb686593e1611d3ea38484de82 (2019/03/07 13:31, 177730 records) loaded
  211. dwm12001.vdb 12.00 00 a0bd2eb9ed82073ef9efbdef1a30cf596aa50acd (2019/07/18 03:33,   9231 records) loaded
  212. dwm12002.vdb 12.00 00 805175b450fb719bcbe7d78d055187df3f0a1758 (2019/08/06 21:40,   3816 records) loaded
  213. dwm12003.vdb 12.00 00 6b6d4a1739ae9e895b118939f3ab178c1fdbd00f (2019/09/03 16:59,   3001 records) loaded
  214. dwm12004.vdb 12.00 00 2c53a50f373e7f467b72d15834cdb9a8d57c9078 (2019/10/01 16:48,   2550 records) loaded
  215. dwm12005.vdb 12.00 00 5108a9a38eb8dff2dec545e4ad2d5cb4aeda4697 (2019/10/22 17:34,   3406 records) loaded
  216. dwm12006.vdb 12.00 00 3aad6d1deaa02253fc423106279fd28cf73ceb24 (2019/11/12 17:05,   3306 records) loaded
  217. dwm12007.vdb 12.00 00 3306f977e38b6bb18350fb49155b027eed74a528 (2019/12/11 23:20,   7434 records) loaded
  218. dwm12008.vdb 12.00 00 65638f24c8884d65f140d96e160986c8b80ff8d4 (2020/02/27 08:02,   7061 records) loaded
  219. dwm12009.vdb 12.00 00 5a2249dab0cc70d124d4c7a3e95eaebe194f7847 (2020/04/21 17:28,   2979 records) loaded
  220. dwm12010.vdb 12.00 00 6baf9184f6fd18cb7f8dc07b73a749eb7c9e3c29 (2020/06/09 16:52,   2404 records) loaded
  221. dwm12011.vdb 12.00 00 c9fe925445c7677c1595d79ae057e7673e03ee61 (2020/07/21 17:41,   2191 records) loaded
  222. dwm12012.vdb 12.00 00 eb89db09370a2ab570c9f7e3b46c8455930b6e9d (2020/08/04 17:39,   2682 records) loaded
  223. dwm12013.vdb 12.00 00 418f07b1e11b9b47cf5fc54eedcf4f636ac1e913 (2020/09/08 17:44,   2736 records) loaded
  224. dwm12014.vdb 12.00 00 a775c3461304a050a207507dd4a88a6c04577aae (2020/11/17 17:14,   2098 records) loaded
  225. dwm12015.vdb 12.00 00 0ed8d983f3e40d48bd632df4968f2b60621f3f4c (2021/01/19 16:35,   4242 records) loaded
  226. dwm12016.vdb 12.00 00 459ed2a509ec2cdd769a16d5cc5f304357c373cf (2021/03/02 16:40,   2574 records) loaded
  227. dwm12017.vdb 12.00 00 f8fea7abb3ce568e7df02d26ea389cfb22fe99c5 (2021/05/04 17:05,   2833 records) loaded
  228. dwm12018.vdb 12.00 00 eb20693a8638cd465574bc310e50b414a4867496 (2021/07/20 17:17,   2816 records) loaded
  229. dwm12019.vdb 12.00 00 169c26955e664675b7db8f5dd80bd8413c633b8e (2021/08/10 17:05,   2560 records) loaded
  230. dwm12020.vdb 12.00 00 f013a54ac7e8a7bd0874f3efc5674a92e72ffbec (2020/11/16 14:35,   3663 records) loaded
  231. dwm12021.vdb 12.00 00 22912b4e7584cc8186d4598ba3b6fdc079654900 (2021/10/19 16:14,   2858 records) loaded
  232. dwm12022.vdb 12.00 00 0383c89b433f688ca7d89a45e43db107e54be840 (2021/12/07 15:44,   3014 records) loaded
  233. dwmtoday.vdb 12.00 02 5f4d9c5622a3c49f4e13f44c84dfce3928eb7ba2 (2022/01/04 13:21,   2516 records) loaded
  234. dwn12000.vdb 12.00 03 1c1e6b1d03825a29924a67035c3f55fc585fd130 (2019/03/07 13:31,      1 record) loaded
  235. dwn12001.vdb 12.00 03 10afbed8090aea94f89680ba794901e8082fafa5 (2019/10/14 14:30,   6325 records) loaded
  236. dwn12002.vdb 12.00 03 d91f82046c816bb9a3ca2e9e4fc9bf1d705768ac (2016/09/26 12:31,   6603 records) loaded
  237. dwn12003.vdb 12.00 03 e65500a4693cb79911416499be4a019905c5733d (2016/12/26 12:31,   7314 records) loaded
  238. dwn12004.vdb 12.00 03 9100091a42f0a02d1849eca80632cf80714c48df (2017/07/31 12:31,   5550 records) loaded
  239. dwn12005.vdb 12.00 03 a98c1643d55cfe8cccf19977418bbd4452ad1e44 (2018/03/05 12:32,   8716 records) loaded
  240. dwn12006.vdb 12.00 03 a658f0cd430dea407784de9d3fe61a128483939a (2018/04/02 12:32,   9735 records) loaded
  241. dwn12007.vdb 12.00 03 70db4b0ee1dea881ad89deeecddc310003095f22 (2018/07/16 12:35,   8787 records) loaded
  242. dwn12008.vdb 12.00 03 cd5b2ec4826ab4faed0d0f484890a0286304f4ab (2018/12/17 12:32,   8857 records) loaded
  243. dwn12009.vdb 12.00 03 f69a794f30bd0611bbd0cbca118ad24a63cdc84e (2019/02/18 12:28,   9296 records) loaded
  244. dwn12010.vdb 12.00 03 9d282e2e1635812322346238b52401643f567651 (2019/10/14 14:30,   6948 records) loaded
  245. dwn12011.vdb 12.00 03 b117a3794b65d54fb23e8551546cfaa434c3c9e9 (2020/11/16 14:33,   6826 records) loaded
  246. dwntoday.vdb 12.00 05 e15aac418faeecd2ba3d92e79b6704b3094b7cb5 (2022/01/04 13:22,   5260 records) loaded
  247. dwp12000.vdb 12.00 00 0ca85e99a65851b24637aa33b4667f767aae4c07 (2019/03/07 13:31,    739 records) loaded
  248. dwr12000.vdb 12.00 04 c4b4f9cd9ea9edf5e416273f8bb7d0debf39b3dd (2019/03/07 13:31,      1 record) loaded
  249. dwr12001.vdb 12.00 04 0c38706270f4d2ebfa33b92870991d525219e8ad (2019/12/30 14:21,   5436 records) loaded
  250. dwr12002.vdb 12.00 04 d46a3911171c8025fb4f67f51b08a6b1bcebb85a (2018/04/16 12:23,   5748 records) loaded
  251. dwr12003.vdb 12.00 04 9ac20da484c3bfbfc58bb79ad3f377177fc2491f (2019/01/28 12:19,   5044 records) loaded
  252. dwr12004.vdb 12.00 04 d0c741944800993a05ff769a4996d7b3a260efbd (2019/12/30 14:23,   3715 records) loaded
  253. dwr12005.vdb 12.00 04 402e374186e63f143da322d346edebb977b7008d (2020/01/15 17:28,    178 records) loaded
  254. dwrtoday.vdb 12.00 06 b0a9df869a36da6c2cbf0fcdab3dbc16caae545b (2022/01/04 13:22,   5591 records) loaded
  255. Engine 12.06.8.12260/7.00.52.08270 (2.2), 10751298 records, 2022/01/04 13:22
  256. Last updated 2022/01/04 13:22
  257. This is Windows XP Professional x86 (Build 2600), Service Pack 3
  258. The user is INTEL\Administrator:INTEL\None [url=home.php?mod=space&uid=340]@[/url] INTEL
  259. Using "..\st.drweb.com\static\beta_files\win\12.5\keys\drweb32.key" as Dr.Web Key file
  260. This Dr.Web Key is for 1 computer (Beta Dr.Web)
  261. WARNING! System has not been scanned for rootkits.
  262. Scan files using 2 engines and "" mask
  263. The mask was translated to "" filter
  264. "c:\Downloads\20220104\pf\1.rar/svchost.txt" infected with Trojan.Siggen16.24697
  265. "c:\Downloads\20220104\pf\1.rar/svchost.txt" - infected
  266. "c:\Downloads\20220104\pf\1.rar" - deleted
  267. "c:\Downloads\20220104\pf\CallDriver.exe" infected with Trojan.Aplomy.2 - deleted
  268. "c:\Downloads\20220104\pf\chrome_elf.dll" infected with Trojan.Starter.8038 - deleted
  269. "c:\Downloads\20220104\pf\EWQIFJGV.7Z/梖等儳牉5.exe" infected with Trojan.DownLoader44.12232
  270. "c:\Downloads\20220104\pf\EWQIFJGV.7Z/梖等儳牉5.exe" - infected
  271. "c:\Downloads\20220104\pf\Driver.sys" infected with Trojan.Aplomy.2 - deleted
  272. "c:\Downloads\20220104\pf\flash.rar/Flashx.exe" infected with Trojan.DownLoader44.14562
  273. "c:\Downloads\20220104\pf\flash.rar/Flashx.exe" - infected
  274. "c:\Downloads\20220104\pf\EWQIFJGV.7Z" - deleted
  275. "c:\Downloads\20220104\pf\flash.rar" - deleted
  276. "c:\Downloads\20220104\pf\Huanxun Key???.rar/谷歌???器9.exe" infected with Trojan.DownLoader44.13046
  277. "c:\Downloads\20220104\pf\Huanxun Key???.rar/谷歌???器9.exe" - infected
  278. "c:\Downloads\20220104\pf\flashx.exe" infected with Trojan.DownLoader44.14562 - deleted
  279. "c:\Downloads\20220104\pf\output.174399825.txt/svchost.txt" infected with Trojan.Siggen16.24697
  280. "c:\Downloads\20220104\pf\output.174399825.txt/svchost.txt" - infected
  281. "c:\Downloads\20220104\pf\output.174399825.txt/360.tct" infected with Trojan.Starter.8038
  282. "c:\Downloads\20220104\pf\output.174399825.txt/360.tct" - infected
  283. "c:\Downloads\20220104\pf\Huanxun Key???.rar" - deleted
  284. "c:\Downloads\20220104\pf\output.174531663.txt/svchost.txt" infected with Trojan.Siggen16.24697
  285. "c:\Downloads\20220104\pf\output.174531663.txt/svchost.txt" - infected
  286. "c:\Downloads\20220104\pf\output.174531663.txt/360.tct" infected with Trojan.Starter.8038
  287. "c:\Downloads\20220104\pf\output.174531663.txt/360.tct" - infected
  288. "c:\Downloads\20220104\pf\output.174399825.txt" - deleted
  289. "c:\Downloads\20220104\pf\output.174531663.txt" - deleted
  290. "c:\Downloads\20220104\pf\QQMusic.exe" infected with Trojan.DownLoader44.15030 - deleted
  291. "c:\Downloads\20220104\pf\QQ截?2021231606133521p.exe" infected with Trojan.DownLoader44.26645 - deleted
  292. "c:\Downloads\20220104\pf\svchost (2).txt" infected with Trojan.Siggen16.24697 - deleted
  293. "c:\Downloads\20220104\pf\svchost.txt" infected with Trojan.Siggen16.24697 - deleted
  294. "c:\Downloads\20220104\pf\TextInputh.exe" infected with Trojan.DownLoader44.13046 - deleted
  295. "c:\Downloads\20220104\pf\Telegram Desktop.exe" infected with Trojan.Siggen16.14220 - deleted
  296. "c:\Downloads\20220104\pf\??明?5.exe" infected with Trojan.DownLoader44.12232 - deleted
  297. WARNING! Restore points directories have not been scanned
  298. Total 70 Mbytes in 22 files scanned (43 objects, 6 containers)
  299. Total 5 files are clean
  300. Total 17 files (19 objects) are infected
  301. Total 17 files are neutralized
  302. Scan time is 00:08:54, 134KB/sec
  303. ================================================================
  304. Scan session completed 2022/1/4 下午 03:21:28
  305. ================================================================
复制代码
swizzer
发表于 2022-1-4 15:49:40 | 显示全部楼层
本帖最后由 swizzer 于 2022-1-4 16:06 编辑

锁库智量占位
锁库智量一败涂地
病毒库:2021/12/8
扫描miss all
双击,击杀一个样本和另一个样本的衍生物。。。

@智量官方
  1. 2022-01-04 15:54:09|C:\Users\Public\Videos\1641282745\ojbkcg.exe|MEMRAY:Potential.RAT.B01
  2. 2022-01-04 15:54:09|C:\Users\nyyz_\Downloads\pf\pf\QQ截图2021231606133521p.exe|MEMRAY:Potential.RAT.B
复制代码

不过可以确定的是Rootkit没有发作,相关驱动没有加载,检查钩子也没发现异常,服务项也没有新增条目。
hhhq316
头像被屏蔽
发表于 2022-1-4 15:49:47 | 显示全部楼层

这是360的杀毒界面?什么时候变得这么好看了
aboringman
发表于 2022-1-4 15:55:11 | 显示全部楼层
hhhq316 发表于 2022-1-4 15:49
这是360的杀毒界面?什么时候变得这么好看了

这个只是极速版安全大脑功能上传后的结果页面而已。。。。。。


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
anthonyqian
发表于 2022-1-4 16:10:49 | 显示全部楼层
本帖最后由 anthonyqian 于 2022-1-4 17:11 编辑

诺顿 解压后剩余



上了铁壳的防护公告板(https://www.broadcom.com/support ... e67daa97a411a_en-us

A recent malware campaign was discovered running a malicious installer compiled using AutoIt and named "Telegram Desktop.exe". If triggered, two files will be dropped, a legitimate Telegram installer file 'Telegram.exe', and a malicious downloader 'TextInputh.exe'. The AutoIt script will help launch TextInputh.exe and the next stage of the attack will commence. Connection with the hardcoded C2 server will be established to download two additional files, one being an archive (RAR) file. This archive file contains the final payload which includes the Purple Fox Rootkit.

If successfully deployed, the Purple Fox Rootkit will disable the User Account Control (UAC). UAC is a vital security feature to help prevent unauthorized accesses and helps mitigate the impact of malware.


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
k2132
发表于 2022-1-4 16:58:39 | 显示全部楼层
奇安信 15个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-11 01:00 , Processed in 0.134522 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表