123
返回列表 发新帖
楼主: swizzer
收起左侧

[病毒样本] #Downloader #AHK (2022/4/9)

[复制链接]
54ss
发表于 2022-4-10 13:27:46 来自手机 | 显示全部楼层
夜光星 发表于 2022-4-9 17:43
火绒不会是盯着样本区入库的吧

火绒 没有特殊情况一天就更新一次库 也没有云,你在说什么?
anthonyqian
发表于 2022-4-11 00:28:05 | 显示全部楼层
Sophos 分析如下:

We checked the below mentioned files with SOPHOS labs team and it shows below result:-
lock.txt => not detect-worthy
JSON.ahk => not detect-worthy
ssleay32.dll => not detect-worthy
libeay32.dll => not detect-worthy
kdsd3.ahk => not detect-worthy
BA7753740AD8417EEFD87B7CA6~.msi => identity associated
kdsd3.exe => identity associated

Not-detect worthy doesn't mean the file is clean, it could be a file created or used by malware but by itself, it can't do anything malicious, or it was randomly created file that would only have ever been used once.
Identity Associated means file is no longer detected by Sophos as malicious.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-6 09:58 , Processed in 0.235545 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表