查看: 4246|回复: 35
收起左侧

[病毒样本] 远控 11x

  [复制链接]
UNknownOoo
发表于 2023-3-15 21:17:48 | 显示全部楼层 |阅读模式
Shake2333
发表于 2023-3-15 21:35:20 | 显示全部楼层
McAfee R50 扫描8X,双击剩余均miss


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wwwab
发表于 2023-3-15 21:40:59 | 显示全部楼层
大蜘蛛 (Dr.Web)
Only Killed 1, others all no detections
1/11≈9%

  1. Checking: Sample1.zip
  2. Engine version: 7.0.59.12300
  3. Total virus-finding records: 11478131
复制代码
  1. Sample1.zip - archive ZIP
  2. >Sample1.zip/Sample1/CobaltStrike.exe packed by PESTUB
  3. >>Sample1.zip/Sample1/CobaltStrike.exe - Ok
  4. >Sample1.zip/Sample1/Sus Backdoor.exe packed by UPX
  5. >>Sample1.zip/Sample1/Sus Backdoor.exe - Ok
  6. >Sample1.zip/Sample1/CobaltStrike.8.exe packed by PESTUB
  7. >>Sample1.zip/Sample1/CobaltStrike.8.exe - Ok
  8. >Sample1.zip/Sample1/Farfli.dll packed by UPX
  9. >>Sample1.zip/Sample1/Farfli.dll - Ok
  10. >Sample1.zip/Sample1/CobaltStrike.3.exe - archive ZLIB
  11. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data001 - Ok
  12. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data002 - Ok
  13. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data003 - Ok
  14. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data004 - Ok
  15. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data005 - Ok
  16. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data006 - Ok
  17. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data007 - Ok
  18. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data008 - Ok
  19. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data009 - Ok
  20. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data010 - Ok
  21. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data011 - Ok
  22. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data012 - Ok
  23. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data013 - Ok
  24. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data014 - Ok
  25. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data015 - Ok
  26. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data016 - Ok
  27. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data017 - Ok
  28. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data018 - Ok
  29. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data019 - Ok
  30. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data020 - Ok
  31. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data021 - Ok
  32. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data022 - Ok
  33. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data023 - Ok
  34. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data024 - Ok
  35. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data025 - Ok
  36. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data026 - Ok
  37. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data027 - Ok
  38. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data028 - Ok
  39. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data029 - Ok
  40. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data030 - Ok
  41. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data031 - Ok
  42. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data032 - Ok
  43. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data033 - Ok
  44. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data034 - Ok
  45. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data035 - Ok
  46. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data036 - Ok
  47. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data037 - Ok
  48. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data038 - Ok
  49. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data039 - Ok
  50. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data040 - Ok
  51. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data041 - Ok
  52. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data042 - Ok
  53. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data043 - Ok
  54. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data044 - Ok
  55. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data045 - Ok
  56. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data046 - Ok
  57. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data047 - Ok
  58. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data048 - Ok
  59. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data049 - Ok
  60. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data050 - Ok
  61. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data051 - Ok
  62. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data052 - Ok
  63. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data053 - Ok
  64. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data054 - Ok
  65. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data055 - Ok
  66. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data056 - Ok
  67. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data057 - Ok
  68. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data058 - Ok
  69. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data059 - archive XZ
  70. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data059/xz - Ok
  71. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data059 - Ok
  72. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data060 - Ok
  73. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data061 - Ok
  74. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data062 - Ok
  75. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data063 - Ok
  76. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data064 - Ok
  77. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data065 - Ok
  78. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data066 - Ok
  79. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data067 - Ok
  80. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data068 - Ok
  81. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data069 - Ok
  82. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data070 - Ok
  83. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data071 - Ok
  84. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data072 - archive ZIP
  85. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/_bootlocale.pyc - Ok
  86. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/_collections_abc.pyc - Ok
  87. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/_weakrefset.pyc - Ok
  88. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/abc.pyc - Ok
  89. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/codecs.pyc - Ok
  90. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/collections/__init__.pyc - Ok
  91. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/collections/abc.pyc - Ok
  92. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/copyreg.pyc - Ok
  93. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/__init__.pyc - Ok
  94. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/aliases.pyc - Ok
  95. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/ascii.pyc - Ok
  96. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/base64_codec.pyc - Ok
  97. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/big5.pyc - Ok
  98. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/big5hkscs.pyc - Ok
  99. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/bz2_codec.pyc - Ok
  100. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/charmap.pyc - Ok
  101. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp037.pyc - Ok
  102. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1006.pyc - Ok
  103. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1026.pyc - Ok
  104. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1125.pyc - Ok
  105. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1140.pyc - Ok
  106. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1250.pyc - Ok
  107. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1251.pyc - Ok
  108. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1252.pyc - Ok
  109. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1253.pyc - Ok
  110. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1254.pyc - Ok
  111. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1255.pyc - Ok
  112. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1256.pyc - Ok
  113. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1257.pyc - Ok
  114. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp1258.pyc - Ok
  115. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp273.pyc - Ok
  116. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp424.pyc - Ok
  117. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp437.pyc - Ok
  118. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp500.pyc - Ok
  119. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp720.pyc - Ok
  120. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp737.pyc - Ok
  121. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp775.pyc - Ok
  122. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp850.pyc - Ok
  123. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp852.pyc - Ok
  124. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp855.pyc - Ok
  125. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp856.pyc - Ok
  126. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp857.pyc - Ok
  127. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp858.pyc - Ok
  128. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp860.pyc - Ok
  129. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp861.pyc - Ok
  130. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp862.pyc - Ok
  131. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp863.pyc - Ok
  132. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp864.pyc - Ok
  133. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp865.pyc - Ok
  134. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp866.pyc - Ok
  135. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp869.pyc - Ok
  136. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp874.pyc - Ok
  137. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp875.pyc - Ok
  138. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp932.pyc - Ok
  139. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp949.pyc - Ok
  140. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/cp950.pyc - Ok
  141. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/euc_jis_2004.pyc - Ok
  142. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/euc_jisx0213.pyc - Ok
  143. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/euc_jp.pyc - Ok
  144. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/euc_kr.pyc - Ok
  145. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/gb18030.pyc - Ok
  146. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/gb2312.pyc - Ok
  147. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/gbk.pyc - Ok
  148. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/hex_codec.pyc - Ok
  149. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/hp_roman8.pyc - Ok
  150. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/hz.pyc - Ok
  151. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/idna.pyc - Ok
  152. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp.pyc - Ok
  153. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp_1.pyc - Ok
  154. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp_2.pyc - Ok
  155. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp_2004.pyc - Ok
  156. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp_3.pyc - Ok
  157. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_jp_ext.pyc - Ok
  158. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso2022_kr.pyc - Ok
  159. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_1.pyc - Ok
  160. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_10.pyc - Ok
  161. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_11.pyc - Ok
  162. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_13.pyc - Ok
  163. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_14.pyc - Ok
  164. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_15.pyc - Ok
  165. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_16.pyc - Ok
  166. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_2.pyc - Ok
  167. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_3.pyc - Ok
  168. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_4.pyc - Ok
  169. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_5.pyc - Ok
  170. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_6.pyc - Ok
  171. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_7.pyc - Ok
  172. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_8.pyc - Ok
  173. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/iso8859_9.pyc - Ok
  174. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/johab.pyc - Ok
  175. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/koi8_r.pyc - Ok
  176. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/koi8_t.pyc - Ok
  177. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/koi8_u.pyc - Ok
  178. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/kz1048.pyc - Ok
  179. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/latin_1.pyc - Ok
  180. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_arabic.pyc - Ok
  181. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_centeuro.pyc - Ok
  182. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_croatian.pyc - Ok
  183. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_cyrillic.pyc - Ok
  184. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_farsi.pyc - Ok
  185. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_greek.pyc - Ok
  186. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_iceland.pyc - Ok
  187. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_latin2.pyc - Ok
  188. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_roman.pyc - Ok
  189. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_romanian.pyc - Ok
  190. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mac_turkish.pyc - Ok
  191. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/mbcs.pyc - Ok
  192. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/oem.pyc - Ok
  193. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/palmos.pyc - Ok
  194. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/ptcp154.pyc - Ok
  195. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/punycode.pyc - Ok
  196. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/quopri_codec.pyc - Ok
  197. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/raw_unicode_escape.pyc - Ok
  198. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/rot_13.pyc - Ok
  199. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/shift_jis.pyc - Ok
  200. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/shift_jis_2004.pyc - Ok
  201. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/shift_jisx0213.pyc - Ok
  202. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/tis_620.pyc - Ok
  203. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/undefined.pyc - Ok
  204. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/unicode_escape.pyc - Ok
  205. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_16.pyc - Ok
  206. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_16_be.pyc - Ok
  207. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_16_le.pyc - Ok
  208. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_32.pyc - Ok
  209. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_32_be.pyc - Ok
  210. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_32_le.pyc - Ok
  211. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_7.pyc - Ok
  212. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_8.pyc - Ok
  213. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/utf_8_sig.pyc - Ok
  214. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/uu_codec.pyc - Ok
  215. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/encodings/zlib_codec.pyc - Ok
  216. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/enum.pyc - Ok
  217. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/fnmatch.pyc - Ok
  218. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/functools.pyc - Ok
  219. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/genericpath.pyc - Ok
  220. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/heapq.pyc - Ok
  221. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/io.pyc - Ok
  222. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/keyword.pyc - Ok
  223. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/linecache.pyc - Ok
  224. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/locale.pyc - Ok
  225. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/ntpath.pyc - Ok
  226. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/operator.pyc - Ok
  227. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/os.pyc - Ok
  228. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/pathlib.pyc - Ok
  229. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/posixpath.pyc - Ok
  230. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/re.pyc - Ok
  231. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/reprlib.pyc - Ok
  232. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/sre_compile.pyc - Ok
  233. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/sre_constants.pyc - Ok
  234. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/sre_parse.pyc - Ok
  235. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/stat.pyc - Ok
  236. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/token.pyc - Ok
  237. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/tokenize.pyc - Ok
  238. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/traceback.pyc - Ok
  239. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/types.pyc - Ok
  240. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/__init__.pyc - Ok
  241. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/error.pyc - Ok
  242. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/parse.pyc - Ok
  243. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/request.pyc - Ok
  244. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/response.pyc - Ok
  245. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/urllib/robotparser.pyc - Ok
  246. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/warnings.pyc - Ok
  247. >>>Sample1.zip/Sample1/CobaltStrike.3.exe/data072/weakref.pyc - Ok
  248. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data072 - Ok
  249. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data073 - Ok
  250. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data074 - Ok
  251. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data075 - Ok
  252. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data076 - Ok
  253. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data077 - Ok
  254. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data078 - Ok
  255. >>Sample1.zip/Sample1/CobaltStrike.3.exe/data079 - Ok
  256. >Sample1.zip/Sample1/CobaltStrike.3.exe - Ok
  257. >Sample1.zip/Sample1/CobaltStrike.2.exe - Ok
  258. >Sample1.zip/Sample1/CobaltStrike.1.exe - Ok
  259. >Sample1.zip/Sample1/CobaltStrike.5.exe - Ok
  260. >Sample1.zip/Sample1/CobaltStrike.4.exe packed by PESTUB
  261. >>Sample1.zip/Sample1/CobaltStrike.4.exe - Ok
  262. >Sample1.zip/Sample1/CobaltStrike.7.exe - Ok
  263. >Sample1.zip/Sample1/Virus.Generic.exe - archive NET
  264. >>Sample1.zip/Sample1/Virus.Generic.exe/Udtronvzttjrfqdiwj - archive BASE64
  265. >>>Sample1.zip/Sample1/Virus.Generic.exe/Udtronvzttjrfqdiwj/0.part infected with Trojan.Inject4.30942
复制代码
心醉咖啡
发表于 2023-3-15 21:42:39 | 显示全部楼层
360

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
dght432
发表于 2023-3-15 21:43:07 | 显示全部楼层
360:10/11

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
huangzihang
发表于 2023-3-15 21:57:16 | 显示全部楼层
BD all


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
UNknownOoo
 楼主| 发表于 2023-3-15 22:08:18 | 显示全部楼层
wwwab 发表于 2023-3-15 21:40
大蜘蛛 (Dr.Web)
Only Killed 1, others all no detections
1/11≈9%

感觉蜘蛛的引擎很强啊... 怎么检出率这么低(
喀反
发表于 2023-3-15 22:11:31 | 显示全部楼层
eset 扫描+双击剩余2

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hansyu
发表于 2023-3-15 22:29:34 | 显示全部楼层
AVG 7x

  1. R:\Sample1\CobaltStrike.1.exe [L] Win64:Evo-gen [Trj] (0)
  2. R:\Sample1\CobaltStrike.4.exe [L] Win64:Trojan-gen (0)
  3. R:\Sample1\Virus.Generic.exe [L] Win64:DropperX-gen [Drp] (0)
  4. R:\Sample1\CobaltStrike.5.exe [L] Win64:Evo-gen [Trj] (0)
  5. R:\Sample1\CobaltStrike.3.exe [L] Win64:Trojan-gen (0)
  6. R:\Sample1\CobaltStrike.2.exe [L] Win64:Evo-gen [Trj] (0)
  7. R:\Sample1\CobaltStrike.8.exe [L] Win64:Trojan-gen (0)
复制代码
117054487
发表于 2023-3-16 00:02:33 | 显示全部楼层
本帖最后由 117054487 于 2023-3-16 19:06 编辑

卡巴剩余1x CobaltStrike.1.exe
卡巴回复
CobaltStrike.1.exe - Trojan.Win64.Agent.qwieuc

评分

参与人数 1人气 +2 收起 理由
dongwenqi + 2 版区有你更精彩: )

查看全部评分

您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-2 10:21 , Processed in 0.131307 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表