本帖最后由 UNknownOoo 于 2023-12-31 22:01 编辑
火绒
扫描:8X- 扫描文件:12
- 发现风险:8
- 已处理风险:0
- 病毒详情:
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\CS-Potato-stuep.msi >> webr.exe, 病毒名:TrojanDownloader/Agent.avd, 病毒ID:86875f6c846245f7, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\i4Toolsv7.98.769_Setup.msi >> i4Tools.exe, 病毒名:TrojanDownloader/Agent.atm, 病毒ID:7a763b90e1cb46c1, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\eyy-win64-2.exe, 病毒名:TrojanDropper/Agent.pk, 病毒ID:a7d877fca24f595d, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\HelloWorld跨境电商助手-1.5.5.exe, 病毒名:TrojanDropper/Agent.pk, 病毒ID:a7d877fca24f595d, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\Kuai[过滤]-9.5.3.exe, 病毒名:TrojanDropper/Agent.pk, 病毒ID:a7d877fca24f595d, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\mohe.exe, 病毒名:HEUR:TrojanSpy/ClipBanker.c, 病毒ID:eac2f81f86c2b1a9, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\Youdao-fanyi-x64.exe, 病毒名:Backdoor/Farfli.kb, 病毒ID:ac02c596956ec11f, 处理结果:暂不处理
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\130YD.msi >> zip >> tiak.exe, 病毒名:HVM:TrojanDownloader/Maloader.t, 病毒ID:a456defd96738281, 处理结果:暂不处理
复制代码
运行:
Alsi4tool.msi -> 特征捉衍生物
- 病毒名称:HVM:TrojanDownloader/Maloader.t
- 病毒ID:A456DEFD96738281
- 病毒路径:C:\Program Files (x86)\i4tools\updata.exe
复制代码
EYY.msi -> MISS
WeChatSetup.msi -> MISS
补充一下...火绒手动扫描能捉衍生物flask.dmp
- 病毒详情:
- 风险路径:C:\Users\UnknownOoo\Downloads\Compressed\WeWeChat 23.12.30\flask.dmp, 病毒名:Backdoor/Farfli.lj, 病毒ID:966a3833921ec70f, 处理结果:暂不处理
复制代码
X-Sec
扫描:5X
- ---------------------
- 2023/12/31 20:44:23 Threat Detected: C:\Users\UnknownOoo\Downloads\Compressed\130YD.msi -- [rame-tfe] Trojan.ScarletFlash!8.FB27
- 2023/12/31 20:44:25 Threat Detected: C:\Users\UnknownOoo\Downloads\Compressed\CS-Potato-stuep.msi -- [rame-tfe] Trojan.Injector!8.C4
- 2023/12/31 20:44:51 Threat Detected: C:\Users\UnknownOoo\Downloads\Compressed\i4Toolsv7.98.769_Setup.msi -- [xave-cloud] Trojan.Generic
- 2023/12/31 20:44:59 Threat Detected: C:\Users\UnknownOoo\Downloads\Compressed\mohe.exe -- [rame-tfe] Spyware.Clipper!8.BC31
- 2023/12/31 20:45:07 Threat Detected: C:\Users\UnknownOoo\Downloads\Compressed\Youdao-fanyi-x64.exe -- [rame-classic] Trojan.Evasion/SFACTORY!1.EEEF
复制代码
|