火绒10x- 【1】2024-04-01 20:39:46,其他,隔离区,隔离区项删除完成
- 隔离区项删除完成
- 删除成功:
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-10-LunaStealer-e540f3.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-11-UnknownRAT(AutoIt)-0698ba.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-08-UnknownStealer-4d4ed7.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-09-UnknownStealer-db9e6d.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-06-UnknownStealer-7f687d.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-05-UnknownStealer-4d4ed7.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-03-BlankGrabber-800c18.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-02-MetaSploit-47c586.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-04-UnknownStealer-ab4588.exe
- D:\下载\Compressed\TurtleSUSP-240401\TS-240401-01-AgentTesla-49f7ae.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【2】2024-04-01 20:37:59,病毒防护,病毒查杀,自定义扫描, 发现0个风险项目
- 病毒库时间:2024-04-01 17:42
- 开始时间:2024-04-01 20:37
- 总计用时:00:00:05
- 扫描对象:740
- 扫描文件:1
- 发现风险:0
- 已处理风险:0
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【3】2024-04-01 20:37:07,病毒防护,文件实时监控,发现病毒HVM:VirTool/Obfuscator.gen!A, 已处理
- 病毒名称:HVM:VirTool/Obfuscator.gen!A
- 病毒ID:B27D4294CDE6A1EC
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-11-UnknownRAT(AutoIt)-0698ba.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【4】2024-04-01 20:37:07,病毒防护,文件实时监控,发现病毒Trojan/Python.Discord.b, 已处理
- 病毒名称:Trojan/Python.Discord.b
- 病毒ID:6F6DCE4C1B9E335A
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-10-LunaStealer-e540f3.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【5】2024-04-01 20:37:06,病毒防护,文件实时监控,发现病毒TrojanSpy/Python.Stealer.p, 已处理
- 病毒名称:TrojanSpy/Python.Stealer.p
- 病毒ID:FE967F045E029B23
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-09-UnknownStealer-db9e6d.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【6】2024-04-01 20:37:06,病毒防护,文件实时监控,发现病毒Trojan/Python.Discord.b, 已处理
- 病毒名称:Trojan/Python.Discord.b
- 病毒ID:6F6DCE4C1B9E335A
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-08-UnknownStealer-4d4ed7.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【7】2024-04-01 20:37:03,病毒防护,文件实时监控,发现病毒TrojanSpy/Python.PwStealer.j, 已处理
- 病毒名称:TrojanSpy/Python.PwStealer.j
- 病毒ID:4D9179B6D8BE9D1A
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-06-UnknownStealer-7f687d.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【8】2024-04-01 20:37:01,病毒防护,文件实时监控,发现病毒Trojan/Python.Discord.b, 已处理
- 病毒名称:Trojan/Python.Discord.b
- 病毒ID:6F6DCE4C1B9E335A
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-05-UnknownStealer-4d4ed7.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【9】2024-04-01 20:37:00,病毒防护,文件实时监控,发现病毒Trojan/Python.Discord.b, 已处理
- 病毒名称:Trojan/Python.Discord.b
- 病毒ID:6F6DCE4C1B9E335A
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-04-UnknownStealer-ab4588.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【10】2024-04-01 20:37:00,病毒防护,文件实时监控,发现病毒TrojanSpy/Python.Stealer.d, 已处理
- 病毒名称:TrojanSpy/Python.Stealer.d
- 病毒ID:D06410F9A3897EB1
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-03-BlankGrabber-800c18.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【11】2024-04-01 20:37:00,病毒防护,文件实时监控,发现病毒Backdoor/Meterpreter.an, 已处理
- 病毒名称:Backdoor/Meterpreter.an
- 病毒ID:7F025ED75CB76303
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-02-MetaSploit-47c586.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【12】2024-04-01 20:36:57,病毒防护,文件实时监控,发现病毒TrojanSpy/MSIL.AgentTesla.mq, 已处理
- 病毒名称:TrojanSpy/MSIL.AgentTesla.mq
- 病毒ID:AC3CB7CE3931CEA3
- 病毒路径:D:\下载\Compressed\TurtleSUSP-240401\TS-240401-01-AgentTesla-49f7ae.exe
- 操作类型:修改
- 操作结果:已处理,删除文件
- 进程ID:7732
- 操作进程:C:\Program Files\Bandizip\Bandizip.exe
- 操作进程命令行:"C:\Program Files\Bandizip\Bandizip.exe" "D:\下载\Compressed\TurtleSUSP-240401.zip"
- 父进程ID:10372
- 父进程:D:\Program Files\idm\IDM\IDMan.exe
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
复制代码
|