ZBotTrojanRemover是一款可以检测并查杀ZBot变种木马病毒的查杀工具,ZBot变种木马会在电脑中潜伏,并且专门针对用户的各种银行账号,是一种威胁非常大的病毒,大家一定要小心防范。托卡迷你城市小情侣下载-托卡迷你城市小情侣1.5安卓最新版
病毒样本:
MalwareAnalyzerbyHX
Analysisstarted
MD5:2BB9A1C4B35719ABD022C605A546D6C4
Executing->DeviceHarddiskVolume3UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe(PID:13440)
Command-line:"C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe"
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
WriteFile,C:UsersGatewayAppDataRoamingGolaxyeq.exe
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
WriteRegistryKey,SoftwareMicrosoft
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
WriteRegistryKey,Juat
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
DeleteFile,C:UsersGatewayAppDataRoamingGolaxyeq.exe
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
WriteFile,C:UsersGatewayAppDataRoamingGolaxyeq.exe
C:UsersGatewayDesktop2BB9A1C4B35719ABD022C605A546D6C4.exe
WriteFile,C:UsersGatewayAppDataRoamingGolaxyeq.exe
Executing->DeviceHarddiskVolume3SandboxGatewayAnalyzerusercurrentAppDataRoamingGolaxyeq.exe(PID:16540)
Command-line:"C:UsersGatewayAppDataRoamingGolaxyeq.exe"
C:UsersGatewayAppDataRoamingGolaxyeq.exe
WriteRegistryKey,SoftwareMicrosoftJuat
C:UsersGatewayAppDataRoamingGolaxyeq.exe
WriteRegistryKey,f62bfi
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:WindowsSystem32 askhost.exe(PID:1992)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:WindowsSystem32dwm.exe(PID:2976)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:UsersGatewayAppDataLocalMicrosoftSkyDriveSkyDrive.exe(PID:3484)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFiles(x86)GoogleDrivegoogledrivesync.exe(PID:3496)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFilesSandboxieSbieCtrl.exe(PID:3524)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFiles(x86)EvernoteEvernoteEvernoteClipper.exe(PID:3584)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,K:ProgramFiles(x86)KasperskyLabKasperskyEndpointSecurity8forWindowsavp.exe(PID:3592)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:UsersGatewayDesktopgoagent-goagent-a51d6a2localgoagent.exe(PID:3600)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:WindowsSystem32conhost.exe(PID:3608)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFilesBOINCoincmgr.exe(PID:3696)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:UsersGatewayDesktopgoagent-goagent-a51d6a2localpython27.exe(PID:3704)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFilesBOINCoinctray.exe(PID:3776)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,K:SkyDriveProgramsVBSherloggerSherlogger.exe(PID:3840)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,K:ProgramFiles(x86)BaiduYunaiduyun.exe(PID:3868)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFiles(x86)GoogleDrivegoogledrivesync.exe(PID:3952)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFilesBOINCoinc.exe(PID:3964)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:WindowsSystem32conhost.exe(PID:3972)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramFiles(x86)alipaySafeTransactionAlipaySafeTran.exe(PID:17800)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:ProgramDataBOINCprojectswww.worldcommunitygrid.orgwcgrid_dsfl_vina_6.25_windows_x86_64(PID:57092)
C:UsersGatewayAppDataRoamingGolaxyeq.exe(PID:16540)
AccessPROTECTEDProgram,C:WindowsSystem32conhost.exe(PID:58156)
Rollingback...
Analysisended
Reason:Malwaredetectedandrolledback
Anomalies:
-Modifiesprotectedresource.Theexecutablemodifiesimportantresources(files,processes,etc.)
展开

沈阳智慧医保app下载-沈阳智慧医保app3.2.3 官方最新版
阴阳师妖怪屋混服版下载-阴阳师妖怪屋闪卡兑换码1.998.014 联运版
蓝月传奇单职业下载-蓝月传奇单职业手游1.0 安卓版
云邻村社app下载官网-云邻村社安卓版1.1.7 最新版
XD 2019下载-Adobe XD 2019中文版19.0.22 免费版
零花熊app官方下载-零花熊短剧推广平台3.5.7 安卓版
教师资格考试题库最新版下载-教师资格考试云题库app2.7.9 最新版
wor排气声浪app下载-WOR系统1.0.0 安卓版
古欧战斗模拟器游戏下载-古欧战斗模拟器1.3 安卓版
武魂1.2破解版地图下载-武魂v1.2 破解版【附攻略+隐藏英雄密码】
txt小说生成器免费版-txt小说生成器1.2 绿色免费版
懒人修仙传mod下载-懒人修仙传呆毛MOD0.4.7 最新版
cf解封器免费版绿色版-小多cf解封器6.9 免费版
萌聘兼职app官方下载安装最新版-萌聘兼职1.0.06 官方版
恒创节点下载安装-恒创节点app1.0.2 安卓版
天使奇迹大冒险手游礼包版下载-天使奇迹大冒险礼包版1.0.0 安卓最新版
DS文件卫士下载-DS文件卫士最新免费版
提问箱app下载-Askbox提问箱1.0.0 安卓版
河北高速事故云处理最新版下载-河北高速事故云处理免费版1.0.1 官网最新版
ABBYY翻译软件下载-TextGrabber(ABBYY翻译app)1.0 安卓版