Код:
Registry Keys: 1
PUP.Optional.Softonic.A, HKU\S-1-5-21-2352527867-2094388307-2666628203-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, , [f84fe3e4e893ef47ae18c6362fd36c94],
Registry Values: 2
Trojan.Llac, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Google Update, C:\Users\??N?N?N???\AppData\Roaming\10829\svchost.exe, , [1730428590eba1958e37436fa75af010]
Trojan.Llac, HKU\S-1-5-21-2352527867-2094388307-2666628203-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Google Update, C:\Users\??N?N?N???\AppData\Roaming\10829\svchost.exe, , [1730428590eba1958e37436fa75af010]
Folders: 2
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Roaming\newnext.me, , [c0876e59c3b83600d63af6c4758df010],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Roaming\newnext.me\cache, , [c0876e59c3b83600d63af6c4758df010],
Files: 53
Trojan.Llac, C:\Users\??N?N?N???\AppData\Roaming\10829\svchost.exe, , [1730428590eba1958e37436fa75af010],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Local\genienext\nengine.dll, , [4601487ff08bde589a52a3bcba47837d],
PUP.Optional.Zaxar, C:\Users\??N?N?N???\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RLL10095\ZaxarSetup.4.001.28[1].exe, , [95b2d8efb4c75bdb19b91b4ddd25ab55],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Local\Mobogenie\Version\NewVersion\Mobogenie2.1.36.zip, , [c28512b5e19a4ee8915b76e9ad548878],
PUP.Optional.Zaxar, C:\Users\??N?N?N???\AppData\Local\Temp\ZaxarSetup.4.001.28.exe, , [bc8b30977cff979f656dda8e07fbc63a],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.serv.exe, , [d2753097a7d4ed4951b99ec9fa07817f],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.m.exe, , [4502f1d60378191d3fcb82e57b86ba46],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.srm.exe, , [4bfc9c2b7efd7cbaab5f87e0926fe51b],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.srn.exe, , [5ee97e493843ce68d03ae87f7a8731cf],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.ss.exe, , [f94ed4f3cead251118f2f96e0ef3d22e],
Trojan.Inject, C:\Users\??N?N?N???\AppData\Roaming\google.sz.exe, , [380fb80f83f8c86ec545f3745ea3ce32],
Trojan.Miner, C:\Users\??N?N?N???\AppData\Roaming\libcurl-4.dll, , [a6a1497eec8fdd59531656fbed1533cd],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Roaming\newnext.me\nengine.dll, , [0245ad1af9822f07d21a88d78e734db3],
PUP.Optional.Somoto.A, C:\Users\??N?N?N???\AppData\Roaming\Opera Software\Opera Stable\File System\000\t\00\00000000, , [182f5275fa815ed86897c4d5ca3a13ed],
Virus.Neshta, C:\Users\??N?N?N???\Downloads\Skrillax [R8] By Alex_Lenez.rar, , [bf88cbfcff7ccc6a2bfa1d7137ca19e7],
Trojan.FakeAlert, C:\Users\??N?N?N???\Downloads\avz4\avz4\Quarantine\2014-08-17\avz00015.dta, , [182f5d6a681346f07d1bdf7eb14f7789],
Trojan.Llac, C:\Users\??N?N?N???\Downloads\avz4\avz4\Quarantine\2014-08-17\avz00063.dta, , [53f412b5a0dbd066a5205b5727dab34d],
Virus.Neshta, C:\Users\??N?N?N???\Downloads\Skrillax [R8] By Alex_Lenez\samp-npc.exe, , [d473f8cf5328cb6b160f701e778aa759],
Trojan.Agent.Gen, C:\Users\??N?N?N???\AppData\Roaming\sysmsi.exe, , [58ef0eb9a0db072f0cef5670917230d0],
Malware.Trace, C:\Users\??N?N?N???\AppData\Roaming\diablo130302.cl, , [8bbc37902d4efc3a92170717e123c53b],
Malware.Trace, C:\Users\??N?N?N???\AppData\Roaming\diakgcn121016.cl, , [044382455526ae887931c35b867e7a86],
Malware.Trace, C:\Users\??N?N?N???\AppData\Roaming\phatk121016.cl, , [51f6dceb631872c448630f0f768e7d83],
Malware.Trace, C:\Users\??N?N?N???\AppData\Roaming\scrypt130511.cl, , [84c3f3d47dfe7eb89814c45a02028977],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Roaming\newnext.me\nengine.cookie, , [c0876e59c3b83600d63af6c4758df010],
PUP.Optional.NextLive.A, C:\Users\??N?N?N???\AppData\Roaming\newnext.me\cache\spark.bin, , [c0876e59c3b83600d63af6c4758df010],
PUP.Optional.ASK.A, C:\Users\??N?N?N???\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "http://www.search.ask.com/?tpid=HIP-V7&o=APN10976&pf=V7&trgb=CR&p2=,[d3741cab463554e2075680858e7719e7]EB2Y,[d3741cab463554e2075680858e7719e7]EYYYYYY,[d3741cab463554e2075680858e7719e7]EVC,[d3741cab463554e2075680858e7719e7]ERU&gct=hp&apn_ptnrs=,[d3741cab463554e2075680858e7719e7]EB2Y&apn_dtid=,[d3741cab463554e2075680858e7719e7]EYYYYYY,[d3741cab463554e2075680858e7719e7]EVC,[d3741cab463554e2075680858e7719e7]ERU&apn_dbr=Launcher.exe_0_19.0.1326.56&apn_uid=B250FF53-0CD1-4536-B764-1BA411B6D19C&itbv=12.10.0.3773&doi=2014-02-01&psv=" ],), ,[d3741cab463554e2075680858e7719e7]
и выберите действие Карантин