PDA

Просмотр полной версии : Пойманы в разделе Помогите, отчет за период 30.09.2009 - 01.10.2009



CyberHelper
04.10.2009, 21:00
Backdoor.Win32.Agent.alkz -> c:\windows\system32\sajuyaya.dll ( DrWEB: Trojan.Virtumod.1798, BitDefender: Trojan.Vundo.GPL )
Backdoor.Win32.Bifrose.atsn -> c:\bin\recycle\bin.exe ( DrWEB: Trojan.KeyLogger.2331, BitDefender: Backdoor.Generic.172882, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:VB-LXM [Drp] )
Backdoor.Win32.DeAlfa.dc -> c:\windows\system32\riodrv.exe ( DrWEB: Trojan.PWS.Banker.29027, BitDefender: Trojan.Generic.2331513, AVAST4: Win32:Induc )
Backdoor.Win32.HareBot.pi -> c:\windows\system32\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Packed.Hiloti.Gen.2, NOD32: Win32/Wigon.LX trojan )
Backdoor.Win32.HareBot.pi -> c:\documents and settings\anton\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Packed.Hiloti.Gen.2, NOD32: Win32/Wigon.LX trojan )
Backdoor.Win32.Kbot.xo -> c:\windows\system32\vhosts.exe ( DrWEB: BackDoor.Dax.47 )
Backdoor.Win32.Kbot.yb -> c:\windows\system32\mssrv32.exe ( DrWEB: Trojan.DownLoad.34654, AVAST4: Win32:MalOb-T [Cryp] )
Backdoor.Win32.Popwin.coo -> c:\windows\fonts\cb4bdb90.dll ( DrWEB: Trojan.Popwin.1212, BitDefender: Win32.Worm.Winko.I )
Backdoor.Win32.SdBot.pce -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Worm.Generic.90765 )
Backdoor.Win32.SdBot.pce -> d:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Worm.Generic.90765 )
Backdoor.Win32.SdBot.pce -> c:\windows\system32\iexplore.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Backdoor.Bot.107224 )
not-a-virus:AdWare.Win32.Virtumonde.bcse -> c:\windows\system32\tuvskifx.dll ( DrWEB: Trojan.Virtumod.441, BitDefender: Trojan.Vundo.FBT, AVAST4: Win32:Rootkit-gen [Rtk] )
not-a-virus:AdWare.Win32.Virtumonde.bcsf -> c:\windows\system32\yofivowi.dll ( DrWEB: Trojan.Virtumod.1662, BitDefender: Trojan.Generic.2440665, AVAST4: Win32:MalOb-L [Cryp] )
not-a-virus:WebToolbar.Win32.BitAccelerator.o -> d:\program files\bitaccelerator\bitaccelerator.exe ( DrWEB: Adware.BitAcc.12, BitDefender: Adware.Accelerator.R )
Packed.Win32.Klone.bj -> e:\mhgpec.exe ( DrWEB: Win32.HLLW.Autohit.9990, BitDefender: Gen:Trojan.Heur.AutoIT.AmNfbmqND6ak, AVAST4: Win32:Trojan-gen {Other} )
Packed.Win32.Krap.x -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326, BitDefender: Application.Generic.232556, AVAST4: Win32:Preald-AR [Drp] )
Packed.Win32.Krap.x -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, NOD32: Win32/Spy.Webmoner.NBN trojan )
Packed.Win32.TDSS.z -> c:\windows\system32\drivers\gasfkyrqxsmkpy.sys ( DrWEB: BackDoor.Tdss.based.1 )
P2P-Worm.Win32.Palevo.ddm -> c:\recycler\s-1-5-21-4998092894-5428533242-277254326-8593\wingn.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Win32.Worm.P2P.VCE, NOD32: Win32/Peerfrag.AW worm, AVAST4: Win32:SillyFDC-O [Wrm] )
Rootkit.Win32.HareBot.ay -> c:\windows\system32\drivers\ksi32sk.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Agent.AMZV, NOD32: Win32/TrojanDownloader.Wigon.BS trojan )
Rootkit.Win32.HareBot.ay -> c:\windows\system32\drivers\netsik.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Agent.AMZV, NOD32: Win32/TrojanDownloader.Wigon.BS trojan )
Rootkit.Win32.Zybr.x -> c:\windows\system32\drivers\cdmtn.sys ( DrWEB: Trojan.RKDoor.56, BitDefender: Gen:Rootkit.Heur.bqW@hGFSIPb, NOD32: Win32/Koutodoor.EH trojan, AVAST4: Win32:RtkDL [Rtk] )
Trojan-Downloader.Win32.Agent.cqel -> c:\windows\system32\blbrunsrv.dll ( DrWEB: Trojan.DownLoad.47520, NOD32: Win32/TrojanDownloader.Troxen.AB trojan )
Trojan-Downloader.Win32.FraudLoad.fse -> k:\vir\new\lizkavd.bak ( BitDefender: Gen:Packed.FakeAV.3 )
Trojan-Downloader.Win32.FraudLoad.wsvt -> c:\documents and settings\anton\application data\seres.exe ( DrWEB: Trojan.Fakealert.5269, BitDefender: Trojan.FakeAlert.BNS, NOD32: Win32/TrojanDownloader.FakeAlert.AJT trojan )
Trojan-Downloader.Win32.FraudLoad.wsvt -> c:\documents and settings\anton\application data\svcst.exe ( DrWEB: Trojan.Fakealert.5269, BitDefender: Trojan.FakeAlert.BNS, NOD32: Win32/TrojanDownloader.FakeAlert.AJT trojan )
Trojan-Downloader.Win32.Injecter.ddh -> c:\documents and settings\user\appdata\local\temp\tmp6d9d.tmp ( DrWEB: Trojan.DownLoad.40282, BitDefender: Trojan.Agent.ANCE, NOD32: Win32/TrojanDownloader.Agent.NXY trojan, AVAST4: Win32:Trojan-gen {Other} )
Trojan-Downloader.Win32.Mutant.fkf -> c:\windows\system32\config\systemprofile\systempro file.exe ( DrWEB: Trojan.DownLoad.38937, BitDefender: Trojan.Generic.2096480, AVAST4: Win32:Kobcka-M [Trj] )
Trojan-Downloader.Win32.Pher.air -> c:\recycler\s-1-5-21-2308934576-3077459333-523345477-9435\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2498427, AVAST4: Win32:Inject-UZ [Trj] )
Trojan-Downloader.Win32.Pher.apx -> c:\windows\system32\drivers\zlbt.exe ( DrWEB: BackDoor.IRC.Bot.142, NOD32: Win32/AutoRun.IRCBot.CZ worm )
Trojan-Downloader.Win32.Pher.aqd -> c:\windows\system32\drivers\dcin.exe ( DrWEB: BackDoor.IRC.Bot.142, NOD32: Win32/IRCBot trojan )
Trojan-Downloader.Win32.Pher.yf -> c:\windows\ntdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2497311 )
Trojan-Downloader.Win32.VB.rrm -> c:\windows\system32\msvgr.exe.exe ( DrWEB: Trojan.DownLoad.42298, BitDefender: Packer.Malware.LDPinch.A, AVAST4: Win32:Trojan-gen )
Trojan-Dropper.Win32.Agent.bemr -> c:\windows\system32\umdmgr.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Worm.Generic.83261 )
Trojan-GameThief.Win32.Magania.cdzo -> c:\mranjm.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Worm.Generic.90328, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:OnLineGames-FNO [Trj] )
Trojan-GameThief.Win32.Magania.cdzo -> c:\windows\temp\herss.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Worm.Generic.90328, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:OnLineGames-FNO [Trj] )
Trojan-GameThief.Win32.Magania.cecs -> c:\windows\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.13208, BitDefender: Trojan.Generic.2481119, NOD32: Win32/PSW.OnLineGames.ODJ trojan )
Trojan-PSW.Win32.WOW.bil -> c:\windows\system32\drivers\amd64si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )
Trojan-PSW.Win32.WOW.bil -> c:\windows\system32\drivers\systemntmi.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )
Trojan-PSW.Win32.WOW.bil -> c:\windows\system32\drivers\ws2_32sik.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )
Trojan-PSW.Win32.WOW.bil -> c:\windows\system32\drivers\ati64si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )
Trojan-PSW.Win32.WOW.bil -> c:\windows\system32\drivers\i386si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )
Trojan-Ransom.Win32.SMSer.mc -> c:\windows\ctfmon.exe ( DrWEB: Trojan.Winlock.302 )
Trojan-Ransom.Win32.VB.az -> c:\windows\cmon.exe ( DrWEB: Trojan.Winlock.294, NOD32: Win32/LockScreen.BP trojan )
Trojan-Ransom.Win32.VB.ba -> c:\windows\cmon.exe ( DrWEB: Trojan.Fakealert.5241 )
Trojan-Spy.Win32.Zbot.abgv -> c:\windows\system32\twex.exe ( BitDefender: Backdoor.Bot.105877 )
Trojan.Win32.Autoit.xp -> c:\documents and settings\all users\документы\hhylxc.exe ( DrWEB: Win32.HLLW.Autoruner.6013, BitDefender: Gen:Trojan.Heur.AutoIT.vmNfbeaEsLdc, AVAST4: Win32:Agent-AEEP [Trj] )
Trojan.Win32.Buzus.cbvq -> c:\windows\iexplorer72.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90758, NOD32: Win32/AutoRun.IRCBot.CY worm )
Trojan.Win32.Crypt.bgj -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Downloader.Zlob.ACWN )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\285.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\746.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\217.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90196, NOD32: Win32/Agent.HXW trojan, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\425.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\345.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\184.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1859\ls888.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\recycler\s-1-5-21-448539723-688789844-725345543-1003\dc1\ls888.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.owo -> c:\documents and settings\максим\local settings\temp\051.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Delf.pba -> c:\windows\system32\pdaycb.dll ( DrWEB: Trojan.Kor )
Trojan.Win32.Inject.afix -> c:\windows\system32\drivers\fips32cup.sys ( DrWEB: Trojan.DownLoad.38180 )
Trojan.Win32.Inject.ajnh -> c:\windows\system32\wbem\svchost.exe ( DrWEB: Trojan.Annoy.23 )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\vtukklme.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\hgvsmfxn.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\wvunmdec.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\mljdwxrs.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\khffvpiy.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\hggawxno.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\xxyxvnge.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Monderb.bdja -> c:\documents and settings\user\appdata\local\temp\ssqpifff.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )
Trojan.Win32.Refroso.kqt -> c:\windows\system32\winpsvc.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Trojan.Generic.2499251, NOD32: Win32/Agent.QDP trojan )
Trojan.Win32.Refroso.lav -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.Proxy.2751, BitDefender: Trojan.Generic.2495120 )
Trojan.Win32.Scar.xvz -> c:\windows\system32\x9h805q4o4\j002.exe ( DrWEB: Trojan.Siggen.4962, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan.Win32.Semki.fp -> c:\windows\fonts\323af35a.exe ( DrWEB: Trojan.MulDrop.35530, BitDefender: Win32.Worm.Winko.I, NOD32: Win32/Popwin.NCH trojan, AVAST4: Win32:Trojan-gen {Other} )
Trojan.Win32.Stuh.acqp -> c:\windows\system32\wotohisa.dll ( BitDefender: Trojan.Vundo.GPI, AVAST4: Win32:Vuku [Trj] )
Trojan.Win32.VBKrypt.z -> c:\jim\carry\jim.exe ( DrWEB: Trojan.Inject.1041, BitDefender: Worm.Generic.91031, NOD32: Win32/AutoRun.KS worm )
Trojan.Win32.VBKrypt.z -> c:\windows\fonts\i2w5f8w2v7l9.exe ( DrWEB: Trojan.Inject.1041, BitDefender: Worm.Generic.91031, NOD32: Win32/AutoRun.KS worm )
Worm.Win32.AutoRun.axgx -> c:\windows\system32\twex.exe ( DrWEB: Trojan.PWS.Panda.117, BitDefender: Backdoor.Bot.100845, NOD32: Win32/Spy.Zbot.RK trojan, AVAST4: Win32:Rootkit-gen [Rtk] )
Worm.Win32.AutoRun.gvw -> c:\autorun.inf ( NOD32: Win32/PSW.OnLineGames.NNU trojan )
Worm.Win32.AutoRun.gwa -> e:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-AA [Wrm] )
Worm.Win32.Pinit.gen -> c:\windows\system32\ntos.exe ( DrWEB: Trojan.PWS.Panda.9, BitDefender: Trojan.Generic.1808753, AVAST4: Win32:Zbot-BDA [Trj] )
Worm.Win32.Runfer.cxi -> c:\windows\system32\odbccu32.exe ( BitDefender: Gen:Trojan.Heur.xiW@r1rp7qfay, AVAST4: Win32:Trojan-gen {Other} )
Worm.Win32.VBKrypt.c -> c:\dub\wonk\tux.exe ( DrWEB: Win32.HLLW.Autoruner.7162 )