PDA

Просмотр полной версии : Пойманы в разделе Помогите, отчет за период 04.11.2009 - 05.11.2009



CyberHelper
08.11.2009, 21:00
Backdoor.Win32.Agent.amjl -> c:\documents and settings\вадим\application data\haiqem.dll
Backdoor.Win32.Agent.amjv -> c:\windows\system32\chknt32.exe
Backdoor.Win32.Bifrose.bwgk -> c:\temp\quarantine\proxymaster.exe ( DrWEB: Trojan.Packed.2960, BitDefender: Trojan.Generic.2472292, AVAST4: Win32:VB-NFD [Drp] )
Backdoor.Win32.Bredolab.asq -> c:\documents and settings\svetik\главное меню\программы\автозагрузка\zavupd32.exe ( DrWEB: Trojan.Botnetlog.11 )
Backdoor.Win32.HareBot.rl -> c:\documents and settings\вадим\restorer64_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Backdoor.Bot.108440, NOD32: Win32/Wigon.HT trojan )
Backdoor.Win32.HareBot.tl -> c:\documents and settings\shulzhenko.qp\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Kobcka.IN, AVAST4: Win32:Cutwail-AC [Trj] )
Backdoor.Win32.HareBot.tl -> c:\windows\system32\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Kobcka.IN, AVAST4: Win32:Cutwail-AC [Trj] )
Backdoor.Win32.SdBot.pyq -> e:\documents and settings\администратор\local settings\temp\409.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Generic.221158, AVAST4: Win32:Injector-SE [Trj] )
Backdoor.Win32.SdBot.pyq -> e:\documents and settings\администратор\local settings\temporary internet files\content.ie5\sqjl75b7\vs8[1].exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Generic.221158, AVAST4: Win32:Injector-SE [Trj] )
Backdoor.Win32.SdBot.pyq -> e:\documents and settings\администратор\local settings\temp\683.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Generic.221158, AVAST4: Win32:Injector-SE [Trj] )
Backdoor.Win32.SdBot.pyq -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1859\ls888.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Generic.221158, AVAST4: Win32:Injector-SE [Trj] )
Backdoor.Win32.SdBot.pyq -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Generic.221315, AVAST4: Win32:Injector-SE [Trj] )
HackTool.Win32.Hidd.cc -> c:\program files\fontsys.fon ( DrWEB: Trojan.MulDrop.31992, BitDefender: Trojan.Generic.2136392, NOD32: Win32/Delf.OKV trojan, AVAST4: Win32:Induc )
Net-Worm.Win32.Kolab.ccj -> c:\windows\system\svhost.exe ( DrWEB: BackDoor.IRC.Sdbot.4752, BitDefender: Trojan.Generic.2314165, NOD32: Win32/Injector.MM trojan, AVAST4: Win32:AutoRun-AVE [Wrm] )
not-a-virus:AdWare.Win32.AdSubscribe.afj -> c:\users\alex\appdata\roaming\cmedia\cmedia.dll ( DrWEB: Trojan.AdSubscribe.137 )
not-a-virus:AdWare.Win32.FearAds.ay -> c:\users\alex\appdata\roaming\fieryads\fieryads.dl l ( DrWEB: Adware.FieryAds.22, BitDefender: Gen:Adware.Heur.OO8aQaTp4jrk )
not-a-virus:Monitor.Win32.KbrdHook.a -> c:\program files\kbrdhook\keyboard.dll ( BitDefender: Trojan.Pws.Lineage.AR, AVAST4: Win32:Trojan-gen )
not-a-virus:Monitor.Win32.KbrdHook.a -> c:\program files\kbrdhook\plugins\pass.khp
Packed.Win32.Krap.x -> c:\documents and settings\вадим\главное меню\программы\автозагрузка\sysupd32.exe ( DrWEB: Trojan.Packed.682, BitDefender: Trojan.CryptRedol.Gen.5, NOD32: Win32/TrojanDownloader.Bredolab.AU trojan, AVAST4: Win32:Bredolab-AQ [Trj] )
P2P-Worm.Win32.Palevo.jpm -> e:\windows\system32\wshost32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Patched.BI, AVAST4: Win32:Patched-JZ [Trj] )
Trojan.BAT.KillWin.fe -> c:\temp\quarantine\reiting_vkontakte.exe ( NOD32: is OK )
Trojan.BAT.Qhost.gw -> c:\temp\quarantine\anti spam.exe ( BitDefender: Trojan.Generic.2427042 )
Trojan-Downloader.Win32.Agent.ctoo -> c:\windows\system32\drivers\svchost.exe ( DrWEB: Trojan.Click.29425 )
Trojan-Downloader.Win32.Agent.nsl -> c:\windows\system32\windata.cab ( DrWEB: Trojan.DownLoader.59496, BitDefender: Trojan.Downloader.Agent.ZIS, NOD32: Win32/Wigon trojan, AVAST4: Win32:Cutwail [Trj] )
Trojan-Downloader.Win32.Mutant.glm -> c:\documents and settings\artix\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Kobcka.IN, AVAST4: Win32:Cutwail-AC [Trj] )
Trojan-Downloader.Win32.Mutant.glm -> c:\windows\system32\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Kobcka.IN, AVAST4: Win32:Cutwail-AC [Trj] )
Trojan-Downloader.Win32.Small.kgl -> c:\windows\system32\wmmest.dll ( DrWEB: Trojan.DownLoad.40730, BitDefender: Trojan.Generic.2507160 )
Trojan-Dropper.Win32.Agent.bhdo -> c:\windows\system32\wsefkdfesd.exe ( BitDefender: Gen:Trojan.Heur.bm0@!dG3VDlb, AVAST4: Win32:Agent-AERY [Trj] )
Trojan-GameThief.Win32.Magania.carh -> d:\yudald.bat ( DrWEB: Trojan.PWS.Wsgame.13118, BitDefender: Trojan.Generic.2521888, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )
Trojan-GameThief.Win32.Magania.clrs -> c:\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.13208, NOD32: Win32/PSW.OnLineGames.ODJ trojan, AVAST4: Win32:Malware-gen )
Trojan-GameThief.Win32.Magania.clrs -> c:\temp\cvasds1.dll ( DrWEB: Trojan.PWS.Wsgame.13208, NOD32: Win32/PSW.OnLineGames.ODJ trojan, AVAST4: Win32:Malware-gen )
Trojan-GameThief.Win32.Magania.clsb -> c:\1a1dndah.exe ( DrWEB: Trojan.PWS.Wsgame.12661, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Soolo [Trj] )
Trojan-GameThief.Win32.Magania.clsb -> c:\autorun.inf ( NOD32: Win32/PSW.OnLineGames.NNU trojan )
Trojan-GameThief.Win32.Magania.clsb -> d:\1a1dndah.exe ( DrWEB: Trojan.PWS.Wsgame.12661, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Soolo [Trj] )
Trojan-GameThief.Win32.Magania.clsb -> d:\autorun.inf ( NOD32: Win32/PSW.OnLineGames.NNU trojan )
Trojan.MSIL.VkHost.c -> c:\temp\quarantine\vkmasterpro.exe
Trojan-Proxy.Win32.Agent.bwd -> c:\windows\system32\pmod11.dll
Trojan-Proxy.Win32.Agent.re -> c:\windows\msmacro32.exe ( DrWEB: Trojan.Proxy.1783, NOD32: Win32/TrojanProxy.Agent.MM trojan, AVAST4: Win32:Trojan-gen )
Trojan-Proxy.Win32.Agent.re -> c:\docume~1\artix\locals~1\temp\00.exe ( DrWEB: Trojan.Proxy.1783, NOD32: Win32/TrojanProxy.Agent.MM trojan, AVAST4: Win32:Trojan-gen )
Trojan-PSW.VBS.Jakuz.b -> c:\temp\quarantine\hack-kontakt.exe ( DrWEB: Trojan.PWS.Banker.3468, BitDefender: Trojan.Dropper.Delf.XU, AVAST4: Win32:Delf-HOR [Trj] )
Trojan-Ransom.Win32.Agent.gr -> c:\temp\quarantine\farmer_money_hack.exe ( DrWEB: archive: Trojan.Starter.1072 )
Trojan-Ransom.Win32.SMSer.rb -> c:\windows\system32\config\system~1\applic~1\ufast d~1\propetyufastmanager.exe ( DrWEB: Trojan.Winlock.425 )
Trojan-Ransom.Win32.SMSer.rb -> c:\docume~1\svetik\applic~1\ufastd~1\propetyufastm anager.exe ( DrWEB: Trojan.Winlock.425 )
Trojan-Ransom.Win32.SMSer.rb -> c:\windows\system32\config\system~1\applic~1\ufast d~1\propet~1.exe ( DrWEB: Trojan.Winlock.425 )
Trojan-Ransom.Win32.SMSer.rb -> c:\docume~1\svetik\applic~1\ufastd~1\propet~1.exe ( DrWEB: Trojan.Winlock.425 )
Trojan-Ransom.Win32.SMSer.rb -> c:\docume~1\locals~1.nta\applic~1\ufastd~1\propet~ 1.exe ( DrWEB: Trojan.Winlock.425 )
Trojan-Ransom.Win32.SMSer.ri -> c:\docume~1\8ad5~1\applic~1\ufastd~1\propet~1.exe ( DrWEB: Trojan.Winlock.425, AVAST4: Win32:Malware-gen )
Trojan.Win32.Agent.cncs -> c:\windows\system\dllcache.exe ( DrWEB: BackDoor.Siggen.205, BitDefender: Trojan.Generic.2053126, NOD32: Win32/AutoRun.IRCBot.AZ worm, AVAST4: Win32:Inject-SW [Trj] )
Trojan.Win32.Buzus.casf -> e:\windows\system32\umdmgr.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Trojan.Generic.2497240, AVAST4: Win32:Injector-SE [Trj] )
Trojan.Win32.Buzus.cleo -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Injector-SE [Trj] )
Trojan.Win32.Buzus.clkn -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Bot.144 )
Trojan.Win32.FraudPack.zcs -> c:\windows\services.exe ( DrWEB: Trojan.Spambot.3531, AVAST4: Win32:FakeAlert-DU [Trj] )
Trojan.Win32.Inject.alcg -> c:\windows\system32\syschk32.exe ( DrWEB: Trojan.Blackmailer.1519 )
Trojan.Win32.Inject.alcg -> c:\windows\system32\syschk32.exe ( DrWEB: Trojan.Blackmailer.1519 )
Trojan.Win32.Inject.ldi -> c:\windows\system32\gasretyw0.dll ( DrWEB: Trojan.PWS.Wsgame.6885, BitDefender: Trojan.PWS.OnlineGames.KCPB, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:Kavos [Trj] )
Trojan.Win32.Inject.ldi -> c:\windows\system32\kamsoft.exe ( DrWEB: Trojan.PWS.Wsgame.4983, BitDefender: Trojan.PWS.OnlineGames.KCPB, NOD32: Win32/PSW.OnLineGames.NMY trojan, AVAST4: Win32:Kavos [Trj] )
Trojan.Win32.Pakes.nrk -> c:\program files\common files\system\webcheck.dll ( DrWEB: Trojan.WebCheck.9 )
Trojan.Win32.Scar.ajuf -> c:\windows\system32\svrhost.exe
Trojan.Win32.Scar.akmu -> c:\temp\quarantine\l-l.exe ( DrWEB: archive: Trojan.Winlock.275, BitDefender: Trojan.Agent.ANPG )
Trojan.Win32.Scar.akmu -> c:\temp\quarantine\index.exe ( DrWEB: Trojan.Winlock.275, BitDefender: Trojan.Agent.ANPG )
Trojan.Win32.VkHost.fe -> c:\temp\quarantine\arat.exe
Type_Script -> c:\temp\quarantine\install.exe ( DrWEB: archive: a modification of VBS.Generic.18, BitDefender: Dropped:Generic.ScriptWorm.EB231356 )
Worm.Win32.AutoRun.azzu -> e:\recycler\s-1-5-21-5895244299-9687726348-596259165-1146\wmfcgr.exe ( DrWEB: Trojan.Packed.471, BitDefender: MemScan:Worm.Generic.83261, AVAST4: Win32:Delf-IFY [Trj] )
Worm.Win32.AutoRun.ftp -> c:\windows\system32\drivers\sysdrv32.sys ( DrWEB: Tool.TcpZ, BitDefender: Rootkit.Agent.AJBM, AVAST4: Win32:Tcpz [Tool] )