PDA

Просмотр полной версии : Пойманы в разделе Помогите, отчет за период 03.12.2009 - 04.12.2009



CyberHelper
07.12.2009, 21:00
Backdoor.Win32.Bredolab.bdn -> c:\documents and settings\admin\главное меню\программы\автозагрузка\zipibn32.exe ( DrWEB: Trojan.Botnetlog.87, NOD32: Win32/Kryptik.BHG trojan, AVAST4: Win32:Rootkit-gen [Rtk] )
Backdoor.Win32.HareBot.alo -> c:\windows\system32\av_md.exe ( DrWEB: Trojan.Inject.7589, NOD32: Win32/Wigon.HT trojan )
Backdoor.Win32.HareBot.alo -> c:\windows\system32\config\systemprofile\av_md.exe ( DrWEB: Trojan.Inject.7589, NOD32: Win32/Wigon.HT trojan )
Backdoor.Win32.HareBot.alo -> c:\windows\system32\av_md.exe ( DrWEB: Trojan.Inject.7589, NOD32: Win32/Wigon.HT trojan )
Backdoor.Win32.ZZSlash.bft -> c:\windows\system32\be74b5.dll ( BitDefender: Rootkit.28959, AVAST4: Win32:Malware-gen )
HEUR:Trojan.Win32.Generic -> c:\windows\system32\lsaas.exe
Net-Worm.Win32.Piloyd.bg -> c:\windows\system32\dllcache\lsasvc.dll ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
Net-Worm.Win32.Piloyd.bg -> c:\recycler\s-1-5-21-1390067357-413027322-1177238915-500\dc1187.dll ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
Net-Worm.Win32.Piloyd.bg -> c:\recycler\s-1-5-21-1390067357-413027322-1177238915-500\dc841.dll ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
Net-Worm.Win32.Piloyd.bg -> c:\recycler\s-1-5-21-1390067357-413027322-1177238915-500\dc1033.dll ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
Net-Worm.Win32.Piloyd.bg -> c:\windows\temp\02027.exe ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
Net-Worm.Win32.Piloyd.bg -> c:\recycler\s-1-5-21-1390067357-413027322-1177238915-500\dc965.dll ( DrWEB: Win32.HLLW.Autoruner.8265, BitDefender: Trojan.Viking.A, NOD32: Win32/AutoRun.AntiAV.Q worm, AVAST4: Win32:Viking-CF )
not-a-virus:Monitor.Win32.NeoSpy.ci -> c:\documents and settings\леся\local settings\temp\ixp000.tmp\ns.exe
Packed.Win32.Klone.bj -> d:\cvkpne.exe ( DrWEB: Win32.HLLW.Siggen.73, BitDefender: Gen:Trojan.Heur.AutoIT.CmNfbyzG9DiO, AVAST4: Win32:Crypt-FER [Trj] )
Packed.Win32.Krap.l -> f:\anpimw.exe ( DrWEB: Win32.HLLW.Autohit.3438, BitDefender: Gen:Trojan.Heur.AutoIT.Qq3@bygpiWcO )
Packed.Win32.Krap.l -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438, BitDefender: Gen:Trojan.Heur.AutoIT.Qq3@bygpiWcO )
Packed.Win32.Krap.l -> g:\anpimw.exe ( DrWEB: Win32.HLLW.Autohit.3438, BitDefender: Gen:Trojan.Heur.AutoIT.Qq3@bygpiWcO )
Packed.Win32.Tadym.c -> c:\documents and settings\manager2\главное меню\программы\автозагрузка\siszyd32.exe ( DrWEB: Trojan.DownLoad1.14707 )
Packed.Win32.Tadym.c -> c:\documents and settings\imefodin.technobior\главное меню\программы\автозагрузка\siszyd32.exe ( DrWEB: Trojan.DownLoad1.14707 )
Packed.Win32.Tadym.c -> c:\documents and settings\admin\главное меню\программы\автозагрузка\siszyd32.exe ( DrWEB: Trojan.DownLoad1.14707 )
Rootkit.Win32.Agent.zwp -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.508, AVAST4: Win32:Malware-gen )
Trojan-Banker.Win32.Bancos.hxh -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, BitDefender: Trojan.Generic.2649051, AVAST4: Win32:Zbot-MEI [Trj] )
Trojan-Banker.Win32.BifiBank.c -> c:\windows\system32\pajggg.dll ( DrWEB: Trojan.PWS.Banker.36488, BitDefender: Gen:Trojan.Heur.bm4@yX@Ei!iah )
Trojan-DDoS.Win32.Agent.ca -> c:\windows\system32\winsn.exe ( DrWEB: Win32.HLLW.Autoruner.2127, BitDefender: Trojan.Generic.497142, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan-DDoS.Win32.Agent.ca -> c:\d4897a3e.exe ( DrWEB: Win32.HLLW.Autoruner.2127, BitDefender: Trojan.Generic.497142, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan-DDoS.Win32.Agent.ca -> c:\windows\system32\winsos.exe ( DrWEB: BackDoor.IRC.Evil.8, BitDefender: Backdoor.Bot.28341, AVAST4: Win32:Trojan-gen )
Trojan-DDoS.Win32.Agent.ca -> c:\windows\system32\shovth.exe ( DrWEB: Win32.HLLW.Autoruner.2127, BitDefender: Trojan.Generic.497142, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan-Downloader.Win32.Losabel.bmj -> c:\windows\system32\msnwm.exe ( DrWEB: Trojan.Inject.7590, BitDefender: Trojan.Generic.2827062, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan-Downloader.Win32.Ogran.di -> c:\windows\sfevxx.exe ( DrWEB: BackDoor.ClDdos.origin )
Trojan-Ransom.Win32.Agent.hy -> c:\windows\system32\drivers\vebzmode.sys ( DrWEB: Trojan.Winlock.516 )
Trojan-Ransom.Win32.Digitala.b -> c:\windows\system32\drivers\kfyuiah8.sys ( DrWEB: Trojan.Winlock.508, NOD32: Win32/Sirefef.A trojan, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan-Ransom.Win32.SMSer.tl -> \avz00002.dta ( DrWEB: Trojan.Winlock.521 )
Trojan-Ransom.Win32.SMSer.tl -> e:\recycler\mmortb.dll ( DrWEB: Trojan.Winlock.521 )
Trojan-Ransom.Win32.SMSer.tl -> e:\recycler\zqonkrk.dll ( DrWEB: Trojan.Winlock.521 )
Trojan-Spy.Win32.BZub.hqc -> e:\windows\system32\chknt32.exe ( DrWEB: Trojan.PWS.Webmonier.178 )
Trojan-Spy.Win32.BZub.hqc -> c:\windows\system32\chknt32.exe ( AVAST4: Win32:Spyware-gen [Spy] )
Trojan-Spy.Win32.Zbot.adfi -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, AVAST4: Win32:Malware-gen )
Trojan.Win32.Agent.ddeu -> d:\windows\system32\drivers\mssrvc.sys ( DrWEB: Trojan.NtRootKit.4859, AVAST4: Win32:Crypt-AUN [Trj] )
Trojan.Win32.Agent.ddfr -> c:\documents and settings\atargat\start menu\programs\startup\siszyd32.exe ( DrWEB: Trojan.DownLoad1.14707, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan.Win32.Agent.ddfr -> e:\documents and settings\администратор\главное меню\программы\автозагрузка-\siszyd32.exe ( DrWEB: Trojan.DownLoad1.14707, AVAST4: Win32:Rootkit-gen [Rtk] )
Trojan.Win32.Agent2.cmhl -> c:\program files\internet explorer\svcnost.exe ( BitDefender: Gen:Trojan.Heur.bOelrPDBHxcID )
Trojan.Win32.AutoRun.oy -> c:\autorun.inf
Trojan.Win32.AutoRun.pe -> d:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-W )
Trojan.Win32.Buzus.crty -> c:\windows\wind7upd.exe ( DrWEB: Win32.HLLW.Lime.18 )
Trojan.Win32.Diamin.aor -> d:\program files\internet explorer\smss.exe ( DrWEB: Trojan.Siggen.30515 )
Trojan.Win32.Inject.alvp -> c:\acc1\f1c1\acc1.exe ( DrWEB: Trojan.Inject.7531 )
Trojan.Win32.Inject.qzh -> c:\documents and settings\all users\application data\admin\svchost.exe ( DrWEB: Trojan.KeyLogger.3614, BitDefender: Trojan.Generic.1622243, AVAST4: Win32:Trojan-gen )
Trojan.Win32.KillAV.rx -> c:\program files\eset\eset nod32 antivirus\nodlogin.exe ( DrWEB: Win32.HLLW.Autohit.9128, BitDefender: Trojan.Generic.1471478, AVAST4: Win32:Trojan-gen )
Trojan.Win32.Patched.fr -> c:\windows\system32\sfcfiles.dll ( DrWEB: Trojan.WinSpy.372, AVAST4: Win32:Patched-KP [Trj] )
Trojan.Win32.Patched.fr -> c:\winnt\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )
Trojan.Win32.Spamer.n -> d:\windows\services.exe ( BitDefender: Backdoor.Bot.81147, AVAST4: Win32:Wali [Cryp] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0016803.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0006653.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\program files\toshiba\windows utilities\hotkey.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0006719.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0004588.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\program files\microsoft office\office10\osa.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\windows\system32\tpsmain.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\program files\toshiba\toscdspd\toscdspd.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\program files\toshiba\программа toshiba zooming utility\smoothview.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp24\a0003501.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp24\a0002461.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\windows\system32\avpo.exe ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0004644.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp24\a0002218.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\program files\toshiba\touch and launch\padexe.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0004521.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\program files\msn toolbar suite\msntbup.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0004611.com ( DrWEB: Win32.Sector.5, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:OnLineGames-BDA [Trj] )
Virus.Win32.Sality.aa -> c:\system volume information\_restore{559850b4-15ac-44c5-9069-d5f1d13f785c}\rp25\a0016827.pif ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\program files\messenger\msmsgs.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\sdxj.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Sality.aa -> c:\program files\электрик\cupro.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )
Virus.Win32.Tenga.a -> c:\system volume information\_restore{721404e9-b4cd-40e1-8dd9-5efa9bf00ac8}\rp268\a0204362.com ( DrWEB: Win32.HLLM.Utenti, BitDefender: Win32.Traxg.C@mm, NOD32: Win32/Tenga.gen virus, AVAST4: Win32:Traxg-B [Wrm] )
Virus.Win32.Tenga.a -> c:\system volume information\_restore{721404e9-b4cd-40e1-8dd9-5efa9bf00ac8}\rp268\a0204369.bat ( DrWEB: Win32.HLLM.Utenti, BitDefender: Win32.Traxg.C@mm, NOD32: Win32/Tenga.gen virus, AVAST4: Win32:Traxg-B [Wrm] )
Worm.Win32.AutoRun.afcb -> c:\windows\temp\331465.exe ( DrWEB: Trojan.PWS.Gamania.19081, BitDefender: Generic.Malware.SP!g.ED5BED5A, NOD32: Win32/Spy.Pophot.NAO trojan, AVAST4: Win32:AutoRun-AXT [Wrm] )
Worm.Win32.AutoRun.afcb -> c:\windows\system\ming9b090423.exe ( DrWEB: Trojan.PWS.Gamania.19081, BitDefender: Generic.Malware.SP!g.ED5BED5A, NOD32: Win32/Spy.Pophot.NAO trojan, AVAST4: Win32:AutoRun-AXT [Wrm] )