Пойманы в разделе Помогите, отчет за период 24.03.2013 - 25.03.2013
[LIST][*][thread=135882]not-a-virus:NetTool.Win32.Tor.d[/thread] -> c:\users\18ee~1\appdata\local\temp\msvdn.exe[*][thread=135882]not-a-virus:NetTool.Win32.Tor.d[/thread] -> c:\users\владимир\appdata\local\temp\msvdn.exe[*][thread=135882]not-a-virus:RiskTool.Win32.BitCoinMiner.bzj[/thread] -> c:\users\18ee~1\appdata\local\temp\svchost.exe ( DrWEB: Trojan.BtcMine.66, BitDefender: Trojan.Generic.KDV.760200, AVAST4: Win32:Malware-gen )[*][thread=135882]not-a-virus:RiskTool.Win32.BitCoinMiner.bzj[/thread] -> c:\users\владимир\appdata\local\temp\svchost.exe ( DrWEB: Trojan.BtcMine.66, BitDefender: Trojan.Generic.KDV.760200, AVAST4: Win32:Malware-gen )[*][thread=135751]not-a-virus:RiskTool.Win32.BitCoinMiner.chl[/thread] -> c:\documents and settings\user\application data\mining\coin-miner.exe ( DrWEB: Tool.BtcMine.84 )[*][thread=135885]Trojan-Ransom.Win32.Agent.hvq[/thread] -> c:\progra~2\mozilla\wbruppn.dll ( BitDefender: Gen:Variant.Kazy.157255, AVAST4: Win32:Kryptik-LHD [Trj] )[*][thread=135853]Trojan-Ransom.Win32.Agent.hvq[/thread] -> c:\progra~2\mozilla\hfewngk.dll ( BitDefender: Gen:Variant.Kazy.157255 )[*][thread=135913]Trojan-Ransom.Win32.Agent.hvr[/thread] -> c:\progra~2\mozilla\yiptqka.dll ( DrWEB: Trojan.Redirect.140, BitDefender: Trojan.Generic.KDV.909628, AVAST4: Win32:Dropper-gen [Drp] )[*][thread=135603]Trojan-Ransom.Win32.Agent.hvs[/thread] -> c:\progra~3\mozilla\wttgkrk.dll ( DrWEB: Trojan.Siggen5.1870, BitDefender: Gen:Variant.Kazy.156618 )[*][thread=135921]Trojan-Spy.Win32.Zbot.jxoh[/thread] -> c:\progra~3\mozilla\zyedegb.dll ( DrWEB: Trojan.Redirect.140, BitDefender: Trojan.Generic.KDZ.11648, AVAST4: Win32:Zbot-QSJ [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0026265.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0015246.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp32\a0011198.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0026263.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp32\a0012215.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0027264.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0025265.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0022244.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0019258.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0017245.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0016243.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0021245.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0022242.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0015244.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0014247.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0014241.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0012246.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp32\a0012213.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0024265.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0022266.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0021242.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0019261.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0018245.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0017243.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0023267.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0016245.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0025267.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0023269.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp32\a0011196.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0018243.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0022268.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0024267.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0027266.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0012248.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0013244.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135817]Trojan.Win32.Agent.havn[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0013246.exe ( DrWEB: Trojan.Siggen.64380, BitDefender: Worm.Generic.378555, AVAST4: Win32:AutoRun-CYD [Trj] )[*][thread=135751]Trojan.Win32.Agent.xgbq[/thread] -> c:\documents and settings\user\application data\mining\install2.exe ( DrWEB: Trojan.DownLoad.64647, BitDefender: Gen:Variant.Kazy.147966, AVAST4: Win32:Malware-gen )[*][thread=135921]Trojan.Win32.ShipUp.bom[/thread] -> c:\progra~3\mozilla\skncgnn.exe ( DrWEB: Trojan.Siggen5.1870, BitDefender: Trojan.Generic.KDZ.11643, AVAST4: Win32:Malware-gen )[*][thread=135886]Trojan.Win32.ShipUp.bos[/thread] -> c:\progra~3\mozilla\xnuafpa.dll[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\documents and settings\том\doctorweb\quarantine\svchost2.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\documents and settings\том\doctorweb\quarantine\svchost.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0026271.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp36\a0046354.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp34\a0012240.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\system volume information\_restore{f614e89e-76f2-424b-95ba-7ba7fe543e87}\rp35\a0027274.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\windows\svchost.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\documents and settings\том\doctorweb\quarantine\svchost1.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[*][thread=135817]Virus.Win32.Neshta.a[/thread] -> c:\documents and settings\том\doctorweb\quarantine\svchost0.com ( DrWEB: Win32.HLLP.Neshta, BitDefender: Worm.Generic.371506, NOD32: Win32/Neshta.A virus, AVAST4: Win32:Neshta )[/LIST]