Пойманы в разделе Помогите, отчет за период 30.09.2009 - 01.10.2009
[LIST][*][thread=55925]Backdoor.Win32.Agent.alkz[/thread] -> c:\windows\system32\sajuyaya.dll ( DrWEB: Trojan.Virtumod.1798, BitDefender: Trojan.Vundo.GPL )[*][thread=56092]Backdoor.Win32.Bifrose.atsn[/thread] -> c:\bin\recycle\bin.exe ( DrWEB: Trojan.KeyLogger.2331, BitDefender: Backdoor.Generic.172882, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:VB-LXM [Drp] )[*][thread=56097]Backdoor.Win32.DeAlfa.dc[/thread] -> c:\windows\system32\riodrv.exe ( DrWEB: Trojan.PWS.Banker.29027, BitDefender: Trojan.Generic.2331513, AVAST4: Win32:Induc )[*][thread=56108]Backdoor.Win32.HareBot.pi[/thread] -> c:\windows\system32\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Packed.Hiloti.Gen.2, NOD32: Win32/Wigon.LX trojan )[*][thread=56108]Backdoor.Win32.HareBot.pi[/thread] -> c:\documents and settings\anton\restorer32_a.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Packed.Hiloti.Gen.2, NOD32: Win32/Wigon.LX trojan )[*][thread=56066]Backdoor.Win32.Kbot.xo[/thread] -> c:\windows\system32\vhosts.exe ( DrWEB: BackDoor.Dax.47 )[*][thread=55925]Backdoor.Win32.Kbot.yb[/thread] -> c:\windows\system32\mssrv32.exe ( DrWEB: Trojan.DownLoad.34654, AVAST4: Win32:MalOb-T [Cryp] )[*][thread=55608]Backdoor.Win32.Popwin.coo[/thread] -> c:\windows\fonts\cb4bdb90.dll ( DrWEB: Trojan.Popwin.1212, BitDefender: Win32.Worm.Winko.I )[*][thread=56088]Backdoor.Win32.SdBot.pce[/thread] -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Worm.Generic.90765 )[*][thread=56042]Backdoor.Win32.SdBot.pce[/thread] -> d:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Worm.Generic.90765 )[*][thread=56114]Backdoor.Win32.SdBot.pce[/thread] -> c:\windows\system32\iexplore.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Backdoor.Bot.107224 )[*][thread=55925]not-a-virus:AdWare.Win32.Virtumonde.bcse[/thread] -> c:\windows\system32\tuvskifx.dll ( DrWEB: Trojan.Virtumod.441, BitDefender: Trojan.Vundo.FBT, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=55925]not-a-virus:AdWare.Win32.Virtumonde.bcsf[/thread] -> c:\windows\system32\yofivowi.dll ( DrWEB: Trojan.Virtumod.1662, BitDefender: Trojan.Generic.2440665, AVAST4: Win32:MalOb-L [Cryp] )[*][thread=56043]not-a-virus:WebToolbar.Win32.BitAccelerator.o[/thread] -> d:\program files\bitaccelerator\bitaccelerator.exe ( DrWEB: Adware.BitAcc.12, BitDefender: Adware.Accelerator.R )[*][thread=56093]Packed.Win32.Klone.bj[/thread] -> e:\mhgpec.exe ( DrWEB: Win32.HLLW.Autohit.9990, BitDefender: Gen:Trojan.Heur.AutoIT.AmNfbmqND6ak, AVAST4: Win32:Trojan-gen {Other} )[*][thread=56044]Packed.Win32.Krap.x[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326, BitDefender: Application.Generic.232556, AVAST4: Win32:Preald-AR [Drp] )[*][thread=56044]Packed.Win32.Krap.x[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, NOD32: Win32/Spy.Webmoner.NBN trojan )[*][thread=55945]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\drivers\gasfkyrqxsmkpy.sys ( DrWEB: BackDoor.Tdss.based.1 )[*][thread=55935]P2P-Worm.Win32.Palevo.ddm[/thread] -> c:\recycler\s-1-5-21-4998092894-5428533242-277254326-8593\wingn.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Win32.Worm.P2P.VCE, NOD32: Win32/Peerfrag.AW worm, AVAST4: Win32:SillyFDC-O [Wrm] )[*][thread=55925]Rootkit.Win32.HareBot.ay[/thread] -> c:\windows\system32\drivers\ksi32sk.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Agent.AMZV, NOD32: Win32/TrojanDownloader.Wigon.BS trojan )[*][thread=55925]Rootkit.Win32.HareBot.ay[/thread] -> c:\windows\system32\drivers\netsik.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Agent.AMZV, NOD32: Win32/TrojanDownloader.Wigon.BS trojan )[*][thread=55415]Rootkit.Win32.Zybr.x[/thread] -> c:\windows\system32\drivers\cdmtn.sys ( DrWEB: Trojan.RKDoor.56, BitDefender: Gen:Rootkit.Heur.bqW@hGFSIPb, NOD32: Win32/Koutodoor.EH trojan, AVAST4: Win32:RtkDL [Rtk] )[*][thread=55415]Trojan-Downloader.Win32.Agent.cqel[/thread] -> c:\windows\system32\blbrunsrv.dll ( DrWEB: Trojan.DownLoad.47520, NOD32: Win32/TrojanDownloader.Troxen.AB trojan )[*][thread=37678]Trojan-Downloader.Win32.FraudLoad.fse[/thread] -> k:\vir\new\lizkavd.bak ( BitDefender: Gen:Packed.FakeAV.3 )[*][thread=56108]Trojan-Downloader.Win32.FraudLoad.wsvt[/thread] -> c:\documents and settings\anton\application data\seres.exe ( DrWEB: Trojan.Fakealert.5269, BitDefender: Trojan.FakeAlert.BNS, NOD32: Win32/TrojanDownloader.FakeAlert.AJT trojan )[*][thread=56108]Trojan-Downloader.Win32.FraudLoad.wsvt[/thread] -> c:\documents and settings\anton\application data\svcst.exe ( DrWEB: Trojan.Fakealert.5269, BitDefender: Trojan.FakeAlert.BNS, NOD32: Win32/TrojanDownloader.FakeAlert.AJT trojan )[*][thread=55925]Trojan-Downloader.Win32.Injecter.ddh[/thread] -> c:\documents and settings\user\appdata\local\temp\tmp6d9d.tmp ( DrWEB: Trojan.DownLoad.40282, BitDefender: Trojan.Agent.ANCE, NOD32: Win32/TrojanDownloader.Agent.NXY trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=55925]Trojan-Downloader.Win32.Mutant.fkf[/thread] -> c:\windows\system32\config\systemprofile\systemprofile.exe ( DrWEB: Trojan.DownLoad.38937, BitDefender: Trojan.Generic.2096480, AVAST4: Win32:Kobcka-M [Trj] )[*][thread=55935]Trojan-Downloader.Win32.Pher.air[/thread] -> c:\recycler\s-1-5-21-2308934576-3077459333-523345477-9435\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2498427, AVAST4: Win32:Inject-UZ [Trj] )[*][thread=56086]Trojan-Downloader.Win32.Pher.apx[/thread] -> c:\windows\system32\drivers\zlbt.exe ( DrWEB: BackDoor.IRC.Bot.142, NOD32: Win32/AutoRun.IRCBot.CZ worm )[*][thread=55311]Trojan-Downloader.Win32.Pher.aqd[/thread] -> c:\windows\system32\drivers\dcin.exe ( DrWEB: BackDoor.IRC.Bot.142, NOD32: Win32/IRCBot trojan )[*][thread=55935]Trojan-Downloader.Win32.Pher.yf[/thread] -> c:\windows\ntdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2497311 )[*][thread=55935]Trojan-Downloader.Win32.VB.rrm[/thread] -> c:\windows\system32\msvgr.exe.exe ( DrWEB: Trojan.DownLoad.42298, BitDefender: Packer.Malware.LDPinch.A, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan-Dropper.Win32.Agent.bemr[/thread] -> c:\windows\system32\umdmgr.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Worm.Generic.83261 )[*][thread=55840]Trojan-GameThief.Win32.Magania.cdzo[/thread] -> c:\mranjm.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Worm.Generic.90328, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:OnLineGames-FNO [Trj] )[*][thread=55840]Trojan-GameThief.Win32.Magania.cdzo[/thread] -> c:\windows\temp\herss.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Worm.Generic.90328, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:OnLineGames-FNO [Trj] )[*][thread=55840]Trojan-GameThief.Win32.Magania.cecs[/thread] -> c:\windows\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.13208, BitDefender: Trojan.Generic.2481119, NOD32: Win32/PSW.OnLineGames.ODJ trojan )[*][thread=55925]Trojan-PSW.Win32.WOW.bil[/thread] -> c:\windows\system32\drivers\amd64si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )[*][thread=55925]Trojan-PSW.Win32.WOW.bil[/thread] -> c:\windows\system32\drivers\systemntmi.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )[*][thread=55925]Trojan-PSW.Win32.WOW.bil[/thread] -> c:\windows\system32\drivers\ws2_32sik.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )[*][thread=55925]Trojan-PSW.Win32.WOW.bil[/thread] -> c:\windows\system32\drivers\ati64si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )[*][thread=55925]Trojan-PSW.Win32.WOW.bil[/thread] -> c:\windows\system32\drivers\i386si.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Generic.2095985 )[*][thread=56096]Trojan-Ransom.Win32.SMSer.mc[/thread] -> c:\windows\ctfmon.exe ( DrWEB: Trojan.Winlock.302 )[*][thread=56035]Trojan-Ransom.Win32.VB.az[/thread] -> c:\windows\cmon.exe ( DrWEB: Trojan.Winlock.294, NOD32: Win32/LockScreen.BP trojan )[*][thread=56096]Trojan-Ransom.Win32.VB.ba[/thread] -> c:\windows\cmon.exe ( DrWEB: Trojan.Fakealert.5241 )[*][thread=56058]Trojan-Spy.Win32.Zbot.abgv[/thread] -> c:\windows\system32\twex.exe ( BitDefender: Backdoor.Bot.105877 )[*][thread=56053]Trojan.Win32.Autoit.xp[/thread] -> c:\documents and settings\all users\документы\hhylxc.exe ( DrWEB: Win32.HLLW.Autoruner.6013, BitDefender: Gen:Trojan.Heur.AutoIT.vmNfbeaEsLdc, AVAST4: Win32:Agent-AEEP [Trj] )[*][thread=56096]Trojan.Win32.Buzus.cbvq[/thread] -> c:\windows\iexplorer72.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90758, NOD32: Win32/AutoRun.IRCBot.CY worm )[*][thread=56114]Trojan.Win32.Crypt.bgj[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Downloader.Zlob.ACWN )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\285.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\746.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\217.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90196, NOD32: Win32/Agent.HXW trojan, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\425.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\345.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\184.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1859\ls888.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\recycler\s-1-5-21-448539723-688789844-725345543-1003\dc1\ls888.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=55935]Trojan.Win32.Delf.owo[/thread] -> c:\documents and settings\максим\local settings\temp\051.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Worm.Generic.90347, AVAST4: Win32:Trojan-gen )[*][thread=56058]Trojan.Win32.Delf.pba[/thread] -> c:\windows\system32\pdaycb.dll ( DrWEB: Trojan.Kor )[*][thread=55925]Trojan.Win32.Inject.afix[/thread] -> c:\windows\system32\drivers\fips32cup.sys ( DrWEB: Trojan.DownLoad.38180 )[*][thread=56097]Trojan.Win32.Inject.ajnh[/thread] -> c:\windows\system32\wbem\svchost.exe ( DrWEB: Trojan.Annoy.23 )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\vtukklme.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\hgvsmfxn.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\wvunmdec.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\mljdwxrs.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\khffvpiy.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\hggawxno.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\xxyxvnge.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=55925]Trojan.Win32.Monderb.bdja[/thread] -> c:\documents and settings\user\appdata\local\temp\ssqpifff.dll ( DrWEB: Trojan.Virtumod.based.18, BitDefender: Trojan.Vundo.FAT, NOD32: Win32/Adware.Virtumonde application, AVAST4: Win32:Vundo-DJ [Trj] )[*][thread=56114]Trojan.Win32.Refroso.kqt[/thread] -> c:\windows\system32\winpsvc.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Trojan.Generic.2499251, NOD32: Win32/Agent.QDP trojan )[*][thread=55935]Trojan.Win32.Refroso.lav[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.Proxy.2751, BitDefender: Trojan.Generic.2495120 )[*][thread=55608]Trojan.Win32.Scar.xvz[/thread] -> c:\windows\system32\x9h805q4o4\j002.exe ( DrWEB: Trojan.Siggen.4962, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=55608]Trojan.Win32.Semki.fp[/thread] -> c:\windows\fonts\323af35a.exe ( DrWEB: Trojan.MulDrop.35530, BitDefender: Win32.Worm.Winko.I, NOD32: Win32/Popwin.NCH trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=55925]Trojan.Win32.Stuh.acqp[/thread] -> c:\windows\system32\wotohisa.dll ( BitDefender: Trojan.Vundo.GPI, AVAST4: Win32:Vuku [Trj] )[*][thread=56092]Trojan.Win32.VBKrypt.z[/thread] -> c:\jim\carry\jim.exe ( DrWEB: Trojan.Inject.1041, BitDefender: Worm.Generic.91031, NOD32: Win32/AutoRun.KS worm )[*][thread=56092]Trojan.Win32.VBKrypt.z[/thread] -> c:\windows\fonts\i2w5f8w2v7l9.exe ( DrWEB: Trojan.Inject.1041, BitDefender: Worm.Generic.91031, NOD32: Win32/AutoRun.KS worm )[*][thread=55925]Worm.Win32.AutoRun.axgx[/thread] -> c:\windows\system32\twex.exe ( DrWEB: Trojan.PWS.Panda.117, BitDefender: Backdoor.Bot.100845, NOD32: Win32/Spy.Zbot.RK trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=55840]Worm.Win32.AutoRun.gvw[/thread] -> c:\autorun.inf ( NOD32: Win32/PSW.OnLineGames.NNU trojan )[*][thread=56093]Worm.Win32.AutoRun.gwa[/thread] -> e:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-AA [Wrm] )[*][thread=55969]Worm.Win32.Pinit.gen[/thread] -> c:\windows\system32\ntos.exe ( DrWEB: Trojan.PWS.Panda.9, BitDefender: Trojan.Generic.1808753, AVAST4: Win32:Zbot-BDA [Trj] )[*][thread=55608]Worm.Win32.Runfer.cxi[/thread] -> c:\windows\system32\odbccu32.exe ( BitDefender: Gen:Trojan.Heur.xiW@r1rp7qfay, AVAST4: Win32:Trojan-gen {Other} )[*][thread=55999]Worm.Win32.VBKrypt.c[/thread] -> c:\dub\wonk\tux.exe ( DrWEB: Win32.HLLW.Autoruner.7162 )[/LIST]