Пойманы в разделе Помогите, отчет за период 22.10.2009 - 23.10.2009
[LIST][*][thread=58053]Backdoor.Win32.Bredavi.aos[/thread] -> c:\windows\system32\cpcp.cpo ( BitDefender: Trojan.Agent.ANTI )[*][thread=58002]Backdoor.Win32.Bredolab.agl[/thread] -> d:\documents and settings\kam\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11, BitDefender: Trojan.Bredolab.L, AVAST4: Win32:MalOb-AA [Cryp] )[*][thread=58036]Backdoor.Win32.Chyopic.x[/thread] -> c:\windows\feafvxx.exe ( DrWEB: BackDoor.ClDdos.5, AVAST4: Win32:Trojan-gen )[*][thread=58002]Backdoor.Win32.Delf.qqz[/thread] -> d:\program files\internet explorer\rasadhlp.dll ( DrWEB: BackDoor.Siggen.964, BitDefender: Trojan.Generic.2515590, NOD32: Win32/Agent.QDE trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=58002]Backdoor.Win32.Delf.qqz[/thread] -> d:\documents and settings\kam\local settings\temp\f46kh.htm ( DrWEB: BackDoor.Siggen.964, BitDefender: Trojan.Generic.2515590, NOD32: Win32/Agent.QDE trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=58002]Backdoor.Win32.Delf.qqz[/thread] -> d:\documents and settings\kam\local settings\temp\hdi25.htm ( DrWEB: BackDoor.Siggen.964, BitDefender: Trojan.Generic.2515590, NOD32: Win32/Agent.QDE trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=58002]Backdoor.Win32.Delf.qqz[/thread] -> d:\windows\temp\i8rgi.htm ( DrWEB: BackDoor.Siggen.964, BitDefender: Trojan.Generic.2515590, NOD32: Win32/Agent.QDE trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=58036]Backdoor.Win32.Nbdd.bi[/thread] -> c:\windows\system32\rmmrtmc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: MemScan:Trojan.Agent.ANCD, AVAST4: Win32:PcClient-ZE [Trj] )[*][thread=58036]Backdoor.Win32.SdBot.pqv[/thread] -> c:\windows\system32\advancelink\smss.exe ( DrWEB: Trojan.DownLoad.50462 )[*][thread=58058]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\system32\ntfs_ext7.exe ( DrWEB: Trojan.KeyLogger.3871 )[*][thread=57999]not-a-virus:Client-IRC.Win32.mIRC.612[/thread] -> c:\program files\pirc\pirc.exe ( DrWEB: Program.mIRC.612 )[*][thread=58030]not-a-virus:NetTool.Win32.Calc-DNet.i[/thread] -> d:\program files\common files\system\dnet\dnetc.exe ( DrWEB: Trojan.Distnet )[*][thread=57999]not-a-virus:RiskTool.Win32.PsKill.x[/thread] -> c:\program files\total commander\utils\processkiller\prkiller.exe ( DrWEB: Tool.ProcessKill.19, AVAST4: Win32:Trojan-gen )[*][thread=58020]Packed.Win32.Krap.af[/thread] -> c:\recycler\s-1-5-21-1380099067-5645055969-263397979-9689\nissan.exe ( DrWEB: Win32.HLLW.Lime.based.18, AVAST4: Win32:MalOb-U [Cryp] )[*][thread=57993]Trojan-Banker.Win32.Bancos.hqh[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171 )[*][thread=58036]Trojan-Downloader.Win32.Agent.csnn[/thread] -> c:\windows\system32\agerunsrv.dll ( DrWEB: Trojan.DownLoad.55495 )[*][thread=58094]Trojan-Downloader.Win32.Banload.akvu[/thread] -> c:\program files\prdftj\cgorsysguard.exe[*][thread=57990]Trojan-Downloader.Win32.Hegeny.al[/thread] -> c:\documents and settings\admin\local settings\temp\12a.tmp ( DrWEB: Trojan.PWS.Banker.30376 )[*][thread=58036]Trojan-Dropper.Win32.Agent.baqr[/thread] -> c:\windows\system32\cnzyk.exe ( DrWEB: Trojan.DownLoad.55496, BitDefender: Trojan.Crypt.EL, AVAST4: Win32:Rincux-C [Trj] )[*][thread=57918]Trojan-Dropper.Win32.Agent.bgfs[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58035]Trojan-Dropper.Win32.Agent.bgfs[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58053]Trojan-Dropper.Win32.Agent.bgfs[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=56430]Trojan-Dropper.Win32.Decay.cim[/thread] -> c:\windows.0\system32\nssm.exe[*][thread=58036]Trojan-Dropper.Win32.Decay.cim[/thread] -> c:\windows\system32\nssm.exe[*][thread=58002]Trojan-Proxy.Win32.Small.aci[/thread] -> d:\windows\temp\wpv901253405734.exe ( DrWEB: Trojan.Proxy.6207, BitDefender: Gen:Trojan.Heur.Hype.cy0@aaUwfAhi, NOD32: Win32/TrojanProxy.Tikayb.A trojan, AVAST4: Win32:Trojan-gen )[*][thread=58011]Trojan-Ransom.Win32.Agent.gd[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58002]Trojan-Ransom.Win32.Agent.gd[/thread] -> d:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=57987]Trojan-Ransom.Win32.Agent.gd[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58002]Trojan-Ransom.Win32.Agent.gd[/thread] -> d:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58048]Trojan-Ransom.Win32.Agent.gd[/thread] -> d:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58044]Trojan-Ransom.Win32.Agent.gd[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58011]Trojan-Ransom.Win32.Agent.gd[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58044]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58075]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58048]Trojan-Ransom.Win32.Agent.ge[/thread] -> d:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58084]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=57987]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58038]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58027]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=57965]Trojan-Ransom.Win32.Agent.ge[/thread] -> h:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58081]Trojan-Ransom.Win32.Agent.ge[/thread] -> c:\windows\dmgr134.sys ( DrWEB: Trojan.Winlock.366 )[*][thread=58084]Trojan-Ransom.Win32.Agent.gf[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58038]Trojan-Ransom.Win32.Agent.gf[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=57965]Trojan-Ransom.Win32.Agent.gf[/thread] -> h:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58075]Trojan-Ransom.Win32.Agent.gf[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58081]Trojan-Ransom.Win32.Agent.gf[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58027]Trojan-Ransom.Win32.Agent.gf[/thread] -> c:\windows\system32\{991f0ad1-da5d-4dc3-b0ba-f46ba0f1d3cb}.dll ( DrWEB: Trojan.Winlock.366, AVAST4: Win32:Trojan-gen )[*][thread=58002]Trojan-Spy.Win32.Agent.bbar[/thread] -> d:\windows\system32\jvmod32.dll ( DrWEB: Trojan.Upload.40, BitDefender: Trojan.Generic.2482822, NOD32: Win32/Spy.Delf.NYG trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=58002]Trojan-Spy.Win32.BZub.hnk[/thread] -> d:\windows\system32\chknt32.exe ( BitDefender: Trojan.Crypt.IU, AVAST4: Win32:Fasec [Trj] )[*][thread=58004]Trojan-Spy.Win32.BZub.hnl[/thread] -> c:\windows\system32\chknt32.exe ( BitDefender: Trojan.Crypt.IU, AVAST4: Win32:Fasec [Trj] )[*][thread=57990]Trojan-Spy.Win32.KeyLogger.crn[/thread] -> c:\program files\microsoft sql server\sqlsrv.exe[*][thread=58002]Trojan-Spy.Win32.Zbot.gen[/thread] -> d:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, BitDefender: Trojan.Generic.2475748, AVAST4: Win32:Zbot-LZU [Trj] )[*][thread=58045]Trojan.Win32.Agent.aec[/thread] -> c:\windows\system32\soundmix.exe ( DrWEB: Trojan.Clive, BitDefender: Trojan.Generic.195808, NOD32: Win32/Agent.AEC trojan, AVAST4: Win32:Agent-EMS [Trj] )[*][thread=58036]Trojan.Win32.Agent.czsa[/thread] -> c:\windows\system32\spool\drivers\systempro.exe ( DrWEB: Trojan.Proxy.5869, BitDefender: Trojan.Agent.ANCD, AVAST4: Win32:Dogrobot [Drp] )[*][thread=58094]Trojan.Win32.Agent2.cjya[/thread] -> c:\windows\system32\lsp.dll ( DrWEB: Trojan.Siggen.9595, BitDefender: Application.Generic.248984 )[*][thread=58059]Trojan.Win32.Buzus.ciww[/thread] -> c:\windows\system32\83.scr ( DrWEB: Dialer.Siggen.121, BitDefender: Rootkit.28111, NOD32: Win32/AutoRun.IRCBot.DI worm, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=58059]Trojan.Win32.Buzus.ciww[/thread] -> c:\windows\system32\drivers\bsrbt.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Rootkit.28111, NOD32: Win32/AutoRun.IRCBot.DI worm, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=58059]Trojan.Win32.Buzus.ciww[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\pwb8xa2p\r[1].exe ( DrWEB: Dialer.Siggen.121, BitDefender: Rootkit.28111, NOD32: Win32/AutoRun.IRCBot.DI worm, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\51.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\48.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\12.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\00.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\72.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\41.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\50.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\18.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\02.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\85.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\77.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\43.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\28.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\55.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\windows\system32\47.scr ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=57841]Trojan.Win32.Buzus.cizr[/thread] -> d:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\2c27gw98\20[1].exe ( DrWEB: Dialer.Siggen.121, AVAST4: Win32:Trojan-gen )[*][thread=37678]Trojan.Win32.FraudPack.xfd[/thread] -> \paragon.total.defrag.2009.45064.exe ( DrWEB: Trojan.Siggen.5467 )[*][thread=58080]Trojan.Win32.Pincav.hxi[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe ( DrWEB: Trojan.DownLoad.55181 )[*][thread=58080]Trojan.Win32.Pincav.hxi[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe ( DrWEB: Trojan.DownLoad.55181 )[*][thread=57975]Trojan.Win32.Pincav.hxi[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe ( DrWEB: Trojan.DownLoad.55181 )[*][thread=57975]Trojan.Win32.Pincav.hxi[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe ( DrWEB: Trojan.DownLoad.55181 )[*][thread=57999]Trojan.Win32.Pincav.hxo[/thread] -> c:\f1\x1\trx.exe ( DrWEB: Trojan.MulDrop.37550 )[*][thread=58036]Trojan.Win32.Scar.aeqf[/thread] -> c:\windows\system32\yfdsba.exe ( DrWEB: DDoS.Attack.230, BitDefender: Trojan.Agent.ANCD, AVAST4: Win32:Dogrobot [Drp] )[*][thread=57990]Trojan.Win32.Scar.afen[/thread] -> \\?\globalroot\systemroot\system32\ntfs_ext7.exe[*][thread=58036]Trojan.Win32.Scar.afsa[/thread] -> c:\windows\system32\lbuz3vuafk\j001.exe ( DrWEB: Trojan.DownLoad.50456, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:Malware-gen )[*][thread=58036]Trojan.Win32.Scar.afsb[/thread] -> c:\windows\system32\lbuz3vuafk\e001.exe ( DrWEB: Trojan.DownLoad.50456, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:Malware-gen )[*][thread=58026]Trojan.Win32.Scar.afug[/thread] -> c:\windows\system32\ntfs_ext7.exe[/LIST]