Пойманы в разделе Помогите, отчет за период 17.11.2009 - 18.11.2009
[LIST][*][thread=60512]Backdoor.Win32.Agent.amxt[/thread] -> c:\windows\system32\winsrv32.exe ( DrWEB: Trojan.PWS.Banker.35398 )[*][thread=60512]Backdoor.Win32.Bifrose.btqa[/thread] -> c:\documents and settings\admin\application data\microsoft\winsvc.exe ( DrWEB: Trojan.Packed.2960, BitDefender: Backdoor.Generic.215097, AVAST4: Win32:Trojan-gen )[*][thread=60512]Backdoor.Win32.Bifrose.btqa[/thread] -> f:\winsvc.exe ( DrWEB: Trojan.Packed.2960, BitDefender: Backdoor.Generic.215097, AVAST4: Win32:Trojan-gen )[*][thread=58152]Backdoor.Win32.Bifrose.frx[/thread] -> c:\xavx\release\xavy.exe ( DrWEB: Trojan.Siggen.10016, BitDefender: Worm.Generic.96333, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:VB-NNT [Wrm] )[*][thread=60512]Backdoor.Win32.HareBot.akf[/thread] -> c:\windows\system32\photo_id.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Agent.ANWT, AVAST4: Win32:HareBot [Trj] )[*][thread=60512]Backdoor.Win32.Inject.cbh[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe ( DrWEB: Trojan.DownLoad.46114, BitDefender: Trojan.Cecapix.A, NOD32: Win32/Cecapix.NAA trojan, AVAST4: Win32:BredoLab-K [Trj] )[*][thread=60512]Backdoor.Win32.Inject.cbh[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe ( DrWEB: Trojan.DownLoad.46114, BitDefender: Trojan.Cecapix.A, NOD32: Win32/Cecapix.NAA trojan, AVAST4: Win32:BredoLab-K [Trj] )[*][thread=60449]Backdoor.Win32.Poison.aec[/thread] -> c:\windows\pi\users\galina^galya\download\666.exe ( DrWEB: BackDoor.Poison.1021, BitDefender: Trojan.Keylog.ZKT, NOD32: Win32/Poison.NAE trojan, AVAST4: Win32:Agent-ACII [Trj] )[*][thread=60449]Backdoor.Win32.Poison.aec[/thread] -> c:\windows\system32\jero.exe ( DrWEB: BackDoor.Poison.1021, BitDefender: Trojan.Keylog.ZKT, NOD32: Win32/Poison.NAE trojan, AVAST4: Win32:Agent-ACII [Trj] )[*][thread=60512]Backdoor.Win32.Zdoogu.fd[/thread] -> c:\documents and settings\admin\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11, BitDefender: Trojan.Generic.2316353, NOD32: Win32/TrojanDownloader.Bredolab.AA trojan, AVAST4: Win32:Trojan-gen )[*][thread=60512]HackTool.Win32.BruteGen.b[/thread] -> c:\documents and settings\admin\рабочий стол\[soft]\powerfulgenerator\powerful generator.exe ( DrWEB: Tool.BrutList.1, BitDefender: Trojan.Hacktool.Brutegen.B, AVAST4: Win32:Trojan-gen )[*][thread=60512]IM-Flooder.Win32.Imtale.c[/thread] -> c:\documents and settings\admin\рабочий стол\[soft]\imtalefa\imtale 4.1.2\imtale 4.1.2\imtale.exe ( DrWEB: Tool.ICQFlood, BitDefender: Trojan.Pws.Ldpinch.BFN, AVAST4: Win32:Imtale-C [Tool] )[*][thread=60418]not-a-virus:AdWare.Win32.WebHancer.f[/thread] -> c:\system volume information\_restore{9482514f-23c7-4bc0-b1fc-9e21728a7594}\rp134\a0717261.exe ( DrWEB: Adware.WebHancer.80, BitDefender: Adware.Generic.29523, NOD32: Win32/Adware.Webhancer.A application )[*][thread=60418]not-a-virus:AdWare.Win32.WebHancer.381[/thread] -> c:\system volume information\_restore{9482514f-23c7-4bc0-b1fc-9e21728a7594}\rp134\a0715240.exe ( DrWEB: Adware.WebHancer, BitDefender: Adware.Webhancer.H, NOD32: Win32/Adware.Webhancer.381 application, AVAST4: Win32:Dialer-572 [Trj] )[*][thread=60418]not-a-virus:AdWare.Win32.WebHancer.381[/thread] -> c:\system volume information\_restore{9482514f-23c7-4bc0-b1fc-9e21728a7594}\rp134\a0717262.exe ( DrWEB: Adware.WebHancer, BitDefender: Adware.Webhancer.H, NOD32: Win32/Adware.Webhancer.381 application, AVAST4: Win32:Dialer-572 [Trj] )[*][thread=60526]Packed.Win32.Krap.af[/thread] -> c:\recycler\s-1-5-21-3979475831-4222643121-879217132-0427\sysdata.exe ( DrWEB: Win32.HLLW.Lime.based.18, BitDefender: Worm.Generic.93894, NOD32: Win32/Peerfrag.DC worm, AVAST4: Win32:MalOb-U [Cryp] )[*][thread=60581]P2P-Worm.Win32.Palevo.kgl[/thread] -> c:\recycler\s-1-5-21-8695588430-6371410176-983691548-8968\mwau.exe ( DrWEB: Win32.HLLW.Lime.18, AVAST4: Win32:Malware-gen )[*][thread=60399]P2P-Worm.Win32.Palevo.khj[/thread] -> c:\recycler\s-1-5-21-5101380741-4464722920-708065355-5528\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=60544]Rootkit.Win32.Papapa.e[/thread] -> c:\documents and settings\1\doctorweb\quarantine\a0030841.sys ( DrWEB: Trojan.NtRootKit.4398, BitDefender: Gen:Rootkit.Heur.auW@tadGZ2, AVAST4: Win32:Haxdoor-KJ [Rtk] )[*][thread=60596]Trojan-Banker.Win32.Bancos.isi[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.122, BitDefender: Trojan.Packed.Hiloti.Gen.2, AVAST4: Win32:Hiloti-K [Trj] )[*][thread=60501]Trojan-Clicker.Win32.Agent.jid[/thread] -> c:\windows\system32\el32.dll ( DrWEB: Trojan.Winlock.471 )[*][thread=60544]Trojan-Downloader.Win32.Agent.cvkd[/thread] -> c:\windows\system32\chknt32.exe[*][thread=60512]Trojan-Downloader.Win32.Delf.rzn[/thread] -> c:\windows\system32\suserv.exe ( DrWEB: Win32.Induc, BitDefender: Trojan.Generic.1456869, AVAST4: Win32:Induc )[*][thread=59571]Trojan-Proxy.Win32.Agent.bub[/thread] -> c:\windows\jcdrive32.exe ( DrWEB: Trojan.Proxy.2751, BitDefender: Trojan.Generic.2658458, AVAST4: Win32:Trojan-gen )[*][thread=60512]Trojan-Proxy.Win32.Small.acj[/thread] -> c:\windows\temp\wpv491254042811.exe ( DrWEB: Trojan.Proxy.6310, BitDefender: Trojan.Proxy.MSO, NOD32: Win32/TrojanProxy.Tikayb.A trojan, AVAST4: Win32:Trojan-gen )[*][thread=60512]Trojan-PSW.Win32.LdPinch.alkx[/thread] -> c:\documents and settings\admin\рабочий стол\[soft]\xakepok.org\soft\pinch editor\pinch editor 2.99.exe ( DrWEB: VirusConstructor.LDPinch.2, BitDefender: Packer.YZPack.B, AVAST4: Win32:SuCrypt [Cryp] )[*][thread=60540]Trojan-Ransom.Win32.Agent.gn[/thread] -> c:\windows\system32\drivers\fuhnamdu.sys ( DrWEB: Trojan.Winlock.478 )[*][thread=60540]Trojan-Ransom.Win32.Agent.gn[/thread] -> c:\windows\system32\aekgoprn.dll ( DrWEB: Trojan.Winlock.478, AVAST4: Win32:Malware-gen )[*][thread=60512]Trojan-Ransom.Win32.Agent.gy[/thread] -> c:\windows\system32\aekgoprn.dll ( DrWEB: Trojan.Winlock.469, BitDefender: Gen:Trojan.Heur.Hype.cy4@aSivCpdk, AVAST4: Win32:Trojan-gen )[*][thread=60512]Trojan-Ransom.Win32.Agent.gy[/thread] -> c:\windows\aekgoprn.sys ( DrWEB: Trojan.NtRootKit.4588 )[*][thread=60418]Trojan-Ransom.Win32.Agent.gy[/thread] -> c:\windows\aekgoprn.sys ( DrWEB: Trojan.NtRootKit.4588 )[*][thread=60418]Trojan-Ransom.Win32.Agent.gy[/thread] -> c:\windows\system32\aekgoprn.dll ( DrWEB: Trojan.Winlock.469, BitDefender: Gen:Trojan.Heur.Hype.cy4@aue6Blkk )[*][thread=60568]Trojan-Ransom.Win32.Hexzone.ajj[/thread] -> c:\documents and settings\я\application data\bpfeed.dll ( DrWEB: Trojan.Browseban.based, BitDefender: Gen:Adware.Heur.am4@Dq3Bs1o )[*][thread=60544]Trojan-Spy.Win32.Goldun.dej[/thread] -> c:\windows\system32\simdpp.dll ( DrWEB: Trojan.PWS.GoldSpy.2905, BitDefender: Trojan.Generic.2631060, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=60591]Trojan.Win32.Autoit.xp[/thread] -> c:\oqiexv.exe ( DrWEB: Win32.HLLW.Autoruner.6013, BitDefender: Gen:Trojan.Heur.AutoIT.vmNfbeaEsLdc, NOD32: Win32/Tifaut.C worm, AVAST4: Win32:Agent-AEEP [Trj] )[*][thread=60591]Trojan.Win32.AutoRun.mm[/thread] -> c:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-W )[*][thread=60592]Trojan.Win32.Buzus.cnpi[/thread] -> c:\windows\system32\winagent.exe[*][thread=60399]Trojan.Win32.FraudPack.aand[/thread] -> c:\windows\mfo.exe[*][thread=60512]Trojan.Win32.Obfuscated.aisb[/thread] -> c:\documents and settings\admin\главное меню\программы\автозагрузка\sysupd32.exe ( DrWEB: Trojan.Siggen.23270, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=60581]Trojan.Win32.Obfuscated.aism[/thread] -> c:\documents and settings\павел\главное меню\программы\автозагрузка\sysupd32.exe ( DrWEB: Trojan.DownLoad1.4576 )[*][thread=60090]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=60591]Trojan.Win32.Scar.apfo[/thread] -> c:\windows\system32\7j42nyhbde\j002.exe ( DrWEB: Trojan.DownLoad.50456, BitDefender: Trojan.Rincux.AW )[*][thread=60399]Trojan.Win32.VB.ypg[/thread] -> c:\windows\system\win32dns.exe ( AVAST4: Win32:VB-NSA [Drp] )[*][thread=60506]Worm.Win32.AutoRun.anwh[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326, BitDefender: Trojan.Generic.CJ.NT, AVAST4: Win32:MalOb-I [Cryp] )[/LIST]