Пойманы в разделе Помогите, отчет за период 19.11.2009 - 20.11.2009
[LIST][*][thread=60773]Backdoor.Win32.Knokk.ca[/thread] -> c:\windows\system32\msmgr.exe[*][thread=60775]Backdoor.Win32.Oderoor.e[/thread] -> c:\documents and settings\администратор\application data\microsoft\gujyvuj.exe ( DrWEB: BackDoor.Siggen.3452, BitDefender: Trojan.Generic.2688670, AVAST4: Win32:Meslice [Trj] )[*][thread=60775]Backdoor.Win32.Oderoor.e[/thread] -> c:\documents and settings\администратор\application data\microsoft\wetawot.exe ( DrWEB: BackDoor.Siggen.3452, BitDefender: Trojan.Generic.2688670, AVAST4: Win32:Meslice [Trj] )[*][thread=60726]Backdoor.Win32.Poison.baeo[/thread] -> c:\windows\dn.exe[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\153.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\104.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\577.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\575.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\591.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\406.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\199.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\953.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\899.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\454.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]Backdoor.Win32.SdBot.pyq[/thread] -> c:\documents and settings\администратор\local settings\temp\441.exe ( DrWEB: BackDoor.Siggen.637, BitDefender: Backdoor.Bot.108536, AVAST4: Win32:Injector-SE [Trj] )[*][thread=37678]HackTool.Win32.BruteForce.az[/thread] -> c:\temp\quarantine\vkonretriver.exe ( DrWEB: Tool.Vkpass.1, BitDefender: Trojan.Generic.2666111 )[*][thread=60711]Net-Worm.Win32.Kolab.fap[/thread] -> c:\windows\msdrv32.exe ( DrWEB: BackDoor.IRC.Bot.157, BitDefender: DeepScan:Generic.Malware.SI!P!XBPk!Tkprn.7EE17641, AVAST4: Win32:Rimecud-E [Wrm] )[*][thread=60726]Net-Worm.Win32.Kolab.fbu[/thread] -> c:\windows\dn.exe ( DrWEB: BackDoor.Tdss.1133, AVAST4: Win32:VB-NSA [Drp] )[*][thread=60726]Net-Worm.Win32.Kolab.fbu[/thread] -> c:\windows\system32\dn.exe ( DrWEB: BackDoor.Tdss.1133, AVAST4: Win32:VB-NSA [Drp] )[*][thread=60725]Net-Worm.Win32.Koobface.cln[/thread] -> c:\windows\system32\fio32.dll ( BitDefender: Worm.Generic.99534, NOD32: Win32/Tinxy.AJ trojan, AVAST4: Win32:Malware-gen )[*][thread=60682]not-a-virus:AdWare.Win32.Zwangi.heur[/thread] -> c:\system volume information\_restore{7930c26e-8b1d-45b2-b24d-651a56f25df5}\rp50\a0045030.dll ( DrWEB: Adware.Seekser.1, BitDefender: Gen:Adware.Heur.Ku4@2uT4jgii )[*][thread=60711]Packed.Win32.Krap.x[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Spambot.3531, BitDefender: Trojan.Generic.2703719, AVAST4: Win32:Crypt-FKB [Trj] )[*][thread=60689]Packed.Win32.Krap.x[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Spambot.3531, BitDefender: Trojan.Generic.2703719, AVAST4: Win32:Crypt-FKB [Trj] )[*][thread=60779]P2P-Worm.Win32.Palevo.juv[/thread] -> c:\documents and settings\oemuser\local settings\temporary internet files\content.ie5\mc5u1crv\up2[1].exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Trojan.Generic.2646708, NOD32: Win32/Peerfrag.DR worm, AVAST4: Win32:Refroso-D [Trj] )[*][thread=60779]P2P-Worm.Win32.Palevo.juv[/thread] -> c:\documents and settings\oemuser\local settings\temporary internet files\content.ie5\mc5u1crv\up2[2].exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Trojan.Generic.2646708, NOD32: Win32/Peerfrag.DR worm, AVAST4: Win32:Refroso-D [Trj] )[*][thread=60773]P2P-Worm.Win32.Palevo.kal[/thread] -> c:\recycler\s-1-5-21-4826628158-6089952111-796886696-8506\msmxeng.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2527981, NOD32: Win32/Peerfrag.DO worm, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]P2P-Worm.Win32.Palevo.kbw[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1859\ls888.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2674900, AVAST4: Win32:Buzus-AEI [Trj] )[*][thread=60689]P2P-Worm.Win32.Palevo.kbw[/thread] -> c:\documents and settings\синхрофазатрон\local settings\temporary internet files\content.ie5\i1wrs50p\nup[2].exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2640153, AVAST4: Win32:Buzus-AEI [Trj] )[*][thread=60689]P2P-Worm.Win32.Palevo.kbw[/thread] -> c:\system volume information\_restore{19931b02-dc4d-44b7-9f16-287cbd67860c}\rp1\a0000069.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2640153, AVAST4: Win32:Buzus-AEI [Trj] )[*][thread=60779]P2P-Worm.Win32.Palevo.kch[/thread] -> c:\recycler\s-1-5-21-4200198991-0208354222-682921334-2022\osversion.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2628088, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60779]P2P-Worm.Win32.Palevo.kch[/thread] -> e:\recyclemgr\autorun.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2628088, AVAST4: Win32:Injector-SE [Trj] )[*][thread=60725]Rootkit.Win32.Agent.wqv[/thread] -> c:\windows\system32\drivers\fio32.sys ( BitDefender: Rootkit.Koobface.B, NOD32: Win32/Tinxy.AP trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=60753]Trojan-Clicker.Win32.Agent.jik[/thread] -> c:\windows\system32\el32.dll[*][thread=60773]Trojan-PSW.Win32.WebMoner.ml[/thread] -> c:\windows\system32\msvcrt57.dll[*][thread=60041]Trojan.Win32.Agent.dbeo[/thread] -> c:\windows\system32\abmsepav.dll ( BitDefender: Gen:Trojan.Heur.PT.hq4abqHeI0b, AVAST4: Win32:MailBot-AQ [Tool] )[*][thread=60685]Trojan.Win32.Agent2.clyg[/thread] -> c:\windows\system32\uhwif.dll ( DrWEB: Trojan.Fakealert.7610, BitDefender: Gen:Trojan.Heur.iu4@ybj39Imah )[*][thread=60308]Trojan.Win32.Agent2.clyg[/thread] -> c:\windows\system32\piueg.dll ( DrWEB: Trojan.Fakealert.7610, BitDefender: Gen:Trojan.Heur.iu4@ybj39Imah )[*][thread=60725]Trojan.Win32.Assist.ais[/thread] -> c:\windows\ld15.exe ( DrWEB: Win32.HLLW.Facebook.358, BitDefender: Win32.Worm.Koobface.AMN, AVAST4: Win32:Trojan-gen )[*][thread=60779]Trojan.Win32.Buzus.conk[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.DownLoad.41920, BitDefender: MemScan:Adware.BrowseIT.A, AVAST4: Win32:Rimecud-E [Wrm] )[*][thread=60773]Trojan.Win32.Buzus.cpiq[/thread] -> c:\windows\system32\winagent.exe ( BitDefender: Trojan.Dropper.Delf.Crypt.C )[*][thread=60775]Trojan.Win32.Buzus.cplh[/thread] -> c:\docume~1\9335~1\locals~1\temp\rtmp.exe ( DrWEB: Trojan.DownLoad1.2056, AVAST4: Win32:Trojan-gen )[*][thread=37678]Trojan.Win32.Genome.acmx[/thread] -> c:\users\lev (админастратор)\desktop\cshackpack1\nkhack\nk hack.exe ( BitDefender: Trojan.Generic.211116, AVAST4: Win32:Trojan-gen )[*][thread=37678]Trojan.Win32.Inject.aliv[/thread] -> c:\новая папка\video31mb.exe ( DrWEB: Trojan.PWS.Multi.35 )[*][thread=60753]Trojan.Win32.Inject.alrt[/thread] -> c:\windows\system32\syschk32.exe[*][thread=60539]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\51.scr ( DrWEB: Trojan.Inject.7326 )[*][thread=60676]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\drivers\bsxbt.exe ( DrWEB: Trojan.Inject.7326, BitDefender: Trojan.Generic.2709827, AVAST4: Win32:Trojan-gen )[*][thread=60539]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\14.scr ( DrWEB: Trojan.Inject.7326 )[*][thread=60539]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\46.scr ( DrWEB: Trojan.Inject.7326 )[*][thread=60720]Trojan.Win32.Kreeper.ey[/thread] -> c:\documents and settings\я\doctorweb\quarantine\a0047172.exe ( DrWEB: Trojan.Siggen.15832, BitDefender: Backdoor.Bot.108728, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Malware-gen )[*][thread=60720]Trojan.Win32.Kreeper.ey[/thread] -> c:\documents and settings\я\doctorweb\quarantine\a0047166.exe ( DrWEB: Trojan.Siggen.15832, BitDefender: Backdoor.Bot.108728, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Malware-gen )[*][thread=60720]Trojan.Win32.Kreeper.ey[/thread] -> c:\documents and settings\я\doctorweb\quarantine\a0047253.exe ( DrWEB: Trojan.Siggen.15832, BitDefender: Backdoor.Bot.108728, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Malware-gen )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\06.scr ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\62.scr ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\drivers\cztf.exe ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\53.scr ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\12.scr ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60539]Trojan.Win32.Kreeper.vc[/thread] -> c:\windows\system32\33.scr ( DrWEB: Dialer.Zonect, BitDefender: Trojan.Generic.2672956, AVAST4: Win32:Dialer-gen [Dialer] )[*][thread=60090]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=60689]Trojan.Win32.Sasfis.tqv[/thread] -> c:\windows\system32\svchost.exe:ext.exe:$data ( BitDefender: Trojan.Sasfis.B, AVAST4: Win32:Inject-VX [Trj] )[*][thread=60689]Trojan.Win32.Sasfis.tqv[/thread] -> c:\system volume information\_restore{19931b02-dc4d-44b7-9f16-287cbd67860c}\rp1\a0000771.exe:ext.exe:$data ( BitDefender: Trojan.Sasfis.B, AVAST4: Win32:Inject-VX [Trj] )[*][thread=60733]Trojan.Win32.Sasfis.vjl[/thread] -> c:\windows\system32\smss\build.exe ( DrWEB: Trojan.PWS.Multi.76, BitDefender: Trojan.Generic.2369970 )[*][thread=60725]Trojan.Win32.Scar.apra[/thread] -> c:\windows\pp12.exe[*][thread=60688]Worm.Win32.Bezopi.tl[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=60773]Worm.Win32.Bezopi.ts[/thread] -> c:\program files\microsoft common\svchost.exe[/LIST]