Пойманы в разделе Помогите, отчет за период 23.11.2009 - 24.11.2009
[LIST][*][thread=61116]Backdoor.Win32.Agent.andj[/thread] -> c:\docume~1\alluse~1\drm\hvhfa.dll ( DrWEB: BackDoor.Siggen.3787, BitDefender: Backdoor.Generic.228493 )[*][thread=60954]Backdoor.Win32.Agent.andj[/thread] -> c:\progra~2\drm\ojbvp.dll ( DrWEB: BackDoor.Siggen.3787, BitDefender: Backdoor.Generic.228493 )[*][thread=61046]Backdoor.Win32.Bredavi.asm[/thread] -> c:\windows\system32\loqk.pso ( DrWEB: Trojan.DownLoad1.11049, AVAST4: Win32:Oficla-D [Trj] )[*][thread=61038]Backdoor.Win32.Bredavi.ast[/thread] -> \\?\globalroot\systemroot\system32\ntfs_ext7.exe ( DrWEB: Trojan.Inject.6510, AVAST4: Win32:Malware-gen )[*][thread=61038]Backdoor.Win32.Bredavi.asy[/thread] -> c:\documents and settings\1\local settings\temp\28.tmp ( DrWEB: Trojan.PWS.Banker.30376 )[*][thread=61083]Backdoor.Win32.Bredavi.azz[/thread] -> c:\windows\system32\hypc.xyo ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=61039]Backdoor.Win32.Bredolab.bcf[/thread] -> c:\documents and settings\armanio\главное меню\программы\автозагрузка\sysupd32.exe[*][thread=60959]Backdoor.Win32.HareBot.akj[/thread] -> c:\windows\system32\photo_id.exe[*][thread=61164]Backdoor.Win32.HareBot.akn[/thread] -> c:\windows\system32\photo_id.exe[*][thread=61164]Backdoor.Win32.IEbooot.ers[/thread] -> c:\windows\system32\drivers\ethqyfnz.sys ( AVAST4: Win32:Sloup [Rtk] )[*][thread=61044]Backdoor.Win32.IRCBot.lav[/thread] -> d:\windows\system32\08.scr ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2092100, NOD32: Win32/IRCBot.AMC trojan, AVAST4: Win32:Inject-SW [Trj] )[*][thread=61044]Backdoor.Win32.IRCBot.lav[/thread] -> d:\windows\system\dllcache.exe ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2092100, NOD32: Win32/IRCBot.AMC trojan, AVAST4: Win32:Inject-SW [Trj] )[*][thread=61056]Backdoor.Win32.SdBot.mvg[/thread] -> c:\windows\system32\drivers\jqs.exe ( DrWEB: BackDoor.IRC.Sdbot.4891, BitDefender: Backdoor.IrcBot.ACSR, NOD32: Win32/AutoRun.IRCBot.AP worm, AVAST4: Win32:Trojan-gen )[*][thread=61164]Email-Worm.Win32.Gibon.de[/thread] -> c:\windows\system32\wininet.exe ( AVAST4: Win32:Zbot-MHI [Trj] )[*][thread=61113]Net-Worm.Win32.Kido.ir[/thread] -> f:\autorun.inf ( DrWEB: Win32.HLLW.Shadow, BitDefender: Worm.Autorun.VHG, AVAST4: BV:AutoRun-S [Wrm] )[*][thread=61182]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438, BitDefender: Gen:Trojan.Heur.AutoIT.Sq3@bq3ewzpO )[*][thread=61140]P2P-Worm.Win32.Palevo.kot[/thread] -> c:\recycler\s-1-5-21-6874854738-8206433949-223410086-0985\windll.exe ( AVAST4: Win32:Malware-gen )[*][thread=61063]Rootkit.Win32.Agent.wrc[/thread] -> c:\windows\system32\drivers\cquqyoidpp.sys ( BitDefender: Rootkit.Agent.AIZT, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=61161]Trojan-Banker.Win32.Bancos.ina[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.195, NOD32: Win32/Spy.Zbot.UN trojan, AVAST4: Win32:Zbot-MHI [Trj] )[*][thread=61083]Trojan-Banker.Win32.Bancos.izg[/thread] -> c:\windows\system32\sdra64.exe[*][thread=61164]Trojan-Banker.Win32.Bancos.jan[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.122, AVAST4: Win32:Zbot-MHI [Trj] )[*][thread=60959]Trojan-Downloader.Win32.Agent.cvkd[/thread] -> c:\windows\system32\chknt32.exe ( DrWEB: Trojan.PWS.Webmonier.178 )[*][thread=61116]Trojan-Downloader.Win32.Agent.cvux[/thread] -> c:\windows\system32\did\lsass.exe[*][thread=61038]Trojan-Downloader.Win32.Hegeny.ar[/thread] -> c:\documents and settings\1\local settings\temp\16.tmp ( DrWEB: Trojan.PWS.Banker.30376, NOD32: Win32/TrojanDownloader.Agent.PNM trojan, AVAST4: Win32:Malware-gen )[*][thread=61164]Trojan-Downloader.Win32.Murlo.dbq[/thread] -> c:\windows\system32\svshost.dll ( DrWEB: Trojan.MulDrop.31145, NOD32: Win32/Agent.OVD trojan, AVAST4: Win32:Small-CHC [Trj] )[*][thread=61106]Trojan-Dropper.Win32.Small.edb[/thread] -> c:\documents and settings\sbarteneva\главное меню\программы\автозагрузка\sysupd32.exe ( DrWEB: Trojan.DownLoad1.4576, AVAST4: Win32:Small-NDA [Trj] )[*][thread=60959]Trojan-Dropper.Win32.Small.edb[/thread] -> c:\documents and settings\user\главное меню\программы\автозагрузка\sysupd32.exe ( DrWEB: Trojan.DownLoad1.4576, AVAST4: Win32:Small-NDA [Trj] )[*][thread=61066]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\8onbforn.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61106]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\nhvvotja.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61045]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\wweenmms.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61007]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\siimbjah.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61013]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\khiiaovu.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61112]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\tvashrrv.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61060]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\raxznyxb.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61142]Trojan-Ransom.Win32.Agent.ha[/thread] -> c:\windows\system32\drivers\swsewtbr.sys ( DrWEB: Trojan.DownLoad1.11635, BitDefender: Trojan.Generic.2737881, AVAST4: Win32:Malware-gen )[*][thread=61103]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\yasxvvsm.sys ( DrWEB: Trojan.Winlock.495 )[*][thread=61158]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\jsrfmett.sys ( DrWEB: Trojan.Winlock.495 )[*][thread=61113]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\mijhajib.sys ( DrWEB: Trojan.Winlock.495 )[*][thread=60989]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\osomuoyv.sys ( DrWEB: Trojan.Winlock.495 )[*][thread=61147]Trojan-Ransom.Win32.Agent.hc[/thread] -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.493 )[*][thread=60984]Trojan-Ransom.Win32.Agent.hc[/thread] -> c:\windows\system32\drivers\nobbevox.sys ( DrWEB: Trojan.Winlock.493 )[*][thread=61078]Trojan-Ransom.Win32.Agent.hd[/thread] -> c:\windows\system32\drivers\evoemiig.sys ( DrWEB: Trojan.Winlock.493 )[*][thread=61046]Trojan-Spy.Win32.Shiz.ad[/thread] -> \\?\globalroot\systemroot\system32\ntfs_ext7.exe[*][thread=61096]Trojan-Spy.Win32.Shiz.ae[/thread] -> \\?\globalroot\systemroot\system32\ntfs_ext7.exe[*][thread=61164]Trojan-Spy.Win32.Zbot.addb[/thread] -> c:\windows\system32\twex.exe ( DrWEB: Trojan.PWS.Panda.117 )[*][thread=61182]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\crosr.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61136]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\pwymg.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61164]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\smvkq.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61116]Trojan.Win32.Agent.dcpc[/thread] -> c:\docume~1\admin\locals~1\temp\183954.exe ( BitDefender: DeepScan:Generic.Malware.P!Pk!.1651ABE5 )[*][thread=61056]Trojan.Win32.AutoRun.my[/thread] -> g:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun.gen trojan, AVAST4: BV:AutoRun-AB [Wrm] )[*][thread=61136]Trojan.Win32.AutoRun.nh[/thread] -> h:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=61154]Trojan.Win32.AutoRun.ni[/thread] -> f:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun.gen trojan, AVAST4: BV:AutoRun-AB [Wrm] )[*][thread=61083]Trojan.Win32.Delf.rtp[/thread] -> c:\windows\system32\overlapp32.dll ( AVAST4: Win32:Malware-gen )[*][thread=61038]Trojan.Win32.Inject.alaa[/thread] -> c:\system volume information\_restore{9179ca73-d856-4402-8010-335ab8b12835}\rp350\a0044584.exe ( DrWEB: Trojan.Siggen.433, BitDefender: Trojan.Generic.2619874, AVAST4: Win32:Malware-gen )[*][thread=61038]Trojan.Win32.Inject.albk[/thread] -> c:\system volume information\_restore{9179ca73-d856-4402-8010-335ab8b12835}\rp354\a0045852.exe ( DrWEB: Trojan.DownLoad.60592, BitDefender: Trojan.Generic.2667819, AVAST4: Win32:Malware-gen )[*][thread=61038]Trojan.Win32.Inject.albk[/thread] -> c:\documents and settings\localservice\local settings\temporary internet files\content.ie5\s44sylz8\n-bss[1].exe ( DrWEB: Trojan.DownLoad.60592, BitDefender: Trojan.Generic.2667819, AVAST4: Win32:Malware-gen )[*][thread=61038]Trojan.Win32.Inject.albl[/thread] -> c:\system volume information\_restore{9179ca73-d856-4402-8010-335ab8b12835}\rp353\a0044751.exe ( DrWEB: Trojan.Inject.6510, AVAST4: Win32:Malware-gen )[*][thread=61038]Trojan.Win32.Inject.aldh[/thread] -> c:\system volume information\_restore{9179ca73-d856-4402-8010-335ab8b12835}\rp357\a0047406.exe ( DrWEB: Trojan.Inject.6510, AVAST4: Win32:Malware-gen )[*][thread=61069]Trojan.Win32.Inject.alsg[/thread] -> c:\windows\system32\chknt32.exe[*][thread=61004]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\drivers\bsxbt.exe ( DrWEB: Trojan.Inject.7326, BitDefender: Trojan.Generic.2709827, AVAST4: Win32:Trojan-gen )[*][thread=61056]Trojan.Win32.Kreeper.ajd[/thread] -> c:\windows\system32\drivers\bsxbt.exe ( DrWEB: Trojan.Inject.7326, BitDefender: Trojan.Generic.2709827, AVAST4: Win32:Trojan-gen )[*][thread=61164]Trojan.Win32.VB.ytj[/thread] -> c:\windows\system\svchost.exe[/LIST]