Пойманы в разделе Помогите, отчет за период 26.11.2009 - 27.11.2009
[LIST][*][thread=61360]Backdoor.Win32.Bredolab.bcj[/thread] -> c:\users\катя\appdata\roaming\microsoft\windows\start menu\programs\startup\nntsys32.exe ( DrWEB: Trojan.Botnetlog.11, AVAST4: Win32:Malware-gen )[*][thread=61452]Backdoor.Win32.Emegrab.e[/thread] -> c:\docume~1\9335~1\locals~1\temp\bn72.tmp ( DrWEB: BackDoor.Siggen.3862, BitDefender: Trojan.Generic.2717295, AVAST4: Win32:Agent-PTI [Trj] )[*][thread=61452]Backdoor.Win32.Emegrab.e[/thread] -> c:\docume~1\9335~1\locals~1\temp\bn6f.tmp ( DrWEB: BackDoor.Siggen.3862, BitDefender: Trojan.Generic.2717295, AVAST4: Win32:Agent-PTI [Trj] )[*][thread=61452]Backdoor.Win32.HareBot.aln[/thread] -> c:\windows\system32\av_md.exe ( DrWEB: Trojan.Inject.7433 )[*][thread=61491]Backdoor.Win32.SdBot.kcw[/thread] -> c:\windows\system32\ansix.exe ( BitDefender: Trojan.Crypt.AO, AVAST4: Win32:Trojan-gen )[*][thread=61337]Net-Worm.Win32.Kolab.eqc[/thread] -> c:\windows\system32\nssm.exe ( DrWEB: Win32.HLLW.MyBot, BitDefender: Worm.Generic.98209, AVAST4: Win32:Malware-gen )[*][thread=61344]not-a-virus:AdWare.Win32.AdSubscribe.aqg[/thread] -> \book_4842.exe ( DrWEB: Adware.FieryAds.29 )[*][thread=61527]P2P-Worm.Win32.Palevo.kgl[/thread] -> c:\recycler\s-1-5-21-1404600920-0955937230-788189113-1433\mwau.exe ( DrWEB: Trojan.Packed.688, AVAST4: Win32:Malware-gen )[*][thread=61422]Trojan-Banker.Win32.Bancos.ifk[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, BitDefender: Trojan.Generic.2759530, NOD32: Win32/Spy.Zbot.UN trojan, AVAST4: Win32:Zbot-MHI [Trj] )[*][thread=61170]Trojan-Banker.Win32.Bancos.iwm[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.193, BitDefender: Backdoor.Bot.109550, NOD32: Win32/Spy.Zbot.UN trojan, AVAST4: Win32:Malware-gen )[*][thread=37678]Trojan.BAT.Qhost.hj[/thread] -> c:\temp\quarantine\vkmaster.bat[*][thread=60954]Trojan-Downloader.Win32.FraudLoad.wwhv[/thread] -> c:\windows\system32\iipc\a023.exe ( BitDefender: Trojan.Generic.2778243, AVAST4: Win32:Malware-gen )[*][thread=61498]Trojan-Downloader.Win32.VB.bnp[/thread] -> \.scr ( DrWEB: Win32.HLLW.Kati, BitDefender: Trojan.Downloader.VB.VKV, NOD32: Win32/VB.NNJ worm, AVAST4: Win32:Trojan-gen )[*][thread=61444]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.495, NOD32: Win32/Sirefef.A trojan )[*][thread=61419]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\rzmacygb.sys ( DrWEB: Trojan.Winlock.495, NOD32: Win32/Sirefef.A trojan )[*][thread=61442]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.495, NOD32: Win32/Sirefef.A trojan )[*][thread=61440]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.495, NOD32: Win32/Sirefef.A trojan )[*][thread=61360]Trojan-Ransom.Win32.Agent.hb[/thread] -> c:\windows\system32\drivers\eeeeeeea.sys ( DrWEB: Trojan.Winlock.495, NOD32: Win32/Sirefef.A trojan )[*][thread=61479]Trojan-Ransom.Win32.Agent.hi[/thread] -> c:\windows\system32\el32.dll[*][thread=61479]Trojan-Ransom.Win32.Agent.hi[/thread] -> c:\windows\system32\syschk32.exe[*][thread=61419]Trojan-Spy.Win32.BZub.hqc[/thread] -> c:\windows\system32\chknt32.exe[*][thread=61445]Trojan-Spy.Win32.BZub.hqc[/thread] -> c:\windows\system32\chknt32.exe[*][thread=61459]Trojan-Spy.Win32.Zbot.addj[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171 )[*][thread=61467]Trojan-Spy.Win32.Zbot.addm[/thread] -> c:\documents and settings\андрей\application data\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, BitDefender: Trojan.Generic.CJ.AFDC, NOD32: Win32/Spy.Zbot.UN trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=61467]Trojan-Spy.Win32.Zbot.addm[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171, BitDefender: Trojan.Generic.CJ.AFDC, NOD32: Win32/Spy.Zbot.UN trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=61170]Trojan-Spy.Win32.Zbot.adds[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171 )[*][thread=37678]Trojan.VBS.Flood.b[/thread] -> c:\temp\quarantine\down.exe ( DrWEB: Trojan.AVKill.843, BitDefender: Trojan.Generic.2450358 )[*][thread=61457]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\etwua.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61428]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\djkvm.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61418]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\ohczq.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61478]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\temp\bexyy.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61471]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\fjowp.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61282]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\wlgac.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61431]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\hrcpt.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61478]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\ruuma.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61405]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\ryeyc.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61441]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\ipyiy.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61391]Trojan.Win32.Agent.dcou[/thread] -> c:\windows\system32\xhxuj.dll ( DrWEB: BackDoor.Siggen.3863, NOD32: Win32/Agent.QJR trojan )[*][thread=61451]Trojan.Win32.Agent.dcvk[/thread] -> c:\windows\system32\urwh.djo[*][thread=61428]Trojan.Win32.AutoRun.ny[/thread] -> f:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=61471]Trojan.Win32.AutoRun.oc[/thread] -> f:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=61459]Trojan.Win32.AutoRun.oc[/thread] -> e:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=61424]Trojan.Win32.AutoRun.oc[/thread] -> i:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=61452]Trojan.Win32.Buzus.cqbm[/thread] -> c:\windows\msdrv32.exe ( DrWEB: BackDoor.IRC.Bot.157, BitDefender: Trojan.Generic.2766051, NOD32: IRC/SdBot trojan, AVAST4: Win32:Trojan-gen )[*][thread=61451]Trojan.Win32.Buzus.cqrb[/thread] -> c:\windows\mshost.exe ( DrWEB: Trojan.Inject.7431, AVAST4: Win32:Malware-gen )[*][thread=61451]Trojan.Win32.Buzus.cqrb[/thread] -> c:\windows\system32\ms.exe ( DrWEB: Trojan.Inject.7431, AVAST4: Win32:Malware-gen )[*][thread=61405]Trojan.Win32.Delf.rvm[/thread] -> c:\windows\system32\overlapp32.dll ( DrWEB: Trojan.KeyLogger.4260, AVAST4: Win32:Malware-gen )[*][thread=61428]Trojan.Win32.Delf.rvn[/thread] -> c:\windows\system32\overlapp32.dll ( DrWEB: Trojan.KeyLogger.4260, AVAST4: Win32:Malware-gen )[*][thread=61422]Trojan.Win32.Delf.rvo[/thread] -> c:\windows\system32\overlapp32.dll ( DrWEB: Trojan.KeyLogger.4260, AVAST4: Win32:Malware-gen )[*][thread=61441]Trojan.Win32.Delf.rvx[/thread] -> c:\windows\system32\overlapp32.dll ( DrWEB: Trojan.KeyLogger.4260, BitDefender: Trojan.Generic.2775233, AVAST4: Win32:Malware-gen )[*][thread=61491]Trojan.Win32.Delf.rvy[/thread] -> c:\docume~1\user\locals~1\temp\rb.dll ( DrWEB: Trojan.Winlock.499, NOD32: Win32/Agent.QJZ trojan, AVAST4: Win32:Malware-gen )[*][thread=61410]Trojan.Win32.FraudPack.ablx[/thread] -> c:\documents and settings\discovery\local settings\application data\djmljd\yjmjsysguard.exe[*][thread=61452]Trojan.Win32.Inject.alsl[/thread] -> c:\documents and settings\администратор\photo_id.exe ( DrWEB: Trojan.Inject.7422 )[*][thread=61452]Trojan.Win32.Inject.alsl[/thread] -> c:\windows\system32\photo_id.exe ( DrWEB: Trojan.Inject.7422 )[*][thread=61430]Trojan.Win32.Kreeper.aph[/thread] -> c:\windows\system32\drivers\bsybt.exe ( DrWEB: Trojan.Packed.16550, BitDefender: Trojan.Generic.2790013, AVAST4: Win32:Malware-gen )[*][thread=61422]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=61405]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=61340]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=61457]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=61441]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( AVAST4: Win32:Patched-KP [Trj] )[*][thread=61496]Trojan.Win32.Pincav.lfe[/thread] -> c:\algeria\failed\die.exe ( DrWEB: Win32.HLLW.Autoruner.6713, BitDefender: Trojan.Generic.2738099, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Trojan-gen )[*][thread=37678]Trojan.Win32.Refroso.uqt[/thread] -> c:\temp\quarantine\pin.exe ( DrWEB: BackDoor.Poison.767, BitDefender: Trojan.Generic.2335320, NOD32: Win32/AutoRun.IRCBot.BG worm, AVAST4: Win32:Refroso-B [Drp] )[*][thread=60954]Trojan.Win32.Swisyn.qqy[/thread] -> c:\windows\system32\iipc\c025.exe[*][thread=37678]Trojan.Win32.Vaklik.gmx[/thread] -> c:\temp\quarantine\loadon.exe ( BitDefender: Gen:Trojan.Heur.VB.fm3@eOenLoN, AVAST4: Win32:Malware-gen )[*][thread=37678]Worm.BAT.Autorun.fb[/thread] -> c:\temp\quarantine\vkfr.bat[/LIST]