Пойманы в разделе Помогите, отчет за период 09.02.2010 - 10.02.2010
[LIST][*][thread=70786]Backdoor.Win32.Agent.aowb[/thread] -> c:\finamstarter\autorun.exe[*][thread=70783]Backdoor.Win32.Cetorp.ak[/thread] -> c:\documents and settings\admin\oxpy.exe ( DrWEB: BackDoor.Tofsee )[*][thread=70610]Backdoor.Win32.EggDrop.aag[/thread] -> c:\windows\system32\incognito.exe ( DrWEB: BackDoor.IRC.Bot.184 )[*][thread=70501]Backdoor.Win32.IRCBot.nma[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Lime.5, NOD32: Win32/Agent.HXW trojan, AVAST4: Win32:Refpron-AZ [Trj] )[*][thread=70697]Backdoor.Win32.Singu.aam[/thread] -> c:\drive32.dll[*][thread=37220]Net-Worm.Win32.Kido.ih[/thread] -> \zdeoch.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AA worm, AVAST4: Win32:Confi [Wrm] )[*][thread=70603]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\jyitww.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AB worm, AVAST4: Win32:Confi [Wrm] )[*][thread=70767]Net-Worm.Win32.Kolab.gck[/thread] -> c:\windows\system32\upd32.exe ( DrWEB: Trojan.DownLoad1.38137, AVAST4: Win32:Wmis [Trj] )[*][thread=70501]Net-Worm.Win32.Kolab.gck[/thread] -> c:\windows\system32\upd32.exe ( DrWEB: Trojan.DownLoad1.38137, AVAST4: Win32:Wmis [Trj] )[*][thread=70767]Net-Worm.Win32.Kolab.gck[/thread] -> c:\windows\system32\.exe ( DrWEB: Trojan.DownLoad1.38137, AVAST4: Win32:Wmis [Trj] )[*][thread=70767]Net-Worm.Win32.Kolab.gdj[/thread] -> c:\windows\system32\420.exe ( DrWEB: Trojan.DownLoad.42354, AVAST4: Win32:Injector-TD [Trj] )[*][thread=70501]Net-Worm.Win32.Kolab.gdj[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.DownLoad.42354, AVAST4: Win32:Injector-TD [Trj] )[*][thread=70767]Net-Worm.Win32.Kolab.gdj[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.DownLoad.42354, AVAST4: Win32:Injector-TD [Trj] )[*][thread=70767]Net-Worm.Win32.Kolab.gdk[/thread] -> c:\windows\jjdrive32.exe ( DrWEB: BackDoor.IRC.Bot.166, AVAST4: Win32:Injector-TD [Trj] )[*][thread=70501]Net-Worm.Win32.Kolab.gdk[/thread] -> c:\windows\jjdrive32.exe ( DrWEB: BackDoor.IRC.Bot.166, AVAST4: Win32:Injector-TD [Trj] )[*][thread=70831]not-a-virus:RemoteAdmin.Win32.RAdmin.20[/thread] -> c:\windows\system32\admdll.dll ( DrWEB: Program.RemoteAdmin.31 )[*][thread=23458]not-a-virus:RiskTool.Win32.Reboot.e[/thread] -> \reboot.exestartup ( DrWEB: Tool.Reboot )[*][thread=70328]Packed.Win32.Krap.ai[/thread] -> d:\windows\system32\userini.exe ( DrWEB: Trojan.Spambot.7492, NOD32: Win32/SpamTool.Tedroo.AG trojan, AVAST4: Win32:FakeAlert-GV [Trj] )[*][thread=70328]Packed.Win32.Krap.ai[/thread] -> d:\windows\explorer.exe:userini.exe:$data ( DrWEB: Trojan.Spambot.7492, NOD32: Win32/SpamTool.Tedroo.AG trojan, AVAST4: Win32:FakeAlert-GV [Trj] )[*][thread=70328]Packed.Win32.Krap.ai[/thread] -> d:\windows\system32\svchost.exe:ext.exe:$data ( DrWEB: Trojan.Spambot.7836, AVAST4: Win32:Riern-AC [Trj] )[*][thread=70328]Packed.Win32.Krap.ai[/thread] -> d:\documents and settings\александр\local settings\temporary internet files\content.ie5\4tg3nj7c\load[1].exe ( DrWEB: Trojan.Spambot.7492, NOD32: Win32/SpamTool.Tedroo.AG trojan, AVAST4: Win32:FakeAlert-GV [Trj] )[*][thread=70832]Packed.Win32.Krap.ar[/thread] -> c:\windows\system32\user32.exe ( DrWEB: Trojan.Winlock.179, NOD32: Win32/AutoRun.LockScreen.A worm )[*][thread=70742]Packed.Win32.Krap.ar[/thread] -> c:\windows\system32\user32.exe ( DrWEB: Trojan.Winlock.179, NOD32: Win32/AutoRun.LockScreen.A worm )[*][thread=70721]Packed.Win32.Krap.w[/thread] -> c:\windows\system32\netprotocol.dll[*][thread=70742]Packed.Win32.Krap.w[/thread] -> c:\windows\system32\netprotocol.dll[*][thread=70790]Packed.Win32.Krap.w[/thread] -> c:\windows\system32\netprotocol.dll ( DrWEB: Trojan.Packed.19647 )[*][thread=70712]Packed.Win32.Krap.w[/thread] -> c:\windows\system32\sqfdgb.dll[*][thread=70734]Packed.Win32.NSAnti.r[/thread] -> c:\windows\system32\avpo0.dll ( DrWEB: Win32.HLLW.Autoruner.437, BitDefender: Packer.Malware.NSAnti.L, AVAST4: Win32:OnLineGames-BDK [Trj] )[*][thread=70501]P2P-Worm.Win32.Palevo.pwd[/thread] -> c:\recycler\s-1-5-21-3925716030-2917065135-020434186-8530\wmfcgr.exe ( DrWEB: Win32.HLLW.Lime.8, AVAST4: Win32:Wmis [Trj] )[*][thread=70633]P2P-Worm.Win32.Palevo.qqy[/thread] -> c:\recycler\s-1-5-21-8034440564-9426730441-562315845-0347\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=70623]P2P-Worm.Win32.Palevo.qqy[/thread] -> c:\recycler\s-1-5-21-5906016021-7740718568-675461195-9187\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=70623]P2P-Worm.Win32.Palevo.qqy[/thread] -> g:\razlog\zaljubljeni.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmby[/thread] -> \\?\globalroot\systemroot\system32\qzbaqvl.exe ( DrWEB: Trojan.PWS.Ibank.23 )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmby[/thread] -> c:\windows\system32\qzbaqvl.exe ( DrWEB: Trojan.PWS.Ibank.23 )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmby[/thread] -> \\?\globalroot\systemroot\system32\t9kv6mp.exe ( DrWEB: Trojan.PWS.Ibank.23 )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmby[/thread] -> c:\windows\system32\t9kv6mp.exe ( DrWEB: Trojan.PWS.Ibank.23 )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmcm[/thread] -> c:\windows\system32\nffieqa.exe ( DrWEB: Trojan.PWS.Ibank.22, NOD32: Win32/Spy.Shiz.NAE trojan )[*][thread=70803]Trojan-Dropper.Win32.Agent.bmcm[/thread] -> \\?\globalroot\systemroot\system32\nffieqa.exe ( DrWEB: Trojan.PWS.Ibank.22, NOD32: Win32/Spy.Shiz.NAE trojan )[*][thread=70790]Trojan-Spy.Win32.Hascha.cf[/thread] -> c:\windows\system32\overlapp32.dll ( DrWEB: Trojan.PWS.Banker.41337 )[*][thread=70652]Trojan-Spy.Win32.Zbot.aeho[/thread] -> c:\windows\system32\sdra64.exe ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=70790]Trojan-Spy.Win32.Zbot.aeln[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.Packed.19647, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=70501]Trojan.Win32.Dialer.vrw[/thread] -> c:\windows\system32\umdmgr.exe ( DrWEB: Trojan.DownLoad.35732, AVAST4: Win32:Wmis [Trj] )[*][thread=70658]Trojan.Win32.Fregee.ae[/thread] -> c:\windows\system32\rwkv.buo ( DrWEB: Trojan.Siggen.59877 )[*][thread=70803]Trojan.Win32.Fregee.af[/thread] -> c:\windows\system32\cagj.mmo ( DrWEB: Trojan.Siggen.60820, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=70603]Trojan.Win32.Koblu.cbg[/thread] -> c:\windows\system32\5766,871.exe ( DrWEB: Trojan.Bfkq.200 )[*][thread=70603]Trojan.Win32.Pasmu.hd[/thread] -> c:\windows\temp\gtk2.tmp ( DrWEB: BackDoor.Gootkit.2, BitDefender: Trojan.PWS.Agent.AD, AVAST4: Win32:Malware-gen )[*][thread=70658]Trojan.Win32.Qhost.mna[/thread] -> \\?\globalroot\systemroot\system32\wfj2rg9.exe ( DrWEB: Trojan.MulDrop.64623, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=70658]Trojan.Win32.Qhost.mna[/thread] -> \\?\globalroot\systemroot\system32\v9pm6gz.exe ( DrWEB: Trojan.MulDrop.64623, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=70783]Trojan.Win32.Refroso.aodd[/thread] -> c:\windows\system32\wiacmfgr.exe ( DrWEB: BackDoor.IRC.Bot.217, BitDefender: Trojan.Agent.AOOA, AVAST4: Win32:Crypt-FVB [Trj] )[*][thread=70658]Trojan.Win32.SpyEyes.b[/thread] -> c:\cleansweep.exe\cleansweep.exe[*][thread=70603]Virus.Win32.Virut.ce[/thread] -> \avz.exe ( DrWEB: Win32.Virut.56, BitDefender: Win32.Virtob.Gen.12, NOD32: Win32/Virut.NBP virus, AVAST4: Win32:JunkPoly [Cryp] )[*][thread=70734]Worm.Win32.AutoRun.aox[/thread] -> c:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.437, BitDefender: Win32.Worm.Autoruner.CD, NOD32: Win32/PSW.Agent.NDP trojan, AVAST4: VBS:Malware-gen )[/LIST]