Пойманы в разделе Помогите, отчет за период 25.07.2010 - 26.07.2010
[LIST][*][thread=83667]Backdoor.Win32.Bredolab.fyw[/thread] -> d:\documents and settings\user\главное меню\программы\автозагрузка\wwwznv32.exe ( BitDefender: Gen:Variant.Ursnif.19, AVAST4: Win32:Crypt-GYK [Drp] )[*][thread=83861]Backdoor.Win32.Bredolab.gfo[/thread] -> c:\windows\system32\zahyzos.exe ( BitDefender: Gen:Variant.Bredo.2, AVAST4: Win32:Bredolab-DM [Trj] )[*][thread=83861]Backdoor.Win32.Bredolab.gfo[/thread] -> c:\windows\system32\foofoum.exe ( BitDefender: Gen:Variant.Bredo.2, AVAST4: Win32:Bredolab-DM [Trj] )[*][thread=83884]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\b73c2821.exe ( DrWEB: Trojan.MulDrop.64715 )[*][thread=83647]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\tnbsjnc.exe ( NOD32: Win32/Spy.Shiz.NBG trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83884]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\d3696d6e.exe ( DrWEB: Trojan.Siggen2.52, AVAST4: Win32:Malware-gen )[*][thread=83562]Backdoor.Win32.Shiz.gen[/thread] -> d:\windows\system32\ywracop.exe ( DrWEB: Trojan.PWS.Ibank.62, AVAST4: Win32:Malware-gen )[*][thread=83647]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\hszzcde.exe ( NOD32: Win32/Spy.Shiz.NBG trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83872]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\ffzloz.exe ( DrWEB: Trojan.PWS.Ibank.71 )[*][thread=83508]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\c69f781a.exe ( DrWEB: Trojan.Packed.20579, AVAST4: Win32:Malware-gen )[*][thread=83872]Backdoor.Win32.Shiz.gen[/thread] -> c:\windows\system32\42688d1f.exe ( DrWEB: Trojan.MulDrop.64715, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83821]Backdoor.Win32.Shiz.ne[/thread] -> c:\windows\system32\7b1995d3.exe ( NOD32: Win32/Spy.Shiz.NAI trojan, AVAST4: Win32:Spyware-gen [Spy] )[*][thread=83837]Backdoor.Win32.Shiz.ng[/thread] -> c:\windows\system32\3ff6ec90.exe ( DrWEB: Trojan.Packed.20608, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp580\a0385030.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\windows\system32\f01233203k.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\windows\system32\f01231281k.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp580\a0385031.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp580\a0385029.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83844]Backdoor.Win32.Torr.emb[/thread] -> c:\windows\system32\f00034812k.cmd ( DrWEB: BackDoor.Bull.origin, BitDefender: Trojan.Generic.4536718, AVAST4: Win32:Yonsole [Trj] )[*][thread=83861]Email-Worm.Win32.Iksmas.htj[/thread] -> c:\documents and settings\admin\application data\yjty.exe ( DrWEB: Win32.HLLW.Autoruner.22584, BitDefender: Trojan.Generic.4539190, AVAST4: Win32:Bredolab-DL [Trj] )[*][thread=83861]Email-Worm.Win32.Joleee.fbv[/thread] -> c:\windows\explorer.exe:userini.exe:$data ( DrWEB: Trojan.Spambot.6788, BitDefender: Gen:Variant.Bredo.2, AVAST4: Win32:Bredolab-DM [Trj] )[*][thread=83861]Email-Worm.Win32.Joleee.fbv[/thread] -> c:\windows\system32\userini.exe ( DrWEB: Trojan.Spambot.6788, BitDefender: Gen:Variant.Bredo.2, AVAST4: Win32:Bredolab-DM [Trj] )[*][thread=83844]HEUR:Trojan-Downloader.Win32.Generic[/thread] -> c:\windows\system32\regedit32.exe ( BitDefender: Trojan.Agent.AQGH, AVAST4: Win32:Patched-HN [Trj] )[*][thread=83844]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\system32\panp.exe ( DrWEB: DDoS.Attack.287, BitDefender: Trojan.Generic.4475637, AVAST4: Win32:Rincux-D [Trj] )[*][thread=83844]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\x ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Trojan.Generic.3059547, NOD32: Win32/Conficker.AE worm, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83836]not-a-virus:RiskTool.Win32.HideWindows[/thread] -> c:\windows\system32\cmdow.exe[*][thread=77034]Packed.Win32.Klone.bj[/thread] -> \npdqtw.exe ( DrWEB: archive: archive: Win32.HLLW.Autoruner.based, BitDefender: Gen:Trojan.Heur.AutoIT.CmNfbunkHYfm, AVAST4: Win32:Crypt-FER [Trj] )[*][thread=83815]Packed.Win32.Krap.ao[/thread] -> c:\documents and settings\администратор\главное меню\программы\автозагрузка\wwwznv32.exe[*][thread=83858]Packed.Win32.Krap.ar[/thread] -> c:\documents and settings\starozhilov._dominion_\главное меню\программы\автозагрузка\wwwzuc32.exe ( BitDefender: Gen:Variant.Koobface.1, NOD32: Win32/TrojanDownloader.Bredolab.BE trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=83861]P2P-Worm.Win32.Palevo.ardy[/thread] -> g:\znoje\misejaja.exe ( DrWEB: Trojan.Packed.20312, BitDefender: Gen:Heur.Krypt.24, AVAST4: Win32:MalOb-AI [Cryp] )[*][thread=83858]Rootkit.Win32.Agent.bier[/thread] -> c:\windows\system32\drivers\uvmiy.sys ( DrWEB: Trojan.NtRootKit.9374, BitDefender: Trojan.Agent.AQCT, NOD32: Win32/Agent.RKL trojan, AVAST4: Win32:Malware-gen )[*][thread=83815]Rootkit.Win32.Agent.bier[/thread] -> c:\windows\system32\drivers\yxbng.sys ( DrWEB: Trojan.NtRootKit.9374, BitDefender: Trojan.Agent.AQCT, NOD32: Win32/Agent.RKL trojan, AVAST4: Win32:Malware-gen )[*][thread=83844]Trojan-Downloader.Win32.Agent.ebrf[/thread] -> c:\windows\system32\acpi24.ocx ( DrWEB: DDoS.5691, BitDefender: Trojan.Generic.4542290, AVAST4: Win32:Malware-gen )[*][thread=83844]Trojan-Downloader.Win32.Agent.ebrf[/thread] -> c:\windows\system32\acpi24.dll ( DrWEB: DDoS.5691, BitDefender: Trojan.Generic.4542290, AVAST4: Win32:Malware-gen )[*][thread=83821]Trojan.Win32.Jorik.Bredolab.cc[/thread] -> c:\documents and settings\пользователь\главное меню\программы\автозагрузка\wwwznv32.exe ( DrWEB: Trojan.DownLoad2.13818, BitDefender: Gen:Variant.Ursnif.19, AVAST4: Win32:Crypt-GYS [Drp] )[*][thread=83667]Trojan.Win32.Jorik.Shiz.by[/thread] -> d:\windows\system32\txppyy.exe ( DrWEB: Trojan.PWS.Ibank.64, AVAST4: Win32:Malware-gen )[*][thread=83667]Trojan.Win32.Jorik.Shiz.bz[/thread] -> d:\windows\system32\af065e32.exe ( DrWEB: Trojan.Siggen2.15 )[*][thread=83821]Trojan.Win32.Jorik.Shiz.ca[/thread] -> c:\windows\system32\ropcwp.exe ( DrWEB: Trojan.PWS.Ibank.66 )[*][thread=83837]Trojan.Win32.Jorik.Shiz.ce[/thread] -> c:\windows\system32\gfxuei.exe ( DrWEB: Trojan.PWS.Ibank.60 )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\windows\system32\imgmmy.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0375968.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0371070.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0374995.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0370787.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp574\a0381243.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp573\a0379648.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0370945.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0378274.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0376931.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0371068.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp573\a0380858.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0377105.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0371957.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp580\a0385005.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0378631.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp573\a0380556.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0373960.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0369786.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\documents and settings\localservice\local settings\temporary internet files\content.ie5\4bifc58z\1[1].exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp573\a0381150.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\recycler\s-1-5-21-1233906315-3719163146-447957633-1003\dc1025\1[1].exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83844]Trojan.Win32.Scar.clqk[/thread] -> c:\system volume information\_restore{c3724799-7407-4c30-83fb-23649762e6dd}\rp572\a0373046.exe ( DrWEB: Trojan.DownLoader1.10439, BitDefender: Trojan.Rincux.AW, AVAST4: Win32:ServStart-B [Trj] )[*][thread=83838]Virus.Win32.Protector.f[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: BackDoor.Bulknet.417, BitDefender: Rootkit.Kobcka.Patched.Gen, NOD32: Win32/Protector.B virus, AVAST4: Win32:Malware-gen )[*][thread=83854]Virus.Win32.Sality.aa[/thread] -> c:\ip messenger\ipmsg.exe ( DrWEB: Win32.Sector.9, BitDefender: Win32.Sality.OG, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Sality )[/LIST]