кстати помимо того что комп тормозит + ко всему на virusinfo с него не пускает,вот логи:
Printable View
кстати помимо того что комп тормозит + ко всему на virusinfo с него не пускает,вот логи:
[B][COLOR="red"]Отключите восстановление системы![/COLOR][/B]
Пофиксите в HiJackThis
[CODE]R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\userinit.exe[/CODE]
Если не знаете, что это
[CODE]R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy:3128[/CODE]
то тоже фиксите.
В AVZ - файл - Выполнить скрипт.
[CODE]begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\WINDOWS\system32\FB0B58\2FA6B4.EXE','');
QuarantineFile('C:\RECYCLER\S-1-5-21-8231559135-3859192486-600806165-9779\sysdate.exe','');
QuarantineFile('C:\WINDOWS\system32\wincab.sys','');
QuarantineFile('C:\WINDOWS\system32\amvo0.dll','');
TerminateProcessByName('c:\windows\system32\60828f\zz4dd3002.exe');
QuarantineFile('c:\windows\system32\60828f\zz4dd3002.exe','');
TerminateProcessByName('c:\windows\userinit.exe');
QuarantineFile('c:\windows\userinit.exe','');
TerminateProcessByName('c:\windows\system32\system.exe');
QuarantineFile('c:\windows\system32\system.exe','');
TerminateProcessByName('C:\WINDOWS\system32\System.exe');
QuarantineFile('C:\WINDOWS\system32\System.exe','');
TerminateProcessByName('c:\windows\system32\60828f\su932a17.exe');
QuarantineFile('c:\windows\system32\60828f\su932a17.exe','');
TerminateProcessByName('c:\windows\system32\fb0b58\2fa6b4.exe');
QuarantineFile('c:\windows\system32\fb0b58\2fa6b4.exe','');
DeleteFile('c:\windows\system32\fb0b58\2fa6b4.exe');
DeleteFile('c:\windows\system32\60828f\su932a17.exe');
DeleteFile('C:\WINDOWS\system32\System.exe');
DeleteFile('c:\windows\system32\system.exe');
DeleteFile('c:\windows\userinit.exe');
DeleteFile('c:\windows\system32\60828f\zz4dd3002.exe');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\dp1.fne');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\eAPI.fne');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\HtmlView.fne');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\internet.fne');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\krnln.fnr');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\shell.fne');
DeleteFile('C:\DOCUME~1\909A~1\LOCALS~1\Temp\E_N4\spec.fne');
DeleteFile('C:\WINDOWS\system32\60828F\dp1.fne');
DeleteFile('C:\WINDOWS\system32\60828F\eAPI.fne');
DeleteFile('C:\WINDOWS\system32\60828F\krnln.fnr');
DeleteFile('C:\WINDOWS\system32\amvo0.dll');
DeleteFile('C:\WINDOWS\system32\wincab.sys');
DeleteFileMask('C:\WINDOWS\system32\FB0B58\', '*.*', true);
DeleteFileMask('C:\WINDOWS\system32\60828F\', '*.*', true);
DeleteFile('C:\WINDOWS\system32\sgnfzen.dll');
DeleteFile('C:\RECYCLER\S-1-5-21-8231559135-3859192486-600806165-9779\sysdate.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE',' Software\Microsoft\Windows NT\CurrentVersion\Winlogon',' Taskman');
DeleteFile('C:\WINDOWS\system32\FB0B58\2FA6B4.EXE');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','2FA6B4');
DeleteFile('C:\System Volume Information\_restore{0F895CB8-075C-4A60-AF29-F6EDDA027A16}\RP176\A0290275.bat');
DeleteFile('C:\System Volume Information\_restore{0F895CB8-075C-4A60-AF29-F6EDDA027A16}\RP196\A0299709.bat');
DeleteFile('E:\autorun.inf');
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.[/CODE]
Пришлите карантин, как написано в правилах по ссылке [B][COLOR="Red"]Прислать запрошенный карантин[/COLOR][/B].
Выполните ВСЁ, что написано тут [URL="http://support.kaspersky.ru/wks6mp3/error?qid=208636215"]http://support.kaspersky.ru/wks6mp3/error?qid=208636215[/URL]. Если не можете, то Скачать [URL="http://www.microsoft.com/rus/technet/security/bulletin/MS08-067.mspx"]1[/URL], [URL="http://www.microsoft.com/rus/technet/security/bulletin/MS08-068.mspx"]2[/URL],[URL="http://www.microsoft.com/rus/technet/security/bulletin/MS09-001.mspx"]3[/URL] и установить.
Скачать [URL="http://support.kaspersky.ru/downloads/utils/kk.zip"]kk[/URL] - запустить, провериться :)
Скачайте [URL="http://images.malwareremoval.com/random/RSIT.exe"]RSIT[/URL]. Запустите, выберите проверку файлов за последние три месяца и нажмите продолжить. Должны открыться два отчета log.txt и info.txt. Прикрепите их к следующему сообщению. Если вы их закрыли, то логи по умолчанию сохраняются в одноименной папке (RSIT) в корне системного диска.
Повторите логи AVZ
[size="1"][color="#666686"][B][I]Добавлено через 11 минут[/I][/B][/color][/size]
Ну и до кучи сделайте лог [URL="http://virusinfo.info/showthread.php?t=40118"]gmer[/URL]
все сделал,как было сказано,вот результат:
и вот карантин: 101116_215358_virus_4ce2d34634290.zip
Сохраните текст ниже как cleanup.bat в ту же папку, где находится gmer.exe (gmer)
[CODE]gmer.exe -del service baadxfqd
gmer.exe -del file "C:\WINDOWS\system32\sgnfzen.dll"
gmer.exe -del reg "HKLM\SYSTEM\CurrentControlSet\Services\baadxfqd"
gmer.exe -del reg "HKLM\SYSTEM\ControlSet002\Services\baadxfqd"
gmer.exe -del reg "HKLM\SYSTEM\ControlSet003\Services\baadxfqd"
gmer.exe -reboot[/CODE]И запустите cleanup.bat.
Компьютер перезагрузится!
Сделать новый лог gmer.
Новые логи AVZ тоже сделайте
извините за задержку,был в отьезде,вот логи:
Выполните скрипт в AVZ
[code]begin
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows NT\CurrentVersion\Winlogon','Taskman');
RebootWindows(true);
end. [/code]Компьютер перезагрузится.
Проблема решена?
[B]thyrex[/B], да,решена,спасибо за помощь.
Статистика проведенного лечения:
[LIST][*]Получено карантинов: [B]1[/B][*]Обработано файлов: [B]178[/B][*]В ходе лечения обнаружены вредоносные программы:
[LIST=1][*] c:\\autorun.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\documents and settings\\агп\\local settings\\temp\\asqhbf.dll - [B]Worm.Win32.AutoRun.csj[/B] ( DrWEB: Trojan.PWS.Gamania.5967, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/Rootkit.Vanti.NAI trojan, AVAST4: Win32:AutoRun-ABU [Wrm] )[*] c:\\ekugb3.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp172\\a0285235.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp172\\a0285236.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp172\\a0286226.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp172\\a0286229.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp172\\a0286230.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp173\\a0286235.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp173\\a0286236.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp173\\a0287226.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp173\\a0287229.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp173\\a0287230.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp174\\a0287235.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp174\\a0287236.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0287242.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0287243.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288226.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288229.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288230.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288243.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288247.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288248.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288262.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288265.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0288266.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0289262.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0289265.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp175\\a0289266.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0289279.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0289280.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290263.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290272.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290283.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290287.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290288.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290302.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290305.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290306.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290322.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290324.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp176\\a0290325.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp177\\a0290333.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp177\\a0290334.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp177\\a0290346.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp178\\a0290355.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp178\\a0290358.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp178\\a0290359.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp178\\a0291356.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp178\\a0292355.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292375.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292378.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292379.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292424.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292427.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292428.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292437.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292440.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp180\\a0292441.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp181\\a0293437.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp181\\a0293440.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp181\\a0293441.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp182\\a0293478.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp182\\a0293479.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp182\\a0293494.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp182\\a0293497.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp182\\a0293498.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp183\\a0293505.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp183\\a0293506.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp184\\a0293514.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp184\\a0293515.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp185\\a0293552.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp185\\a0293553.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp186\\a0293561.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp186\\a0293562.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp186\\a0293575.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp186\\a0293578.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp186\\a0293579.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp187\\a0293598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp187\\a0293601.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp187\\a0293602.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0293610.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0293611.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0294598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0295598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0295601.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp188\\a0295602.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp190\\a0296598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp190\\a0296602.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp190\\a0296603.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp191\\a0296710.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp191\\a0296711.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp191\\a0297598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp191\\a0297601.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp191\\a0297602.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp192\\a0297608.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp192\\a0297611.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp192\\a0298598.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp192\\a0298601.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp192\\a0298602.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp193\\a0298606.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp193\\a0298607.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp193\\a0298621.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp193\\a0298624.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp193\\a0298625.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp194\\a0298636.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp194\\a0298637.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp195\\a0298648.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp195\\a0298649.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298655.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298656.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298667.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298670.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298671.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298683.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298695.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0298697.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0299683.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp196\\a0299711.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299726.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299727.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299739.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299743.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299744.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299759.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299762.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299763.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299780.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299782.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0299783.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0300779.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0300782.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp197\\a0300783.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp198\\a0301778.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp198\\a0301782.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp198\\a0301783.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp199\\a0301793.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp199\\a0301794.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301801.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301802.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301812.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301815.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301816.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301839.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301842.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301843.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp200\\a0301856.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp201\\a0301880.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp201\\a0302880.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp201\\a0302883.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp201\\a0302884.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp202\\a0302892.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp202\\a0302893.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp202\\a0302915.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp202\\a0302918.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp202\\a0302919.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp203\\a0302927.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp203\\a0302928.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp203\\a0302942.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp203\\a0302945.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp203\\a0302946.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp204\\a0302952.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp204\\a0302953.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp205\\a0302961.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp205\\a0302962.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp205\\a0303942.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp205\\a0303945.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp205\\a0303946.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp206\\a0303954.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp206\\a0303955.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp207\\a0303961.bat - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp207\\a0303962.inf - [B]Trojan-GameThief.Win32.OnLineGames.ski[/B] ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun worm )[*] c:\\system volume information\\_restore{0f895cb8-075c-4a60-af29-f6edda027a16}\\rp207\\a0303979.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\windows\\system32\\amvo.exe - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.MulDrop.6474, BitDefender: Trojan.PWS.Onlinegames.KDZN, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*] c:\\windows\\system32\\amvo0.bak - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\windows\\system32\\amvo0.dll - [B]Packed.Win32.PolyCrypt.h[/B] ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*] c:\\windows\\system32\\sgnfzen.dll - [B]Net-Worm.Win32.Kido.ih[/B] ( DrWEB: Win32.HLLW.Autoruner.5555, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AA worm, AVAST4: Win32:Confi [Wrm] )[*] c:\\windows\\system32\\01.tmp - [B]Net-Worm.Win32.Kido.jq[/B] ( DrWEB: Win32.HLLW.Autoruner.5555, BitDefender: Win32.Worm.Conficker.A, NOD32: Win32/Conficker.AA worm, AVAST4: Win32:ConfiDrv-B [Rtk] )[/LIST][/LIST]