Всем добрый вечер. Никак не дойдут руки до лицензионного антивирусного по :( Или финансы скорее всего...
Проверил Др.Веб. сканом - 32 трояна. Несколько вылечсено, пара удалена, остальные перемещены в карантин.
Скидываю логи...
Printable View
Всем добрый вечер. Никак не дойдут руки до лицензионного антивирусного по :( Или финансы скорее всего...
Проверил Др.Веб. сканом - 32 трояна. Несколько вылечсено, пара удалена, остальные перемещены в карантин.
Скидываю логи...
- выполните такой скрипт
[CODE]begin
QuarantineFile('C:\Program Files\DivX\DivX Update\DivXUpdate.exe','');
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.[/CODE]
- Файл [B][COLOR="Red"]quarantine.zip[/COLOR][/B] из папки AVZ загрузите по ссылке [B][COLOR="Red"]Прислать запрошенный карантин[/COLOR][/B] вверху темы
- Сделайте лог [URL="http://virusinfo.info/showpost.php?p=457118&postcount=1"][COLOR="Blue"][B]MBAM[/B][/COLOR][/URL]
Результат загрузки
Ошибка загрузки. Данный файл уже был загружен - файл с карантином.
1.Пришлите файл C:\Program Files\DivX\DivX Update\DivXUpdate.exe запакованным в архив ZIP с паролем: [COLOR="Red"]virus[/COLOR] по ссылке [B][COLOR="Red"]Прислать запрошенный карантин[/COLOR][/B] вверху темы
2.[URL="http://virusinfo.info/showthread.php?t=7239"]Выполните скрипт в AVZ[/URL]
[CODE]
begin
DeleteFileMask(GetAVZDirectory + 'Quarantine', '*.*', true);
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\0021.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\02620.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\090.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\0912811.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\106143.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\132.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\135.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\176222.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\1816035.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\271337.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\28251.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\2836.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\3345746.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\356.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\36917.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\37232.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\3791241.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\3814.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\390.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\4090.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\5794.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\581.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\7012.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\7579024.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\7611378.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\7898644.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\81620.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\86012.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\9197655.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\94167.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\97269.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\977727.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\gwdrive32.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\system.exe','');
QuarantineFile('c:\documents and settings\Ayanami\doctorweb\quarantine\systm.exe','');
QuarantineFile('c:\documents and settings\Ayanami\local settings\Temp\0386.exe','');
QuarantineFile('c:\documents and settings\Ayanami\local settings\Temp\346292.exe','');
QuarantineFile('c:\documents and settings\Ayanami\local settings\Temp\944205.exe','');
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.[/CODE]
- Файл [B][COLOR="Red"]quarantine.zip[/COLOR][/B] из папки AVZ загрузите по ссылке [B][COLOR="Red"]Прислать запрошенный карантин[/COLOR][/B] вверху темы
3. [URL="http://virusinfo.info/showpost.php?p=493584&postcount=2"]удалите[/URL] в [B]MBAM[/B]
[CODE]
Заражённые ключи в реестре:
HKEY_CLASSES_ROOT\AppID\{B0ED4726-5BC8-4E22-A7A8-3074A73CE64E} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8E569E70-9E91-4CF9-820C-99DDC3A05A0C} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{8E569E70-9E91-4CF9-820C-99DDC3A05A0C} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{BEFC54BA-36EB-4CFC-BA55-587361577A26} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{3A596471-ECBE-4AEE-B543-79AE8C8FF7A9} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{047D87FD-BFC5-4AC3-9AD3-ACECC7B49016} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1094613F-84B6-4131-AEC1-71DF88291044} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\xvideoplugin.JetMimeFiltr (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\xvideoplugin.JetMimeFiltr.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\xvideoplugin.JetVideoPlugin (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\xvideoplugin.JetVideoPlugin.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\AppID\pllib.DLL (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\XTTB00001.XTTB00001Toolbar (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
Объекты реестра заражены:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
Заражённые файлы:
c:\RECYCLER\s-1-5-21-1004336348-1614895754-839522115-1004\Dc1\quarantine\2011-01-04\avz00004.dta (Trojan.Agent) -> No action taken.
c:\RECYCLER\s-1-5-21-1004336348-1614895754-839522115-1004\Dc2\avz00001.dta (Trojan.Agent) -> No action taken.
c:\RECYCLER\s-1-5-21-1004336348-1614895754-839522115-1004\Dc2\avz00002.dta (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\0021.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\02620.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\090.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\0912811.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\106143.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\132.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\135.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\176222.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\1816035.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\271337.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\28251.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\2836.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\3345746.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\356.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\36917.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\37232.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\3791241.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\3814.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\390.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\4090.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\5794.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\581.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\7012.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\7579024.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\7611378.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\7898644.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\81620.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\86012.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\9197655.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\94167.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\97269.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\977727.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\gwdrive32.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\system.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\doctorweb\quarantine\systm.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\local settings\Temp\0386.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\local settings\Temp\346292.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\Ayanami\local settings\Temp\944205.exe (Trojan.Agent) -> No action taken.
c:\program files\icqtoolbar\toolbaru.dll (Trojan.BHO) -> No action taken.
[/CODE]
110105_161613_quarantine_4d246f1d155c7.zip - Карантин.
Тот файл который нужно было заархивировать - его нету у мну...
Что с проблемой?
Статистика проведенного лечения:
[LIST][*]Получено карантинов: [B]1[/B][*]Обработано файлов: [B]38[/B][*]В ходе лечения обнаружены вредоносные программы:
[LIST=1][*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\gwdrive32.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\system.exe - [B]Trojan.Win32.Scar.divj[/B] ( DrWEB: Trojan.DownLoader1.50737, BitDefender: Trojan.Generic.KD.99116, AVAST4: Win32:Rootkit-gen [Rtk] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\systm.exe - [B]Trojan.Win32.Scar.diyy[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, NOD32: Win32/Lethic.AA trojan, AVAST4: Win32:Dropper-ETN [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\0021.exe - [B]Net-Worm.Win32.Kolab.qls[/B] ( DrWEB: Trojan.DownLoader5.22523, BitDefender: Trojan.Generic.KDV.98921, AVAST4: Win32:Dropper-ESS [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\02620.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\090.exe - [B]Trojan.Win32.Scar.divj[/B] ( DrWEB: Trojan.DownLoader1.50737, BitDefender: Trojan.Generic.KD.99116, AVAST4: Win32:Rootkit-gen [Rtk] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\0912811.exe - [B]Trojan.Win32.Scar.divj[/B] ( DrWEB: Trojan.DownLoader1.50737, BitDefender: Trojan.Generic.KD.99116, AVAST4: Win32:Rootkit-gen [Rtk] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\106143.exe - [B]Trojan.Win32.Scar.divj[/B] ( DrWEB: Trojan.DownLoader1.50737, BitDefender: Trojan.Generic.KD.99116, AVAST4: Win32:Rootkit-gen [Rtk] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\132.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\135.exe - [B]Trojan.Win32.Scar.divj[/B] ( DrWEB: Trojan.DownLoader1.50737, BitDefender: Trojan.Generic.KD.99116, AVAST4: Win32:Rootkit-gen [Rtk] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\176222.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\1816035.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\271337.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\28251.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\2836.exe - [B]Net-Worm.Win32.Kolab.pzc[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\3345746.exe - [B]Trojan.Win32.Scar.diyy[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, NOD32: Win32/Lethic.AA trojan, AVAST4: Win32:Dropper-ETN [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\356.exe - [B]Net-Worm.Win32.Kolab.qls[/B] ( DrWEB: Trojan.DownLoader5.22523, BitDefender: Trojan.Generic.KDV.98921, AVAST4: Win32:Dropper-ESS [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\36917.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\37232.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\3791241.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\3814.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\390.exe - [B]Net-Worm.Win32.Kolab.qls[/B] ( DrWEB: Trojan.DownLoader5.22523, BitDefender: Trojan.Generic.KDV.98921, AVAST4: Win32:Dropper-ESS [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\4090.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\5794.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\581.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\7012.exe - [B]Trojan.Win32.Scar.diyy[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, NOD32: Win32/Lethic.AA trojan, AVAST4: Win32:Dropper-ETN [Drp] )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\7579024.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\7611378.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\7898644.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\81620.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\86012.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\9197655.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\94167.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\97269.exe - [B]Packed.Win32.Krap.ig[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.5967323, NOD32: Win32/AutoRun.IRCBot.FC worm, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\doctorweb\\quarantine\\977727.exe - [B]Net-Worm.Win32.Kolab.pzb[/B] ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.KD.95179, NOD32: IRC/SdBot trojan, AVAST4: Win32:Malware-gen )[*] c:\\documents and settings\\ayanami\\local settings\\temp\\0386.exe - [B]Net-Worm.Win32.Kolab.qph[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, AVAST4: Win32:Dropper-ETN [Drp] )[*] c:\\documents and settings\\ayanami\\local settings\\temp\\346292.exe - [B]Net-Worm.Win32.Kolab.qpf[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, NOD32: IRC/SdBot trojan, AVAST4: Win32:Dropper-ETN [Drp] )[*] c:\\documents and settings\\ayanami\\local settings\\temp\\944205.exe - [B]Net-Worm.Win32.Kolab.qph[/B] ( DrWEB: Trojan.Packed.21319, BitDefender: Trojan.Generic.KD.99923, AVAST4: Win32:Dropper-ETN [Drp] )[/LIST][/LIST]