-
Отчет за период 01.08.2009 - 02.08.2009
[LIST][*][thread=51152]Backdoor.Win32.SdBot.ofw[/thread] -> g:\recycler\s-51-9-25-3434476501-1644491939-601013333-1214\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51153]Backdoor.Win32.SdBot.ofw[/thread] -> c:\windows\system32\drivers\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51152]Backdoor.Win32.SdBot.ofw[/thread] -> f:\recycler\s-51-9-25-3434476501-1644491939-601013333-1214\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51152]Backdoor.Win32.SdBot.ofw[/thread] -> c:\windows\system32\drivers\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51141]Backdoor.Win32.SdBot.ofw[/thread] -> c:\windows\system32\drivers\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51136]Net-Worm.Win32.Kolab.ded[/thread] -> c:\windows\system32\drivers\chvgrm.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51141]Net-Worm.Win32.Kolab.dep[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: Trojan.MulDrop.33045 )[*][thread=51152]Net-Worm.Win32.Kolab.dfe[/thread] -> c:\windows\system32\drivers\tgmh.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51143]Packed.Win32.Klone.bj[/thread] -> d:\zfbdjj.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=51126]Trojan.Win32.Agent.csfx[/thread] -> c:\windows\system32\drivers\vsfocevpucrdkb.sys ( DrWEB: BackDoor.Tdss.349, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=51126]Trojan.Win32.Buzus.brey[/thread] -> c:\recycler\s-1-5-21-7231517797-5748949912-962395537-3774\nissan.exe ( DrWEB: Trojan.Siggen.3271 )[*][thread=51126]Trojan.Win32.Buzus.brey[/thread] -> c:\documents and settings\администратор\local settings\temporary internet files\content.ie5\n85mse5u\botko[1].exe ( DrWEB: Trojan.Siggen.3271 )[*][thread=51126]Trojan.Win32.Buzus.brey[/thread] -> c:\documents and settings\администратор\local settings\temp\786.exe ( DrWEB: Trojan.Siggen.3271 )[*][thread=51126]Trojan.Win32.Buzus.brey[/thread] -> c:\documents and settings\администратор\local settings\temp\587.exe ( DrWEB: Trojan.Siggen.3271 )[*][thread=51126]Trojan.Win32.Buzus.brey[/thread] -> c:\documents and settings\администратор\local settings\temporary internet files\content.ie5\n85mse5u\botko[3].exe ( DrWEB: Trojan.Siggen.3271 )[*][thread=51141]Trojan.Win32.Buzus.brhg[/thread] -> c:\recycler\s-1-5-21-1749082590-5853730295-293991616-1711\mwau.exe ( DrWEB: Win32.HLLW.Autoruner.7323 )[*][thread=51153]Trojan.Win32.Dialer.eyo[/thread] -> \f2y7a8m1e2s.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51136]Trojan.Win32.Dialer.eyo[/thread] -> c:\f2y7a8m1e2s.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51172]Trojan.Win32.Dialer.vjv[/thread] -> c:\documents and settings\apxahgel\local settings\temporary internet files\content.ie5\1b0kwepj\ogr[1].mp3 ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51167]Trojan.Win32.Small.cbc[/thread] -> c:\documents and settings\карина\application data\msmedia.dll[*][thread=51144]Virus.Win32.Sality.aa[/thread] -> g:\gkpf.cmd ( DrWEB: Win32.Sector.17, BitDefender: Win32.Sality.OG )[*][thread=51172]Worm.Win32.AutoRun.gas[/thread] -> g:\next\files\next.exe ( DrWEB: Trojan.Inject.5830, BitDefender: Trojan.Generic.2186613 )[*][thread=51152]Worm.Win32.AutoRun.gkj[/thread] -> f:\recycler\s-51-9-25-3434476501-1644491938-601003312-1214\lzhgpw.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51152]Worm.Win32.AutoRun.gkj[/thread] -> g:\recycler\s-51-9-25-3434476501-1644491938-601003312-1214\lzhgpw.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[*][thread=51152]Worm.Win32.AutoRun.gkj[/thread] -> c:\recycler\s-51-9-25-3434476501-1644491938-601003312-1214\lzhgpw.exe ( DrWEB: BackDoor.IRC.Bot.124, BitDefender: Backdoor.IRCBot.ACTH )[/LIST]
-
Отчет за период 02.08.2009 - 03.08.2009
[LIST][*][thread=51180]Backdoor.Win32.SdBot.nzb[/thread] -> c:\program files\adobe systems,inc\flash video\video_codec.exe ( BitDefender: Gen:Trojan.Heur.VB.qmY@eqBz48E )[*][thread=51234]Backdoor.Win32.SdBot.ofw[/thread] -> c:\windows\system32\drivers\qsaf.exe ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=51170]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\fonts\5298fbb1.exe ( BitDefender: Win32.Worm.Winko.I )[*][thread=51209]IM-Worm.Win32.Agent.pt[/thread] -> c:\vshost.exe ( DrWEB: Win32.HLLW.Autoruner.7359, BitDefender: Win32.Worm.IMStealer.A )[*][thread=51209]IM-Worm.Win32.Agent.pt[/thread] -> d:\vshost.exe ( DrWEB: Win32.HLLW.Autoruner.7359, BitDefender: Win32.Worm.IMStealer.A )[*][thread=51209]IM-Worm.Win32.Agent.pt[/thread] -> c:\docume~1\a431~1.3b6\locals~1\temp\vshost32.exe ( DrWEB: Win32.HLLW.Autoruner.7359, BitDefender: Win32.Worm.IMStealer.A )[*][thread=51230]Net-Worm.Win32.Kolab.dep[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: Trojan.MulDrop.33045 )[*][thread=51230]Net-Worm.Win32.Kolab.dft[/thread] -> c:\windows\sysmngsr32.exe ( DrWEB: Trojan.MulDrop.33045 )[*][thread=51190]Rootkit.Win32.HareBot.bj[/thread] -> c:\windows\system32\drivers\ws2_32sik.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cKTvrQ )[*][thread=51246]Trojan-Banker.Win32.Banker.allw[/thread] -> c:\program files\xstarter\xstarter.exe[*][thread=51170]Trojan-Downloader.Win32.Agent.claa[/thread] -> c:\windows\vfhyjh.exe ( DrWEB: Trojan.DownLoad.42397 )[*][thread=51170]Trojan-Downloader.Win32.Agent.clad[/thread] -> c:\windows\fonts\59f2229d.dll ( BitDefender: Win32.Worm.Winko.I )[*][thread=51170]Trojan-Downloader.Win32.Apher.gmf[/thread] -> c:\windows\system32\tgsno.exe ( DrWEB: Trojan.DownLoad.41529, BitDefender: Trojan.Downloader.Agent.AAQE )[*][thread=51170]Trojan-Dropper.Win32.Agent.ayqh[/thread] -> c:\windows\system32\winhelp32.exe ( DrWEB: BackDoor.Darkshell.96 )[*][thread=51212]Trojan-Ransom.Win32.Hexzone.icp[/thread] -> c:\windows\services.exe[*][thread=51216]Trojan-Spy.Win32.Zbot.zze[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.114 )[*][thread=51190]Trojan.Win32.Agent2.laa[/thread] -> c:\windows\system32\ms18_word.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51190]Trojan.Win32.Agent2.laa[/thread] -> c:\documents and settings\localservice\ms18_word.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51230]Trojan.Win32.Buzus.brhg[/thread] -> c:\recycler\s-1-5-21-3925611669-2469905860-462944944-0099\mwau.exe ( DrWEB: Win32.HLLW.Autoruner.7323 )[*][thread=51233]Trojan.Win32.ConnectionServices.ai[/thread] -> c:\program files\connectionservices\connectionservices.dll ( BitDefender: Trojan.Generic.1566202 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \xibwgc.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\sdmuuj.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \vpbdqw.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \ubzwwc.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \orgjud.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \nkrtpj.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \hzxhmm.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \tjyshn.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \plrsfw.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \zmouph.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \repkhp.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \umuaaf.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\fxbxkh.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51197]Trojan.Win32.Delf.oav[/thread] -> \nyiycp.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51192]Trojan.Win32.FraudPack.puo[/thread] -> c:\docume~1\misteria\locals~1\temp\b.exe ( DrWEB: Trojan.DownLoad.42009 )[*][thread=51193]Trojan.Win32.FraudPack.pvz[/thread] -> c:\documents and settings\vova\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[/LIST]
-
Отчет за период 03.08.2009 - 04.08.2009
[LIST][*][thread=51187]Backdoor.Win32.DeAlfa.ei[/thread] -> c:\windows\system32\riodrv.exe ( DrWEB: Trojan.PWS.VisStud.14 )[*][thread=51269]Backdoor.Win32.IRCBot.lqt[/thread] -> c:\windows\sysdiag64.exe ( DrWEB: Trojan.MulDrop.33198 )[*][thread=51217]Backdoor.Win32.SdBot.odi[/thread] -> c:\windows\msudp32.exe ( DrWEB: BackDoor.IRC.Bot.122 )[*][thread=51136]Backdoor.Win32.SdBot.ofw[/thread] -> \42.scr ( DrWEB: BackDoor.IRC.Letmein.12, BitDefender: Trojan.Agent.ANHD )[*][thread=37678]Email-Worm.Win32.Joleee.cyh[/thread] -> c:\documents and settings\tech1\desktop\авира\update9815875.exe[*][thread=37678]Email-Worm.Win32.Joleee.cyi[/thread] -> c:\documents and settings\tech1\desktop\авира\update9815859.exe[*][thread=37678]Email-Worm.Win32.Joleee.cyj[/thread] -> c:\documents and settings\tech1\desktop\авира\update10803921.exe[*][thread=37678]Email-Worm.Win32.Joleee.cyk[/thread] -> c:\documents and settings\tech1\desktop\авира\update10758750.exe[*][thread=37678]Email-Worm.Win32.Joleee.cyl[/thread] -> c:\documents and settings\tech1\desktop\авира\update10494593.exe[*][thread=51093]Email-Worm.Win32.NetSky.dam[/thread] -> c:\i\mail\goodwin\attach\00000004.msg[*][thread=51093]Email-Worm.Win32.NetSky.dam[/thread] -> c:\i\mail\goodwin\attach\00000005.msg[*][thread=51282]HEUR:Trojan.Win32.Generic[/thread] -> f:\autorun.exe ( DrWEB: Win32.HLLW.Autoruner.6317, BitDefender: Trojan.CryptRedol.Gen.1 )[*][thread=51265]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\fonts\11e8a6b3.exe ( BitDefender: Win32.Worm.Winko.I )[*][thread=51282]HEUR:Trojan.Win32.Generic[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6317, BitDefender: Trojan.CryptRedol.Gen.1 )[*][thread=51269]P2P-Worm.Win32.Palevo.ann[/thread] -> c:\recycler\s-1-5-21-5543064464-8045039037-359993242-8918\wmiprvse.exe ( DrWEB: Win32.HLLW.Lime.17, BitDefender: Worm.P2P.Palevo.B )[*][thread=51214]Rootkit.Win32.Agent.pq[/thread] -> c:\winnt\system32\drivers\ctl_w32.sys ( DrWEB: Trojan.NtRootKit.496, BitDefender: Trojan.Kobcka.AY )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\netsik.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\ati64si.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\acpi32.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\i386si.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\systemntmi.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\nicsk32.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51292]Rootkit.Win32.HareBot.bu[/thread] -> c:\windows\system32\drivers\ntfs.sys ( BitDefender: Gen:Rootkit.Heur.LmW@f0Pg9fp )[*][thread=51265]Trojan-Downloader.Win32.Agent.ckyp[/thread] -> c:\windows\atvxx.exe[*][thread=51306]Trojan-Downloader.Win32.Agent.cldx[/thread] -> c:\users\user\appdata\local\temp\.exe[*][thread=51306]Trojan-Downloader.Win32.Agent.cldx[/thread] -> c:\users\user\appdata\local\application data\temp\.exe[*][thread=51288]Trojan-Downloader.Win32.FraudLoad.fdr[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4703, BitDefender: Trojan.Fakealert.BHX )[*][thread=51292]Trojan-Downloader.Win32.FraudLoad.fdr[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4703, BitDefender: Trojan.Fakealert.BHX )[*][thread=51265]Trojan-Downloader.Win32.Ogran.c[/thread] -> c:\windows\vfhyjh.exe ( DrWEB: Trojan.DownLoad.42397 )[*][thread=37678]Trojan-GameThief.Win32.OnLineGames.bmok[/thread] -> c:\documents and settings\tech1\desktop\авира\update10647250.exe[*][thread=37678]Trojan-GameThief.Win32.OnLineGames.bmok[/thread] -> c:\documents and settings\tech1\desktop\авира\update10433515.exe ( BitDefender: Trojan.Generic.1797416 )[*][thread=37678]Trojan-GameThief.Win32.OnLineGames.bmok[/thread] -> c:\documents and settings\tech1\desktop\авира\update10132828.exe ( BitDefender: Trojan.Generic.2086243 )[*][thread=37678]Trojan-GameThief.Win32.OnLineGames.bmok[/thread] -> c:\documents and settings\tech1\desktop\авира\update10758531.exe[*][thread=51252]Trojan-Ransom.Win32.PornoBro.al[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Blackmailer.1287 )[*][thread=51206]Trojan-Spy.Win32.Zbot.fmi[/thread] -> c:\windows\system32\ntos.exe ( DrWEB: Trojan.Proxy.4002, BitDefender: Trojan.Spy.ZBot.MJ )[*][thread=51306]Trojan.Win32.Agent.cswg[/thread] -> c:\windows\temp\391368890.tmp[*][thread=51217]Trojan.Win32.Agent2.kzp[/thread] -> c:\windows\system32\ms18_word.exe ( DrWEB: Trojan.MulDrop.33181 )[*][thread=51217]Trojan.Win32.Agent2.kzp[/thread] -> c:\documents and settings\user\ms18_word.exe ( DrWEB: Trojan.MulDrop.33181 )[*][thread=51300]Trojan.Win32.Agent2.laj[/thread] -> c:\windows\system32\servises.exe[*][thread=51310]Trojan.Win32.Autoit.xp[/thread] -> c:\documents and settings\00000\doctorweb\quarantine\rqecym.exe ( DrWEB: Win32.HLLW.Autohit.6577, BitDefender: Gen:Trojan.Heur.AutoIT.umNfbeaEsLdc )[*][thread=51310]Trojan.Win32.Autoit.xp[/thread] -> c:\documents and settings\00000\doctorweb\quarantine\rqecym_0.exe ( DrWEB: Win32.HLLW.Autohit.6577, BitDefender: Gen:Trojan.Heur.AutoIT.umNfbeaEsLdc )[*][thread=51217]Trojan.Win32.Danilko.a[/thread] -> c:\recycler\s-1-5-21-8942275032-1420502524-989085791-0986\csvcs.exe ( DrWEB: Win32.HLLW.Lime.8, BitDefender: Worm.P2P.Palevo.C )[*][thread=51192]Trojan.Win32.FraudPack.pvx[/thread] -> c:\docume~1\misteria\locals~1\temp\b.exe ( DrWEB: Trojan.DownLoad.42340 )[*][thread=51268]Trojan.Win32.Inject.wjp[/thread] -> c:\program files\common files\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6648, BitDefender: Win32.Worm.Agent.QBX )[*][thread=51268]Trojan.Win32.Inject.wjp[/thread] -> e:\system.exe ( DrWEB: Win32.HLLW.Autoruner.6648, BitDefender: Win32.Worm.Agent.QBX )[*][thread=50428]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( DrWEB: Trojan.WinSpy.184 )[*][thread=51269]Trojan.Win32.Refroso.cev[/thread] -> c:\windows\system32\scvhost.exe ( DrWEB: Win32.HLLW.MyBot )[*][thread=51269]Trojan.Win32.Refroso.cez[/thread] -> c:\windows\cursors\lsass.exe ( DrWEB: Win32.HLLW.MyBot )[*][thread=51217]Trojan.Win32.Refroso.cfc[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=37678]Trojan.Win32.Tdss.aluj[/thread] -> \avz00001.dta[*][thread=50746]Worm.Win32.AutoRun.gas[/thread] -> c:\next\files\next.exe ( DrWEB: Trojan.Inject.5830, BitDefender: Trojan.Generic.2186613 )[*][thread=51268]Worm.Win32.AutoRun.sjn[/thread] -> e:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.2630, BitDefender: Win32.Worm.TRL )[/LIST]
-
Отчет за период 04.08.2009 - 05.08.2009
[LIST][*][thread=51170]Backdoor.Win32.PcClient.beii[/thread] -> c:\windows\system32\rqmttqc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51330]Backdoor.Win32.SdBot.ogk[/thread] -> c:\windows\sysmngsr32.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=51336]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=51336]Backdoor.Win32.UltimateDefender.igv[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.EAF3F10D )[*][thread=51313]Net-Worm.Win32.Kolab.dfw[/thread] -> e:\windows\usb_magr.exe[*][thread=51214]Rootkit.Win32.Agent.pq[/thread] -> c:\winnt\system32\drivers\ctl_w32.sys ( DrWEB: Trojan.NtRootKit.496, BitDefender: Trojan.Kobcka.AY )[*][thread=51375]Rootkit.Win32.HareBot.br[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fqHAkZi )[*][thread=51329]Rootkit.Win32.HareBot.by[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fe8y@Lh )[*][thread=51328]Rootkit.Win32.HareBot.by[/thread] -> \avz00001.dta ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fe8y@Lh )[*][thread=51334]Rootkit.Win32.HareBot.ca[/thread] -> c:\windows\system32\drivers\ntfs.sys ( BitDefender: Gen:Rootkit.Heur.LmW@fyxtJwf )[*][thread=51314]Trojan-Downloader.Win32.Agent.cldn[/thread] -> c:\windows\system32\shscrap.dll[*][thread=51336]Trojan-Downloader.Win32.FraudLoad.fdr[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4703, BitDefender: Trojan.Fakealert.BHX )[*][thread=51329]Trojan-Downloader.Win32.FraudLoad.fdr[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4703, BitDefender: Trojan.Fakealert.BHX )[*][thread=51327]Trojan-Dropper.Win32.Agent.ayzc[/thread] -> c:\recycler\s-1-5-21-1107063147-0264410014-076406251-9620\sysdate.exe ( DrWEB: Win32.HLLW.Lime.8 )[*][thread=51375]Trojan-Dropper.Win32.Agent.ayzp[/thread] -> c:\windows\system32\hp32_nword.exe ( DrWEB: Trojan.MulDrop.33201, BitDefender: Trojan.Agent.ANHR )[*][thread=51379]Trojan-Spy.Win32.Zbot.zod[/thread] -> c:\windows\system32\sdra64.exe[*][thread=51327]Trojan.Win32.Agent.csvt[/thread] -> c:\documents and settings\acc\application data\scom.exe[*][thread=51373]Trojan.Win32.Monderb.xhz[/thread] -> c:\windows\system32\pmnmjgyx.dll ( DrWEB: Trojan.Siggen.629, BitDefender: Trojan.Vundo.Gen.4 )[*][thread=51373]Trojan.Win32.Monder.cqjv[/thread] -> c:\windows\system32\awttrslc.dll ( DrWEB: Trojan.Virtumod.855, BitDefender: Trojan.Generic.1808696 )[*][thread=51330]Trojan.Win32.Refroso.cfc[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=51294]Virus.Win32.Virut.q[/thread] -> c:\windows\system32\ctfmon.exe ( DrWEB: Win32.Virut.5, BitDefender: Win32.Virtob.Gen.9 )[*][thread=51294]Virus.Win32.Virut.q[/thread] -> c:\windows\system32\wbem\wmiapsrv.exe ( DrWEB: Win32.Virut.5, BitDefender: Win32.Virtob.Gen.9 )[*][thread=51294]Virus.Win32.Virut.q[/thread] -> c:\windows\system32\amvo.exe ( DrWEB: Win32.Virut.5, BitDefender: Packer.Malware.NSAnti.1 )[*][thread=51294]Virus.Win32.Virut.q[/thread] -> c:\windows\system32\userinit.exe ( DrWEB: Win32.Virut.5, BitDefender: Win32.Virtob.Gen.9 )[*][thread=37678]Worm.Win32.Bezopi.p[/thread] -> f:\autorun.exe ( DrWEB: Trojan.Inject.6008, BitDefender: Worm.Generic.76724 )[/LIST]
-
Отчет за период 05.08.2009 - 06.08.2009
[LIST][*][thread=51466]Backdoor.Win32.Small.ifw[/thread] -> h:\windows.1\vtdfhgbfv.exe ( BitDefender: Gen:Trojan.Heur.PT.aeW@bCo7Y9m )[*][thread=51445]Backdoor.Win32.Small.wu[/thread] -> c:\windows.0\system32\urlmon.exe ( BitDefender: DeepScan:Generic.Malware.SFYBdld.F4A1E84F )[*][thread=51466]Exploit.Win32.SqlShell.i[/thread] -> h:\windows.1\system32\libmysql.dll ( DrWEB: Exploit.MySql.3 )[*][thread=51330]Net-Worm.Win32.Kolab.dhk[/thread] -> c:\windows\system32\47.scr[*][thread=51416]Rootkit.Win32.Agent.olm[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3229, BitDefender: Gen:Rootkit.Heur.euW@eqLW9Nj )[*][thread=51466]Trojan-Downloader.Win32.Agent.ckvw[/thread] -> h:\windows.1\system32\cmptes.dll ( DrWEB: Trojan.DownLoad.42029, BitDefender: Worm.Hosete.A )[*][thread=51265]Trojan-Downloader.Win32.Agent.ckyp[/thread] -> c:\windows\atevxx.exe ( DrWEB: Trojan.DownLoad.42419 )[*][thread=51329]Trojan-Downloader.Win32.FraudLoad.wncc[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4696, BitDefender: Gen:Trojan.Heur.Zbot.amW@b04HDDl )[*][thread=51466]Trojan-Downloader.Win32.Ogran.c[/thread] -> h:\windows.1\vfhyjh.exe ( DrWEB: Trojan.DownLoad.42397 )[*][thread=37678]Trojan-Downloader.Win32.Small.alyr[/thread] -> c:\windows\system32\tapi.nfo[*][thread=51466]Trojan-Downloader.Win32.Small.kbo[/thread] -> h:\windows.1\clfdle.exe ( BitDefender: Trojan.Downloader.JMFI )[*][thread=51466]Trojan-Downloader.Win32.Small.kbo[/thread] -> h:\windows.1\clfile.exe ( BitDefender: Trojan.Downloader.JMFI )[*][thread=51466]Trojan-Dropper.Win32.Agent.azht[/thread] -> h:\windows.1\fonts\155a9b6e.exe ( BitDefender: Win32.Worm.Winko.I )[*][thread=51452]Trojan-PSW.Win32.WebMoner.je[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=51454]Trojan-PSW.Win32.WebMoner.je[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=51396]Trojan-Spy.Win32.Zbot.zgo[/thread] -> c:\windows\system32\sdra64.exe[*][thread=51417]Trojan.Win32.Agent.crez[/thread] -> c:\windows\system32\geyekrvjjdanyu.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=51473]Trojan.Win32.Agent.crez[/thread] -> \\?\globalroot\systemroot\system32\geyekrkethkdkp.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=51473]Trojan.Win32.Agent.crez[/thread] -> c:\windows\system32\geyekrkethkdkp.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=51234]Trojan.Win32.Agent.ctiv[/thread] -> c:\documents and settings\станислав\local settings\temp\823.exe ( DrWEB: BackDoor.IRC.Sdbot.4632 )[*][thread=51381]Trojan.Win32.Agent.ctix[/thread] -> c:\windows\system32\hjgruigrktmvve.dll ( DrWEB: BackDoor.Tdss.368, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=51466]Trojan.Win32.Agent.ctiy[/thread] -> h:\windows.1\system32\capisrv.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51417]Trojan.Win32.TDSS.amcv[/thread] -> c:\windows\system32\drivers\geyekrlfyeoayv.sys ( DrWEB: BackDoor.Geyekr.2, BitDefender: Trojan.Generic.2171188 )[*][thread=51473]Trojan.Win32.TDSS.amdm[/thread] -> c:\windows\system32\drivers\geyekrhfqjpyxu.sys ( BitDefender: Trojan.Generic.2198359 )[*][thread=51381]Trojan.Win32.TDSS.amdn[/thread] -> c:\windows\system32\drivers\hjgruigybtnwne.sys ( DrWEB: BackDoor.Tdss.266, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=51353]Virus.Win32.Sality.y[/thread] -> c:\windows\system32\ctfmon.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.2.NX )[*][thread=51442]Worm.Win32.Downloader.alb[/thread] -> d:\autorun.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=51454]Worm.Win32.Downloader.alb[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=51434]Worm.Win32.Downloader.alb[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=51452]Worm.Win32.Downloader.alb[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[/LIST]
-
Отчет за период 06.08.2009 - 07.08.2009
[LIST][*][thread=51217]Backdoor.Win32.Nepoe.jr[/thread] -> c:\windows\system32\spooisv.exe ( DrWEB: BackDoor.IRC.Sdbot.945, BitDefender: Backdoor.IRCBot.ACTM )[*][thread=51502]Backdoor.Win32.PcClient.bezr[/thread] -> c:\windows\system32\oniney.dll ( DrWEB: Trojan.DownLoad.39520 )[*][thread=51453]Backdoor.Win32.UltimateDefender.igv[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.C2675663 )[*][thread=51505]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\mphqbguq.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Worm.Generic.48698 )[*][thread=51541]not-a-virus:AdWare.Win32.RuPorn.e[/thread] -> c:\program files\rupass\rupass.exe ( DrWEB: Adware.Rupass, BitDefender: Trojan.Generic.824649 )[*][thread=51541]not-a-virus:AdWare.Win32.RuPorn.g[/thread] -> c:\program files\rupass\rupass.dll ( DrWEB: Adware.Rupass, BitDefender: Trojan.Generic.1001036 )[*][thread=51506]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=51438]P2P-Worm.Win32.Palevo.ann[/thread] -> c:\recycler\s-1-5-21-5869598583-6358572698-774508446-1572\wmiprvse.exe ( DrWEB: Win32.HLLW.Lime.17, BitDefender: Worm.P2P.Palevo.B )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\amd64si.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51217]Rootkit.Win32.HareBot.bb[/thread] -> c:\windows\system32\drivers\ksi32sk.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cmDZ85m )[*][thread=51489]Trojan-Downloader.Win32.Agent.cilm[/thread] -> c:\windows\system32\firefox.exe ( DrWEB: Trojan.Darkshell, BitDefender: Dropped:Rootkit.Agent.AIZW )[*][thread=51489]Trojan-Downloader.Win32.Agent.ckyp[/thread] -> c:\windows\atevxx.exe ( DrWEB: Trojan.DownLoad.42419 )[*][thread=51541]Trojan-Downloader.Win32.Mutant.byf[/thread] -> c:\windows\system32\winctrl32.dll ( DrWEB: BackDoor.Bulknet.314, BitDefender: Trojan.Dropper.Kobcka.Gen.1 )[*][thread=51453]Trojan-Downloader.Win32.Small.kcm[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4745 )[*][thread=51217]Trojan-Dropper.Win32.Agent.aywe[/thread] -> c:\documents and settings\user\hp32_nword.exe ( DrWEB: Trojan.MulDrop.33201 )[*][thread=51217]Trojan-Dropper.Win32.Agent.aywe[/thread] -> c:\windows\system32\hp32_nword.exe ( DrWEB: Trojan.MulDrop.33201 )[*][thread=51541]Trojan-Ransom.Win32.Hexzone.grl[/thread] -> c:\documents and settings\администратор\application data\bpfeed.dll ( DrWEB: Trojan.Click.24339, BitDefender: Trojan.Generic.1674266 )[*][thread=51305]Trojan-Ransom.Win32.PornoBro.ap[/thread] -> d:\system volume information\_restore{7d37868f-a790-4878-81f6-863111edacaf}\rp421\a0166930.exe ( DrWEB: Trojan.Blackmailer.1287 )[*][thread=51541]Trojan-Ransom.Win32.SMSer.hu[/thread] -> c:\windows\media\sound.exe ( DrWEB: Trojan.Winlock.223 )[*][thread=51541]Trojan.Win32.Agent.bxlb[/thread] -> c:\documents and settings\администратор\local settings\temp\ovfsthkyiseqncxb.tmp ( DrWEB: BackDoor.Tdss.115, BitDefender: Trojan.Generic.1839046 )[*][thread=51541]Trojan.Win32.Agent.crez[/thread] -> \\?\globalroot\systemroot\system32\hjgruitauubxom.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=51531]Trojan.Win32.Agent.crez[/thread] -> \\?\globalroot\systemroot\system32\geyekroiyfsoed.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=51502]Trojan.Win32.Agent.ctfa[/thread] -> c:\windows\system32\mstcpweb.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51502]Trojan.Win32.Agent.ctiy[/thread] -> c:\windows\system32\mswebsrv.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51509]Trojan.Win32.Agent.ctki[/thread] -> c:\windows\system\svchost.exe[*][thread=51217]Trojan.Win32.Agent2.kzp[/thread] -> c:\documents and settings\networkservice\ms18_word.exe ( DrWEB: Trojan.MulDrop.33181 )[*][thread=51217]Trojan.Win32.Buzus.brqs[/thread] -> c:\windows\msconfigs.exe ( DrWEB: BackDoor.IRC.Sdbot.945 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\wnitfa.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\koyuqj.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\gmwfmv.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\bzpgcv.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\zfgfan.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\qsuvpg.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51506]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\ljkojj.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51541]Trojan.Win32.Tdss.aiol[/thread] -> c:\windows\system32\drivers\hjgruiuwsoexje.sys ( DrWEB: BackDoor.Tdss.266, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=51217]Trojan.Win32.VB.ubu[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.DownLoad.42354 )[*][thread=51484]Worm.Win32.AutoRun.asby[/thread] -> c:\windows\system32\logon.exe ( DrWEB: Win32.HLLW.Autoruner.6787 )[/LIST]
-
Отчет за период 07.08.2009 - 08.08.2009
[LIST][*][thread=51466]Backdoor.Win32.Agent.ajcb[/thread] -> h:\program files\common files\svc.exe ( DrWEB: BackDoor.RemoteABC.9 )[*][thread=51584]not-a-virus:AdWare.Win32.TMAagent.t[/thread] -> c:\system volume information\_restore{bd968670-7788-4881-bcda-3f5ccbbb3b0f}\rp16\a0025245.dll[*][thread=51416]Rootkit.Win32.Agent.olm[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3229, BitDefender: Gen:Rootkit.Heur.euW@eqLW9Nj )[*][thread=51217]Rootkit.Win32.HareBot.bq[/thread] -> c:\windows\system32\drivers\nicsk32.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cq!fw5p )[*][thread=51217]Rootkit.Win32.HareBot.bq[/thread] -> c:\windows\system32\drivers\i386si.sys ( DrWEB: Trojan.NtRootKit.3159, BitDefender: Gen:Rootkit.Heur.cuW@cq!fw5p )[*][thread=51623]Rootkit.Win32.Pakes.wc[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3265 )[*][thread=37678]Trojan-Downloader.Win32.Agent.bzoe[/thread] -> c:\444\cr-keymaker.bak ( BitDefender: Trojan.Generic.2116805 )[*][thread=51597]Trojan-Downloader.Win32.Small.alyl[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.42450 )[*][thread=51466]Trojan-Dropper.Win32.Agent.azga[/thread] -> h:\windows.1\fonts\155a9b6e.exe ( DrWEB: Trojan.DownLoad.43135, BitDefender: Win32.Worm.Winko.I )[*][thread=51596]Trojan-Spy.Win32.Agent.qj[/thread] -> c:\windows\system32\serlibk.exe ( DrWEB: BackDoor.Monsh, BitDefender: Win32.Worm.Agent.AI )[*][thread=51596]Trojan-Spy.Win32.Agent.qj[/thread] -> c:\windows\system32\windfire.exe ( DrWEB: BackDoor.Monsh, BitDefender: Win32.Worm.Agent.AI )[*][thread=51466]Trojan.Win32.Agent.ctfa[/thread] -> h:\windows.1\system32\mstcpweb.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51466]Trojan.Win32.Agent.ctfm[/thread] -> h:\windows.1\fonts\9c1dfb8e.dll ( DrWEB: Trojan.DownLoad.43135, BitDefender: Win32.Worm.Winko.I )[*][thread=51597]Trojan.Win32.Agent.ctgq[/thread] -> c:\docume~1\админи~1\locals~1\temp\2.tmp[*][thread=51597]Trojan.Win32.Agent.ctgq[/thread] -> c:\docume~1\админи~1\locals~1\temp\7.tmp[*][thread=51466]Trojan.Win32.Agent.ctiy[/thread] -> h:\windows.1\system32\mswebsrv.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51595]Trojan.Win32.Buzus.bmrq[/thread] -> c:\documents and settings\marina\c2x6a39n3.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.Dropper.Agent.UOX )[*][thread=51266]Trojan.Win32.Refroso.dos[/thread] -> c:\windows\system32\drivers\zrxmgr.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=51597]Trojan.Win32.Vaklik.frc[/thread] -> c:\docume~1\админи~1\locals~1\temp\6.tmp[/LIST]
-
Отчет за период 08.08.2009 - 09.08.2009
[LIST][*][thread=51668]Backdoor.Win32.Bifrose.fqq[/thread] -> c:\recycler\s-1-5-21-8907215890-0286555544-459329734-4518\mwau.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Win32.Worm.Autorun.SZ )[*][thread=51668]Backdoor.Win32.Bifrose.fqq[/thread] -> c:\ad.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=51668]Backdoor.Win32.IRCBot.lav[/thread] -> c:\windows\system\dllcache.exe ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2095132 )[*][thread=51457]Backdoor.Win32.Poison.amoo[/thread] -> c:\f2o1b6n1y7d4.exe ( DrWEB: BackDoor.Poison.767, BitDefender: Trojan.Dialer.VYK )[*][thread=51596]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=51682]Backdoor.Win32.UltimateDefender.igv[/thread] -> e:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.0C4F928D )[*][thread=51668]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: BackDoor.IRC.Sdbot.4632 )[*][thread=51668]Net-Worm.Win32.Kolab.dii[/thread] -> c:\windows\sysmngsr322.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=51670]not-a-virus:WebToolbar.Win32.BitAccelerator.o[/thread] -> c:\program files\bitaccelerator\bitaccelerator.exe ( DrWEB: Adware.BitAcc.12, BitDefender: Adware.Accelerator.R )[*][thread=51520]Packed.Win32.Krap.r[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=51520]Packed.Win32.Krap.r[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=51520]Trojan-Clicker.Win32.Delf.cnx[/thread] -> c:\windows\system32\wintlpe.exe ( DrWEB: Trojan.Click.26134 )[*][thread=51520]Trojan-Clicker.Win32.Delf.cnx[/thread] -> c:\system volume information\_restore{f7e4dc3f-4ee3-465f-8f0f-1c2978a9244c}\rp377\a0075578.exe ( DrWEB: Trojan.Click.26134 )[*][thread=51652]Trojan-Downloader.Win32.Agent.cloa[/thread] -> c:\windows\system32\winagent.exe ( DrWEB: Trojan.Searcher.56 )[*][thread=51682]Trojan-Downloader.Win32.FraudLoad.fet[/thread] -> e:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=51520]Trojan-Downloader.Win32.Murlo.bpi[/thread] -> c:\windows\system32\svshost.dll ( DrWEB: Trojan.Starter.1056 )[*][thread=51658]Trojan-Downloader.Win32.Small.alzs[/thread] -> c:\windows\system32\tapi.nfo[*][thread=51646]Trojan-Dropper.Win32.Agent.azhz[/thread] -> c:\windows\system32\drivers\beep.sys[*][thread=51684]Trojan-GameThief.Win32.Magania.btpg[/thread] -> c:\docume~1\user\locals~1\temp\cvasds0.dll[*][thread=51684]Trojan-GameThief.Win32.Magania.btpg[/thread] -> c:\ktly.exe[*][thread=51684]Trojan-GameThief.Win32.Magania.btwz[/thread] -> c:\windows\system32\e8main0.dll[*][thread=51668]Trojan-Proxy.Win32.Agent.bqx[/thread] -> c:\windows\msrtm32.exe ( DrWEB: BackDoor.IRC.Sdbot.4632 )[*][thread=51504]Trojan-Spy.Win32.Goldun.azh[/thread] -> c:\windows\system32\asplug.dll ( DrWEB: Trojan.PWS.GoldSpy.2308, BitDefender: Trojan.Spy.Goldun.NDL )[*][thread=51504]Trojan-Spy.Win32.Zbot.exv[/thread] -> c:\windows\system32\twext.exe ( DrWEB: Trojan.PWS.Panda.12, BitDefender: Trojan.Spy.Agent.NXD )[*][thread=51658]Trojan-Spy.Win32.Zbot.zod[/thread] -> c:\windows\system32\sdra64.exe ( BitDefender: Trojan.Spy.ZBot.WF )[*][thread=51596]Trojan.Win32.Agent.ctgx[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe[*][thread=51596]Trojan.Win32.Agent.ctgx[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe[*][thread=51668]Trojan.Win32.Agent.ctiv[/thread] -> c:\recycler\s-1-5-21-9471482496-1178814166-090346692-0996\csvcs.exe ( DrWEB: BackDoor.IRC.Sdbot.4632 )[*][thread=51664]Trojan.Win32.Agent.ctqf[/thread] -> c:\windows\system32\drivers\jwrb.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=51634]Trojan.Win32.Buzus.brvs[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.114 )[*][thread=51679]Trojan.Win32.Buzus.bslz[/thread] -> c:\windows\system32\twex.exe[*][thread=51457]Trojan.Win32.Refroso.dos[/thread] -> c:\windows\system32\drivers\zrxmgr.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=16489]Worm.Win32.Fujack.n[/thread] -> \gamesetup.exe ( DrWEB: Win32.HLLP.Whboy, BitDefender: Win32.Worm.Fujacks.BA )[/LIST]
-
Отчет за период 09.08.2009 - 10.08.2009
[LIST][*][thread=51717]Backdoor.Win32.Agent.ajqs[/thread] -> c:\windows\system32\fz6d9avnhi\j002.exe ( DrWEB: BackDoor.Fanchi, BitDefender: Trojan.Rincux.AW )[*][thread=51717]Backdoor.Win32.Httpbot.xl[/thread] -> c:\windows\system32\winhelp32.exe ( DrWEB: BackDoor.Darkshell.96 )[*][thread=51717]Backdoor.Win32.PcClient.beii[/thread] -> c:\windows\system32\romptkc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51717]Backdoor.Win32.PcClient.beii[/thread] -> c:\windows\system32\rymttoc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51717]Backdoor.Win32.PcClient.beii[/thread] -> c:\windows\system32\rrmctxc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51717]Backdoor.Win32.PcClient.beii[/thread] -> c:\system volume information\_restore{338f2a33-b918-496a-8c5b-3a3a91e1aa87}\rp265\a0097852.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51717]Backdoor.Win32.PcClient.beii[/thread] -> c:\windows\system32\remvtgc.dll ( DrWEB: BackDoor.Siggen.138, BitDefender: Gen:Trojan.Heur.eC8@u4NrUWlb )[*][thread=51747]Backdoor.Win32.Poison.amoo[/thread] -> \f2o1b6n1y7d4.exe ( DrWEB: BackDoor.Poison.767, BitDefender: Trojan.Dialer.VYK )[*][thread=51682]Backdoor.Win32.Small.ejx[/thread] -> e:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=51717]Backdoor.Win32.Small.iey[/thread] -> c:\windows\system32\fz6d9avnhi\e001.exe ( DrWEB: BackDoor.Spy.37, BitDefender: Trojan.Rincux.AW )[*][thread=51717]Backdoor.Win32.Small.ifw[/thread] -> c:\windows\vtdfhgbfv.exe ( DrWEB: Trojan.DownLoad.42480, BitDefender: Gen:Trojan.Heur.PT.aeW@bCo7Y9m )[*][thread=51682]Backdoor.Win32.UltimateDefender.igv[/thread] -> e:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.0C4F928D )[*][thread=51686]IM-Worm.Win32.Agent.py[/thread] -> d:\vshost.exe ( BitDefender: Trojan.Spy.YAV )[*][thread=51686]IM-Worm.Win32.Agent.py[/thread] -> e:\vshost.exe ( BitDefender: Trojan.Spy.YAV )[*][thread=51686]IM-Worm.Win32.Agent.py[/thread] -> c:\vshost.exe ( BitDefender: Trojan.Spy.YAV )[*][thread=51704]not-a-virus:FraudTool.Win32.Agent.vq[/thread] -> c:\program files\trojan remover\rmt.dta.bak[*][thread=51670]not-a-virus:WebToolbar.Win32.BitAccelerator.o[/thread] -> c:\program files\bitaccelerator\bitaccelerator.exe ( DrWEB: Adware.BitAcc.12, BitDefender: Adware.Accelerator.R )[*][thread=51694]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=30339]Packed.Win32.Klone.bj[/thread] -> d:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=51520]Packed.Win32.Krap.r[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=51520]Packed.Win32.Krap.r[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=30339]Rootkit.Win32.Agent.mik[/thread] -> d:\windows\system32\drivers\hjgruihesrumoq.sys ( DrWEB: BackDoor.Tdss.266, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=51520]Trojan-Clicker.Win32.Delf.cnx[/thread] -> c:\system volume information\_restore{f7e4dc3f-4ee3-465f-8f0f-1c2978a9244c}\rp377\a0075578.exe ( DrWEB: Trojan.Click.26134 )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckyf[/thread] -> c:\windows\system32\i\k001.exe ( DrWEB: BackDoor.Fanchi, BitDefender: Trojan.Rincux.AW )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckyf[/thread] -> c:\windows\system32\i\j002.exe ( DrWEB: BackDoor.Fanchi, BitDefender: Trojan.Rincux.AW )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckyf[/thread] -> c:\windows\system32\sdfjh17kcm\j002.exe ( DrWEB: BackDoor.Fanchi, BitDefender: Trojan.Rincux.AW )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckyp[/thread] -> c:\windows\atevxx.exe ( DrWEB: Trojan.DownLoad.42419 )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckzb[/thread] -> c:\windows\system32\5mm6qplij4\j001.exe ( BitDefender: Trojan.Rincux.AW )[*][thread=51717]Trojan-Downloader.Win32.Agent.ckzd[/thread] -> c:\windows\system32\0529m7ajvm\j002.exe ( BitDefender: Trojan.Rincux.AW )[*][thread=51722]Trojan-Downloader.Win32.Agent.cltr[/thread] -> c:\windows\system32\braviax.exe[*][thread=51519]Trojan-Downloader.Win32.Agent.cltw[/thread] -> c:\docume~1\aleksa~1.000\isxdes~1\attarx.ocx[*][thread=51717]Trojan-Downloader.Win32.Apher.gmf[/thread] -> c:\windows\system32\tgsno.exe ( DrWEB: Trojan.DownLoad.41529, BitDefender: Trojan.Downloader.Agent.AAQE )[*][thread=51682]Trojan-Downloader.Win32.FraudLoad.fet[/thread] -> e:\windows\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=51520]Trojan-Downloader.Win32.Murlo.bpi[/thread] -> c:\windows\system32\svshost.dll ( DrWEB: Trojan.Starter.1056 )[*][thread=51717]Trojan-Downloader.Win32.Small.kbo[/thread] -> c:\windows\clfile.exe ( DrWEB: Trojan.DownLoad.42481, BitDefender: Trojan.Downloader.JMFI )[*][thread=51717]Trojan-Downloader.Win32.Small.kbo[/thread] -> c:\windows\clile.exe ( DrWEB: Trojan.DownLoad.42481, BitDefender: Trojan.Downloader.JMFI )[*][thread=51717]Trojan-Downloader.Win32.Small.kbo[/thread] -> c:\windows\clfdfle.exe ( DrWEB: Trojan.DownLoad.42481, BitDefender: Trojan.Downloader.JMFI )[*][thread=51717]Trojan-Dropper.Win32.Agent.aywc[/thread] -> c:\windows\fonts\44bd1f80.dll ( BitDefender: Win32.Worm.Winko.I )[*][thread=51717]Trojan-Dropper.Win32.Agent.azht[/thread] -> c:\windows\fonts\e4a4ef00.exe ( DrWEB: Trojan.Siggen.3272, BitDefender: Win32.Worm.Winko.I )[*][thread=51731]Trojan-Spy.Win32.Zbot.aacg[/thread] -> c:\windows\system32\sdra64.exe[*][thread=51717]Trojan.Win32.Agent.ctfa[/thread] -> c:\windows\system32\mstcpweb.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=51704]Trojan.Win32.Agent.ctpp[/thread] -> c:\windows\system32\dllhost.exe[*][thread=51551]Trojan.Win32.Agent.ctpu[/thread] -> c:\windows\system32\drivers\sccspdrv.sys[*][thread=51376]Trojan.Win32.Agent.ctqf[/thread] -> h:\recycler\s-51-9-25-3434476501-1644491922-601013333-1214\jwrb.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=51682]Trojan.Win32.FraudPack.pwx[/thread] -> e:\program files\homeantivirus2010\homeantivirus2010.exe ( DrWEB: Trojan.Fakealert.4708, BitDefender: Gen:Trojan.Heur.Iq1@vXugZaeix )[*][thread=51682]Trojan.Win32.FraudPack.qas[/thread] -> e:\program files\homeantivirus2010\avengn.dll ( DrWEB: Trojan.Fakealert.4709 )[*][thread=51687]Trojan.Win32.Tdss.amss[/thread] -> c:\windows\system32\skynetwmixeteh.dll ( DrWEB: BackDoor.Tdss.370 )[*][thread=51687]Trojan.Win32.Tdss.amst[/thread] -> c:\windows\system32\skynetipplswwu.dll ( DrWEB: BackDoor.Tdss.268 )[/LIST]
-
Отчет за период 10.08.2009 - 11.08.2009
[LIST][*][thread=51717]Backdoor.Win32.Agent.ajcb[/thread] -> c:\system volume information\_restore{338f2a33-b918-496a-8c5b-3a3a91e1aa87}\rp272\a0115192.exe ( DrWEB: BackDoor.RemoteABC.9 )[*][thread=51717]Backdoor.Win32.Agent.ajcb[/thread] -> c:\system volume information\_restore{338f2a33-b918-496a-8c5b-3a3a91e1aa87}\rp272\a0115193.exe ( DrWEB: BackDoor.RemoteABC.9 )[*][thread=51745]Backdoor.Win32.Bifrose.fqq[/thread] -> c:\recycler\s-1-5-21-1041603392-1826409077-899792185-8809\mwau.exe ( DrWEB: BackDoor.IRC.Letmein.13, BitDefender: Win32.Worm.Autorun.SZ )[*][thread=51751]Backdoor.Win32.Bredolab.dt[/thread] -> c:\documents and settings\юрий иванович\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=51749]Backdoor.Win32.Bredolab.fo[/thread] -> f:\documents and settings\леша\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=51376]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\smiqxjz.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen )[*][thread=37678]Net-Worm.Win32.Kido.ih[/thread] -> \jwgkvsq.vmx ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Worm.Generic.44501 )[*][thread=51818]Rootkit.Win32.Agent.ome[/thread] -> c:\windows\system32\drivers\pcidump.sys[*][thread=51751]Rootkit.Win32.Pakes.wc[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3265 )[*][thread=51790]Trojan-Downloader.Win32.FraudLoad.fet[/thread] -> c:\windows\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=51818]Trojan-Downloader.Win32.Ogran.c[/thread] -> c:\windows\gsrdgt.exe ( DrWEB: BackDoor.ClDdos.origin )[*][thread=51818]Trojan-Downloader.Win32.Ogran.c[/thread] -> c:\windows\tdhy.exe ( DrWEB: BackDoor.ClDdos.origin )[*][thread=51818]Trojan-Downloader.Win32.Ogran.c[/thread] -> c:\windows\ati2evxp.exe ( DrWEB: BackDoor.ClDdos.origin )[*][thread=51818]Trojan-Dropper.Win32.Agent.azga[/thread] -> c:\windows\fonts\821dd18c.exe ( DrWEB: Trojan.DownLoad.43135, BitDefender: Win32.Worm.Winko.I )[*][thread=51827]Trojan-Ransom.Win32.PornoBro.au[/thread] -> c:\windows\services.exe[*][thread=51504]Trojan-Spy.Win32.Goldun.azi[/thread] -> c:\windows\system32\asplg.sys ( BitDefender: Trojan.Spy.Goldun.NDM )[*][thread=51818]Trojan.Win32.Agent.ctfm[/thread] -> c:\windows\fonts\6ec0c97b.dll ( DrWEB: Trojan.DownLoad.43135, BitDefender: Win32.Worm.Winko.I )[*][thread=51376]Trojan.Win32.Agent.ctqf[/thread] -> h:\recycler\s-51-9-25-3434476501-1644491922-601013333-1214\jwrb.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=51376]Trojan.Win32.Agent.ctqf[/thread] -> c:\windows\system32\drivers\jwrb.exe ( DrWEB: BackDoor.IRC.Letmein.12 )[*][thread=51819]Trojan.Win32.Agent.ctus[/thread] -> c:\program files\webmoney\setupapi.dll ( DrWEB: Trojan.PWS.Webmonier.60, BitDefender: Gen:Trojan.Heur.GM.4004010520 )[*][thread=51818]Trojan.Win32.Agent2.chlv[/thread] -> c:\windows\system32\iqzppfpdfw.dll[*][thread=37678]Trojan.Win32.Smardf.jxm[/thread] -> \avz00012.dta[*][thread=51751]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fKiz2rl )[/LIST]
-
Отчет за период 11.08.2009 - 12.08.2009
[LIST][*][thread=51866]Backdoor.Win32.Bredolab.fv[/thread] -> h:\documents and settings\1\главное меню\программы\автозагрузка\hcgwin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=51858]Backdoor.Win32.UltimateDefender.igv[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.0C4F928D )[*][thread=51861]Net-Worm.Win32.Kolab.dkg[/thread] -> c:\windows\system32\drivers\winlogon.exe ( DrWEB: Trojan.Packed.2483 )[*][thread=51848]not-a-virus:AdWare.Win32.Webalt.h[/thread] -> c:\progra~1\webalta\webalt~2.dll ( DrWEB: Trojan.Mycentria.32, BitDefender: Application.Generic.30121 )[*][thread=51848]not-a-virus:AdWare.Win32.Webalt.h[/thread] -> c:\progra~1\webalta\webaltaadshunter.dll ( DrWEB: Trojan.Mycentria.32, BitDefender: Application.Generic.30121 )[*][thread=51848]not-a-virus:AdWare.Win32.Webalt.j[/thread] -> c:\progra~1\webalta\webaltatoolbar.dll ( BitDefender: Application.Generic.174374 )[*][thread=51848]not-a-virus:AdWare.Win32.Webalt.j[/thread] -> c:\progra~1\webalta\webalt~1.dll ( BitDefender: Application.Generic.174374 )[*][thread=51916]not-a-virus:Client-IRC.Win32.mIRC.601[/thread] -> c:\windows\system32\iexplorer.exe ( DrWEB: Program.mIRC.601 )[*][thread=37678]not-a-virus:PSWTool.Win32.PassView.150RC4[/thread] -> c:\users\02\downloads\password\passview\новая папка\passview.exe ( DrWEB: Tool.PassView.39, BitDefender: Trojan.Pws.Ldpinch.DH )[*][thread=51837]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.9837, BitDefender: Gen:Trojan.Heur.AutoIT.Tq3@bKG2l!oO )[*][thread=51848]Rootkit.Win32.Agent.lsf[/thread] -> c:\windows\system32\afd.dll ( DrWEB: Trojan.NtRootKit.2931, BitDefender: Trojan.Generic.2084292 )[*][thread=51858]Rootkit.Win32.HareBot.cv[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fWQ1qko )[*][thread=51866]Trojan-Banker.Win32.Bancos.fkn[/thread] -> h:\windows\system32\sdra64.exe[*][thread=51881]Trojan-Banker.Win32.Bancos.fls[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.122 )[*][thread=51738]Trojan-Clicker.Win32.Delf.cbe[/thread] -> c:\windows\system32\xyeoaffs.bak ( DrWEB: Trojan.Virtumod.1667, BitDefender: Trojan.Generic.2138504 )[*][thread=51873]Trojan-Downloader.Win32.Agent.clko[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.DownLoad.43186 )[*][thread=51858]Trojan-Downloader.Win32.FraudLoad.fet[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=51858]Trojan-Downloader.Win32.Mutant.eeb[/thread] -> c:\documents and settings\администратор\msword98.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51858]Trojan-Downloader.Win32.Mutant.eeb[/thread] -> c:\windows\system32\msword98.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51866]Trojan-Downloader.Win32.Small.alzl[/thread] -> h:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.43149 )[*][thread=51848]Trojan-Downloader.Win32.Small.jvn[/thread] -> c:\windows\system32\calc.ifo ( DrWEB: Trojan.DownLoad.38479, BitDefender: Trojan.Downloader.Agent.AAOL )[*][thread=51866]Trojan-Spy.Win32.Goldun.cos[/thread] -> h:\windows\system32\rtadtm.dll ( BitDefender: Trojan.Spy.Goldun.NCN )[*][thread=51848]Trojan-Spy.Win32.Zbot.wwo[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.114, BitDefender: Trojan.Generic.2058806 )[*][thread=51837]Trojan.Win32.Agent.ckda[/thread] -> c:\windows\system32\1041a.exe ( DrWEB: BackDoor.IRC.Bot.114, BitDefender: Trojan.Generic.IS.509408 )[*][thread=51837]Trojan.Win32.Agent.ckqu[/thread] -> c:\documents and settings\skydancer\главное меню\программы\автозагрузка\rncsys32.exe ( DrWEB: Trojan.Botnetlog.11, BitDefender: Trojan.Generic.1989825 )[*][thread=51738]Trojan.Win32.Agent.cubg[/thread] -> c:\windows\system32\pnlpxsq.bak ( DrWEB: Trojan.Packed.2473, BitDefender: Trojan.Boaxxe.P )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\tpxgzf.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\hkhzwe.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\qqeghn.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\vwwzpu.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\daligc.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\ixlcoh.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\rrtspd.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\ujiomc.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51837]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\gmjdim.dll ( DrWEB: Trojan.Annoy.21 )[*][thread=51909]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fm304xh )[*][thread=50746]Worm.Win32.VB.asy[/thread] -> c:\re\back\bck.exe ( DrWEB: Trojan.MulDrop.33182 )[/LIST]
-
Отчет за период 12.08.2009 - 13.08.2009
[LIST][*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\lsass.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\services.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\smss.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\windows\shellnew\rakyatkelaparan.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\templates\brengkolang.com ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\networkservice\local settings\application data\smss.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\windows\kesenjangansosial.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\start menu\programs\startup\empty.pif ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\winlogon.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Joleee.coz[/thread] -> c:\windows\system32\servises.exe ( DrWEB: Trojan.Spambot.4465, BitDefender: Trojan.Waledac.DA )[*][thread=37678]Net-Worm.Win32.Kido.ih[/thread] -> g:\recycler\s-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx ( DrWEB: Win32.HLLW.Autoruner.5555, BitDefender: Worm.Generic.73270 )[*][thread=51837]Packed.Win32.Klone.bj[/thread] -> m:\jhmeas.exe ( DrWEB: Win32.HLLW.Autohit.9837, BitDefender: Gen:Trojan.Heur.AutoIT.Tq3@bKG2l!oO )[*][thread=51837]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.9837, BitDefender: Gen:Trojan.Heur.AutoIT.Tq3@bKG2l!oO )[*][thread=51837]Packed.Win32.Klone.bj[/thread] -> m:\mvewmm.exe ( DrWEB: Win32.HLLW.Autohit.9837, BitDefender: Gen:Trojan.Heur.AutoIT.Tq3@bKG2l!oO )[*][thread=42572]Packed.Win32.Klone.bj[/thread] -> \sqryys.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=51921]Trojan-Downloader.Win32.FraudLoad.ffp[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=51973]Trojan-Downloader.Win32.Mutant.edz[/thread] -> c:\documents and settings\artur kulchiyev\msword98.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51973]Trojan-Downloader.Win32.Mutant.edz[/thread] -> c:\windows\system32\msword98.exe ( DrWEB: Trojan.DownLoad.41506 )[*][thread=51848]Trojan-PSW.Win32.Agent.npx[/thread] -> c:\program files\common files\system\webcheck.dll ( DrWEB: Trojan.Mifesto, BitDefender: Trojan.Generic.2195466 )[*][thread=51986]Trojan-Ransom.Win32.PornoBro.aw[/thread] -> c:\windows\services.exe[*][thread=51837]Trojan.Win32.AutoRun.v[/thread] -> m:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\lsass.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\svсhоst.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\smss.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\аhtоmsys19.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51852]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19224 )[*][thread=51921]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404 )[*][thread=51922]Virus.Win32.Sality.aa[/thread] -> c:\documents and settings\all users\application data\tuneup software\tuneup utilities\winstyler\tu_logonui.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG )[*][thread=51922]Virus.Win32.Sality.aa[/thread] -> c:\windows\system32\rundll32.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG )[*][thread=51922]Virus.Win32.Sality.aa[/thread] -> c:\windows\system32\regsvr32.exe ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG )[*][thread=52000]Worm.Win32.Agent.ww[/thread] -> c:\windows\system32\12619734.exe ( DrWEB: Trojan.DownLoad.38696, BitDefender: Trojan.Generic.2135442 )[*][thread=51977]Worm.Win32.AutoRun.atui[/thread] -> c:\lin\ux\setup.exe ( DrWEB: Trojan.Winlock.221 )[/LIST]
-
Отчет за период 13.08.2009 - 14.08.2009
[LIST][*][thread=51923]Backdoor.Win32.PcClient.bevd[/thread] -> c:\windows\p.exe ( BitDefender: Backdoor.PCClient.TCH )[*][thread=52031]Backdoor.Win32.UltimateDefender.xm[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.80497AAE )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\templates\brengkolang.com ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\windows\shellnew\rakyatkelaparan.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\services.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\lsass.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\windows\kesenjangansosial.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=51992]Email-Worm.Win32.Brontok.q[/thread] -> c:\documents and settings\safeqreliable2\local settings\application data\winlogon.exe ( DrWEB: Win32.HLLM.Brontok.15, BitDefender: Win32.Generic.5381 )[*][thread=52018]IRC-Worm.Win32.Small.y[/thread] -> c:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\isew32.exe ( DrWEB: BackDoor.IRC.Flood.8, BitDefender: Backdoor.IRC.ZGE )[*][thread=51904]Net-Worm.Win32.Kolab.dkg[/thread] -> c:\windows\system32\drivers\winlogon.exe ( DrWEB: Trojan.Packed.2483 )[*][thread=52063]Net-Worm.Win32.Kolab.dkg[/thread] -> c:\windows\system32\drivers\winlogon.exe ( DrWEB: Trojan.Packed.2483 )[*][thread=52067]Rootkit.Win32.Agent.ome[/thread] -> c:\windows\system32\drivers\pcidump.sys[*][thread=52031]Trojan-Downloader.Win32.FraudLoad.fft[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=52067]Trojan-PSW.Win32.Bjlog.ajd[/thread] -> c:\windows\system32\vsxna.map[*][thread=51966]Trojan-Ransom.Win32.PornoBro.ax[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Blackmailer.1338 )[*][thread=51825]Trojan.Win32.Agent.crez[/thread] -> \\?\globalroot\systemroot\system32\geyekrxdltkohl.dll ( DrWEB: BackDoor.Tdss.333, BitDefender: Trojan.CryptRedol.Gen.2 )[*][thread=52058]Trojan.Win32.Dialer.eyp[/thread] -> c:\documents and settings\администратор.бухгалтер\local settings\temporary internet files\content.ie5\u90doj8v\clear[1].mp3 ( DrWEB: Trojan.Packed.2483 )[*][thread=52031]Trojan.Win32.FraudPack.qfw[/thread] -> c:\program files\pc_antispyware2010\pc_antispyware2010.exe ( BitDefender: Gen:Trojan.Heur.Jq2@v9KCmGmix )[*][thread=52067]Trojan.Win32.KillAV.eeu[/thread] -> c:\windows\system32\pn6kuve0b4\j002.exe[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\smss.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\аhtоmsys19.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\svсhоst.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\hv956253.dll ( DrWEB: Win32.Sector.4, BitDefender: Trojan.Crypt.HO )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\deter177\lsass.exe ( DrWEB: Win32.Sector.4, BitDefender: Win32.Kashu.A )[*][thread=52031]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404 )[*][thread=52103]Worm.Win32.AutoRun.gnn[/thread] -> c:\windows\system32\logon.exe ( BitDefender: Gen:Trojan.Heur.bm1@zi1H2Bci )[/LIST]
-
Отчет за период 14.08.2009 - 15.08.2009
[LIST][*][thread=52146]Backdoor.Win32.Small.xd[/thread] -> c:\windows\system32\drivers\nups.sys[*][thread=51941]not-a-virus:Server-FTP.Win32.SFH.s[/thread] -> c:\dokumente und einstellungen\vladi\desktop\hfs.exe[*][thread=52114]Trojan-GameThief.Win32.OnLineGames.vkxx[/thread] -> c:\windows\system32\syssm.exe[*][thread=52115]Trojan-Spy.Win32.Agent.azes[/thread] -> c:\windows\temp\bn13.tmp[*][thread=52115]Trojan-Spy.Win32.Agent.azes[/thread] -> c:\windows\temp\bnf.tmp[*][thread=52149]Trojan-Spy.Win32.Zbot.zzf[/thread] -> c:\windows\system32\sdra64.exe[*][thread=52038]Trojan.Win32.Agent.ctan[/thread] -> c:\windows\system32\wbem\svchost.exe[*][thread=52121]Trojan.Win32.AutoRun.w[/thread] -> h:\autorun.inf[*][thread=52132]Trojan.Win32.BHO.xtl[/thread] -> c:\programme\adobe\adrouter.dll ( DrWEB: Trojan.Click.26668 )[*][thread=52031]Trojan.Win32.FraudPack.qhx[/thread] -> c:\program files\pc_antispyware2010\pc_antispyware2010.exe ( DrWEB: Trojan.Fakealert.4776, BitDefender: Gen:Trojan.Heur.Jq2@vfbm0Nhix )[*][thread=52115]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404 )[/LIST]
-
Отчет за период 15.08.2009 - 16.08.2009
[LIST][*][thread=52152]Backdoor.Win32.Agent.ajqs[/thread] -> c:\windows\system32\s3dr5ekf7z\j001.exe ( DrWEB: BackDoor.Fanchi, BitDefender: Trojan.Rincux.AW )[*][thread=52196]Backdoor.Win32.Bredolab.cv[/thread] -> c:\documents and settings\user\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=52152]Backdoor.Win32.Hupigon.htef[/thread] -> c:\windows\utilg15.exe ( DrWEB: BackDoor.Pigeon.17279, BitDefender: GenPack:Backdoor.Hupigon.ZUW )[*][thread=52152]Backdoor.Win32.Nepoe.jn[/thread] -> c:\windows\system32\isass.exe ( DrWEB: BackDoor.IRC.Sdbot.945, BitDefender: Backdoor.IRCBot.ACTN )[*][thread=52187]HEUR:Worm.Win32.Generic[/thread] -> c:\windows\system32\newone\xiantoubudui.exe ( BitDefender: Generic.Malware.Tk.63A7AEDF )[*][thread=52153]Net-Worm.Win32.Kolab.dkg[/thread] -> c:\windows\system32\drivers\winlogon.exe ( DrWEB: Trojan.Packed.2483 )[*][thread=52152]Rootkit.Win32.Agent.nil[/thread] -> c:\windows\system32\drivers\wmisvc.sys ( DrWEB: Win32.HLLW.Autoruner.7210, BitDefender: Rootkit.Agent.AJAQ )[*][thread=52152]Trojan-Downloader.Win32.Agent.clwc[/thread] -> c:\windows\system32\mspmsnsv.dll ( BitDefender: Generic.Malware.P!dld.F67ECA79 )[*][thread=52152]Trojan-Downloader.Win32.Agent.clwc[/thread] -> c:\windows\system32\appmgmts.dll ( BitDefender: Generic.Malware.P!dld.F67ECA79 )[*][thread=52152]Trojan-Downloader.Win32.Agent.cmaj[/thread] -> c:\windows\system32\6qyme7t991\j001.exe ( BitDefender: Trojan.Rincux.AW )[*][thread=52152]Trojan-Downloader.Win32.Small.jmn[/thread] -> c:\windows\system32\userinit.exe ( DrWEB: Trojan.MulDrop.32667, BitDefender: Trojan.Crypt.CY )[*][thread=52196]Trojan-Dropper.Win32.Agent.ayzp[/thread] -> c:\windows\system32\hp32_nword.exe ( DrWEB: Trojan.MulDrop.33201, BitDefender: Trojan.Agent.ANHR )[*][thread=52196]Trojan-Dropper.Win32.Agent.ayzp[/thread] -> c:\documents and settings\user\hp32_nword.exe ( DrWEB: Trojan.MulDrop.33201, BitDefender: Trojan.Agent.ANHR )[*][thread=52152]Trojan-GameThief.Win32.Magania.bfux[/thread] -> c:\windows\system32\704c3595.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.2CD9ACE9 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bfuy[/thread] -> c:\windows\system32\gu6f5sw42mdc.dll ( DrWEB: Trojan.PWS.Wsgame.12109, BitDefender: Generic.Onlinegames.14.8FE6167B )[*][thread=52152]Trojan-GameThief.Win32.Magania.bfva[/thread] -> c:\windows\system32\76b9ba7a.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.0A29A451 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bgjv[/thread] -> c:\windows\system32\2ef0d734.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.140AE7CD )[*][thread=52152]Trojan-GameThief.Win32.Magania.bhmy[/thread] -> c:\windows\system32\cduauvkgy9.dll ( DrWEB: Trojan.PWS.Wsgame.12115, BitDefender: Generic.Onlinegames.14.C385D75E )[*][thread=52152]Trojan-GameThief.Win32.Magania.birm[/thread] -> c:\windows\system32\va7spuwgca5f.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.PWS.OnlineGames.KCPP )[*][thread=52152]Trojan-GameThief.Win32.Magania.blxa[/thread] -> c:\windows\system32\ed78ab9.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.8D6D6245 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bmbr[/thread] -> c:\windows\system32\ndxq9awmc.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.2B5853EE )[*][thread=52152]Trojan-GameThief.Win32.Magania.bmec[/thread] -> c:\windows\system32\wcctgj4zcxhf.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.59921689 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bmst[/thread] -> c:\windows\system32\jbn2ypqy23vwx.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.E005BFCF )[*][thread=52152]Trojan-GameThief.Win32.Magania.bnpn[/thread] -> c:\windows\fonts\juxfqjdwmfqehcy2.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.F6F584CD )[*][thread=52152]Trojan-GameThief.Win32.Magania.bogc[/thread] -> c:\windows\system32\y4npjwjnr.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.PWS.OnlineGames.KCRW )[*][thread=52152]Trojan-GameThief.Win32.Magania.bouf[/thread] -> c:\windows\fonts\bqgc5yhmsd4yd.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.40386ADD )[*][thread=52152]Trojan-GameThief.Win32.Magania.bouk[/thread] -> c:\windows\system32\empppccsa8gtjurjn.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.DA46ACC0 )[*][thread=52152]Trojan-GameThief.Win32.Magania.boul[/thread] -> c:\windows\fonts\vds9ae5g5fmed.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.46D7722E )[*][thread=52152]Trojan-GameThief.Win32.Magania.bprl[/thread] -> c:\windows\fonts\nppvwvyeyce8h.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.32D6B462 )[*][thread=52152]Trojan-GameThief.Win32.Magania.brwo[/thread] -> c:\windows\fonts\a97cracb.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.F34496E2 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bsdj[/thread] -> c:\windows\system32\08223b03.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.BD0B5F3E )[*][thread=52152]Trojan-GameThief.Win32.Magania.bskk[/thread] -> c:\windows\system32\dhdhws7ffw.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.FFC1A7FB )[*][thread=52152]Trojan-GameThief.Win32.Magania.bsov[/thread] -> c:\windows\system32\scevfjrcmab7.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.0A2CE808 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bsuw[/thread] -> c:\windows\system32\jy8sgunwqbzb3x2bphy.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.C91FC1F8 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bsyl[/thread] -> c:\windows\system32\z5wrxqhagksjxwt.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.54BBB07D )[*][thread=52152]Trojan-GameThief.Win32.Magania.btsz[/thread] -> c:\windows\system32\crsaqd4hw.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.87738A57 )[*][thread=52152]Trojan-GameThief.Win32.Magania.btww[/thread] -> c:\windows\system32\qh6xx7vn48svpnk.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.5E75D776 )[*][thread=52152]Trojan-GameThief.Win32.Magania.btwy[/thread] -> c:\windows\system32\enyn5x48hrtxc.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.498874C7 )[*][thread=52152]Trojan-GameThief.Win32.Magania.btzn[/thread] -> c:\windows\system32\q9q2mhj3utberm7wc.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.96BADEA5 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bueq[/thread] -> c:\windows\system32\emhnpubaaf7xjuxbbdxsg.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.DC3F0B1A )[*][thread=52152]Trojan-GameThief.Win32.Magania.bueq[/thread] -> c:\windows\system32\comres.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.DC3F0B1A )[*][thread=52152]Trojan-GameThief.Win32.Magania.bumi[/thread] -> c:\windows\system32\w7uds3zyayg9.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.80A8EDC3 )[*][thread=52152]Trojan-GameThief.Win32.Magania.bunv[/thread] -> c:\windows\system32\mfr9fpruefz9vndrvejunw3.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.457DFB51 )[*][thread=52152]Trojan-GameThief.Win32.Magania.butb[/thread] -> c:\windows\system32\btmband89jc9pspq5eknj.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.961B471C )[*][thread=52152]Trojan-GameThief.Win32.Magania.buvg[/thread] -> c:\windows\system32\emfvcsfcrkarfbbtqw5v5.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.E84C34B4 )[*][thread=52152]Trojan-GameThief.Win32.Magania.buzp[/thread] -> c:\windows\system32\bmsg6pdmd4ht.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Lmir.888759BE )[*][thread=52152]Trojan-GameThief.Win32.OnLineGames.abrf.a[/thread] -> c:\windows\temp\tmp.tmp ( DrWEB: Trojan.DownLoad.40413, BitDefender: Trojan.Crypt.CY )[*][thread=52152]Trojan-GameThief.Win32.OnLineGames.bmnx[/thread] -> c:\windows\system32\rfpz9wwyy2np.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.A9AB0DF0 )[*][thread=52196]Trojan.Win32.Agent.ctgx[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe ( DrWEB: Trojan.DownLoad.43139 )[*][thread=52152]Trojan.Win32.Agent2.chlv[/thread] -> c:\windows\system32\uffpvkupjdk.dll ( DrWEB: Trojan.DownLoad.43949 )[*][thread=52172]Trojan.Win32.TDSS.anfh[/thread] -> c:\windows\system32\drivers\skynetmqxsbvpw.sys[*][thread=52152]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Gen:Rootkit.Heur.LmW@fSiHyto )[*][thread=52152]Worm.Win32.AutoRun.afcb[/thread] -> c:\windows\system\ming9b090423.exe ( DrWEB: Trojan.PWS.Gamania.19081, BitDefender: Generic.Malware.SP!g.C3EBC8E8 )[*][thread=52152]Worm.Win32.AutoRun.ghr[/thread] -> c:\windows\system32\6to4.dll ( DrWEB: Win32.HLLW.Autoruner.7210, BitDefender: Generic.Malware.P!WdldPk!.C0AF0B91 )[/LIST]
-
Отчет за период 16.08.2009 - 17.08.2009
[LIST][*][thread=52276]Backdoor.Win32.Agent.ajyu[/thread] -> c:\windows\system32\drivers\qpk9488.sys[*][thread=52099]Backdoor.Win32.Bredolab.gf[/thread] -> c:\documents and settings\инсайт\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=52271]Backdoor.Win32.DeAlfa.cy[/thread] -> c:\windows\system32\riodrv.exe ( DrWEB: Trojan.PWS.Porn, BitDefender: Trojan.Generic.2135848 )[*][thread=52265]Backdoor.Win32.Small.ejx[/thread] -> c:\winxp\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=52249]Backdoor.Win32.Small.xd[/thread] -> c:\windows\system32\drivers\nups.sys[*][thread=52265]Backdoor.Win32.UltimateDefender.xm[/thread] -> c:\winxp\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.80497AAE )[*][thread=52299]Net-Worm.Win32.Kolab.dly[/thread] -> c:\windows\system32\drivers\dllhost.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52265]Trojan-Downloader.Win32.FraudLoad.fft[/thread] -> c:\winxp\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=52265]Trojan-Downloader.Win32.FraudLoad.fft[/thread] -> c:\winxp\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=52239]Trojan-Downloader.Win32.FraudLoad.fge[/thread] -> e:\wind2009\temp\bn1c.tmp[*][thread=52264]Trojan-Downloader.Win32.FraudLoad.fgk[/thread] -> c:\windows\system32\braviax.exe[*][thread=52276]Trojan-Dropper.Win32.Agent.bagp[/thread] -> c:\windows\system32\drivers\svchost.exe ( DrWEB: Trojan.Click.25482 )[*][thread=37678]Trojan-Dropper.Win32.Agent.balg[/thread] -> \foto20.scr ( DrWEB: Trojan.MulDrop.30762 )[*][thread=52299]Trojan-Proxy.Win32.Agent.bjd[/thread] -> c:\windows\microsoft.net\zpx2.exe ( DrWEB: Trojan.Proxy.5126, BitDefender: Trojan.Generic.1746456 )[*][thread=52276]Trojan-Proxy.Win32.Agent.bro[/thread] -> c:\windows\system32\ipcmd.dll ( BitDefender: Gen:Trojan.Heur.PT.dmOfb4UMA0h )[*][thread=52276]Trojan-PSW.Win32.WebMoner.jh[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=52299]Trojan-Ransom.Win32.Hexzone.agn[/thread] -> c:\documents and settings\all users\application data\llglib.dll ( DrWEB: Trojan.Blackmailer.1005, BitDefender: Gen:Adware.Heur.FC8@vWamBWic )[*][thread=52276]Trojan-Spy.Win32.Zbot.aaga[/thread] -> c:\windows\system32\sdra64.exe[*][thread=52281]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177 )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\hv956253.dll ( DrWEB: Win32.Sector.4, BitDefender: Trojan.Crypt.HO )[*][thread=51943]Trojan.Win32.KillAV.nk[/thread] -> c:\windows\system32\nn297181.dll ( DrWEB: Win32.Sector.4, BitDefender: Trojan.Crypt.HO )[*][thread=52228]Trojan.Win32.Obfuscated.ahli[/thread] -> c:\windows\system32\svchost.exe:ext.exe ( BitDefender: Trojan.Ozdok.F )[*][thread=52228]Trojan.Win32.Obfuscated.ahli[/thread] -> c:\windows\system32\svchost.exe:ext.exe:$data ( BitDefender: Trojan.Ozdok.F )[*][thread=52228]Trojan.Win32.Obfuscated.ahli[/thread] -> c:\windows\system32\dllcache\svchost.exe:ext.exe:$data ( BitDefender: Trojan.Ozdok.F )[*][thread=52203]Trojan.Win32.TDSS.anxz[/thread] -> c:\windows\system32\drivers\kbiwkmwqerdvka.sys[*][thread=52210]Trojan.Win32.TDSS.aodd[/thread] -> c:\windows\system32\drivers\skynetfucbfomv.sys[*][thread=52276]Virus.Win32.Induc.a[/thread] -> c:\windows\system32\riodrv.exe[*][thread=52264]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404 )[*][thread=52265]Virus.Win32.Protector.c[/thread] -> c:\winxp\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.A )[*][thread=52271]Virus.Win32.Sality.aa[/thread] -> e:\hlau.exe ( DrWEB: Win32.Sector.17, BitDefender: Win32.Sality.OG )[*][thread=52271]Virus.Win32.Sality.aa[/thread] -> f:\rxcnnk.pif ( DrWEB: Win32.Sector.17, BitDefender: Win32.Sality.OG )[*][thread=52271]Worm.Win32.Agent.ww[/thread] -> c:\windows\system32\bmpndrv.exe ( DrWEB: Trojan.DownLoad.38696, BitDefender: Trojan.Generic.2135442 )[*][thread=52271]Worm.Win32.AutoRun.gnr[/thread] -> e:\autorun.inf[*][thread=52271]Worm.Win32.AutoRun.gns[/thread] -> f:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[/LIST]
-
Отчет за период 17.08.2009 - 18.08.2009
[LIST][*][thread=52327]Backdoor.Win32.Kbot.tc[/thread] -> c:\windows\system32\vhosts.exe ( DrWEB: BackDoor.Dax.47 )[*][thread=52332]Backdoor.Win32.Kbot.td[/thread] -> c:\windows\system32\vhosts.exe[*][thread=52264]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=52253]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=52264]Backdoor.Win32.UltimateDefender.xm[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.80497AAE )[*][thread=52315]Net-Worm.Win32.Kolab.dlw[/thread] -> c:\windows\system32\drivers\syslog.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52253]not-a-virus:FraudTool.Win32.XPSecurityCenter.dj[/thread] -> c:\windows\system32\_scui.cpl ( DrWEB: Trojan.Fakealert.4739, BitDefender: Trojan.FakeAlert.BIJ )[*][thread=51941]not-a-virus:Server-FTP.Win32.SFH.s[/thread] -> c:\documents and settings\1\рабочий стол\oppositions\http host on local comp\hfs.exe[*][thread=52332]Rootkit.Win32.Agent.ozv[/thread] -> c:\windows\system32\drivers\flq794a.sys ( BitDefender: Rootkit.Otlard.A )[*][thread=52257]Trojan-Downloader.Win32.FraudLoad.fem[/thread] -> c:\windows\system32\wisdstr.exe ( BitDefender: Gen:Trojan.Heur.lq1@vnMWkFiix )[*][thread=52307]Trojan-Downloader.Win32.FraudLoad.fez[/thread] -> c:\windows\system32\winupdate.exe ( BitDefender: Trojan.FakeAlert.BIM )[*][thread=52264]Trojan-Downloader.Win32.FraudLoad.fft[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4774 )[*][thread=52320]Trojan-Downloader.Win32.Mutant.egl[/thread] -> c:\documents and settings\admin\msword98.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=52256]Trojan-Downloader.Win32.Mutant.egl[/thread] -> c:\windows\system32\msword98.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=52256]Trojan-Downloader.Win32.Mutant.egl[/thread] -> c:\documents and settings\администратор\msword98.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=52338]Trojan-Downloader.Win32.Small.adjy[/thread] -> i:\restore\s-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe ( DrWEB: Trojan.Inject.3774, BitDefender: Trojan.Dropper.SKL )[*][thread=52332]Trojan-Downloader.Win32.Small.ambv[/thread] -> c:\windows\system32\tapi.nfo[*][thread=52302]Trojan-GameThief.Win32.OnLineGames.vlff[/thread] -> c:\windows\system\noy2cd4.tmp ( BitDefender: DeepScan:Generic.PWS.Games.1.E15C6BED )[*][thread=52353]Trojan-Ransom.Win32.Hexzone.ajg[/thread] -> c:\windows\services.exe[*][thread=52363]Trojan-Ransom.Win32.PornoBro.bk[/thread] -> f:\windows\services.exe[*][thread=52332]Trojan-Spy.Win32.Zbot.aaga[/thread] -> c:\windows\system32\sdra64.exe[*][thread=52262]Trojan.Win32.Agent.ctfa[/thread] -> c:\windows\system32\mstcpweb.dll ( DrWEB: Trojan.Packed.650, BitDefender: Trojan.Packed.Libix.Gen.1 )[*][thread=52344]Trojan.Win32.Agent.cumi[/thread] -> c:\windows\system32\kbiwkmduhxwbwe.dll[*][thread=52253]Trojan.Win32.FraudPack.qhu[/thread] -> c:\program files\pc_antispyware2010\pc_antispyware2010.exe ( BitDefender: Gen:Trojan.Heur.Kq2@vnsTu9oix )[*][thread=52344]Trojan.Win32.Tdss.aogy[/thread] -> c:\windows\system32\drivers\kbiwkmiqhrlnsc.sys[*][thread=52185]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19832 )[*][thread=52257]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=52338]Worm.Win32.AutoRun.pex[/thread] -> i:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.2664, BitDefender: Trojan.Agent.AJSQ )[*][thread=52332]Worm.Win32.Bezopi.au[/thread] -> c:\program files\microsoft common\svchost.exe[/LIST]
-
Отчет за период 18.08.2009 - 19.08.2009
[LIST][*][thread=52460]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\tqgitmn.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen )[*][thread=52458]Net-Worm.Win32.Kolab.dlw[/thread] -> c:\windows\system32\drivers\syslog.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52378]Trojan-Downloader.Win32.Small.kdl[/thread] -> c:\windows\system32\mspmsnsv.dll ( BitDefender: Generic.Malware.P!dld.D67A7500 )[*][thread=52378]Trojan-Downloader.Win32.Small.kdl[/thread] -> c:\windows\system32\appmgmts.dll ( BitDefender: Generic.Malware.P!dld.D67A7500 )[*][thread=52394]Trojan-GameThief.Win32.Magania.bwdc[/thread] -> c:\windows\system32\e8main0.dll[*][thread=52436]Trojan-Ransom.Win32.PornoBro.bk[/thread] -> c:\windows\services.exe[*][thread=52385]Trojan-Spy.Win32.Agent.awhu[/thread] -> c:\windows\system32\sysio.exe ( DrWEB: Trojan.Inject.5804, BitDefender: Backdoor.Agent.AAGK )[*][thread=52417]Trojan.Win32.Buzus.butl[/thread] -> c:\windows\media\sound.exe[*][thread=52385]Virus.Win32.Sality.aa[/thread] -> c:\klwk.com ( DrWEB: Win32.Sector.5, BitDefender: Win32.Sality.OG )[*][thread=52393]Virus.Win32.Virut.ce[/thread] -> \avz.exe ( DrWEB: Win32.Virut.56, BitDefender: Win32.Virtob.Gen.12 )[*][thread=52401]Worm.Win32.AutoIt.bn[/thread] -> c:\windows\system32\expsrv.exe ( DrWEB: archive: Win32.HLLW.Autoruner.6487 )[*][thread=52401]Worm.Win32.AutoIt.bn[/thread] -> c:\windows\system32\locale.exe ( DrWEB: archive: Win32.HLLW.Autoruner.6487 )[*][thread=52401]Worm.Win32.AutoIt.bn[/thread] -> c:\system_cache\locale.exe ( DrWEB: archive: Win32.HLLW.Autoruner.6487 )[/LIST]
-
Отчет за период 19.08.2009 - 20.08.2009
[LIST][*][thread=52473]Backdoor.Win32.Bredolab.jc[/thread] -> c:\documents and settings\user\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=52514]HEUR:Trojan.Win32.Generic[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: BackDoor.IRC.Sdbot.4632 )[*][thread=52474]Net-Worm.Win32.Kolab.dnj[/thread] -> c:\windows\system32\ktfhost.exe ( BitDefender: Backdoor.RBot.YDK )[*][thread=52552]Net-Worm.Win32.Kolab.dnl[/thread] -> c:\windows\system32\drivers\winhost.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52473]not-a-virus:FraudTool.Win32.XPSecurityCenter.dj[/thread] -> c:\windows\system32\_scui.cpl ( DrWEB: Trojan.Fakealert.4739, BitDefender: Trojan.FakeAlert.BIJ )[*][thread=52388]not-a-virus:RemoteAdmin.Win32.RAdmin.21[/thread] -> c:\windows\system32\1049\shell32.exe ( DrWEB: Program.RemoteAdmin )[*][thread=52519]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=52474]Trojan-Downloader.Win32.Agent.cgyo[/thread] -> c:\windows\system32\ctfmon_lh.exe ( BitDefender: Trojan.Generic.2006984 )[*][thread=52434]Trojan-Ransom.Win32.Hexzone.ajh[/thread] -> c:\windows\services.exe[*][thread=52497]Trojan.Win32.Agent.curk[/thread] -> c:\documents and settings\riverrat\application data\windowslive.exe[*][thread=52490]Trojan.Win32.Run.a[/thread] -> c:\windows\system32\bpl501.exe[*][thread=52518]Trojan.Win32.TDSS.aolj[/thread] -> c:\windows\system32\drivers\aliserv3.sys ( BitDefender: Trojan.CryptRedol.Gen.3 )[/LIST]
-
Отчет за период 20.08.2009 - 21.08.2009
[LIST][*][thread=52600]Backdoor.Win32.Small.xd[/thread] -> c:\windows.0\system32\drivers\nups.sys[*][thread=52488]not-a-virus:AdWare.Win32.Agent.llv[/thread] -> c:\program files\common files\target marketing agency\tmagent\extension\components\fftma.dll ( DrWEB: Adware.TMAgent.31, BitDefender: Gen:Adware.Heur.gu8@Qqd3QMbc )[*][thread=52119]Trojan-Dropper.Win32.Agent.azqo[/thread] -> c:\windows\system32\.\ec.tmp ( DrWEB: Trojan.MulDrop.33734, BitDefender: Trojan.Downloader.Kobcka.H )[*][thread=52584]Trojan-GameThief.Win32.Nilage.bvl[/thread] -> d:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1020, BitDefender: Trojan.Autorun.UA )[*][thread=52584]Trojan-GameThief.Win32.Nilage.bvl[/thread] -> g:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1020, BitDefender: Trojan.Autorun.UA )[*][thread=52584]Trojan-GameThief.Win32.Nilage.bvl[/thread] -> c:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1020, BitDefender: Trojan.Autorun.UA )[*][thread=52584]Trojan.Win32.Buzus.bizq[/thread] -> c:\c\settings\cl.exe ( DrWEB: Trojan.Inject.5868, BitDefender: Trojan.Buzus.DI )[*][thread=52560]Trojan.Win32.Monder.cqbh[/thread] -> c:\windows\system32\hjgruidxwevmfh.dll ( DrWEB: BackDoor.Tdss.264, BitDefender: Trojan.CryptRedol.Gen.3 )[*][thread=52620]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll[*][thread=52584]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Gen:Trojan.Heur.fm0@dr9ELuli )[/LIST]
-
Отчет за период 21.08.2009 - 22.08.2009
[LIST][*][thread=51668]Backdoor.Win32.IRCBot.lav[/thread] -> c:\windows\system\dllcache.exe ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2095132 )[*][thread=52709]Backdoor.Win32.SdBot.ook[/thread] -> c:\windows\mslsrv32.exe[*][thread=52153]Net-Worm.Win32.Kolab.dnk[/thread] -> c:\windows\system32\drivers\defmgr.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52709]Net-Worm.Win32.Kolab.dpo[/thread] -> c:\windows\system32\drivers\winhost.exe ( DrWEB: BackDoor.IRC.Bot.127, BitDefender: Backdoor.IRCBot.ACUD )[*][thread=52716]not-a-virus:Server-Proxy.Win32.Mprx.a[/thread] -> c:\windows\mprx.exe ( DrWEB: Program.Proxy.Mprx, BitDefender: Trojan.Generic.2066458 )[*][thread=52689]P2P-Worm.Win32.Palevo.jde[/thread] -> c:\recycler\s-1-5-21-8372303591-7163380657-877843843-6908\sysdate.exe ( DrWEB: Trojan.Packed.541 )[*][thread=52709]SuspiciousPacker.Multi.Generic[/thread] -> \dll32b.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Patched.BI )[*][thread=52709]Trojan.Win32.Agent.cuxe[/thread] -> c:\windows\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52552]Trojan.Win32.Dialer.eyr[/thread] -> \t9d2a1l6q2e1.exe ( DrWEB: Trojan.PWS.Multi.75, BitDefender: Trojan.Dialer.VYM )[*][thread=52722]Virus.Win32.Induc.a[/thread] -> c:\windows\system32\riodrv.exe ( DrWEB: Win32.Induc, BitDefender: Win32.Induc.A )[*][thread=52509]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19832 )[*][thread=52644]Worm.Win32.AutoRun.aune[/thread] -> c:\recycler\s-51-9-25-3434476501-1644491960-601003312-1214\sysmon.exe ( DrWEB: BackDoor.IRC.Sdbot.5229, BitDefender: Gen:Trojan.Heur.dq0@sqXIGTmi )[*][thread=51668]Worm.Win32.AutoRun.ftp[/thread] -> c:\windows\system32\drivers\sysdrv32.sys ( DrWEB: Tool.TcpZ, BitDefender: Trojan.Agent.ALRI )[*][thread=37678]Worm.Win32.Bezopi.bj[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=52716]Worm.Win32.Bezopi.bl[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=52716]Worm.Win32.Bezopi.bl[/thread] -> h:\autorun.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=52153]Worm.Win32.VB.ava[/thread] -> c:\windows\usbmngr.exe ( DrWEB: BackDoor.IRC.Flood.8 )[/LIST]
-
Отчет за период 22.08.2009 - 23.08.2009
[LIST][*][thread=52716]not-a-virus:Server-Proxy.Win32.Mprx.a[/thread] -> c:\windows\mprx.exe ( DrWEB: Program.Proxy.Mprx, BitDefender: Trojan.Generic.2066458 )[*][thread=52766]Trojan-Downloader.Win32.Agent.cner[/thread] -> c:\windows.0\system32\wshost32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52766]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\recycler\s-1-5-21-9349577293-9831004744-266876130-7980\csvcs.exe ( DrWEB: Trojan.Packed.471, BitDefender: MemScan:Trojan.Dropper.TDY )[*][thread=52716]Trojan-Dropper.Win32.Agent.bayw[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=52766]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\windows.0\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52766]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=52379]Trojan.Win32.Agent.cvao[/thread] -> c:\recycler\s-1-5-21-1547161642-842925246-839522115-1004\dc174.exe ( DrWEB: Win32.HLLW.Autohit.7875, BitDefender: Backdoor.Bot.75589 )[*][thread=52767]Trojan.Win32.Limon.a[/thread] -> h:\recycler\s-1-5-21-9578935028-5815250017-706301139-0232\mwau.exe[*][thread=52767]Trojan.Win32.Limon.a[/thread] -> h:\windows\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52761]Trojan.Win32.VB.tiw[/thread] -> c:\bcc\i\lsp.exe ( DrWEB: Win32.HLLW.Autoruner.6554, BitDefender: Win32.Worm.Agent.QCJ )[*][thread=52716]Worm.Win32.Bezopi.bl[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=52716]Worm.Win32.Bezopi.bl[/thread] -> h:\autorun.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[/LIST]
-
Отчет за период 23.08.2009 - 24.08.2009
[LIST][*][thread=52796]Email-Worm.Win32.Joleee.dcg[/thread] -> c:\windows\system32\servises.exe[*][thread=52816]Net-Worm.Win32.Kolab.dpl[/thread] -> c:\winnt\system32\drivers\defmgr.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52851]not-a-virus:AdWare.Win32.TMAagent.t[/thread] -> c:\program files\common files\target marketing agency\tmagent\tmagent.dll[*][thread=52804]Trojan-Downloader.Win32.Agent.cner[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52777]Trojan-Downloader.Win32.Agent.cner[/thread] -> c:\windows.1\system32\wshost32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52816]Trojan-Downloader.Win32.Agent.cner[/thread] -> c:\winnt\system32\wshost32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52751]Trojan-Downloader.Win32.FraudLoad.wbjm[/thread] -> c:\windows\system32\twex.exe ( DrWEB: Trojan.Webmoner.60950, BitDefender: Trojan.Spy.Zbot.PZ )[*][thread=52714]Trojan-Downloader.Win32.Mutant.eki[/thread] -> c:\documents and settings\anne\msword98.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=52714]Trojan-Downloader.Win32.Mutant.eki[/thread] -> c:\windows\system32\msword98.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=52714]Trojan-Downloader.Win32.VB.hkq[/thread] -> c:\windows\system32\xp-24721030.exe ( DrWEB: Win32.HLLW.Autoruner.2855, BitDefender: Trojan.Autorun.WW )[*][thread=52851]Trojan-Dropper.Win32.Agent.ajlx[/thread] -> e:\uxkl0apt.bat ( DrWEB: Trojan.PWS.Wsgame.4983, BitDefender: Worm.Generic.72644 )[*][thread=52851]Trojan-Dropper.Win32.Agent.ajlx[/thread] -> c:\uxkl0apt.bat ( DrWEB: Trojan.PWS.Wsgame.4983, BitDefender: Worm.Generic.72644 )[*][thread=52851]Trojan-Dropper.Win32.Agent.ajlx[/thread] -> d:\uxkl0apt.bat ( DrWEB: Trojan.PWS.Wsgame.4983, BitDefender: Worm.Generic.72644 )[*][thread=52652]Trojan-Dropper.Win32.Agent.bayw[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244 )[*][thread=52777]Trojan-Dropper.Win32.Agent.bben[/thread] -> c:\recycler\s-1-5-21-5386851507-3067467144-722068339-1157\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=52804]Trojan-Dropper.Win32.Agent.bben[/thread] -> c:\recycler\s-1-5-21-7772097014-1474164778-150527059-9430\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=52816]Trojan-Dropper.Win32.Agent.bben[/thread] -> c:\recycler\s-1-5-21-0240430066-4213262780-417417981-5971\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=52777]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\windows.1\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52816]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\winnt\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52804]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\windows\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52804]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\windows\system32\14.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52851]Trojan-GameThief.Win32.Magania.aybn[/thread] -> c:\windows\system32\nmdfgds0.dll ( DrWEB: Trojan.PWS.Wsgame.10708, BitDefender: Trojan.PWS.Onlinegames.KBSC )[*][thread=52816]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=52652]Trojan-PSW.Win32.Riodrv.kz[/thread] -> c:\windows\system32\riodrv.exe[*][thread=52760]Trojan-Spy.Win32.Agent.azmr[/thread] -> c:\windows\system32\28.scr ( DrWEB: Trojan.Spambot.3480 )[*][thread=52804]Trojan-Spy.Win32.Agent.azmr[/thread] -> c:\windows\msd32.exe ( DrWEB: Trojan.Spambot.3480 )[*][thread=52780]Trojan-Spy.Win32.Zbot.aahc[/thread] -> c:\windows\system32\sdra64.exe ( DrWEB: Trojan.PWS.Panda.171 )[*][thread=52831]Trojan.Win32.Pakes.noy[/thread] -> c:\program files\common files\system\webcheck.dll[*][thread=52788]Trojan.Win32.Tdss.apij[/thread] -> c:\nnitedn\lodgi\nintend.exe ( DrWEB: Win32.HLLW.Autoruner.6741 )[*][thread=52817]Trojan.Win32.Tdss.apij[/thread] -> c:\nnitedn\lodgi\nintend.exe ( DrWEB: Win32.HLLW.Autoruner.6741 )[*][thread=52788]Trojan.Win32.Tdss.apij[/thread] -> g:\nnitedn\lodgi\nintend.exe ( DrWEB: Win32.HLLW.Autoruner.6741 )[*][thread=52714]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=52834]Worm.Win32.Bezopi.bp[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[/LIST]
-
Отчет за период 24.08.2009 - 25.08.2009
[LIST][*][thread=52877]Backdoor.Win32.HareBot.kr[/thread] -> c:\documents and settings\maya\local settings\temporary internet files\content.ie5\pa5clhyo\lo[1].htm ( DrWEB: Trojan.DownLoad.40611, BitDefender: Trojan.Downloader.Kobcka.K )[*][thread=52877]Backdoor.Win32.Wintu.ar[/thread] -> c:\windows\system32\2b.tmp[*][thread=52914]Email-Worm.Win32.BSpread.b[/thread] -> c:\recycler\s-1-5-21-0282844052-6545269000-286614020-7184\mwau.exe[*][thread=52816]Email-Worm.Win32.BSpread.b[/thread] -> c:\recycler\s-1-5-21-1065985914-7931851278-986932962-7779\mwau.exe[*][thread=52877]Email-Worm.Win32.Mydoom.iw[/thread] -> c:\documents and settings\maya\local settings\temporary internet files\content.ie5\2ipb22hg\mal[1].htm ( DrWEB: Trojan.Spambot.2424 )[*][thread=52816]Net-Worm.Win32.Kolab.dpl[/thread] -> c:\winnt\system32\drivers\defmgr.exe ( DrWEB: BackDoor.IRC.Bot.127 )[*][thread=52816]Net-Worm.Win32.Kolab.dpo[/thread] -> c:\winnt\system32\drivers\winhost.exe ( DrWEB: BackDoor.IRC.Bot.127, BitDefender: Backdoor.IRCBot.ACUD )[*][thread=52742]Net-Worm.Win32.Kolab.drb[/thread] -> c:\windows\system32\drivers\secrun.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52895]Net-Worm.Win32.Kolab.drb[/thread] -> c:\windows\system32\drivers\secrun.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52904]P2P-Worm.Win32.Palevo.jeh[/thread] -> c:\recycler\s-1-5-21-7282071537-7023994888-908551850-7809\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Trojan-Downloader.Win32.Agent.cner[/thread] -> c:\winnt\system32\wshost32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52914]Trojan-Downloader.Win32.Pher.v[/thread] -> c:\windows\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Trojan-Dropper.Win32.Agent.bben[/thread] -> c:\recycler\s-1-5-21-0240430066-4213262780-417417981-5971\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=52816]Trojan-Dropper.Win32.Small.dta[/thread] -> c:\winnt\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52816]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=52816]Trojan.Win32.Limon.a[/thread] -> c:\winnt\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Trojan.Win32.Limon.a[/thread] -> c:\recycler\s-1-6-21-2434476501-1644491937-600003330-1213\system32.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52846]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll[*][thread=52896]Trojan.Win32.VB.uqp[/thread] -> c:\documents and settings\admin\рабочий стол\t9d2a1l6q2e1\t9d2a1l6q2e1.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Gen:Trojan.Heur.dq1@bTR5Plpi )[*][thread=52877]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=52877]Virus.Win32.Virut.ce[/thread] -> c:\windows\inf\unregmp2.exe ( DrWEB: Win32.Virut.56 )[*][thread=52906]Virus.Win32.Virut.ce[/thread] -> c:\documents and settings\86069\рабочий стол\avz4\avz4\avz.exe ( DrWEB: Win32.Virut.56, BitDefender: Win32.Virtob.Gen.12 )[*][thread=52877]Virus.Win32.Virut.ce[/thread] -> c:\windows\system32\userinit.exe ( DrWEB: Win32.Virut.56 )[*][thread=52877]Virus.Win32.Virut.ce[/thread] -> c:\windows\services.exe ( DrWEB: Win32.Virut.56, BitDefender: Trojan.Spammer.Tedroo.BN )[*][thread=52886]Worm.Win32.Agent.xt[/thread] -> c:\windows\system32\logon.exe ( DrWEB: Win32.HLLW.Autoruner.6865, BitDefender: Gen:Packed.cqW@behddjcc )[*][thread=52882]Worm.Win32.AutoRun.afcb[/thread] -> c:\windows\system\ming9b090423.exe ( DrWEB: Trojan.PWS.Gamania.19081, BitDefender: Generic.Malware.SP!g.67407A41 )[*][thread=52644]Worm.Win32.AutoRun.aune[/thread] -> c:\recycler\s-51-9-25-3434476501-1644491960-601003312-1214\sysmon.exe ( DrWEB: BackDoor.IRC.Sdbot.5229, BitDefender: Gen:Trojan.Heur.dq0@sqXIGTmi )[*][thread=52888]Worm.Win32.AutoRun.diq[/thread] -> c:\mlburmh.exe ( DrWEB: Win32.HLLW.Autoruner.2497, BitDefender: Trojan.Agent.Delf.JA )[*][thread=52888]Worm.Win32.AutoRun.diq[/thread] -> c:\windows\system32\ati2avxx.exe ( DrWEB: Win32.HLLW.Autoruner.2497, BitDefender: Trojan.Agent.Delf.JA )[*][thread=52894]Worm.Win32.AutoRun.glc[/thread] -> c:\bcc\i\lsp.exe ( DrWEB: Win32.HLLW.Autoruner.6554, BitDefender: Gen:Trojan.Heur.fm0@d12u4dhi )[*][thread=52888]Worm.Win32.AutoRun.wzu[/thread] -> c:\autorun.inf ( BitDefender: Trojan.Autorun.RU )[/LIST]
-
Отчет за период 25.08.2009 - 26.08.2009
[LIST][*][thread=52816]Backdoor.Win32.Agent.akgd[/thread] -> c:\documents and settings\kiska.smart\gwun.exe[*][thread=51668]Backdoor.Win32.IRCBot.lav[/thread] -> c:\windows\system\dllcache.exe ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2095132 )[*][thread=52988]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=52988]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897 )[*][thread=52988]Backdoor.Win32.UltimateDefender.igv[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.BFF14990 )[*][thread=52957]Email-Worm.Win32.BSpread.b[/thread] -> c:\recycler\s-1-5-21-1375451277-4674951985-619315941-7844\mwau.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Email-Worm.Win32.BSpread.b[/thread] -> c:\recycler\s-1-5-21-1065985914-7931851278-986932962-7779\mwau.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52957]Net-Worm.Win32.Kolab.dkv[/thread] -> f:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=37678]Net-Worm.Win32.Kolab.drb[/thread] -> c:\windows\system32\drivers\secrun.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52896]Net-Worm.Win32.Kolab.drc[/thread] -> c:\windows\system32\drivers\lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52816]Net-Worm.Win32.Kolab.drc[/thread] -> c:\winnt\system32\drivers\lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52938]not-a-virus:Monitor.Win32.KeyLogger.lr[/thread] -> c:\windows\system32\svchosts.exe ( BitDefender: GenPack:Generic.Keylogger.0F969639 )[*][thread=53022]Rootkit.Win32.KernelBot.gv[/thread] -> d:\windows\system32\nexkaqf.sys ( BitDefender: Trojan.Peed.Gen )[*][thread=52816]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\recycler\s-1-5-21-0432420807-5337844751-522354069-3143\csvcs.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52816]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\docume~1\kiska~1.sma\locals~1\temp\052.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=53022]Trojan-Downloader.Win32.Agent.nsl[/thread] -> d:\windows\system32\windata.cab ( DrWEB: Trojan.DownLoader.59496, BitDefender: Trojan.Downloader.Agent.ZIS )[*][thread=52988]Trojan-Downloader.Win32.Mutant.ejt[/thread] -> \mset.exe[*][thread=52816]Trojan-Downloader.Win32.Pher.v[/thread] -> c:\winnt\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52957]Trojan-Downloader.Win32.Pher.v[/thread] -> f:\recycler\s-51-9-25-3434476501-1644491938-601013333-1214\sysmngr32.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52957]Trojan-Downloader.Win32.Pher.v[/thread] -> c:\windows\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\documents and settings\kiska.smart\local settings\temporary internet files\content.ie5\0oribjix\var[1].exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=52816]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\documents and settings\kiska.smart\local settings\temporary internet files\content.ie5\1kgvuy9y\var[1].exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=53019]Trojan-GameThief.Win32.OnLineGames.snn[/thread] -> e:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1427, BitDefender: Trojan.AutorunINF.Gen )[*][thread=53018]Trojan-Spy.Win32.Zbot.aahz[/thread] -> c:\windows\system32\sdra64.exe[*][thread=52976]Trojan-Spy.Win32.Zbot.zod[/thread] -> c:\windows\system32\sdra64.exe ( BitDefender: Trojan.Spy.ZBot.WF )[*][thread=51668]Trojan.Win32.Agent.cuxe[/thread] -> c:\windows\msdrive32.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=52980]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177 )[*][thread=52916]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177 )[*][thread=53022]Trojan.Win32.AutoRun.am[/thread] -> i:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=52816]Trojan.Win32.Buzus.bsao[/thread] -> c:\documents and settings\kiska.smart\local settings\temporary internet files\content.ie5\0oribjix\pr3xy[1].exe ( DrWEB: BackDoor.IRC.Sdbot.5093, BitDefender: Backdoor.IRCBot.ACTN )[*][thread=52816]Trojan.Win32.Buzus.bsao[/thread] -> c:\documents and settings\kiska.smart\local settings\temporary internet files\content.ie5\1kgvuy9y\pr3xy[1].exe ( DrWEB: BackDoor.IRC.Sdbot.5093, BitDefender: Backdoor.IRCBot.ACTN )[*][thread=52816]Trojan.Win32.Buzus.bsao[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: BackDoor.IRC.Sdbot.5093, BitDefender: Backdoor.IRCBot.ACTN )[*][thread=52816]Trojan.Win32.Limon.a[/thread] -> c:\winnt\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52816]Trojan.Win32.Limon.a[/thread] -> c:\recycler\s-1-6-21-2434476501-1644491937-600003330-1213\system32.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=53019]Trojan.Win32.Pakes.jzm[/thread] -> d:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\isi32.exe ( DrWEB: Trojan.Packed.162, BitDefender: Win32.Worm.AutoRun.KZ )[*][thread=52973]Trojan.Win32.Small.cbv[/thread] -> c:\windows\system32\gdi16.dll[*][thread=51977]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E )[*][thread=52906]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19224 )[*][thread=52988]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=52906]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=52906]Virus.Win32.Virut.ce[/thread] -> c:\windows\system32\progman.exe ( DrWEB: Win32.Virut.56, BitDefender: Win32.Virtob.Gen.12 )[*][thread=51977]Virus.Win32.Virut.ce[/thread] -> c:\f\uck\fk.exe ( DrWEB: Win32.Virut.56, BitDefender: Backdoor.Hamweq.F )[*][thread=53019]Worm.Win32.AutoRun.cve[/thread] -> e:\x6.bat ( DrWEB: Trojan.MulDrop.6474, BitDefender: Packer.Malware.NSAnti.1 )[*][thread=53019]Worm.Win32.AutoRun.drq[/thread] -> d:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.2075, BitDefender: Trojan.Autorun.SS )[*][thread=52980]Worm.Win32.AutoRun.fjx[/thread] -> c:\windows\system32\msmsgs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.6373, BitDefender: Worm.Generic.73064 )[*][thread=51668]Worm.Win32.AutoRun.ftp[/thread] -> c:\windows\system32\drivers\sysdrv32.sys ( DrWEB: Tool.TcpZ, BitDefender: Trojan.Agent.ALRI )[*][thread=53022]Worm.Win32.Fujack.n[/thread] -> d:\documents and settings\all users\документы\gamesetup.exe ( BitDefender: Packer.Malware.VPacker.B )[/LIST]
-
Отчет за период 26.08.2009 - 27.08.2009
[LIST][*][thread=53029]Backdoor.Win32.Agent.akgd[/thread] -> c:\documents and settings\администратор.nemo-79d92c3da3\xxcpiju.exe[*][thread=53079]Backdoor.Win32.Bredolab.le[/thread] -> c:\documents and settings\vitaxa\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=51668]Backdoor.Win32.IRCBot.lav[/thread] -> c:\windows\system\dllcache.exe ( DrWEB: Win32.HLLW.Druck.5, BitDefender: Trojan.Generic.2095132 )[*][thread=53092]Email-Worm.Win32.Iksmas.gen[/thread] -> c:\windows\system32\digeste.dll ( BitDefender: Trojan.Waledac.Gen.1 )[*][thread=53000]Net-Worm.Win32.Kido.ih[/thread] -> g:\autorun.inf ( DrWEB: Win32.HLLW.Shadow, BitDefender: Worm.Autorun.VHG )[*][thread=53042]Net-Worm.Win32.Kolab.drb[/thread] -> c:\windows\system32\drivers\secrun.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=53029]Net-Worm.Win32.Kolab.drm[/thread] -> c:\windows\mcdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=53086]not-a-virus:Monitor.Win32.KGBSpy.ey[/thread] -> c:\windows\system32\mpk\mpk.dll[*][thread=53048]Trojan-GameThief.Win32.Magania.booz[/thread] -> c:\winnt\system32\e8main0.dll ( BitDefender: Gen:Trojan.Heur.Nsanti.eq6@bOYvSik )[*][thread=53026]Trojan-Spy.Win32.Zbot.aahr[/thread] -> d:\windows\system32\sdra64.exe[*][thread=53079]Trojan.Win32.Agent.cvgj[/thread] -> c:\windows\system32\mset.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.FakeAV.QU )[*][thread=53079]Trojan.Win32.Agent.cvgj[/thread] -> c:\documents and settings\vitaxa\mset.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.FakeAV.QU )[*][thread=37678]Trojan.Win32.Delf.oro[/thread] -> \moviemk1.exe.dmp[*][thread=53079]Trojan.Win32.FraudPack.rdy[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe[*][thread=53079]Trojan.Win32.FraudPack.rdy[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe[*][thread=53028]Virus.Win32.Selfish.e[/thread] -> c:\program files\google\chrome\application\chrome.exe ( DrWEB: Win32.HLLP.Lqs.origin )[*][thread=52962]Worm.Win32.Bezopi.ca[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[*][thread=53011]Worm.Win32.Fujack.x[/thread] -> c:\system volume information\_restore{a636c13b-427a-42dd-8589-496176204eb4}\rp226\a0062153.exe ( DrWEB: Win32.HLLP.Whboy, BitDefender: Gen:Trojan.Heur.PT.cuW@bqa5sYpb )[*][thread=53011]Worm.Win32.Fujack.x[/thread] -> c:\documents and settings\all users\документы\gamesetup.exe ( DrWEB: Win32.HLLP.Whboy, BitDefender: Gen:Trojan.Heur.PT.cuW@bqa5sYpb )[/LIST]
-
Отчет за период 27.08.2009 - 28.08.2009
[LIST][*][thread=53117]Backdoor.Win32.Small.xd[/thread] -> c:\windows\system32\drivers\nups.sys ( DrWEB: Trojan.Spambot.4728 )[*][thread=52957]Email-Worm.Win32.BSpread.b[/thread] -> c:\windows\win7service.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=52896]Net-Worm.Win32.Kolab.drb[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\87012qdw\xx9[1].exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=52896]Net-Worm.Win32.Kolab.drc[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\a6w5g2ns\g[1].exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=53144]Net-Worm.Win32.Kolab.drn[/thread] -> c:\windows\mcdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=53093]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.9855 )[*][thread=53104]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: archive: Win32.HLLW.Autoruner.based )[*][thread=53139]Rootkit.Win32.Agent.prh[/thread] -> c:\windows\system32\rgadta.sys ( BitDefender: Gen:Rootkit.Heur.auW@tyglH3m )[*][thread=53101]Trojan-Clicker.Win32.Delf.cpb[/thread] -> c:\windows\system32\uscsvc.exe[*][thread=53144]Trojan-Downloader.Win32.Pher.ai[/thread] -> c:\recycler\s-1-5-21-8595722858-4177876653-822437500-5660\csvcs.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=53147]Trojan-Downloader.Win32.Pher.bk[/thread] -> c:\recycler\s-1-5-21-6227296961-7616939674-094849941-2294\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=53117]Trojan-Downloader.Win32.Small.amep[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.45245 )[*][thread=53139]Trojan-PSW.Win32.Riodrv.lc[/thread] -> c:\windows\system32\riodrv.exe[*][thread=53180]Trojan.Win32.Autoit.xp[/thread] -> d:\documents and settings\all users\документы\xxvoqu.exe ( DrWEB: Win32.HLLW.Autoruner.6013, BitDefender: Gen:Trojan.Heur.AutoIT.vmNfbeaEsLdc )[*][thread=53101]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19832 )[*][thread=52985]Virus.Win32.Sality.aa[/thread] -> p:\jsjrq.exe ( DrWEB: Win32.Sector.17, BitDefender: Win32.Sality.OG )[*][thread=53046]Worm.Win32.Bezopi.ch[/thread] -> c:\programme\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326, BitDefender: Gen:Packed.FakeAV.1 )[/LIST]
-
Отчет за период 28.08.2009 - 29.08.2009
[LIST][*][thread=37678]Backdoor.Win32.Infexor.cy[/thread] -> c:\documents and settings\kosmos\рабочий стол\auto_rublik_v.7\auto_rublik_v.7.exe[*][thread=53043]Net-Worm.Win32.Kolab.drb[/thread] -> c:\windows.1\system32\drivers\secrun.exe ( DrWEB: BackDoor.IRC.Bot.132, BitDefender: Trojan.Kolab.C )[*][thread=53043]Net-Worm.Win32.Kolab.drn[/thread] -> c:\windows.1\mcdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.TEC )[*][thread=53188]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438 )[*][thread=53193]Trojan-Downloader.Win32.Small.amet[/thread] -> c:\windows\system32\tapi.nfo[*][thread=53185]Trojan-GameThief.Win32.WOW.snx[/thread] -> e:\documents and settings\administrator\local settings\temporary internet files\content.ie5\8dmz8t6r\bbsuper2[1].htm[*][thread=53204]Trojan-Spy.Win32.Zbot.aahz[/thread] -> c:\windows\system32\sdra64.exe[*][thread=53219]Trojan-Spy.Win32.Zbot.aale[/thread] -> c:\windows\system32\twext.exe ( BitDefender: Backdoor.Bot.87466 )[*][thread=51978]Trojan.Win32.Tdss.apsn[/thread] -> c:\windows\system32\drivers\kbiwkmewvypeje.sys[*][thread=53229]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E )[*][thread=53229]Trojan.Win32.VB.umo[/thread] -> f:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E )[*][thread=53185]Virus.Win32.Virut.ce[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1077\vslmq.exe ( DrWEB: Win32.Virut.56, BitDefender: Trojan.Proxy.Slennuga.A )[*][thread=53185]Virus.Win32.Virut.ce[/thread] -> e:\windows\msdrive32.exe ( DrWEB: Win32.Virut.56 )[*][thread=53185]Virus.Win32.Virut.ce[/thread] -> e:\windows\system32\reader_s.exe ( DrWEB: Win32.Virut.56 )[*][thread=53185]Virus.Win32.Virut.ce[/thread] -> e:\documents and settings\administrator\reader_s.exe ( DrWEB: Win32.Virut.56 )[/LIST]
-
Отчет за период 29.08.2009 - 30.08.2009
[LIST][*][thread=53088]Backdoor.Win32.Agent.ajyu[/thread] -> c:\windows\system32\drivers\tjm0a0b.sys ( DrWEB: Trojan.NtRootKit.3402 )[*][thread=53088]Email-Worm.Win32.BSpread.b[/thread] -> f:\winamp_cache_0001\ehthumbs.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=53282]Net-Worm.Win32.Kolab.dsu[/thread] -> c:\windows\win7service.exe[*][thread=53239]P2P-Worm.Win32.Palevo.jaz[/thread] -> c:\recycler\s-1-5-21-3970281222-4646387781-219059653-2600\sysdate.exe ( DrWEB: Trojan.Packed.541 )[*][thread=53235]Trojan-Downloader.Win32.Agent.coip[/thread] -> c:\program files\opera\rasadhlp.dll[*][thread=53282]Trojan-Downloader.Win32.Pher.ko[/thread] -> c:\recycler\s-1-5-21-7865545734-7717227781-096286781-3895\mwau.exe[*][thread=53088]Trojan-Proxy.Win32.Agent.bro[/thread] -> c:\windows\system32\ipcmd.dll[*][thread=53247]Trojan-Spy.Win32.Zbot.aahz[/thread] -> c:\windows\system32\sdra64.exe[*][thread=53088]Trojan.Win32.AutoRun.t[/thread] -> f:\autorun.inf[*][thread=53088]Trojan.Win32.FraudPack.rdy[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe[*][thread=53213]Trojan.Win32.Tdss.apij[/thread] -> c:\nnitedn\lodgi\nintend.exe ( DrWEB: Win32.HLLW.Autoruner.6741, BitDefender: Trojan.Dropper.Agent.URE )[*][thread=53275]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E )[*][thread=53275]Trojan.Win32.VB.umo[/thread] -> d:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E )[*][thread=53275]Worm.Win32.VB.asy[/thread] -> c:\re\back\bck.exe ( DrWEB: Trojan.MulDrop.33182, BitDefender: Win32.Worm.VB.NYH )[/LIST]
-
Отчет за период 30.08.2009 - 31.08.2009
[LIST][*][thread=53332]Backdoor.Win32.Bredolab.nx[/thread] -> c:\documents and settings\администратор.компьютер\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=53331]Backdoor.Win32.Hupigon.hyev[/thread] -> c:\documents and settings\константин\application data\adsubscribe\adsubscribe.dll ( DrWEB: Trojan.AdSubscribe.73 )[*][thread=53339]Backdoor.Win32.Small.xd[/thread] -> c:\windows\system32\drivers\nups.sys ( DrWEB: Trojan.Spambot.4728 )[*][thread=53329]Backdoor.Win32.Small.xd[/thread] -> c:\windows\system32\drivers\nups.sys ( DrWEB: Trojan.Spambot.4728 )[*][thread=53315]Net-Worm.Win32.Kolab.dpt[/thread] -> c:\windows\usbmngr.exe ( DrWEB: Trojan.DownLoad.45172 )[*][thread=53315]Net-Worm.Win32.Kolab.dqp[/thread] -> c:\windows\usb_drv.exe ( DrWEB: BackDoor.IRC.Sdbot.5226 )[*][thread=53284]P2P-Worm.Win32.Palevo.jaz[/thread] -> e:\recycler\s-1-5-21-7513267896-8700734540-978629856-1616\sysdate.exe ( DrWEB: Trojan.Packed.541 )[*][thread=53283]Trojan-Downloader.Win32.Agent.bqiq[/thread] -> c:\windows\system32\tb.dll ( DrWEB: Trojan.DownLoad.33802, BitDefender: Trojan.Generic.2110541 )[*][thread=53088]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\recycler\s-1-5-21-5096902695-9343532969-653707345-6315\csvcs.exe ( DrWEB: Trojan.Qhost.69, BitDefender: Trojan.Dropper.TDY )[*][thread=53329]Trojan-Downloader.Win32.Agent.coip[/thread] -> c:\program files\internet explorer\rasadhlp.dll[*][thread=53306]Trojan-Downloader.Win32.Pher.ko[/thread] -> c:\recycler\s-1-5-21-9037621752-0477775756-867762995-0342\mwau.exe[*][thread=53339]Trojan-Downloader.Win32.Small.amep[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.45245 )[*][thread=53329]Trojan-Downloader.Win32.Small.amep[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.45245 )[*][thread=53285]Trojan.Win32.Antavmu.dzn[/thread] -> \vkoren\infect\pq98a5ldfr12gb8ndx7fzst1r\pq98a5ldfr12gb8ndx7fzst1r.exe[*][thread=52916]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177 )[*][thread=53316]Worm.Win32.Vasor.17400[/thread] -> c:\temp\svchost.exe ( DrWEB: Win32.Jakky, BitDefender: Win32.Worm.Vasor.C )[*][thread=53316]Worm.Win32.Vasor.17400[/thread] -> c:\program files\zwangisearch\uninstall.exe ( DrWEB: Win32.Jakky, BitDefender: Win32.Vasor.A )[/LIST]
-
Отчет за период 31.08.2009 - 01.09.2009
[LIST][*][thread=53426]Backdoor.Win32.SdBot.oma[/thread] -> c:\system volume information\_restore{a1bddd4f-24da-4922-a4e1-f8e8c07821ee}\rp23\a0009333.exe ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.be[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp168\a0240856.exe ( DrWEB: Program.Wpe, BitDefender: Virtool.20778 )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.be[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp165\a0233444.exe ( DrWEB: Program.Wpe, BitDefender: Virtool.20778 )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.be[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp167\a0238444.exe ( DrWEB: Program.Wpe, BitDefender: Virtool.20778 )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.be[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp165\a0235436.exe ( DrWEB: Program.Wpe, BitDefender: Virtool.20778 )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.u[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp165\a0235423.exe ( DrWEB: Program.Wpe )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.u[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp168\a0240859.exe ( DrWEB: Program.Wpe )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.u[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp165\a0233431.exe ( DrWEB: Program.Wpe )[*][thread=53316]HackTool.Win32.Sniffer.WpePro.u[/thread] -> d:\system volume information\_restore{8ea002cf-36e4-44e1-a64b-c9f27951a3b0}\rp167\a0238431.exe ( DrWEB: Program.Wpe )[*][thread=53218]Net-Worm.Win32.Kolab.drn[/thread] -> c:\windows\mcdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2220142 )[*][thread=53355]Net-Worm.Win32.Kolab.dtg[/thread] -> c:\windows\expaende.exe ( DrWEB: BackDoor.IRC.Letmein.13 )[*][thread=53426]Net-Worm.Win32.Kolab.dut[/thread] -> c:\windows\system32\norman32.exe ( DrWEB: Trojan.MulDrop.32926 )[*][thread=53426]not-a-virus:Client-IRC.Win32.mIRC.601[/thread] -> c:\docume~1\1747~1\locals~1\temp\gsf2\lsass.exe ( DrWEB: Program.mIRC.601 )[*][thread=53426]not-a-virus:Client-IRC.Win32.mIRC.601[/thread] -> c:\docume~1\1747~1\locals~1\temp\gsf150\intel.exe ( DrWEB: Program.mIRC.601 )[*][thread=53426]not-a-virus:Client-IRC.Win32.mIRC.603[/thread] -> c:\docume~1\1747~1\locals~1\temp\psycho.exe ( DrWEB: Program.mIRC.603, BitDefender: Backdoor.IRC )[*][thread=53417]P2P-Worm.Win32.Palevo.jaz[/thread] -> \winfix.exe ( DrWEB: Trojan.Packed.541 )[*][thread=53417]P2P-Worm.Win32.Palevo.jaz[/thread] -> \winsetup.exe ( DrWEB: Trojan.Packed.541 )[*][thread=53218]P2P-Worm.Win32.Polip.a[/thread] -> c:\recycler\s-1-5-21-8077807168-5666321432-119238476-2511\csvcs.exe ( DrWEB: Win32.Polipos, BitDefender: Win32.Polip.A )[*][thread=53218]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\windows\system32\wshost32.exe ( DrWEB: Trojan.Packed.162, BitDefender: Trojan.Downloader.JJRI )[*][thread=53218]Trojan-Downloader.Win32.Agent.cnha[/thread] -> c:\docume~1\804b~1\locals~1\temp\708.exe ( DrWEB: Trojan.Packed.162, BitDefender: Trojan.Downloader.JJRI )[*][thread=53417]Trojan-Dropper.Win32.Pincher.rk[/thread] -> c:\documents and settings\наталья\local settings\temp\crypted_explorer.exe ( BitDefender: Virtool.24469 )[*][thread=53218]Trojan-GameThief.Win32.OnLineGames.bmml[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Lime.16, BitDefender: Trojan.Delf.Inject.BK )[*][thread=53426]Trojan-PSW.Win32.LdPinch.aiqp[/thread] -> c:\windows\system32\taskmaneger.exe[*][thread=37678]Trojan-Ransom.Win32.BlueScreen.fl[/thread] -> \reitvk_1.57.exe ( DrWEB: Trojan.Winlock.264 )[*][thread=53231]Trojan.Win32.Antavmu.dzn[/thread] -> c:\documents and settings\администратор\application data\s03-7323-geynawt-2623-tgaw\winlogon.exe ( DrWEB: Win32.HLLW.Autoruner.7503 )[*][thread=53218]Trojan.Win32.Buzus.bsao[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: BackDoor.IRC.Sdbot.5093, BitDefender: Backdoor.IRCBot.ACTN )[*][thread=53310]Trojan.Win32.Buzus.bxgt[/thread] -> c:\windows\system32\userinit.exe ( DrWEB: BackDoor.IRC.Evil, BitDefender: Gen:Trojan.Heur.P.hq0@eWKVQ0 )[*][thread=53310]Trojan.Win32.Buzus.bxgt[/thread] -> c:\wutemp\srvxc.exe ( DrWEB: BackDoor.IRC.Evil, BitDefender: Gen:Trojan.Heur.P.hq0@eWKVQ0 )[*][thread=53374]Trojan.Win32.Hrup.da[/thread] -> c:\windows\system32\drivers\skynetjpiewfoh.sys[*][thread=53395]Trojan.Win32.TDSS.amde[/thread] -> c:\windows\system32\drivers\ytasfwhraenrnp.sys ( BitDefender: Trojan.TDss.WJ )[*][thread=53347]Trojan.Win32.Tdss.aogy[/thread] -> c:\windows\system32\drivers\kbiwkmducdltap.sys ( DrWEB: BackDoor.Tdss.403 )[*][thread=53316]Virus.Win32.Sality.q[/thread] -> c:\windows\system32\vcdgcw32.dll ( DrWEB: Win32.HLLP.Sector.20480, BitDefender: Win32.Sality.Q )[*][thread=53084]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132 )[*][thread=53406]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132 )[*][thread=53368]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132 )[*][thread=53310]Worm.Win32.AutoRun.gqt[/thread] -> e:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=53316]Worm.Win32.Vasor.17400[/thread] -> c:\temp\svchost.exe ( DrWEB: Win32.Jakky, BitDefender: Win32.Worm.Vasor.C )[/LIST]
-
Отчет за период 01.09.2009 - 02.09.2009
[LIST][*][thread=53462]Backdoor.Win32.Bredolab.ow[/thread] -> c:\documents and settings\admin\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11, BitDefender: Trojan.Generic.2220216, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53487]Backdoor.Win32.Bredolab.ph[/thread] -> d:\documents and settings\владимир\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11, AVAST4: Win32:BredoPack [Cryp] )[*][thread=53479]Backdoor.Win32.HareBot.jb[/thread] -> c:\windows\system32\msword98.exe ( DrWEB: Trojan.MulDrop.33734, BitDefender: Trojan.Downloader.Kobcka.H, NOD32: Win32/Wigon.LW trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Backdoor.Win32.SdBot.osl[/thread] -> c:\windows\system32\45.scr ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Backdoor.Win32.SdBot.osl[/thread] -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Backdoor.Win32.SdBot.osl[/thread] -> c:\windows\system32\00.scr ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Backdoor.Win32.SdBot.osl[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\5iktzsbd\lse[1].exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53479]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897, NOD32: Win32/Small.EJX trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53479]Backdoor.Win32.Small.ejx[/thread] -> c:\windows\system32\cru629.dat ( DrWEB: Trojan.Proxy.1739, BitDefender: Trojan.Generic.343897, NOD32: Win32/Small.EJX trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Net-Worm.Win32.Kolab.dpt[/thread] -> c:\windows\usbmngr.exe ( DrWEB: Trojan.DownLoad.45172, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53314]Net-Worm.Win32.Kolab.drn[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\wrqnddlb\expnew[2].exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2220142, NOD32: Win32/Agent.PQG trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53314]Net-Worm.Win32.Kolab.drn[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\wrqnddlb\expnew[1].exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Generic.2220142, NOD32: Win32/Agent.PQG trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Net-Worm.Win32.Kolab.dtc[/thread] -> c:\windows\usb_drv.exe ( DrWEB: BackDoor.IRC.Sdbot.5269 )[*][thread=53535]not-a-virus:NetTool.Win32.Calc-DNet.a[/thread] -> c:\program files\common files\system\scvhost\dnetc.exe ( DrWEB: Program.DNetClient, BitDefender: Spyware.Calc.Dnet.A )[*][thread=53535]Packed.Win32.Klone.bj[/thread] -> e:\jyyaoi.exe ( DrWEB: archive: archive: Win32.HLLW.Autoruner.based )[*][thread=53485]Packed.Win32.Krap.x[/thread] -> c:\windows\system32\drivers\svchost.exe ( AVAST4: Win32:Preald-AH [Drp] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\111\local settings\temp\kbiwkmnmxbdipyyf.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmutfeekbatq.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmdmdsfhqkip.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=53347]Packed.Win32.TDSS.z[/thread] -> \\?\globalroot\systemroot\system32\kbiwkmdkvvmlrn.dll ( BitDefender: Trojan.Generic.2220751, AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmvxvpmfmcim.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=53347]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\kbiwkmmyrjbppk.dll ( AVAST4: Win32:Alureon-CO [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmmbchtrpinn.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmxtirpipous.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmeecrnstspn.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\рома2\local settings\temp\kbiwkmlxvrphiomk.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\111\local settings\temp\kbiwkmvtxwtxtusi.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=52489]Packed.Win32.TDSS.z[/thread] -> c:\documents and settings\111\local settings\temp\kbiwkmqxvbrnlelx.tmp ( DrWEB: BackDoor.Tdss.388, BitDefender: Trojan.TDss.WU, AVAST4: Win32:Alureon-CS [Rtk] )[*][thread=53425]Rootkit.Win32.HareBot.ay[/thread] -> c:\windows\system32\drivers\nicsk32.sys ( DrWEB: Trojan.DownLoad.38180, BitDefender: Trojan.Agent.AMZV, NOD32: Win32/TrojanDownloader.Wigon.BS trojan )[*][thread=53505]Trojan-Downloader.Win32.Agent.clko[/thread] -> c:\windows\temp\rdl2b.tmp.exe ( DrWEB: Trojan.DownLoad.40403, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53505]Trojan-Downloader.Win32.Agent.clko[/thread] -> c:\windows\temp\rdl11.tmp.exe ( DrWEB: Trojan.DownLoad.40403, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53505]Trojan-Downloader.Win32.Agent.clko[/thread] -> c:\windows\system32\config\systemprofile\local settings\temporary internet files\content.ie5\0ywxsb6d\mss7[2].exe ( DrWEB: Trojan.DownLoad.40403, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53505]Trojan-Downloader.Win32.Agent.clko[/thread] -> c:\windows\system32\config\systemprofile\local settings\temporary internet files\content.ie5\0ywxsb6d\mss7[1].exe ( DrWEB: Trojan.DownLoad.40403, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53462]Trojan-Downloader.Win32.FraudLoad.fki[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4949, BitDefender: Trojan.Downloader.FakeAV.CP, NOD32: Win32/TrojanDownloader.FakeAlert.AGA trojan, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53487]Trojan-Downloader.Win32.FraudLoad.fko[/thread] -> d:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4885, BitDefender: Trojan.Generic.2220697, NOD32: Win32/TrojanDownloader.FakeAlert.AGA trojan )[*][thread=53533]Trojan-Downloader.Win32.FraudLoad.fko[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4885, BitDefender: Trojan.Generic.2220697, NOD32: Win32/TrojanDownloader.FakeAlert.AGA trojan )[*][thread=53505]Trojan-Downloader.Win32.Small.alzl[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.43149, NOD32: Win32/Oficla.E trojan, AVAST4: Win32:Small-NAD [Trj] )[*][thread=53425]Trojan-Downloader.Win32.Small.alzn[/thread] -> c:\windows\system32\tapi.nfo ( DrWEB: Trojan.DownLoad.44006, AVAST4: Win32:Small-NAD [Trj] )[*][thread=53487]Trojan-Dropper.Win32.Agent.bbup[/thread] -> d:\documents and settings\владимир\sys32_nov.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=53487]Trojan-Dropper.Win32.Agent.bbup[/thread] -> d:\windows\system32\sys32_nov.exe ( DrWEB: Trojan.DownLoad.41506, BitDefender: Trojan.Downloader.Cutwail.L )[*][thread=53415]Trojan-Dropper.Win32.WormDrop.g[/thread] -> c:\windows\system32\logon.exe ( DrWEB: Win32.HLLW.Autoruner.7491, BitDefender: Gen:Trojan.Heur.bu1@zWoTG!ci, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=53485]Trojan-PSW.Win32.Riodrv.lc[/thread] -> c:\windows\system32\riodrv.exe ( NOD32: Win32/Spy.Delf.NXH trojan, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=53477]Trojan-Ransom.Win32.PornoBro.bn[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Annoy.24, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=52755]Trojan.Win32.AutoRun.bc[/thread] -> j:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-W )[*][thread=53516]Trojan.Win32.Buzus.bweg[/thread] -> c:\recycler\s-1-5-21-8352906464-9979680175-235504790-5055\hdav.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53472]Trojan.Win32.Buzus.bxnq[/thread] -> c:\windows\new4.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53505]Trojan.Win32.Pakes.npg[/thread] -> c:\program files\common files\system\webcheck.dll ( DrWEB: Trojan.PWS.Stealer.180 )[*][thread=53505]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( NOD32: Win32/Patched.FR virus )[*][thread=52489]Trojan.Win32.Refroso.iif[/thread] -> c:\recycler\s-1-5-21-3580830346-9139081205-383185779-3854\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=53347]Trojan.Win32.Tdss.aogy[/thread] -> c:\windows\system32\drivers\kbiwkmducdltap.sys ( DrWEB: BackDoor.Tdss.403, AVAST4: Win32:Alureon-CO [Rtk] )[*][thread=53516]Trojan.Win32.Tdss.aqfk[/thread] -> c:\windows\system32\drivers\rotscxrlothesr.sys ( AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=53519]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Trojan.VB.Inject.E, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Dialer-gen [Trj] )[*][thread=53479]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen, AVAST4: Win32:Cutwail-Y [Trj] )[*][thread=53425]Virus.Win32.Protector.c[/thread] -> c:\windows\system32\drivers\ntfs.sys ( DrWEB: BackDoor.Bulknet.404, BitDefender: Rootkit.Kobcka.Patched.Gen )[*][thread=53368]Worm.Win32.AInfBot.o[/thread] -> \lbtwiz.exe ( DrWEB: BackDoor.IRC.Bot.132, NOD32: Win32/AutoRun.IRCBot.CD worm, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53535]Worm.Win32.AutoRun.gra[/thread] -> d:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[*][thread=53535]Worm.Win32.AutoRun.gra[/thread] -> e:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen )[/LIST]
-
Отчет за период 02.09.2009 - 03.09.2009
[LIST][*][thread=53864]Backdoor.Win32.UltimateDefender.igv[/thread] -> c:\windows\system32\drivers\beep.sys ( DrWEB: Trojan.NtRootKit.3206, BitDefender: Generic.Malware.P!.5BCCCE32, AVAST4: Win32:FakeAV-NO [Rtk] )[*][thread=53865]Net-Worm.Win32.Kolab.dvl[/thread] -> c:\windows\expaende.exe ( DrWEB: Win32.HLLW.Lime.18, NOD32: IRC/SdBot trojan )[*][thread=53869]not-a-virus:FraudTool.Win32.Agent.wk[/thread] -> g:\windows\system32\ocj23xnh.exe[*][thread=53864]not-a-virus:FraudTool.Win32.Agent.wl[/thread] -> c:\windows\system32\wisdstr.exe ( BitDefender: Gen:Trojan.Heur.lq2@vXyDgwcix, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53847]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\drivers\rotscxvktevpwl.sys ( AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=53855]Trojan-Clicker.Win32.Agent.ihb[/thread] -> c:\windows\system32\drivers\svchost.exe ( AVAST4: Win32:Preald-AH [Drp] )[*][thread=53864]Trojan-Downloader.Win32.FraudLoad.fko[/thread] -> c:\windows\system32\braviax.exe ( DrWEB: Trojan.Fakealert.4885, BitDefender: Trojan.Generic.2220697, NOD32: Win32/TrojanDownloader.FakeAlert.AGA trojan )[*][thread=53865]Trojan-Downloader.Win32.Pher.uz[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: Win32.HLLW.Lime.18, NOD32: Win32/TrojanProxy.Agent.NEL trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53865]Trojan-Downloader.Win32.Pher.va[/thread] -> c:\recycler\s-1-5-21-3911547313-0432109401-366970908-5089\mwau.exe ( DrWEB: Win32.HLLW.Lime.18, NOD32: Win32/Peerfrag.DN worm )[*][thread=53841]Trojan-Ransom.Win32.PornoBro.bn[/thread] -> c:\windows.0\services.exe ( DrWEB: Trojan.Annoy.24, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53834]Trojan-Ransom.Win32.PornoBro.bn[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Annoy.24, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53886]Trojan-Spy.Win32.KeyLogger.cme[/thread] -> c:\program files\microsoft sql server\sqlsrv.exe ( DrWEB: Trojan.PWS.Banker.29945, BitDefender: Trojan.Spy.KeyLogger.WG, NOD32: Win32/Teevsock.AA trojan, AVAST4: Win32:BredoPack [Cryp] )[*][thread=53886]Trojan-Spy.Win32.KeyLogger.cmx[/thread] -> c:\program files\java\jre1.6.1\java.exe ( DrWEB: Trojan.PWS.Banker.29944, BitDefender: GenPack:Generic.Malware.FLYB.40BAA07B, AVAST4: Win32:BredoPack [Cryp] )[*][thread=53478]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177, AVAST4: Win32:Agent-AEEP [Trj] )[*][thread=53847]Trojan.Win32.Buzus.bweg[/thread] -> c:\recycler\s-1-5-21-1434943935-0018345013-753387196-5659\hdav.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\lcugvl.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\mpjvyy.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\nxnfxh.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\mmeuqe.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\laxeop.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\fatwcu.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\ywuvtk.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\szumrx.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\vntojg.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\eamhpp.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\zbmarb.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\whwnmv.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\wdwktm.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\sbzdlw.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\nwhzts.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\enslgb.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\zquhet.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\agnekh.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\gwfilm.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\rlgcfb.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\jwrjfz.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\gnnles.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\dzdsms.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53903]Trojan.Win32.Delf.oav[/thread] -> c:\windows\system32\eoebqm.dll ( DrWEB: Trojan.Annoy.21, NOD32: Win32/Delf.OPE trojan )[*][thread=53889]Virus.Win32.Protector.b[/thread] -> c:\windows\system32\drivers\ndis.sys ( DrWEB: Trojan.NtRootKit.2912, BitDefender: Rootkit.19224, NOD32: Win32/Protector.C virus, AVAST4: Win32:Cutwail-J )[*][thread=53454]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\explorer.exe ( DrWEB: BackDoor.IRC.Bot.132, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53478]Worm.Win32.AutoRun.fjx[/thread] -> c:\windows\system32\msmsgs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.6373, BitDefender: Worm.Generic.73064, NOD32: Win32/Autoit.DK worm, AVAST4: Win32:AutoIt-U [Trj] )[*][thread=53855]Worm.Win32.Bezopi.cf[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326, AVAST4: Win32:Preald-AB [Drp] )[/LIST]
-
Отчет за период 04.09.2009 - 05.09.2009
[LIST][*][thread=54016]Email-Worm.Win32.Bagle.adw[/thread] -> c:\windows\system32\w3x0nol.dll[*][thread=53086]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\tejhk.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AE worm, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53930]Net-Worm.Win32.Kolab.dvg[/thread] -> c:\windows\avdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Worm.Generic.83261, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53157]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\rotscxnpafvkls.dll ( AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=53157]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\drivers\rotscxdkeqjxwb.sys ( AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=53157]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\rotscxuxnosptx.dll ( AVAST4: Win32:Alureon-CW [Rtk] )[*][thread=54026]Trojan-Downloader.Win32.Agent.coyn[/thread] -> c:\windows\system32\rtmanger.dll[*][thread=54016]Trojan-Downloader.Win32.Delf.uyx[/thread] -> c:\windows\system\svchost.exe ( DrWEB: Trojan.DownLoad.44448, BitDefender: Generic.Malware.Yddld.58D0DFDD, NOD32: Win32/Votwup.A trojan, AVAST4: Win32:Downloader-CMG [Trj] )[*][thread=53930]Trojan-Downloader.Win32.Pher.uk[/thread] -> c:\windows\system32\umdmgr.exe ( DrWEB: Trojan.Packed.162, BitDefender: Trojan.Downloader.JJRI, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53157]Trojan-Downloader.Win32.Pher.us[/thread] -> c:\recycler\s-1-5-21-1460244436-9583893035-697024678-3952\nissan.exe ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53916]Trojan-GameThief.Win32.Magania.bzxr[/thread] -> c:\ewqij.bat ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUM, NOD32: Win32/AutoRun.PSW.OnlineGames.AK worm, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=53916]Trojan-GameThief.Win32.Magania.cabk[/thread] -> c:\docume~1\admin\locals~1\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.12824, BitDefender: Gen:Trojan.Heur.Nsanti.eq4@bm1xLFl )[*][thread=53916]Trojan-GameThief.Win32.Magania.cacq[/thread] -> c:\docume~1\admin\locals~1\temp\herss.exe ( DrWEB: Trojan.PWS.Wsgame.12661 )[*][thread=53535]Trojan.Win32.AutoRun.bi[/thread] -> d:\autorun.inf ( BitDefender: Trojan.AutorunINF.Gen, AVAST4: BV:AutoRun-W )[*][thread=53916]Trojan.Win32.AutoRun.bj[/thread] -> c:\autorun.inf[*][thread=53930]Trojan.Win32.Buzus.bxsx[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.CJ.SUG, AVAST4: Win32:Trojan-gen {Other} )[*][thread=53930]Trojan.Win32.Buzus.bxsy[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Recycler.6, AVAST4: Win32:Trojan-gen {Other} )[*][thread=37678]Trojan.Win32.FraudPack.tab[/thread] -> c:\users\slavexx\appdata\local\temp\b.exe ( AVAST4: Win32:Trojan-gen {Other} )[*][thread=54042]Trojan.Win32.VB.uzo[/thread] -> c:\kalba\maafena\laxoury.exe ( DrWEB: Win32.HLLW.Autoruner.7448, BitDefender: Trojan.Agent.VB.BER, AVAST4: Win32:Trojan-gen {Other} )[/LIST]
-
Отчет за период 05.09.2009 - 06.09.2009
[LIST][*][thread=53988]Backdoor.Win32.Kbot.uv[/thread] -> c:\windows\system32\vhosts.exe ( BitDefender: Application.Generic.179741, AVAST4: Win32:MalOb-H [Cryp] )[*][thread=54046]Backdoor.Win32.SdBot.otr[/thread] -> c:\windows\system32\67.scr ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=54046]Backdoor.Win32.SdBot.otr[/thread] -> c:\windows\system32\01.scr ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=54046]Backdoor.Win32.SdBot.otr[/thread] -> c:\windows\system32\35.scr ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=54046]Backdoor.Win32.SdBot.otr[/thread] -> c:\documents and settings\networkservice\local settings\temporary internet files\content.ie5\4vw3wnm5\cakar[1].exe ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=54046]Backdoor.Win32.SdBot.otr[/thread] -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190 )[*][thread=54063]Net-Worm.Win32.Kolab.dvg[/thread] -> c:\windows\avdrive32.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Worm.Generic.83261, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54061]Packed.Win32.TDSS.z[/thread] -> c:\windows\system32\drivers\rotscxxillxept.sys ( AVAST4: Win32:Alureon-CX [Rtk] )[*][thread=54064]Trojan-Downloader.Win32.Adload.imi[/thread] -> c:\documents and settings\администратор\application data\adsubscribe\adsubscribe.dll ( DrWEB: BackDoor.BlackHole.3491, BitDefender: Trojan.Generic.2303618, AVAST4: Win32:Adware-gen [Adw] )[*][thread=54037]Trojan-Downloader.Win32.Agent.cimd[/thread] -> c:\program files\internet explorer\rasadhlp.dll ( DrWEB: Trojan.DownLoad.40455 )[*][thread=54061]Trojan-Dropper.Win32.Hexzone.eg[/thread] -> c:\windows\temp\winnofzcyliz5mmrr.exe ( BitDefender: Trojan.Generic.1764680, NOD32: Win32/Hexzone.AC trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54061]Trojan-Dropper.Win32.Hexzone.eg[/thread] -> c:\windows\system32\~.exe ( BitDefender: Trojan.Generic.1764680, NOD32: Win32/Hexzone.AC trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54047]Trojan-PSW.Win32.WebMoner.ka[/thread] -> h:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, AVAST4: Win32:Preald-AK [Drp] )[*][thread=54063]Trojan.Win32.Buzus.bxsx[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.CJ.SUG, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54063]Trojan.Win32.Buzus.bxsy[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Recycler.6, AVAST4: Win32:Trojan-gen {Other} )[*][thread=18042]Virus.Win32.Neshta.a[/thread] -> \clicker.exe ( DrWEB: Win32.HLLP.Neshta, BitDefender: Application.Tool.4668, NOD32: Win32/Neshta.A virus )[*][thread=54048]Virus.Win32.Sality.ab[/thread] -> \miqnkn.sys ( DrWEB: Win32.Sector.12, BitDefender: Win32.Sality.OI, NOD32: Win32/Sality.NAR virus, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54057]Virus.Win32.Virut.ce[/thread] -> \avz.exe ( DrWEB: Win32.Virut.56, BitDefender: Win32.Virtob.Gen.12, NOD32: Win32/Virut.NBP virus )[*][thread=54047]Worm.Win32.Bezopi.dr[/thread] -> q:\autorun.exe[*][thread=54047]Worm.Win32.Bezopi.dr[/thread] -> c:\autorun.exe[/LIST]
-
Отчет за период 06.09.2009 - 07.09.2009
[LIST][*][thread=53903]Backdoor.Win32.Agent.afxg[/thread] -> c:\windows\system32\userinit.exe ( DrWEB: Trojan.MulDrop.31415, BitDefender: Trojan.Generic.2197687, NOD32: Win32/Agent.PMM trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54107]Backdoor.Win32.Bredolab.rn[/thread] -> c:\documents and settings\admin\главное меню\программы\автозагрузка\ikowin32.exe[*][thread=54055]Net-Worm.Win32.Kolab.dvv[/thread] -> c:\windows\w7services.exe ( DrWEB: Win32.HLLW.Lime.18, AVAST4: Win32:SlenfBot-F [Wrm] )[*][thread=54111]not-a-virus:AdWare.Win32.AdSubscribe.h[/thread] -> c:\documents and settings\пк\application data\adsubscribe\adsubscribe.dll ( DrWEB: Trojan.AdSubscribe.73 )[*][thread=54126]Rootkit.Win32.Agent.pqv[/thread] -> c:\windows\system32\drivers\vbtenum.sys ( DrWEB: Trojan.PWS.GoldSpy.2793, BitDefender: Rootkit.25030, AVAST4: Win32:Haxdoor-KI [Rtk] )[*][thread=54055]Trojan-Downloader.Win32.Pher.uz[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: Win32.HLLW.Lime.18, NOD32: Win32/TrojanProxy.Agent.NEL trojan, AVAST4: Win32:SlenfBot-F [Wrm] )[*][thread=54055]Trojan-Downloader.Win32.Pher.xw[/thread] -> c:\recycler\s-1-5-21-9482156377-9836603488-658227008-8233\mwau.exe ( DrWEB: Win32.HLLW.Lime.18, AVAST4: Win32:SlenfBot-F [Wrm] )[*][thread=54114]Trojan-PSW.Win32.Riodrv.ju[/thread] -> c:\windows\temp\rdl3c.tmp.exe ( DrWEB: Trojan.PWS.VisStud.16, BitDefender: Spyware.5620, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan-PSW.Win32.Riodrv.ju[/thread] -> c:\windows\temp\rdl60.tmp.exe ( DrWEB: Trojan.PWS.VisStud.16, BitDefender: Spyware.5620, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan-PSW.Win32.Riodrv.lc[/thread] -> c:\windows\temp\rdl53.tmp.exe ( DrWEB: Trojan.PWS.Riodrv, NOD32: Win32/Spy.Delf.NXH trojan, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan-PSW.Win32.Riodrv.lc[/thread] -> c:\windows\system32\riodrv.exe ( DrWEB: Trojan.PWS.Riodrv, NOD32: Win32/Spy.Delf.NXH trojan, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan-PSW.Win32.Riodrv.on[/thread] -> c:\windows\system32\dgdfgdfgdfgfdgfg.tmp ( DrWEB: Trojan.PWS.Riodrv, NOD32: Win32/Spy.Delf.NXH trojan, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan-PSW.Win32.WebMoner.id[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, BitDefender: Trojan.Generic.2243521, AVAST4: Win32:MalOb-I [Cryp] )[*][thread=54151]Trojan-PSW.Win32.WebMoner.ka[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, AVAST4: Win32:Preald-AK [Drp] )[*][thread=54106]Trojan-Spy.Win32.Goldun.azg[/thread] -> c:\windows\system32\sbunit.sys ( DrWEB: Trojan.NtRootKit.1518, BitDefender: Trojan.Spy.Goldun.NDM, AVAST4: Win32:Haxdoor-JV [Trj] )[*][thread=54126]Trojan-Spy.Win32.Goldun.crt[/thread] -> c:\windows\system32\rgadtm.dll ( DrWEB: Trojan.PWS.GoldSpy.2793, BitDefender: Trojan.Spy.Goldun.NCN, AVAST4: Win32:Spyware-gen [Trj] )[*][thread=54114]Trojan.Win32.Autoit.xp[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: archive: Win32.HLLW.Autoruner.based, BitDefender: Trojan.Generic.1451177, AVAST4: Win32:Agent-AEEP [Trj] )[*][thread=53975]Trojan.Win32.Buzus.bvux[/thread] -> c:\windows\temp\pnch.exe ( DrWEB: Trojan.PWS.LDPinch.4308, BitDefender: Trojan.Generic.2249904 )[*][thread=54107]Trojan.Win32.Buzus.bxqq[/thread] -> c:\windows\system32\sdra64.exe ( AVAST4: Win32:Trojan-gen {Other} )[*][thread=54120]Trojan.Win32.Buzus.bxsx[/thread] -> c:\recycler\s-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ( DrWEB: Win32.HLLW.Recycler.6, BitDefender: Trojan.Generic.CJ.SUG, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54120]Trojan.Win32.Buzus.bxsy[/thread] -> c:\recycler\s-1-5-21-0243336031-4052116379-881863308-0851\vse432.exe ( DrWEB: Win32.HLLW.Recycler.6, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54099]Trojan.Win32.FraudPack.stu[/thread] -> c:\documents and settings\sam\application data\gmail\shell32.dll ( DrWEB: Trojan.Fakealert.4954, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54105]Trojan.Win32.Patched.fr[/thread] -> c:\windows\system32\sfcfiles.dll ( NOD32: Win32/Patched.FR virus, AVAST4: Win32:Patched-KP [Trj] )[*][thread=54152]Trojan.Win32.VB.uzo[/thread] -> c:\kalba\maafena\laxoury.exe ( DrWEB: Win32.HLLW.Autoruner.7448, BitDefender: Trojan.Agent.VB.BER, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54082]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\ati2evxx.exe ( DrWEB: BackDoor.IRC.Bot.132 )[*][thread=54120]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\lbtwi.exe ( DrWEB: BackDoor.IRC.Bot.132 )[*][thread=54055]Worm.Win32.AutoIt.qd[/thread] -> g:\vtauzy.exe ( DrWEB: Win32.HLLW.Siggen.73 )[*][thread=54114]Worm.Win32.Bezopi.ee[/thread] -> c:\program files\microsoft common\svchost.exe ( DrWEB: Win32.HLLW.Autoruner.6326 )[/LIST]
-
Отчет за период 07.09.2009 - 08.09.2009
[LIST][*][thread=54168]Backdoor.Win32.Bredolab.rp[/thread] -> c:\documents and settings\user8\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11 )[*][thread=54136]Backdoor.Win32.PcClient.bscy[/thread] -> c:\windows\system32\hjssnk.kll ( BitDefender: Trojan.Crypt.DG, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54223]HackTool.Win32.Nice.b[/thread] -> c:\windows\system32\ice_time.dll ( AVAST4: Win32:Trojan-gen {Other} )[*][thread=54203]Net-Worm.Win32.Kolab.dwa[/thread] -> g:\recycler\s-1-6-21-2434476501-1644491937-600003330-1213\truecrypt.exe ( DrWEB: BackDoor.IRC.Sdbot.4885, BitDefender: Trojan.Dropper.SVX, NOD32: IRC/SdBot trojan )[*][thread=54203]Net-Worm.Win32.Kolab.dwa[/thread] -> c:\windows\system\wuauclt.exe ( DrWEB: BackDoor.IRC.Sdbot.4885, BitDefender: Trojan.Dropper.SVX, NOD32: IRC/SdBot trojan )[*][thread=54179]Packed.Win32.Krap.w[/thread] -> c:\program files\internet explorer\connection wizard\icwsetup.exe ( DrWEB: Trojan.DownLoad.46296, BitDefender: Trojan.Generic.2334138 )[*][thread=54179]Packed.Win32.Krap.w[/thread] -> c:\documents and settings\all users\application data\microsoft\shortcuts\icwsetup.exe ( DrWEB: Trojan.DownLoad.46296, BitDefender: Trojan.Generic.2334138 )[*][thread=54191]Packed.Win32.Krap.x[/thread] -> c:\windows\system32\servises.exe ( AVAST4: Win32:Preald-AI [Drp] )[*][thread=54179]Trojan.Win32.Agent.crmy[/thread] -> c:\documents and settings\izma\главное меню\программы\автозагрузка\ikowin32.exe ( DrWEB: Trojan.Botnetlog.11, BitDefender: Trojan.Generic.2265644, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54145]Trojan.Win32.Agent.cwbi[/thread] -> c:\windows\w7services.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.SDBot.OA, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54187]Trojan.Win32.VB.umo[/thread] -> c:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Dialer.Generic.47681, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Dialer-gen [Trj] )[*][thread=54187]Trojan.Win32.VB.umo[/thread] -> d:\win\dows\lax.exe ( DrWEB: Dialer.Siggen.121, BitDefender: Dialer.Generic.47681, NOD32: Win32/AutoRun.KS worm, AVAST4: Win32:Dialer-gen [Trj] )[*][thread=54184]Worm.Win32.Downloader.als[/thread] -> c:\windows\system32\logon.exe ( BitDefender: Worm.Generic.84074, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54187]Worm.Win32.VB.asy[/thread] -> c:\re\back\bck.exe ( DrWEB: Trojan.MulDrop.33182, BitDefender: Trojan.Generic.2217782, AVAST4: Win32:VB-NBM [Drp] )[/LIST]
-
Отчет за период 09.09.2009 - 10.09.2009
[LIST][*][thread=54437]Backdoor.Win32.SdBot.ouy[/thread] -> c:\windows\mslsrv32.exe ( DrWEB: BackDoor.IRC.Sdbot.5190, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54454]Backdoor.Win32.Small.iiv[/thread] -> c:\windows.0\system32\wildday.exe[*][thread=54373]IM-Worm.Win32.Sohanad.ao[/thread] -> c:\documents and settings\name\doctorweb\quarantine\sscvihost.exe.bak ( DrWEB: Win32.HLLW.Autoruner.6491, BitDefender: Worm.Generic.30728, NOD32: Win32/Sohanad.NDG worm, AVAST4: Win32:Sohanad-N@UPX [Wrm] )[*][thread=54455]Packed.Win32.Zack.a[/thread] -> c:\windows\services.exe ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54219]P2P-Worm.Win32.Palevo.joo[/thread] -> c:\recycler\s-1-5-21-5384548647-7523830668-662922081-0705\nissan.exe ( DrWEB: Win32.HLLW.Lime.18 )[*][thread=54411]P2P-Worm.Win32.Palevo.jou[/thread] -> c:\windows\system32\sysmgr.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.SDBot.OA )[*][thread=54410]Trojan.BAT.VKhost.u[/thread] -> c:\windowz\system32\config\systemprofile\local settings\temporary internet files\content.ie5\7gjulrg5\11111111111[1].exe ( NOD32: BAT/Qhost.NCL trojan )[*][thread=54410]Trojan.BAT.VKhost.u[/thread] -> c:\windowz\temp\rdl32.tmp.exe ( NOD32: BAT/Qhost.NCL trojan )[*][thread=54415]Trojan-Clicker.Win32.Agent.iil[/thread] -> c:\windows\system32\drivers\svchost.exe ( AVAST4: Win32:Preald-AL [Drp] )[*][thread=54373]Trojan-Downloader.Win32.Agent.ansh[/thread] -> c:\windows\mpkrnl.dll ( DrWEB: Trojan.DownLoad.12657, BitDefender: Trojan.Downloader.Agent.ZVE, NOD32: Win32/TrojanDownloader.Agent.OLF trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54373]Trojan-GameThief.Win32.Magania.bfsl[/thread] -> c:\documents and settings\name\doctorweb\quarantine\122b901e.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2255377, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bfsl[/thread] -> c:\windows\system32\122b901e.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2255377, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bfux[/thread] -> c:\windows\system32\704c3595.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2291824, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bgjv[/thread] -> c:\windows\system32\2ef0d734.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2264534, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bgjv[/thread] -> c:\documents and settings\name\doctorweb\quarantine\2ef0d734.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2264534, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bkii[/thread] -> c:\documents and settings\name\local settings\temporary internet files\content.ie5\zibhqabk\a36[1].exe ( DrWEB: Trojan.PWS.Wsgame.12058, BitDefender: Trojan.Generic.2242368, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bouc[/thread] -> c:\windows\system32\crsaqd4hw.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2360600, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bsvr[/thread] -> c:\windows\fonts\sd78dgc7hd2sktqhyau.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.4289D52D, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.btdu[/thread] -> c:\windows\system32\scevfjrcmab7.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2327971, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.btdu[/thread] -> c:\documents and settings\name\doctorweb\quarantine\scevfjrcmab7.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2327971, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bvpq[/thread] -> c:\windows\system32\perrgx5dkqsbqdwaucrqh.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2310547, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bvsg[/thread] -> c:\windows\system32\2exjw3dsatgwrf5uapadmhn.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2324598, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bwqf[/thread] -> c:\windows\system32\08223b03.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2360858, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bwyr[/thread] -> c:\documents and settings\name\local settings\temporary internet files\content.ie5\lbuvo9cz\a34[1].exe ( DrWEB: Trojan.PWS.Wsgame.13097, BitDefender: Generic.Onlinegames.14.CEB3A8D5, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bwyw[/thread] -> c:\windows\system32\srnrks5f7rkv9hp.inf ( DrWEB: Trojan.PWS.Wsgame.13098, BitDefender: Generic.Onlinegames.14.6E6E6846, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bxaz[/thread] -> c:\windows\system32\comres.bak ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2289898, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bxaz[/thread] -> c:\windows\system32\comres.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2289898, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bxaz[/thread] -> c:\windows\system32\emhnpubaaf7xjuxbbdxsg.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2289898, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bxbb[/thread] -> c:\windows\system32\crzfqurd2g58gxvghsdbnhu.inf ( DrWEB: Trojan.PWS.Wsgame.13102, BitDefender: Generic.Onlinegames.14.4C5F013E, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bxdd[/thread] -> c:\windows\system32\frwsjda7rbsur3jfsmmby.inf ( DrWEB: Trojan.PWS.Wsgame.13103, BitDefender: Generic.Onlinegames.14.CA3E19A8, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bzvn[/thread] -> c:\windows\system32\am274u6rqq2ctztpjcgky.inf ( DrWEB: Trojan.PWS.Wsgame.12891, BitDefender: Generic.Onlinegames.14.23ED3653, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.bzzw[/thread] -> c:\windows\system32\pj83zgsqjcwunwjrrp42tfw.dll ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.EDBE6D61, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caag[/thread] -> c:\windows\tasks\c2nh4numz9kny5zqnc.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.B8B076EE, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caag[/thread] -> c:\documents and settings\name\doctorweb\quarantine\c2nh4numz9kny5zqnc.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.B8B076EE, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caah[/thread] -> c:\windows\fonts\fyrwjf5qfhh.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2327767, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cabi[/thread] -> c:\windows\system32\3a5xtckyzk7kzcrfre.inf ( DrWEB: Trojan.PWS.Wsgame.13115, BitDefender: Generic.Onlinegames.14.C1837631, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cabi[/thread] -> c:\windows\system32\pecfwpj48y6dadf87r.inf ( DrWEB: Trojan.PWS.Wsgame.13160, BitDefender: Generic.Onlinegames.14.3D89DA74, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cagy[/thread] -> c:\windows\system32\dvpzdpd688jbumdbxv.inf ( DrWEB: Trojan.PWS.Wsgame.13159, BitDefender: Generic.Onlinegames.14.7F55C85B, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cajl[/thread] -> c:\windows\system32\b4ynkreeheerkfeea4.inf ( DrWEB: Trojan.PWS.Wsgame.13126, BitDefender: Generic.Onlinegames.14.F681AB56, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cakb[/thread] -> c:\windows\tasks\k6xzvuk4mrgjbpe76f.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.3CCD616A, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.cakb[/thread] -> c:\documents and settings\name\doctorweb\quarantine\k6xzvuk4mrgjbpe76f.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.3CCD616A, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caku[/thread] -> c:\windows\system32\btmband89jc9pspq5eknj.inf ( DrWEB: Trojan.PWS.Gamania.origin, BitDefender: Generic.Onlinegames.14.3FA47539, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caku[/thread] -> c:\documents and settings\name\doctorweb\quarantine\btmband89jc9pspq5eknj.inf ( DrWEB: Trojan.PWS.Gamania.origin, BitDefender: Generic.Onlinegames.14.3FA47539, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caoh[/thread] -> c:\documents and settings\name\doctorweb\quarantine\dmvjfcdsge5kccsmc6gzfjb.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.948BC296, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caoh[/thread] -> c:\windows\system32\dmvjfcdsge5kccsmc6gzfjb.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.948BC296, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caoi[/thread] -> c:\documents and settings\name\doctorweb\quarantine\efepead4zpvmuxrdbs.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.3CADAACC, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.Magania.caoi[/thread] -> c:\windows\tasks\efepead4zpvmuxrdbs.inf ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Generic.Onlinegames.14.3CADAACC, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54373]Trojan-GameThief.Win32.OnLineGames.bmnz[/thread] -> c:\windows\fonts\a97cracb.fon ( DrWEB: Trojan.PWS.Wsgame.12116, BitDefender: Trojan.Generic.2211073, NOD32: Win32/PSW.OnLineGames.NRD trojan, AVAST4: Win32:Agent-ACMH [Drp] )[*][thread=54454]Trojan-PSW.Win32.LdPinch.airo[/thread] -> c:\windows.0\system32\config\systemprofile\local settings\temporary internet files\content.ie5\2ne59wd6\pin[1].exe ( DrWEB: Trojan.PWS.LDPinch.4308, AVAST4: Win32:Preald-AL [Drp] )[*][thread=54454]Trojan-PSW.Win32.LdPinch.airo[/thread] -> c:\windows.0\temp\rdl4c5.tmp.exe ( DrWEB: Trojan.PWS.LDPinch.4308, AVAST4: Win32:Preald-AL [Drp] )[*][thread=54454]Trojan-PSW.Win32.WebMoner.kh[/thread] -> c:\windows.0\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, AVAST4: Win32:Preald-AL [Drp] )[*][thread=54454]Trojan-PSW.Win32.WebMoner.kh[/thread] -> c:\windows.0\system32\config\systemprofile\local settings\temporary internet files\content.ie5\6xkmm31g\589[1].exe ( DrWEB: Trojan.PWS.Webmonier.137, AVAST4: Win32:Preald-AL [Drp] )[*][thread=37678]Trojan-Ransom.Win32.PornoBro.bq[/thread] -> c:\windows\services.exe ( DrWEB: Trojan.Packed.541, BitDefender: Gen:Trojan.Heur.Hype.rC0@aWz0enpc, AVAST4: Win32:MalOb-H [Cryp] )[*][thread=54454]Trojan-Spy.Win32.Zbot.aaqo[/thread] -> c:\windows.0\system32\sdra64.exe ( BitDefender: Gen:Trojan.Heur.Hype.AmZ@a4nJIKb, AVAST4: Win32:Fasec [Trj] )[*][thread=54373]Trojan.Win32.Agent.anoe[/thread] -> c:\windows\mkmkrnl.dll ( DrWEB: Trojan.DownLoad.12619, BitDefender: Trojan.Downloader.Agent.AAPO, NOD32: Win32/Agent.AMOL trojan, AVAST4: Win32:Siveras-B [Expl] )[*][thread=54411]Trojan.Win32.Agent.cwbi[/thread] -> c:\windows\w7services.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.SDBot.OA, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54411]Trojan.Win32.Pakes.npy[/thread] -> c:\recycler\s-1-5-21-7269038943-7999544209-061079672-0311\mwau.exe ( DrWEB: Win32.HLLW.Lime.18, BitDefender: Trojan.Dropper.SDBot.OA )[*][thread=54334]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\notepad.exe ( DrWEB: BackDoor.IRC.Bot.132, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54250]Worm.Win32.AInfBot.o[/thread] -> c:\windows\system32\drivers\notepad.exe ( DrWEB: BackDoor.IRC.Bot.132, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54454]Worm.Win32.Bezopi.eq[/thread] -> c:\program files\microsoft common\svchost.exe ( AVAST4: Win32:Preald-AL [Drp] )[/LIST]
-
Отчет за период 10.09.2009 - 11.09.2009
[LIST][*][thread=54469]Backdoor.Win32.Bredavi.i[/thread] -> c:\windows\system32\tapi.nfo ( AVAST4: Win32:Small-NAD [Trj] )[*][thread=54432]Backdoor.Win32.Bredolab.kv[/thread] -> c:\documents and settings\user\главное меню\программы\автозагрузка\ikowin32.exe ( BitDefender: Backdoor.Generic.206980, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54380]not-a-virus:AdWare.Win32.RuPorn.e[/thread] -> c:\program files\rupass\rupass.exe ( DrWEB: Adware.Rupass )[*][thread=54380]not-a-virus:AdWare.Win32.RuPorn.g[/thread] -> c:\program files\rupass\rupass.dll ( DrWEB: Adware.Rupass, BitDefender: Adware.Generic.13871, AVAST4: Win32:RuPorn [Adw] )[*][thread=54425]not-a-virus:AdWare.Win32.TMAagent.t[/thread] -> c:\program files\common files\target marketing agency\tmagent\tmagent.dll[*][thread=54445]Packed.Win32.Klone.bj[/thread] -> c:\windows\system32\csrcs.exe ( DrWEB: Win32.HLLW.Autohit.3438, BitDefender: Trojan.AutoIT.ADB )[*][thread=54474]Packed.Win32.TDSS.z[/thread] -> e:\windows\system32\drivers\rotscxotpvcgqt.sys ( DrWEB: BackDoor.Tdss.476, AVAST4: Win32:Alureon-CX [Rtk] )[*][thread=54380]Trojan-Dropper.Win32.Pincher.vp[/thread] -> c:\windows\temp\rdl1a2.tmp.exe ( DrWEB: Trojan.PWS.LDPinch.4308, AVAST4: Win32:Preald-AL [Drp] )[*][thread=54380]Trojan-Dropper.Win32.Pincher.vp[/thread] -> c:\windows\system32\config\systemprofile\local settings\temporary internet files\content.ie5\nagxydgb\pin[1].exe ( DrWEB: Trojan.PWS.LDPinch.4308, AVAST4: Win32:Preald-AL [Drp] )[*][thread=54441]Trojan-GameThief.Win32.Magania.camm[/thread] -> d:\dogyx90.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUR, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54425]Trojan-GameThief.Win32.Magania.camm[/thread] -> d:\dogyx90.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUR, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54425]Trojan-GameThief.Win32.Magania.camm[/thread] -> c:\dogyx90.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUR, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54441]Trojan-GameThief.Win32.Magania.camm[/thread] -> c:\dogyx90.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUR, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54425]Trojan-GameThief.Win32.Magania.camm[/thread] -> c:\docume~1\grish\locals~1\temp\herss.exe ( DrWEB: Trojan.PWS.Wsgame.12661, BitDefender: Trojan.PWS.OnlineGames.KCUR, NOD32: Win32/PSW.OnLineGames.NNU trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54441]Trojan-GameThief.Win32.Magania.caqp[/thread] -> c:\docume~1\bef9~1\locals~1\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.12824, BitDefender: Trojan.Generic.2378033, NOD32: Win32/PSW.OnLineGames.ODJ trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54425]Trojan-GameThief.Win32.Magania.caqp[/thread] -> c:\docume~1\grish\locals~1\temp\cvasds0.dll ( DrWEB: Trojan.PWS.Wsgame.12824, BitDefender: Trojan.Generic.2378033, NOD32: Win32/PSW.OnLineGames.ODJ trojan, AVAST4: Win32:Kamso [Trj] )[*][thread=54441]Trojan-GameThief.Win32.Magania.carc[/thread] -> c:\windows\system32\e8main0.dll ( DrWEB: Trojan.PWS.Wsgame.12342, BitDefender: Gen:Trojan.Heur.Nsanti.dq4@bqBpZni, AVAST4: Win32:Kamso [Trj] )[*][thread=54368]Trojan-GameThief.Win32.OnLineGames.ski[/thread] -> f:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun virus, AVAST4: VBS:Malware-gen )[*][thread=54368]Trojan-GameThief.Win32.OnLineGames.ski[/thread] -> c:\autorun.inf ( DrWEB: Win32.HLLW.Autoruner.1469, BitDefender: Trojan.AutorunINF.Gen, NOD32: INF/Autorun virus, AVAST4: VBS:Malware-gen )[*][thread=54380]Trojan-PSW.Win32.WebMoner.ka[/thread] -> c:\windows\system32\msvcrt57.dll ( DrWEB: Trojan.DownLoad.5244, AVAST4: Win32:Preald-AK [Drp] )[*][thread=54440]Trojan-Spy.Win32.Zbot.aany[/thread] -> c:\documents and settings\sedova_il.vr-ocean\application data\sdra64.exe ( BitDefender: Backdoor.Bot.105945, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54483]Trojan-Spy.Win32.Zbot.gen[/thread] -> c:\windows\system32\sdra64.exe ( BitDefender: Gen:Trojan.Heur.Hype.tmZ@aaqCVcc, AVAST4: Win32:MalOb-A [Cryp] )[*][thread=54425]Trojan.Win32.AutoRun.cc[/thread] -> c:\autorun.inf ( BitDefender: Trojan.PWS.Onlinegames.KCUS, NOD32: Win32/PSW.OnLineGames.NNU trojan )[*][thread=54425]Trojan.Win32.AutoRun.cc[/thread] -> d:\autorun.inf ( BitDefender: Trojan.PWS.Onlinegames.KCUS, NOD32: Win32/PSW.OnLineGames.NNU trojan )[*][thread=54441]Trojan.Win32.AutoRun.cc[/thread] -> d:\autorun.inf ( BitDefender: Trojan.PWS.Onlinegames.KCUS, NOD32: Win32/PSW.OnLineGames.NNU trojan )[*][thread=54441]Trojan.Win32.AutoRun.cc[/thread] -> c:\autorun.inf ( BitDefender: Trojan.PWS.Onlinegames.KCUS, NOD32: Win32/PSW.OnLineGames.NNU trojan )[*][thread=54491]Trojan.Win32.Pakes.npz[/thread] -> c:\program files\common files\system\webcheck.dll[*][thread=54539]Trojan.Win32.Small.ccj[/thread] -> c:\windows\system32\appmgmt.dll ( DrWEB: Trojan.Siggen.4084, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54462]Virus.Win32.Parite.b[/thread] -> c:\windows\system32\spoolsv.exe ( DrWEB: Win32.Parite.2, BitDefender: Win32.Parite.B, NOD32: Win32/Parite.B virus, AVAST4: Win32:Parite )[*][thread=54527]Virus.Win32.Parite.b[/thread] -> /storage/downloads/avz4/avz.exe ( DrWEB: Win32.Parite.2, BitDefender: Win32.Parite.B, NOD32: Win32/Parite.B virus, AVAST4: Win32:Parite )[*][thread=54462]Virus.Win32.Parite.b[/thread] -> c:\windows\temp\uqa2.tmp ( DrWEB: Win32.Parite.2, BitDefender: Application.Generic.198770, NOD32: Win32/Parite.B.packed virus, AVAST4: Win32:Parite-B@dll )[*][thread=54462]Worm.Win32.AutoRun.avwm[/thread] -> c:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\sys83.exe ( DrWEB: Win32.HLLW.Autoruner.7515, BitDefender: Backdoor.Hamweq.1 )[*][thread=54368]Worm.Win32.AutoRun.csj[/thread] -> f:\ekugb3.bat ( DrWEB: Trojan.MulDrop.6474, BitDefender: Packer.Malware.NSAnti.DE, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*][thread=54368]Worm.Win32.AutoRun.csj[/thread] -> c:\ekugb3.bat ( DrWEB: Trojan.MulDrop.6474, BitDefender: Packer.Malware.NSAnti.DE, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*][thread=54368]Worm.Win32.AutoRun.csj[/thread] -> c:\windows\system32\amvo0.dll ( DrWEB: Trojan.PWS.Wsgame.3434, BitDefender: Packer.Malware.NSAnti.1, NOD32: Win32/PSW.OnLineGames.NMP trojan, AVAST4: Win32:OnLineGames-CWS [Trj] )[*][thread=54368]Worm.Win32.AutoRun.csj[/thread] -> c:\windows\system32\amvo.exe ( DrWEB: Trojan.MulDrop.6474, BitDefender: Packer.Malware.NSAnti.DE, NOD32: Win32/PSW.OnLineGames.NLI trojan, AVAST4: Win32:AutoRun-WE [Wrm] )[*][thread=54368]Worm.Win32.FlyStudio.bg[/thread] -> c:\windows\system32\8f00b2\1d8cd9.exe ( DrWEB: Win32.HLLW.Autoruner.6234, BitDefender: Trojan.Spy.Agent.NXS, NOD32: Win32/AutoRun.FlyStudio.B worm, AVAST4: Win32:Spyware-gen [Trj] )[/LIST]
-
Отчет за период 11.09.2009 - 12.09.2009
[LIST][*][thread=53332]Backdoor.Win32.Bredolab.uz[/thread] -> c:\documents and settings\администратор.компьютер\главное меню\программы\автозагрузка\ikowin32.exe ( AVAST4: Win32:BredoPack [Cryp] )[*][thread=52957]Backdoor.Win32.SdBot.oqa[/thread] -> c:\system volume information\_restore{08fec803-7d9b-4751-aa6b-6bd703a4e0de}\rp1\a0000276.scr ( DrWEB: BackDoor.IRC.Sdbot.5190, BitDefender: Worm.Generic.84157, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54559]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\hvcfa.dll ( DrWEB: Win32.HLLW.Autoruner.5555, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AB worm, AVAST4: Win32:Confi [Wrm] )[*][thread=54330]Net-Worm.Win32.Kido.ih[/thread] -> c:\windows\system32\rkhggufo.dll ( DrWEB: Win32.HLLW.Shadow.based, BitDefender: Win32.Worm.Downadup.Gen, NOD32: Win32/Conficker.AA worm, AVAST4: Win32:Confi [Wrm] )[*][thread=54550]Trojan-Spy.Win32.Zbot.aatk[/thread] -> c:\windows\system32\twex.exe ( AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54619]Trojan.Win32.Agent.buru[/thread] -> d:\documents and settings\seuge\local settings\temp\2350.exe ( DrWEB: Trojan.PWS.Webmonier.139, BitDefender: Dropped:Trojan.Generic.1902024, AVAST4: Win32:Rootkit-gen [Rtk] )[*][thread=54559]Trojan.Win32.FlyStudio.ll[/thread] -> c:\windows\system32\hx-67e30.exe ( DrWEB: Trojan.Siggen.3031, BitDefender: Trojan.Generic.2348326, NOD32: Win32/FlyStudio.NPD trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54559]Trojan.Win32.FlyStudio.ll[/thread] -> c:\windows\system32\hv-1e60f.exe ( DrWEB: Trojan.Siggen.3067, BitDefender: Trojan.Generic.IS.551489, NOD32: Win32/FlyStudio.NOU trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54559]Trojan.Win32.FlyStudio.ll[/thread] -> c:\windows\system32\vt-7326.exe ( DrWEB: Trojan.Siggen.3031, BitDefender: Trojan.Generic.2348326, NOD32: Win32/FlyStudio.NPD trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54559]Trojan.Win32.FlyStudio.ll[/thread] -> c:\windows\system32\vt-7626.exe ( DrWEB: Trojan.Siggen.3067, BitDefender: Trojan.Generic.IS.551489, NOD32: Win32/FlyStudio.NOU trojan, AVAST4: Win32:Trojan-gen {Other} )[*][thread=54557]Trojan.Win32.Pincav.cmb[/thread] -> c:\windows\system32\servises.exe ( AVAST4: Win32:Tedroo [Trj] )[*][thread=54511]Virus.Win32.Virut.ce[/thread] -> \avz00001.dta ( DrWEB: Win32.Virut.56, BitDefender: Trojan.Generic.2196476, NOD32: Win32/Virut.NBP virus, AVAST4: Win32:Vitro )[/LIST]