Цитата SolarSpark:
Сделайте повторные логи AVZ + RSIT »
|
удалите в мвам
Код:

Зараженные ключи в реестре:
HKEY_CURRENT_USER\Software\winxarj (Hoax.ArchSMS) -> No action taken.
Зараженные папки:
c:\Users\moonis\AppData\Roaming\archsoft (Trojan.Agent) -> No action taken.
Зараженные файлы:
c:\Users\moonis\AppData\Roaming\archsoft\winzipu.exe (Trojan.FakeSMS) -> No action taken.
c:\Users\moonis\AppData\Roaming\thinstall\microsoft office enterprise 2007\10000001400002i\msiexec.exe (Trojan.IRCBot) -> No action taken.
c:\Users\moonis\AppData\Roaming\thinstall\microsoft office enterprise 2007\1000000800002i\svchost.exe (Trojan.IRCBot) -> No action taken.
c:\Users\moonis\AppData\Roaming\thinstall\microsoft office enterprise 2007\1000000fd00002i\vssvc.exe (Trojan.IRCBot) -> No action taken.
c:\Users\moonis\AppData\Roaming\thinstall\microsoft office enterprise 2007\300000007100002i\SETUP.EXE (Trojan.IRCBot) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\rubashka.css (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-scroll-slider.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\archstart.exe (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\dir.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\dot.gif (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\foot.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\htmlayout.dll (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\logo.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\logo2.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-h-scroll-next.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-h-scroll-prev.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-scroll-back.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-scroll-base.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-v-scroll-next.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\sb-v-scroll-prev.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\scroll.css (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\wfont.ttf (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\winzipninfo (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel2.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel3.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel4.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel5.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel6.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel7.png (Trojan.Agent) -> No action taken.
c:\Users\moonis\AppData\Roaming\archsoft\_todel8.png (Trojan.Agent) -> No action taken.