31.01.2011 08:56:30 Worm:W32/Downaduprun.A BEGIN ; ;Log created by USS version 4.10.16410 ; 31.01.2011 08:56:30 Worm:W32/Downaduprun.A file "F:\autorun.inf" renamed success 31.01.2011 08:56:30 Worm:W32/Downaduprun.A END 31.01.2011 08:56:30 Worm:W32/Downaduprun.A BEGIN ; ;Log created by USS version 4.10.16410 ; 31.01.2011 08:56:30 Worm:W32/Downaduprun.A file "F:\autorun.inf" renamed failed 31.01.2011 08:56:30 Worm:W32/Downaduprun.A END 12.12.2011 09:17:35 Suspicious:W32/Malware.af477e!Online BEGIN ; ;Log created by USS version 4.20.17231 ; 12.12.2011 09:17:35 Suspicious:W32/Malware.af477e!Online file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\test.exe" quarantined success 12.12.2011 09:17:35 Suspicious:W32/Malware.af477e!Online file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\test.exe" deleted success 12.12.2011 09:17:35 Suspicious:W32/Malware.af477e!Online END 13.12.2011 15:19:15 Trojan.Agent.ATAS BEGIN ; ;Log created by USS version 4.20.17231 ; 13.12.2011 15:19:15 Trojan.Agent.ATAS file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cf.$" deleted success 13.12.2011 15:19:15 Trojan.Agent.ATAS END 13.12.2011 15:19:15 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 13.12.2011 15:19:15 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 13.12.2011 15:19:15 Trojan.Generic.6904756 END 13.12.2011 15:19:15 Trojan.Generic.6795943 BEGIN ; ;Log created by USS version 4.20.17231 ; 13.12.2011 15:19:15 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 13.12.2011 15:19:15 Trojan.Generic.6795943 END 14.12.2011 07:16:15 Trojan.Generic.6795943 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:16:15 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 14.12.2011 07:16:15 Trojan.Generic.6795943 END 14.12.2011 07:16:15 Trojan.Agent.ATAS BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:16:15 Trojan.Agent.ATAS file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cf.$" deleted success 14.12.2011 07:16:15 Trojan.Agent.ATAS END 14.12.2011 07:16:15 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:16:15 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 07:16:15 Trojan.Generic.6904756 END 14.12.2011 07:42:49 Trojan.Generic.7023636 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:42:49 Trojan.Generic.7023636 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 14.12.2011 07:42:49 Trojan.Generic.7023636 END 14.12.2011 07:42:49 Trojan.Agent.ATAS BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:42:49 Trojan.Agent.ATAS file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cf.$" deleted success 14.12.2011 07:42:49 Trojan.Agent.ATAS END 14.12.2011 07:42:49 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:42:49 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 07:42:49 Trojan.Generic.6904756 END 14.12.2011 07:56:18 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:56:18 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 07:56:18 Trojan.Generic.6904756 END 14.12.2011 07:56:18 Trojan.Agent.ATAS BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:56:18 Trojan.Agent.ATAS file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cf.$" deleted success 14.12.2011 07:56:18 Trojan.Agent.ATAS END 14.12.2011 07:56:18 Trojan.Generic.6795943 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 07:56:18 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 14.12.2011 07:56:18 Trojan.Generic.6795943 END 14.12.2011 08:12:34 Trojan.Generic.6795943 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 08:12:34 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 14.12.2011 08:12:34 Trojan.Generic.6795943 END 14.12.2011 08:12:34 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 08:12:34 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 08:12:34 Trojan.Generic.6904756 END 14.12.2011 08:12:35 Trojan.Agent.ATAS BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 08:12:35 Trojan.Agent.ATAS file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cf.$" deleted success 14.12.2011 08:12:35 Trojan.Agent.ATAS END 14.12.2011 09:35:04 Trojan.Agent.ATHE BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:05 Trojan.Agent.ATHE file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\upd.exe" quarantined success 14.12.2011 09:35:05 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-1402083339-1768645341-3772476872-2625\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" quarantined failed 14.12.2011 09:35:05 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-3379940848-1883750095-4199154938-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" quarantined failed 14.12.2011 09:35:05 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-3379940848-1883750095-4199154938-500\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" quarantined success 14.12.2011 09:35:05 Trojan.Agent.ATHE registry "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a path|Debugger" quarantined success 14.12.2011 09:35:05 Trojan.Agent.ATHD file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\1.exe" quarantined success 14.12.2011 09:35:06 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-1402083339-1768645341-3772476872-2625\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" restored failed 14.12.2011 09:35:06 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-3379940848-1883750095-4199154938-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" restored failed 14.12.2011 09:35:06 Trojan.Agent.ATHE registry "HKEY_USERS\S-1-5-21-3379940848-1883750095-4199154938-500\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Hidden" restored success 14.12.2011 09:35:06 Trojan.Agent.ATHE registry "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a path|Debugger" restored success 14.12.2011 09:35:06 Trojan.Agent.ATHE file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\upd.exe" deleted success 14.12.2011 09:35:06 Trojan.Agent.ATHD file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\1.exe" deleted success 14.12.2011 09:35:06 Trojan.Agent.ATHE END 14.12.2011 09:35:07 Trojan.Agent.ATHD BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:07 Trojan.Agent.ATHD END 14.12.2011 09:35:10 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:10 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.24404833498596123.exe" quarantined success 14.12.2011 09:35:10 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.24404833498596123.exe" deleted success 14.12.2011 09:35:10 Trojan.Generic.KD.472750 END 14.12.2011 09:35:11 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:11 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.4855306795679284.exe" quarantined success 14.12.2011 09:35:11 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.4855306795679284.exe" deleted success 14.12.2011 09:35:11 Trojan.Generic.KD.472750 END 14.12.2011 09:35:13 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:13 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.9358848261862711.exe" quarantined success 14.12.2011 09:35:13 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.9358848261862711.exe" deleted success 14.12.2011 09:35:13 Trojan.Generic.KD.472750 END 14.12.2011 09:35:14 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:14 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.4758967870031242.exe" quarantined success 14.12.2011 09:35:14 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.4758967870031242.exe" deleted success 14.12.2011 09:35:14 Trojan.Generic.KD.472750 END 14.12.2011 09:35:15 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:15 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.11463633189953493.exe" quarantined success 14.12.2011 09:35:15 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.11463633189953493.exe" deleted success 14.12.2011 09:35:15 Trojan.Generic.KD.472750 END 14.12.2011 09:35:17 Trojan.Generic.KD.472750 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 09:35:17 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.280722013481844.exe" quarantined success 14.12.2011 09:35:17 Trojan.Generic.KD.472750 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Temp\0.280722013481844.exe" deleted success 14.12.2011 09:35:17 Trojan.Generic.KD.472750 END 14.12.2011 10:51:42 Trojan.Generic.6795943 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 10:51:42 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" quarantined success 14.12.2011 10:51:42 Trojan.Generic.6795943 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\80000000.$" deleted success 14.12.2011 10:51:42 Trojan.Generic.6795943 END 14.12.2011 11:24:15 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 11:24:15 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" quarantined success 14.12.2011 11:24:15 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 11:24:15 Trojan.Generic.6904756 END 14.12.2011 11:24:16 Trojan.Generic.6904756 BEGIN ; ;Log created by USS version 4.20.17231 ; 14.12.2011 11:24:16 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" quarantined success 14.12.2011 11:24:16 Trojan.Generic.6904756 file "C:\Documents and Settings\d.galazka\Ustawienia lokalne\Dane aplikacji\1cf6efbe\U\800000cb.$" deleted success 14.12.2011 11:24:16 Trojan.Generic.6904756 END