Time Module Object Name Threat Action User Information 07.03.2009 20:05:08 IMON file http://192.168.55.42:7949/ckjtynvo a variant of Win32/Conficker.AE worm NT AUTHORITY\SYSTEM
После чего: Time Module Object Name Threat Action User Information 07.03.2009 20:05:24 AMON file C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\0T8925CL\ckjtynvo[1].bmp a variant of Win32/Conficker.AE worm quarantined - deleted NT AUTHORITY\SYSTEM Event occurred on a new file created by the application: C:\WINDOWS\System32\svchost.exe. The file was moved to quarantine. You may close this window.