Показано с 1 по 2 из 2.

Подозоение на Троян (заявка № 86406)

  1. #1
    Junior Member Репутация
    Регистрация
    08.04.2009
    Сообщений
    412
    Вес репутации
    35

    Подозоение на Троян

    Я снял логи с компа и в соответствии с курсом попытался проанализировать логи. Еще ничего не предпринимал. посмотрите. HHijackThis нет логов так как не я логи снимал как сниму прикреплю.

    begin
    QuarantineFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp','');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Temp\~DFD2ED.tmp' );
    DeleteFile('C:\Documents and Settings\Александр\AppData\Local\Temp\~DFE1FE.tmp' );
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Documents and Settings\Александр\Local Settings\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Appli cation Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Temp\ ~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\AppData\Local\Temp\ ~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Application Data\Temp\~DFE1FE.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Temp\~DFD2ED.tmp');
    DeleteFile('C:\Users\Александр\Local Settings\Temp\~DFE1FE.tmp');
    end.
    Последний раз редактировалось eppa; 22.10.2010 в 12:08.

  2. Будь в курсе!
    Реклама на VirusInfo

    Надоело быть жертвой? Стань профи по информационной безопасности, получай самую свежую информацию об угрозах и средствах защиты от ведущего российского аналитического центра Anti-Malware.ru:

    Anti-Malware Telegram
     

  3. #2
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,547
    Вес репутации
    3021
    Ничего необычного.

    Займитесь уборкой
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  • Уважаемый(ая) eppa, наши специалисты оказали Вам всю возможную помощь по вашему обращению.

    В целях поддержания безопасности вашего компьютера настоятельно рекомендуем:

     

     

    Чтобы всегда быть в курсе актуальных угроз в области информационной безопасности и сохранять свой компьютер защищенным, рекомендуем следить за последними новостями ИТ-сферы портала Anti-Malware.ru:

     

     

    Anti-Malware VK

     

    Anti-Malware Telegram

     

     

    Надеемся больше никогда не увидеть ваш компьютер зараженным!

     

    Если Вас не затруднит, пополните пожалуйста нашу базу безопасных файлов.

  • Похожие темы

    1. Trojan.Win32.Ddox.ci и троян "троян маячок"
      От eugenmax в разделе Помогите!
      Ответов: 6
      Последнее сообщение: 03.08.2011, 13:06
    2. Ответов: 6
      Последнее сообщение: 28.02.2009, 16:27
    3. Ответов: 6
      Последнее сообщение: 22.02.2009, 10:03
    4. подозоение на Trojan.Packed.13 или нечто подобное
      От Константин Д. в разделе Помогите!
      Ответов: 14
      Последнее сообщение: 22.02.2009, 01:43
    5. Ответов: 2
      Последнее сообщение: 31.01.2008, 09:48

    Свернуть/Развернуть Ваши права в разделе

    • Вы не можете создавать новые темы
    • Вы не можете отвечать в темах
    • Вы не можете прикреплять вложения
    • Вы не можете редактировать свои сообщения
    •  
    Page generated in 0.01135 seconds with 16 queries