21.08.2013, 21:27
Jest kto w posiadaniu nowej wersji zeroaccess ?
dzisiaj spotkałem dziada w logach w Rouge killer wygląda tak:
[RUN] [ZeroAccess]HKCU\[...] \Run : Google Update ("C:\Users\Stevie\AppData\Local\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\?��?��?��\?��?��?��\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" >) -> USUNIĘTO
[RUN] [ZeroAccess]HKUS\S-1-5-21-29846362-3109403976-1294499814-1000\[...] \Run : Google Update ("C:\Users\Stevie\AppData\Local\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\?��?��?��\?��?��?��\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" >) -> [0xc0000034]Unknown error
[SERVICE] [ZeroAccess]HKLM\[...] \CCSet\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> USUNIĘTO
[SERVICE] [ZeroAccess]HKLM\[...] \CS001\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> [0x57]Parametr jest niepoprawny.
[SERVICE] [ZeroAccess]HKLM\[...] \CS002\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> USUNIĘTO
[ZeroAccess] [SERVICE]???etadpug -- "C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x]-> ZATRZYMANO
Dobra znalazłem na ruskim warezie
dzisiaj spotkałem dziada w logach w Rouge killer wygląda tak:
[RUN] [ZeroAccess]HKCU\[...] \Run : Google Update ("C:\Users\Stevie\AppData\Local\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\?��?��?��\?��?��?��\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" >) -> USUNIĘTO
[RUN] [ZeroAccess]HKUS\S-1-5-21-29846362-3109403976-1294499814-1000\[...] \Run : Google Update ("C:\Users\Stevie\AppData\Local\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\?��?��?��\?��?��?��\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" >) -> [0xc0000034]Unknown error
[SERVICE] [ZeroAccess]HKLM\[...] \CCSet\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> USUNIĘTO
[SERVICE] [ZeroAccess]HKLM\[...] \CS001\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> [0x57]Parametr jest niepoprawny.
[SERVICE] [ZeroAccess]HKLM\[...] \CS002\[...] \Services : ???etadpug ("C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x] ) -> USUNIĘTO
[ZeroAccess] [SERVICE]???etadpug -- "C:\Program Files (x86)\Google\Desktop\Install\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\ \...\???ﯹ๛\{98cbc40c-60f3-67f8-6df4-2e292d4ff3d0}\GoogleUpdate.exe" < [x]-> ZATRZYMANO
Dobra znalazłem na ruskim warezie