ссучий вирус на XP
Добавлено: 2009-04-10 3:28:50
В общем сканировал машинки avz, nod, drweb - ничего не нашли, но всё время занимаются в сети вот такой порнографией...
чем можно это вытащить?? не говоря уже о том, что ходят на 80 порты к
Код: Выделить всё
Apr 10 09:17:21 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.68 in via em1
Apr 10 09:17:22 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.69 in via em1
Apr 10 09:17:22 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.70 in via em1
Apr 10 09:17:23 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.71 in via em1
Apr 10 09:17:23 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.148:2739 93.158.134.48:5222 in via em1
Apr 10 09:17:23 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.72 in via em1
Apr 10 09:17:23 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.32 192.168.18.132 in via em1
Apr 10 09:17:24 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.230:1615 89.202.157.201:80 in via em1
Apr 10 09:17:24 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.32:2641 69.10.61.245:80 in via em1
Apr 10 09:17:24 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.73 in via em1
Apr 10 09:17:24 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1287 195.189.143.187:80 in via em1
Apr 10 09:17:24 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.74 in via em1
Apr 10 09:17:25 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.75 in via em1
Apr 10 09:17:25 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.76 in via em1
Apr 10 09:17:26 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.77 in via em1
Apr 10 09:17:26 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.78 in via em1
Apr 10 09:17:27 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.32:2641 69.10.61.245:80 in via em1
Apr 10 09:17:27 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.79 in via em1
Apr 10 09:17:27 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.148:2740 93.158.134.48:5222 in via em1
Apr 10 09:17:27 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.80 in via em1
Apr 10 09:17:28 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.81 in via em1
Apr 10 09:17:28 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1288 195.189.143.187:80 in via em1
Apr 10 09:17:28 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.82 in via em1
Apr 10 09:17:29 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.83 in via em1
Apr 10 09:17:29 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.84 in via em1
Apr 10 09:17:30 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.85 in via em1
Apr 10 09:17:30 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1287 195.189.143.187:80 in via em1
Apr 10 09:17:30 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.86 in via em1
Apr 10 09:17:31 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.87 in via em1
Apr 10 09:17:31 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1288 195.189.143.187:80 in via em1
Apr 10 09:17:31 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.88 in via em1
Apr 10 09:17:32 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.89 in via em1
Apr 10 09:17:32 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.90 in via em1
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.89:1194 77.120.102.146:80 in via em1
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.32:2641 69.10.61.245:80 in via em1
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1291 195.189.143.187:80 in via em1
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.91 in via em1
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny P:241 88.82.169.160 88.82.169.255 in via em0
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny P:241 88.82.169.160 88.82.169.255 in via em0
Apr 10 09:17:33 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.92 in via em1
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny P:241 88.82.169.160 88.82.169.255 in via em0
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.93 in via em1
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny P:241 88.82.169.160 88.82.169.255 in via em0
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1299 38.102.136.101:80 in via em1
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1300 90.156.178.41:80 in via em1
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny TCP 192.168.0.101:1302 94.103.82.186:80 in via em1
Apr 10 09:17:34 ns1 kernel: ipfw: 10500 Deny ICMP:8.0 192.168.0.31 192.168.33.94 in via em1
Apr 10 09:17:35 ns1 kernel: ipfw: 10500 Deny P:241 88.82.169.160 88.82.169.255 in via em0Код: Выделить всё
OrgName: McColo Corporation
OrgID: MCCOL
Address: 64 East main st. box 275
City: Newark
StateProv: DE
PostalCode: 19715
Country: US