, 19 2010 . 00:31
+
.
Windows ( ) , ,
6625015 5121!
, ...
, - . 5121.<\u> , 600 ,
5121. , , . , :
( Liv CD) C:\Windows\System32\user32.exe ( )!!!!!!user32.dll !!!! !!!!!! md.exe( ) autorun.inf. --regedit-Enter. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell explorer.exe ( explorer.exe,user32.exe), ctrl+f user32.exe user32.exe . ( ) ! :)
!!!
(Cntr Alt Delete) .
,
Windows ( Ctrl+Alt+Del, > > taskmgr > OK) , , , .
, , . Windows [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesSystem] REG_DWORD DisableTaskMgr 1.
,
, , . > > : gpedit.msc > OK > > > > > > > Ctrl+Alt+Del > Ctrl+Alt+Del ( ) : > > ( ) > > OK.
. ( , Windows+D), F5 ( , ).
( ), : > > : regedit > OK > . [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesSystem] REG_DWORD DisableTaskMgr 0 ( ).
!
Windows , , !..
, . , .
, 30 2008 . 22:40
+
.
help-antivirus.ru. .
.
- . 1000 , , . . , .
. . ,
Norton AntiVirus -
. -, -, , , - , , , -, .
NOD32
. . . , , 7 . . .
Dr.Web
.
. , , .
Avira AntiVir PE
, . , . , , .
Panda
, . . On-Line...
McAfee VirusScan AsaP
McAfee VirusScan AsaP - , , . , .
avg75free_-
AntiSpyware()
, 30 2008 . 21:19
+
.
AntiSpyware()
. - - .
.( )
:
Spyware - , .
Riskware- , , .
Cookie . , , , , , .
?
: ppc- ... www. valez. ru/ *
ppc-msg-f-pr-....-time . www. valez. ru/
* jurl http% www.liveinternet.ru......Follietta...www.valez.ru
* vbcodemode www.valez. ru/*bbphoto....0413.gif www. valez. ru/
ppc-msg-f-nedvikom- www.valez.ru/*chbx guest www. valez. ru
..??? ...
- ASWPro, , , .
WebMoney Adviser LiRu Toolbar
, . , .
. "". .
Ѩ!
, 17 2008 . 23:29
+
svchost.exe
" Webmoney Keeper Classic, , . :) , . NOD, 16 2008 "
-
SEO , .
- - SVCHOST.EXE (Generic Host Process for Win32 Services) . DLL. svchost . exe , .
- - .
(), svchost.exe :
Alerter
Application Management
Computer Browser
Server
DHCP Client
Messenger
Remote Access Connection Manager ( )
System Event Notification ( )
Task Scheduler( )
Telephony
Windows Time ( )
, 15 2008 . 00:53
+
- , (, ) ,
http://www.boomua.net/soft/rootkit/rootkit.php
(2 ), .
"Rootkit busters", , .
Trend Micro RootkitBuster 1.6 Beta.
| Module version: 1.6.0.1052
+----------------------------------------------------
--== Dump Hidden File on C:\ ==--
No hidden files found.
--== Dump Hidden Registry Value on HKLM ==--
No hidden registry entries found.
--== Dump Hidden Process ==--
No hidden processes found.
--== Dump Hidden Driver ==--
No hidden drivers found.
, 12 2008 . 23:30
+
Trojan-PSW.Win32.LdPinch.ecc, -
Trojan.Win32.Pakes.bpa - -
Trojan-Downloader, -
Trojan-Downloader.Win32.Agent.azg(/stalin) -
Trojan-Clicker,HTML.IFrame.gt - -
Hidden object (3 )- .- , ......
711 5
, 12 2008 . 21:24
+
, ! ,
rootkit
Hidden object
(PID:1296):
\Windows\system32\svchost.exe
:
Hidden object
(PID:996):
C:\windows\system32\smss.exe
-
.
- (?)
- .com
... .
, .
AVK - .
,
, 08 2008 . 23:05
+
: display:none ( )
, , ,
http://xaknet.ru-
http://forum.xaknet.ru"> - icq
//xhost.su"- - .
seo.dvweb.ru- (), <
-
http://xepace.cn/
.... ???