- Code: Tout sélectionner
1244043626.085 10439 192.168.1.25 TCP_MISS/200 217675 GET http://78.109.29.116/new/controller.php?action=bot&entity_list=&uid=1&first=1&guid=1353422705&rnd=981633 - DIRECT/78.109.29.116 text/html
1244043626.967 0 192.168.1.25 TCP_MISS/000 0 GET http://78.109.29.116/new/controller.php?action=report&guid=0&rnd=123&uid=1&entity=1241530597:unique_start;1241643870:unique_start;1243627542:unique_start - DIRECT/78.109.29.116 -
1244043632.208 1 192.168.1.25 TCP_MISS/000 0 POST http://78.109.29.114/good/receiver/online - DIRECT/78.109.29.114 -
1244043647.063 704 192.168.1.25 TCP_MISS/000 0 POST http://mixmediadirect.cn/gate/gate.php - DIRECT/78.109.29.115 -
C:\WINDOWS\Temp\wpv521243627542.exe
et
Process:
Path: C:\WINDOWS\system32\services.exe
PID: 708
Information: Services and Controller app (Microsoft Corporation)
Driver:
Path: C:\WINDOWS\system32\drivers\beep.sys
longtemps qu'on avait pas eu un patch de beep.sys