ibrahim_inter
30-06-2005, 06:10 AM
السلام عليكم
انا عندي مشكله وهي اني كلما اتصل بالانترنت يعلن لي الkaspersky عن تعرض جهلزي لهجوم من
الهكرز وهذا الكلام يحدث يوميا
وها هو التقرير الذي يظهر لي
Attack description Source Local port Time
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 2:42:25 AM
LSASS exploit Attacked by 62.240.53.150 with TCP protocol 445 06/29/2005 2:45:32 AM
LSASS exploit Attacked by 62.240.46.211 with TCP protocol 445 06/29/2005 3:01:53 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:04 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:06 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:33 AM
Helkern Attacked by 172.200.196.64 with UDP protocol 1434 06/29/2005 5:43:31 AM
Helkern Attacked by 219.140.198.68 with UDP protocol 1434 06/29/2005 6:11:22 AM
Helkern Attacked by 61.152.251.4 with UDP protocol 1434 06/29/2005 6:37:56 AM
والمشكله انه نفس الip وهما62.240.46.188 و 62.240.53.150
و في الجهاز عندما اقوم ب scan تظهر لي detected: riskware not-a-virus:Tool.Win32.Reboot File: C:\System Volume Information\_restore{45AFF9B9-6EB1-4988-ACC7-943B42A3019F}\RP13\A0014993.EXE/data0001.exe
و
File C:\...\SYSTEM32\TASKMNGR.EXE/PE_Patch.Stdetected: riskware not-a-virus:Tool.Win32.Reboot File: C:\System Volume Information\_restore{45AFF9B9-6EB1-4988-ACC7-943B42A3019F}\RP16\A0026370.exe/WISE0010.BIN/data0001.exe
olen/UPack : detected trojan program Backdoor.Win32.Rbot.gen 06/21/2005 4:58:28 AM
وعندما احذفها تنتشط عندما اتصل بالانترنت
وهذا ايملي ibrahim_inter_1908@yahoo.co.uk
انا عندي مشكله وهي اني كلما اتصل بالانترنت يعلن لي الkaspersky عن تعرض جهلزي لهجوم من
الهكرز وهذا الكلام يحدث يوميا
وها هو التقرير الذي يظهر لي
Attack description Source Local port Time
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 2:42:25 AM
LSASS exploit Attacked by 62.240.53.150 with TCP protocol 445 06/29/2005 2:45:32 AM
LSASS exploit Attacked by 62.240.46.211 with TCP protocol 445 06/29/2005 3:01:53 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:04 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:06 AM
LSASS exploit Attacked by 62.240.46.188 with TCP protocol 445 06/29/2005 4:29:33 AM
Helkern Attacked by 172.200.196.64 with UDP protocol 1434 06/29/2005 5:43:31 AM
Helkern Attacked by 219.140.198.68 with UDP protocol 1434 06/29/2005 6:11:22 AM
Helkern Attacked by 61.152.251.4 with UDP protocol 1434 06/29/2005 6:37:56 AM
والمشكله انه نفس الip وهما62.240.46.188 و 62.240.53.150
و في الجهاز عندما اقوم ب scan تظهر لي detected: riskware not-a-virus:Tool.Win32.Reboot File: C:\System Volume Information\_restore{45AFF9B9-6EB1-4988-ACC7-943B42A3019F}\RP13\A0014993.EXE/data0001.exe
و
File C:\...\SYSTEM32\TASKMNGR.EXE/PE_Patch.Stdetected: riskware not-a-virus:Tool.Win32.Reboot File: C:\System Volume Information\_restore{45AFF9B9-6EB1-4988-ACC7-943B42A3019F}\RP16\A0026370.exe/WISE0010.BIN/data0001.exe
olen/UPack : detected trojan program Backdoor.Win32.Rbot.gen 06/21/2005 4:58:28 AM
وعندما احذفها تنتشط عندما اتصل بالانترنت
وهذا ايملي ibrahim_inter_1908@yahoo.co.uk