Статус
В этой теме нельзя размещать новые ответы.

Mark1123

Новичок
5
0
@DarkP1xel извини,но отвечу за тебя

Просто у тебя глаза на заднем месте и ты не читаешь описание темы в котором автор сказал
Код:
Плагин накрыт протектором. Именно поэтому говно антивирусы думают, что AntiStealer - вирус
Про это я знаю. Я вырубил все антивирусы и меня смутило, что антистиллер исчез перед глазами
 

JEEMBО

Известный
Друг
1,239
584
У меня только антивирус 10 винды, и то я его выключил
Я сам недавно перешел на 10-ку,но вырубив защитник,он не полностью вырубился,поэтому вырубай его при помощи Win Disabler(программа).Может и у тебя такая же фигня
 

ka$per$ky

Новичок
3
0
Не особо разбираюсь, пожалуйста, объясните. Установил Moonloader с Blast Hack'a, оффициальной темы. После этого лог Антистиллера изменился сильно, Антистиллер последней версии, AVP GameProtect говорит, что Moonloader.asi - InetLoader. Вот лог, всё нормально, стиллеров нет?
[WARNING] > [URLDownloadToFileA] > [C:\Games\GTA San Andreas MultiPlayer v0.3.7\GTA San Andreas\MoonLoader.asi] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\Антон\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [URLDownloadToFileW] > [C:\WINDOWS\SYSTEM32\urlmon.dll] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\
 

sаnеk

Всефорумный sanek
Друг
2,111
2,090
Не особо разбираюсь, пожалуйста, объясните. Установил Moonloader с Blast Hack'a, оффициальной темы. После этого лог Антистиллера изменился сильно, Антистиллер последней версии, AVP GameProtect говорит, что Moonloader.asi - InetLoader. Вот лог, всё нормально, стиллеров нет?
9k85tv6.png
все ок, это автообновление мунлоадера
 

bomber!

Известный
Проверенный
958
465
Это норм?

[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]


Код:
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|>        | AntiStealer | V4.7.0 | By DarkP1xel | .LOG File |        <|
|>               Official Web-Site: https://blast.hk/                <|
|>       Subscribe to my YouTube Channel: https://vk.cc/5PCsTe       <|
|>          Official Topic: https://blast.hk/threads/16018/          <|
|>                   KEEP CALM AND SMOKE SOME WEED                   <|
|>                        !AntiStealer LOADED!                       <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [CreateProcessW] > [E:\GTA San Andreas\CrashRpt1402.dll] > {lpApplicationName: E:\GTA San Andreas\CrashSender1402.exe}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [E:\GTA San Andreas\crashes.asi] > {lpszUrl: https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WININET.dll] > {pNodeName: wpad}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: raw.githubusercontent.com}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[WARNING] > [URLDownloadToFileA] > [E:\GTA San Andreas\MoonLoader.asi] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\bomber!\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\bomber!\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [InternetOpenW] > [C:\Windows\syswow64\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetOpenA] > [C:\Windows\syswow64\WININET.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: blast.hk}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /moonloader/data/version-info.json}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: blast.hk}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszAgent: ASDss}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszServerName: gitlab.com}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszObjectName: dogoran/evolve/raw/master/allowList.txt}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszAgent: VER}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszServerName: gitlab.com}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszObjectName: dogoran/evolve/raw/master/warnVer.txt}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszAgent: SAMPFUNCS v5.3.3 release #19 (SA-MP 0.3.7)}
[WARNING] > [InternetOpenUrlA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszUrl: http://service.blasthack.net/sf_stats.php?d=94F17CC6BE428059E1E1ABF9FB0851DBE68C03B4AE52905AF62B769C78&x=B9909B053E5CD06910E320FA43440F5E5D}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: service.blasthack.net}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszAgent: SAMPFUNCS}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszServerName: service.blasthack.net}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszObjectName: /sf_update.php?ver=19}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
 

Musaigen

abobusnik
Проверенный
1,606
1,361
Это норм?

[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]


Код:
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|>        | AntiStealer | V4.7.0 | By DarkP1xel | .LOG File |        <|
|>               Official Web-Site: https://blast.hk/                <|
|>       Subscribe to my YouTube Channel: https://vk.cc/5PCsTe       <|
|>          Official Topic: https://blast.hk/threads/16018/          <|
|>                   KEEP CALM AND SMOKE SOME WEED                   <|
|>                        !AntiStealer LOADED!                       <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [CreateProcessW] > [E:\GTA San Andreas\CrashRpt1402.dll] > {lpApplicationName: E:\GTA San Andreas\CrashSender1402.exe}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [E:\GTA San Andreas\crashes.asi] > {lpszUrl: https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WININET.dll] > {pNodeName: wpad}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: raw.githubusercontent.com}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[WARNING] > [URLDownloadToFileA] > [E:\GTA San Andreas\MoonLoader.asi] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\bomber!\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\bomber!\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [InternetOpenW] > [C:\Windows\syswow64\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetOpenA] > [C:\Windows\syswow64\WININET.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: blast.hk}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /moonloader/data/version-info.json}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: blast.hk}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszAgent: ASDss}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszServerName: gitlab.com}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszObjectName: dogoran/evolve/raw/master/allowList.txt}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszAgent: VER}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszServerName: gitlab.com}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS\SbivWarnings.sf] > {lpszObjectName: dogoran/evolve/raw/master/warnVer.txt}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: gitlab.com}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszAgent: SAMPFUNCS v5.3.3 release #19 (SA-MP 0.3.7)}
[WARNING] > [InternetOpenUrlA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszUrl: http://service.blasthack.net/sf_stats.php?d=94F17CC6BE428059E1E1ABF9FB0851DBE68C03B4AE52905AF62B769C78&x=B9909B053E5CD06910E320FA43440F5E5D}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: service.blasthack.net}
[WARNING] > [InternetOpenA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszAgent: SAMPFUNCS}
[WARNING] > [InternetConnectA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszServerName: service.blasthack.net}
[WARNING] > [HttpOpenRequestA] > [E:\GTA San Andreas\SAMPFUNCS.asi] > {lpszObjectName: /sf_update.php?ver=19}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: service.blasthack.net}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[WARNING] > [gethostbyname] > [E:\GTA San Andreas\samp.dll] > {name: bomber-ПК}
[PATCHED] > [GetTempPathW] > [C:\Windows\syswow64\CRYPT32.dll]
да, это криптография(вроде)
у меня такое от бота с майнером(+стилером) ток пишет
пруфы?
 

Skitzoid

Известный
106
16
у меня такое от бота с майнером(+стилером) ток пишет

а не вру не такое:D

да, это криптография(вроде)

пруфы?
Какие те пруфы

у меня майнер был в боте он цука еще 5ть качнул пока юзал там про syswow64\CRYPT32. тоже чет писало но там еще стиллер был хз короч мб просто конфликт какойто

попробуй Mem Reduct поставить или тип того сбрось память и посмотри на скок цп загружен сторонним софтом когда самп запущен

а так может быть обновление операционной системы или некорректная устновка КриптоПро CSP. Переустановите КриптоПро CSP или обнови контрольные суммы...
 

WooD..

Новичок
2
0
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|> | AntiStealer | V4.5.0 | By DarkP1xel | .LOG File | <|
|> Official Web-Site: https://blast.hk/ <|
|> Subscribe to my YouTube Channel: https://vk.cc/5PCsTe <|
|> Official Topic: https://blast.hk/threads/16018/ <|
|> KEEP CALM AND SMOKE SOME WEED <|
|> !AntiStealer LOADED! <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[PATCHED] > [CreateProcessW] > [C:\Windows\AppPatch\AcGenral.DLL] > {lpApplicationName: [PATCHED] > [SetFileAttributesA] > [C:\Windows\syswow64\WININET.dll] > {lpFileName: C:\Users\1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ | dwFileAttributes: 8198}
[PATCHED] > [SetFileAttributesA] > [C:\Windows\syswow64\WININET.dll] > {lpFileName: C:\Users\1\AppData\Roaming\Microsoft\Windows\Cookies\ | dwFileAttributes: 8198}
[PATCHED] > [SetFileAttributesA] > [C:\Windows\syswow64\WININET.dll] > {lpFileName: C:\Users\1\AppData\Local\Microsoft\Windows\History\History.IE5\ | dwFileAttributes: 8198}

Это норма?
 
Статус
В этой теме нельзя размещать новые ответы.