Статус
В этой теме нельзя размещать новые ответы.

Benya

Активный
145
45
Непонятный флуд в логе

INI:
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
[PATCHED] > [ZwOpenProcess] > [C:\Windows\system32\MSCTF.dll] > {DesiredAccess: 33554432}
И так каждый раз
Что это ребят ?
 
Последнее редактирование:

TRUECODER

Участник
49
4
Тут точно есть стиллеры, но не очень понятно, где именно, можете подсказать?
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|> | AntiStealer | V5.2.5 | By DarkP1xel | .LOG File | <|
|> Official Web-Site: https://blast.hk/ <|
|> Subscribe to my YouTube Channel: https://vk.cc/5PCsTe <|
|> Official Topic: https://blast.hk/threads/16018/ <|
|> DONATE: https://qiwi.me/antistealer/ <|
|> KEEP CALM AND SMOKE SOME WEED <|
|> !AntiStealer LOADED! <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[PATCHED] > [ZwSetInformationFile] > [C:\Windows\syswow64\kernel32.dll] > {FileInformationClass: HIDE}
[PATCHED] > [ZwSetInformationFile] > [C:\Windows\syswow64\kernel32.dll] > {FileInformationClass: HIDE}
[WARNING] > [InternetOpenA] > [D:\GTA San Andreas MultiPlayer (Cheats)\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [D:\GTA San Andreas MultiPlayer (Cheats)\crashes.asi] > {lpszUrl: https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt | lpszHeaders: -}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WININET.dll] > {pNodeName: wpad}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: raw.githubusercontent.com}
[WARNING] > [URLDownloadToFileA] > [D:\GTA San Andreas MultiPlayer (Cheats)\MoonLoader.asi] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\Admin\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://blast.hk/moonloader/data/version-info.json | szFileName: C:\Users\Admin\AppData\Local\Temp\moonloader-version.json}
[WARNING] > [InternetOpenW] > [C:\Windows\syswow64\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetOpenA] > [C:\Windows\syswow64\WININET.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer (Cheats)\samp.dll] > {name: Admin-ПК}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: blast.hk | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\syswow64\WININET.dll] > {lpszServerName: blast.hk | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /moonloader/data/version-info.json}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: blast.hk}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: blast.hk}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer (Cheats)\samp.dll] > {name: 5.254.123.6}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer (Cheats)\samp.dll] > {name: 5.254.123.6}
[WARNING] > [URLDownloadToFileA] > [D:\GTA San Andreas MultiPlayer (Cheats)\MoonLoader.asi] > {szURL: https://drive.google.com/uc?export=...ntivirus&id=1-q2fMfcNeseRtvYX-Y-VhX-iUyvhtmKR | szFileName: D:\GTA San Andreas MultiPlayer (Cheats)\moonloader/config/SilentAim.luac.update.ini}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://drive.google.com/uc?export=...ntivirus&id=1-q2fMfcNeseRtvYX-Y-VhX-iUyvhtmKR | szFileName: D:\GTA San Andreas MultiPlayer (Cheats)\moonloader/config/SilentAim.luac.update.ini}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: drive.google.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\syswow64\WININET.dll] > {lpszServerName: drive.google.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /uc?export=download&confirm=no_antivirus&id=1-q2fMfcNeseRtvYX-Y-VhX-iUyvhtmKR}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: drive.google.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: drive.google.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: drive.google.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: drive.google.com}
[WARNING] > [URLDownloadToFileA] > [D:\GTA San Andreas MultiPlayer (Cheats)\MoonLoader.asi] > {szURL: https://raw.githubusercontent.com/GORYCHsamp/reconupd/master/multiconnect.json | szFileName: C:\Users\Admin\AppData\Local\Temp\recon_version.json}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://raw.githubusercontent.com/GORYCHsamp/reconupd/master/multiconnect.json | szFileName: C:\Users\Admin\AppData\Local\Temp\recon_version.json}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: raw.githubusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\syswow64\WININET.dll] > {lpszServerName: raw.githubusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /GORYCHsamp/reconupd/master/multiconnect.json}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: doc-0k-5c-docs.googleusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: doc-0k-5c-docs.googleusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: doc-0k-5c-docs.googleusercontent.com}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer (Cheats)\d3d9.dll] > {name: www.modoverlight.altervista.org}
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer (Cheats)\d3d9.dll] > {buf: GET /Mod_API/OL_APIv3.php?usr=Bomj_Vasya&svr=5.254.123.6:7777&fps=55&ver=3030 HTTP/1.1

Host: www.modoverlight.altervista.org



}

И вот из второй сборки:
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|> | AntiStealer | V5.2.5 | By DarkP1xel | .LOG File | <|
|> Official Web-Site: https://blast.hk/ <|
|> Subscribe to my YouTube Channel: https://vk.cc/5PCsTe <|
|> Official Topic: https://blast.hk/threads/16018/ <|
|> DONATE: https://qiwi.me/antistealer/ <|
|> KEEP CALM AND SMOKE SOME WEED <|
|> !AntiStealer LOADED! <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[PATCHED] > [ZwSetInformationFile] > [C:\Windows\syswow64\kernel32.dll] > {FileInformationClass: HIDE}
[PATCHED] > [ZwSetInformationFile] > [C:\Windows\syswow64\kernel32.dll] > {FileInformationClass: HIDE}
[WARNING] > [InternetOpenA] > [D:\GTA San Andreas MultiPlayer\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [D:\GTA San Andreas MultiPlayer\crashes.asi] > {lpszUrl: https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt | lpszHeaders: -}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WININET.dll] > {pNodeName: wpad}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WININET.dll] > {pNodeName: wpad}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\syswow64\WININET.dll] > {pName: raw.githubusercontent.com}
[WARNING] > [URLDownloadToFileA] > [D:\GTA San Andreas MultiPlayer\MoonLoader.asi] > {szURL: https://raw.githubusercontent.com/GORYCHsamp/reconupd/master/multiconnect.json | szFileName: C:\Users\Admin\AppData\Local\Temp\recon_version.json}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\syswow64\urlmon.dll] > {szURL: https://raw.githubusercontent.com/GORYCHsamp/reconupd/master/multiconnect.json | szFileName: C:\Users\Admin\AppData\Local\Temp\recon_version.json}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer\samp.dll] > {name: Admin-ПК}
[WARNING] > [InternetOpenW] > [C:\Windows\syswow64\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetOpenA] > [C:\Windows\syswow64\WININET.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/7.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)}
[WARNING] > [InternetConnectW] > [C:\Windows\syswow64\urlmon.dll] > {lpszServerName: raw.githubusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\syswow64\WININET.dll] > {lpszServerName: raw.githubusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\syswow64\urlmon.dll] > {lpszObjectName: /GORYCHsamp/reconupd/master/multiconnect.json}
[WARNING] > [InternetCreateUrlA] > [C:\Windows\syswow64\WININET.dll] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer\samp.dll] > {name: 5.254.123.6}
[WARNING] > [gethostbyname] > [D:\GTA San Andreas MultiPlayer\samp.dll] > {name: 5.254.123.6}
[WARNING] > [getaddrinfo] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\socket\core.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WS2_32.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [getaddrinfo] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\socket\core.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WS2_32.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [getaddrinfo] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\socket\core.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WS2_32.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [getaddrinfo] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\socket\core.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [GetAddrInfoW] > [C:\Windows\syswow64\WS2_32.dll] > {pNodeName: police-assistant.ru}
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
[WARNING] > [send] > [D:\GTA San Andreas MultiPlayer\moonloader\lib\ssl.dll] > {buf: }
 

MAHEKEH

Известный
2,010
504
Тут точно есть стиллеры, но не очень понятно, где именно, можете подсказать?


И вот из второй сборки:

по обоим логfм у тебя чисто всё, идут проверки на обновления и патчи скрытых системных процессов не более.
p.s тк 5.2.5 уже довольно давно обошли, гарантии тебе конечно уже никто не даст, советую не качать ниче с левых сайтов
( см, самод - гта икс мод )
 

TRUECODER

Участник
49
4
Первая сборка у меня от ютубера, который не должен ничего плохо закинуть, а вторая для разноса нубо рп, на ней только на нубо рп и захожу, пасиб за ответ
 

equillz

Известный
78
24
Кто нибудь может обьяснить что значит эта строчка, и стоит ли её боятся?

[PATCHED] > [ZwOpenProcess] > [C:\Windows\syswow64\KERNELBASE.dll] > {DesiredAccess: 4096}
 

Benya

Активный
145
45
Нужно дождаться комментария автора плагина. Возможно баг, у меня так же флудит на системные службы.
 

CharleyJones

Известный
184
13
Есть стиллер? @DarkP1xel

Код:
[WARNING] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\crashes.asi] > {lpszUrl: [URL]https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt[/URL] | lpszHeaders: -}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\SYSTEM32\WININET.DLL] > {pName: raw.githubusercontent.com}
[WARNING] > [URLDownloadToFileA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\CLEO.asi] > {szURL: [URL]https://dl.dropboxusercontent.com/s/vv0jubc26qlj950/ebawerGlob.apacho[/URL] | szFileName: cleo\ApachoTM\ebawerGlob.apacho}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\SYSTEM32\urlmon.dll] > {szURL: [URL]https://dl.dropboxusercontent.com/s/vv0jubc26qlj950/ebawerGlob.apacho[/URL] | szFileName: cleo\ApachoTM\ebawerGlob.apacho}
[WARNING] > [InternetOpenW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)}
[WARNING] > [InternetOpenA] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)}
[WARNING] > [InternetConnectW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszServerName: dl.dropboxusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpszServerName: dl.dropboxusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszObjectName: /s/vv0jubc26qlj950/ebawerGlob.apacho}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\SYSTEM32\WININET.DLL] > {pName: dl.dropboxusercontent.com}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: WIN-U6FKBLN27S9}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: 5.254.104.132}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: 5.254.104.132}
[PATCHED] > [ZwSetInformationFile] > [C:\Windows\System32\KERNELBASE.dll] > {FileInformationClass: HIDE}
 
Последнее редактирование модератором:

DarkP1xel

Сила воли наше всё.
Автор темы
BH Team
3,635
4,983
Есть стиллер? @DarkP1xel


[WARNING] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\crashes.asi] > {lpszAgent: Mozilla/5.0}
[WARNING] > [InternetOpenUrlA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\crashes.asi] > {lpszUrl: https://raw.githubusercontent.com/Whitetigerswt/gtasa_crashfix/master/LatestVersion.txt | lpszHeaders: -}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: raw.githubusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\SYSTEM32\WININET.DLL] > {pName: raw.githubusercontent.com}
[WARNING] > [URLDownloadToFileA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\CLEO.asi] > {szURL: https://dl.dropboxusercontent.com/s/vv0jubc26qlj950/ebawerGlob.apacho | szFileName: cleo\ApachoTM\ebawerGlob.apacho}
[WARNING] > [URLDownloadToFileW] > [C:\Windows\SYSTEM32\urlmon.dll] > {szURL: https://dl.dropboxusercontent.com/s/vv0jubc26qlj950/ebawerGlob.apacho | szFileName: cleo\ApachoTM\ebawerGlob.apacho}
[WARNING] > [InternetOpenW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)}
[WARNING] > [InternetOpenA] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpszAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)}
[WARNING] > [InternetConnectW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszServerName: dl.dropboxusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [InternetConnectA] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpszServerName: dl.dropboxusercontent.com | lpszUserName: - | lpszPassword: -}
[WARNING] > [HttpOpenRequestW] > [C:\Windows\SYSTEM32\urlmon.dll] > {lpszObjectName: /s/vv0jubc26qlj950/ebawerGlob.apacho}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [InternetCreateUrlW] > [C:\Windows\SYSTEM32\WININET.DLL] > {lpUrlComponents->lpszHostName: dl.dropboxusercontent.com}
[WARNING] > [GetAddrInfoExW] > [C:\Windows\SYSTEM32\WININET.DLL] > {pName: dl.dropboxusercontent.com}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: WIN-U6FKBLN27S9}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: 5.254.104.132}
[WARNING] > [gethostbyname] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\samp.dll] > {name: 5.254.104.132}
[PATCHED] > [ZwSetInformationFile] > [C:\Windows\System32\KERNELBASE.dll] > {FileInformationClass: HIDE}
Нет.
 

CharleyJones

Известный
184
13
Стилер? @DarkP1xel
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
 

DarkP1xel

Сила воли наше всё.
Автор темы
BH Team
3,635
4,983
Стилер? @DarkP1xel
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
[PATCHED] > [InternetOpenA] > [C:\Users\User\Downloads\GTA FPS UP\Awesome GTA by Dapo Show FIX_4\Awesome GTA by Dapo Show\lua51.dll] > {lpszAgent: easy-steal.com:asi/sf}
Да.


Файл DRP_MO_FIND.as стиллер?
Упакуй.
 

Ren_Boyko

Известный
1,823
307
То есть можно установить миллиард модов со стиллерами и не сраться за аккаунт? Или это по типу AVPGameProtect, который обнаруживает стиллеры и нужно самому их удалять?
не, если там обход то кердык, чекай лучше файлы
 

AutisSsm

Новичок
4
0
help pls

[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}

|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|
|> | AntiStealer | V5.2.5 | By DarkP1xel | .LOG File | <|
|> Official Web-Site: https://blast.hk/ <|
|> Subscribe to my YouTube Channel: https://vk.cc/5PCsTe <|
|> Official Topic: https://blast.hk/threads/16018/ <|
|> DONATE: https://qiwi.me/antistealer/ <|
|> KEEP CALM AND SMOKE SOME WEED <|
|> !AntiStealer LOADED! <|
|>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~<|

[WARNING] > [gethostbyname] > [D:\Games\GTA San Andreas Multiplayer\samp.dll] > {name: DESKTOP-LL4UOR4}
[PATCHED] > [RtlInitUnicodeString] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.dbg\*}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.dbg\*}
[PATCHED] > [RtlInitUnicodeString] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb\*}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb\*}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\symbols\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\symbols\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: .\symbols\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\symbols\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: .\symbols\ASI\!0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\System32\KERNELBASE.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
[PATCHED] > [RtlInitUnicodeStringEx] > [C:\WINDOWS\SYSTEM32\ntdll.dll] > {SourceString: !0AntiStealerByDarkP1xel32.pdb}
 
Статус
В этой теме нельзя размещать новые ответы.