Sandra80
Junior Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Дали настроить ноут, на нем установлен avast версии 2015.10.0.2208. С этого ноута была замечена странная сетевая активность (перебор паролей к веб-интерфейсу роутера, проверку на уязвимость bash) с отсылкой к этому самому авасту. Роутер у меня пишет в лог неудачные попытки аутентификации, адрес и useragent того, с чего это происходило Цитата: Dec 2 09:19:09 dropbear[7803]: Child connection from 192.168.0.103:49238 Dec 2 09:19:10 dropbear[7803]: Exit before auth: Exited normally Dec 2 09:19:13 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:13 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:() { ignored; }; echo Constent-Type: text/html; echo ; echo ASWHDS_SCAN Infected ; Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:() { ignored; }; echo Constent-Type: text/html; echo ; echo ASWHDS_SCAN Infected ; Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: 1234-1234 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Admin- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Administrator-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Administrator- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Administrator-changeme from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Administrator-letmein from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: Administrator-smcadmin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: User-Password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: admin2-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: adm- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: admin2-changeme from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires Password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-0 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-1111 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-1234 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-1234admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-2222 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-Password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-admin123 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-changeme from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-default from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-hello from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-netadmin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-operator from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-root from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-secure from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-setup from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-smcadmin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Wrong Password: admin-system from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: adminstrator-changeme from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: comcast- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: cisco-cisco from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: comcast-1234 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: cusadmin-highspeed from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: customer-none from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: login- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: login-1111 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: login-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: login-password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: manager-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: root- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: root-1234 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: root-password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: root-root from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: root-admin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: scmadmin-scmchangeme from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: setup-setup from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: smc-smcadmin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: support-support from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: support-supportpw from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: sysadm-sysadm from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: sysadmin-sysadmin from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: system-password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: sysadmin-password from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: tech- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: tech-tech from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Requires User ID from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: user- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: user-pass from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: webadmin- from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: webadmin-1234 from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: user-user from 192.168.0.103:avast! Antivirus Dec 2 09:19:14 goahead[1253]: Access Denied - Unknown User: user-password from 192.168.0.103:avast! Antivirus | С таким поведением до селе не сталкивался, может это и не аваст совсем, а вирус какой-то. Помогите разобраться. |