?? ????? ??? ??????? ??????? ?? ???? ??? ????? ????????? ???? ???? ????? ??????? Microsoft Windows Server 2003 ?? Microsoft Windows XP ?? Microsoft Windows 2000:
- ??? ????? ????? ???? ????????? ????????.
- ????? ????? ????? ???????? ??? ????? ??????:
Microsoft Windows
???? ??????? ?????? ?? ??? ???.
?? ????? ??? ???? ?????.
?????? ????? Microsoft ???? ???????.
??? ?????? ??????? ?? ????? ????? ?????? ????????? ??? ????? Microsoft Windows. ????? ??????? ?? ??? ??????? ??? ??? ??? ?????? ??????.
??????? ??? ???????? ???????? ?? ????? ????? ???? ???? ???.
??????? ??? ??????? ????? ?????? ???? ??? ???? ???. ??? ????? ??? ???????? ???? ??? ???? ???? ???????? ??? ??? ??????? ????? ????? ????? ???? ??? ????? ???????? ???????.
????? ???????? ?BCCode : 00000050 BCP1 : f8655000 BCP2 : 00000001 BCP3 : fc7cc465
BCP4 : 00000000 OSVer : 5_1_2600 SP : 0_0 Product : 256_1
????? ???????? ?BCCode : 0000008e BCP1 : c0000005 BCP2 : 00000120 BCP3 : fd28eaa4
BCP4 : 00000000 OSVer : 5_1_2600 SP : 0_0 Product : 256_1
- ????? ???? ????? ??? ??????? "STOP" ???????.
??????? ?
???? ????? ?? ???? ????? ???? ?? ????? Windows ?????? ?? ??? ?? ???? ??????????...
??????? ????:
STOP: 0x00000050 (0xf8655000, 0x00000001, 0xfc7cc465, 0x00000000)?
PAGE_FAULT_IN_NONPAGED_AREA ?(50)
??????? ????? ????? ?? ???? ????? ???? ?? ????? Windows ?????? ?? ??? ?? ???? ??????????...
??????? ????:
STOP: 0x0000008e ?(0xc0000005, 0x00000120, 0xfd28eaa4, 0x00000000)
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M ?(1000008e)
- ????? ????? ??? ?????? ??????? ??????? ?? ??? ??????? ??????:
???????: ???????
??????: ??????
?????: ???
?????: (102)
?????: ???
????? ?????: 1003
????????: ??? ?????
?????????: ???? ?????????
?????: ??? ????? 00000050? parameter1 f8655000? parameter2 00000001? parameter3 fc7cc465? parameter4 00000000. ????? ?? ?????????? ???? ???? "????????? ??????" ??? ?????? ?????? http://support.microsoft.com. ??????: 0000: 53 79 73 74 65 6d 20 45 System E 0008: 72 72 6f 72 20 20 45 72 rror Er 0010: 72 6f 72 20 63 6f 64 65 ror code 0018: 20 30 30 30 30 30 30 35 0000050 0020: 30 20 20 50 61 72 61 6d 0 Param 0028: 65 74 65 72 73 20 66 66 eters ff 0030: 66 66 66 66 64 31 2c
???????: ?????
??????: ??????
?????: ???
?????: (102)
?????: ???
????? ?????: 1003
????????: ??? ?????
?????????: ???? ?????????
?????: ??? ????? 0000008e? parameter1 c0000005? parameter2 00000120? parameter3 fd28eaa4? parameter4 00000000. ????? ?? ?????????? ???? ???? ????? ?????????? ??? ?????? ?????? http://support.microsoft.com. ??????: 0000: 53 79 73 74 65 6d 20 45 System E 0008: 72 72 6f 72 20 20 45 72 rror Er 0010: 72 6f 72 20 63 6f 64 65 ror code 0018: 20 30 30 30 30 30 30 35 000008e 0020: 30 20 20 50 61 72 61 6d 0 Param 0028: 65 74 65 72 73 20 66 66 eters ff 0030: 66 66 66 66 64 31 2c
???????
- ????? ????? ??? Stop ??????? ?????? ??? ?????? ????? ?????????.
????? ?? ????????? ??? ????? ????? ?????? ??? ??????? ???? ??? ??? ??????? ?????? ?????? ?? "????? ????? Microsoft" (?? ????? ??? ??????? ??? ???????? ??? ????? ?????? ?????????? (????? ?? ??? ?????? ???)):
307973
(http://support.microsoft.com/kb/307973/
)
????? ????? ?????? ??? ?????? ?????????? ?? Windows
- ????? ?????? ?????? ???????? ???? ??????? ?? ????? ??? Stop ??????? ????? ???? ?????????.
?? ???? ??? ??????? ?? ???? ????? ???? ????????? ???? ??????? ????? HaxDoor.
???? ????? HaxDoor ?????? ????? ?????. ???????? ??? ???? ???? ??? ??????? ?????? ??????? ??????? ???????. ?? ????? ??? ????? ?????? ??????? ?????? HaxDoor? ??? ?? ?????? ???? ??? ??? ????? Mszx23.exe. ???? ?????? ?? ??????? ??? ??????? ???? ?????? ????? ???? Vdmt16.sys ?? Vdnt32.sys ??? ???? ?????????. ???? ??????? ?????? ??????? ??? ?????? ??????? ???? ???? ??? ???????. ???? ???????? ????? HaxDoor ??????? ??? ??????? ?? ???? ?????.
??? ????? ??? ????? ?? ??????? ?? ?????? ??? ??????? ???? ???? ????? ????? ?????. ??? ???? ?? ???? ?????? ????? ?? ???? ????? ????? ?????? ??? ?????. ?????? ??? ?????? ?? ????? ??????? ??????? ??????. ??????? ????????? ?? ???? ???? ???????? ?? ????? ??? ??????. ????? ??? ??? ??????? ????? ?? ???? ???? ??? ?????. ????? ?? ????????? ??? ????? ??? ???? ???????? ?? ????? ?????????? ???? ??? ??? ??????? ?????? ?????? ?? "????? ????? Microsoft" (?? ????? ??? ??????? ??? ???????? ??? ????? ?????? ?????????? (????? ?? ??? ?????? ???)):
322756
(http://support.microsoft.com/kb/322756/
)
????? ??? ???? ???????? ?? ????? ????????? ?? ???? ????? Windows
??? ??? ???????? ???? ??????? ???????:
- ???? ??????? ??????? ???????? ?? "????? ????? Microsoft". ?????? ??? ??????? ????? ?????? ??? ??????? (?? ????? ??? ??????? ??? ???????? ??? ????? ?????? ?????????? (????? ?? ??? ?????? ???)):
307654
(http://support.microsoft.com/kb/307654/
)
????? ????? ???? ?????? ?????????? ?????????? ?? Windows XP
- ???? ??? ????? ?? ??? ????? ????? regedit? ?? ???? ??? ?????.
- ??? ???? ????? ??????? ?????? ??????:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
- ??? ???? ??? ??????? ?? ????? ??????? ?????? ???? ???? ??? "drct16" ?? "draw32" ?? ??????.
??? ???? ??????? ?? ??? ??????? ???? ????????? ???????: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\drct16
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\draw32
- ???? ????? ??????? ?????? ???? ??????? Windows XP? ?? ?? ?????? ????? ???? ????????? ?? ????? ???????.
- ?? ?????? ?????? ?? ?? ???????? ???? R (?????) ???? ???? ???? ????????? ?????? ?? Windows.
- ??? ????? ???? ????? ????? ????? Windows ???? ???? ???????. ????? ?? ???? ??? ????? ?? ?.
- ???? ???? ?????? ?????? ????????? ????? ????? ??? ???. ??? ???? ???? ?????? ?????? ???????? ??? ??????? ???? ????? "???????".
- ?? ???? ???????? ????? ??? ?????? C:\Windows\System32. ??? ???? ??????? ???? cd C:\Windows\System32.
- ?????? ????? ren (????? ???????) ?????? ????? ??????? ??????? ??? ?? ????. ?? ??? ??? ????? "???????" ??? ?? ???. ?? ???? ???? ????? "File not found" (?? ??? ?????? ??? ?????)? ????? ??? ????? ?????? ?? ???????.
ren 1.a3d 1.a3d.bad
ren cm.dll cm.dll.bad ren cz.dll cz.dll.bad
ren draw32.dll draw32.dll.bad
ren drct16.dll drct16.dll.bad
ren dt163.dt dt163.dt.bad
ren fltr.a3d fltr.a3d.bad
ren hm.sys hm.sys.bad
ren hz.dll hz.dll.bad
ren hz.sys hz.sys.bad
ren i.a3d i.a3d.bad
ren in.a3d in.a3d.bad
ren klo5.sys klo5.sys.bad
ren klogini.dll klogini.dll.bad
ren memlow.sys memlow.sys.bad
ren mszx23.exe mszx23.exe.bad
ren p2.ini p2.ini.bad
ren ps.a3d ps.a3d.bad
ren redir.a3d redir.a3d.bad
ren tnfl.a3d tnfl.a3d.bad
ren vdmt16.sys vdmt16.sys.bad
ren vdnt32.sys vdnt32.sys.bad
ren w32tm.exe w32tm.exe.bad ren WD.SYS WD.SYS.bad
ren winlow.sys winlow.sys.bad
ren wmx.a3d wmx.a3d.bad
ren wz.dll wz.dll.bad
ren wz.sys wz.sys.bad
??? ???? ??? ??? ??????? ??? ????????? ???? del *.bad. - ?? ?????? ????? ??????? ????? ?????? Windows XP? ?? ???? Exit ?????? ????? ???? ?????????.
- ??? ???????? ?? ????? ????? ???? ?????????? ???? ??? ???? ?? ??? ????? ?? ???? regedit? ?? ???? ??? ?????.
- ??? ???? ?????? ??????? ??????? ??????? ???? ??????? ?????? ??? ?? ????? ???? ?? ??????. ?? ???? ??? ???? ??? ?????? ????? ?? ?????? ??????? ??????? ???????? ????????? ????? ??? ??????? ?????? ?????? ?? ???????.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vdmt16
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vdnt32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\winlow
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\memlow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vdmt16
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\vdnt32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\winlow
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\memlow
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ENUM\ROOT\LEGACY_VDMT16
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ENUM\ROOT\LEGACY_VDNT32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ENUM\ROOT\LEGACY_WINLOW
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ENUM\ROOT\LEGACY_MEMLOW
- ??? ??? ??????? ????? ??? ??? ????? Mszx23.exe ??? ?????? ??????? ??????? ???????:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunServices
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices
- ?? ?????? "???? ???????".
- ???? ?? ?? ????? ??????? ?? ????????? ?????? ?????? ?????? ???? ????? ????? ?????????? ?? ?? ?????? ???? ???? ??????.
?? ????? ??????? ?????? ??????? ?????? ????? ????? ??????? ?? ?????????.
?? ??? ??????????? ??? ??????
| Symantec: | Backdoor.Haxdoor.D |
| Trend Micro: | BKDR_HAXDOOR.BC ?BKDR_HAXDOOR.BN ?BKDR_HAXDOOR.BA ?BKDR_HAXDOOR.AL |
| PandaLabs: | HAXDOOR.AW |
| F-Secure: | Backdoor.Win32.Haxdoor ?Backdoor.Win32.Haxdoor.al |
| Sophos: | Troj/Haxdoor-AF ?Troj/Haxdoor-CN ?Troj/Haxdoor-AE |
| Kaspersky Lab: | Backdoor.Win32.Haxdoor.bg |
| McAfee: | BackDoor-BAC |
???? ???????: 903251 - ????? ??? ??????: 11/????/1430 - ??????: 5.0
????? ???
- Microsoft Windows Server 2003, Web Edition
- Microsoft Windows Server 2003, Standard Edition (32-bit x86)
- Microsoft Windows Server 2003, Enterprise Edition (32-bit x86)
- Microsoft Windows Server 2003, Datacenter Edition (32-bit x86)
- Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems
- Microsoft Windows Server 2003, Datacenter Edition for Itanium-Based Systems
- Microsoft Windows XP Tablet PC Edition
- Microsoft Windows XP Professional
- Microsoft Windows XP Media Center Edition
- Microsoft Windows XP Home Edition
- Microsoft Windows XP 64-Bit Edition
- Microsoft Windows 2000 Server
- Microsoft Windows 2000 Datacenter Server
- Microsoft Windows 2000 Advanced Server
- Microsoft Windows 2000 Professional Edition
| kbresolve kbvirus kbprb kbtshoot kberrmsg KB903251 |