Xylitol

avast-mail-security.download

Nov 19th, 2016
436
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.17 KB | None | 0 0
  1. Host Name: MONO
  2. OS Name: Microsoft Windows Serverr 2008 Enterprise
  3. OS Version: 6.0.6002 Service Pack 2 Build 6002
  4. OS Manufacturer: Microsoft Corporation
  5. OS Configuration: Standalone Server
  6. OS Build Type: Multiprocessor Free
  7. Registered Owner: Windows User
  8. Registered Organization:
  9. Product ID: 92516-083-1000042-76528
  10. Original Install Date: 10/9/2016, 6:07:53 AM
  11. System Boot Time: 11/18/2016, 4:14:56 AM
  12. System Manufacturer: VMware, Inc.
  13. System Model: VMware Virtual Platform
  14. System Type: X86-based PC
  15. Processor(s): 1 Processor(s) Installed.
  16. Network Card(s): 1 NIC(s) Installed.
  17. [01]: Intel(R) PRO/1000 MT Network Connection
  18. Connection Name: Local Area Connection
  19. DHCP Enabled: No
  20. IP address(es)
  21. [01]: 191.101.31.208
  22.  
  23. ---
  24.  
  25. ===========================================================================
  26. Interface List
  27. 11 ...00 50 56 b0 1d e1 ...... Intel(R) PRO/1000 MT Network Connection
  28. 1 ........................... Software Loopback Interface 1
  29. 12 ...00 00 00 00 00 00 00 e0 isatap.{89892852-7FA6-47FB-886D-0C61C31469B0}
  30. 10 ...00 00 00 00 00 00 00 e0 6TO4 Adapter
  31. ===========================================================================
  32.  
  33. IPv4 Route Table
  34. ===========================================================================
  35. Active Routes:
  36. Network Destination Netmask Gateway Interface Metric
  37. 0.0.0.0 0.0.0.0 191.101.31.65 191.101.31.208 266
  38. 127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
  39. 127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
  40. 127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
  41. 191.101.31.192 255.255.255.192 On-link 191.101.31.208 266
  42. 191.101.31.208 255.255.255.255 On-link 191.101.31.208 266
  43. 191.101.31.255 255.255.255.255 On-link 191.101.31.208 266
  44. 224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
  45. 224.0.0.0 240.0.0.0 On-link 191.101.31.208 266
  46. 255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
  47. 255.255.255.255 255.255.255.255 On-link 191.101.31.208 266
  48. ===========================================================================
  49. Persistent Routes:
  50. Network Address Netmask Gateway Address Metric
  51. 0.0.0.0 0.0.0.0 217.64.114.161 Default
  52. 0.0.0.0 0.0.0.0 191.101.31.65 Default
  53. ===========================================================================
  54.  
  55. IPv6 Route Table
  56. ===========================================================================
  57. Active Routes:
  58. If Metric Network Destination Gateway
  59. 10 1110 ::/0 2002:c058:6301::c058:6301
  60. 1 306 ::1/128 On-link
  61. 10 1010 2002::/16 On-link
  62. 10 266 2002:bf65:1fd0::bf65:1fd0/128
  63. On-link
  64. 1 306 ff00::/8 On-link
  65. ===========================================================================
  66. Persistent Routes:
  67. None
  68.  
  69. --
  70.  
  71. Volume in drive C has no label.
  72. Volume Serial Number is 7CD7-0C37
  73.  
  74. Directory of C:\Users\Administrator\Desktop\nano
  75.  
  76. 11/18/2016 01:51 PM <DIR> .
  77. 11/18/2016 01:51 PM <DIR> ..
  78. 09/07/2016 06:46 PM 165,888 Authenticator.dll
  79. 06/30/2016 01:39 PM 7,813 builder.log
  80. 11/15/2016 02:20 AM 266,752 client.bin
  81. 11/15/2016 02:20 AM 9,216 ClientPlugin.dll
  82. 11/15/2016 02:20 AM 10,200 ClientPlugin.xml
  83. 11/18/2016 01:51 PM 24 compiler.bin
  84. 11/18/2016 01:51 PM <DIR> Databases
  85. 07/05/2016 02:55 PM 341 loader.log
  86. 11/15/2016 02:20 AM 194 login.bin
  87. 09/07/2016 06:46 PM 31,744 Lzma.dll
  88. 09/07/2016 06:46 PM 283,136 Mono.Cecil.dll
  89. 11/15/2016 02:20 AM 1,718,272 NanoCore.exe
  90. 09/07/2016 06:46 PM 67,072 NanoCore_Updater.exe
  91. 11/15/2016 02:20 AM <DIR> News
  92. 11/15/2016 02:20 AM 44,032 PluginCompiler.exe
  93. 10/16/2016 09:54 PM <DIR> Plugins
  94. 11/18/2016 01:51 PM 144 plugins.bin
  95. 06/18/2016 09:20 PM 62 public.bin
  96. 11/16/2016 11:25 PM <DIR> Resources
  97. 11/18/2016 01:51 PM 64,544,792 server.log
  98. 11/15/2016 02:20 AM 20,992 ServerPlugin.dll
  99. 11/15/2016 02:20 AM 43,972 ServerPlugin.xml
  100. 11/18/2016 01:51 PM 400 settings.bin
  101. 06/28/2016 12:56 PM <DIR> Snapshots
  102. 06/18/2016 09:16 PM 262,144 System.Data.SQLite.dll
  103. 11/18/2016 01:51 PM 180 Tasks.dat
  104. 09/07/2016 06:46 PM 40,960 Updater.exe
  105. 06/28/2016 12:56 PM <DIR> x64
  106. 06/28/2016 12:56 PM <DIR> x86
  107. 22 File(s) 67,518,330 bytes
  108. 9 Dir(s) 4,268,736,512 bytes free
  109.  
  110. ---
  111.  
  112. C:\Users\Administrator\Desktop\nano\builder.log
  113.  
  114. Saturday, 18 June 2016
  115.  
  116. 22:55: Compiling 'C:\Users\CodeSpirit\Desktop\nano\server1.exe'..
  117. 22:55: BuildTime = 06/18/2016 21:55:39
  118. 22:55: Version = 1.2.2.6
  119. 22:55: Mutex = f50d73e7-8dc1-4589-8831-196393217941
  120. 22:55: DefaultGroup = codespirit
  121. 22:55: PrimaryConnectionHost = 151.236.28.106
  122. 22:55: BackupConnectionHost = 151.236.28.106
  123. 22:55: ConnectionPort = 21916
  124. 22:55: RunOnStartup = False
  125. 22:55: RequestElevation = False
  126. 22:55: BypassUserAccountControl = False
  127. 22:55: ClearZoneIdentifier = True
  128. 22:55: ClearAccessControl = False
  129. 22:55: SetCriticalProcess = False
  130. 22:55: PreventSystemSleep = True
  131. 22:55: ActivateAwayMode = False
  132. 22:55: EnableDebugMode = False
  133. 22:55: RunDelay = 0
  134. 22:55: UseCustomDnsServer = True
  135. 22:55: PrimaryDnsServer = 8.8.8.8
  136. 22:55: BackupDnsServer = 8.8.4.4
  137. 22:55: Converting output architecture from AnyCPU to x86..
  138. 22:55: Stub will only connect to the current 'codspirit' license.
  139. 22:55: Compiling has succeeded. Size: 130.50 KB
  140.  
  141. Sunday, 19 June 2016
  142.  
  143. 15:54: Compiling 'C:\Users\CodeSpirit\Desktop\nano\serverjoe.exe'..
  144. 15:54: BuildTime = 06/19/2016 14:54:15
  145. 15:54: Version = 1.2.2.6
  146. 15:54: Mutex = c0a2334a-0d4f-43d8-ae60-40f5c6d4aef5
  147. 15:54: DefaultGroup = Joe SA
  148. 15:54: PrimaryConnectionHost = avastmail.jumpingcrab.com
  149. 15:54: BackupConnectionHost = avastmail.jumpingcrab.com
  150. 15:54: ConnectionPort = 21916
  151. 15:54: RunOnStartup = True
  152. 15:54: RequestElevation = False
  153. 15:54: BypassUserAccountControl = True
  154. 15:54: BypassUserAccountControlData = System.Byte[]
  155. 15:54: ClearZoneIdentifier = True
  156. 15:54: ClearAccessControl = False
  157. 15:54: SetCriticalProcess = False
  158. 15:54: PreventSystemSleep = True
  159. 15:54: ActivateAwayMode = False
  160. 15:54: EnableDebugMode = False
  161. 15:54: RunDelay = 5
  162. 15:54: Converting output architecture from AnyCPU to x86..
  163. 15:54: Stub will only connect to the current 'codspirit' license.
  164. 15:54: Compiling has succeeded. Size: 131.00 KB
  165.  
  166. Sunday, 19 June 2016
  167.  
  168. 18:46: Compiling 'C:\Users\CodeSpirit\Desktop\nano\NANOAGAIN.exe'..
  169. 18:46: BuildTime = 06/19/2016 17:46:13
  170. 18:46: Version = 1.2.2.6
  171. 18:46: Mutex = 8b96918d-0c74-4e09-b5f5-12e6f68d7451
  172. 18:46: DefaultGroup = JOE SA
  173. 18:46: PrimaryConnectionHost = codefbi.ignorelist.com
  174. 18:46: BackupConnectionHost = codefbi.ignorelist.com
  175. 18:46: ConnectionPort = 21916
  176. 18:46: RunOnStartup = False
  177. 18:46: RequestElevation = False
  178. 18:46: BypassUserAccountControl = False
  179. 18:46: ClearZoneIdentifier = True
  180. 18:46: ClearAccessControl = False
  181. 18:46: SetCriticalProcess = False
  182. 18:46: PreventSystemSleep = True
  183. 18:46: ActivateAwayMode = False
  184. 18:46: EnableDebugMode = False
  185. 18:46: RunDelay = 0
  186. 18:46: UseCustomDnsServer = True
  187. 18:46: PrimaryDnsServer = 8.8.8.8
  188. 18:46: BackupDnsServer = 8.8.4.4
  189. 18:46: Converting output architecture from AnyCPU to x86..
  190. 18:46: Stub will only connect to the current 'codspirit' license.
  191. 18:46: Compiling has succeeded. Size: 130.50 KB
  192. 18:49: Compiling 'C:\Users\CodeSpirit\Desktop\nano\nanojoe.exe'..
  193. 18:49: BuildTime = 06/19/2016 17:49:47
  194. 18:49: Version = 1.2.2.6
  195. 18:49: Mutex = 448b2b17-8add-4d18-b63b-249c4a38c0ed
  196. 18:49: DefaultGroup = JOE SA
  197. 18:49: PrimaryConnectionHost = avastmail.jumpingcrab.com
  198. 18:49: BackupConnectionHost = avastmail.jumpingcrab.com
  199. 18:49: ConnectionPort = 21916
  200. 18:49: RunOnStartup = False
  201. 18:49: RequestElevation = False
  202. 18:49: BypassUserAccountControl = False
  203. 18:49: ClearZoneIdentifier = True
  204. 18:49: ClearAccessControl = False
  205. 18:49: SetCriticalProcess = False
  206. 18:49: PreventSystemSleep = True
  207. 18:49: ActivateAwayMode = False
  208. 18:49: EnableDebugMode = False
  209. 18:49: RunDelay = 0
  210. 18:49: UseCustomDnsServer = True
  211. 18:49: PrimaryDnsServer = 8.8.8.8
  212. 18:49: BackupDnsServer = 8.8.4.4
  213. 18:49: Converting output architecture from AnyCPU to x86..
  214. 18:49: Stub will only connect to the current 'codspirit' license.
  215. 18:49: Compiling has succeeded. Size: 130.50 KB
  216.  
  217. Monday, 20 June 2016
  218.  
  219. 19:52: Compiling 'C:\Users\CodeSpirit\Desktop\nano\aliword.exe'..
  220. 19:52: BuildTime = 06/20/2016 18:52:14
  221. 19:52: Version = 1.2.2.6
  222. 19:52: Mutex = d65a2c3a-5a66-4eeb-873a-eb135b6075eb
  223. 19:52: DefaultGroup = Default
  224. 19:52: PrimaryConnectionHost = alicode.strangled.net
  225. 19:52: BackupConnectionHost = alicode.strangled.net
  226. 19:52: ConnectionPort = 5239
  227. 19:52: RunOnStartup = False
  228. 19:52: RequestElevation = False
  229. 19:52: BypassUserAccountControl = False
  230. 19:52: ClearZoneIdentifier = True
  231. 19:52: ClearAccessControl = False
  232. 19:52: SetCriticalProcess = False
  233. 19:52: PreventSystemSleep = True
  234. 19:52: ActivateAwayMode = False
  235. 19:52: EnableDebugMode = False
  236. 19:52: RunDelay = 0
  237. 19:52: UseCustomDnsServer = True
  238. 19:52: PrimaryDnsServer = 8.8.8.8
  239. 19:52: BackupDnsServer = 8.8.4.4
  240. 19:52: Converting output architecture from AnyCPU to x86..
  241. 19:52: Stub will only connect to the current 'codspirit' license.
  242. 19:52: Compiling has succeeded. Size: 130.50 KB
  243. 19:54: Compiling 'C:\Users\CodeSpirit\Desktop\nano\aliword.exe'..
  244. 19:54: BuildTime = 06/20/2016 18:54:15
  245. 19:54: Version = 1.2.2.6
  246. 19:54: Mutex = 9216d895-fdd8-4435-8fbf-d7e7f1e98bae
  247. 19:54: DefaultGroup = Default
  248. 19:54: PrimaryConnectionHost = alicode.strangled.net
  249. 19:54: BackupConnectionHost = alicode.strangled.net
  250. 19:54: ConnectionPort = 51301
  251. 19:54: RunOnStartup = False
  252. 19:54: RequestElevation = False
  253. 19:54: BypassUserAccountControl = False
  254. 19:54: ClearZoneIdentifier = True
  255. 19:54: ClearAccessControl = False
  256. 19:54: SetCriticalProcess = False
  257. 19:54: PreventSystemSleep = True
  258. 19:54: ActivateAwayMode = False
  259. 19:54: EnableDebugMode = False
  260. 19:54: RunDelay = 0
  261. 19:54: UseCustomDnsServer = True
  262. 19:54: PrimaryDnsServer = 8.8.8.8
  263. 19:54: BackupDnsServer = 8.8.4.4
  264. 19:54: Converting output architecture from AnyCPU to x86..
  265. 19:54: Stub will only connect to the current 'codspirit' license.
  266. 19:54: Compiling has succeeded. Size: 130.50 KB
  267.  
  268. Wednesday, 22 June 2016
  269.  
  270. 08:15: Compiling 'C:\Users\CodeSpirit\Desktop\nano\alime.exe'..
  271. 08:15: BuildTime = 06/22/2016 07:15:44
  272. 08:15: Version = 1.2.2.6
  273. 08:15: Mutex = 9ed12028-f627-48eb-9008-d57337e9df5c
  274. 08:15: DefaultGroup = alibaba
  275. 08:15: PrimaryConnectionHost = alicode.strangled.net
  276. 08:15: BackupConnectionHost = alicode.strangled.net
  277. 08:15: ConnectionPort = 51301
  278. 08:15: RunOnStartup = False
  279. 08:15: RequestElevation = False
  280. 08:15: BypassUserAccountControl = False
  281. 08:15: ClearZoneIdentifier = True
  282. 08:15: ClearAccessControl = False
  283. 08:15: SetCriticalProcess = False
  284. 08:15: PreventSystemSleep = True
  285. 08:15: ActivateAwayMode = False
  286. 08:15: EnableDebugMode = False
  287. 08:15: RunDelay = 0
  288. 08:15: UseCustomDnsServer = True
  289. 08:15: PrimaryDnsServer = 8.8.8.8
  290. 08:15: BackupDnsServer = 8.8.4.4
  291. 08:15: Converting output architecture from AnyCPU to x86..
  292. 08:15: Stub will only connect to the current 'codspirit' license.
  293. 08:15: Compiling has succeeded. Size: 130.50 KB
  294.  
  295. Thursday, 30 June 2016
  296.  
  297. 02:46: Compiling 'C:\Users\NAS\Desktop\nano\alibaba.exe'..
  298. 02:46: BuildTime = 06/30/2016 01:46:06
  299. 02:46: Version = 1.2.2.6
  300. 02:46: Mutex = 6460858c-d59f-4643-b240-584849cf4baf
  301. 02:46: DefaultGroup = alibaba
  302. 02:46: PrimaryConnectionHost = avastmail.jumpingcrab.com
  303. 02:46: BackupConnectionHost = avastmail.jumpingcrab.com
  304. 02:46: ConnectionPort = 21916
  305. 02:46: RunOnStartup = False
  306. 02:46: RequestElevation = False
  307. 02:46: BypassUserAccountControl = False
  308. 02:46: ClearZoneIdentifier = True
  309. 02:46: ClearAccessControl = False
  310. 02:46: SetCriticalProcess = False
  311. 02:46: PreventSystemSleep = True
  312. 02:46: ActivateAwayMode = False
  313. 02:46: EnableDebugMode = False
  314. 02:46: RunDelay = 0
  315. 02:46: UseCustomDnsServer = True
  316. 02:46: PrimaryDnsServer = 8.8.8.8
  317. 02:46: BackupDnsServer = 8.8.4.4
  318. 02:46: Converting output architecture from AnyCPU to x86..
  319. 02:46: Stub will only connect to the current 'codspirit' license.
  320. 02:46: Compiling has succeeded. Size: 130.50 KB
  321.  
  322. ---
  323.  
  324. hxtp://avast-mail-security.download/save/n/upload/At4ywfkiytriy3.exe
  325. hxtp://avast-mail-security.download/save/n/upload/btKHAYIfkhywfkiytriy3.exe
  326. hxtp://avast-mail-security.download/save/n/upload/Keyfhywfkiytriy3.exe
  327. hxtp://avast-mail-security.download/save/n/upload/nanodifhodugfoi.exe
  328. hxtp://avast-mail-security.download/save/n/upload/newf75kut7rsdj.exe
  329. hxtp://avast-mail-security.download/save/n/upload/Pow3fuyfsfuFUtd7e.exe
  330. hxtp://avast-mail-security.download/save/n/upload/stfuyfsfuFUtd7e.exe
  331.  
  332. --
  333.  
  334. SELECT * FROM pony_system_log WHERE log_source LIKE 'login'
  335.  
  336. log_id report_id log_line log_source log_type log_extra import_time
  337. 1 NULL 41.113.33.115 login other codespirit 2016-11-15 16:18:35
  338. 2 NULL 197.210.226.23 login other codespirit 2016-11-15 18:08:41
  339. 3 NULL 41.113.19.161 login other codespirit 2016-11-15 22:24:50
  340. 4 NULL 197.210.227.205 login other codespirit 2016-11-15 23:30:10
  341. 7 NULL 41.113.34.185 login other codespirit 2016-11-16 11:18:25
  342. 9 NULL 41.113.32.84 login other codespirit 2016-11-16 14:07:04
  343. 10 NULL 197.210.227.179 login other codespirit 2016-11-16 14:49:04
  344. 12 NULL 41.113.110.114 login other codespirit 2016-11-16 17:36:01
  345. 13 NULL 197.210.24.133 login other codespirit 2016-11-16 18:04:07
  346. 14 NULL 41.113.3.2 login other codespirit 2016-11-16 21:30:28
  347. 15 NULL 197.210.24.184 login other codespirit 2016-11-17 00:28:59
  348. 16 NULL 41.113.56.37 login other codespirit 2016-11-17 09:53:38
  349. 18 NULL 197.210.25.163 login other codespirit 2016-11-17 10:38:42
  350. 28 NULL 41.113.98.50 login other codespirit 2016-11-17 13:47:13
  351. 34 NULL 41.113.121.158 login other codespirit 2016-11-17 17:18:47
  352. 35 NULL 41.113.8.152 login other codespirit 2016-11-17 22:28:50
  353. 40 NULL 105.112.17.68 login other codespirit 2016-11-18 11:50:36
  354. 41 NULL 41.113.69.136 login other codespirit 2016-11-18 12:45:08
  355. 43 NULL 197.210.226.175 login other codespirit 2016-11-18 17:06:08
  356. 44 NULL 197.210.227.114 login other codespirit 2016-11-18 17:25:57
  357. 45 NULL 41.113.28.245 login other codespirit 2016-11-18 18:05:40
  358. 46 NULL 41.113.108.243 login other codespirit 2016-11-18 22:07:15
  359. 48 NULL 197.210.44.35 login other codespirit 2016-11-19 11:58:17
  360. 50 NULL 41.113.21.213 login other codespirit 2016-11-19 21:02:05
Add Comment
Please, Sign In to add comment