제홈페이지가 바이러스에 걸렸나봐요..

제홈페이지가 바이러스에 걸렸나봐요..

QA

제홈페이지가 바이러스에 걸렸나봐요..

본문

몇일전부터인가... 사이트에 접속이 잘 안되거나 , 관리자 로그인이 안되거나,

회원들이 글을 올리면 내용물이 올라가긴 올라가는데 중요내용들이 몇개가 빠져있다던가...

 

등등... 

 

사이트 전반적으로 뭔가 느낌이 이상해서 iis 서버에 깔려있는 V3를 봤더니 아래와같이

일정 주기로 바이러스파일? 로 의심되는 녀석들이 들어오더라구요;;;

 

혹시... 이에대해 좀 조언을 구할수있을까 문의남겨봅니다 ㅠ_ㅠ;;

 

보안을 어떻게 해야지 더이상 이런 파일들이 안올지도 ㅠㅠ 정말 막막하네요;;

 

아래는, 제가 임의로 뽑아낸... V3 검역소 파일 입니다

 

날짜 진단명 대상
2016-04-28 오후 2:43:09 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\cvmsdy.dll
2016-04-28 오후 2:43:06 Trojan/Win32.Nitol.R177126 C:\windows\system32\ukGMx.bat
2016-04-28 오후 2:43:06 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-28 오후 2:43:05 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-28 오후 2:43:05 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-28 오후 2:43:05 Trojan/Win32.DDoS.R136193 D:\lpk.dll
2016-04-28 오후 2:43:05 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-28 오후 2:43:04 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-28 오후 2:43:04 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-28 오후 2:43:04 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-28 오후 2:43:03 Trojan/Win32.Nitol.R177126 C:\windows\system32\ukGMx.exe
2016-04-28 오후 12:52:50 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\avokfx.dll
2016-04-28 오후 12:44:06 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\yaiedo.dll
2016-04-28 오후 12:41:25 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\abszwo.dll
2016-04-28 오후 12:39:02 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\cschxi.dll
2016-04-28 오후 12:34:57 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\wqsdgn.dll
2016-04-28 오후 12:31:22 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\uqhruc.dll
2016-04-28 오후 12:29:33 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\juovvc.dll
2016-04-28 오후 12:28:02 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\mjoqti.dll
2016-04-28 오후 12:27:38 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\ktjdad.dll
2016-04-28 오후 12:26:44 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\ojvaxe.dll
2016-04-28 오후 12:25:05 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\vrfiju.dll
2016-04-28 오전 11:59:02 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\dlvaif.dll
2016-04-28 오전 11:38:56 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\owqjdn.dll
2016-04-28 오전 11:33:21 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\cfszku.dll
2016-04-28 오전 11:30:59 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\vknmcu.dll
2016-04-28 오전 11:28:52 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\srerdk.dll
2016-04-28 오전 11:28:43 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\zhcnct.dll
2016-04-28 오전 11:28:41 Trojan/Win32.Nitol.R177126 C:\windows\system32\ukGMx.bat
2016-04-28 오전 11:28:38 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-28 오전 11:27:40 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\aisqpv.dll
2016-04-28 오전 11:24:58 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\hjucvh.dll
2016-04-28 오전 11:23:48 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\bufraf.dll
2016-04-28 오전 11:22:58 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\dwuxbq.dll
2016-04-28 오전 11:20:30 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\tfctvc.dll
2016-04-28 오전 11:20:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-28 오전 11:20:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-28 오전 11:20:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-28 오전 11:20:22 Trojan/Win32.DDoS.R136193 D:\lpk.dll
2016-04-28 오전 11:20:22 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-28 오전 11:20:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-28 오전 11:20:21 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-28 오전 11:20:21 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-28 오전 11:20:20 Trojan/Win32.Nitol.R177126 C:\windows\system32\ukGMx.exe
2016-04-28 오전 11:20:17 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\suybmu.dll
2016-04-28 오전 11:18:39 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\sieaeq.dll
2016-04-28 오전 11:18:12 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\kritvi.dll
2016-04-28 오전 11:16:09 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\gvrfna.dll
2016-04-28 오전 11:15:19 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\tcfpsi.dll
2016-04-28 오전 1:52:11 Trojan/Win64.Agent.C1321308 C:\exp2.exe
2016-04-28 오전 1:52:07 Trojan/Win32.Agent.C876727 C:\exp1.exe
2016-04-28 오전 1:52:04 Trojan/Win32.Exploit.C831961 C:\tan1.exe
2016-04-28 오전 1:51:07 Backdoor/Win32.RemoteAccess.R125850 C:\Inetpub\wwwroot\pophard\MySQL5\bin\cna12.dll
2016-04-28 오전 1:51:06 Backdoor/Win32.RemoteAccess.R125850 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\cna12.dll
2016-04-27 오전 4:40:38 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\gmtiof.dll
2016-04-27 오전 4:40:24 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 4:40:24 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 4:40:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 4:40:23 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 4:40:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 4:40:22 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 4:40:22 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 4:27:14 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\mlvjfe.dll
2016-04-27 오전 4:27:01 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 4:27:00 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 4:26:59 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 4:26:56 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 4:26:54 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 4:26:53 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 4:26:53 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 4:15:29 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\rvhtem.dll
2016-04-27 오전 4:15:19 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 4:15:18 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 4:15:18 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 4:15:17 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 4:15:17 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 4:15:17 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 4:15:17 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 4:00:04 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\mfcwww.dll
2016-04-27 오전 3:59:52 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 3:59:52 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 3:59:51 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 3:59:49 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 3:59:46 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 3:59:46 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 3:59:45 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 3:50:14 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\usvoes.dll
2016-04-27 오전 3:49:55 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 3:49:55 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 3:49:54 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 3:49:53 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 3:49:53 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 3:49:53 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 3:49:52 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 3:07:11 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\joboqm.dll
2016-04-27 오전 3:07:00 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 3:06:59 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 3:06:59 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 3:06:54 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 3:06:52 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 3:06:52 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 3:06:51 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 2:57:37 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\nstemr.dll
2016-04-27 오전 2:57:26 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 2:57:26 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 2:57:26 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 2:57:25 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 2:57:25 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 2:57:25 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 2:57:24 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 2:48:42 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\nywvmr.dll
2016-04-27 오전 2:48:06 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 2:48:06 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 2:48:05 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 2:48:02 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 2:48:01 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 2:48:01 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 2:48:00 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 2:37:54 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\usrbpq.dll
2016-04-27 오전 2:37:32 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 2:37:32 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 2:37:31 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 2:37:25 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 2:37:24 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 2:37:23 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 2:37:22 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 2:28:32 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\tcbwlt.dll
2016-04-27 오전 2:28:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 2:28:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 2:28:20 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 2:28:18 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 2:28:17 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 2:28:17 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 2:28:16 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-27 오전 1:38:08 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\ljgeeq.dll
2016-04-27 오전 1:37:44 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-27 오전 1:37:43 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-27 오전 1:37:41 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-27 오전 1:37:39 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-27 오전 1:37:38 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-27 오전 1:37:37 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-27 오전 1:37:37 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오후 11:03:29 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\zojiod.dll
2016-04-26 오후 11:03:02 Trojan/Win32.Agent.R175459 C:\windows\system32\ukGMx.bat
2016-04-26 오후 11:02:49 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오후 11:02:47 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오후 11:02:47 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오후 11:02:45 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오후 11:02:44 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오후 11:02:44 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오후 11:02:44 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오후 11:02:42 Trojan/Win32.Agent.R175459 C:\windows\system32\ukGMx.exe
2016-04-26 오후 7:12:53 Trojan/Win64.Agent.C1321308 C:\exp2.exe
2016-04-26 오후 7:12:52 Trojan/Win32.Agent.C876727 C:\exp1.exe
2016-04-26 오후 7:12:50 Trojan/Win32.Exploit.C831961 C:\tan1.exe
2016-04-26 오후 7:12:44 Backdoor/Win32.RemoteAccess.R125850 C:\Inetpub\wwwroot\pophard\MySQL5\bin\cna12.dll
2016-04-26 오후 7:12:44 Backdoor/Win32.RemoteAccess.R125850 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\cna12.dll
2016-04-26 오후 2:38:46 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\zsncut.dll
2016-04-26 오후 2:27:56 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\zosnbk.dll
2016-04-26 오후 2:20:49 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\voaeko.dll
2016-04-26 오후 2:09:21 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\gbnphx.dll
2016-04-26 오후 2:02:56 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\wvwpbg.dll
2016-04-26 오전 2:09:18 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\panoog.dll
2016-04-26 오전 2:09:16 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 2:09:16 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 2:09:16 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 2:09:16 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 2:09:15 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 2:09:15 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 2:09:14 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오전 2:09:13 Malware/Win32.Generic C:\windows\system32\ukgmx.exe
2016-04-26 오전 1:55:55 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\aiunuy.dll
2016-04-26 오전 1:55:44 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 1:55:43 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 1:55:43 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 1:55:43 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 1:55:42 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 1:55:42 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 1:55:42 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오전 1:26:03 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\njichm.dll
2016-04-26 오전 1:25:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 1:25:22 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 1:25:22 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 1:25:21 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 1:25:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 1:25:21 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 1:15:35 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\nwxvlq.dll
2016-04-26 오전 1:15:22 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 1:15:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 1:15:21 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 1:15:19 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 1:15:19 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 1:15:18 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 1:15:17 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오전 12:23:47 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\roodua.dll
2016-04-26 오전 12:23:26 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 12:23:26 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 12:23:25 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 12:23:25 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 12:23:24 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 12:23:24 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 12:23:24 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오전 12:11:50 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\nkbcfw.dll
2016-04-26 오전 12:11:25 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 12:11:24 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 12:11:23 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 12:11:20 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 12:11:18 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll
2016-04-26 오전 12:11:16 Trojan/Win32.DDoS.R136193 C:\windows\lpk.dll
2016-04-26 오전 12:11:15 Trojan/Win32.DDoS.R136193 C:\Program Files\lpk.dll
2016-04-26 오전 12:01:35 Trojan/Win32.Chikdos.C1159862 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\ufouxr.dll
2016-04-26 오전 12:01:10 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\lpk.dll
2016-04-26 오전 12:01:09 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lpk.dll
2016-04-26 오전 12:01:08 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\bin\lpk.dll
2016-04-26 오전 12:01:06 Trojan/Win32.DDoS.R136193 C:\lpk.dll
2016-04-26 오전 12:01:04 Trojan/Win32.DDoS.R136193 C:\Inetpub\wwwroot\pophard\MySQL5\lib\plugin\lpk.dll

이 질문에 댓글 쓰기 :

답변 1

악성코드에 걸린 파일을 업로드하셨거나, 웹숼같은 공격을 받아서, 악성코드에 감염이 된것 같아요.
v3로 치료를 하시는게 좋을  듯 한데요.
서버에 웹쉘같은 공격에 의한 감염은 개인이 감당하기는 힘들 듯 하네요.
기업용 솔류션도 가격이 꽤 하고요.^^
답변을 작성하시기 전에 로그인 해주세요.
전체 8
QA 내용 검색

회원로그인

(주)에스아이알소프트 / 대표:홍석명 / (06211) 서울특별시 강남구 역삼동 707-34 한신인터밸리24 서관 1402호 / E-Mail: admin@sir.kr
사업자등록번호: 217-81-36347 / 통신판매업신고번호:2014-서울강남-02098호 / 개인정보보호책임자:김민섭(minsup@sir.kr)
© SIRSOFT