2018-06-29

Ðû²¼Ê±¼ä 2018-06-29

ÐÂÔöÊÂÎñ

ÊÂÎñÃû³Æ£º

HTTP_ºóÃÅ_InvisiMole.Rc2cl_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËInvisiMole¡£InvisiMoleÊÇÒ»¸öϵͳ»¯µÄÌØ¹¤Èí¼þ£¬°üÀ¨Á½¸öºóÃÅÄ£¿é£¬RC2FMºÍRC2CL¡£ÔËÐк󣬿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_Acunetix11_AWVS11_Content_WebÎó²îɨÃè1

ÊÂÎñ¼¶±ð£º

³õ¼¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Ç徲ɨÃè

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃAcunetix11(AWVS11)Îó²îɨÃ蹤¾ß¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐWebÓ¦ÓÃÎó²îɨÃèµÄÐÐΪ£¬ÊµÑéɨÃè·¢Ã÷WebÓ¦ÓÃϵͳÎó²î£¬Îª½øÒ»²½ÈëÇÖÄ¿µÄIPÖ÷»ú×ö×¼±¸¡£Acunetix11(AWVS11)ÊÇÒ»¿îÉÌÓõÄÕë¶ÔWebÓ¦ÓõÄÇå¾²Îó²îɨÃèÈí¼þ¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_Acunetix11_AWVS11_Content_WebÎó²îɨÃè2

ÊÂÎñ¼¶±ð£º

³õ¼¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Ç徲ɨÃè

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃAcunetix11(AWVS11)Îó²îɨÃ蹤¾ß¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐWebÓ¦ÓÃÎó²îɨÃèµÄÐÐΪ£¬ÊµÑéɨÃè·¢Ã÷WebÓ¦ÓÃϵͳÎó²î£¬Îª½øÒ»²½ÈëÇÖÄ¿µÄIPÖ÷»ú×ö×¼±¸¡£Acunetix11(AWVS11)ÊÇÒ»¿îÉÌÓõÄÕë¶ÔWebÓ¦ÓõÄÇå¾²Îó²îɨÃèÈí¼þ¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_AppScan9_Content_WebÎó²îɨÃè

ÊÂÎñ¼¶±ð£º

³õ¼¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Ç徲ɨÃè

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃAppScan 9Îó²îɨÃ蹤¾ß¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐWebÓ¦ÓÃÎó²îɨÃèµÄÐÐΪ£¬ÊµÑéɨÃè·¢Ã÷WebÓ¦ÓÃϵͳÎó²î£¬Îª½øÒ»²½ÈëÇÖÄ¿µÄIPÖ÷»ú×ö×¼±¸¡£AppScan 9ÊÇÒ»¿îÉÌÓõÄÕë¶ÔWebÓ¦ÓõÄÇå¾²Îó²îɨÃèÈí¼þ¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_Win32.SocketPlayer_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËSocketPlayer¡£SocketPlayerÊÇÒ»¸öºóÃÅ£¬¹¦Ð§ºÜÊÇǿʢ¡£ÔËÐк󣬿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_Malware_NocturnalStealer_ÅþÁ¬·þÎñÆ÷

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Nocturnal StealerÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Nocturnal StealerÖ¼ÔÚÇÔÈ¡ÔÚ¶à¸ö»ùÓÚChromiumºÍFirefoxµÄä¯ÀÀÆ÷Öз¢Ã÷µÄÊý¾Ý¡£Ëü»¹¿ÉÒÔÔÚFileZillaÖÐÇÔÈ¡Ðí¶àÊ¢ÐеļÓÃÜÇ®±ÒÇ®°üÒÔ¼°ÈκÎÉúÑĵÄFTPÃÜÂë¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_MsraMiner_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½MsraMinerÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£MsraMiner׼ʱºÍC&C¾ÙÐÐÅþÅþÁÚÊÜÏÂÁîºÍ¸üÐÂÄ£¿é£¬Ö÷ҪĿµÄΪÍÚ¾òÃÅÂÞ±Ò¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_phpMyAdmin_target²ÎÊý_Ô¶³Ì´úÂëÖ´ÐÐÎó²î

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃphpMyAdminÔ¶³Ì´úÂëÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£phpMyAdminÊÇÓÃPHP±àдµÄ¹¤¾ß£¬ÓÃÓÚͨ¹ýWebÖÎÀíMySQL¡£phpMyAdmin°æ±¾Ð¡ÓÚ4.8.2±£´æphpMyAdminÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷ÕßʹÓôËÎó²îÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬Ô¶³ÌÖ´ÐÐϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÐÞ¸ÄÊÂÎñ

ÊÂÎñÃû³Æ£º

HTTP_ºóÃÅ_Win32.Mirage_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMirage¡£Win32.MirageÊÇÒ»¸ö¹¦Ð§ºÜǿʢµÄºóÃÅ£¬Ò»Ñùƽ³£Ê¹Óõç×ÓÓʼþÈö²¥¡£ÏÖÔÚÒѾ­·¢Ã÷ÓÐAPT¹¥»÷ʹÓÃÁ˸úóÃÅ¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_Struts2_S2-045/S2-046Ô¶³ÌÏÂÁîÖ´Ðй¥»÷[CVE-2017-5638]

ÊÂÎñ¼¶±ð£º

¸ß¼¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPµØµãÖ÷»úÕýÔÚÏòÄ¿µÄIPµØµãÖ÷»úÌᳫStruts2 S2-045/S2-046¹¥»÷¡£Apache StrutsÊÇÃÀ¹ú°¢ÅÁÆæ£¨Apache£©Èí¼þ»ù½ð»áÈÏÕæÎ¬»¤µÄÒ»¿îÓÃÓÚ½¨ÉèÆóÒµ¼¶Java WebÓ¦ÓõĿªÔ´¿ò¼Ü¡£Struts 2.3.5 - Struts 2.3.31, Struts 2.5 - Struts 2.5.10°æ±¾±£´æÑÏÖØµÄÎó²î£¬ÔÚʹÓÃJakarta²å¼þ´¦Öóͷ£ÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷Õß¿ÉÒÔÔÚÎļþÉÏ´«Ê±Í¨¹ý½á¹¹HTTPÇëÇóÍ·ÖеÄContent-TypeÖµ¿ÉÄÜÔì³ÉÔ¶³Ì´úÂëÖ´ÐÐÎó²î(S2-045);½á¹¹¶ñÒâOGNLʹµÃÉÏ´«ÎļþµÄ´óС£¨ÓÉContent-LengthÍ·Ö¸¶¨£©´óÓÚStruts2ÔÊÐíµÄ×î´ó¾Þϸ2GB£¨S2-046£©¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

HTTP_Struts2_S2-046Ô¶³ÌÏÂÁîÖ´Ðй¥»÷[CVE-2017-5638]

ÊÂÎñ¼¶±ð£º

¸ß¼¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPµØµãÖ÷»úÕýÔÚÏòÄ¿µÄIPµØµãÖ÷»úÌᳫStruts2 S2-046¹¥»÷¡£Apache StrutsÊÇÃÀ¹ú°¢ÅÁÆæ£¨Apache£©Èí¼þ»ù½ð»áÈÏÕæÎ¬»¤µÄÒ»¿îÓÃÓÚ½¨ÉèÆóÒµ¼¶Java WebÓ¦ÓõĿªÔ´¿ò¼Ü¡£Struts 2.3.5 - Struts 2.3.31, Struts 2.5 - Struts 2.5.10°æ±¾±£´æÑÏÖØµÄÎó²î£¬ÔÚʹÓÃJakarta²å¼þ´¦Öóͷ£ÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬½á¹¹¶ñÒâOGNLʹµÃÉÏ´«ÎļþµÄ´óС£¨ÓÉContent-LengthÍ·Ö¸¶¨£©´óÓÚStruts2ÔÊÐíµÄ×î´ó¾Þϸ2GB¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_njRat±äÖÖ_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËnjRat±äÖÖ¡£njRatÊÇÒ»¸öCSharpÓïÑÔ±àдµÄºóÃÅ£¬¹¦Ð§Ò쳣ǿʢ£¬¿ÉÍêÈ«¿ØÖƱ»Ñ¬È¾»úе¡£¿ÉÒÔÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬Èç¼üÅ̼ͼ¡¢Ö÷Á÷ä¯ÀÀÆ÷(Firefox¡¢Google Chrome¡¢Opera)ÉúÑĵÄÃÜÂë¡¢½¹µã´°¿ÚÎÊÌâµÈ¡£ÏÖÔÚÒѾ­·ºÆðÐí¶ànjRat±äÖÖ¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú

ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_Win32.Torchwood_ÅþÁ¬

ÊÂÎñ¼¶±ð£º

Öм¶ÊÂÎñ

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅTorchwood¡£TorchwoodÊÇÒ»¸ö¹¦Ð§ºÜÊÇǿʢµÄºóÃÅ£¬ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£Ö÷Ҫͨ¹ýCHMÎļþÈö²¥¡£

¸üÐÂʱ¼ä£º

20180629

ĬÈÏÐж¯£º

ÑïÆú