2018-09-21
Ðû²¼Ê±¼ä 2018-09-21ÐÂÔöÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
TCP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£¡£¡£¡£¡£¡£¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈÆ¹ýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
UDP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£¡£¡£¡£¡£¡£¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈÆ¹ýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_ºóÃÅ_KuriyamaLoader_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËKuriyama Loader¡£¡£¡£¡£¡£¡£¡£ Kuriyama LoaderÊÇÒ»¸ö½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄÖ÷»úÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£¡£Ò²¿ÉÒÔÏÂÔØÆäËü¶ñÒâÑù±¾²¢Ö´ÐУ¬£¬£¬£¬£¬£¬£¬»¹¿ÉÒÔ½¨Éè»ò¿¢ÊÂÖ¸¶¨Àú³Ì¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_Malware_PowerPool_ÅþÁ¬Ð§ÀÍÆ÷ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½PowerPoolÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPowerPool¡£¡£¡£¡£¡£¡£¡£ PowerPool·ÖΪÁ½¸ö½×¶Î£ºµÚÒ»½×¶Îͨ¹ýЧÀͽ¨É賤ÆÚÐÔ¡£¡£¡£¡£¡£¡£¡£µÚ¶þ½×¶Î´Óhttp://[C&C domain]/cmdpoolÖ´ÐÐÏÂÁ£¬£¬£¬£¬£¬£¬´Óhttp://[C&C domain]/uploadÏÂÔØÎļþ£¬£¬£¬£¬£¬£¬£¬Ö§³ÖµÄÏÂÁî°üÀ¨ÈçÏ£º Execute a command Kill a process Upload a file Download a file List a folder |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Gh0st.OceanLotus_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËGh0st.OceanLotus¡£¡£¡£¡£¡£¡£¡£ Gh0st.OceanLotusÊÇAPT×éÖ¯º£Á«»¨Ê¹ÓúóÃÅ£¬£¬£¬£¬£¬£¬£¬»ùÓÚGh0stÔ´ÂëÐ޸ĶøÀ´¡£¡£¡£¡£¡£¡£¡£ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ñ¬È¾»úе¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
ÐÞ¸ÄÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Linux.DDoS.IptabLex_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËDDoS.IptabLex¡£¡£¡£¡£¡£¡£¡£ DDoS.IptabLexÊÇÒ»¸öLinux½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄ»úеÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_ľÂíºóÃÅ_Win32.Micropsia_GetCC |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMicropsia¡£¡£¡£¡£¡£¡£¡£ MicropsiaÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄºóÃÅ£¬£¬£¬£¬£¬£¬£¬ÔËÐкó͵ȡÓû§ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_Adobe_ColdFusion·´ÐòÁл¯Îó²î[CVE-2018-15958/15959] |
|
ÊÂÎñ¼¶±ð£º |
¸ß¼¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýAdobe ColdFusionÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£¡£ Adobe ColdFusionµÄFlashGatewayЧÀͱ£´æ·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬£¬£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÏòÄ¿µÄAdobe ColdFusionµÄFlashGatewayЧÀÍ·¢ËÍÈ«ÐĽṹµÄ¶ñÒâÊý¾Ý£¬£¬£¬£¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |


¾©¹«Íø°²±¸11010802024551ºÅ