2018-09-21
Ðû²¼Ê±¼ä 2018-09-21ÐÂÔöÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
TCP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£¡£¡£¡£¡£¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈÆ¹ýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
UDP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£¡£¡£¡£¡£¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈÆ¹ýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_ºóÃÅ_KuriyamaLoader_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËKuriyama Loader¡£¡£¡£¡£¡£¡£ Kuriyama LoaderÊÇÒ»¸ö½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄÖ÷»úÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£Ò²¿ÉÒÔÏÂÔØÆäËü¶ñÒâÑù±¾²¢Ö´ÐУ¬£¬£¬£¬£¬£¬»¹¿ÉÒÔ½¨Éè»ò¿¢ÊÂÖ¸¶¨Àú³Ì¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_Malware_PowerPool_ÅþÁ¬Ð§ÀÍÆ÷ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½PowerPoolÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPowerPool¡£¡£¡£¡£¡£¡£ PowerPool·ÖΪÁ½¸ö½×¶Î£ºµÚÒ»½×¶Îͨ¹ýЧÀͽ¨É賤ÆÚÐÔ¡£¡£¡£¡£¡£¡£µÚ¶þ½×¶Î´Óhttp://[C&C domain]/cmdpoolÖ´ÐÐÏÂÁ£¬£¬£¬£¬£¬´Óhttp://[C&C domain]/uploadÏÂÔØÎļþ£¬£¬£¬£¬£¬£¬Ö§³ÖµÄÏÂÁî°üÀ¨ÈçÏ£º Execute a command Kill a process Upload a file Download a file List a folder |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Gh0st.OceanLotus_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËGh0st.OceanLotus¡£¡£¡£¡£¡£¡£ Gh0st.OceanLotusÊÇAPT×éÖ¯º£Á«»¨Ê¹ÓúóÃÅ£¬£¬£¬£¬£¬£¬»ùÓÚGh0stÔ´ÂëÐ޸ĶøÀ´¡£¡£¡£¡£¡£¡£ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ñ¬È¾»úе¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
ÐÞ¸ÄÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Linux.DDoS.IptabLex_ÅþÁ¬ |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËDDoS.IptabLex¡£¡£¡£¡£¡£¡£ DDoS.IptabLexÊÇÒ»¸öLinux½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄ»úеÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_ľÂíºóÃÅ_Win32.Micropsia_GetCC |
|
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMicropsia¡£¡£¡£¡£¡£¡£ MicropsiaÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄºóÃÅ£¬£¬£¬£¬£¬£¬ÔËÐкó͵ȡÓû§ÐÅÏ¢¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |
|
ÊÂÎñÃû³Æ£º |
HTTP_Adobe_ColdFusion·´ÐòÁл¯Îó²î[CVE-2018-15958/15959] |
|
ÊÂÎñ¼¶±ð£º |
¸ß¼¶ÊÂÎñ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýAdobe ColdFusionÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£ Adobe ColdFusionµÄFlashGatewayЧÀͱ£´æ·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÏòÄ¿µÄAdobe ColdFusionµÄFlashGatewayЧÀÍ·¢ËÍÈ«ÐĽṹµÄ¶ñÒâÊý¾Ý£¬£¬£¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20180921 |
|
ĬÈÏÐж¯£º |
ÑïÆú |


¾©¹«Íø°²±¸11010802024551ºÅ