2018-09-21
Ðû²¼Ê±¼ä 2018-09-21ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º |
TCP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈƹýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
UDP_Winboxí§ÒâĿ¼Îļþ¶ÁÈ¡[CVE-2018-14847] |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýWinboxí§ÒâĿ¼Îļþ¶ÁÈ¡Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£ MikroTik RouterOSÊÇÒ»Ì×·ÓɲÙ×÷ϵͳ¡£Winbox for MikroTik RouterOSÊÇÒ»¸öÓÃÓÚÖÎÀíMikroTik RouterOSϵͳµÄÓ¦ÓóÌÐò¡£ Winbox for MikroTik RouterOS 6.42¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÐÞ¸ÄÇëÇóʹÓøÃÎó²îÈƹýÉí·ÝÑéÖ¤²¢¶ÁÈ¡í§ÒâÎļþ¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
HTTP_ºóÃÅ_KuriyamaLoader_ÅþÁ¬ |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËKuriyama Loader¡£ Kuriyama LoaderÊÇÒ»¸ö½©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄÖ÷»úÌᳫDDoS¹¥»÷¡£Ò²¿ÉÒÔÏÂÔØÆäËü¶ñÒâÑù±¾²¢Ö´ÐУ¬»¹¿ÉÒÔ½¨Éè»ò¿¢ÊÂÖ¸¶¨Àú³Ì¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
HTTP_Malware_PowerPool_ÅþÁ¬·þÎñÆ÷ |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½PowerPoolÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPowerPool¡£ PowerPool·ÖΪÁ½¸ö½×¶Î£ºµÚÒ»½×¶Îͨ¹ý·þÎñ½¨É賤ÆÚÐÔ¡£µÚ¶þ½×¶Î´Óhttp://[C&C domain]/cmdpoolÖ´ÐÐÏÂÁ´Óhttp://[C&C domain]/uploadÏÂÔØÎļþ£¬Ö§³ÖµÄÏÂÁî°üÀ¨ÈçÏ£º Execute a command Kill a process Upload a file Download a file List a folder |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Gh0st.OceanLotus_ÅþÁ¬ |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËGh0st.OceanLotus¡£ Gh0st.OceanLotusÊÇAPT×éÖ¯º£Á«»¨Ê¹ÓúóÃÅ£¬»ùÓÚGh0stÔ´ÂëÐ޸ĶøÀ´¡£ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ñ¬È¾»úе¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º |
TCP_ºóÃÅ_Linux.DDoS.IptabLex_ÅþÁ¬ |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËDDoS.IptabLex¡£ DDoS.IptabLexÊÇÒ»¸öLinux½©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄ»úеÌᳫDDoS¹¥»÷¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
HTTP_ľÂíºóÃÅ_Win32.Micropsia_GetCC |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMicropsia¡£ MicropsiaÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄºóÃÅ£¬ÔËÐкó͵ȡÓû§ÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |
ÊÂÎñÃû³Æ£º |
HTTP_Adobe_ColdFusion·´ÐòÁл¯Îó²î[CVE-2018-15958/15959] |
ÊÂÎñ¼¶±ð£º |
¸ß¼¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýAdobe ColdFusionÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£ Adobe ColdFusionµÄFlashGateway·þÎñ±£´æ·´ÐòÁл¯Îó²î£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÏòÄ¿µÄAdobe ColdFusionµÄFlashGateway·þÎñ·¢ËÍÈ«ÐĽṹµÄ¶ñÒâÊý¾Ý£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ |
¸üÐÂʱ¼ä£º |
20180921 |
ĬÈÏÐж¯£º |
ÑïÆú |