2019-12-03
°ä²¼¹¦·ò 2019-12-03ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º£º
HTTP_vBulletin_ÊäÈëÑéÖ¤ÃýÎó·ì϶[CVE-2019-16759]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ÊÔͼͨ¹ýÀûÓÃvBulletinÊäÈëÑéÖ¤ÃýÎó·ì϶½øÐй¥»÷µÄÐÐΪ¡£
vBulletinÊÇÃÀ¹úInternetBrandsºÍvBulletinSolutions¹«Ë¾µÄÒ»¿î»ùÓÚPHPºÍMySQLµÄ¿ªÔ´WebÂÛ̳·¨Ê½¡£
vBulletin 5.x°æ±¾ÖÁ5.5.4°æ±¾ÖдæÔÚ°²È«·ì϶¡£¹¥»÷Õ߿ɽèÖú¡®widgetConfig[code]¡¯²ÎÊýÀûÓø÷ì϶ִÐкÅÁî¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_D-Link_DNS-320²Ù×÷ϵͳºÅÁî×¢Èë·ì϶[CVE-2019-16057]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ÊÔͼͨ¹ýÀûÓÃD-Link
DNS-320²Ù×÷ϵͳºÅÁî×¢Èë·ì϶À´Ö´ÐкÅÁîµÄÐÐΪ¡£
D-Link DNS-320ÊÇÖйų́ÍåÓÑѶ£¨D-Link£©¹«Ë¾µÄÒ»¿îNAS£¨ÍøÂç´ÓÊô´æ´¢£©É豸¡£
D-Link DNS-320 2.05.B10¼°Ö®Ç°°æ±¾ÖеÄlogin_mgr.cgi¾ç±¾´æÔÚ²Ù×÷ϵͳºÅÁî×¢Èë·ì϶¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ִÐÐËÁÒâºÅÁî¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_SCADA_Schneider_Electric_U.Motion_Builder_SQL×¢Èë·ì϶[CVE-2018-7841]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ÀûÓÃSchneider
Electric U.Motion Builder SQL×¢Èë·ì϶½øÐй¥»÷µÄÐÐΪ¡£
Schneider Electric
U.Motion BuilderÊÇ·¨¹úÊ©ÄÍµÂµçÆø£¨Schneider Electric£©¹«Ë¾µÄÒ»Ì×¹¹ÖþÎïÖÇÄÜÖÎÀíϵͳ¡£
Schneider Electric
U.Motion Builder 1.3.4¼°Ö®Ç°°æ±¾ÖеÄtrack_import_export.php¾ç±¾ÖдæÔÚ²Ù×÷ϵͳºÅÁî×¢Èë·ì϶£¬£¬£¬¸Ã·ì϶ԴÓÚÍⲿÊäÈëÊý¾Ý»ú¹Ø²Ù×÷ϵͳ¿ÉÖ´ÐкÅÁî¹ý³ÌÖУ¬£¬£¬ÍøÂçϵͳ»ò²úƷδÕýÈ·¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢¡¢ºÅÁîµÈ¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ִÐз¸·¨²Ù×÷ϵͳºÅÁî¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_IOT_¶à¿î·ÓÉÆ÷ºÅÁî×¢Èë·ì϶[CVE-2019-3929]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ÀûÓöà¿î·ÓÉÆ÷ºÅÁî×¢Èë·ì϶½øÐй¥»÷µÄÐÐΪ¡£
¶à¿î·ÓÉÆ÷ÖдæÔÚºÅÁî×¢Èë·ì϶¡£¸Ã·ì϶ԴÓÚÍⲿÊäÈëÊý¾Ý»ú¹Ø¿ÉÖ´ÐкÅÁî¹ý³ÌÖУ¬£¬£¬ÍøÂçϵͳ»ò²úƷδÕýÈ·¹ýÂËÆäÖеÄÌØÊâÔªËØ¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ִÐз¸·¨ºÅÁî¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_LSP4XML_XXE_Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2019-18213/CVE-2019-18212]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_LSP4XML_XXE_Ô¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ
1.LSP4XMLÊÇÒ»¸öXMLÎļþ½âÎö¿â£¬£¬£¬±»VSCode/EclipseµÈ³ÛÃû±à×ëÆ÷ÖÐʹÓá£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_ľÂí_SDBbotRat_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£
SDBbotÊÇʹÓÃC++˵»°±àдµÄÐÂÐÍÔ¶³Ì½Ó¼ûľÂí£¨RAT£©£¬£¬£¬ÓÉGet2ÏÂÔØ¹¤¾ßÔÚ×îеÄTA505¶ñÒâ»î¶¯ÖÐʹÓá£SDBbotÒñ±ÎÐÔ¼«Ç¿£¬£¬£¬ÇÒÖ°ÄÜÆëÈ«£¬£¬£¬È磺£ºÔ¶³ÌºÅÁîÖ´ÐС¢¡¢ÉÏ´«/ÏÂÔØÎļþ¡¢¡¢ÊÓÆµ¼à¿ØµÈ¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_ľÂí_ParasiteStealer_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ ParasiteStealerľÂí
ÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË ParasiteStealerľÂí¡£
¸ÃľÂí»áµÁÈ¡¶à¸öä¯ÀÀÆ÷¼Í¼µÄµÇ¼ÐÅÏ¢¡¢¡¢OutlookÓÊÏäÃÜÂë¼°ÆäËû»úÃÜÐÅÏ¢ÉÏ´«µ½Ö¸¶¨·þÎñÆ÷¡£
¸üй¦·ò£º£º
20191203
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º£º
TCP_ľÂíºóÃÅ_Win32/Linux_ircBot_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ircBotÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËircBot¡£
ircBotÊÇ»ùÓÚircºÍ̸µÄ½©Ê¬ÍøÂ磬£¬£¬ÖØÒªÖ°ÄÜÊǶÔÖ¸¶¨Ö¸±êÖ÷»úÌáÒéDDoS¹¥»÷¡£»£»£»¹Äܹ»ÏÂÔØÆäËû²¡¶¾µ½±»Ö²Èë»úе¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_ºóÃÅ_Bitter.Rat(ÂûÁ黨)_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBitter¡£
BitterÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬£¬ÔËÐк󣬣¬£¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_ºóÃÅ_Bitter.Rat(ÂûÁ黨)_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBitter¡£
BitterÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬£¬ÔËÐк󣬣¬£¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_ľÂí_Win32.FileStolen_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíFileStolen¡£
FileStolenµÄÖØÒªÖ°ÄÜΪÎļþÇÔÈ¡£¬£¬£¬ÇÔȡָ¶¨Âß¼´ÅÅÌÏÂÖ¸¶¨ÎļþÃûµÄÎļþ²¢ÇÒÉÏ´«µÄµ½CC·þÎñÆ÷£¬£¬£¬ÇÔÈ¡µÄÎļþÀàÐÍÔ̺¬£º£ºtxt¡¢¡¢ppt¡¢¡¢pptx¡¢¡¢pdf¡¢¡¢doc¡¢¡¢docx¡¢¡¢xls¡¢¡¢xlsx¡¢¡¢zip¡¢¡¢7z¡¢¡¢rtf¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_ºóÃÅ_Linux.DDoS.Gafgyt_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËDDoS.Gafgyt¡£
DDoS.GafgytÊÇÒ»¸öLinux½©Ê¬ÍøÂ磬£¬£¬ÖØÒªÖ°ÄÜÊǶÔÖ¸¶¨Ö¸±ê»úеÌáÒéDDoS¹¥»÷¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_NSA_EternalChampion_(ÓÀºã¹Ú¾ü)_SMBÔ¶³Ì´úÂëÖ´Ðзì϶Sync_Response[MS17-010]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃMicrosoft Windows SMBÔ¶³Ì´úÂëÖ´Ðзì϶½øÐй¥»÷µÄÐÐΪ¡£
Microsoft WindowsÊÇ΢Èí°ä²¼µÄ¼«¶ÈÊ¢ÐеIJÙ×÷ϵͳ¡£
ÈôÊǹ¥»÷ÕßÏò Microsoft ·þÎñÆ÷·¢Ë;¾«ÐÄ»ú¹ØµÄ»ûÐÎÒªÇó°ü£¬£¬£¬Äܹ»»ñȡָ±ê·þÎñÆ÷µÄϵͳȨÏÞ£¬£¬£¬²¢ÇÒÆëÈ«½ÚÖÆÖ¸±êϵͳ¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_NSA_EternalChampion_(ÓÀºã¹Ú¾ü)_SMBÔ¶³Ì´úÂëÖ´Ðзì϶Sync_Request[MS17-010]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃMicrosoft Windows SMBÔ¶³Ì´úÂëÖ´Ðзì϶½øÐй¥»÷µÄÐÐΪ¡£
Microsoft WindowsÊÇ΢Èí°ä²¼µÄ¼«¶ÈÊ¢ÐеIJÙ×÷ϵͳ¡£
ÈôÊǹ¥»÷ÕßÏò Microsoft ·þÎñÆ÷·¢Ë;¾«ÐÄ»ú¹ØµÄ»ûÐÎÒªÇó°ü£¬£¬£¬Äܹ»»ñȡָ±ê·þÎñÆ÷µÄϵͳȨÏÞ£¬£¬£¬²¢ÇÒÆëÈ«½ÚÖÆÖ¸±êϵͳ¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_ľÂíºóÃÅ_webshell_ASP_Cmd_Shell_On_IIS_5.1_ÉÏ´«ºóÃÅ·¨Ê½
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPµØÖ·Ö÷»úÕýÔÚÏòÖ÷ÕÅIPµØÖ·Ö÷»ú´«ËÍ¿ÉÒɵÄwebshellÎļþ¡£
webshellÊÇwebÈëÇֵľ籾¹¥»÷¹¤¾ß¡£µ¥Ò»Ëµ£¬£¬£¬webshell¾ÍÊÇÒ»¸öÓÃasp»òphpµÈ±àдµÄľÂíºóÃÅ£¬£¬£¬¹¥»÷ÕßÔÚÈëÇÖÁËÒ»¸öÍøÕ¾ºó£¬£¬£¬Ê±Ê±½«ÕâЩasp»òphpµÈľÂíºóÃÅÎļþ¸éÖÃÔÚÍøÕ¾·þÎñÆ÷µÄwebĿ¼ÖУ¬£¬£¬ÓëÕý³£µÄÍøÒ³Îļþ»ìÔÚһ·¡£¶øºó¹¥»÷Õß¾ÍÄܹ»ÓÃwebµÄ·½Ê½£¬£¬£¬Í¨¹ý¸ÃľÂíºóÃŽÚÖÆÍøÕ¾·þÎñÆ÷£¬£¬£¬Ô̺¬ÉÏ´«ÏÂÔØÎļþ¡¢¡¢²é¿´Êý¾Ý¿â¡¢¡¢Ö´ÐÐËÁÒⷨʽºÅÁîµÈ¡£webshellÄܹ»´©Ô½·À»ðǽ£¬£¬£¬ÓÉÓÚÓë±»½ÚÖÆµÄ·þÎñÆ÷»òÔ¶³ÌÖ÷»ú»¥»»µÄÊý¾Ý¶¼ÊÇͨ¹ý80¶Ë¿Ú´«µÝµÄ£¬£¬£¬Òò¶ø²»»á±»·À»ðǽÀ¹½Ø¡£²¢ÇÒʹÓÃwebshellͨ³£²»»áÔÚϵͳÈÕÖ¾ÖÐÁôϼͼ£¬£¬£¬Ö»»áÔÚÍøÕ¾µÄwebÈÕÖ¾ÖÐÁôÏÂһЩÊý¾ÝÌá½»¼Í¼£¬£¬£¬ÖÎÀíÔ±½ÏÄÑ¿´³öÈëÇÖºÛ¼£¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
HTTP_¿ÉÒÉĿ¼ä¯ÀÀ
°²È«ÀàÐÍ£º£º
CGI¹¥»÷
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ÓÉÓÚÅäÖò»µ±µ¼ÖµÄĿ¼ä¯ÀÀ
ÍøÕ¾´æÔÚÅäÖÃȱµã£¬£¬£¬´æÔÚĿ¼¿Éä¯ÀÀ·ì϶£¬£¬£¬Õâ»áµ¼ÖÂÍøÕ¾ºÃ¶àÒþÖÔÎļþÓëĿ¼й¶£¬£¬£¬ºÃ±ÈÊý¾Ý¿â±¸·ÝÎļþ¡¢¡¢ÅäÖÃÎļþµÈ£¬£¬£¬¹¥»÷ÕßÀûÓøÃÐÅÏ¢Äܹ»¸üÈÝÒ׵õ½ÍøÕ¾È¨ÏÞ£¬£¬£¬µ¼ÖÂÍøÕ¾±»ºÚ¡£
¸üй¦·ò£º£º
20191203
ÊÂÎñÃû³Æ£º£º
TCP_Win32.¹íÓ°DDoS¹¥»÷_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£
¹íÓ°DDoSÊÇÒ»¸öÉ¢²¼Ê½»Ø¾ø·þÎñ¹¥»÷¹¤¾ß£¬£¬£¬×¥È¡´óÁ¿È⼦£¬£¬£¬Äܹ»¶ÔÖ¸¶¨Ö¸±êÖ÷»úÌáÒéDDos¹¥»÷¡£
DoS£¨Denial Of Service£©¼´»Ø¾ø·þÎñ¹¥»÷£¬£¬£¬×î¸ù»ùµÄDoS¹¥»÷¾ÍÊÇÀûÓúÏÀíµÄ·þÎñÒªÇóÀ´Õ¼Óùý¶àµÄ·þÎñ×ÊÔ´£¬£¬£¬´Ó¶øÊ¹ºÏ·¨Óû§ÎÞ·¨µÃµ½·þÎñµÄÏìÓ¦¡£DDoS£¨Distributed Denial Of Service£©¼´É¢²¼Ê½»Ø¾ø·þÎñ¹¥»÷¡£¼´Í¬Ê±Ê¹ÓÃÈô¸Ę́Ö÷»ú£¬£¬£¬Í¬Ê±¶Ôһ̨Ö÷»ú½øÐÐDoS¹¥»÷¡£
DDoSÊÇDistributed Denial
of ServiceµÄ¼ò³Æ£¬£¬£¬¼´É¢²¼Ê½»Ø¾ø·þÎñ¡£¹¥»÷Ö¸½èÖúÓÚ¿Í»§/·þÎñÆ÷¼¼Êõ£¬£¬£¬½«¶à¸öÍÆËã»ú½áºÏÆðÀ´×÷Ϊ¹¥»÷ƽ̨£¬£¬£¬¶ÔÒ»¸ö»ò¶à¸öÖ¸±ê·¢ÆðDoS¹¥»÷£¬£¬£¬´Ó¶ø³É±¶µØÌá¸ß»Ø¾ø·þÎñ¹¥»÷µÄÍþÁ¦¡£Í¨³££¬£¬£¬¹¥»÷ÕßʹÓÃÒ»¸ö͵ÇÔÕʺŽ«DDoSÖ÷¿Ø·¨Ê½×°ÖÃÔÚÒ»Ì¨ÍÆËã»úÉÏ£¬£¬£¬ÔÚÒ»¸öÉ趨µÄ¹¦·òÖ÷¿Ø·¨Ê½½«Óë´óÁ¿´úÀí·¨Ê½Í¨Ñ¶£¬£¬£¬´úÀí·¨Ê½ÒѾ±»×°ÖÃÔÚInternetÉϵĺܶàÍÆËã»úÉÏ¡£´úÀí·¨Ê½ÊÕµ½Ö¸Áîʱ¾Í·¢Æð¹¥»÷¡£ÀûÓÿͻ§/·þÎñÆ÷¼¼Êõ£¬£¬£¬Ö÷¿Ø·¨Ê½ÄÜÔÚ¼¸ÃëÖÓÄÚ¼¤»î³É°ÙÉÏǧ¸ö´úÀí·¨Ê½µÄÔËÐС£
¸üй¦·ò£º£º
20191203


¾©¹«Íø°²±¸11010802024551ºÅ