2020-12-29
°ä²¼¹¦·ò 2020-12-29ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º£º | HTTP_°²È«·ì϶_ColdFusionδÊÚȨÉÏ´«·ì϶[CVE-2018-15961][CNNVD-201809-485] |
°²È«ÀàÐÍ£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º | ColdFusionδÊÚȨÉÏ´«·ì϶Äܹ»Í¨¹ýÒ»¸öµ¥Ò»µÄHTTPPOSTÒªÇóµ½upload.cfmÎļþ½øÐÐÀûÓ㬣¬upload.cfmÊÇûÓÐÏ޶ȵ쬣¬Ò²²»±ØÒªÈκεÄÈÏÖ¤¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | HTTP_TeaLaTex1_0_Ô¶³Ì´úÂëÖ´Ðзì϶ |
°²È«ÀàÐÍ£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º | ¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃTeaLaTex1_0µÄ·ì϶½øÐÐÔ¶³Ì´úÂëÖ´ÐУ»LaTeXÊÇÒ»ÖÖ±à×빤¾ß£¬£¬Í¨³£ÓÃÓڳﱸ¿ÆÑ§Îļþ£¬£¬³ö¸ñÊÇÔÚÊýѧ£¬£¬Í³¼Æ£¬£¬ÍÆËã»ú¿ÆÑ§ºÍ¹¤³ÌÁìÓò¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | HTTP_Moobot_»Ø¾ø·þÎñ¹¥»÷ |
°²È«ÀàÐÍ£º£º | É¢²¼Ê½»Ø¾ø·þÎñ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½Ô´IPÖ÷»úÊÔͼ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐMoobot_»Ø¾ø·þÎñ¹¥»÷¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ | HTTP_ThinkPHP5Ô¶³Ì´úÂëÖ´Ðзì϶ |
°²È«ÀàÐÍ£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃThinkPHP¿ò¼ÜÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ£¬£¬ÊÔͼԶ³Ì×¢ÈëPHP´úÂ룬£¬ÔÚÖ¸±ê·þÎñÆ÷ÉÏÖ´ÐÐËÁÒâ´úÂë»òºÅÁî¡£¡£¡£¡£ThinkPHPÊÇÒ»¸öÊ¢ÐеÄÇáÁ¿¼¶¹ú²úPHP¿ª·¢¿ò¼Ü¡£¡£¡£¡£µ±WebÍøÕ¾ÊÇ»ùÓÚThinkPHP¿ò¼Ü¿ª·¢Ê±£¬£¬¿ÉÄÜ´æÔڸ÷ì϶ʱ¡£¡£¡£¡£¹¥»÷Õß·¢Ë;«ÐÄ»ú¹ØµÄPHP´úÂëÔÚÖ¸±êÖ÷»úÉÏÖ´ÐУ¬£¬Ì°Í¼½øÒ»²½½ÚÀñ·þÎñÆ÷¡£¡£¡£¡£¹¥»÷³É¹¦£¬£¬¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | HTTP_ͨÓÃ_Ŀ¼´©Ô½·ì϶[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
°²È«ÀàÐÍ£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ³¢ÊÔ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐĿ¼´©Ô½·ì϶¹¥»÷³¢ÊÔµÄÐÐΪ¡£¡£¡£¡£Ä¿Â¼´©Ô½·ì϶ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ½Ó¼ûÏÞ¶È£¬£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬£¬ËÁÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£¡£¡£¡£´Ë¹æ¶¨ÊÇÒ»ÌõͨÓù涨£¬£¬ÆäËû·ì϶£¨ÉõÖÁһЩ0day·ì϶£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´ËÊÂÎñ±¨¾¯¡£¡£¡£¡£ÓÉÓÚÕý³£ÒµÎñÖÐͨ³£²»»á²úÉú´ËÊÂÎñÌØµãµÄÁ÷Á¿£¬£¬ËùÒÔ±ØÒªÖØµã¹Ø×¢¡£¡£¡£¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß½Ó¼ûÃô¸ÐÎļþ¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | TCP_DrayTek_Ô¤Éí·ÝÑéÖ¤ºÅÁî×¢Èë·ì϶[CVE-2020-8515] |
°²È«ÀàÐÍ£º£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½¹¥»÷ÕßÀûÓÃDrayTekÔ¤Éí·ÝÑéÖ¤´¦µÄÁ½´¦ºÅÁî×¢Èë·ì϶½øÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£DrayTekÊÇÒ»¼ÒÔÚÖйú³ö²ú·À»ðǽ£¬£¬VPNÉ豸£¬£¬Â·ÓÉÆ÷£¬£¬WLANÉ豸µÈµÄÖÆ×÷ÉÌ¡£¡£¡£¡£¸Ã·ì϶ԴÓÚ/cgi-bin/mainfunction.cgi·¨Ê½Î´ÕýÈ·¹ýÂËkeyPath×ֶκÍrtick×Ö¶ÎÆäÖеÄÌØÊâ×Ö·û£¬£¬¹¥»÷Õß¿ÉÀûÓø÷ì϶²»¾¹ýÉí·ÝÑéÖ¤ÒÔrootȨÏÞÖ´ÐдúÂë¡£¡£¡£¡£¹¥»÷³É¹¦£¬£¬Äܹ»rootȨÏÞÖ´ÐдúÂë¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | HTTP_ºóÃÅ_Win32.wingames(ÂûÁ黨)_ÏÎ½Ó |
°²È«ÀàÐÍ£º£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅwingames¡£¡£¡£¡£wingamesÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÔËÐк󣬣¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£Ö´Ðй¥»÷Õß·¢À´µÄ¸÷ÀàºÅÁî¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | TCP_ºóÃÅ_MSAServices.Bitter.Rat(ÂûÁ黨)_ÏÎ½Ó |
°²È«ÀàÐÍ£º£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½BitterľÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBitterľÂí¡£¡£¡£¡£BitterľÂíÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÔËÐк󣬣¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£ÔÊÐí¹¥»÷Õ߯ëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | TCP_ºóÃÅ_PC_Access_ÏÎ½Ó |
°²È«ÀàÐÍ£º£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º£º | ¸ÃÊÂÎñÔ´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPC_AccessľÂí£¬£¬Ä¾ÂíµÄ½ÚÖÆÕßÄܹ»Í¨¹ý¸ÃľÂí¶Ô±»Ö²ÈëľÂíµÄÖ÷»úÖ´ÐÐÆëÈ«µÄ½ÚÖÆ¡£¡£¡£¡£¸ÃľÂí»á±£Áô¹¥»÷ÕßÔÚÖ¸±êÖ÷»úÉϵÄÖÎÀíԱȨÏÞ¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ÊÂÎñÃû³Æ£º£º | DNS_ºóÃÅ_Win32.KcnaBot_ÏÎ½Ó |
°²È«ÀàÐÍ£º£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º£º | ¼ì²âµ½ºóÃÅÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅKcnaBot¡£¡£¡£¡£KcnaBotÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÀûÓÃDNSºÍ̸ÓëC&C·þÎñÆ÷ͨѶ¡£¡£¡£¡£¿£½ÚÖÆ±»Ö²Èë»úе£¬£¬ÇÔÃÜÃô¸ÐÐÅÏ¢¡£¡£¡£¡£ |
¸üй¦·ò£º£º | 20201229 |
ɾ³ýÊÂÎñ
1. HTTP_ľÂíºóÃÅ_Marap.Downloader_ÏνÓ
2. TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMB·ì϶ɨÃè[MS17-010]_1
3. TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMB·ì϶ɨÃè[MS17-010]_2


¾©¹«Íø°²±¸11010802024551ºÅ