2020-02-18

Ðû²¼Ê±¼ä 2020-02-18

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º
TCP_ľÂíºóÃÅ_MoleRAT/Pierogi_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ Pierogi ÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÔ¶¿Ø Pierogi ¡£¡£¡£Pierogi ÊÇÒ»¸öºÜÊÇÖØ´óµÄ¶à¹¦Ð§Ô¶¿ØÄ¾Âí£¬ £¬£¬£¬£¬ÔÊÐí¹¥»÷ÕßÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
HTTP_ľÂíºóÃÅ_APT34_TONEDEAF2.0_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ TONEDEAF2.0 ľÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËTONEDEAF2.0 ľÂí ¡£¡£¡£ TONEDEAF2.0ÊÇ TONEDEAF ľÂíµÄ¸ß¶ÈÐ޸İ汾¡£¡£¡£TONEDEAFÊÇÒ»¸öľÂí£¬ £¬£¬£¬£¬¿ÉÒÔͨ¹ýHTTPÓëËüµÄCommand and ControlЧÀÍÆ÷¾ÙÐÐͨѶ£¬ £¬£¬£¬£¬ÒÔ±ãÎüÊÕºÍÖ´ÐÐÏÂÁî¡£¡£¡£ TONEDEAF 2.0ÊÇTONEDEAFµÄ¸ß¼¶°æ±¾£¬ £¬£¬£¬£¬¾ßÓÐÓëԭʼ°æÄÚÇéͬµÄÄ¿µÄ£¬ £¬£¬£¬£¬µ«¾ßÓо­ÓÉˢеÄC2ͨѶЭæÅºÍ¾­ÓÉʵÖÊÐÔÐ޸ĵĴúÂë¿â¡£¡£¡£ÓëԭʼµÄTONEDEAFÏà±È£¬ £¬£¬£¬£¬TONEDEAF 2.0½ö°üÀ¨í§ÒâShellÖ´Ðй¦Ð§£¬ £¬£¬£¬£¬²¢ÇÒ²»Ö§³ÖÈκÎÔ¤½ç˵ÏÂÁî¡£¡£¡£ËüÒ²¸üÒþ²Ø£¬ £¬£¬£¬£¬²¢ÇÒ°üÀ¨ÖîÈ綯̬µ¼È룬 £¬£¬£¬£¬×Ö·û´®½âÂëºÍÊܺ¦ÕßÓÕÆ­ÒªÁìÖ®ÀàµÄм¼ÇÉ¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
UDP_ºóÃÅ_Roboto.Botnet_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½½©Ê¬ÍøÂçRobotoÊÔͼºÍPeerͨѶ¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçRoboto¡£¡£¡£ RobotoÊÇÒ»¸ö»ùÓÚP2PЭÒéµÄ½©Ê¬ÍøÂ磬 £¬£¬£¬£¬Ö÷ÒªÖ§³Ö7ÖÖ¹¦Ð§£º·´µ¯Shell£¬ £¬£¬£¬£¬×ÔÐ¶ÔØ£¬ £¬£¬£¬£¬»ñÈ¡Àú³ÌÍøÂçÐÅÏ¢£¬ £¬£¬£¬£¬»ñÈ¡BotÐÅÏ¢£¬ £¬£¬£¬£¬Ö´ÐÐϵͳÏÂÁ £¬£¬£¬£¬ÔËÐÐÖ¸¶¨URLÖеļÓÃÜÎļþ£¬ £¬£¬£¬£¬DDoS¹¥»÷µÈ¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


 

ÊÂÎñÃû³Æ£º
HTTP_SQLServer_ReportingServices_·´ÐòÁл¯_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2020-0618]
Çå¾²ÀàÐÍ£º
Çå¾²Îó²î
ÊÂÎñÐÎò£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ¶Ô¿ÉÄܱ£´æÎó²î(CVE-2020-0618)µÄÒ³ÃæÊµÑé¹¥»÷ SQL Server Reporting Services Ìṩһ×éÍâµØ¹¤¾ßºÍЧÀÍ£¬ £¬£¬£¬£¬ÓÃÓÚ½¨Éè¡¢°²ÅźÍÖÎÀí±¨±í¡£¡£¡£SQL Server Reporting Services Öб£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬ £¬£¬£¬£¬½öÐè»ñµÃµÍȨÏ޵Ĺ¥»÷Õß¿ÉÒÔÏòÊÜÓ°Ïì°æ±¾µÄ Reporting Services ʵÀýÌύȫÐĽṹµÄÇëÇóÀ´Ê¹ÓôËÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚ Report Server ЧÀÍÕÊ»§ÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218