2020-02-18

Ðû²¼Ê±¼ä 2020-02-18

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º
TCP_ľÂíºóÃÅ_MoleRAT/Pierogi_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ Pierogi ÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÔ¶¿Ø Pierogi ¡£¡£¡£¡£¡£¡£Pierogi ÊÇÒ»¸öºÜÊÇÖØ´óµÄ¶à¹¦Ð§Ô¶¿ØÄ¾Âí£¬£¬£¬£¬ÔÊÐí¹¥»÷ÕßÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£¡£¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
HTTP_ľÂíºóÃÅ_APT34_TONEDEAF2.0_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ TONEDEAF2.0 ľÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËTONEDEAF2.0 ľÂí ¡£¡£¡£¡£¡£¡£ TONEDEAF2.0ÊÇ TONEDEAF ľÂíµÄ¸ß¶ÈÐ޸İ汾¡£¡£¡£¡£¡£¡£TONEDEAFÊÇÒ»¸öľÂí£¬£¬£¬£¬¿ÉÒÔͨ¹ýHTTPÓëËüµÄCommand and ControlЧÀÍÆ÷¾ÙÐÐͨѶ£¬£¬£¬£¬ÒÔ±ãÎüÊÕºÍÖ´ÐÐÏÂÁî¡£¡£¡£¡£¡£¡£ TONEDEAF 2.0ÊÇTONEDEAFµÄ¸ß¼¶°æ±¾£¬£¬£¬£¬¾ßÓÐÓëԭʼ°æÄÚÇéͬµÄÄ¿µÄ£¬£¬£¬£¬µ«¾ßÓо­ÓÉˢеÄC2ͨѶЭæÅºÍ¾­ÓÉʵÖÊÐÔÐ޸ĵĴúÂë¿â¡£¡£¡£¡£¡£¡£ÓëԭʼµÄTONEDEAFÏà±È£¬£¬£¬£¬TONEDEAF 2.0½ö°üÀ¨í§ÒâShellÖ´Ðй¦Ð§£¬£¬£¬£¬²¢ÇÒ²»Ö§³ÖÈκÎÔ¤½ç˵ÏÂÁî¡£¡£¡£¡£¡£¡£ËüÒ²¸üÒþ²Ø£¬£¬£¬£¬²¢ÇÒ°üÀ¨ÖîÈ綯̬µ¼È룬£¬£¬£¬×Ö·û´®½âÂëºÍÊܺ¦ÕßÓÕÆ­ÒªÁìÖ®ÀàµÄм¼ÇÉ¡£¡£¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
UDP_ºóÃÅ_Roboto.Botnet_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½½©Ê¬ÍøÂçRobotoÊÔͼºÍPeerͨѶ¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçRoboto¡£¡£¡£¡£¡£¡£ RobotoÊÇÒ»¸ö»ùÓÚP2PЭÒéµÄ½©Ê¬ÍøÂ磬£¬£¬£¬Ö÷ÒªÖ§³Ö7ÖÖ¹¦Ð§£º·´µ¯Shell£¬£¬£¬£¬×ÔÐ¶ÔØ£¬£¬£¬£¬»ñÈ¡Àú³ÌÍøÂçÐÅÏ¢£¬£¬£¬£¬»ñÈ¡BotÐÅÏ¢£¬£¬£¬£¬Ö´ÐÐϵͳÏÂÁ£¬£¬£¬ÔËÐÐÖ¸¶¨URLÖеļÓÃÜÎļþ£¬£¬£¬£¬DDoS¹¥»÷µÈ¡£¡£¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218


 

ÊÂÎñÃû³Æ£º
HTTP_SQLServer_ReportingServices_·´ÐòÁл¯_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2020-0618]
Çå¾²ÀàÐÍ£º
Çå¾²Îó²î
ÊÂÎñÐÎò£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ¶Ô¿ÉÄܱ£´æÎó²î(CVE-2020-0618)µÄÒ³ÃæÊµÑé¹¥»÷ SQL Server Reporting Services Ìṩһ×éÍâµØ¹¤¾ßºÍЧÀÍ£¬£¬£¬£¬ÓÃÓÚ½¨Éè¡¢°²ÅźÍÖÎÀí±¨±í¡£¡£¡£¡£¡£¡£SQL Server Reporting Services Öб£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬½öÐè»ñµÃµÍȨÏ޵Ĺ¥»÷Õß¿ÉÒÔÏòÊÜÓ°Ïì°æ±¾µÄ Reporting Services ʵÀýÌύȫÐĽṹµÄÇëÇóÀ´Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚ Report Server ЧÀÍÕÊ»§ÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200218