2020-02-18

Ðû²¼Ê±¼ä 2020-02-18

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º
TCP_ľÂíºóÃÅ_MoleRAT/Pierogi_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ Pierogi ÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÔ¶¿Ø Pierogi ¡£Pierogi ÊÇÒ»¸öºÜÊÇÖØ´óµÄ¶à¹¦Ð§Ô¶¿ØľÂí£¬ÔÊÐí¹¥»÷ÕßÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
HTTP_ľÂíºóÃÅ_APT34_TONEDEAF2.0_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½ TONEDEAF2.0 ľÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËTONEDEAF2.0 ľÂí ¡£ TONEDEAF2.0ÊÇ TONEDEAF ľÂíµÄ¸ß¶ÈÐ޸İ汾¡£TONEDEAFÊÇÒ»¸öľÂí£¬¿ÉÒÔͨ¹ýHTTPÓëËüµÄCommand and Control·þÎñÆ÷¾ÙÐÐͨѶ£¬ÒÔ±ãÎüÊÕºÍÖ´ÐÐÏÂÁî¡£ TONEDEAF 2.0ÊÇTONEDEAFµÄ¸ß¼¶°æ±¾£¬¾ßÓÐÓëԭʼ°æÄÚÇéͬµÄÄ¿µÄ£¬µ«¾ßÓо­ÓÉˢеÄC2ͨѶЭæź;­ÓÉʵÖÊÐÔÐ޸ĵĴúÂë¿â¡£ÓëԭʼµÄTONEDEAFÏà±È£¬TONEDEAF 2.0½ö°üÀ¨í§ÒâShellÖ´Ðй¦Ð§£¬²¢ÇÒ²»Ö§³ÖÈκÎÔ¤½ç˵ÏÂÁî¡£ËüÒ²¸üÒþ²Ø£¬²¢ÇÒ°üÀ¨ÖîÈ綯̬µ¼È룬×Ö·û´®½âÂëºÍÊܺ¦ÕßÓÕÆ­ÒªÁìÖ®ÀàµÄм¼ÇÉ¡£
¸üÐÂʱ¼ä£º
20200218


ÊÂÎñÃû³Æ£º
UDP_ºóÃÅ_Roboto.Botnet_ÅþÁ¬
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½½©Ê¬ÍøÂçRobotoÊÔͼºÍPeerͨѶ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçRoboto¡£ RobotoÊÇÒ»¸ö»ùÓÚP2PЭÒéµÄ½©Ê¬ÍøÂ磬Ö÷ÒªÖ§³Ö7ÖÖ¹¦Ð§£º·´µ¯Shell£¬×ÔжÔØ£¬»ñÈ¡Àú³ÌÍøÂçÐÅÏ¢£¬»ñÈ¡BotÐÅÏ¢£¬Ö´ÐÐϵͳÏÂÁÔËÐÐÖ¸¶¨URLÖеļÓÃÜÎļþ£¬DDoS¹¥»÷µÈ¡£
¸üÐÂʱ¼ä£º
20200218


 

ÊÂÎñÃû³Æ£º
HTTP_SQLServer_ReportingServices_·´ÐòÁл¯_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2020-0618]
Çå¾²ÀàÐÍ£º
Çå¾²Îó²î
ÊÂÎñÐÎò£º
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ¶Ô¿ÉÄܱ£´æÎó²î(CVE-2020-0618)µÄÒ³ÃæʵÑé¹¥»÷ SQL Server Reporting Services Ìṩһ×éÍâµØ¹¤¾ßºÍ·þÎñ£¬ÓÃÓÚ½¨Éè¡¢°²ÅźÍÖÎÀí±¨±í¡£SQL Server Reporting Services Öб£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬½öÐè»ñµÃµÍȨÏ޵Ĺ¥»÷Õß¿ÉÒÔÏòÊÜÓ°Ïì°æ±¾µÄ Reporting Services ʵÀýÌύȫÐĽṹµÄÇëÇóÀ´Ê¹ÓôËÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚ Report Server ·þÎñÕÊ»§ÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£
¸üÐÂʱ¼ä£º
20200218