2019-11-19
Ðû²¼Ê±¼ä 2019-11-19ÐÂÔöʼþ
ʼþÃû³Æ£º
HTTP_rconfig_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2019-16662]
Äþ¾²ÀàÐÍ£º
Äþ¾²Â©¶´
ʼþÃèÊö£º
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýrConfig¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£
©¶´ÃèÊö£º
ÔÚ±¾ÎÄÖУ¬ÎÒ½«½éÉÜÁ÷ÐеĿªÔ´ÍøÂç¹ÜÀíϵͳrConfigÖеÄÁ½¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£Æ¾¾ÝÆäÍøÕ¾£¬rConfig¹ÜÀí×ÅÁè¼Ý300Íǫ̀É豸£¬ÓµÓÐ7000¶à¸ö»îÔ¾Óû§¡£
©¶´Ó°Ï췶Χ£º
×îеÄrConfig 3.9.2°æ±¾ÖеÄCVE-2019-16662ºÍCVE-2019-16663¡£µ«ÊÇ£¬ÔڻعËÁËrConfigµÄÔ´´úÂëÖ®ºó£¬ÎÒ·¢ÏÖ²»½örConfig 3.9.2¾ßÓÐÕâЩ©¶´£¬ËùÓа汾¶¼ÓС£´ËÍ⣬¶ÔÓÚCVE-2019-16663£¬¿ÉÒÔ¶ÔrConfig 3.6.0֮ǰµÄËùÓа汾½øÐÐÉí·ÝÑéÖ¤ºóʹÓÃRCE£¬¶øÎÞÐè½øÐÐÉí·ÝÑéÖ¤¡£
¸üÐÂʱ¼ä£º
20191119
ʼþÃû³Æ£º
HTTP_rconfig_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2019-16663]
Äþ¾²ÀàÐÍ£º
Äþ¾²Â©¶´
ʼþÃèÊö£º
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýrConfig¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£
©¶´ÃèÊö£º
ÔÚ±¾ÎÄÖУ¬ÎÒ½«½éÉÜÁ÷ÐеĿªÔ´ÍøÂç¹ÜÀíϵͳrConfigÖеÄÁ½¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£Æ¾¾ÝÆäÍøÕ¾£¬rConfig¹ÜÀí×ÅÁè¼Ý300Íǫ̀É豸£¬ÓµÓÐ7000¶à¸ö»îÔ¾Óû§¡£
©¶´Ó°Ï췶Χ£º
×îеÄrConfig 3.9.2°æ±¾ÖеÄCVE-2019-16662ºÍCVE-2019-16663¡£µ«ÊÇ£¬ÔڻعËÁËrConfigµÄÔ´´úÂëÖ®ºó£¬ÎÒ·¢ÏÖ²»½örConfig 3.9.2¾ßÓÐÕâЩ©¶´£¬ËùÓа汾¶¼ÓС£´ËÍ⣬¶ÔÓÚCVE-2019-16663£¬¿ÉÒÔ¶ÔrConfig 3.6.0֮ǰµÄËùÓа汾½øÐÐÉí·ÝÑéÖ¤ºóʹÓÃRCE£¬¶øÎÞÐè½øÐÐÉí·ÝÑéÖ¤¡£
¸üÐÂʱ¼ä£º
20191119
ʼþÃû³Æ£º
HTTP_SatanÀÕË÷²¡¶¾_Á¬½Ó
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¸Ãʼþ±íÃ÷µ½ÀÕË÷Èí¼þSatanÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÀÕË÷Èí¼þSatan¡£
SatanÊÇÒ»¿îÀÕË÷Èí¼þ£¬ÔËÐкó¼ÓÃܱ»Ö²Èë»úÆ÷ÉϵÄÎļþ£¬²¢ÀÕË÷Ò»¸ö±ÈÌØ±ÒÀ´½âÃÜ¡£´¡Ì×¼þ¡£ Advantech WebAccess²úÎïÖдæÔÚÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£¹¥»÷Õß¿ÉÀûÓøÃ©¶´Ö´ÐÐÈÎÒâ´úÂë¡£
¸üÐÂʱ¼ä£º
20191119
ʼþÃû³Æ£º
SMTP_ľÂí_Phoenix_Keylogger_Á¬½Ó
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPhoenix Keylogger¡£
Phoenix KeyloggerÊÇÒ»¸ö¹¦Ð§Ç¿´óµÄÇÔÃÜľÂí£¬¿ÉÇÔÃܰüÂÞä¯ÀÀÆ÷¡¢Óʼþ¡¢FTP¡¢¼ôÌù°åµÈ¿Í»§¶ËÉú´æµÄÕ˺ÅÃÜÂë,»¹¿ÉÒÔ½ØÈ¡ÆÁÄ»²¢ÉÏ´«¡£
¸üÐÂʱ¼ä£º
20191119
ÐÞ¸Äʼþ
ʼþÃû³Æ£º
UDP_ºóÃÅ_PlugX_RAT_Á¬½Ó
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂí¡£
PlugXÊÇÒ»¸ö¹¦Ð§Ò쳣ǿ´óµÄºóÃÅ£¬¿ÉÒÔÍêÈ«¿ØÖƱ»Ñ¬È¾»úÆ÷¡£Ò»°ãÓÃÀ´·¢¶¯ÓÐÕë¶ÔÐԵĹ¥»÷£¬ÔÊÐí¹¥»÷ÕßÊÕ¼¯ÓмÛÖµµÄÃô¸ÐÐÅÏ¢¡£
¸üÐÂʱ¼ä£º
20191119
ʼþÃû³Æ£º
HTTP_ľÂí_PredatorTheThief_Á¬½Ó
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPredator The Thief¡£
Predator The ThiefÊÇÒ»¸ö¹¦Ð§Ò쳣ǿ´óµÄÇÔÃÜľÂí£¬¿ÉÇÔÈ¡Ö÷Á÷ä¯ÀÀÆ÷¡¢FTP¡¢Telegram¡¢Steam¡¢WalletsµÈ¿Í»§¶ËÉú´æµÄÕ˺ÅÃÜÂë¡£
¸üÐÂʱ¼ä£º
20191119
ʼþÃû³Æ£º
TCP_ºóÃÅ_SessionService.Bitter.Rat(ÂûÁ黨)_Á¬½Ó
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¼ì²âµ½ BitterľÂí ÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË BitterľÂí¡£
BitterľÂí ÊÇÒ»¸ö¹¦Ð§·Ç³£Ç¿´óµÄºóÃÅ£¬ÔËÐк󣬿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£
¸üÐÂʱ¼ä£º
20191119