2019-11-19
°ä²¼¹¦·ò 2019-11-19ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º£º
HTTP_rconfig_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2019-16662]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýrConfig¿ò¼ÜºÅÁîÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£¡£
·ì϶ÃèÊö£º£º
ÔÚ±¾ÎÄÖУ¬£¬ÎÒ½«½éÉÜÊ¢ÐеĿªÔ´ÍøÂçÖÎÀíϵͳrConfigÖеÄÁ½¸öÔ¶³Ì´úÂëÖ´Ðзì϶¡£¡£Æ¾¾ÝÆäÍøÕ¾£¬£¬rConfigÖÎÀí×ų¬¹ý300Íǫ̀É豸£¬£¬Õ¼ÓÐ7000¶à¸ö»îÔ¾Óû§¡£¡£
·ì϶ӰÏìÁìÓò£º£º
×îеÄrConfig 3.9.2°æ±¾ÖеÄCVE-2019-16662ºÍCVE-2019-16663¡£¡£µ«ÊÇ£¬£¬ÔÚ»ØÊ×ÁËrConfigµÄÔ´´úÂëÖ®ºó£¬£¬ÎÒ·¢ÏÖ²»½örConfig 3.9.2ÓµÓÐÕâЩ·ì϶£¬£¬ËùÓа汾¶¼ÓС£¡£´ËÍ⣬£¬¶ÔÓÚCVE-2019-16663£¬£¬Äܹ»¶ÔrConfig 3.6.0֮ǰµÄËùÓа汾½øÐÐÉí·ÝÑéÖ¤ºóʹÓÃRCE£¬£¬¶øÎÞÐè½øÐÐÉí·ÝÑéÖ¤¡£¡£
¸üй¦·ò£º£º
20191119
ÊÂÎñÃû³Æ£º£º
HTTP_rconfig_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2019-16663]
°²È«ÀàÐÍ£º£º
°²È«·ì϶
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýrConfig¿ò¼ÜºÅÁîÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£¡£
·ì϶ÃèÊö£º£º
ÔÚ±¾ÎÄÖУ¬£¬ÎÒ½«½éÉÜÊ¢ÐеĿªÔ´ÍøÂçÖÎÀíϵͳrConfigÖеÄÁ½¸öÔ¶³Ì´úÂëÖ´Ðзì϶¡£¡£Æ¾¾ÝÆäÍøÕ¾£¬£¬rConfigÖÎÀí×ų¬¹ý300Íǫ̀É豸£¬£¬Õ¼ÓÐ7000¶à¸ö»îÔ¾Óû§¡£¡£
·ì϶ӰÏìÁìÓò£º£º
×îеÄrConfig 3.9.2°æ±¾ÖеÄCVE-2019-16662ºÍCVE-2019-16663¡£¡£µ«ÊÇ£¬£¬ÔÚ»ØÊ×ÁËrConfigµÄÔ´´úÂëÖ®ºó£¬£¬ÎÒ·¢ÏÖ²»½örConfig 3.9.2ÓµÓÐÕâЩ·ì϶£¬£¬ËùÓа汾¶¼ÓС£¡£´ËÍ⣬£¬¶ÔÓÚCVE-2019-16663£¬£¬Äܹ»¶ÔrConfig 3.6.0֮ǰµÄËùÓа汾½øÐÐÉí·ÝÑéÖ¤ºóʹÓÃRCE£¬£¬¶øÎÞÐè½øÐÐÉí·ÝÑéÖ¤¡£¡£
¸üй¦·ò£º£º
20191119
ÊÂÎñÃû³Æ£º£º
HTTP_SatanÀÕË÷²¡¶¾_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¸ÃÊÂÎñÅú×¢µ½ÀÕË÷Èí¼þSatanÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÀÕË÷Èí¼þSatan¡£¡£
SatanÊÇÒ»¿îÀÕË÷Èí¼þ£¬£¬ÔËÐкó¼ÓÃܱ»Ö²Èë»úеÉϵÄÎļþ£¬£¬²¢ÀÕË÷Ò»¸ö±ÈÌØ±ÒÀ´½âÃÜ¡£¡£´¡Ì×¼þ¡£¡£ Advantech WebAccess²úÆ·ÖдæÔÚÔ¶³Ì´úÂëÖ´Ðзì϶¡£¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ִÐÐËÁÒâ´úÂë¡£¡£
¸üй¦·ò£º£º
20191119
ÊÂÎñÃû³Æ£º£º
SMTP_ľÂí_Phoenix_Keylogger_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPhoenix Keylogger¡£¡£
Phoenix KeyloggerÊÇÒ»¸öÖ°ÄÜ׳´óµÄÇÔÃÜľÂí£¬£¬¿ÉÇÔÃÜÔ̺¬ä¯ÀÀÆ÷¡¢Óʼþ¡¢FTP¡¢¼ôÌù°åµÈ¿Í»§¶Ë±£ÁôµÄÕ˺ÅÃÜÂë,»¹Äܹ»½ØÈ¡ÆÁÄ»²¢ÉÏ´«¡£¡£
¸üй¦·ò£º£º
20191119
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º£º
UDP_ºóÃÅ_PlugX_RAT_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂí¡£¡£
PlugXÊÇÒ»¸öÖ°ÄÜÒ쳣׳´óµÄºóÃÅ£¬£¬Äܹ»ÆëÈ«½ÚÖÆ±»Ï°È¾»úе¡£¡£Í¨³£ÓÃÀ´·¢ÆðÓÐÕë¶ÔÐԵĹ¥»÷£¬£¬ÔÊÐí¹¥»÷ÕßÍøÂçÓмÛÖµµÄÃô¸ÐÐÅÏ¢¡£¡£
¸üй¦·ò£º£º
20191119
ÊÂÎñÃû³Æ£º£º
HTTP_ľÂí_PredatorTheThief_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPredator The Thief¡£¡£
Predator The ThiefÊÇÒ»¸öÖ°ÄÜÒ쳣׳´óµÄÇÔÃÜľÂí£¬£¬¿ÉÇÔÈ¡Ö÷Á÷ä¯ÀÀÆ÷¡¢FTP¡¢Telegram¡¢Steam¡¢WalletsµÈ¿Í»§¶Ë±£ÁôµÄÕ˺ÅÃÜÂë¡£¡£
¸üй¦·ò£º£º
20191119
ÊÂÎñÃû³Æ£º£º
TCP_ºóÃÅ_SessionService.Bitter.Rat(ÂûÁ黨)_ÏνÓ
°²È«ÀàÐÍ£º£º
ľÂíºóÃÅ
ÊÂÎñÃèÊö£º£º
¼ì²âµ½ BitterľÂí ÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË BitterľÂí¡£¡£
BitterľÂí ÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÔËÐк󣬣¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£
¸üй¦·ò£º£º
20191119


¾©¹«Íø°²±¸11010802024551ºÅ