English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24060
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í W32.Lovgate ¿úµéÀÇ ¹éµµ¾î ÆÄÀÏ(µé)ÀÌ ÇØ´ç Windows ½Ã½ºÅÛ¿¡ ÀÖ´Â ³×Æ®¿öÅ© °øÀ¯ Æú´õµé·ÎºÎÅÍ ¹ß°ßµÇ¸ç, ÀÌ ½Ã½ºÅÛÀº ¿ú¿¡ °¨¿°µÇ¾î ÀÖÀ» ¼ö ÀÖ´Ù.
È®»êÀ» À§ÇØ ¿úÀº ¼ö½ÅµÈ email ¸Þ½ÃÁöµé°ú HTML ÆÄÀϵ鿡¼­ ¹ß°ßµÇ´Â email Áּҵ鿡 ´ëÇÑ ÀÀ´äÀ» ½ÃµµÇÑ´Ù. ¼ö½ÅµÈ emailÀÇ Á¦¸ñ°ú ÷ºÎ´Â ±â Á¤ÀÇµÈ ¸®½ºÆ®¿¡¼­ ¼±ÅõȴÙ. ÷ºÎ´Â .exe, .pif, ȤÀº .scr ÆÄÀÏ È®ÀåÀÚ¸¦ °¡Áø´Ù. W32.Lovgate´Â ¶ÇÇÑ ·ÎÄà ³×Æ®¿öÅ© »ó¿¡ ÀÖ´Â ¸ðµç ÄÄÇ»Å͵鿡 ´ëÇØ ÀÚ½ÅÀ» º¹Á¦ÇÏ¿© ÄÄÇ»Å͵éÀ» °¨¿°½ÃŰ·Á µç´Ù. ¿úÀº ¹éµµ¾î Æ®·ÎÀ̸ñ¸¶ÀÇ ±â´Éµµ °¡Áö°í ÀÖ´Ù.
W32.Lovgate°¡ ½ÇÇàµÉ ¶§ ´ÙÀ½ ÆÄÀϵéÀ» ¸ðµç ³×Æ®¿öÅ© °øÀ¯ Æú´õµé°ú ÇÏÀ§ Æú´õµé¿¡ º¹»çÇÑ´Ù:

- Are you looking for Love.doc.exe
- autoexec.bat
- The world of lovers.txt.exe
- How To Hack Websites.exe
- Panda Titanium Crack.zip.exe
- Mafia Trainer!!!.exe
- 100 free essays school.pif
- AN-YOU-SUCK-IT.txt.pif
- Sex_For_You_Life.JPG.pif
- CloneCD + crack.exe
- Age of empires 2 crack.exe
- MoviezChannelsInstaler.exe
- Star Wars II Movie Full Downloader.exe
- Winrar + crack.exe
- SIMS FullDownloader.zip.exe
- MSN Password Hacker and Stealer.exe

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-2003-08.html
http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate@mm.html
http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate.c@mm.html
http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate.g@mm.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
ÇØ°áÃ¥ ¹é½Å ÇÁ·Î±×·¥ (¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥)À» ÀÌ¿ëÇÏ¿© °¨¿°µÈ ÄÄÇ»ÅͷκÎÅÍ ¹ÙÀÌ·¯½ºµéÀ» Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù.
¸¸¾à ¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥ÀÌ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù¸é ´ÙÀ½ ¹ÙÀÌ·¯½º ½ºÄ³³Ê ÁßÀÇ Çϳª¸¦ ´Ù¿î·ÎµåÇÏ¿© ¼³Ä¡ÇÑ´Ù:

- Norton AntiVirus:
http://www.symantec.com/security_response/definitions/download/detail.jsp?gid=n95

- McAfee VirusScan: http://www.mcafee.com

- Trend Micro Internet Security:
http://downloadcenter.trendmicro.com/index.php?regs=NABU&clk=latest&clkval=280&lang_loc=1

- Comodo BOClean 4.02: http://www.comodo.com/home/internet-security/anti-malware.php
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)