Ãë¾àÁ¡ID |
24061 |
À§Çèµµ |
40 |
Æ÷Æ® |
10168,1192,20168 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
BackDoor |
»ó¼¼¼³¸í |
W32.Lovgate ¿úµéÀÇ ¹éµµ¾î°¡ ÇØ´ç ½Ã½ºÅÛ¿¡ ¼³Ä¡µÈ °ÍÀ¸·Î ³ªÅ¸³´Ù. ÀÌ ¹éµµ¾î´Â TCP Æ÷Æ® 10168, 1192, ȤÀº 20168 ÁßÀÇ Çϳª¿¡¼ Á¢¼Ó´ë±â Çϰí ÀÖÀ¸¸ç ±× Æ÷Æ®¿¡¼ ¸í·ÉÇà ÇÁ·ÒÇÁÆ®(prompt)¸¦ ¿¾î ÁØ´Ù. È®»êÀ» À§ÇØ ¿úÀº ¼ö½ÅµÈ email ¸Þ½ÃÁöµé°ú HTML ÆÄÀϵ鿡¼ ¹ß°ßµÇ´Â email Áּҵ鿡 ´ëÇÑ ÀÀ´äÀ» ½ÃµµÇÑ´Ù. ¼ö½ÅµÈ emailÀÇ Á¦¸ñ°ú ÷ºÎ´Â ±â Á¤ÀÇµÈ ¸®½ºÆ®¿¡¼ ¼±ÅõȴÙ. ÷ºÎ´Â .exe, .pif, ȤÀº .scr ÆÄÀÏ È®ÀåÀÚ¸¦ °¡Áø´Ù. W32.Lovgate´Â ¶ÇÇÑ ·ÎÄà ³×Æ®¿öÅ© »ó¿¡ ÀÖ´Â ¸ðµç ÄÄÇ»Å͵鿡 ´ëÇØ ÀÚ½ÅÀ» º¹Á¦ÇÏ¿© ÄÄÇ»Å͵éÀ» °¨¿°½ÃŰ·Á µç´Ù. W32.Lovgate°¡ ½ÇÇàµÉ ¶§ ´ÙÀ½ ÆÄÀϵéÀ» ¸ðµç ³×Æ®¿öÅ© °øÀ¯ Æú´õµé°ú ÇÏÀ§ Æú´õµé¿¡ º¹»çÇÑ´Ù:
- Are you looking for Love.doc.exe - autoexec.bat - The world of lovers.txt.exe - How To Hack Websites.exe - Panda Titanium Crack.zip.exe - Mafia Trainer!!!.exe - 100 free essays school.pif - AN-YOU-SUCK-IT.txt.pif - Sex_For_You_Life.JPG.pif - CloneCD + crack.exe - Age of empires 2 crack.exe - MoviezChannelsInstaler.exe - Star Wars II Movie Full Downloader.exe - Winrar + crack.exe - SIMS FullDownloader.zip.exe - MSN Password Hacker and Stealer.exe
* Âü°í »çÀÌÆ®: http://www.cert.org/advisories/CA-2003-08.html http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate@mm.html http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate.c@mm.html http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.lovgate.g@mm.html
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Microsoft Windows Any version |
ÇØ°áÃ¥ |
¹é½Å ÇÁ·Î±×·¥ (¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥)À» ÀÌ¿ëÇÏ¿© °¨¿°µÈ ÄÄÇ»ÅͷκÎÅÍ ¹ÙÀÌ·¯½ºµéÀ» Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù. ¸¸¾à ¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥ÀÌ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù¸é ´ÙÀ½ ¹ÙÀÌ·¯½º ½ºÄ³³Ê ÁßÀÇ Çϳª¸¦ ´Ù¿î·ÎµåÇÏ¿© ¼³Ä¡ÇÑ´Ù:
- Norton AntiVirus: http://www.symantec.com/security_response/definitions/download/detail.jsp?gid=n95
- McAfee VirusScan: http://www.mcafee.com
- Trend Micro Internet Security: http://downloadcenter.trendmicro.com/index.php?regs=NABU&clk=latest&clkval=280&lang_loc=1
- Comodo BOClean 4.02: http://www.comodo.com/home/internet-security/anti-malware.php |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
(SecurityFocus) |
°ü·Ã URL |
(ISS) |
|