English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24076
À§Çèµµ 40
Æ÷Æ® 10002
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í Radmin ¼­¹ö°¡ 10002¹ø Æ÷Æ®¿¡¼­ °¡µ¿ ÁßÀÎ °ÍÀ¸·Î ³ªÅ¸³­´Ù. À̰ÍÀº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ±¤¹üÀ§ÇÏ°Ô µµ¿ë ÇÁ·Î±×·¥À» °¡Áö°í Microsoft Security Bulletin MS04-028¿¡ ¼³¸íµÈ GDI+ Á¤¼ö ¿À¹öÇ÷οì Ãë¾àÁ¡À» µµ¿ëÇßÀ½À» ³ªÅ¸³½´Ù. Radmin ¼­¹ö´Â Áö¿øÇÏ´Â ¸ðµç ¿î¿µÃ¼Á¦ ÇÏ¿¡¼­ ¼­ºñ½º·Î¼­ ÀÛµ¿ÇÏ¸ç ¿ø°Ý °ü¸® Åø·Î½á ¿ø°ÝÀ¸·Î »ç¿ëÀÚ°¡ ·Î±×¿Â ¹× ·Î±×¾Æ¿ô ÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ÀÌ ¼­¹ö¿¡ Á¢¼Ó, ¿ø°Ý È£½ºÆ®¿¡ ·Î±×ÀÎÇÔÀ¸·Î½á, ÀÓÀÇÀÇ »ç¿ëÀÚ°¡ ÇØ´ç È£½ºÆ®ÀÇ ¿ÏÀüÇÑ Á¦¾î±ÇÀ» ¾ò¾î³¾ ¼ö ÀÖ´Ù.

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version

* Âü°í »çÀÌÆ®:
http://www.radmin.com/default.html
http://www.spywareguide.com/product_show.php?id=578
http://www.kb.cert.org/vuls/id/297462
ÇØ°áÃ¥ ¹é½Å ÇÁ·Î±×·¥ (¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥)À» ÀÌ¿ëÇÏ¿© ÄÄÇ»ÅͷκÎÅÍ radmin ÇÁ·Î±×·¥À» Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù.

-- ±×¸®°í --

¸¸¾à MS04-028 ÆÐÄ¡°¡ Àû¿ëµÇÁö ¾Ê¾Ò´Ù¸é Microsoft Security Bulletin MS04-028À» ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù.
http://www.microsoft.com/technet/security/bulletin/MS04-028.mspx

±×¸®°í http://isc.sans.org/gdiscan.php ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â gdiscan.exeÀ» ÀÌ¿ëÇÏ¿© ½Ã½ºÅÛ ³»¿¡ ÀÖ´Â Ãß°¡ÀûÀÎ .dllÀÇ Ãë¾àÇÑ ¹öÀüµéÀ» ã¾Æ³¾ Çʿ䰡 ÀÖ´Ù. Ãë¾àÇÑ .dll ÆÄÀϵéÀÌ Ã£¾ÆÁö¸é ±×·¯ÇÑ ÆÄÀϵéÀº ¼öµ¿À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2004-0200 (CVE)
°ü·Ã URL 1503,11173 (SecurityFocus)
°ü·Ã URL 16304 (ISS)