English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24018
À§Çèµµ 40
Æ÷Æ® 1243
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í ¹éµµ¾î SubSevenÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. SubSevenÀº ħÀÔÀÚ°¡ ½Ã½ºÅÛÀÇ Á¦¾î±ÇÀ» °¡Áö°í °¥ ¼ö ÀÖ°Ô ÇØ ÁÖ´Â ¹éµµ¾îÀÌ´Ù. SubSeven ¹éµµ¾î¸¦ °¡Áö°í Attacker´Â ´ÙÀ½°ú °°Àº ÀϵéÀ» ÇÒ ¼ö ÀÖ´Ù:

- »ç¿ëÀÚ ÄÄÇ»Å͸¦ ¼Ë´Ù¿î½ÃŰ°Å³ª Àç½ÃÀÛ½ÃŲ´Ù.
- ÀúÀåµÇ¾î Àְųª ij½¬µÈ ÆÐ½º¿öµåµéÀ» °Ë»öÇÑ´Ù.
- »ç¿ëÀÚ ½Ã½ºÅÛ ·¹Áö½ºÆ®¸®¸¦ ¼öÁ¤ÇÑ´Ù.
- »ç¿ëÀÚ ½Ã½ºÅÛÀ¸·Î ºÎÅÍ ÆÄÀϵéÀ» ¾÷·Îµå, ´Ù¿î·Îµå, »èÁ¦ÇÑ´Ù.

SubSevenÀº À©µµ¿ìÁî ½Ã½ºÅ۵鿡 ´ëÇØ ±¤¹üÀ§ÇÏ°Ô »ç¿ëµÇ´Â °­·ÂÇÑ ¹éµµ¾îÀÌ´Ù. ´ëºÎºÐÀÇ ÃÖ±Ù ¹öÀüµéÀº Attacker°¡ Èñ»ýÀÚ ÄÄÇ»ÅÍ ÀÚü¿¡¼­ ÇÒ ¼ö ÀÖ´Â ¾î¶² °Íµµ ¿ø°ÝÁö¿¡¼­ ¼öÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ÀÌ·¯ÇÑ ÀÌÀ¯·Î SubSevenÀº ³×Æ®¿öÅ© »ó¿¡¼­ ¹ß°ßµÇ´Â Áï½Ã Á¦°ÅÇØ¾ß ÇÑ´Ù.

SubSeven ¹öÀü 1.xµéÀº À©µµ¿ìÁî 95, 98¿¡¼­¸¸ ÀÛµ¿ÇÑ´Ù. µðÆúÆ® TCP Æ÷Æ®´Â 1243À̸ç 6711°ú 6776µµ »ç¿ëÇÑ´Ù. ¼³Á¤Çϱ⿡ µû¶ó¼­ ¹ß°ßÇϱⰡ ±²ÀåÈ÷ ¾î·Æ±â ¶§¹®¿¡ °¡Àå ½±°Ô Á¦°ÅÇÏ´Â ¹æ¹ýÀº ÃֽйÙÀÌ·¯½º ½ºÄ³³Ê¸¦ »ç¿ëÇÏ´Â °ÍÀÌ´Ù.

* Âü°í »çÀÌÆ®:
http://xforce.iss.net/alerts/advise30.php
http://www.iss.net/security_center/static/2245.php

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
ÇØ°áÃ¥ SubSeven ¹éµµ¾î´Â ¼öÀÛ¾÷À¸·Î Á¦°ÅÇϱⰡ ¾î·Æ´Ù. ¿Ö³ÄÇÏ¸é ½ÇÇàÆÄÀÏÀÌ ½Ã½ºÅÛ »ó¿¡ ¾îµð¿¡ À§Ä¡ÇÏ°í ¾î¶² À̸§À¸·Î Á¸ÀçÇÏ´ÂÁö ¾Ë±â Èûµé±â ¶§¹®ÀÌ´Ù. ¹éµµ¾î¸¦ Á¦°ÅÇÒ ¼ö ÀÖ´Â ¾ÈƼ ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥À» »ç¿ëÇÏ·Á¸é ´ÙÀ½À» ÂüÁ¶Ç϶ó.

SubSeven ¹éµµ¾î¸¦ Á¦°ÅÇϱâ À§ÇÑ ¾ÈƼ ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥À» »ç¿ëÇϱâ À§Çؼ­´Â:

1. ¾ÈƼ ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥ÀÌ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù¸é ´ÙÀ½ ¹ÙÀÌ·¯½º ½ºÄ³³Êµé ÁßÀÇ Çϳª¸¦ ´Ù¿î·ÎµåÇÏ¿© ¼³Ä¡ÇÑ´Ù.

- Norton AntiVirus:
http://www.symantec.com/security_response/definitions/download/detail.jsp?gid=n95

- McAfee VirusScan: http://www.mcafee.com

- Trend Micro Internet Security:
http://downloadcenter.trendmicro.com/index.php?regs=NABU&clk=latest&clkval=280&lang_loc=1

- Comodo BOClean 4.02: http://www.comodo.com/home/internet-security/anti-malware.php

2. ¹éµµ¾î¸¦ ½ºÄµÇϱâ À§ÇØ ¾ÈƼ ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥À» ½ÇÇà½ÃŲ´Ù. ¹ÙÀÌ·¯½º ½ºÄ³³Ê´Â ÄÄÇ»ÅÍ·Î ºÎÅÍ SubSeven ¹éµµ¾î¸¦ ¹ß°ßÇϰí Á¦°ÅÇØ ÁÙ °ÍÀÌ´Ù.
°ü·Ã URL CVE-1999-0660 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)