English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24041
À§Çèµµ 40
Æ÷Æ® 31,456
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡¼­ Hackers Paradise ¹éµµ¾î°¡ ¹ß°ßµÈ´Ù.
Hackers ParadiseÀº 1997³â¿¡ Daniel Lehmann¿¡ ÀÇÇØ ÀÛ¼ºµÈ Æ®·ÎÀÌ ¸ñ¸¶ ÇÁ·Î±×·¥ÀÌ´Ù. ÀÌ ¹éµµ¾î ÇÁ·Î±×·¥Àº Paradise.exe(¿¡ÀÌÀüÆ® ÇÁ·Î±×·¥), win.exe(¼­¹ö ÇÁ·Î±×·¥) ÆÄÀÏ·Î ±¸¼ºµÇ¾î ÀÖÀ¸¸ç µðÆúÆ® Æ÷Æ®·Î º¯°æÀÌ ºÒ°¡´ÉÇÑ 31, 456 TCP Æ÷Æ®¸¦ »ç¿ëÇÑ´Ù. ÀÌ ¹éµµ¾î ÇÁ·Î±×·¥Àº ·¹Áö½ºÆ®¸®¿¡ µî·ÏµÇ´Â autoload Á¤º¸°¡ ¾ø´Ù. Hackers Paradise´Â ¿ø°Ý ¾×¼¼½º »Ó¸¸ ¾Æ´Ï¶ó ·ÎÄà ¾×¼¼½º°¡ °¡´ÉÇѵ¥, À̰ÍÀº ÀÌ ¹éµµ¾î ÇÁ·Î±×·¥À» ÀÌ¿ëÇØ ·ÎÄà ½Ã½ºÅÛ »ó¿¡¼­ RAS ÆÐ½º¿öµå¸¦ ã°Å³ª ¶Ç´Â ¼­¹ö ÇÁ·Î±×·¥ÀÌ µ¿ÀÛÇÏ´Â ¿ø°Ý È£½ºÆ®¿¡ Á¢¼ÓÇÏ¿© RAS ÆÐ½º¿öµå¸¦ ãÀ» ¼ö ÀÖ´Ù´Â °É ÀǹÌÇÑ´Ù.

°ø°ÝÀÚµéÀº ÀÌ Hackers Paradise ¹éµµ¾î¸¦ ÀÌ¿ëÇÏ¿© ´ë»ó½Ã½ºÅÛ¿¡¼­ ´ÙÀ½°ú °°Àº µ¿ÀÛÀ» ¼öÇàÇÒ ¼ö ÀÖ´Ù.

- ¹ÙÅÁÈ­¸é Á¦¾î
- ÆÄÀÏ °ü¸®(ÆÄÀÏ ¾×¼¼½º °¡´É)
- RAS(Remote Access Server) ÆÐ½º¿öµå ȹµæ(´Ü, windows NTÀÇ °æ¿ì)

* Ãë¾àÇÑ Ç÷§Æû :
Microsoft Windows Any version

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/reference/vuln/HackersParadise_Response.htm
http://www.dark-e.com/archive/trojans/hp/2beta3/index.shtml
http://www.iss.net/security_center/static/3113.php
ÇØ°áÃ¥ ÇØ´ç ½Ã½ºÅÛ¿¡¼­ ¹éµµ¾î¸¦ Á¦°ÅÇØ¾ß ÇÑ´Ù.

1. ÄÄÇ»Å͸¦ ÀçºÎÆÃÇϰųª ¼­¹ö ÇÁ·Î±×·¥ win.exe ¸¦ Á¾·áÇÑ´Ù.
2. ¼­¹ö ÇÁ·Î±×·¥ win.exe ÆÄÀÏÀ» Á¦°ÅÇÑ´Ù.

-- ¶Ç´Â --

¹é½Å ÇÁ·Î±×·¥(¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥)À» ÀÌ¿ëÇÏ¿© Ä¡·áÇØ¾ß ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)