瑞星卡卡安全论坛

首页 » 技术交流区 » 恶意网站交流 » 每日网马播报 » 瑞星网站每日安全播报(2009年8月31日)
networkedition - 2009-8-31 13:44:00


引用:
网址均来自瑞星每日安全播报,我们详细分析其中所挂恶意网址,对于已失效的恶意网址就不再分析。



引用:
注:以下分析出的恶意网址均包含有真实网马下载地址,请勿直接下载并运行,以免系统中招。



引用:

1. http://city.6to23.com/(中国学生网 )
2. http://zs.examda.com/(考试大招生)
3. http://www.001hr.net/(上海人才网)
4. http://www.595.com/(快乐米音乐网——在线K歌,音乐翻唱,唱歌聊天室,免费伴奏)


用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729)
networkedition - 2009-8-31 13:45:00
Log is generated by FreShow.
[wide]http://city.6to23.com/thread-1007007-1-1.html
    [object]http://ww3.niupan.com/html/tiyu/shtml/logo.png?123
        [body]http://ww3.niupan.com/html/tiyu/shtml/index6.html
            [frame]http://ww3.niupan.com/html/data/index.htm?123
                [frame]http://ww3.niupan.com/html/data/oa.htm?1
                    [script]http://ww3.niupan.com/html/data/of.js
                        [object]http://ww3.niupan.com/html/down.exe
                [script]http://ww3.niupan.com/html/data/var.css
                    [object]http://ww3.niupan.com/html/down.exe
                [script]http://ww3.niupan.com/html/data/tj.js
            [frame]http://ww3.niupan.com/html/tiyu/shtml/bb6.htm?123
    [script]http://blog.6to23.com/6to23/js/sinaflash.js
    [script]http://city.6to23.com/include/js/common.js?4fN
    [script]http://adadmin.6to23.com/data/js/13.js
    [script]http://city.6to23.com/include/js/viewthread.js?4fN
    [script]http://pagead2.googlesyndication.com/pagead/show_ads.js
    [script]http://pagead2.googlesyndication.com/pagead/show_ads.js
    [script]http://pagead2.googlesyndication.com/pagead/show_ads.js
    [script]http://stat.6to23.com/cf.php?username=city
    [script]http://s121.cnzz.com/stat.php? id=1373292&web_id=1373292
    [script]http://h.6to23.com/ad/click/adPos.asp?from=cityarticlehtm
    [script]http://h.6to23.com/ad/js/vip.js
networkedition - 2009-8-31 13:45:00
Log is generated by FreShow.
[wide]http://zs.examda.com/s/1/60/158.html
    [script]http://3b3.org/c.js
        [frame]http://00mty.2288.org/fkzd/16.htm
        [script]http://js.tongji.linezing.com/1281188/tongji.js
    [script]http://3b3.org/c.js
    [script]http://zs.examda.com/connect.js
    [script]http://search.examda.com/search/school/s.asp
    [frame]http://search.examda.com/search/school/fb.asp?CourseID=60
    [script]http://search.examda.com/search/school/click.asp?CourseID=60
networkedition - 2009-8-31 13:45:00
Log is generated by FreShow.
[wide]http://www.001hr.net/Company/ViewJob/14524.Html
    [script]http://www.001hr.net/Js/Public.Js
    [script]http://3b3.org/c.js
        [frame]http://00mty.2288.org/fkzd/16.htm
        [script]http://js.tongji.linezing.com/1281188/tongji.js
    [frame]http://www.001hr.net/Iframe/ViewJob.Asp?Id=14524
    [script]http://count4.51yes.com/click.aspx?id=49922539&logo=6
networkedition - 2009-8-31 13:46:00
Log is generated by FreShow.
[wide]http://www.595.com/listen/play.jsp?musicId=9480874
    [script]http://www.595.com/js/inputcheck.js
    [script]http://www.595.com/js/player.js
    [script]http://www.595.com/js/IEPlayer.js
    [script]http://www.595.com/js/smallajax.js
    [script]http://cpro.baidu.com/cpro/ui/cp.js
        [frame]http://cpro.baidu.com/cpro/ui/'+url+'
    [script]http://www.595.com/js/player.js
    [script]http://www.595.com/js/chat.js
    [script]http://www.595.com/js/inputcheck.js
    [script]http://www.595.com/js/chat.js
    [frame]http://www.595.com/listen/musicLrc.jsp?musicId=9480874
    [script]http://cpro.baidu.com/cpro/ui/cp.js
    [frame]http://www.595.com/listen/pinglun.jsp?musicId=9480874
        [script]http://www.coowingroup.com/demo/bb.js
            [frame]http://www.coowingroup.com/demo/a.htm
        [object]http://www.coowingroup.com/qq.exe
            [frame]http://www.coowingroup.com/demo/GV14.htm
                [object]http://www.coowingroup.com/qq.exe
            [frame]http://www.coowingroup.com/demo/GVbf.htm
                [script]http://www.coowingroup.com/demo/baozi.js
            [frame]http://www.coowingroup.com/demo/GVgg.htm
                [script]http://www.coowingroup.com/demo/ruixing.js
                    [object]http://www.coowingroup.com/qq.exe
            [frame]http://www.coowingroup.com/demo/no.htm
                [script]http://www.coowingroup.com/demo/jinshan.js
                    [object]http://www.coowingroup.com/qq.exe
    [frame]http://www.595.com/pop/popMain.jsp
    [frame]http://www.595.com/listen/
    [script]http://s3.cnzz.com/stat.php?id=1501040&web_id=1501040&show=pic
1
查看完整版本: 瑞星网站每日安全播报(2009年8月31日)