瑞星卡卡安全论坛

首页 » 技术交流区 » 恶意网站交流 » 每日网马播报 » 瑞星网站每日安全播报(2010年1月26日)
networkedition - 2010-1-26 14:48:00


引用:
网址均来自瑞星每日安全播报,我们详细分析其中所挂恶意网址,对于已失效的恶意网址就不再分析。



引用:
注:以下分析出的恶意网址均包含有真实网马下载地址,请勿直接下载并运行,以免系统中招。



引用:

1. http://cartoon.skyhu.com/(在线动画—火狐游戏网)
2. http://ezit.ccidnet.com/(赛迪网数码消费类电子产品频道)
3. http://game.wuhan.net.cn/(武汉热线欢迎您-热线闪耀江城,网络扮靓生活)
4. http://art.wzu.edu.cn/(温州大学)


用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)
networkedition - 2010-1-26 14:49:00
Log generated by networkedition use mdecoder 0.30
[root]http://cartoon.skyhu.com/jd/339/
    [script]http://cartoon.skyhu.com/jd/339/../../js/common.js
        [script]http://www.crcf.org.cn/logo.gif?
            [iframe]http://ferrari01.2288.org:1026/10/down10.htm
          [script]http://ferrari01.2288.org:1026/10/dd.js
    [script]http://ferrari01.2288.org:1026/10/down10.js
        [exe]http://das2s.3322.org:5618/down10.css
    [script]http://ferrari01.2288.org:1026/10/aa.js
    [script]http://ferrari01.2288.org:1026/10/cc.js
    [script]http://www.skyhu.com/skyhumanage/templet/head/skyhutop_white.js
        [iframe]http://www.skyhu.com/top.html
    [script]http://cartoon.skyhu.com/jd/339/../../js/view1.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/view2.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/view3.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/viewad.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/view4.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/ajax.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/view5.js
    [script]http://cartoon.skyhu.com/jd/339/../../js/foot.js
        [iframe]http://cartoon.skyhu.com/allfoot.htm
            [script]http://js.users.51.la/1641539.js
            [script]http://js.users.51.la/2112874.js
            [script]http://js.users.51.la/1677397.js
            [exe]http://www.skyhu.com/skyhumanage/html/css/foot.css
        [script]http://www.crcf.org.cn/logo.gif?
    [script]http://cartoon.skyhu.com/jd/339/../../inc/hits.asp?zt_id=339
networkedition - 2010-1-26 14:49:00
Log generated by networkedition use mdecoder 0.30
[root]http://ezit.ccidnet.com/html/youxi/danji/200412/24-40205.html
    [script]http://image.ccidnet.com/nav/flash.js
    [script]http://ezit.ccidnet.com/include/dedeajax2.js
    [script]http://www.xcrsrc.gov.cn/images/ubb.js
    [iframe]http://www.xcrsrc.gov.cn/images/kiss.jpg?abu
    [iframe]http://www.xcrsrc.gov.cn/images/miss.jpg?agp
    [script]http://www.ccidnet.com/images/image_service/blank_ezit_art.js
        [iframe]http://image6.ccidnet.com:8081/ad_files/image/ezit/art/blank.gif
    [script]http://www1.cnnet.com.cn:80/adsunion/get/;pl=pl-112-ezit_gamewz_db;tp=js;sk=0;ck=0;/?
    [script]http://ezit.ccidnet.com/plus/feedback_js.php?arcid=40205
    [script]http://www1.cnnet.com.cn:80/adsunion/get/;pl=pl-112-ezit_gamewz_bu;tp=js;sk=0;ck=0;/?
    [script]http://www1.cnnet.com.cn:80/adsunion/get/;pl=pl-112-ezit_gamewz_pip;tp=js;sk=0;ck=0;/?
networkedition - 2010-1-26 14:49:00
Log generated by networkedition use mdecoder 0.30
[root]http://game.wuhan.net.cn/game/html/cheat/pcgame/20090504/31034.html
    [script]http://game.wuhan.net.cn/game/include/whgameajax2.js
    [script]http://www.wuhan.net.cn/top/top950.js
        [exe]http://www.wuhan.net.cn/top/css/style.css
    [script]http://www.wuhan.net.cn/top/top950.js
    [script]http://game.wuhan.net.cn/game/plus/ad_js.php?aid=29
    [script]http://game.wuhan.net.cn/game/templets/templets/js/minmax.js
    [script]http://game.wuhan.net.cn/game/plus/count.php?view=yes&aid=31034&mid=1
    [script]http://game.wuhan.net.cn/game/plus/ad_js.php?aid=39
    [script]http://game.wuhan.net.cn/game/plus/feedback_js.php?aid=31034
        [script]http://ww.keyruns.co.cc/phpmyadmin/css/yx/images.gif
            [iframe]http://w.sog0u.co.cc/image/my/yx/data.htm
    [script]http://game.wuhan.net.cn/game/plus/ad_js.php?aid=39
    [script]http://game.wuhan.net.cn/game/plus/ad_js.php?aid=40
        [script]http://googleads1.g.doublecllck.co.cc/data/backup/yx/logo.gif
            [iframe]http://googleads.g.doublecllck.co.cc/data/backup/yx/new.htm?02
                [script]http://googleads.g.doublecllck.co.cc/data/backup/yx/what.jpg
                http://uc.yi71.com/data/yx.exe
    [script]http://game.wuhan.net.cn/game/plus/ad_js.php?aid=41
    [script]http://game.wuhan.net.cn/game/plus/count.php?aid=31034&mid=1
networkedition - 2010-1-26 14:50:00
Log generated by networkedition use mdecoder 0.30
[root]http://art.wzu.edu.cn/photo/data/52412/
    [script]http://www.mllove.cn/ads/3.js
    [script]http://hcb.xorg.pl/c.js?google_ad=12x105_ad
        [iframe]http://aar.bij.pl/77/691sd.htm
            [iframe]http://aar.bij.pl/77/av.htm
                [iframe]http://aar.bij.pl/77/mp.htm
                    [script]http://aar.bij.pl/77/ll0.jpg
                    [script]http://aar.bij.pl/77/ll1.jpg
                    [script]http://aar.bij.pl/77/upp.jpg
                        [exe]http://aar.bij.pl/l/nn.exe
                    [script]http://aar.bij.pl/77/llll1.jpg
                    [script]http://aar.bij.pl/77/llll.jpg
                    [script]http://aar.bij.pl/77/lllll.jpg
                [iframe]http://aar.bij.pl/77/nod.htm
                    [iframe]http://aar.bij.pl/77/lz.htm
                        [script]http://aar.bij.pl/77/oopk.jpg
                            [exe]http://aar.bij.pl/l/nn.exe
                        [script]http://aar.bij.pl/77/ll1.jpg
                        [script]http://aar.bij.pl/77/lz.jpg
                [iframe]http://aar.bij.pl/77/real.htm
                    [iframe]http://aar.bij.pl/77/myra.htm
                        [script]http://aar.bij.pl/77/myr.jpg
                            [exe]http://aar.bij.pl/l/nn.exe
                [iframe]http://aar.bij.pl/77/rising.htm
                    [iframe]http://aar.bij.pl/77/ofnt.htm
                        [script]http://aar.bij.pl/77/oopk.jpg
                        [script]http://aar.bij.pl/77/uug.jpg
            [script]http://aar.bij.pl/77/fa.js
                [iframe]http://aar.bij.pl/77/fla.htm
                    [iframe]http://aar.bij.pl/77/ff.html
                    [iframe]http://aar.bij.pl/77/ie.html
                    [iframe]http://aar.bij.pl/77/ff.html
                    [iframe]http://aar.bij.pl/77/ie.html
                    [iframe]http://aar.bij.pl/77/ff.html
                    [iframe]http://aar.bij.pl/77/ff.html
    [script]http://hfh.xorg.pl/c.js?google_ad=12x120_ad
        [iframe]http://aar.bij.pl/77/691sd.htm
    [script]http://hfh.xorg.pl/c.js?google_ad=12x120_ad
    [script]http://hfh.xorg.pl/c.js?google_ad=12x120_ad
    [script]http://image.ccidnet.com/nav/ccid_js/ccidnet_foot.js
gzdylijie - 2010-1-26 17:10:00
:kaka1: :kaka1: :kaka1: :kaka1:
小视在线 - 2010-1-26 23:42:00
晕  这么多啊!!!!得小心点啊!!!
1
查看完整版本: 瑞星网站每日安全播报(2010年1月26日)