networkedition - 2012-7-5 17:19:00
网址均来自瑞星每日安全播报,我们详细分析其中所挂恶意网址,对于已失效的恶意网址就不再分析。
注:以下分析出的恶意网址均包含有真实网马下载地址,请勿直接下载并运行,以免系统中招。
1. http://51767.com/(卓敏工作室)
2. http://www.cnoij.com/(江西地暖首选南昌沃嘉科技)
3. http://www.vc-ker.com/(N点虚拟主机管理系统)
4. http://www.xianxiongfeng.com/(西安雄峰印刷包装有限公司)
5. http://www.zjhyhd.com/(铁发集团网站)
用户系统信息:Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; QQDownload 691; .NET CLR 2.0.50727; LBBROWSER)
networkedition - 2012-7-5 17:19:00
Log generated by networkedition use mdecoder 0.67
[root]http://51767.com/data/pub/tlbb.htm?www.a963.com(天龙八部多玩究极辅助外挂,天龙八部最新外挂,天龙八部免费外挂,天龙八部外挂下载 - 多玩外挂网)
[iframe]http://51767.com/data/pub/tlbb8.html
[iframe]http://51767.com/data/pub/tlbbi.html
[virus]http://51767.com/data/get/tlbb.exe
[iframe]http://51767.com/data/pub/tlbbm.html
[flash]http://51767.com/data/pub/toto.mid
[iframe]http://51767.com/data/pub/tlbbf.html
[script]http://js.users.51.la/12428641.js
networkedition - 2012-7-5 17:20:00
Log generated by anonymous use mdecoder 0.67
[root]http://www.cnoij.com/
[script]http://www.cnoij.com/inc/webj2f.Js
[flash]http://www.cnoij.com/flash/main.swf
[exp]http://gua1.3322.org:700/ah.html(Exploit.Ie0dayCVE0806.c)
[virus]http://gua1.3322.org:700/down.exe
[flash]http://www.cnoij.com/images/ShowPic.swf
networkedition - 2012-7-5 17:20:00
Log generated by anonymous use mdecoder 0.67
[root]http://www.vc-ker.com/(N点虚拟主机管理系统 - Powered By Npoint)
[script]http://fqe.AtHerSite.com/b.js?google=7x051
[script]http://www.vc-ker.com/js/ajax_x.js
[script]http://www.vc-ker.com/js/alt.js
[iframe]http://www.vc-ker.com/js/about:blank
[script]http://www.vc-ker.com/js/input.js
[script]http://fqe.AtHerSite.com/b.js?google=7x051
[script]http://vlc.ikwb.COM:89/2/lcay.htm
[iframe]http://vlc.ikwb.COM:89/2/eke.htm
[virus]http://vlc.ikwb.COM:89/2/bq.exe
[script]http://js.tongji.linezing.com/2800225/tongji.js
[script]http://tongji.linezing.com/clickmap/load_clickmap.html?r=+token+
[script]http://js.tongji.linezing.com/2800225//clickcollect.js
networkedition - 2012-7-5 17:20:00
Log generated by networkedition use mdecoder 0.67
[root]http://www.xianxiongfeng.com/(西安雄峰印刷包装有限公司)
[flash]http://www.xianxiongfeng.com/images/main.swf
[script]http://www.eootv.com/tv.js?ptype=13&fn=38352091120109816&w=408&h=370&ipos=4&cid=9651&cycle=0
[iframe]http://www.eootv.com/+c.contentUrl+
[script]http://js.users.51.la/2707403.js
[script]http://flz.AtHerSite.com/b.js?google=5x303
[script]http://vlc.ikwb.COM:89/2/lcay.htm
[iframe]http://vlc.ikwb.COM:89/2/eke.htm
[virus]http://vlc.ikwb.COM:89/2/bq.exe
[script]http://js.tongji.linezing.com/2800225/tongji.js
[script]http://tongji.linezing.com/clickmap/load_clickmap.html?r=+token+
[script]http://js.tongji.linezing.com/2800225//clickcollect.js
[script]http://fnA.AtHerSite.com/b.js?google=6x083
[script]http://fnl.AtHerSite.com/b.js?google=6x122
networkedition - 2012-7-5 17:21:00
Log generated by networkedition use mdecoder 0.67
[root]http://www.zjhyhd.com/ys5.htm(运输常识)
[iframe]http://www.zjhyhd.com/bbs/ie.html
[flash]http://www.zjhyhd.com/bbs/xp.swf
[script]http://www.zjhyhd.com/bbs/ie.jpg
[virus]http://222.66.226.74/cn/js/menu.exe
[iframe]http://www.zjhyhd.com/bbs/ie.html
© 2000 - 2024 Rising Corp. Ltd.