networkedition - 2011-7-14 10:37:00
网址均来自瑞星每日安全播报,我们详细分析其中所挂恶意网址,对于已失效的恶意网址就不再分析。
注:以下分析出的恶意网址均包含有真实网马下载地址,请勿直接下载并运行,以免系统中招。
1. http://www.yydiguo.com/(YY语音帝国)
2. http://yaoyaofree.com/(遥遥免费资源站-精心致力于网络免费资源)
3. http://you.zhile365.com/(知乐游 - 知乐网)
4. http://bbs.wanmmo.com/(MMO游戏社区)
5. http://www.arthenan.com/(艺术河南-穿越历史见证文明)
用户系统信息:Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727)
networkedition - 2011-7-14 10:37:00
Log generated by networkedition use mdecoder 0.67
[root]http://www.yydiguo.com/(YY语音帝国 www.yydiguo.com 中文舞曲,另类喊麦,开场舞曲,中文单曲,套词另类,火爆舞曲,骚麦现场,另类喊麦,英文舞曲,语音五项,另类伴奏,说唱伴奏,五项伴奏, )
[script]http://www.yydiguo.com/Skin/Skin_04/function.js
[script]http://www.yydiguo.com/Skin/Skin_04/ajax.js
[exp]http://yy.bestch.Net/CUTE-IE.html(Exploit.Ie0dayCVE0806.c)
[script]http://yy.bestch.Net/pack.js
[script]http://yy.bestch.Net/pack.css
[virus]http://www.yypingtai.com/360.exe
[iframe]http://www.yydiguo.com/bfq/index.html
[script]http://www.yydiguo.com/bfq/js/tban.js
[script]http://www.yydiguo.com/bfq/js/set.js
[script]http://www.yydiguo.com/bfq/js/player_class.js
[script]http://www.yydiguo.com/bfq/js/com.js
[script]http://www.yydiguo.com/bfq/js/poerror.js
[flash]http://www.yydiguo.com/Skin/Skin_04/images/pixviewer.swf
[flash]http://img.uu1001.cn/bcv3.swf?v=20110610
networkedition - 2011-7-14 10:38:00
Log generated by networkedition use mdecoder 0.67
[root]http://yaoyaofree.com/js/ie.html(Exploit.Ie0dayCVE0806.a)
[virus]http://yaoyaofree.com/js/mh1.exe
networkedition - 2011-7-14 10:38:00
Log generated by networkedition use mdecoder 0.67
[root]http://you.zhile365.com/shop/wow1.html
[virus]http://www.weiquan365.com/zhiye/dnf.exe
[script]http://you.zhile365.com/shop/ap.js
[script]http://js.users.51.la/4658024.js
networkedition - 2011-7-14 10:38:00
Log generated by networkedition use mdecoder 0.67
[root]http://bbs.wanmmo.com/uc_server/release/20080429/lib/index.htm(Exploit.Ie0dayCVE0806.a)
[script]http://bbs.wanmmo.com/uc_server/release/20080429/lib/ap.js
[virus]http://dd.dfgerw.com:81/dn.exe
networkedition - 2011-7-14 10:39:00
Log generated by networkedition use mdecoder 0.67
[root]http://www.arthenan.com/data/js/b.html(Exploit.Ie0dayCVE0806.a)
[virus]http://www.arthenan.com/data/js/cmd.exe
[script]http://www.arthenan.com/data/js/b.js
© 2000 - 2024 Rising Corp. Ltd.