Ä¿¹Â´ÏƼ
 
 
 
 
 
 
 
»ç¿ë±â/ÇÊÅ×±â

·çƮŶÀ» °ø°Ý ·çÆ®·Î °¡Áö´Â °­·ÂÇÑ Storm ¿ú Á¤º¸


¿¬¹æ´ëÃÑÅë[4±º´Ü] ¹Ìµð¾î·Î±×°¡±â

Á¶È¸ : 2335
ÀÛ¼ºÀÏ : 2007/04/17 00:43
°£Æí URL : http://www.bodnara.co.kr/bbs/bbs.html?D=20&num=96376
Æ®À§ÅÍ    ÆäÀ̽ººÏ
¾Æ¸¶ Storm ¿ú¿¡ ´ëÇØ µé¾îº» ÀûÀÌ ÀÖ½À´Ï±î? ¾Æ¸¶µµ ±¹¾î¸¦ ¾Ö¿ëÇÏ´Â »ç¶÷À̶ó¸é Àß ¸ð¸£´Â °æ¿ì°¡ ´ëºÎºÐÀÔ´Ï´Ù. ÀÌ ¿úÀº ÁÖ·Î Á¦¸ñ¿¡ Áß¿äÇÑ »ç½Ç/´º½º µîÀ» ´ãÀº ½ºÆÔ ¸Þ½ÃÁö¸¦ ÅëÇØ Àü¿°µÇÁö¸¸ ¿µ¾îÀÎ °ü°è·Î Çѱ¹ ȯ°æ¿¡¼­´Â ±×¸® Å©°Ô ÁÖ¸ñÀ» ¹ÞÁö ¸øÇÏ¿´½À´Ï´Ù.

Àá½Ã ÀÌ ¿ú¿¡ ´ëÇØ¼­ ¼Ò°³ÇØ µå¸³´Ï´Ù. Storm ¿úÀº Áö³­ 1¿ù ´Þ¿¡ ÃÖÃÊ ¹ß°ßµÈ °ÍÀ¸·Î ¾Ë·ÁÁö°í ÀÖÀ¸¸ç, ÁÖ·Î ¿µ¾î±Ç ±¹°¡ÀÎ À¯·´ÂÊ¿¡ ¸¹ÀÌ °¨¿°µÇ¾ú½À´Ï´Ù. ƯÈ÷, Storm ¿úÀº ½ºÆÔ ¸Þ½ÃÁöÀÇ Á¦¸ñ¿¡ "230 dead as storm batters europe"¿Í °°ÀÌ Áß¿äÇÑ ´º½º°Å¸® Áï, ³¬½ÃÁú Á¦¸ñÀ¸·Î ¸¹Àº »ç¶÷µéÀÌ °¨¿°µÇ¾ú½À´Ï´Ù. 2¿ù ´Þ¿¡´Â ¹ß·»Å¸ÀÎ µ¥ÀÌ¿¡ °üÇØ¼­, ÃÖ±Ù 3¿ù¿¡´Â Á¦ 3Â÷ ¼¼°è ´ëÀü¿¡ ´ëÇÑ ¼Ò½ÄÀ¸·Î Çѹø ´õ Àü¼¼°èÀûÀ¸·Î ÀüÆÄ°¡ µÇ¾ú½À´Ï´Ù.

ÀÌ ½ºÆÔ ¸Þ½ÃÁöÀÇ ÇüÅ´ ´ÙÀ½°ú °°½À´Ï´Ù.

Á¦¸ñ

Worm Detected!
Virus Detected!ected!
Virus Activity Detected!
ATTN!
Spyware Alert!
Spyware Detected!
Warning!
Trojan Alert!
Trojan Detected!
Worm Activity Detected!
Virus Alert!


º»¹®

From: Customer Support

Dear Customer,
Our robot has detected an abnormal activity from your IP address on sending e-mails.

Probably it is connected with the last epidemic of a worm which does not have official patches at the moment. We recommend you to install this patch to remove worm files and stop email sending, otherwise your account will be blocked. We had archived the patch because the worm can modify unpacked exe files. You should open the archive file, enter the password and run the patch immediately.

Password: {Random}

Customer Support Center Robot.

Attachment: Patch-{Random}.zip



÷ºÎ ÆÄÀÏ
º¸Åë 2°³ÀÇ Ã·ºÎÆÄÀÏÀ» Æ÷ÇÔÇϰí ÀÖ½À´Ï´Ù. Çϳª´Â ÀÏ¹Ý ±×¸² ÆÄÀÏ(*.gif)ÀÌ°í ³ª¸ÓÁö Çϳª°¡ ºñ¹Ð¹øÈ£·Î ¾ÐÃàµÈ zip ÆÄÀÏÀÔ´Ï´Ù. º¸Åë ´ÙÀ½ÀÇ À̸§À» °¡Áý´Ï´Ù.

patch-[RANDOM 4 DIGITS].zip
removal-[5 RANDOM DIGITS].zip
hotfix-[5 RANDOM DIGITS].zip
bugfix-[5 RANDOM DIGITS].zip

Stom ¿úÀÌ »õ·Ó°Ô ¼±º¸ÀÎ ±â¼úÀÌ ¹Ù·Î ÀÌ ºñ¹Ð¹øÈ£·Î º¸È£ÇÏ´Â zip ÆÄÀÏÀÔ´Ï´Ù. ÷ºÎ ÆÄÀÏÀÇ ºñ¹Ð¹øÈ£´Â ±ÛÀÚ¿Í ¼ýÀÚ·Î ¼¯¿© ·£´ýÇÏ°Ô Á¶Çյ˴ϴÙ. ¹°·Ð, À̸ÞÀÏ¿¡´Â ºñ¹Ð¹øÈ£°¡ Æ÷ÇԵǾî ÀÖ¾î ½±°Ô ¾Ë ¼ö´Â ÀÖ½À´Ï´Ù.

¸¸¾à zip ÆÄÀÏ¿¡ ºñ¹Ð¹øÈ£¸¦ ³Ö¾î¼­ ¿­¾î¼­ ½ÇÇàÀ» Çϸé, Storm ¿úÀ» PC¿¡ ¼³Ä¡ÇÏ°í ¹ÙÀÌ·¯½º ½ºÄ³³Ê·ÎºÎÅÍ ÀÚ½ÅÀ» º¸È£Çϱâ À§ÇØ ·çƮŶÀ» ÀÌ¿ëÇÏ¿© ¼û±é´Ï´Ù. ·çƮŶ¿¡ »ç¿ëµÇ´Â ´ëÇ¥ÀûÀÎ ÆÄÀÏÀº wincom32.sysÀÌ°í ´ÙÀ½°ú °°ÀÌ ·çƮŶ ŽÁö ÇÁ·Î±×·¥À» ã¾Æ ³¾ ¼ö ÀÖ½À´Ï´Ù.


·çƮŶ ±¸¼º¿ä¼Ò

SSDT
ZwEnumerateKey
C:\WINDOWS\system32\wincom32.sys

SSDT
ZwEnumerateValueKey
C:\WINDOWS\system32\wincom32.sys

SSDT
ZwQueryDirectoryFile
C:\WINDOWS\system32\wincom32.sys

IRP
\Driver\Tcpip->IRP_MJ_DEVICE_CONTROL
\\??\C:\WINDOWS\system32\wincom32.sys

¡¡ 3
¡¡
¿¬¹æ´ëÃÑÅë[4±º´Ü] ´ÔÀÇ ´Ù¸¥±Û º¸±â
ÁÁÀº ³»¿ëÀÇ ±ÛÀ̶ó¸é ÃßÃµÇØÁÖ¼¼¿ä.
·Î±×ÀÎÀ» ÇÏÁö ¾Ê¾Æµµ Ãßõ ÇÏ½Ç ¼ö ÀÖ½À´Ï´Ù.
211.229.163.xxx
ºÒ¹ý ±¤°í±Û ½Å°íÇϱâ
I
   ÀÌ °Ô½Ã¹°ÀÇ ´ñ±Û º¸±â
ÃßõÁ¦¾È³»
ÁÁÀº °Ô½Ã¹°¿¡´Â ÃßõÀ» ÇÒ ¼ö ÀÖ½À´Ï´Ù.ÃßõÀÌ 5 ÀÌ»óÀÌ¸é ¸ÞÀÎÆäÀÌÁö Çìµå¶óÀο¡ °Ô½Ã¹°À» °É¾î µå¸³´Ï´Ù.
Àû¸³µÈ Æ÷ÀÎÆ®·Î ÁøÇàÁßÀÎ À̺¥Æ®¿¡ Âü¿©ÇÏ½Ã¾î °æÇ°À» ¹Þ¾Æ°¡½Ç ¼ö ÀÖ½À´Ï´Ù.

Æ÷ÀÎÆ®¾È³» ±ÛÀÛ¼º : 20Á¡, ÃßõŬ¸¯ : 2Á¡, Ãßõ¹ÞÀº»ç¶÷ 2Á¡, ´ñ±ÛÀÛ¼º : 4Á¡ (2008.12.29ÀϺÎÅÍ)
  ´ç½Å±â¾ï (bluemun) bluemun´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-17 08:56 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  Á¦ PCÇØÅ·ÇØµµ °¡Á®°¥ °Í ¾ø¾î¼­..
  ´Ï ¾Ö¹Ì (pmicro) pmicro´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-17 23:36 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  Á»ºñ°¡ ¸¹¾Æ Áö°Ú±º¿ä.^^
  Noir (iamafool) iamafool´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-18 01:12 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  ÀÌ»óÇÑ ¸ÞÀÏÀº ¿ª½Ã ¾Èº¸´Â°Ô »óÃ¥À̱º¿ä.
  ¹ö¸²¹ÞÀºÃµ»ç (ljhhjw) ljhhjw´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-21 17:24 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  À§ÇèÇÑ ³à¼®À̱º¿ä
  blasty (ID) blasty´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-22 22:15 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  ¹ÙÀÌ·¯½º·Î Â÷´ÜÀÌ µÇ´Â°¡¿ä?
»ç¿ë±â/ÇÊÅ×±â
  ¾ÆÆ²¶õ/ÆÄÀεå¶óÀÌºê ¿Ü ¹ÙÀÌ·² ÀÇ½É °Ô½Ã¹°Àº ¸ðµÎ »èÁ¦Á¶Ä¡ÇÕ´Ï´Ù. 2 °¨ÀÚ³ª¹« 7 14.01.22 80441
  µ¿¿µ»ó ¾÷·Îµå ¹æ¹ý ¾È³» 1 °¨ÀÚ³ª¹« 3 10.02.10 89950
  Á¤º¸°øÀ¯ ÅëÇÕ°Ô½ÃÆÇ ÀÌ¿ë¾È³» (09.09.02 ¼öÁ¤) 2 °¨ÀÚ³ª¹« 2 08.08.12 86637
31624 ÇʵåÅ×½ºÆ®   ¾ÛÄÚ A102 3¸ðµå ½ºÅÄ´Ùµå ±×¸³ °ÔÀÌ¹Ö À¯¹«¼± ¸¶¿ì½º ¾ÆÀ̸¶ 0 18:34:46 13
31623 ÇʵåÅ×½ºÆ®   PALIT ÁöÆ÷½º RTX 5060 Ti INFINITY 3 D7 16GB ÀÌ¿¥ÅØ °ÔÀÌ¹Ö ±×·¡ÇÈÄ«µå »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 25.10.18 26
31622 °³Àλç¿ë±â   ¾ÈÅØ Ç÷°½º ÇÁ·Î »ç¿ë±â ±î¹«Ä¡±â 0 25.10.18 41
31621 °³Àλç¿ë±â   Poor Bunny is a perfect blend of cuteness and chaos. Melon Playground 0 25.10.15 54
31620 °³Àλç¿ë±â   My Experience Playing Melon Playground Melon Playground 0 25.10.15 60
31619 ÇʵåÅ×½ºÆ®   3´Ü°è ³ôÀÌ Á¶Àý °¡´ÉÇÑ ¸¶ÀÌÅ©·Î´Ð½º WIZMAX ÆÄ¿ö¾÷ ŰƮ µ¿°íµ¿¶ô 0 25.10.14 59
31618 ÇʵåÅ×½ºÆ®   Microsoft ¼­Çǽº ÇÁ·Î11 Ultra7 ·ç³ª·¹ÀÌÅ© ³ëÆ®ºÏ »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 25.10.14 69
31617 °³Àλç¿ë±â   The Addictive Fun of Wordle Unlimited: Play Without Limits! LisamiokRippy 0 25.10.13 76
31616 °³Àλç¿ë±â   3¿­ ¼ö³Ã Äð·¯ Ãßõ ÇÏ´Â ºê¶óº¸ÅØ DEEPCOOL LM360 »ç¿ë Èıâ Åõô! ban2y 0 25.10.04 218
31615 °³Àλç¿ë±â   °¡¼ººñ ÀÎÅÚ ¸ÞÀκ¸µå ASRock B760M Pro RS D5 ¿¡ÁîÀ© ¾ÆÀ̸¶ 0 25.10.04 170
31614 °³Àλç¿ë±â   speed stars Fred Berger 0 25.10.01 123
31613 ÇʵåÅ×½ºÆ®   EDDY CY100A ARGB (ºí·¢) °ø·© CPUÄð·¯ µ¿°íµ¿¶ô 0 25.10.01 127
31612 ÇʵåÅ×½ºÆ®   ¾÷±×·¹À̵åµÈ µà¾óŸ¿ö Äð·¯ Ãßõ PCCOOLER CPS RT620 PRO Ä«º»½ºÆ¿ (ºí·¢) µ¿°íµ¿¶ô 0 25.09.30 129
31611 ÇʵåÅ×½ºÆ®   Äõµå ¹êµå ±â¼ú žÀç ¿ÍÀÌÆÄÀÌ7 °øÀ¯±â ASUS ROG Rapture GT-BE98 »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 25.09.28 141
31610 ÇʵåÅ×½ºÆ®   PCCOOLER CPS RT620 PRO Ä«º»½ºÆ¿ µà¾óŸ¿ö Äð·¯ Ãßõ ¾ÆÀ̸¶ 0 25.09.27 152
31609 ÇʵåÅ×½ºÆ®   2¸¸¿ø´ë TDP220W ARGBÆÒÀ» ǰÀº CPUÄð·¯ Ãßõ MAXTILL MAX400 ARGB ¾ÆÀ̸¶ 0 25.09.26 149
31608 ÇʵåÅ×½ºÆ®   Ãʰí¼Ó PCIe5.0 SSD »ï¼º 9100pro ÀÎÅÚ Z890 ¼º´ÉÅ×½ºÆ® ¾Æ¸®¸¶ÆþÆþ 0 25.09.25 179
31607 ÇʵåÅ×½ºÆ®   SSD ÃÖ°­ Æ÷½ÄÀÚ ¼Óµµ¿Í ¿ë·®ÀÌ 2¹è·Î Ä¿Áø »ï¼ºÀüÀÚ 9100 PRO 8TB PCIe 5.0 NVM.. °­¹Î°Ç´ã 0 25.09.25 176
31606 ÇʵåÅ×½ºÆ®   ÀÎÅÚ ÄÚ¾î ¿ïÆ®¶ó7 ½Ã¸®Áî 265K ÀÛ¾÷¿ë °ÔÀÌ¹Ö AIPC ¼º´Éºñ±³ ¾Æ¸®¸¶ÆþÆþ 0 25.09.25 163
 1 [2][3][4][5][6][7][8][9][10]