Ä¿¹Â´ÏƼ
 
 
 
 
 
 
 
»ç¿ë±â/ÇÊÅ×±â

·çƮŶÀ» °ø°Ý ·çÆ®·Î °¡Áö´Â °­·ÂÇÑ Storm ¿ú Á¤º¸


¿¬¹æ´ëÃÑÅë[4±º´Ü] ¹Ìµð¾î·Î±×°¡±â

Á¶È¸ : 1865
ÀÛ¼ºÀÏ : 2007/04/17 00:43
°£Æí URL : http://www.bodnara.co.kr/bbs/bbs.html?D=20&num=96376
Æ®À§ÅÍ    ÆäÀ̽ººÏ
¾Æ¸¶ Storm ¿ú¿¡ ´ëÇØ µé¾îº» ÀûÀÌ ÀÖ½À´Ï±î? ¾Æ¸¶µµ ±¹¾î¸¦ ¾Ö¿ëÇÏ´Â »ç¶÷À̶ó¸é Àß ¸ð¸£´Â °æ¿ì°¡ ´ëºÎºÐÀÔ´Ï´Ù. ÀÌ ¿úÀº ÁÖ·Î Á¦¸ñ¿¡ Áß¿äÇÑ »ç½Ç/´º½º µîÀ» ´ãÀº ½ºÆÔ ¸Þ½ÃÁö¸¦ ÅëÇØ Àü¿°µÇÁö¸¸ ¿µ¾îÀÎ °ü°è·Î Çѱ¹ ȯ°æ¿¡¼­´Â ±×¸® Å©°Ô ÁÖ¸ñÀ» ¹ÞÁö ¸øÇÏ¿´½À´Ï´Ù.

Àá½Ã ÀÌ ¿ú¿¡ ´ëÇؼ­ ¼Ò°³ÇØ µå¸³´Ï´Ù. Storm ¿úÀº Áö³­ 1¿ù ´Þ¿¡ ÃÖÃÊ ¹ß°ßµÈ °ÍÀ¸·Î ¾Ë·ÁÁö°í ÀÖÀ¸¸ç, ÁÖ·Î ¿µ¾î±Ç ±¹°¡ÀÎ À¯·´ÂÊ¿¡ ¸¹ÀÌ °¨¿°µÇ¾ú½À´Ï´Ù. ƯÈ÷, Storm ¿úÀº ½ºÆÔ ¸Þ½ÃÁöÀÇ Á¦¸ñ¿¡ "230 dead as storm batters europe"¿Í °°ÀÌ Áß¿äÇÑ ´º½º°Å¸® Áï, ³¬½ÃÁú Á¦¸ñÀ¸·Î ¸¹Àº »ç¶÷µéÀÌ °¨¿°µÇ¾ú½À´Ï´Ù. 2¿ù ´Þ¿¡´Â ¹ß·»Å¸ÀÎ µ¥ÀÌ¿¡ °üÇؼ­, ÃÖ±Ù 3¿ù¿¡´Â Á¦ 3Â÷ ¼¼°è ´ëÀü¿¡ ´ëÇÑ ¼Ò½ÄÀ¸·Î Çѹø ´õ Àü¼¼°èÀûÀ¸·Î ÀüÆÄ°¡ µÇ¾ú½À´Ï´Ù.

ÀÌ ½ºÆÔ ¸Þ½ÃÁöÀÇ ÇüÅ´ ´ÙÀ½°ú °°½À´Ï´Ù.

Á¦¸ñ

Worm Detected!
Virus Detected!ected!
Virus Activity Detected!
ATTN!
Spyware Alert!
Spyware Detected!
Warning!
Trojan Alert!
Trojan Detected!
Worm Activity Detected!
Virus Alert!


º»¹®

From: Customer Support

Dear Customer,
Our robot has detected an abnormal activity from your IP address on sending e-mails.

Probably it is connected with the last epidemic of a worm which does not have official patches at the moment. We recommend you to install this patch to remove worm files and stop email sending, otherwise your account will be blocked. We had archived the patch because the worm can modify unpacked exe files. You should open the archive file, enter the password and run the patch immediately.

Password: {Random}

Customer Support Center Robot.

Attachment: Patch-{Random}.zip



÷ºÎ ÆÄÀÏ
º¸Åë 2°³ÀÇ Ã·ºÎÆÄÀÏÀ» Æ÷ÇÔÇÏ°í ÀÖ½À´Ï´Ù. Çϳª´Â ÀÏ¹Ý ±×¸² ÆÄÀÏ(*.gif)ÀÌ°í ³ª¸ÓÁö Çϳª°¡ ºñ¹Ð¹øÈ£·Î ¾ÐÃàµÈ zip ÆÄÀÏÀÔ´Ï´Ù. º¸Åë ´ÙÀ½ÀÇ À̸§À» °¡Áý´Ï´Ù.

patch-[RANDOM 4 DIGITS].zip
removal-[5 RANDOM DIGITS].zip
hotfix-[5 RANDOM DIGITS].zip
bugfix-[5 RANDOM DIGITS].zip

Stom ¿úÀÌ »õ·Ó°Ô ¼±º¸ÀÎ ±â¼úÀÌ ¹Ù·Î ÀÌ ºñ¹Ð¹øÈ£·Î º¸È£ÇÏ´Â zip ÆÄÀÏÀÔ´Ï´Ù. ÷ºÎ ÆÄÀÏÀÇ ºñ¹Ð¹øÈ£´Â ±ÛÀÚ¿Í ¼ýÀÚ·Î ¼¯¿© ·£´ýÇÏ°Ô Á¶Çյ˴ϴÙ. ¹°·Ð, À̸ÞÀÏ¿¡´Â ºñ¹Ð¹øÈ£°¡ Æ÷ÇԵǾî ÀÖ¾î ½±°Ô ¾Ë ¼ö´Â ÀÖ½À´Ï´Ù.

¸¸¾à zip ÆÄÀÏ¿¡ ºñ¹Ð¹øÈ£¸¦ ³Ö¾î¼­ ¿­¾î¼­ ½ÇÇàÀ» Çϸé, Storm ¿úÀ» PC¿¡ ¼³Ä¡ÇÏ°í ¹ÙÀÌ·¯½º ½ºÄ³³Ê·ÎºÎÅÍ ÀÚ½ÅÀ» º¸È£Çϱâ À§ÇØ ·çƮŶÀ» ÀÌ¿ëÇÏ¿© ¼û±é´Ï´Ù. ·çƮŶ¿¡ »ç¿ëµÇ´Â ´ëÇ¥ÀûÀÎ ÆÄÀÏÀº wincom32.sysÀÌ°í ´ÙÀ½°ú °°ÀÌ ·çƮŶ ŽÁö ÇÁ·Î±×·¥À» ã¾Æ ³¾ ¼ö ÀÖ½À´Ï´Ù.


·çƮŶ ±¸¼º¿ä¼Ò

SSDT
ZwEnumerateKey
C:\WINDOWS\system32\wincom32.sys

SSDT
ZwEnumerateValueKey
C:\WINDOWS\system32\wincom32.sys

SSDT
ZwQueryDirectoryFile
C:\WINDOWS\system32\wincom32.sys

IRP
\Driver\Tcpip->IRP_MJ_DEVICE_CONTROL
\\??\C:\WINDOWS\system32\wincom32.sys

¡¡ 3
¡¡
¿¬¹æ´ëÃÑÅë[4±º´Ü] ´ÔÀÇ ´Ù¸¥±Û º¸±â
ÁÁÀº ³»¿ëÀÇ ±ÛÀ̶ó¸é ÃßõÇØÁÖ¼¼¿ä.
·Î±×ÀÎÀ» ÇÏÁö ¾Ê¾Æµµ Ãßõ ÇÏ½Ç ¼ö ÀÖ½À´Ï´Ù.
211.229.163.xxx
ºÒ¹ý ±¤°í±Û ½Å°íÇϱâ
I
   ÀÌ °Ô½Ã¹°ÀÇ ´ñ±Û º¸±â
ÃßõÁ¦¾È³»
ÁÁÀº °Ô½Ã¹°¿¡´Â ÃßõÀ» ÇÒ ¼ö ÀÖ½À´Ï´Ù.ÃßõÀÌ 5 ÀÌ»óÀÌ¸é ¸ÞÀÎÆäÀÌÁö Çìµå¶óÀο¡ °Ô½Ã¹°À» °É¾î µå¸³´Ï´Ù.
Àû¸³µÈ Æ÷ÀÎÆ®·Î ÁøÇàÁßÀÎ À̺¥Æ®¿¡ Âü¿©ÇÏ½Ã¾î °æÇ°À» ¹Þ¾Æ°¡½Ç ¼ö ÀÖ½À´Ï´Ù.

Æ÷ÀÎÆ®¾È³» ±ÛÀÛ¼º : 20Á¡, ÃßõŬ¸¯ : 2Á¡, Ãßõ¹ÞÀº»ç¶÷ 2Á¡, ´ñ±ÛÀÛ¼º : 4Á¡ (2008.12.29ÀϺÎÅÍ)
  ´ç½Å±â¾ï (bluemun) bluemun´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-17 08:56 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  Á¦ PCÇØÅ·Çصµ °¡Á®°¥ °Í ¾ø¾î¼­..
  ´Ï ¾Ö¹Ì (pmicro) pmicro´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-17 23:36 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  Á»ºñ°¡ ¸¹¾Æ Áö°Ú±º¿ä.^^
  Noir (iamafool) iamafool´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-18 01:12 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  ÀÌ»óÇÑ ¸ÞÀÏÀº ¿ª½Ã ¾Èº¸´Â°Ô »óÃ¥À̱º¿ä.
  ¹ö¸²¹ÞÀºÃµ»ç (ljhhjw) ljhhjw´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-21 17:24 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  À§ÇèÇÑ ³à¼®À̱º¿ä
  blasty (ID) blasty´ÔÀÇ ¹Ìµð¾î·Î±× °¡±â  /  2007-04-22 22:15 / IP/ ½Å°í/ ÀÌ´ñ±Û¿¡´ñ±Û´Þ±â
  ¹ÙÀÌ·¯½º·Î Â÷´ÜÀÌ µÇ´Â°¡¿ä?
»ç¿ë±â/ÇÊÅ×±â
  ¾ÆƲ¶õ/ÆÄÀεå¶óÀÌºê ¿Ü ¹ÙÀÌ·² ÀÇ½É °Ô½Ã¹°Àº ¸ðµÎ »èÁ¦Á¶Ä¡ÇÕ´Ï´Ù. 2 °¨ÀÚ³ª¹« 6 14.01.22 57265
  µ¿¿µ»ó ¾÷·Îµå ¹æ¹ý ¾È³» 1 °¨ÀÚ³ª¹« 3 10.02.10 67089
  Á¤º¸°øÀ¯ ÅëÇÕ°Ô½ÃÆÇ ÀÌ¿ë¾È³» (09.09.02 ¼öÁ¤) 2 °¨ÀÚ³ª¹« 2 08.08.12 63968
31077 ÇʵåÅ×½ºÆ®   »çÆÄÀÌ¾î ¶óµ¥¿Â RX 7700 XT ÇÑ ´Þ°£ ¼Ò°³ÇØ º¸°Ú½À´Ï´Ù ¾Æ¸®¸¶ÆþÆþ 0 24.05.09 19
31076 ÇʵåÅ×½ºÆ®   µ¥½ºÅ©Å׸®¾î¿Ï¼º ¼±Á¤¸®Ã¥»ó Á¦´Ð½º Á¦·Îµå Á¦·Î¶óÀε¥½ºÅ© ¾Æ¸®¸¶ÆþÆþ 0 24.05.06 39
31075 ÇʵåÅ×½ºÆ®   ŸÀÏÄ«ÆäÆ® ¹Ù´Ú½Ã°ø ¸¸À¸·Îµµ ÀÛ¾÷½Ç ÀÎÅ׸®¾î ºÐÀ§±â ÀüȯÇϱ⠾Ƹ®¸¶ÆþÆþ 0 24.05.06 37
31074 ÇʵåÅ×½ºÆ®   ³ëĵÁö¿ø À¯Æ©ºê ¸¶ÀÌÅ© °íµ¶½º Ä«¸Þ¶ó ½º¸¶Æ®Æù ¹«¼± ¸¶ÀÌÅ© WEC ¾Æ¸®¸¶ÆþÆþ 0 24.05.04 56
31073 ÇʵåÅ×½ºÆ®   MSI ÇÁ·¹½ºÆ¼Áö 16 AI B1MG ³ëÆ®ºÏ È­¸éºñÀ² ¹× È­¸éÇ°Áú È®ÀÎ ¾Æ¸®¸¶ÆþÆþ 0 24.05.04 41
31072 ÇʵåÅ×½ºÆ®   MSI ÇÁ·¹½ºÆ¼Áö 16 AI B1MG ÀÎÅÚ 14¼¼´ë Ultra 7 ùÀλó ¾Æ¸®¸¶ÆþÆþ 0 24.05.04 38
31071 ÇʵåÅ×½ºÆ®   MSI ÇÁ·¹½ºÆ¼Áö ³ëÆ®ºÏ ÀÎÅÚ ÄÚ¾î¿ïÆ®¶ó À̾߱⠾Ƹ®¸¶ÆþÆþ 0 24.05.04 34
31070 ÇʵåÅ×½ºÆ®   È޴뼺±îÁö µ¸º¸ÀÌ´Â~! ¾ÆÀ̳ëÆ® X-Folding Tenkey Plus ¾Æ´ãÇÑ ÀÌÃþÁý 0 24.05.02 48
31069 ÇʵåÅ×½ºÆ®   ¸¶ÀÌÅ©·Ð Crucial DDR5-6000 CL48 PRO ¾Æ½ºÅ©ÅØ 16GBx2 »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 24.04.29 48
31068 ÇʵåÅ×½ºÆ®   HYTE Y70 ŹƮÀÎ °³¹æ°¨ÀÇ °­È­À¯¸® PC ÄÉÀ̽º ºí·¢ ¼­¸° »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 24.04.24 271
31067 °³Àλç¿ë±â   3¹è ´õ ºü¸¥ Áß°í 3090...¾ð¾î¸ðµ¨ ¼Óµµ ºñ±³ Ç÷¹À̽Š0 24.04.23 251
31066 ÇʵåÅ×½ºÆ®   ¿¡ÀÌÇȽº°ÔÀÌ¹Ö VM001 ¹«¼± ¹öƼÄø¶¿ì½º µ¿°íµ¿¶ô 0 24.04.23 251
31065 ÇʵåÅ×½ºÆ®   JBL LIVE 670NC ¹«¼± ºí·çÅõ½º ÇìµåÆù »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 24.04.22 280
31064 ÇʵåÅ×½ºÆ®   ºñÀì USB4 40G C to C 240W µð½ºÇ÷¹ÀÌ °¡¼ººñ ½ã´õº¼Æ® LÇü ÄÉÀÌºí ¾ÆÀ̸¶ 0 24.04.20 266
31063 °³Àλç¿ë±â   Introducing the most loved sports game Doodle Baseball Craig Buckner 0 24.04.16 794
31062 ÇʵåÅ×½ºÆ®   °¡¼ººñ ÀÏüÇü ¼ö·©Äð·¯ ¾Æƽ ¸®Äûµå ÇÁ¸®Àú 3 ¼­¸° »ç¿ë±â ¿Àº£¸£´ºÅ©·Î³ª 0 24.04.15 832
31061 ÇʵåÅ×½ºÆ®   ¹ö¹ÙÆÀ Verbatim 240W C to C PD3.1 ½ã´õº¼Æ®3 ÃæÀü ÄÉÀÌºí ¾ÆÀ̸¶ 0 24.04.14 805
31060 ÇʵåÅ×½ºÆ®   dz¼ºÇÑ »ç¿îµå~! ĵ½ºÅæ C601 Á¦ÆäÅä ¾Æ´ãÇÑ ÀÌÃþÁý 0 24.04.14 820
31059 ÇʵåÅ×½ºÆ®   BEEZAP ºñÀì USB4 40G C to C 240W µð½ºÇ÷¹ÀÌ °¡¼ººñ ½ã´õº¼Æ® ÄÉÀÌºí ¾ÆÀ̸¶ 0 24.04.14 793
 1 [2][3][4][5][6][7][8][9][10]