C^[lbgEZLeBE\[Ṽ[_[AЃV}ebNisaJu20-1 aJCtHX^[A\ВFcFj́ASymantec Security ResponseiV}ebNEZLeBEX|XjɊꂽ2003N2ɂ錎ԁuECXQLOvƁASymantec DeepSight Threat Management SystemiV}ebNEfB[vTCgEXbgE}lWgEVXej̃ZT[musANZXLOv\܂B
ԃECXQLOi2003N2Fj
|
ECX |
|
O
|
O
ʔ |
|
| 1 |
W32.KleziNYj |
448 |
1 |
|
[/ECX |
| 2 |
Trojan Horse ig[WEz[Xj |
93 |
6 |
|
gC̖ؔn |
| 3 |
HTML.Redlof.Aibhtj |
93 |
2 |
|
ECX |
| 4 |
W32.Sobigi\|rbNj |
37 |
12 |
|
[ |
| 5 |
IRC TrojaniACA[V[j |
35 |
4 |
|
gC̖ؔn |
| 6 |
W95.HybrisinCuXj |
32 |
3 |
|
[ |
| 7 |
W32.Bugbear@mmioOxAj |
24 |
5 |
|
[ |
| 8 |
W32.Nimdaij_j |
24 |
11 |
|
[ |
| 9 |
JS.Exception.ExploitiGNZvVEGNXvCgj |
21 |
17 |
|
gC̖ؔn |
| 10 |
W32.FunLoveit@uj |
21 |
10 |
|
ECX |
ԃECXQLOi2003N2FWorld Widej
|
ECX |
|
O
|
O
ʔ |
|
| 1 |
W32.KleziNYj |
12,874 |
1 |
|
[/ECX |
| 2 |
Trojan Horse ig[WEz[Xj |
8,592 |
5 |
|
gC̖ؔn |
| 3 |
JS.Exception.ExploitiGNZvVEGNXvCgj |
3,483 |
6 |
|
gC̖ؔn |
| 4 |
IRC TrojaniACA[V[j |
2,688 |
13 |
|
gC̖ؔn |
| 5 |
HTML.Redlof.Aibhtj |
2,572 |
9 |
|
ECX |
| 6 |
W32.Sobigi\|rbNj |
2,472 |
2 |
|
[ |
| 7 |
W95.HybrisinCuXj |
2,271 |
10 |
|
[ |
| 8 |
W32.Nimdaij_j |
2,171 |
8 |
|
[ |
| 9 |
W32.Spaces.1445iXy[Xj |
1,670 |
12 |
|
ECX |
| 10 |
W32.FunLoveit@uj |
1,655 |
11 |
|
ECX |
* 2003N21228̊ԁASymantec Security Responseɓ͂ꂽECX̏10ʂ܂ł̃LO
2003N2̃ECXl@
2IRC TrojaniACA[V[Eg[WjɂQ}A5ʁAWorld Wide4ʂƂʂɂȂ܂BIRC Trojan̓C^[lbgE[E`bgiIRCj̃NCAgvOCXg[ĂVXeWIɂgC̖ؔnɑĎgpėpołBIRC Trojan͌ݐ̂̂mFĂ܂Ȃ͋ʂĂ܂BIRCT[oʂă[ŨVXeɐNÃ[ŨRs[^IRC T[oɖɐڑ悤Ƃ܂BڑƁAnbJ[͖ɊJꂽIRCڑ|[gʂāÃVXe𓐂ݏoAt@C폜ACD-ROM hCu gCJA܂VXeVbg_EȂǂ̑sƂł܂BIRC̓gC̖ؔnp邾ł͂ȂNimdaȂǂ̃[oĤЂƂƂėp邱ƂȂĂ܂B
IRCoHƂECXłAlg̃p\RɐECX{Ă邱Ƃ͂܂BƂɂẮAt@CAEH[IRCT[rX̃gtBbNubNȂǂ̑LłB
VȐNoHĂ͐N݂ECXɂ́AlAl̃ECXƒIȃECX`t@C̍XVsƂ܂B
| 2003N2ɁAV}ebNł162̐VECXAΉ܂B݁AV}ebN͒ʎZ63,150̃ECX`t@CĂ܂B |
ECXŐV|L URL ɂčŐṼECXA쏜c[ЉĂ܂|
http://www.symantec.com/region/jp/sarcj/index.html
ԕsANZXLOi2003N2FWorld Widej
|
@@ |
ZT[ |
| 1 |
Microsoft Index Server/Indexing Services ISAPI Buffer Overflow Attack |
@402 |
| 2 |
Generic HTTP 'cmd.exe' Request Attack |
342 |
| 3 |
Generic HTTP Directory Traversal Attack |
304 |
| 4 |
Matt Wright FormMail Attacks |
297 |
| 5 |
Microsoft FrontPage Sensitive Page Attack |
246 |
* 2003N21228̊ԁAuSymantec DeepSight@Threat@Management@SystemvE19, 000̃ZT[msANZX5ʂ܂ł̃LOB̂͐NmVXeŗpVOl`̒ʏ́B
2003N2̕sANZXl@
́uMicrosoft Indexing Server/Indexing Services ISAPI Buffer Overflow AttackvłĂ܂BCodeRedɂUłB300ȏ̃ZT[ꂽuGeneric HTTP ecmd.exef Request AttackvƁuGeneric HTTP Directory Traversal AttackvNimdaɂ̂łBNimdǎ͍ԃECXQLOł10ʈȓɓĂ܂B̌ʂCodeRedNimda͔1No߂Ă܂ɂ̐ĂȂƂƂ킩܂B
Uɂ͏ɍŐṼpb`KpĂKv܂BɁAJT[rXzXgĂAHTTPAFTPA[ADNST[rXȂǁAt@CAEH[ăANZX\ɂĂRs[^ɑĂ͕KŐVpb`KpĂ悤SĂB
il@FSymantec Security Response VTj
Symantec Security Response
V}ebŇւ鐢Eő̃C^[lbgEZLeBBÊǂŔ邩킩ȂVȋЂɔA100 lƂ 24 365 ̐ŁAZLeB̌VECXւ̑ΉAƎ㐫̎WE͓sĂ܂BAWA̒SłғRs[^{ł̃T|[gdAɂ̋_ 1 uĂ鑼AčABAB̊enɕUČv 6 ̋_uĂ܂B
Symantec Deepsight Threat Management System
C^[lbg̕sȍUȂǂ̏鑁xVXeBSE180JȏA19,000̃p[gi[̂Ƃɂt@CAEH[NmVXeWŨf[^WA͂邱ƂŁAŐV̍UApb`̏ȂΏ@Ȃǂf[U֓͂܂B
|