{"id":8786,"date":"2014-07-23T09:00:18","date_gmt":"2014-07-23T01:00:18","guid":{"rendered":"https:\/\/blog.trendmicro.com.tw\/?p=8786"},"modified":"2014-07-11T20:19:28","modified_gmt":"2014-07-11T12:19:28","slug":"%e7%b6%b2%e8%b7%af%e9%8a%80%e8%a1%8c%e6%83%a1%e6%84%8f%e7%a8%8b%e5%bc%8f%e6%96%b0%e6%89%8b%e6%b3%95%e4%bd%bf%e7%94%a8-tor-%e6%b4%8b%e8%94%a5%e8%b7%af%e7%94%b1%e5%99%a8%e4%be%86%e9%9a%b1%e8%97%8f","status":"publish","type":"post","link":"https:\/\/blog.trendmicro.com.tw\/?p=8786","title":{"rendered":"\u7db2\u8def\u9280\u884c\u60e1\u610f\u7a0b\u5f0f\u65b0\u624b\u6cd5:\u4f7f\u7528 Tor \u6d0b\u8525\u8def\u7531\u5668\u4f86\u96b1\u85cf\u5e55\u5f8c\u64cd\u7e31 (C&#038;C) \u901a\u8a0a\uff0c\u4e26\u8eb2\u907f\u5075\u6e2c"},"content":{"rendered":"<p>\u7db2\u8def\u9280\u884c\u60e1\u610f\u7a0b\u5f0f\u4f5c\u8005\u53c8\u518d\u5ea6\u5275\u65b0\uff0c\u5728\u539f\u672c\u7684\u6280\u5de7\u4e4b\u5916\u53c8\u589e\u52a0\u4e86\u8a31\u591a\u624b\u6cd5\u3002\u6700\u503c\u5f97\u6ce8\u610f\u7684\u662f\u65b0\u7684 <a href=\"https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/64-bit-zbot-leverages-tor-improves-evasion-techniques\/\">ZeuS\/ZBOT \u8b8a\u7a2e<\/a>\u51fa\u73fe\u4e86 64 \u4f4d\u5143\u7248\u672c\uff0c\u6703\u4f7f\u7528 Tor \u6d0b\u8525\u8def\u7531\u5668\u4f86\u96b1\u85cf\u5e55\u5f8c\u64cd\u7e31 (C&amp;C) \u901a\u8a0a\uff0c\u4e26\u4e14\u8eb2\u907f\u60e1\u610f\u7a0b\u5f0f\u9632\u8b77\u8edf\u9ad4\u7684\u5075\u6e2c\u3002\u6b64\u5916\uff0c\u6211\u5011\u4e5f\u770b\u5230\u4e00\u500b\u53ea\u80fd\u5728\u7279\u5b9a\u65e5\u671f\u57f7\u884c\u4f46\u5176\u4ed6\u6642\u5019\u6703\u7576\u6389\u7684 ZeuS\/ZBOT <a href=\"https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/zeus-downloader-runs-in-january-crashes-rest-of-the-year\/\">\u5783\u573e\u90f5\u4ef6\u9644\u4ef6<\/a>\u3002<\/p>\n<p>\u5728\u63a7\u5236\u53f0 (CPL) \u60e1\u610f\u7a0b\u5f0f\u65b9\u9762\uff0c\u6211\u5011\u767c\u73fe\u4e00\u500b\u53ea\u6703\u5f71\u97ff\u62c9\u4e01\u7f8e\u6d32\u4f7f\u7528\u8005\u7684 <a href=\"https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/banload-limits-targets-via-security-plugin\/\">BANLOAD \u8b8a\u7a2e<\/a>\uff0c\u5176\u5224\u65b7\u65b9\u5f0f\u662f\u900f\u904e\u4f7f\u7528\u8005\u9632\u8b77\u8edf\u9ad4\u7684\u5916\u639b\u7a0b\u5f0f\u3002\u6b64\u5916\uff0c\u9084\u6709\u53e6\u4e00\u500b\u8b8a\u7a2e\u6703\u5229\u7528\u6839\u672c\u4e0d\u5b58\u5728\u7684 <a href=\"https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/whatsapp-desktop-client-doesnt-exist-used-in-spam-attack-anyway\/\">WhatsApp<\/a> \u684c\u9762\u7528\u6236\u7aef\u7a0b\u5f0f\u4f86\u5f15\u8a98\u4f7f\u7528\u8005\uff0c\u9032\u800c\u6563\u5e03\u3002\u66f4\u7cdf\u7684\u662f\uff0c\u7576\u5b83\u57f7\u884c\u6642\u9084\u6703\u4e0b\u8f09\u4e00\u500b BANKER \u8b8a\u7a2e\u5230\u5df2\u53d7\u611f\u67d3\u7684\u96fb\u8166\u4e0a\u3002<\/p>\n<p>\u5118\u7ba1\u51fa\u73fe\u65b0\u7684\u624b\u6cd5\uff0c\u7db2\u8def\u9280\u884c\u60e1\u610f\u7a0b\u5f0f\u57fa\u672c\u4e0a\u4ecd\u6c92\u6709\u6539\u8b8a\u3002\u4ed6\u5011\u5728\u67d0\u4e9b\u570b\u5bb6\u4f9d\u7136\u975e\u5e38\u666e\u904d\uff0c\u5982\u7f8e\u570b (23%)\u3001\u65e5\u672c (10%) \u548c\u5370\u5ea6 (9%)\uff0c\u800c\u4e14\u96a8\u8457\u7db2\u969b\u7db2\u8def\u4f7f\u7528\u8005\u8207\u7dda\u4e0a\u4ea4\u6613\u7684\u7a69\u5b9a\u6210\u9577\uff0c\u9019\u4e9b\u7a0b\u5f0f\u4e5f\u8d8a\u4f86\u8d8a\u591a\u3002\u4e8b\u5be6\u4e0a\uff0c\u7db2\u8def\u9280\u884c\u60e1\u610f\u7a0b\u5f0f\u7684\u6578\u91cf\u5728\u7b2c\u4e00\u5b63\u6210\u9577\u4e86 3%\uff0c\u5f9e 2013 \u5e74\u7b2c\u4e00\u5b63\u7684 113,000 \u500b\u6210\u9577\u81f3 116,000 \u500b\u3002<\/p>\n<p><a href=\"https:\/\/blog.trendmicro.com.tw\/wp-content\/uploads\/2014\/07\/Online-banking-malware-sported-new-routines.docx.png\"><img loading=\"lazy\" decoding=\"async\" alt=\"IOE Online banking malware sported new routines.docx\" src=\"https:\/\/blog.trendmicro.com.tw\/wp-content\/uploads\/2014\/07\/Online-banking-malware-sported-new-routines.docx.png\" width=\"640\" height=\"440\" \/><\/a><br \/>\n<i>\u300c\u96a8\u8457\u7dda\u4e0a\u7aca\u76dc\u7684\u57f7\u6cd5\u884c\u52d5\u65e5\u76ca\u56b4\u683c\uff0c\u7db2\u8def\u72af\u7f6a\u8005\u5df2\u958b\u59cb\u589e\u52a0\u984d\u5916\u7684\u533f\u540d\u5316\u63aa\u65bd\u4f86\u4fdd\u969c\u5176\u8eab\u5206\u5b89\u5168\u4ee5\u907f\u514d\u906d\u5230\u902e\u6355\u3002\u56e0\u6b64\uff0cTor \u548c\u5e55\u5f8c\u64cd\u7e31 (C&amp;C) \u901a\u9053\u7684\u904b\u7528\uff0c\u53ef\u8b93\u4ed6\u5011\u64c1\u6709\u66f4\u5927\u7684\u533f\u540d\u6027\uff0c\u66f4\u4e0d\u6613\u88ab\u8cc7\u8a0a\u5b89\u5168\u8edf\u9ad4\u6240\u5075\u6e2c\u53ca\u7834\u7372\u3002\u300d<\/i><\/p>\n<p><i>\u2014Martin R\u00f6sler (\u5a01\u8105\u7814\u7a76\u90e8\u9580\u8cc7\u6df1\u7e3d\u76e3)<\/i><\/p>\n<p>&nbsp;<\/p>\n<h3><b><a href=\"https:\/\/www.trendmicro.com.tw\/edm\/Tracking.asp?id=3279&amp;name=20140707\"><img loading=\"lazy\" decoding=\"async\" alt=\"851 215 FB Cover promotion812\" src=\"https:\/\/blog.trendmicro.com.tw\/wp-content\/uploads\/2014\/07\/851-215-FB-Cover-promotion812.jpg\" width=\"511\" height=\"188\" \/><\/a><\/b><\/h3>\n<h3><b>\u842c\u7269\u806f\u7db2\u6642\u4ee3\uff0c\u4f01\u696d\u5fc5\u8981\u638c\u63e1\u7684\u8cc7\u5b89\u56db\u5927\u9762\u5411<\/b><\/h3>\n<h4>\u842c\u7269\u806f\u7db2\u8cc7\u8a0a\u5b89\u5168\u4e2d\u5fc3\u3000\u3000\u591a\u5c64\u6b21\u7684\u8cc7\u8a0a\u5b89\u5168\u4e2d\u5fc3\u63a7\u7ba1<br \/>\n\u842c\u7269\u806f\u7db2\u99ed\u5ba2\u653b\u9632\u624b\u6cd5\u3000\u3000\u6df1\u5ea6\u5206\u6790APT\u653b\u64ca\uff0c\u5efa\u7acb\u5b8c\u6574\u7684\u9632\u79a6\u67b6\u69cb<br \/>\n\u842c\u7269\u806f\u7db2\u96f2\u7aef\u9632\u8b77\u67b6\u69cb\u3000\u3000\u79c1\u6709\u96f2\u00a0\u3001\u516c\u6709\u96f2\u3001\u6df7\u5408\u96f2\u7684\u8cc7\u8a0a\u5b89\u5168<br \/>\n\u842c\u7269\u806f\u7db2\u884c\u52d5\u5b89\u5168\u6a5f\u5236\u3000\u3000\u4f01\u696d\u884c\u52d5\u88dd\u7f6e\u5b89\u5168\u7b56\u7565<\/h4>\n<p>\u7576\u842c\u7269\u806f\u7db2IoE(Internet of Everything)\u6b63\u5f85\u5d1b\u8d77\uff0c\u7f8e\u570b\u8457\u540d\u7814\u7a76\u6a5f\u69cb\u66f4\u770b\u5230\u6bd4\u73fe\u4eca\u7d93\u6fdf\u5927\u4e0a30\u500d\u7684\u767c\u5c55\u5951\u6a5f\uff1b\u5f15\u9818\u4f01\u696d\u8cc7\u5b89\u5e03\u5c40\u7684\u60a8\uff0c\u8a72\u5982\u4f55\u9810\u898b\u5177\u524d\u77bb\u50f9\u503c\u7684\u8cc7\u5b89\u8da8\u52e2\uff0c\u70ba\u300c\u842c\u7269\u53ef\u806f\u7db2\u2027\u7121\u8655\u4e0d\u8cc7\u5b89\u300d\u7684\u6642\u4ee3\u53ca\u65e9\u6e96\u5099\uff1f<a href=\"https:\/\/www.trendmicro.com.tw\/edm\/Tracking.asp?id=3279&amp;name=20140707\">\u3010\u5373\u523b\u5831\u540d!!CLOUDSEC 2014\u4f01\u696d\u8cc7\u5b89\u9ad8\u5cf0\u8ad6\u58c7\u3011<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u7db2\u8def\u9280\u884c\u60e1\u610f\u7a0b\u5f0f\u4f5c\u8005\u53c8\u518d\u5ea6\u5275\u65b0\uff0c\u5728\u539f\u672c\u7684\u6280\u5de7\u4e4b\u5916\u53c8\u589e\u52a0\u4e86\u8a31\u591a\u624b\u6cd5\u3002\u6700\u503c\u5f97\u6ce8\u610f\u7684\u662f\u65b0\u7684 ZeuS\/ZBOT \u8b8a\u7a2e [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wpscppro_dont_share_socialmedia":false,"_wpscppro_custom_social_share_image":0,"_facebook_share_type":"","_twitter_share_type":"","_linkedin_share_type":"","_pinterest_share_type":"","_linkedin_share_type_page":"","_instagram_share_type":"","_medium_share_type":"","_threads_share_type":"","_google_business_share_type":"","_selected_social_profile":[],"_wpsp_enable_custom_social_template":false,"_wpsp_social_scheduling":{"enabled":false,"datetime":null,"platforms":[],"status":"template_only","dateOption":"today","timeOption":"now","customDays":"","customHours":"","customDate":"","customTime":"","schedulingType":"absolute"},"_wpsp_active_default_template":true},"categories":[1335,12,1268,906,1294,510],"tags":[1607,444],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts\/8786"}],"collection":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=8786"}],"version-history":[{"count":0,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts\/8786\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=8786"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=8786"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=8786"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}