论文部分内容阅读
病毒名称:中国插件联盟病毒危害:搜狐影音是很多用户喜欢的一款播放软件,但是最近有用户发现其展示的广告联盟广告里面,带有一个IE远程代码执行漏洞的挂马代码。当挂马页面中的脚本被执行之后,就会从指定链接下载一个可执行文件,而这个可执行文件被称之为“中国插件联盟”下载者。当它在用户系统运行以后,它会继续下载一个下载者、一个远程控制木马和大量安装包到本地。新下载的下载者继续下载安装包,形
Virus name: China plug-in Union virus hazards: Sohu video is a lot of users like a player, but recently there are users find its display advertising inside ads, with a remote IE code execution vulnerability linked to the horse code. After the script in the linked page is executed, an executable file is downloaded from the specified link, and the executable file is called “China Plug-in Alliance”. When it runs on the user’s system, it continues to download a downloader, a remote-control trojan, and a host of installation packages locally. Newly downloaded download to continue to download the installation package, shape