cNotes 検索 一覧 カテゴリ

インジェクション - yahoo.js

Published: 2010/08/16

これもちょいちょい新しいものがみつかります。

関連:「インジェクション - 2677.in/yahoo.js」、「インジェクション - 4589.in/yahoo.js

7,8月に補足した関連インジェクション

 www.wangqiao365.com/img/yahoo.js
 www.cdbroad.com/Images/yahoo.js
 www.800816.com.cn/cache/yahoo.js
 www.gamecollege.co.kr/zboard/data/yahoo.js
 www.successtest.co.kr/files/yahoo.js
 www.yxf.me/caches/yahoo.js

 http://www.yxf.me/caches/yahoo.js

解読するとこう

VirusTotal的にはこう

http://www.virustotal.com/file-scan/report.html?id=1e32150f2f8c650744a4beec2e52d3e04f8d3e0a0e83628b7f5fd181156657ba-1281954915


 http://www.yxf.me/caches/ad.htm

http://www.virustotal.com/file-scan/report.html?id=6234f4cdf6af4d8db7480b201ef47bdeb8f44c7061c87dd661a8263502e6d03c-1281953996


 http://www.yxf.me/caches/news.html

http://www.virustotal.com/file-scan/report.html?id=b92df5506247fec52d0c3ae40aef70eaba5474c12852e4d931151d9a8cf2934c-1281955290


↓これ

「Windowsのヘルプとサポートセンターの脆弱性」 [MS10-042][CVE-2010-1885]

があるやつとないやつがあります。

 www.800816.com.cn/cache/hcp.html

http://www.virustotal.com/file-scan/report.html?id=25132610963b4e49305953760c2c61b3bb4d86f9bed51a3bd899a0a0e2fa687a-1281957476

VirusTotal便利になった。


 Domain ID:D958247-ME
 Domain Name:YXF.ME
 Domain Create Date:04-Jan-2010 08:33:42 UTC
 Domain Last Updated Date:05-Mar-2010 20:50:08 UTC
 Domain Expiration Date:04-Jan-2011 08:33:42 UTC
 Last Transferred Date:
 Trademark Name:
 Trademark Country:
 Trademark Number:
 Date Trademark Applied For:
 Date Trademark Registered:
 Sponsoring Registrar:35 Technology Co. Ltd. R119-ME (1316)
 Created by:35 Technology Co. Ltd. R119-ME (1316)
 Last Updated by Registrar:Afilias R54-ME
 Domain Status:OK
 Registrant ID:OLNI_2429980_0_0
 Registrant Name:yuxi fang
 Registrant Organization:yuxi fang
 Registrant Address:yuxi
 Registrant Address2:
 Registrant Address3:
 Registrant City:yuxi
 Registrant State/Province:Yunnan
 Registrant Country/Economy:CN
 
 123.71.255.52
 inetnum:        123.64.0.0 - 123.95.255.255
 netname:        CTTNET
 country:        CN
 descr:          China TieTong Telecommunications Corporation
 descr:          Jinze Mansion, 2 Guangningbo Street,
 descr:          Xicheng District, Beijing, China, 100032
 admin-c:        WP188-AP
 tech-c:         LM273-AP
 status:         ALLOCATED PORTABLE
 mnt-by:         MAINT-CNNIC-AP
 mnt-routes:     MAINT-CNNIC-AP
 mnt-lower:      MAINT-CN-CRTC
 changed:        hm-changed@apnic.net 20061103
 source:         APNIC
   Domain Name: WANGQIAO365.COM
   Registrar: XIN NET TECHNOLOGY CORPORATION
   Whois Server: whois.paycenter.com.cn
   Referral URL: http://www.xinnet.com
   Name Server: NS1.EVERDNS.COM
   Name Server: NS2.EVERDNS.COM
   Status: ok
   Updated Date: 13-jan-2010
   Creation Date: 13-jan-2010
   Expiration Date: 13-jan-2011
 
 121.12.105.151 
 inetnum:        121.12.105.0 - 121.12.105.255
 netname:        dongguanshiweiyiwangluokejiyoux
 descr:           guangdongshengdongguanshiguanchengqudongzongdadaodiwangshangwuzhongxin702
 country:        CN
   Domain Name: CDBROAD.COM
   Registrar: BIZCN.COM, INC.
   Whois Server: whois.bizcn.com
   Referral URL: http://www.bizcn.com
   Name Server: DNS.BIZCN.COM
   Name Server: DNS.CNMSN.NET
   Name Server: NS.CDNHOST.CN
   Name Server: NS.DNSFAMILY.COM
   Name Server: NS5.CNMSN.NET
   Name Server: NS6.CNMSN.NET
   Status: clientDeleteProhibited
   Status: clientTransferProhibited
   Updated Date: 17-nov-2009
   Creation Date: 14-nov-2002
   Expiration Date: 14-nov-2013
 
 118.122.176.17
 
 inetnum:        118.122.176.0 - 118.122.176.63
 netname:        SC-SN-SHANGZHONGLIAN-INFO-CORP
 descr:          SC-SN-SHANGZHONGLIAN-INFO-CORP
 descr:          Sichuan China
 country:        CN
 Domain Name: 800816.com.cn
 ROID: 20050906s10011s18651687-cn
 Domain Status: ok
 Registrant Name: 点即通恒信
 Administrative Email: wtu@cinchon.com
 Name Server:ns1.51.net
 Name Server:ns2.51.net
 Registration Date: 2005-09-06 16:29
 Expiration Date: 2011-09-06 16:29
 
 222.35.2.66
 
 inetnum:        222.32.0.0 - 222.63.255.255
 netname:        CRTC
 descr:          CHINA RAILWAY TELECOMMUNICATIONS CENTER
 descr:          22F Yuetan Mansion,Xicheng District,Beijing,P.R.China
 country:        CN
 Domain Name               : gamecollege.co.kr
 Registrant                : A. K International
 Registrant Address        : 3F Won-Kwang B/D 43-1, Wonhyoro 3(sam)-ga Yongsan-gu  Seoul, KR
 Registrant Zip Code       : 140848
 Administrative Contact(AC): AK Communications
 AC E-Mail                 : dreamvj@amusementkorea.co.kr
 AC Phone Number           : 02-702-7963
 Registered Date           : 1999. 10. 11.
 Last updated Date         : 2008. 11. 27.
 Expiration Date           : 2010. 10. 11.
 
 211.236.180.94
 
 inetnum:      211.232.0.0 - 211.255.255.255
 netname:      KRNIC-KR
 descr:        KRNIC
 descr:        Korea Network Information Center
 country:      KR
 Domain Name               : successtest.co.kr
 Registrant                : Hoi Young Choi
 Administrative Contact(AC): Hoi Young Choi
 AC E-Mail                 : pipen71@yahoo.co.kr
 Registered Date           : 2007. 05. 12.
 Last updated Date         : 2007. 10. 30.
 Expiration Date           : 2011. 05. 12.
 
 61.100.180.104
 
 inetnum:      61.96.0.0 - 61.111.255.255
 netname:      KRNIC-KR
 descr:        KRNIC
 descr:        Korea Network Information Center
 country:      KR

[カテゴリ:インジェクション観察日記]

by jyake