Level 0>http://www.bjhh.cn/360/360.htm
Level 1>http://www.bjhh.cn/360/x.htm
Exploit:
Sina Downloader BID-30223
OurGame various errors SA30469
RealPlayer Import stack overflow CVE-2007-5601
Level 2>http://cnnic.zik.dj/vv.css (Trojan)
Level 2>http://www.bjhh.cn/360/all.css
Level 3>http://www.bjhh.cn/360/4.htm
Exploit:
RealAudioObjects.RealAudio ActiveX control CVE-2008-1309
Level 4>http://cnnic.zik.dj/vv.css (Trojan)
Level 3>http://www.bjhh.cn/360/3.htm
Level 2>http://www.bjhh.cn/360/1.htm
Exploit:
Microsoft Windows MDAC Vulnerability CVE-2006-0003
Level 3>http://www.bjhh.cn/360/15.js
Level 3>http://www.bjhh.cn/360/16.js
Level 2>http://www.bjhh.cn/360/newlz.htm
Level 3>http://www.bjhh.cn/360/newlz.css
Level 2>http://www.bjhh.cn/360/s.htm
Exploit:
Sina Downloader BID-30223
Level 3>http://www.bjhh.cn/360/office.css
Level 4>http://cnnic.zik.dj/vv.css
Level 2>http://www.bjhh.cn/360/office.htm
Exploit:
ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution CVE-2008-2463
Level 3>http://www.bjhh.cn/360/office.css
Level 4>http://cnnic.zik.dj/vv.css (Trojan)
Level 2>http://www.bjhh.cn/360/bf.htm
Level 3>http://www.bjhh.cn/360/2.css
Level 3>http://www.bjhh.cn/360/bf.js
Level 2>http://www.bjhh.cn/360/cx.htm
Level 3>http://www.bjhh.cn/360/2.css
Level 2>http://www.bjhh.cn/360/2.htm
Exploit:
Ourgame GLWorld HanGamePluginCn18 Class ActiveX Control Buffer Overflows CVE-2008-0647
Level 2>http://www.bjhh.cn/360/pp.htm
Level 3>http://www.bjhh.cn/360/pp.pdf
Level 2>http://www.bjhh.cn/360/7.htm
Level 3>http://www.bjhh.cn/360/7.css
Level 1>http://www.bjhh.cn/360/fff.swf
Level 1>http://www.bjhh.cn/360/iie.swf
The sample was sent to virustotal

Disclaimer:
Whatever url links that posted above contain malicious files/trojan/virus that could harm your systems and information be stolen;Usage:URL links that posted only used for IT security officers, researchers and personal collection only. Any farmful actions totally prohibited. Used it with your own risks and wisely. Whatever risks, and consequences is totally out from to this web owner responsibility.
0 comments:
Post a Comment