¥]¬A¦U¤j°Ó·~¨¾¬r³nÅé¼t°ÓÁɪùÅK§J¡BÁͶլì§Þ¡BMcAfee¡BCA¡BF-Secure¡A¥H¤Î¶}©ñì©l½X¯f¬r±½´y³nÅéClam AntiVirusµ¥¡A³£¦b2005¦~¶¡¡A¥ý«á³Qµo²{¦h°_º|¬}ªº²£¥Í¡C
¥ý¬O¥h¦~¤G¤ë©³¡A¥Ñ¹q¸£¦w¥þ·~ªÌInternet Security System¡]ISS¡^µo²{ÁͶլì§Þªº¨¾¬r¬r³nÅ餤¡A§t¦³¥i¯à´²¼½¯f¬r·P¬Vªº·å²«¡C§ðÀ»ªÌ¥i»s§@¤@Ó§Q¥Î¸Óº|¬}ªºµ{¦¡¡A³y¦¨¤Ï¬r³nÅé¬V¤W¯f¬r¡A³à¥¢ªý¾×´c·Nµ{¦¡ªº¥\¥Î¡C¸Ó¶µ·å²«»P¤§«e¦bÁɪùÅK§J©MF-Secure³nÅé©Ò§ä¨ìªºº|¬}Ãþ¦ü¡A¤@¥¹³Q§Q¥Î±N¾ÉP¨¾¬r³nÅé¦Û°Ê§ï¶]´c·Nµ{¦¡¡C°ÝÃD²£¥Íªºì¦]¬OºÙ¬°¡u°ïÅ|·¸¦ì¡v(heap overflow)ªº°O¾ÐÅé¿ù»~¡C
¤£¨ì¤@Ó¤ë«á¡AMcAfeeªº¡u¨¾¬rµ{¦¡®w¡v(Antivirus Library)¡A¦A³Qµo²{ÄY«ªº±`¥Î¯f¬r±½ºËµ{¦¡¦w¥þº|¬}¡A¥Ñ©ó¨¾¬rµ{¦¡®w«Y¬°McAfee¦UºØ¯f¬r±½ºËµ{¦¡©Ò¦@¥Î¡A¥]¬A¹q¤l¶l¥ó¦øªA¾¹¥ÎªºGroupShield¡A¥H¤ÎÓ¤H¹q¸£¥ÎªºVirusScanµ{¦¡¦b¤º¡C
¨Ï¥ÎªÌµL½×¨Ï¥Î¥ô¦óÃþ«¬ªººô¸ô³s½u¡AY¥HMcAfeeªº²£«~±½ºË¹q¤l¶l¥ó¡BÂsÄýªººô¶¤º®e©MWindowsÀɮצ@¨Éµ¥¡A³£¥i¯àÅýÀb«È§Q¥Î¦¹¦w¥þº|¬}¼µê¦Ó¤J¡C·í¦³º|¬}ªº³nÅé³]ªk¶}±Ò´c·NÀɮ׮ɡA¹ê»Ú¤W«o·|°õ¦æÀÉ®×ùؤº§tªºµ{¦¡¡CÀb«È¥i¯à§Q¥Î³oÓ¦w¥þº|¬}«ü¥Ü¦³®zÂIªº¨t²Î°õ¦æ´c·NÀɮסA¦Ó¤£¬O±½ºË¯f¬r¡C
¨¾¬r³nÅ餧©Ò¥H¦b¥h¦~¶¡Ãz¥X¤j¶qº|¬}¡A¨ÃºG¾DÀb«È¬r¤â°µ¬°¤J«IºÞ¹D¡A¥Dnì¦]¡A«h¥i¥ÑYankee Group¦b¥h(05)¦~¤»¤ë®É©Òµoªíªº¬ã¨s³ø§i¤¤²¤¿s¤@¤G¡AÀHµÛ·L³n¹ï¨ä²£«~¦w¥þ©Êªº´£¤É¡AWindows§@·~¨t²Îªº¥i¥Îº|¬}¤éº¥´î¤Ö¡A¨Ã«P¨ÏÀb«È±N¥Ø¥úµJÂIÂà¦V¨ä¥L³nÅé¡A¦Ó¨¾¬r³nÅé¹ïÀb«È¦Ó¨¥¡A´N¹³ÀH¤â¥iºKªºªG¹ê¡C
±M®a§óĵ§i¹D¡A³Q´¶¹M¨Ï¥Îªº¨¾¬r³nÅé¡A¥i¯à±q¨¾½Ã¤u¨ã·n¨¤@Åܬ°¹q¸£ªº¦w¥þ«Â¯Ù¡C
´N¦b¥h¦~¤C¤ë©³©ÒÁ|¿ìªº¶Â´U¤j·|¤¤¡A¨ä¥Ü½d¶µ¥Ø©M¬ã¨sµoªí·|¡A¥u¦³¤Ö¼Æ¥HWindows¬°ÃD¡A¨ä¾l¦p¨¾¬r³nÅé¡BUSBÀH¨ºÐ¡B¥Ò°©¤å©M«ä¬ìµ¥¦w¥þ¥DÃD¡A¤~¬O«ÀYÀ¸¡C
X-Force Research¤p²Õ«ü´§Neel Mehta©M¥t¤@¦ìISS¬ã¨sûAlex Wheeler¡A«K¥Ü½d¤F¦p¦ó§Q¥Î²{¦³¨¾¬r²£«~ªº¤wª¾©Î׸ɹLªºº|¬}Âô¤J¨t²Î¡C
¨ä¾lÁÙ¥]¬A¥Ñ¨ä¥L¦w¥þ±M®a¥Ü½d¤F¦p¦ó§Q¥ÎUSBÀH¨ºÐ¶i¤J«ÊÂꪺ¦w¥þ¨t²Î¡F§Y«K¸¹ºÙ¬°¡u¨c¤£¥i¯}¡vªº¥Ò°©¤å¸ê®Æ®w¡A¤]¦bRed Database Security±M®aAlexander¡A»PArgenissªºEsteban Martinez Fayo¤â¤U¯}¥\¡FISS¬ã¨sûMichael Lynn¡A«h±N²{³õ±´¬d«ä¬ìIOS¡]ºô¸ô¤u§@§@·~¨t²Î¡^ªº¦w¥þ®zÂI¡AÂǥѤj³W¼Òªº¸ô¥Ñ¾¹§ðÀ»¡A±N¥i¯àÂZ¶Ã¾ãÓºô»Úºô¸ôªº¹B§@¡C
¤@ª½¨ì¥h¦~¤Q¤G¤ë©³¡AÁɪùÅK§JÁÙµo§G°ª·ÀIĵ§i¡A«ü¥X¸Ó¤½¥q¨¾¬r³nÅé§t¦³ÄY«º|¬}¡A¥i³Q´c·NÀb«È¥Î¨Ó±±¨î¹q¸£¨t²Î¡C¸Óº|¬}´X¥G¼vÅT¤FÁɪùÅK§Jªº©Ò¦³²£«~¡A¥]¬AWindows»PMacintosh¥¥x¤§¥ø·~ª©»P®a¥Îª©ªºAntiVirus¡BNorton AntiVirus©MNorton Internet Security¡C
¸Ó®zÂI¦ì©ó´£¨Ñ¯f¬r¤ÀªRÀɮ׮榡¤ä´©ªºSymantec AntiVirus Library¤º¡C³Ì¥ýµo²{°ÝÃDªº¦w¥þÅU°ÝAlex Wheelerªí¥Ü¡G¡u¦b¸ÑÀ£ÁYRARÀɮ׮ɡAÁɪùÅK§J«Ü®e©öµo¥Í¦h«°ï¿n·¸¦ì¡AÅýÀb«È¶X¾÷§¹¥þ±±¨î³Q«OÅ@ªº¨t²Î¡C³o¨Ç®zÂI¯à³Q»·ºÝ§Q¥Î¡A³z¹L¤@¯ë©Ê¨ó ©w¡A¦pSMTPµ¥¹w³]ȧY¥i¡A¤£»Ý¨Ï¥ÎªÌ¤¬°Ê¡C¡v
RAR¬OWinRARªº©T¦³®æ¦¡¡A¥Î¨ÓÀ£ÁY»P¸ÑÀ£ÁY¸ê®Æ¡CºI¦Ü¥Ø«e¡A¸Ó®zÂI´¿¥X²{¦bDec2Rar.dll 3.2.14.3ª©¥»¤¤¡A¦ÓWheelerªí¥Ü¡A¦³¥i¯à¼vÅT©Ò¦³¨Ï¥ÎDLLªºÁɪùÅK§J²£«~¡C§¹¾ã²£«~¦W³æ½Ð°Ñ¦Ò¦¹³B¡C
Wheeler´¿¦b¥h¦~¤Q¤ëµo²{Kaspersky Labªº¨¾¬r³nÅ馳Ãþ¦üªºº|¬}¡A«á¨Ó¤]±o¨ì¸Ó¤½¥qÃÒ¹ê¡C·í®É¤]¬O°ï¿n·¸¬y°ÝÃD¡C¦P¦~¤G¤ë¡A¥L¤]´¿§ì¥XÁɪùÅK§J²£«~ªº¥t¤@¶µ°ï¿n·¸¬y®zÂI¡C
