本文详细介绍分布式拒绝服务攻击工具mstream(2)
对Handler使用strings命令可以看到这样一些明文字符串(做了处理)
--------------------------------------------------------------------------
% strings -n 3 master
socket stream
bind stream attack !
listen servers
setsockopt Prints all known servers.
fcntl ping
You're too idle ! ping all servers.
Connection from %s who
newserver tells you the ips of the people log
New server on %s. mstream
pong lets you stream more than one ip at
Got pong number %d from %s who
%s has disconnected (not auth'd): %s Currently Online:
Invalid password from %s. Socket number %d
Password accepted for connection fr [%s]
Lost connection to %s: %s ping
stream Pinging all servers.
Usage: stream mstream
Unable to resolve %s. Usage: mstream stream/%s/%s MStreaming %s for %s seconds.
Streaming %s for %s seconds. mstream/%s/%s
quit fork
%s has disconnected. Forked into background, pid %d
servers Caught SIGHUP, ignoring.
Server file doesn't exist, creating Caught SIGINT, ignoring.
The following ips are known servers Segmentation Violation, Exiting cle
help Caught unknown signal, This should
commands Available commands:
--------------------------------------------------------------------------
用lsof命令检查Agent,在这台主机上它名为"rpc.wall",Handler也用同样的名字
责编:豆豆技术应用
- "节哀顺便"大闹用户电脑 IE首页伪装假百度
- 特洛伊病毒Win32.Nuvens.QE伪装成正常软件
- 微软十二月信息安全公告 主要系统全受影响
- 蠕虫Worm.Win32.Small.r行为分析与清除
- 安全警告:媒体播放器成热门攻击对象
- 2007年全球95%的E-Mail竟是垃圾邮件
- 2007年上半年恶意软件近三成来自中国
- 警告:赛门铁克邮件系统发现安全漏洞
- 危机重重 2007年度网络安全分析报告
- 惠普82款笔记本存在严重网络安全漏洞