单词 | shellcode | ||||||||||||||||||
释义 |
|
基本渗透过程如下一个简单的计划:RTF文件利用了一个漏洞,该漏洞会触发一些的shellcode,然后提取并执行嵌入的Win32二进制组件。 nakedsecurity.sophos.com | The basic infiltration process follows a simple scheme: the [...] RTF document exploits a vulnerability [...] that triggers some shellcode, which thenextracts [...]and executes the embedded Win32 binary component. nakedsecurity.sophos.com |
首先,没有一个在RTF的shellcode,但两个,在两个阶段执行。 nakedsecurity.sophos.com | To begin with, [...] thereis notone shellcode in the RTF,but two, [...]which are executed in two stages. nakedsecurity.sophos.com |
虽然这是发生在shellcode提取存储在容器的RTF文档文件,使用的临时名称〜WINWORD到%TEMP%目录下,然后打开它。 nakedsecurity.sophos.com | While this is happening theshellcode also extractsa document [...] file stored at the end of the container RTF, using the temporary [...]name ~WINWORD into the %TEMP% directory, and then opens it. nakedsecurity.sophos.com |
第二阶段的shellcodeBIN2HEX,并用一个简单的XOR加密和一个固定的加密密钥值的0xBF编码的恶意软件的可执行文件,进行实际的解密。 nakedsecurity.sophos.com | The secondstageshellcode does the actual decrypting [...] of the malware executable which is encoded with bin2hex and encrypted [...]with a simple XOR and a fixed encryption key value of 0xBF. nakedsecurity.sophos.com |
OLE2文件包含重定向到第二阶段的第一阶段的shellcode。 nakedsecurity.sophos.com | The OLE2 document [...] contains the first stage shellcodethat onlyredirects [...]to the second stage. nakedsecurity.sophos.com |
我发现的是一个多阶段的安装过程,涉及一个安全漏洞,两个阶段的shellcode,存档,和一个无辜的应用程序的攻击者滥用。 nakedsecurity.sophos.com | What I found was a multi-stage installation [...] process involving a security [...] vulnerability, two stagesof shellcode, anarchive, and [...]an innocent application abused by the attackers. nakedsecurity.sophos.com |
但是,在第一阶段的shellcode具有 轻微扭曲的角度来看。 nakedsecurity.sophos.com | But the first stage shellcode has a slightly distorted [...] point of view. nakedsecurity.sophos.com |
在Microsoft Word中打开文档,将触发我们的shellcode,并开始渗透过程。 nakedsecurity.sophos.com | Opening the document in Microsoft [...] Word willtrigger theshellcode andstart the infiltration [...]process. nakedsecurity.sophos.com |
如果用户的系统和浏览器没有安装安全更新,系统便会执行命令(称为shellcode)。 hkcert.org | If the visitor’s system and browser are not patched, they are exploited and caused execution of commands (called shellcode) thatcame with the exploit. hkcert.org |
英汉双解词典包含2273206条英汉词条,基本涵盖了全部常用单词的翻译及用法,是英语学习的有利工具。