¹ÙÀÌ·¯½º ´ëó
ÀÎÅÍ³Ý ÀÏ¹Ý 2004/05/04 08:23   http://blog.azoomma.com/hongjig/127593
MS04-011 Ãë¾àÁ¡À» ÀÌ¿ëÇÑ ½ÅÁ¾ Worm.Win32.Sasser.15872 ¿úÀÌ ±¹³»¿Ü µ¿½Ã¿¡ ¹ß°ßµÇ¾î ±Þ¼ÓÈ÷ È®»ê ÁßÀÔ´Ï´Ù. °¢º°ÇÑ ÁÖÀǸ¦ ¿äûÇÕ´Ï´Ù.

LSASS(Local security Authority Subsystem Service) Ãë¾àÁ¡ : Microsoft Security Bulletin MS04-011
-
Ãë¾àÁ¡ Á¤º¸º¸±â(ÇѱÛ)
-
Ãë¾àÁ¡ Á¤º¸º¸±â(¿µ¹®)

°¨¿°ÀÌ µÇ¸é ¿ì¼± TCP/1068, TCP/5554, TCP/9996 Æ÷Æ®°¡ ¿Àǵ˴ϴÙ.
°¨¿° ÈÄ ÀÏÁ¤½Ã°£ÀÌ °æ°úµÇ¸é CPU Á¡À¯À²ÀÌ 100%°¡ µÇ¾î ½Ã½ºÅÛ »ç¿ëÀÌ ¾î·Æ°Ô µÇ´Â Áõ»óÀ» º¸À̱⵵ Çϸç, ³×Æ®¿öÅ©¿¡ °úµµÇÑ Æ®·¡ÇÈÀ» À¯¹ßÇÏ¿© ³»ºÎ ³×Æ®¿öÅ©ÀÇ Æ®·¡ÇÈÀÌ Áõ°¡ÇÏ¿© ³×Æ®¿öÅ©°¡ Áß´ÜµÉ ¼öµµ ÀÖ½À´Ï´Ù.

[À©µµ¿ì º¸¾È Ãë¾àÁ¡ ÆÐÄ¡]
[½ÃÀÛ] ¡æ [Windows Update] ¶Ç´Â ÀÎÅÍ³Ý ÀͽºÇ÷η¯ÀÇ 'µµ±¸' -> 'Windows Update(U)', 'http://windowsupdate.microsoft.com' ·Î Á÷Á¢ Á¢¼ÓÇÏ¿© ÆÐÄ¡Çϰųª ¾Æ·¡ÀÇ ¸µÅ©¸¦ ÅëÇØ ÇÒ ¼ö ÀÖ½À´Ï´Ù.

-
Microsoft Windows NT Workstation 4.0 ¼­ºñ½º ÆÑ 6a ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows NT Server 4.0 ¼­ºñ½º ÆÑ 6a ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows NT Server 4.0 Terminal Server Edition ¼­ºñ½º ÆÑ 6 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows 2000 ¼­ºñ½º ÆÑ 2, Microsoft Windows 2000 ¼­ºñ½º ÆÑ 3 ¹× Microsoft Windows 2000 ¼­ºñ½º ÆÑ 4 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows XP ¹× Microsoft Windows XP ¼­ºñ½º ÆÑ 1 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows XP 64-Bit Edition ¼­ºñ½º ÆÑ 1 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows XP 64-Bit Edition Version 2003 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows Server¢â 2003 ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå
- Microsoft Windows Server 2003 64-Bit Edition ¾÷µ¥ÀÌÆ® ´Ù¿î·Îµå

[º¸¾È Ãë¾àÁ¡ °Ë»ç]

¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»çÀÇ Microsoft Baseline Security Analyzer(MBSA)¸¦ ÅëÇØ ³×Æ®¿÷¿¡ Á¢¼ÓµÈ ½Ã½ºÅÛÀÇ Ãë¾àÁ¡À» °Ë»çÇÒ ¼ö ÀÖ½À´Ï´Ù.

ÀÚ¼¼ÇÑ Á¤º¸´Â ¾Æ·¡ÀÇ ¸µÅ©¸¦ Âü°íÇÏ±æ ¹Ù¶ø´Ï´Ù.

-
Microsoft Baseline Security Analyzer(MBSA)