blog.netlab.360.com blog.netlab.360.com

blog.netlab.360.com

Netlab Blog - Network Security Research Lab Blog

security visibility through big data

http://blog.netlab.360.com/

WEBSITE DETAILS
SEO
PAGES
SIMILAR SITES

TRAFFIC RANK FOR BLOG.NETLAB.360.COM

TODAY'S RATING

>1,000,000

TRAFFIC RANK - AVERAGE PER MONTH

BEST MONTH

May

AVERAGE PER DAY Of THE WEEK

HIGHEST TRAFFIC ON

Thursday

TRAFFIC BY CITY

CUSTOMER REVIEWS

Average Rating: 4.2 out of 5 with 17 reviews
5 star
9
4 star
6
3 star
0
2 star
0
1 star
2

Hey there! Start your review of blog.netlab.360.com

AVERAGE USER RATING

Write a Review

WEBSITE PREVIEW

Desktop Preview Tablet Preview Mobile Preview

LOAD TIME

1.4 seconds

CONTACTS AT BLOG.NETLAB.360.COM

Login

TO VIEW CONTACTS

Remove Contacts

FOR PRIVACY ISSUES

CONTENT

SCORE

6.2

PAGE TITLE
Netlab Blog - Network Security Research Lab Blog | blog.netlab.360.com Reviews
<META>
DESCRIPTION
security visibility through big data
<META>
KEYWORDS
1 menu
2 close
3 go to netlab
4 blog home
5 ddos
6 passivedns
7 botnet
8 events
9 marai
10 scroll down
CONTENT
Page content here
KEYWORDS ON
PAGE
menu,close,go to netlab,blog home,ddos,passivedns,botnet,events,marai,scroll down,li fengpei,on rsac,scanmon,mirai,在今年的这次大会上,我们向全世界安全社区推出我们的 scanmon 系统,zhang zaifeng,on passivedns,以大站的名义 专注地下产业的网络基础设施,on mirai,mirai 变种中的dga,liu ya
SERVER
nginx/1.11.3
POWERED BY
Express
CONTENT-TYPE
utf-8
GOOGLE PREVIEW

Netlab Blog - Network Security Research Lab Blog | blog.netlab.360.com Reviews

https://blog.netlab.360.com

security visibility through big data

INTERNAL PAGES

blog.netlab.360.com blog.netlab.360.com
1

DDoS - Netlab Blog - Network Security Research Lab Blog

http://blog.netlab.360.com/tag/ddos

Page 1 of 1. New Elknot/Billgates Variant with XOR like C2 Configuration Encryption Scheme. Overview Elknot is a notorious DDoS botnet family which runs on both Linux and Windows platforms [1] [2] [3] [4]. Multiple variants have bee ». Page 1 of 1. Netlab Blog - Network Security Research Lab Blog. Proudly published with Ghost.

2

Mirai 变种中的DGA

http://blog.netlab.360.com/new-mirai-variant-with-dga-chinese-version

A Few Observations of The New Mirai Variant on Port 7547. L2域名固定长度12字符,每个字符从 a 到 z 中随机选择. 值得一提的是,作者 dlinchkravitz@gmail.com在更早时间已经注册了其他mirai C2域名. Zugzwang.me email dlinchkravitz@gmail.com. ELF 32-bit LSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, stripped. 图1, 新版本的resolv cnc addr 流程控制图. 图2, resolv cnc addr 函数第一部分. 图3, 决定是否进入DGA 代码分支. 看起来字符串 x90 x91 x80 x90 x90 x91 x80 x90 是一个错误的配置,这会导致strtol 总是返回0。 图4, dga gen domain 函数片段. TLD Top Level Domain 由寄存器$S0中的残余值确定,如图6所示。 图6, 确定TLD 的代码分支.

3

Zhang Zaifeng - Page 1 - Netlab Blog - Network Security Research Lab Blog

http://blog.netlab.360.com/author/zhangzaifeng-2

Page 1 of 1. Fraudulent Top Sites, an Underground Market Infrastructure. Update History] 2017-01-16 First English version. Updates in original Chinese version is merged. Overview Some domain names contains string ». 历史更新记录 2017-01-10 原始版本 2017-01-16 补充了对服务器IP地址同源性的分析,此处分析指向性较弱,仅为完备性考虑 概述 在奇虎网络安全研究院(netlab@360.cn),我们建立了一个基于DNS的异常流量监测系统,每天会检出若干异常流量以及对应的域 ». 主要表现为浏览器访问conficker域名后,会跳转到广告页面 既有正常业务,也有赌博/色情等灰色业务 ,有时候还会存在一些垃圾软件 比如虚假的杀毒软件 的推广等。 Page 1 of 1. Netlab Blog - Network Security Research Lab Blog.

4

LIU Ya - Page 1 - Netlab Blog - Network Security Research Lab Blog

http://blog.netlab.360.com/author/liu

Page 1 of 1. 更新历史 2016-12-09 首次发布 2016-12-12 更新图0,修正了我们DGA实现中一处TLD选择的错误 概要 两个星期前,我们发现2个新的感染载体 也即TCP端口7547和5555变种 被用来传播MIRAI恶意软件。 A Few Observation ». Now Mirai Has DGA Feature Built in. Update History 2016-12-09 first version 2016-12-12 fig-0 update, fix a TLD choosing error in our DGA implement Summary Nearly 2 weeks ago, ». A quick stats on the 608,083 Mirai IPs that hit our honeypots in the past 2.5 months. New Elknot/Billgates Variant with XOR like C2 Configuration Encryption Scheme. Page 1 of 1.

5

Netlab Blog - Network Security Research Lab Blog - Page 2

http://blog.netlab.360.com/page/2

Netlab Blog - Network Security Research Lab Blog. Security visibility through big data. Page 2 of 2. 更新 2016-11-29 18:40:00 初始版本 2016-11-29 20:10:00 增加了对德国电信断网事件相关的描述 德国电信断网事件 2016-11-28 德国电信在2016年11月28日前后遭遇一次大范围的网络故障。 之前文章链接如下 http:/ blog.net ». 关于 dyn / twitter 受攻击情况的说明和 mirai 僵尸网络的回顾. 更新记录 2016-10-23 初始版本 2016-10-27 获得了少量攻击现场数据,分析结果与之前观点吻合一致。 涉及到的网站包括 twitter, paypal,github等等, ». A quick stats on the 608,083 Mirai IPs that hit our honeypots in the past 2.5 months. Page 2 of 2.

UPGRADE TO PREMIUM TO VIEW 10 MORE

TOTAL PAGES IN THIS WEBSITE

15

SOCIAL ENGAGEMENT



OTHER SITES

blog.netkidscontrol.ru blog.netkidscontrol.ru

блог сервиса NetKids | NetKids — сервис родительского контроля. Блокировка доступа к опасным сайтам, мониторинг действий в интернете

NetKids — сервис родительского контроля. Блокировка доступа к опасным сайтам, мониторинг действий в интернете. Перейти к основному содержимому. Перейти к дополнительному содержимому. 171;Лига безопасного интернета совместно с «Национальным рейтинговым агентством составили рейтинг безопасности поисковиков. Читать далее →. Советы специалиста ВКонтакте по борьбе с двойниками-мошенниками. Читать далее →. Разрушение порно-мифов для школьников (видео на английском). Британский сайт для молодежи thesite.org.

blog.netknowledge.pl blog.netknowledge.pl

Ebiznes Blog - Budowanie Listy Adresowej | Ebiznes Blog - Praktyczne Wskazówki Które Przyspieszą Rozwój Twojego Biznesu W Interncecie

Dobre C2A krok po kroku. Dnia Gru 2, 2016 w definicje. Dobre C2A krok po kroku albo Jak wywrzeć presję na czytelniku? W marketingu internetowym (jak w każdym. Dnia Lis 25, 2016 w biznes. Moc bonusu albo Prezenty: jakie i kiedy? Rzeczą powszechnie znaną jest psychologiczny mechanizm. Znaczenie kolorów w biznesie. Dnia Lis 23, 2016 w biznes. Znaczenie kolorów w biznesie albo Jaki kolor dla kogo? Dnia Lis 4, 2016 w definicje. Content marketing albo Nowa jakość. Jeśli cena jest zbyt wysoka….

blog.netkoala.com blog.netkoala.com

Netkoala.com

This Domain Name Has Expired - Renewal Instructions.

blog.netkurulum.com blog.netkurulum.com

Blog

March 12th, 2014 tarihinde gönderildi. Tamamen yeni bir mobil web sitesi çözümün beta sürümünü başlattık. Web sitelerimiz her zaman mobil aygıtlarda görüntülenebilen olmuştur, ama artık kolayca bir tuşla sadece bir tıklama ile tüm web sitesinin mobil bir sürümünü oluşturabilirsiniz. En web içeriğe NetKurulum sahip olup web ile mobilin senkronizesi tamamen aynı olacak. Daha önce web sayfanızın görüntüsü mobil sayfanızda farklı oluşuyordu.Kullanıcılarımız düzenlemeler yapmak zorunda kalıyodular. Eğer Sayfa...

blog.netkuup.com blog.netkuup.com

Netkuup

SOFTWARE  -  ENGINEERING. 160; NetKuup © All right reserved.

blog.netlab.360.com blog.netlab.360.com

Netlab Blog - Network Security Research Lab Blog

Netlab Blog - Network Security Research Lab Blog. Security visibility through big data. Page 1 of 2. Older Posts →. Netlab‘s ScanMon at RSA Conference 2017. The RSA Conference 2017 will be held during Feb 13 - 17 at Moscone Center, San Francisco. This year in the conference, we will introduce our ». Fraudulent Top Sites, an Underground Market Infrastructure. New Mirai DGA Seed 0x91 Brute Forced. A Few Observation ». Now Mirai Has DGA Feature Built in. Page 1 of 2. Older Posts →.

blog.netlabels.org blog.netlabels.org

Netlabels.org — News from Netlabels.org

Preview of the new upcoming Netlabels.org. I adore building websites. Especially the new Netlabels.org-Website is a delicious one to style and design. Even though I prefer to work with open source tools, it's sometimes necessary to build something custom-made. Nevertheless the new Netlabels.org is build upon open source. Next to the programming by Martin using Ruby On Rails. I built the whole site upon the marvellous 960-Grid-System. Preview of the admin interface of Netlabels.org - Click to enlarge!

blog.netlabs.org blog.netlabs.org

netlabs.org blog | OS/2 & ArcaOS Software news

OS/2 and ArcaOS Software news. News: 5. March – 11. March. Bww bitwise works GmbH. Work done on help2man and on nasm. See: http:/ trac.netlabs.org/efte/timeline. Nice progress with a lot of tickets closed. See: http:/ trac.netlabs.org/fat32/timeline. See: http:/ trac.netlabs.org/kbuild/timeline. Great progress with a lot of additions and some updates. See: http:/ trac.netlabs.org/nepmd/timeline. See: http:/ trac.netlabs.org/panorama/timeline. Loads of updates and fixes including cleaning. New project at ...

blog.netlife.com.ua blog.netlife.com.ua

NetLife

Вторник, 21 июля 2015 г. Теперь вы можете оплачивать наши услуги в терминальной сети CityPay! Собственно говорить что-то пожалуй и нечего. В Барышевке есть 2 CityPay терминала к тем терминалам Банк24 которые стоят чуть ли не в каждом магазине. Как и в случае Банк24 (бывшие Ё-платежка), пожалуйста внимательно следите за % за транзакцию которую взымают терминальные сети. Мы думаем о вашем удобстве, команда NetLife (НетЛайф)! Отправить по электронной почте. Написать об этом в блоге. 16 Блогус — www&#4...

blog.netlife.pl blog.netlife.pl

blog.netlife.pl | Kolejna witryna sieci „NetLife”

Kolejna witryna sieci NetLife. Inauguracyjny wpis na moim blogu chciałbym zadedykować wszystkim klientom home.pl, którzy chcą używać CMS Joomla! Wnioskując po komentarzach i opiniach na http:/ rozwijaj.home.pl/. Joomla 1.7.x. Joomla 1.6 na Home.pl. Aktualizacja przez panel administratora nie zadziała,. Rozszerzenia gorszej jakości również odmówią posłuszeństwa. Wszystko wynika z tego że home.pl serwuje strony z katalogu / serwera, z czym Joomla! Można spróbować „połatać” CMS Joomla! Domenę wskazuję na ka...

blog.netlift.me blog.netlift.me

Netlift Blog

Netlift - Ridesharing for commuters. Pour en finir avec la congestion routière. Published: 2016-09-28 This post is only available in French. Il est 8h25, mercredi matin. On est 1,5 millions d’individus paralysés derrière le volant. Seul et immobilisé. On va au travail, à l’université, enfin on essaie. En fait, on ne va pas vite et pas loin. Il semble qu’on soit très en paix avec le fait de signer l’accord de Paris sur le climat. Et de respirer le CO2 à grandes bouffées. L’arrivée de Uber au Québec ...