[filename.info logo]
[cn cmd.exe][de cmd.exe][es cmd.exe][fr cmd.exe][gb cmd.exe][it cmd.exe][jp cmd.exe][kr cmd.exe][nl cmd.exe][pt cmd.exe][ru cmd.exe][us cmd.exe]

cmd.exe (5.1.2600.0)

소프트웨어안에 포함하는

이름:Windows XP Home Edition, Deutsch
정보 연결:http://www.microsoft.com/windowsxp/

파일 세부사항

파일 경로:C:\WINDOWS\system32\dllcache \ cmd.exe
파일 날짜:2002-08-29 14:00:00
파일 사이즈:388.608 바이트

검사함과 파일은 잘게 썬다

MD5:1CDE DA08 15E6 59B9 6A3C EE52 A32A 1BD7
SHA1:03D6 2DF9 CA73 2897 B480 0CD3 0956 8B99 5BAB DC98

버전 자원 정보

회사명:Microsoft Corporation
파일 설명:Windows-Befehlsprozessor
파일 운영 체계:Windows NT, Windows 2000, Windows XP, Windows 2003
파일 유형:Application
파일 버전:5.1.2600.0
내부 이름:cmd
법적인 저작권:© Microsoft Corporation. Alle Rechte vorbehalten.
원래 파일 이름:Cmd.Exe
제품 이름:Betriebssystem Microsoft® Windows®
제품 버전:5.1.2600.0

cmd.exe은 뒤에 오는 보고안에 발견되었다:


기술적 세부사항
...system to delete, rename, copy, execute and any other commands that can be used by Cmd.exe. NOTE:...
...This is because Windows 95/98/Me systems do not use the Cmd.exe file, but instead use the Command.com file....
...The Trojan is coded to use only Cmd.exe and its commands, which will function only on Windows NT/2000/XP systems....
근원: http://securityresponse.symantec.com/avcenter/venc/data/backdoor.remotenc.html


기술적 세부사항
...attributes, read, write, and edit files, as well as run DOS commands directly through Cmd.exe. A remote user can also upload...
근원: http://securityresponse.symantec.com/avcenter/venc/data/backdoor.ndad.html


기술적 세부사항
...execute files and execute other commands that can be used by the command shell (Cmd.exe or Command.com). ...
근원: http://securityresponse.symantec.com/avcenter/venc/data/backdoor.remotenc.b.html


기술적 세부사항
...%System%Regedt32.exe %Windir%Cmd.exe %System%Cmd.exe...
근원: http://securityresponse.symantec.com/avcenter/venc/data/vbs.suconelo.html


Privacy Policy Backdoor.Cmdkill에 관하여 Discovered on:...
...June 17, 2003 05:15:29 PM Backdoor.Cmdkill is a Trojan Horse script that can be added to HTML files....
기술적 세부사항
... Backdoor.Cmdkill is a simple script that can be inserted into HTML files....
...The script will give an individual with unauthorized access full access to Cmd.exe, thereby allowing him/her to perform virtually anything on the system....
제거 지시
...Run a full system scan and delete all the files detected as Backdoor.Cmdkill. For specific details on each...
...If any files are detected as infected with Backdoor.Cmdkill, click Delete. Write-up by:...
근원: http://securityresponse.symantec.com/avcenter/venc/data/backdoor.cmdkill.html


기술적 세부사항
...current day is the 10th of any month, or later, the worm deletes the file, C:WindowsCmd.exe. If the current day is the...
근원: http://securityresponse.symantec.com/avcenter/venc/data/vbs.gaggle.c.html


기술적 세부사항
...Access the Windows command shell (CMD.exe or command.com) Run executable files...
근원: http://securityresponse.symantec.com/avcenter/venc/data/backdoor.femo.html


위협 평가
...Compromises security settings: Opens a hidden remote cmd.exe shell. Distribution...
기술적 세부사항
...that particular IP address. Creates a hidden Cmd.exe remote shell that will listen on TCP port 4444, allowing an attacker to issue remote...
근원: http://securityresponse.symantec.com/avcenter/venc/data/w32.randex.e.html


기술적 세부사항
...Copies itself as: C:Cmd.exe %System%Rundll32.exe...
..."(Default)"="C:cmd.exe %1 %*" in the registry key:...
근원: http://securityresponse.symantec.com/avcenter/venc/data/w32.miroot.worm.html

Symantec ManHunt 3.0 Security Update 7

Dumaru Worm Propagation MS Welchia Backdoor cmd.exe shell HTTP IIS Webdav Exploit (updated)...
근원: http://securityresponse.symantec.com/avcenter/security/Content/2003.08.19b.html

Valid HTML 4.01!