823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇÁö ¾ÊÀº È£½ºÆ® ÄÄÇ»Å͸¦ È®ÀÎÇϱâ À§ÇÑ KB 824146 °Ë»ö µµ±¸¸¦ »ç¿ëÇÏ´Â ¹æ¹ý

±â¼ú ÀÚ·á: 827363 - ÀÌ ¹®¼­°¡ Àû¿ëµÇ´Â Á¦Ç° º¸±â.
Âü°í Microsoft´Â 2003³â 10¿ù 7ÀÏ¿¡ °í°´ÀÇ ÀǰßÀ» ±âÃÊ·Î ¸î °¡Áö ±â´É ¿ä±¸ »çÇ×À» ÅëÇÕÇÑ KB 824146 °Ë»ö µµ±¸(KB824146scan.exe)ÀÇ ¾÷µ¥ÀÌÆ® ¹öÀü(1.00.0257)À» Ãâ½ÃÇß½À´Ï´Ù. ¹öÀü 1.00.0257ÀÇ ÁÖ¿ä º¯°æ »çÇ×Àº ´ÙÀ½°ú °°½À´Ï´Ù.
  • ·¹Áö½ºÆ®¸®¿¡¼­ RestrictAnonymous °ªÀÌ ¼³Á¤µÇ¾î ÀÖ´Â Microsoft Windows NT 4.0 ±â¹Ý ÄÄÇ»ÅÍ °Ë»ö °¡´É
  • °Ë»öµÈ ÄÄÇ»ÅÍÀÇ º¸¾È ÆÐÄ¡ ¼öÁØÀ» Á»´õ ¸íÈ®È÷ º¸¿©ÁÖ´Â °³¼±µÈ Ãâ·Â ¹üÁÖ
  • °Ë»öµÈ ÄÄÇ»ÅÍÀÇ NetBIOS À̸§ Ãâ·Â
¸ðµÎ È®´ë | ¸ðµÎ Ãà¼Ò

ÀÌ ÆäÀÌÁö¿¡¼­

¿ä¾à

Microsoft´Â ³×Æ®¿öÅ© °ü¸®ÀÚ°¡ ³×Æ®¿öÅ©¿¡¼­ 823980(MS02-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇÁö ¾ÊÀº È£½ºÆ® ÄÄÇ»Å͸¦ ½Äº°ÇÏ´Â µ¥ »ç¿ëÇÒ ¼ö ÀÖ´Â KB 824146 °Ë»ö µµ±¸(KB824146scan.exe)¸¦ Ãâ½ÃÇß½À´Ï´Ù. ÀÌ µµ±¸´Â KB 823980 °Ë»ö µµ±¸(KB823980scan.exe)¸¦ ´ëüÇÕ´Ï´Ù.

Âü°í KB823980scan.exe µµ±¸¸¦ »ç¿ëÇÏ¿© 824146 º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÈ ÄÄÇ»Å͸¦ °Ë»öÇÒ °æ¿ì ÀÌ µµ±¸´Â ÇØ´ç ÄÄÇ»ÅÍ¿¡ 823980 º¸¾È ÆÐÄ¡(MS03-026)°¡ ¾ø´Ù°í À߸ø º¸°íÇÕ´Ï´Ù. µû¶ó¼­ KB824146scan.exe µµ±¸¸¦ ½ÇÇàÇÏ¿© ³×Æ®¿öÅ©¿¡ Àִ ȣ½ºÆ® ÄÄÇ»ÅÍ¿¡ 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇ¾î ÀÖ´ÂÁö ¿©ºÎ¸¦ È®ÀÎÇÏ´Â °ÍÀÌ ÁÁ½À´Ï´Ù. 824146 º¸¾È ÆÐÄ¡(MS03-039)¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
824146 MS03-039: RPCSSÀÇ ¹öÆÛ ¿À¹ö·±À¸·Î ÀÎÇØ ħÀÔÀÚ°¡ ¾ÇÀÇ ÀÖ´Â ÇÁ·Î±×·¥À» ½ÇÇàÇÒ ¼ö ÀÖ´Ù
823980 º¸¾È ÆÐÄ¡(MS03-026)¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
823980 MS03-026: RPC ÀÎÅÍÆäÀ̽ºÀÇ ¹öÆÛ ¿À¹ö·±À¸·Î ÀÎÇÑ ÄÚµå ½ÇÇà ¹®Á¦
823980 º¸¾È ÆÐÄ¡(MS03-026)¿¡ ÀÇÇØ ÇØ°áµÇ´Â DCOM RPC Ãë¾àÁ¡À» ¾Ç¿ëÇÏ·Á´Â »õ·Î¿î ¿ú ¹ÙÀÌ·¯½º¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
826955 Blaster ¿ú ¹× ±× º¯Á¾¿¡ ´ëÇÑ ¹ÙÀÌ·¯½º °æ°í
³×Æ®¿öÅ© °ü¸®ÀÚ°¡ Microsoft Windows NT, Microsoft Windows 2000 ¶Ç´Â Microsoft Windows Server 2003 µµ¸ÞÀο¡ ÀÖ´Â ÆÐÄ¡ Àû¿ëÀÌ ¾È µÈ ÄÄÇ»ÅÍ¿¡ Windows Management Instrumentation ½ºÅ©¸³ÆÃÀ» »ç¿ëÇÏ¿© 823980 º¸¾È ÆÐÄ¡(MS03-026)¸¦ ¼³Ä¡ÇÏ´Â ¹æ¹ý¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
827227 Visual Basic ½ºÅ©¸³Æ®¸¦ »ç¿ëÇÏ¿© ¿ø°Ý È£½ºÆ® ÄÄÇ»ÅÍ¿¡ 824146(MS03-039) ¶Ç´Â 823980(MS03-026) º¸¾È ÆÐÄ¡¸¦ ¼³Ä¡ÇÏ´Â ¹æ¹ý

Ãß°¡ Á¤º¸

KB824146scan.exe µµ±¸´Â ¿ø°Ý ÄÄÇ»Å͸¦ °Ë»öÇÏ¿© 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇÁö ¾ÊÀº Windows ±â¹Ý ÄÄÇ»Å͸¦ ³×Æ®¿öÅ© °ü¸®ÀÚ°¡ ½±°Ô ½Äº°ÇÒ ¼ö ÀÖµµ·Ï ÇÕ´Ï´Ù. ÀÌ·¯ÇÑ °Ë»ö ÀÛ¾÷¿¡´Â ÀÎÁõÀÌ ÇÊ¿äÇÏÁö ¾Ê½À´Ï´Ù. Áï, ¿ø°Ý ÄÄÇ»ÅÍ¿¡ ¿Ã¹Ù¸¥ ÀÚ°Ý Áõ¸íÀ» Á¦°øÇÒ Çʿ䰡 ¾ø½À´Ï´Ù. KB824146scan.exe µµ±¸¸¦ »ç¿ëÇØµµ °Ë»ö ´ë»ó ¿î¿µ üÁ¦ÀÇ ¾ÈÁ¤¼ºÀº ¿µÇâÀ» ¹ÞÁö ¾Ê½À´Ï´Ù.

KB824146scan.exe µµ±¸´Â Windows Server 2003, Windows XP ¶Ç´Â Windows 2000À» ½ÇÇà ÁßÀÎ ÄÄÇ»ÅÍ¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ µµ±¸¸¦ »ç¿ëÇÏ¿© ³×Æ®¿öÅ©¿¡ ÀÖ´Â Windows Server 2003 ±â¹Ý, Windows XP ±â¹Ý, Windows 2000 ±â¹Ý ¶Ç´Â Windows NT 4.0 ±â¹Ý ÄÄÇ»Å͸¦ °Ë»öÇÒ ¼ö ÀÖ½À´Ï´Ù.

´Ù¿î·Îµå ¹× ¼³Ä¡ Á¤º¸

KB824146scan.exe µµ±¸¸¦ ´Ù¿î·ÎµåÇÏ·Á¸é ´ÙÀ½ Microsoft À¥ »çÀÌÆ®¸¦ ¹æ¹®ÇϽʽÿÀ.
http://www.microsoft.com/downloads/details.aspx?displaylang=ko&FamilyID=13AE421B-7BAB-41A2-843B-FAD838FE472E
Dcom-kb827363-x86-kor.exe ¼³Ä¡ ÆÐŰÁö¸¦ ´Ù¿î·ÎµåÇϽʽÿÀ. KB824146scan.exe µµ±¸¸¦ ¼³Ä¡ÇÏ·Á¸é ´Ù¿î·ÎµåÇÑ Dcom-kb827363-x86-kor.exe ¼³Ä¡ ÆÐŰÁö¸¦ µÎ ¹ø ´©¸£½Ê½Ã¿À. ÀÌ µµ±¸´Â Program Files Æú´õÀÇ KB824146scan ÇÏÀ§ Æú´õ³ª Program Files(X86) Æú´õÀÇ KB824146scan ÇÏÀ§ Æú´õ(Windows XP ¶Ç´Â Windows Server 2003ÀÇ 64ºñÆ® ¹öÀü)¿¡ ¼³Ä¡µÇ´Â ¸í·ÉÁÙ À¯Æ¿¸®Æ¼ÀÔ´Ï´Ù.

»ç¿ë Á¤º¸

KB824146scan.exe µµ±¸¸¦ ½ÇÇàÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.
  1. ½ÃÀÛÀ» ´©¸£°í ½ÇÇàÀ» ´©¸¨´Ï´Ù.
  2. ¿­±â »óÀÚ¿¡ cmd¸¦ ÀÔ·ÂÇÑ ´ÙÀ½ È®ÀÎÀ» ´©¸¨´Ï´Ù.
  3. ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ cd %programfiles%\kb824146scanÀ» ÀÔ·ÂÇÑ ´ÙÀ½ Enter ۸¦ ´©¸¨´Ï´Ù.
  4. kb824146scan switches¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
KB824146scan.exe µµ±¸¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ´Â ½ºÀ§Ä¡¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀ» º¸·Á¸é KB824146scan.exe /?¸¦ ÀÔ·ÂÇϽʽÿÀ. ¾Æ·¡¿Í °°Àº Á¤º¸°¡ Ç¥½ÃµË´Ï´Ù.
Microsoft (R) KB824146 Scanner Version 1.00.0257 for 80x86
Copyright (c) Microsoft Corporation 2003. All rights reserved.

The purpose of KB823980Scan.exe is to audit Windows systems over the network
for KB824146 and KB823980patch compliance. KB824146Scan.exe allows
administrators to quickly scan enterprise networks for unpatched systems.

Usage: KB824146Scan.exe [/?] [/i:input_file] [/l[:log_file]] [/n]
                        [/o:out_file] [/r] [/t:timeout] [/v] target ...

Targets can take any of the following forms:

    a.b.c.d             - IP address
    a.b.c.d-i.j.k.l     - IP address range
    a.b.c.d/mask        - IP address with CIDR mask
    host                - unqualified hostname
    host.domain.com     - fully-qualified domain name
    localhost           - check local machine

Targets can be specified on the command line & in user-specified input files.
The format of the input file is one target per line.

KB824146Scan.exe maintains a log file in the current directory if the /l
switch is specified on the command line. (Otherwise output is only sent to the
screen.) The log files will take the form of KB824146Scan_YYMMDD[a-z][a-z].log,
where YY is the two digit year, MM is the two digit month, and DD is the two
digit day. The [a-z][a-z] will be appended to the log file name as additional
scans are completed on the same day. Please note that the log output will only
contain essential information. To capture full information, please specify the
/v switch for verbose logging.

KB824146Scan.exe will create a list of vulnerable systems (unpatched as well
as those with KB823980 installed) in the current working directory. The log
files will take the form of Vulnerable_YYMMDD[a-z][a-z].log, where YY is the
two digit year, MM is the two digit month, and DD is the two digit day. ¿©±â¼­
[a-z][a-z] will be appended to the log file name as additional scans are
completed on the same day. Its name can be changed with the /o switch.

KB824146Scan.exe will resolve IP addresses to DNS names if the /r switch is
given on the command line. This may incur a performance penalty if your DNS
servers are slow in responding.

KB824146Scan.exe will resolve IP addresses to NetBIOS names if the /n switch
is given on the command line. This may incur a performance penalty if the
remote NetBIOS connection is slow in responding.

KB824146Scan.exe has a default timeout of 5 seconds, which should be fine
for most networks. If your network is slow or has IPSec enabled then you
might want to increase the timeout to 10 seconds or more. Use /t to specify
the number of seconds for the timeout.

Ãâ·Â ¿¹Á¦

´ÙÀ½Àº KB824146Scan.exe¸¦ »ç¿ëÇÏ¿© IP ÁÖ¼Ò ¹üÀ§(ÀÌ ¿¹ÀÇ °æ¿ì¿¡´Â 10.1.1.0 - 10.1.1.255)¸¦ °Ë»öÇÒ ¶§ µµ±¸°¡ Ç¥½ÃÇÏ´Â ¸í·ÉÁÙ Ãâ·ÂÀÇ ¿¹Á¦ÀÔ´Ï´Ù.
C:\>kb824146scan 10.1.1.1/24

Microsoft (R) KB824146 Scanner Version 1.00.0257 for 80x86
  Copyright (c) Microsoft Corporation 2003. All rights reserved.

<+> Starting scan (timeout = 5000 ms)

Checking 10.1.1.0 - 10.1.1.255
10.1.1.1: unpatched
10.1.1.2: patched with both KB824146 (MS03-039) and KB823980 (MS03-026)
10.1.1.3: Patched with only KB823980 (MS03-026)
10.1.1.4: host unreachable
10.1.1.5: DCOM is disabled on this host
10.1.1.6: address not valid in this context
10.1.1.7: connection failure: error 51 (0x00000033)
10.1.1.8: connection refused
10.1.1.9: this host needs further investigation

<-> Scan completed

Statistics:

Patched with both KB824146 (MS03-039) and KB823980 (MS03-026) .... 1
Patched with only KB823980 (MS03-026) ............................ 1
Unpatched ............................. 1
TOTAL HOSTS SCANNED ................... 3

DCOM Disabled ......................... 1
Needs Investigation ................... 1
Connection refused .................... 1
Host unreachable ...................... 248
Other Errors .......................... 2
TOTAL HOSTS SKIPPED ................... 253

TOTAL ADDRESSES SCANNED ............... 256

¿À·ù ¸Þ½ÃÁö, »óÅ ¹× Åë°è

  • "unpatched" »óÅ´ °Ë»öÇÑ È£½ºÆ®°¡ Windows È£½ºÆ®ÀÌÁö¸¸ 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇÁö ¾ÊÀº È£½ºÆ®ÀÓÀ» ³ªÅ¸³À´Ï´Ù. ÀÌ·¯ÇÑ ÄÄÇ»Å͸¦ º¸È£ÇÏ·Á¸é 824146(MS03-039) º¸¾È ÆÐÄ¡¸¦ ¼³Ä¡ÇØ¾ß ÇÕ´Ï´Ù.
  • "patched with KB823980" »óÅ´ °Ë»öÇÑ È£½ºÆ®¿¡ 823980(MS03-026) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇ¾úÀ½À» ³ªÅ¸³À´Ï´Ù. ÇÏÁö¸¸ ÀÌ ÄÄÇ»ÅÍ¿¡ 824146(MS03-039) º¸¾È ÆÐÄ¡´Â ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê½À´Ï´Ù. ÀÌ·¯ÇÑ ÄÄÇ»Å͸¦ º¸È£ÇÏ·Á¸é 824146(MS03-039) º¸¾È ÆÐÄ¡¸¦ ¼³Ä¡ÇØ¾ß ÇÕ´Ï´Ù.
  • "patched with KB824146 and KB823980" »óÅ´ °Ë»öÇÑ È£½ºÆ®¿¡ 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇ¾úÀ½À» ³ªÅ¸³À´Ï´Ù.
  • "host unreachable" ¿À·ù ¸Þ½ÃÁö´Â ÁöÁ¤ÇÑ ÀÎÅÍ³Ý ÇÁ·ÎÅäÄÝ(IP) ÁÖ¼Ò¿¡ È£½ºÆ®°¡ ¾øÀ½À» ³ªÅ¸³À´Ï´Ù. ¶ÇÇÑ ÀÎÅÍ³Ý ¿¬°á ¹æÈ­º®(ICF)°ú °°ÀÌ ÆÐŶÀ» ¹ö¸®´Â ¹æÈ­º®À̳ª ºí·¢È¦ ¶ó¿ìÅ͵µ "host unreachable" ¿À·ù ¸Þ½ÃÁö¸¦ ¹ÝȯÇÕ´Ï´Ù.
  • "DCOM is disabled on this host" »óÅ´ ´ë»ó È£½ºÆ® ÄÄÇ»ÅÍ¿¡¼­ DCOMÀÌ ÇØÁ¦µÇ¾úÀ½À» ³ªÅ¸³À´Ï´Ù. 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡¿¡¼­ ÇØ°áµÈ Ãë¾àÁ¡À¸·ÎºÎÅÍ º¸È£Çϱâ À§ÇØ DCOMÀ» ÇØÁ¦ÇßÀ» ¼öµµ ÀÖ½À´Ï´Ù. ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
    825750 Windows¿¡¼­ DCOM Áö¿øÀ» ÇØÁ¦ÇÏ´Â ¹æ¹ý
  • "address is not valid in this context" ¶Ç´Â "connection failure" ¿À·ù ¸Þ½ÃÁö´Â ÇØ´ç ¿ø°Ý ÄÄÇ»ÅÍ¿¡ ¿¬°áÇÏ´Â µ¥ ¹®Á¦°¡ ÀÖÀ½À» ³ªÅ¸³À´Ï´Ù. ´ë»ó ÄÄÇ»ÅÍ¿¡ ÆÐÄ¡°¡ Àû¿ëµÇ¾ú´ÂÁö È®ÀÎÇÏ·Á¸é Á÷Á¢ °Ë»çÇØ¾ß ÇÕ´Ï´Ù.
  • "connection refused" ¿À·ù ¸Þ½ÃÁö´Â TCP 135¹ø Æ÷Æ®¿¡¼­ ¼ö½Å ´ë±â ÁßÀÎ ¼­ºñ½º°¡ ¾ø°Å³ª TCP 135¹ø Æ÷Æ®°¡ Windows TCP/IP ½ºÅà ¶Ç´Â ¹æÈ­º®À̳ª ¶ó¿ìÅÍ¿¡ ÀÇÇØ ÇÊÅ͸µµÇ°í ÀÖÀ½À» ³ªÅ¸³À´Ï´Ù. ´ë»ó ÄÄÇ»ÅÍ¿¡ ÆÐÄ¡°¡ Àû¿ëµÇ¾ú´ÂÁö È®ÀÎÇÏ·Á¸é Á÷Á¢ °Ë»çÇØ¾ß ÇÕ´Ï´Ù.
  • "this host needs further investigation" ¿À·ù ¸Þ½ÃÁö´Â ¿ø°Ý È£½ºÆ®¸¦ °Ë»öÇÏ´Â µ¥ ¹®Á¦°¡ ÀÖÀ½À» ³ªÅ¸³À´Ï´Ù. ´ë»ó ÄÄÇ»ÅÍ¿¡ ÆÐÄ¡°¡ Àû¿ëµÇ¾ú´ÂÁö È®ÀÎÇÏ·Á¸é Á÷Á¢ °Ë»çÇØ¾ß ÇÕ´Ï´Ù.
  • "connection failure, error 67 (0x00000043)" ¿À·ù ¸Þ½ÃÁö´Â ³×Æ®¿öÅ© À̸§À» ãÀ» ¼ö ¾øÀ½À» ³ªÅ¸³À´Ï´Ù. ºñ½ÁÇÑ ¿À·ù ¸Þ½ÃÁöÀÇ ¿øÀÎÀ» È®ÀÎÇÏ·Á¸é ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ´ÙÀ½À» ÀÔ·ÂÇϽʽÿÀ. ¿©±â¼­ nnÀº 10Áø¼ö ¿À·ù ¹øÈ£ÀÔ´Ï´Ù.
    net helpmsg nn
  • "Patched with KB824146 and KB823980" Åë°è´Â "patched with KB824146 and KB823980"À̶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍ ¼öÀÔ´Ï´Ù.
  • "Patched with KB823980" Åë°è´Â ¡°patched with KB823980¡±À̶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "Unpatched" Åë°è´Â "unpatched"¶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "TOTAL HOSTS SCANNED" Åë°è´Â "Patched with KB824146 and KB823980," "Patched with KB823980" ¹× "Unpatched" Åë°è¸¦ ÇÕÇÑ °ªÀÔ´Ï´Ù.
  • "DCOM Disabled" Åë°è´Â "DCOM is disabled on this host"¶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "Needs Investigation" Åë°è´Â "this host needs further investigation"À̶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "Connection refused" Åë°è´Â "connection refused"¶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "Host unreachable" Åë°è´Â "host unreachable"À̶ó´Â »óÅ ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "Other Errors" Åë°è´Â ÀÌ·¯ÇÑ ¸ñ·Ï¿¡ Æ÷ÇԵǾî ÀÖÁö ¾ÊÀº ±× ¹ÛÀÇ ´Ù¸¥ ¿À·ù ¸Þ½ÃÁö·Î Ç¥½ÃµÈ ´ë»ó ÄÄÇ»ÅÍÀÇ ¼öÀÔ´Ï´Ù.
  • "TOTAL HOSTS SKIPPED" Åë°è´Â "DCOM Disabled," "Needs Investigation," "Connection refused," "Host unreachable" ¹× "Other Errors" Åë°è¸¦ ÇÕÇÑ °ªÀÔ´Ï´Ù.
  • "TOTAL ADDRESSES SCANNED" Åë°è´Â "TOTAL HOSTS SCANNED" Åë°è¿Í "TOTAL HOSTS SKIPPED" Åë°è¸¦ ÇÕÇÑ °ªÀÔ´Ï´Ù.

KB824146Scan.exe µµ±¸°¡ ¸¸µå´Â ·Î±× ÆÄÀÏ

Âü°í ÀÌ·¯ÇÑ ·Î±× ÆÄÀÏÀº ÇöÀç ÀÛ¾÷ Æú´õ(Áï, KB824146Scan.exe¸¦ ½ÇÇàÇÏ´Â Æú´õ)¿¡ ¸¸µé¾îÁý´Ï´Ù. ±âº»ÀûÀ¸·Î ÀÌ Æú´õ´Â Program Files Æú´õÀÇ KB824146scan ÇÏÀ§ Æú´õ³ª Program Files(X86) Æú´õÀÇ KB824146scan ÇÏÀ§ Æú´õ(Windows XP ¶Ç´Â Windows Server 2003ÀÇ 64ºñÆ® ¹öÀü)ÀÔ´Ï´Ù.
  • KB824146Scan_YYMMDD[a-z][a-z].log: ÀÌ ·Î±× ÆÄÀÏ¿¡´Â º» ¹®¼­ÀÇ "Ãâ·Â ¿¹Á¦" Àý¿¡ ³ª¿Í ÀÖ´Â Á¤º¸¿Í À¯»çÇÑ Á¤º¸°¡ ³ª¿Í ÀÖ½À´Ï´Ù.
  • Vulnerable_YYMMDD[a-z][a-z].log: ÀÌ ·Î±× ÆÄÀÏ¿¡´Â ÇØ´ç ³×Æ®¿öÅ©¿¡¼­ 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇÁö ¾ÊÀº ÄÄÇ»ÅÍÀÇ IP ¸ñ·ÏÀÌ ³ª¿Í ÀÖ½À´Ï´Ù. ¼öÁ¤ÇÏÁö ¾ÊÀº »óÅÂÀÇ Vulnerable_YYMMDD[a-z][a-z] ÆÄÀÏÀ» Microsoft ±â¼ú ÀÚ·áÀÇ ¹®¼­ 827227¿¡ ³ª¿Í ÀÖ´Â Patchinstall.vbs ½ºÅ©¸³Æ®ÀÇ ÀÔ·Â ÆÄÀÏ(Ipfile.txt)·Î »ç¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù. ÇÏ·ç¿¡ µÎ ¹ø ÀÌ»ó KB824146Scan.exe¸¦ ½ÇÇàÇϸé Vulnerable_YYMMDD[a-z][a-z] ÆÄÀÏ À̸§¿¡¼­ ³¯Â¥ µÚ¿¡ [a-z][a-z] ¹®ÀÚ°¡ Ãß°¡µË´Ï´Ù. ¿¹¸¦ µé¾î, 2003³â 8¿ù 21ÀÏ¿¡ KB824146Scan.exe¸¦ 5¹ø ½ÇÇàÇÏ¸é ´ÙÀ½°ú °°Àº ·Î±× ÆÄÀÏÀÌ ¾Æ·¡ÀÇ ¼ø¼­´ë·Î ¸¸µé¾îÁý´Ï´Ù.
    1. Vulnerable_030821.log
    2. Vulnerable_030821a.log
    3. Vulnerable_030821b.log
    4. Vulnerable_030821c.log
    5. Vulnerable_030821d.log
    ÀÌ ¹®¼­ÀÇ "Ãâ·Â ¿¹Á¦" Àý¿¡ ³ª¿Í ÀÖ´Â Ãâ·Â ¿¹Á¦ÀÇ °æ¿ì Vulnerable_YYMMDD[a-z][a-z].log ·Î±× ÆÄÀÏ¿¡´Â ´ÙÀ½°ú °°Àº Ç׸ñÀÌ Æ÷ÇԵ˴ϴÙ.
    10.1.1.2
    10.1.1.8

¾Ë·ÁÁø ¹®Á¦

  • ¿ø°Ý ¾×¼¼½º³ª ÆÄÀÏ °øÀ¯°¡ »ç¿ë °¡´ÉÇÏ°Ô ¼³Á¤µÈ °æ¿ì¿¡´Â KB824146scan.exe µµ±¸°¡ ´ÙÀ½°ú °°Àº ¹öÀüÀÇ Windows¿¡ Ãë¾àÁ¡ÀÌ ÀÖ´Â °ÍÀ¸·Î À߸ø º¸°íÇÒ ¼ö ÀÖ½À´Ï´Ù.
    • Microsoft Windows 95
    • Microsoft Windows 98
    • Microsoft Windows 98 Second Edition
    • Microsoft Windows Millennium Edition
  • KB824146scan.exe µµ±¸ÀÇ ¿øº» ¹öÀü(1.00.0249)Àº Windows NT 4.0 ±â¹Ý ÄÄÇ»ÅÍÀÇ ´ÙÀ½ ·¹Áö½ºÆ®¸® Ű¿¡¼­ RestrictAnonymous °ªÀÌ 1·Î ¼³Á¤µÈ °æ¿ì 823980(MS03-026) ¹× 824146(MS03-039) º¸¾È ÆÐÄ¡°¡ ¼³Ä¡µÇ¾ú´ÂÁö ¿©ºÎ¸¦ È®ÀÎÇÒ ¼ö ¾ø½À´Ï´Ù.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa


    ÀÌ·¯ÇÑ °æ¿ì¿¡´Â KB824146scan.exe µµ±¸°¡ ´ë»ó ÄÄÇ»ÅÍ¿¡ ´ëÇØ ¡°cannot get workstation info: error 997(0x000003E5)¡±À̶ó´Â ¿À·ù »óŸ¦ º¸°íÇÕ´Ï´Ù. ÀÌ·¯ÇÑ ÄÄÇ»ÅÍ¿¡ ÆÐÄ¡°¡ Àû¿ëµÇ¾ú´ÂÁö È®ÀÎÇÏ·Á¸é KB824146scan.exeÀÇ ¹öÀü 1.00.0257À» »ç¿ëÇϰųª RestrictAnonymous °ªÀÌ ¼³Á¤µÇ¾î ÀÖ´Â ¸ðµç Windows NT 4.0 ±â¹Ý ÄÄÇ»Å͸¦ ¼öµ¿À¸·Î °Ë»çÇØ¾ß ÇÕ´Ï´Ù.
  • KB824146scan.exe µµ±¸¸¦ »ç¿ëÇÒ ¶§´Â ÀÔ·Â ÆÄÀÏ, Ãâ·Â ÆÄÀÏ, ·Î±× ÆÄÀÏ ¶Ç´Â È£½ºÆ® ÄÄÇ»ÅÍÀÇ °æ·Î¿¡ ´õºí¹ÙÀÌÆ® ¹®ÀÚ ÁýÇÕ(DBCS) ¹®ÀÚ¸¦ »ç¿ëÇÒ ¼ö ¾ø½À´Ï´Ù.




Microsoft Á¦Ç° °ü·Ã ±â¼ú Àü¹®°¡µé°ú ¿Â¶óÀÎÀ¸·Î Á¤º¸¸¦ ±³È¯ÇϽ÷Á¸é Microsoft ´º½º ±×·ì¿¡ Âü¿©ÇϽñ⠹ٶø´Ï´Ù.

¼Ó¼º

±â¼ú ÀÚ·á: 827363 - ¸¶Áö¸· °ËÅä: 2005³â 7¿ù 11ÀÏ ¿ù¿äÀÏ - ¼öÁ¤: 5.3
º» ¹®¼­ÀÇ Á¤º¸´Â ´ÙÀ½ÀÇ Á¦Ç°¿¡ Àû¿ëµË´Ï´Ù.
  • Microsoft Windows Server 2003, 64-Bit Datacenter Edition
  • Microsoft Windows Server 2003, Enterprise x64 Edition
  • Microsoft Windows Server 2003, Datacenter Edition (32-bit x86)
  • Microsoft Windows Server 2003, Enterprise Edition (32-bit x86)
  • Microsoft Windows Server 2003, Standard Edition (32-bit x86)
  • Microsoft Windows Server 2003, Web Edition
  • Microsoft Windows XP 64-Bit Edition Version 2002
  • Microsoft Windows XP 64-Bit Edition Version 2003
  • Microsoft Windows XP Home Edition
  • Microsoft Windows XP Media Center Edition
  • Microsoft Windows XP Professional
  • Microsoft Windows XP Tablet PC Edition
  • Microsoft Windows 2000 Advanced Server
  • Microsoft Windows 2000 Datacenter Server
  • Microsoft Windows 2000 Professional Edition
  • Microsoft Windows 2000 Server
  • Microsoft Windows NT Server 4.0, Terminal Server Edition
  • Microsoft Windows NT Server 4.0 Standard Edition
  • Microsoft Windows NT Workstation 4.0 Developer Edition
Ű¿öµå:?
kbfirewall kbhowto KB827363

Çǵå¹é º¸³»±â