{"id":91919,"date":"2020-08-20T13:41:55","date_gmt":"2020-08-20T11:41:55","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet"},"modified":"2020-08-20T13:41:55","modified_gmt":"2020-08-20T11:41:55","slug":"vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet","title":{"rendered":"U zbulua krimbi FritzFrog, i cili godet serverat p\u00ebrmes SSH dhe nderton nj\u00eb botnet decentralizuar","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Kompanija Guardicore, e specializuar n\u00eb mbrojtjen e qendrave t\u00eb t\u00eb dh\u00ebnave dhe sistemeve n\u00eb cloud, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.guardicore.com\/2020\/08\/fritzfrog-p2p-botnet-infects-ssh-servers\/\">ka identifikuar<\/a><\/noindex> nj\u00eb malware i avancuar t\u00eb quajtur FritzFrog, q\u00eb ndikonte n\u00eb server\u00ebt me baz\u00eb Linux. FritzFrog kombinon nj\u00eb k\u00ebrpudh\u00eb q\u00eb p\u00ebrhapet p\u00ebrmes nj\u00eb sulmi bruteforce ndaj server\u00ebve me port t\u00eb hapur SSH dhe komponent\u00eb p\u00ebr nd\u00ebrtimin e nj\u00eb botneti decentralizuar, q\u00eb funksionon pa qendra kontrolli dhe pa nj\u00eb pik\u00eb d\u00ebshtimi.<\/p>\n<p>P\u00ebr nd\u00ebrtimin e botnetit p\u00ebrdoret nj\u00eb protokoll P2P unik, ku nyjat nd\u00ebrveprojn\u00eb me nj\u00ebra-tjetr\u00ebn, koordinojn\u00eb organizimin e sulmeve, mb\u00ebshtesin funksionimin e rrjetit dhe monitorojn\u00eb gjendjen e nj\u00ebri-tjetrit. Viktima t\u00eb reja gjenden p\u00ebrmes sulmeve bruteforce ndaj server\u00ebve q\u00eb pranojn\u00eb k\u00ebrkesa p\u00ebr SSH. Kur zbulohet nj\u00eb server i ri, realizohet nj\u00eb p\u00ebrzgjedhje n\u00ebp\u00ebrmjet nj\u00eb liste t\u00eb fjalor\u00ebve t\u00eb zakonsh\u00ebm t\u00eb emrave t\u00eb p\u00ebrdoruesve dhe fjal\u00ebkalimeve. Kontrolli mund t\u00eb ushtrohet nga \u00e7do nyje, gj\u00eb q\u00eb e b\u00ebn t\u00eb v\u00ebshtir\u00eb identifikimin dhe bllokimin e operator\u00ebve t\u00eb botnetit.<\/p>\n<p>Sipas hulumtuesve, botneti tashm\u00eb ka rreth 500 nyje, duke p\u00ebrfshir\u00eb server\u00ebt e disa universiteteve dhe nj\u00eb kompanie t\u00eb madhe hekurudhore. Raportohet se objektivi kryesor i sulmeve jan\u00eb rrjetet e institucioneve edukative, qendrave mjek\u00ebsore, institucioneve shtet\u00ebrore, bankave dhe kompanive t\u00eb telekomunikacionit. Pas kompromentimit t\u00eb serverit, aty organizohet procesi i minatorit t\u00eb kriptovalut\u00ebs Monero. Aktiviteti i k\u00ebtij malware \u00ebsht\u00eb i regjistruar q\u00eb nga janari i vitit 2020.<\/p>\n<p>Ve\u00e7oria e FritzFrog \u00ebsht\u00eb se ai mban t\u00eb dh\u00ebnat dhe kodin ekzekutiv vet\u00ebm n\u00eb memorje. Ndryshimet n\u00eb disk reduktohen vet\u00ebm n\u00eb shtimin e nj\u00eb SSH-\u00e7el\u00ebsi n\u00eb skedarin authorized_keys, i cili m\u00eb von\u00eb p\u00ebrdoret p\u00ebr qasje n\u00eb server. Skedar\u00ebt sistemor\u00eb nuk ndryshojn\u00eb, gj\u00eb q\u00eb e b\u00ebn k\u00ebrpudh\u00ebn t\u00eb padukshme p\u00ebr sistemet q\u00eb kontrollojn\u00eb integritetin p\u00ebrmes kontrollimeve t\u00eb shumave. N\u00eb memorje gjithashtu mbahen fjalor\u00ebt p\u00ebr p\u00ebrzgjedhjen e fjal\u00ebkalimeve dhe t\u00eb dh\u00ebnat p\u00ebr minimin, t\u00eb cilat sinkronizohen midis nyjeve p\u00ebrmes protokollit P2P.<\/p>\n<p>Komponentet e d\u00ebmshme kamuflohen si procese &#171;ifconfig&#187;, &#171;libexec&#187;, &#171;php-fpm&#187; dhe &#171;nginx&#187;. Nodat e botnetit monitorojn\u00eb gjendjen e fqinjve dhe n\u00eb rastin e rinisjes s\u00eb serverit ose madje edhe rikthimit t\u00eb sistemit operativ (n\u00ebse n\u00eb sistemin e ri \u00ebsht\u00eb transferuar skedari i ndryshuar authorized_keys) rishfaqin p\u00ebrs\u00ebri komponent\u00ebt e d\u00ebmsh\u00ebm n\u00eb host. Komunikimi realizohet p\u00ebrmes SSH standard &#8212; malware aktivizon gjithashtu lokalin &#171;netcat&#187;, i cili lidhet me nd\u00ebrfaqen localhost dhe d\u00ebgjon trafik n\u00eb portin 1234, i cili qasjej nga nodat e jashtme p\u00ebrmes SSH-tunelit, duke p\u00ebrdorur \u00e7el\u00ebsin nga authorized_keys p\u00ebr lidhen.<br \/>\n<center><noindex><a rel=\"nofollow\" href=\"https:\/\/www.guardicore.com\/wp-content\/uploads\/2020\/08\/frog-attack-1030x601.jpg\"><img decoding=\"async\" alt=\"U zbulua krimbi FritzFrog, i cili godet serverat p\u00ebrmes SSH dhe nderton nj\u00eb botnet decentralizuar\" src=\"\/wp-content\/uploads\/2020\/08\/485d97de035ae93d10692d8934702264.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/a><\/noindex><\/center><\/p>\n<p> Kodi i komponent\u00ebve FritzFrog \u00ebsht\u00eb shkruar n\u00eb gjuh\u00ebn Go dhe funksionon n\u00eb modin me shum\u00eb tela. Malware p\u00ebrfshin disa module, t\u00eb cilat aktivizohen n\u00eb tela t\u00eb ndryshme:<\/p>\n<ul>\n<li class=\"l\"> Cracker &#8212; realizon provimin e fjal\u00ebkalimeve n\u00eb server\u00ebt e sulmuar.\n<li class=\"l\"> CryptoComm + Parser\t&#8212; organizon nj\u00eb lidhje t\u00eb koduar P2P.\n<li class=\"l\"> CastVotes &#8212; mekanizmi i zgjedhjes s\u00eb p\u00ebrbashk\u00ebt t\u00eb hosteve t\u00eb targetuar p\u00ebr sulm.\n<li class=\"l\"> TargetFeed &#8212; merr nj\u00eb list\u00eb nodash p\u00ebr sulm nga nodat fqinj.\n<li class=\"l\"> DeployMgmt &#8212; realizimi i nj\u00eb verme, e cila shperndan kodin e d\u00ebmsh\u00ebm n\u00eb serverin e thyer.\n<li class=\"l\"> Owned &#8212; p\u00ebrgjegj\u00ebs p\u00ebr lidhjen me server\u00ebt ku tashm\u00eb \u00ebsht\u00eb aktivizuar kodi i d\u00ebmsh\u00ebm.\n<li class=\"l\"> Assemble &#8212; grumbullon skedarin n\u00eb memorie nga blloqet e dor\u00ebzuara ndaras.\n<li class=\"l\"> Antivir &#8212; moduli q\u00eb shtyp programet e d\u00ebmshme konkuruese, identifikon dhe mbyll proceset me tekstin &#171;xmr&#187;, q\u00eb konsumojn\u00eb burimet e CPU.\n<li class=\"l\"> Libexec &#8212; moduli p\u00ebr minimin e kriptovalut\u00ebs Monero.\n<\/ul>\n<p>Protokolli P2P i p\u00ebrdorur n\u00eb FritzFrog mb\u00ebshtet rreth 30 komanda, q\u00eb sigurojn\u00eb transmetimin e t\u00eb dh\u00ebnave midis nyjeve, ekzekutimin e skripteve, transmetimin e komponent\u00ebve t\u00eb malware-it, pyetje p\u00ebr gjendje, shk\u00ebmbimin e logjeve, ekzekutimin e proxy-it etj. Informacioni transmetohet p\u00ebrmes nj\u00eb kanali t\u00eb ve\u00e7ant\u00eb t\u00eb enkriptuar me serializimin n\u00eb formatin JSON. P\u00ebr enkriptimin p\u00ebrdoret kriptimi asimetrik AES dhe kodimi Base64. P\u00ebr shk\u00ebmbimin e \u00e7el\u00ebsave p\u00ebrdoret protokolli DH (<noindex><a rel=\"nofollow\" href=\"https:\/\/en.wikipedia.org\/wiki\/Diffie%E2%80%93Hellman_key_exchange\">Diffie-Hellman<\/a><\/noindex>). P\u00ebr p\u00ebrcaktimin e gjendjes, nyjat vazhdimisht shk\u00ebmbejn\u00eb k\u00ebrkesa ping. <\/p>\n<p>T\u00eb gjitha nodat e botnetit mb\u00ebshtesin nj\u00eb DB t\u00eb shp\u00ebrndar\u00eb me informacion mbi sistemet e sulmuara dhe t\u00eb komprometuara. Q\u00ebllimet p\u00ebr sulm sinkronizohen n\u00eb t\u00eb gjith\u00eb botnetin &#8212; \u00e7do nod\u00eb sulmon nj\u00eb q\u00ebllim t\u00eb ve\u00e7ant\u00eb, dmth. dy nod\u00eb t\u00eb ndryshme t\u00eb botnetit nuk do t\u00eb sulmojn\u00eb t\u00eb nj\u00ebjtin host. Nodat gjithashtu mbledhin dhe transmetojn\u00eb fqinj\u00ebve statistik\u00eb lokale, si\u00e7 jan\u00eb madh\u00ebsia e memories s\u00eb lir\u00eb, uptime, ngarkesa e CPU dhe aktivitetet e hyrjeve p\u00ebrmes SSH. Kjo informacion p\u00ebrdoret p\u00ebr t\u00eb vendosur n\u00ebse t\u00eb fillohet procesi i minimit ose t\u00eb p\u00ebrdoret nodi vet\u00ebm p\u00ebr sulm p\u00ebr sistemet e tjera (p.sh., minimi nuk aktivizohet n\u00eb sistemet me ngarkesa t\u00eb larta ose sistemet me lidhje t\u00eb shpeshta t\u00eb administrator\u00ebve).<\/p>\n<p>P\u00ebr identifikimin e FritzFrog, studiuesit kan\u00eb propozuar nj\u00eb metod\u00eb t\u00eb thjesht\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/guardicore\/labs_campaigns\/blob\/master\/FritzFrog\/detect_fritzfrog.sh\">shell-skript<\/a><\/noindex>. P\u00ebr t\u00eb p\u00ebrcaktuar infektimin e sistemit<br \/>\nmund t\u00eb p\u00ebrdoren tregues t\u00eb till\u00eb si prania e nj\u00eb lidhjeje q\u00eb d\u00ebgjon n\u00eb portin 1234, prania e <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/guardicore\/labs_campaigns\/blob\/master\/FritzFrog\/ssh_key.md\">\u00e7el\u00ebsit t\u00eb d\u00ebmsh\u00ebm<\/a><\/noindex> n\u00eb authorized_keys (n\u00eb t\u00eb gjitha nodet vendoset e nj\u00ebjt\u00eb \u00e7el\u00ebsi SSH) dhe prania n\u00eb memorien e proceseve t\u00eb nisura &#171;ifconfig&#187;, &#171;libexec&#187;, &#171;php-fpm&#187; dhe &#171;nginx&#187;, q\u00eb nuk kan\u00eb dosje ekzekutivash t\u00eb lidhura (&#171;\\\/proc\\\/&lt;PID&gt;\\\/exe&#187; tregon p\u00ebr skedarin e larg\u00ebt). Nj\u00eb shenj\u00eb tjet\u00ebr mund t\u00eb jet\u00eb edhe prania e trafikut n\u00eb portin 5555 t\u00eb rrjetit, q\u00eb ndodh kur malware-i i drejtohet grupit standard web.xmrpool.eu gjat\u00eb procesit t\u00eb nxjerrjes s\u00eb cryptocurrency Monero.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Burimi: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=53573\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Guardicore, \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u044e\u0449\u0430\u044f\u0441\u044f \u043d\u0430 \u0437\u0430\u0449\u0438\u0442\u0435 \u0434\u0430\u0442\u0430\u0446\u0435\u043d\u0442\u0440\u043e\u0432 \u0438 \u043e\u0431\u043b\u0430\u0447\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c, \u0432\u044b\u044f\u0432\u0438\u043b\u0430 \u043d\u043e\u0432\u043e\u0435 \u0432\u044b\u0441\u043e\u043a\u043e\u0442\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0447\u043d\u043e\u0435 \u0432\u0440\u0435\u0434\u043e\u043d\u043e\u0441\u043d\u043e\u0435 \u041f\u041e FritzFrog, \u043f\u043e\u0440\u0430\u0436\u0430\u044e\u0449\u0435\u0435 \u0441\u0435\u0440\u0432\u0435\u0440\u044b \u043d\u0430 \u0431\u0430\u0437\u0435 Linux. FritzFrog \u0441\u043e\u0447\u0435\u0442\u0430\u0435\u0442 \u0432 \u0441\u0435\u0431\u0435 \u0447\u0435\u0440\u0432\u044c, \u0440\u0430\u0441\u043f\u0440\u043e\u0441\u0442\u0440\u0430\u043d\u044f\u044e\u0449\u0438\u0439\u0441\u044f \u0447\u0435\u0440\u0435\u0437 bruteforce-\u0430\u0442\u0430\u043a\u0443 \u043d\u0430 \u0441\u0435\u0440\u0432\u0435\u0440\u044b \u0441 \u043e\u0442\u043a\u0440\u044b\u0442\u044b\u043c \u043f\u043e\u0440\u0442\u043e\u043c SSH, \u0438 \u043a\u043e\u043c\u043f\u043e\u043d\u0435\u043d\u0442\u044b \u0434\u043b\u044f \u043f\u043e\u0441\u0442\u0440\u043e\u0435\u043d\u0438\u044f \u0434\u0435\u0446\u0435\u043d\u0442\u0440\u0430\u043b\u0438\u0437\u043e\u0432\u0430\u043d\u043d\u043e\u0433\u043e \u0431\u043e\u0442\u043d\u0435\u0442\u0430, \u0440\u0430\u0431\u043e\u0442\u0430\u044e\u0449\u0435\u0433\u043e \u0431\u0435\u0437 \u0443\u043f\u0440\u0430\u0432\u043b\u044f\u044e\u0449\u0438\u0445 \u0443\u0437\u043b\u043e\u0432 \u0438 \u043d\u0435 \u0438\u043c\u0435\u044e\u0449\u0435\u0433\u043e \u0435\u0434\u0438\u043d\u043e\u0439 \u0442\u043e\u0447\u043a\u0438 \u043e\u0442\u043a\u0430\u0437\u0430. \u0414\u043b\u044f \u043f\u043e\u0441\u0442\u0440\u043e\u0435\u043d\u0438\u044f \u0431\u043e\u0442\u043d\u0435\u043d\u0442\u0430 \u043f\u0440\u0438\u043c\u0435\u043d\u044f\u0435\u0442\u0441\u044f \u0441\u043e\u0431\u0441\u0442\u0432\u0435\u043d\u043d\u044b\u0439 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":91920,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-91919","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.0.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Guardicore, \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u044e\u0449\u0430\u044f\u0441\u044f \u043d\u0430 \u0437\u0430\u0449\u0438\u0442\u0435 \u0434\u0430\u0442\u0430\u0446\u0435\u043d\u0442\u0440\u043e\u0432 \u0438 \u043e\u0431\u043b\u0430\u0447\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c, \u0432\u044b\u044f\u0432\u0438\u043b\u0430.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.0.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412\u044b\u044f\u0432\u043b\u0435\u043d \u0447\u0435\u0440\u0432\u044c FritzFrog, \u043f\u043e\u0440\u0430\u0436\u0430\u044e\u0449\u0438\u0439 \u0441\u0435\u0440\u0432\u0435\u0440\u044b \u043f\u043e SSH \u0438 \u0441\u0442\u0440\u043e\u044f\u0449\u0438\u0439 \u0434\u0435\u0446\u0435\u043d\u0442\u0440\u0430\u043b\u0438\u0437\u043e\u0432\u0430\u043d\u043d\u044b\u0439 \u0431\u043e\u0442\u043d\u0435\u0442 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Guardicore, \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u044e\u0449\u0430\u044f\u0441\u044f \u043d\u0430 \u0437\u0430\u0449\u0438\u0442\u0435 \u0434\u0430\u0442\u0430\u0446\u0435\u043d\u0442\u0440\u043e\u0432 \u0438 \u043e\u0431\u043b\u0430\u0447\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c, \u0432\u044b\u044f\u0432\u0438\u043b\u0430.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-08-20T11:41:55+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-08-20T11:41:55+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Krimbi FritzFrog \u00ebsht\u00eb identifikuar, duke infektuar server\u00ebt p\u00ebrmes SSH dhe duke nd\u00ebrtuar nj\u00eb botnet t\u00eb decentralizuar | ProHoster","description":"Kompania Guardicore, e cila specializohet n\u00eb mbrojtjen e qendrave t\u00eb t\u00eb dh\u00ebnave dhe sistemeve n\u00eb re, zbuloi.","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412\u044b\u044f\u0432\u043b\u0435\u043d \u0447\u0435\u0440\u0432\u044c FritzFrog, \u043f\u043e\u0440\u0430\u0436\u0430\u044e\u0449\u0438\u0439 \u0441\u0435\u0440\u0432\u0435\u0440\u044b \u043f\u043e SSH \u0438 \u0441\u0442\u0440\u043e\u044f\u0449\u0438\u0439 \u0434\u0435\u0446\u0435\u043d\u0442\u0440\u0430\u043b\u0438\u0437\u043e\u0432\u0430\u043d\u043d\u044b\u0439 \u0431\u043e\u0442\u043d\u0435\u0442 | ProHoster","og:description":"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Guardicore, \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u044e\u0449\u0430\u044f\u0441\u044f \u043d\u0430 \u0437\u0430\u0449\u0438\u0442\u0435 \u0434\u0430\u0442\u0430\u0446\u0435\u043d\u0442\u0440\u043e\u0432 \u0438 \u043e\u0431\u043b\u0430\u0447\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c, \u0432\u044b\u044f\u0432\u0438\u043b\u0430.","og:url":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-cherv-fritzfrog-porazhayushhij-servery-po-ssh-i-stroyashhij-deczentralizovannyj-botnet","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-08-20T11:41:55+00:00","article:modified_time":"2020-08-20T11:41:55+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"91919","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 12:18:27","updated":"2022-10-04 19:20:25","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/91919","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=91919"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/91919\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media\/91920"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=91919"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=91919"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=91919"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}