์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

๊ฑฐ์˜ ๋ชจ๋“  ์‚ฌ๋žŒ์ด ์˜จ๋ผ์ธ ์ƒ์ ์˜ ์„œ๋น„์Šค๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์ฆ‰, ๊ณต๊ฒฉ์ž๊ฐ€ ์€ํ–‰ ์นด๋“œ ๋ฐ์ดํ„ฐ, ์ฃผ์†Œ, ์‚ฌ์šฉ์ž ์ด๋ฆ„ ๋ฐ ์•”ํ˜ธ๋ฅผ ํ›”์น˜๊ธฐ ์œ„ํ•ด ์›น์‚ฌ์ดํŠธ์— ์‚ฝ์ž…ํ•˜๋Š” ํŠน์ˆ˜ ์ฝ”๋“œ์ธ JavaScript ์Šค๋‹ˆํผ์˜ ํฌ์ƒ์ž๊ฐ€ ๋  ์œ„ํ—˜์ด ์žˆ์Šต๋‹ˆ๋‹ค. .

British Airways ์›น์‚ฌ์ดํŠธ์™€ ๋ชจ๋ฐ”์ผ ์•ฑ์˜ ์•ฝ 400๋ช…์˜ ์‚ฌ์šฉ์ž๋Š” ์ด๋ฏธ ์Šค๋‹ˆํผ, ์˜๊ตญ ์Šคํฌ์ธ  ๊ฑฐ์ธ FILA ์›น์‚ฌ์ดํŠธ ๋ฐ ๋ฏธ๊ตญ ํ‹ฐ์ผ“ ์œ ํ†ต์—…์ฒด์ธ Ticketmaster ๋ฐฉ๋ฌธ์ž์˜ ์˜ํ–ฅ์„ ๋ฐ›์•˜์Šต๋‹ˆ๋‹ค. PayPal, Chase Paymenttech, USAePay, Moneris - ์ด๋“ค ๋ฐ ๊ธฐํƒ€ ์—ฌ๋Ÿฌ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์ด ๊ฐ์—ผ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

Threat Intelligence Group-IB ๋ถ„์„๊ฐ€ Viktor Okorokov๊ฐ€ ์Šค๋‹ˆํผ๊ฐ€ ์›น ์‚ฌ์ดํŠธ ์ฝ”๋“œ์— ์นจํˆฌํ•˜์—ฌ ๊ฒฐ์ œ ์ •๋ณด๋ฅผ ํ›”์น˜๋Š” ๋ฐฉ๋ฒ•๊ณผ ๊ณต๊ฒฉํ•˜๋Š” CRM์— ๋Œ€ํ•ด ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

"์ˆจ๊ฒจ์ง„ ์œ„ํ˜‘"

์˜ค๋žซ๋™์•ˆ JS ์Šค๋‹ˆํผ๋Š” ์•ˆํ‹ฐ ๋ฐ”์ด๋Ÿฌ์Šค ๋ถ„์„๊ฐ€์˜ ๋ˆˆ์— ๋„์ง€ ์•Š์•˜๊ณ  ์€ํ–‰๊ณผ ์ง€๋ถˆ ์‹œ์Šคํ…œ์€ ์ด๋ฅผ ์‹ฌ๊ฐํ•œ ์œ„ํ˜‘์œผ๋กœ ๋ณด์ง€ ์•Š์•˜์Šต๋‹ˆ๋‹ค. ๊ทธ๋ฆฌ๊ณ  ์ ˆ๋Œ€์ ์œผ๋กœ ํ—›๋œ ๊ฒƒ์ž…๋‹ˆ๋‹ค. Group-IB ์ „๋ฌธ๊ฐ€ ๋ถ„์„ 2440๊ฐœ์˜ ๊ฐ์—ผ๋œ ์˜จ๋ผ์ธ ์ƒ์  ๋ฐฉ๋ฌธ์ž(ํ•˜๋ฃจ ์ด ์•ฝ 1,5๋งŒ ๋ช…)๊ฐ€ ์†์ƒ๋  ์œ„ํ—˜์— ์ฒ˜ํ–ˆ์Šต๋‹ˆ๋‹ค. ํ”ผํ•ด์ž ์ค‘์—๋Š” ์‚ฌ์šฉ์ž๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ์†์ƒ๋œ ์นด๋“œ๋ฅผ ๋ฐœ๊ธ‰ํ•œ ์˜จ๋ผ์ธ ์ƒ์ , ๊ฒฐ์ œ ์‹œ์Šคํ…œ ๋ฐ ์€ํ–‰๋„ ์žˆ์Šต๋‹ˆ๋‹ค.

์‹ ๊ณ  Group-IB๋Š” ์Šค๋‹ˆํผ์˜ ๋‹คํฌ๋„ท ์‹œ์žฅ, ์ธํ”„๋ผ ๋ฐ ์ˆ˜์ต ์ฐฝ์ถœ ๋ฐฉ๋ฒ•์— ๋Œ€ํ•œ ์ตœ์ดˆ์˜ ์—ฐ๊ตฌ๊ฐ€ ๋˜์–ด ์ œ์ž‘์ž์—๊ฒŒ ์ˆ˜๋ฐฑ๋งŒ ๋‹ฌ๋Ÿฌ๋ฅผ ๊ฐ€์ ธ์™”์Šต๋‹ˆ๋‹ค. ์šฐ๋ฆฌ๋Š” 38๊ฐœ์˜ ์Šค๋‹ˆํผ ํŒจ๋ฐ€๋ฆฌ๋ฅผ ์‹๋ณ„ํ–ˆ์œผ๋ฉฐ ๊ทธ ์ค‘ 12๊ฐœ๋งŒ์ด ์ด์ „์— ์—ฐ๊ตฌ์›๋“ค์—๊ฒŒ ์•Œ๋ ค์กŒ์Šต๋‹ˆ๋‹ค.

์—ฐ๊ตฌ ๊ณผ์ •์—์„œ ์—ฐ๊ตฌ๋œ ์Šค๋‹ˆํผ์˜ ๋„ค ๊ฐ€์กฑ์— ๋Œ€ํ•ด ์ž์„ธํžˆ ์‚ดํŽด๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.

ReactGet ์ œํ’ˆ๊ตฐ

ReactGet ์ œํ’ˆ๊ตฐ์˜ ์Šค๋‹ˆํผ๋Š” ์˜จ๋ผ์ธ ์‡ผํ•‘ ์‚ฌ์ดํŠธ์—์„œ ์€ํ–‰ ์นด๋“œ ๋ฐ์ดํ„ฐ๋ฅผ ํ›”์น˜๋Š” ๋ฐ ์‚ฌ์šฉ๋ฉ๋‹ˆ๋‹ค. ์Šค๋‹ˆํผ๋Š” ์‚ฌ์ดํŠธ์—์„œ ์‚ฌ์šฉ๋˜๋Š” ๋‹ค์–‘ํ•œ ๊ฒฐ์ œ ์‹œ์Šคํ…œ๊ณผ ํ•จ๊ป˜ ์ž‘๋™ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ํ•˜๋‚˜์˜ ๋งค๊ฐœ๋ณ€์ˆ˜ ๊ฐ’์€ ํ•˜๋‚˜์˜ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์— ํ•ด๋‹นํ•˜๋ฉฐ ๊ฐ์ง€๋œ ๊ฐœ๋ณ„ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๋Š” ์ž๊ฒฉ ์ฆ๋ช…์„ ๋„์šฉํ•˜๊ณ  ์€ํ–‰ ์นด๋“œ ๋ฐ์ดํ„ฐ๋ฅผ ๋„์šฉํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์†Œ์œ„ ๋ฒ”์šฉ ์Šค๋‹ˆํผ์™€ ๊ฐ™์€ ์—ฌ๋Ÿฌ ์ง€๋ถˆ ์‹œ์Šคํ…œ์˜ ์ง€๋ถˆ ์–‘์‹์„ ํ•œ ๋ฒˆ์—. ๊ฒฝ์šฐ์— ๋”ฐ๋ผ ๊ณต๊ฒฉ์ž๊ฐ€ ์‚ฌ์ดํŠธ์˜ ๊ด€๋ฆฌ ํŒจ๋„์— ๋Œ€ํ•œ ์•ก์„ธ์Šค ๊ถŒํ•œ์„ ์–ป๊ธฐ ์œ„ํ•ด ์˜จ๋ผ์ธ ์ƒ์  ๊ด€๋ฆฌ์ž์—๊ฒŒ ํ”ผ์‹ฑ ๊ณต๊ฒฉ์„ ์ˆ˜ํ–‰ํ•˜๋Š” ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค.

์ด ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์„ ์‚ฌ์šฉํ•˜๋Š” ์บ ํŽ˜์ธ์€ 2017๋…„ XNUMX์›”์— ์‹œ์ž‘๋˜์—ˆ์Šต๋‹ˆ๋‹ค. CMS๋ฅผ ์‹คํ–‰ํ•˜๋Š” ์‚ฌ์ดํŠธ์™€ Magento, Bigcommerce, Shopify ํ”Œ๋žซํผ์ด ๊ณต๊ฒฉ์„ ๋ฐ›์•˜์Šต๋‹ˆ๋‹ค.

ReactGet์ด ์˜จ๋ผ์ธ ์ƒ์  ์ฝ”๋“œ์— ํฌํ•จ๋˜๋Š” ๋ฐฉ์‹

๋งํฌ์— ์˜ํ•œ "ํด๋ž˜์‹" ์Šคํฌ๋ฆฝํŠธ ์‚ฝ์ž… ์™ธ์—๋„ ReactGet ์ œํ’ˆ๊ตฐ ์Šค๋‹ˆํผ ์—ฐ์‚ฐ์ž๋Š” JavaScript ์ฝ”๋“œ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์‚ฌ์šฉ์ž๊ฐ€ ์œ„์น˜ํ•œ ํ˜„์žฌ ์ฃผ์†Œ๊ฐ€ ํŠน์ • ๊ธฐ์ค€์„ ์ถฉ์กฑํ•˜๋Š”์ง€ ํ™•์ธํ•˜๋Š” ํŠน์ˆ˜ ๊ธฐ์ˆ ์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์•…์„ฑ ์ฝ”๋“œ๋Š” ํ˜„์žฌ URL์— ํ•˜์œ„ ๋ฌธ์ž์—ด์ด ํฌํ•จ๋œ ๊ฒฝ์šฐ์—๋งŒ ์‹คํ–‰๋ฉ๋‹ˆ๋‹ค. ์ ๊ฒ€ ๋˜๋Š” ์›์Šคํ…์ฒดํฌ์•„์›ƒ, ํ•œ ํŽ˜์ด์ง€/, ์•„์›ƒ/์›ํŽ˜์ด์ง€, ์ฒดํฌ์•„์›ƒ/ํ•˜๋‚˜, ์ฒดํฌ์•„์›ƒ/ํ•˜๋‚˜. ๋”ฐ๋ผ์„œ ์Šค๋‹ˆํผ ์ฝ”๋“œ๋Š” ์‚ฌ์šฉ์ž๊ฐ€ ๊ตฌ๋งค ๋น„์šฉ์„ ์ง€๋ถˆํ•˜๊ณ  ์‚ฌ์ดํŠธ์˜ ์–‘์‹์— ์ง€๋ถˆ ์ •๋ณด๋ฅผ ์ž…๋ ฅํ•˜๋Š” ์ˆœ๊ฐ„์— ์ •ํ™•ํžˆ ์‹คํ–‰๋ฉ๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
์ด ์Šค๋‹ˆํผ๋Š” ๋น„ํ‘œ์ค€ ๊ธฐ์ˆ ์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ํ”ผํ•ด์ž์˜ ์ง€๋ถˆ ๋ฐ ๊ฐœ์ธ ๋ฐ์ดํ„ฐ๋Š” ํ•จ๊ป˜ ์ˆ˜์ง‘๋˜๋ฉฐ ๋‹ค์Œ์„ ์‚ฌ์šฉํ•˜์—ฌ ์ธ์ฝ”๋”ฉ๋ฉ๋‹ˆ๋‹ค. base64, ๊ทธ๋ฆฌ๊ณ  ๊ฒฐ๊ณผ ๋ฌธ์ž์—ด์€ ๋งค๊ฐœ ๋ณ€์ˆ˜๋กœ ์‚ฌ์šฉ๋˜์–ด ์•…์„ฑ ์‚ฌ์ดํŠธ์— ์š”์ฒญ์„ ๋ณด๋ƒ…๋‹ˆ๋‹ค. ๋Œ€๋ถ€๋ถ„์˜ ๊ฒฝ์šฐ ๊ฒŒ์ดํŠธ ๊ฒฝ๋กœ๋Š” ์˜ˆ๋ฅผ ๋“ค์–ด JavaScript ํŒŒ์ผ์„ ๋ชจ๋ฐฉํ•ฉ๋‹ˆ๋‹ค. resp.js, ๋ฐ์ดํ„ฐ.js ๋“ฑ์ด ์žˆ์ง€๋งŒ ์ด๋ฏธ์ง€ ํŒŒ์ผ์— ๋Œ€ํ•œ ๋งํฌ๋„ ์‚ฌ์šฉ๋ฉ๋‹ˆ๋‹ค. GIF ะธ JPG. ํŠน์ด์ ์€ ์Šค๋‹ˆํผ๊ฐ€ 1 x 1 ํ”ฝ์…€ ํฌ๊ธฐ์˜ ์ด๋ฏธ์ง€ ๊ฐ์ฒด๋ฅผ ์ƒ์„ฑํ•˜๊ณ  ์ด์ „์— ์–ป์€ ๋งํฌ๋ฅผ ๋งค๊ฐœ ๋ณ€์ˆ˜๋กœ ์‚ฌ์šฉํ•œ๋‹ค๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค. SRC ์ด๋ฏธ์ง€. ์ฆ‰, ์‚ฌ์šฉ์ž์—๊ฒŒ ์ด๋Ÿฌํ•œ ํŠธ๋ž˜ํ”ฝ ์š”์ฒญ์€ ์ผ๋ฐ˜ ์‚ฌ์ง„ ์š”์ฒญ์ฒ˜๋Ÿผ ๋ณด์ผ ๊ฒƒ์ž…๋‹ˆ๋‹ค. ์œ ์‚ฌํ•œ ๊ธฐ์ˆ ์ด ImageID ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์— ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ๋˜ํ•œ 1x1 ํ”ฝ์…€ ์ด๋ฏธ์ง€ ๊ธฐ์ˆ ์€ ๋งŽ์€ ํ•ฉ๋ฒ•์ ์ธ ์˜จ๋ผ์ธ ๋ถ„์„ ์Šคํฌ๋ฆฝํŠธ์— ์‚ฌ์šฉ๋˜์–ด ์‚ฌ์šฉ์ž๋ฅผ ์˜ค๋„ํ•  ์ˆ˜๋„ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

๋ฒ„์ „ ๋ถ„์„

ReactGet ์Šค๋‹ˆํผ ์šด์˜์ž๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ํ™œ์„ฑ ๋„๋ฉ”์ธ์„ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ ์ด โ€‹โ€‹์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์˜ ๋‹ค์–‘ํ•œ ๋ฒ„์ „์ด ๋“œ๋Ÿฌ๋‚ฌ์Šต๋‹ˆ๋‹ค. ๋ฒ„์ „์€ ๋‚œ๋…ํ™”์˜ ์œ ๋ฌด์— ๋”ฐ๋ผ ๋‹ค๋ฅด๋ฉฐ, ๋˜ํ•œ ๊ฐ ์Šค๋‹ˆํผ๋Š” ์˜จ๋ผ์ธ ์ƒ์ ์˜ ์€ํ–‰ ์นด๋“œ ๊ฒฐ์ œ๋ฅผ ์ฒ˜๋ฆฌํ•˜๋Š” ํŠน์ • ๊ฒฐ์ œ ์‹œ์Šคํ…œ์šฉ์œผ๋กœ ์„ค๊ณ„๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ๋ฒ„์ „ ๋ฒˆํ˜ธ์— ํ•ด๋‹นํ•˜๋Š” ๋งค๊ฐœ๋ณ€์ˆ˜ ๊ฐ’์„ ํ†ตํ•ด ์ •๋ ฌํ•œ ํ›„ Group-IB ์ „๋ฌธ๊ฐ€๋Š” ์‚ฌ์šฉ ๊ฐ€๋Šฅํ•œ ์Šค๋‹ˆํผ ๋ณ€ํ˜•์˜ ์ „์ฒด ๋ชฉ๋ก์„ ๋ฐ›๊ณ  ๊ฐ ์Šค๋‹ˆํผ๊ฐ€ ํŽ˜์ด์ง€ ์ฝ”๋“œ์—์„œ ์ฐพ๋Š” ์–‘์‹ ํ•„๋“œ์˜ ์ด๋ฆ„์œผ๋กœ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์„ ๊ฒฐ์ •ํ–ˆ์Šต๋‹ˆ๋‹ค. ์Šค๋‹ˆํผ๊ฐ€ ๋ชฉํ‘œ๋กœ ์‚ผ๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค.

์Šค๋‹ˆํผ ๋ฐ ํ•ด๋‹น ๊ฒฐ์ œ ์‹œ์Šคํ…œ ๋ชฉ๋ก

์Šค๋‹ˆํผ URL ๊ฒฐ์ œ ์‹œ์Šคํ…œ
Reactjsapi.com/react.js Authorize.Net
ajaxstatic.com/api.js?v=2.1.1 ์นด๋“œ์„ธ์ด๋ธŒ
ajaxstatic.com/api.js?v=2.1.2 Authorize.Net
ajaxstatic.com/api.js?v=2.1.3 Authorize.Net
ajaxstatic.com/api.js?v=2.1.4 eWAY ๋ž˜ํ”ผ๋“œ
ajaxstatic.com/api.js?v=2.1.5 Authorize.Net
ajaxstatic.com/api.js?v=2.1.6 ์•„๋”” ์—”
ajaxstatic.com/api.js?v=2.1.7 USAePay
ajaxstatic.com/api.js?v=2.1.9 Authorize.Net
apitstatus.com/api.js?v=2.1.1 USAePay
apitstatus.com/api.js?v=2.1.2 Authorize.Net
apitstatus.com/api.js?v=2.1.3 ๋ชจ๋„ค๋ฆฌ์Šค
apitstatus.com/api.js?v=2.1.5 USAePay
apitstatus.com/api.js?v=2.1.6 ํŽ˜์ดํŒ”
apitstatus.com/api.js?v=2.1.7 ์„ธ์ด์ง€ ํŽ˜์ด
apitstatus.com/api.js?v=2.1.8 ๋ฒ ๋ฆฌ์‚ฌ์ธ
apitstatus.com/api.js?v=2.1.9 ํŽ˜์ดํŒ”
apitstatus.com/api.js?v=2.3.0 ์ŠคํŠธ๋ผ์ดํ”„
apitstatus.com/api.js?v=3.0.2 ๋ฆด๋ ‰์Šค
apitstatus.com/api.js?v=3.0.3 ํŽ˜์ดํŒ”
apitstatus.com/api.js?v=3.0.4 ๋งํฌํฌ์ธํŠธ
apitstatus.com/api.js?v=3.0.5 ํŽ˜์ดํŒ”
apitstatus.com/api.js?v=3.0.7 ํŽ˜์ดํŒ”
apitstatus.com/api.js?v=3.0.8 ๋ฐ์ดํ„ฐ ์บ์‹œ
apitstatus.com/api.js?v=3.0.9 ํŽ˜์ดํŒ”
asianfoodgracer.com/footer.js Authorize.Net
billgetstatus.com/api.js?v=1.2 Authorize.Net
billgetstatus.com/api.js?v=1.3 Authorize.Net
billgetstatus.com/api.js?v=1.4 Authorize.Net
billgetstatus.com/api.js?v=1.5 ๋ฒ ๋ฆฌ์‚ฌ์ธ
billgetstatus.com/api.js?v=1.6 Authorize.Net
billgetstatus.com/api.js?v=1.7 ๋ชจ๋„ค๋ฆฌ์Šค
billgetstatus.com/api.js?v=1.8 ์„ธ์ด์ง€ ํŽ˜์ด
billgetstatus.com/api.js?v=2.0 USAePay
billgetstatus.com/react.js Authorize.Net
cloudodesc.com/gtm.js?v=1.2 Authorize.Net
cloudodesc.com/gtm.js?v=1.3 ANZ eGate
cloudodesc.com/gtm.js?v=2.3 Authorize.Net
cloudodesc.com/gtm.js?v=2.4 ๋ชจ๋„ค๋ฆฌ์Šค
cloudodesc.com/gtm.js?v=2.6 ์„ธ์ด์ง€ ํŽ˜์ด
cloudodesc.com/gtm.js?v=2.7 ์„ธ์ด์ง€ ํŽ˜์ด
cloudodesc.com/gtm.js?v=2.8 ์ฒด์ด์Šค ํŽ˜์ด๋ฉ˜ํ…
cloudodesc.com/gtm.js?v=2.9 Authorize.Net
cloudodesc.com/gtm.js?v=2.91 ์•„๋”” ์—”
cloudodesc.com/gtm.js?v=2.92 ์‚ฌ์ด๊ฒŒ์ดํŠธ
cloudodesc.com/gtm.js?v=2.93 ์‚ฌ์ด๋ฒ„์†Œ์Šค
cloudodesc.com/gtm.js?v=2.95 ANZ eGate
cloudodesc.com/gtm.js?v=2.97 ๋ฆด๋ ‰์Šค
geisseie.com/gs.js USAePay
gtmproc.com/age.js Authorize.Net
gtmproc.com/gtm.js?v=1.2 Authorize.Net
gtmproc.com/gtm.js?v=1.3 ANZ eGate
gtmproc.com/gtm.js?v=1.5 ํŽ˜์ดํŒ”
gtmproc.com/gtm.js?v=1.6 ํŽ˜์ดํŒ”
gtmproc.com/gtm.js?v=1.7 ๋ฆด๋ ‰์Šค
livecheckpay.com/api.js?v=2.0 ์„ธ์ด์ง€ ํŽ˜์ด
livecheckpay.com/api.js?v=2.1 ํŽ˜์ดํŒ”
livecheckpay.com/api.js?v=2.2 ๋ฒ ๋ฆฌ์‚ฌ์ธ
livecheckpay.com/api.js?v=2.3 Authorize.Net
livecheckpay.com/api.js?v=2.4 ๋ฒ ๋ฆฌ์‚ฌ์ธ
livecheckpay.com/react.js Authorize.Net
livegetpay.com/pay.js?v=2.1.2 ANZ eGate
livegetpay.com/pay.js?v=2.1.3 ํŽ˜์ดํŒ”
livegetpay.com/pay.js?v=2.1.5 ์‚ฌ์ด๋ฒ„์†Œ์Šค
livegetpay.com/pay.js?v=2.1.7 Authorize.Net
livegetpay.com/pay.js?v=2.1.8 ์„ธ์ด์ง€ ํŽ˜์ด
livegetpay.com/pay.js?v=2.1.9 ๋ฆด๋ ‰์Šค
livegetpay.com/pay.js?v=2.2.0 ์‚ฌ์ด๋ฒ„์†Œ์Šค
livegetpay.com/pay.js?v=2.2.1 ํŽ˜์ดํŒ”
livegetpay.com/pay.js?v=2.2.2 ํŽ˜์ดํŒ”
livegetpay.com/pay.js?v=2.2.3 ํŽ˜์ดํŒ”
livegetpay.com/pay.js?v=2.2.4 ๋ฒ ๋ฆฌ์‚ฌ์ธ
livegetpay.com/pay.js?v=2.2.5 eWAY ๋ž˜ํ”ผ๋“œ
livegetpay.com/pay.js?v=2.2.7 ์„ธ์ด์ง€ ํŽ˜์ด
livegetpay.com/pay.js?v=2.2.8 ์„ธ์ด์ง€ ํŽ˜์ด
livegetpay.com/pay.js?v=2.2.9 ๋ฒ ๋ฆฌ์‚ฌ์ธ
livegetpay.com/pay.js?v=2.3.0 Authorize.Net
livegetpay.com/pay.js?v=2.3.1 Authorize.Net
livegetpay.com/pay.js?v=2.3.2 ์ฒซ ๋ฒˆ์งธ ๋ฐ์ดํ„ฐ ๊ธ€๋กœ๋ฒŒ ๊ฒŒ์ดํŠธ์›จ์ด
livegetpay.com/pay.js?v=2.3.3 Authorize.Net
livegetpay.com/pay.js?v=2.3.4 Authorize.Net
livegetpay.com/pay.js?v=2.3.5 ๋ชจ๋„ค๋ฆฌ์Šค
livegetpay.com/pay.js?v=2.3.6 Authorize.Net
livegetpay.com/pay.js?v=2.3.8 ํŽ˜์ดํŒ”
livegetpay.com/pay.js?v=2.4.0 ๋ฒ ๋ฆฌ์‚ฌ์ธ
maxstatics.com/site.js USAePay
mediapack.info/track.js?d=funlove.com USAePay
mediapack.info/track.js?d=qbedding.com Authorize.Net
mediapack.info/track.js?d=vseyewear.com ๋ฒ ๋ฆฌ์‚ฌ์ธ
mxcounter.com/c.js?v=1.2 ํŽ˜์ดํŒ”
mxcounter.com/c.js?v=1.3 Authorize.Net
mxcounter.com/c.js?v=1.4 ์ŠคํŠธ๋ผ์ดํ”„
mxcounter.com/c.js?v=1.6 Authorize.Net
mxcounter.com/c.js?v=1.7 eWAY ๋ž˜ํ”ผ๋“œ
mxcounter.com/c.js?v=1.8 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/c.js?v=2.0 Authorize.Net
mxcounter.com/c.js?v=2.1 Braintree
mxcounter.com/c.js?v=2.10 Braintree
mxcounter.com/c.js?v=2.2 ํŽ˜์ดํŒ”
mxcounter.com/c.js?v=2.3 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/c.js?v=2.31 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/c.js?v=2.32 Authorize.Net
mxcounter.com/c.js?v=2.33 ํŽ˜์ดํŒ”
mxcounter.com/c.js?v=2.34 Authorize.Net
mxcounter.com/c.js?v=2.35 ๋ฒ ๋ฆฌ์‚ฌ์ธ
mxcounter.com/click.js?v=1.2 ํŽ˜์ดํŒ”
mxcounter.com/click.js?v=1.3 Authorize.Net
mxcounter.com/click.js?v=1.4 ์ŠคํŠธ๋ผ์ดํ”„
mxcounter.com/click.js?v=1.6 Authorize.Net
mxcounter.com/click.js?v=1.7 eWAY ๋ž˜ํ”ผ๋“œ
mxcounter.com/click.js?v=1.8 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/click.js?v=2.0 Authorize.Net
mxcounter.com/click.js?v=2.1 Braintree
mxcounter.com/click.js?v=2.2 ํŽ˜์ดํŒ”
mxcounter.com/click.js?v=2.3 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/click.js?v=2.31 ์„ธ์ด์ง€ ํŽ˜์ด
mxcounter.com/click.js?v=2.32 Authorize.Net
mxcounter.com/click.js?v=2.33 ํŽ˜์ดํŒ”
mxcounter.com/click.js?v=2.34 Authorize.Net
mxcounter.com/click.js?v=2.35 ๋ฒ ๋ฆฌ์‚ฌ์ธ
mxcounter.com/cnt.js Authorize.Net
mxcounter.com/j.js Authorize.Net
newrelicnet.com/api.js?v=1.2 Authorize.Net
newrelicnet.com/api.js?v=1.4 Authorize.Net
newrelicnet.com/api.js?v=1.8 ์„ธ์ด์ง€ ํŽ˜์ด
newrelicnet.com/api.js?v=4.5 ์„ธ์ด์ง€ ํŽ˜์ด
newrelicnet.com/api.js?v=4.6 ์›จ์ŠคํŠธํŒฉ ํŽ˜์ด์›จ์ด
nr-public.com/api.js?v=2.0 ํŽ˜์ดํฌํŠธ
nr-public.com/api.js?v=2.1 ํŽ˜์ดํŒ”
nr-public.com/api.js?v=2.2 Authorize.Net
nr-public.com/api.js?v=2.3 ์ŠคํŠธ๋ผ์ดํ”„
nr-public.com/api.js?v=2.4 ์ฒซ ๋ฒˆ์งธ ๋ฐ์ดํ„ฐ ๊ธ€๋กœ๋ฒŒ ๊ฒŒ์ดํŠธ์›จ์ด
nr-public.com/api.js?v=2.5 ์‚ฌ์ด๊ฒŒ์ดํŠธ
nr-public.com/api.js?v=2.6 Authorize.Net
nr-public.com/api.js?v=2.7 Authorize.Net
nr-public.com/api.js?v=2.8 ๋ชจ๋„ค๋ฆฌ์Šค
nr-public.com/api.js?v=2.9 Authorize.Net
nr-public.com/api.js?v=3.1 ์„ธ์ด์ง€ ํŽ˜์ด
nr-public.com/api.js?v=3.2 ๋ฒ ๋ฆฌ์‚ฌ์ธ
nr-public.com/api.js?v=3.3 ๋ชจ๋„ค๋ฆฌ์Šค
nr-public.com/api.js?v=3.5 ํŽ˜์ดํŒ”
nr-public.com/api.js?v=3.6 ๋งํฌํฌ์ธํŠธ
nr-public.com/api.js?v=3.7 ์›จ์ŠคํŠธํŒฉ ํŽ˜์ด์›จ์ด
nr-public.com/api.js?v=3.8 Authorize.Net
nr-public.com/api.js?v=4.0 ๋ชจ๋„ค๋ฆฌ์Šค
nr-public.com/api.js?v=4.0.2 ํŽ˜์ดํŒ”
nr-public.com/api.js?v=4.0.3 ์•„๋”” ์—”
nr-public.com/api.js?v=4.0.4 ํŽ˜์ดํŒ”
nr-public.com/api.js?v=4.0.5 Authorize.Net
nr-public.com/api.js?v=4.0.6 USAePay
nr-public.com/api.js?v=4.0.7 EBizCharge
nr-public.com/api.js?v=4.0.8 Authorize.Net
nr-public.com/api.js?v=4.0.9 ๋ฒ ๋ฆฌ์‚ฌ์ธ
nr-public.com/api.js?v=4.1.2 ๋ฒ ๋ฆฌ์‚ฌ์ธ
ordercheckpays.com/api.js?v=2.11 Authorize.Net
ordercheckpays.com/api.js?v=2.12 ํŽ˜์ดํŒ”
ordercheckpays.com/api.js?v=2.13 ๋ชจ๋„ค๋ฆฌ์Šค
ordercheckpays.com/api.js?v=2.14 Authorize.Net
ordercheckpays.com/api.js?v=2.15 ํŽ˜์ดํŒ”
ordercheckpays.com/api.js?v=2.16 ํŽ˜์ดํŒ”
ordercheckpays.com/api.js?v=2.17 ์›จ์ŠคํŠธํŒฉ ํŽ˜์ด์›จ์ด
ordercheckpays.com/api.js?v=2.18 Authorize.Net
ordercheckpays.com/api.js?v=2.19 Authorize.Net
ordercheckpays.com/api.js?v=2.21 ์„ธ์ด์ง€ ํŽ˜์ด
ordercheckpays.com/api.js?v=2.22 ๋ฒ ๋ฆฌ์‚ฌ์ธ
ordercheckpays.com/api.js?v=2.23 Authorize.Net
ordercheckpays.com/api.js?v=2.24 ํŽ˜์ดํŒ”
ordercheckpays.com/api.js?v=2.25 ํŽ˜์ดํฌํŠธ
ordercheckpays.com/api.js?v=2.29 ์‚ฌ์ด๋ฒ„์†Œ์Šค
ordercheckpays.com/api.js?v=2.4 ํŽ˜์ดํŒ” ํŽ˜์ดํ”Œ๋กœ ํ”„๋กœ
ordercheckpays.com/api.js?v=2.7 Authorize.Net
ordercheckpays.com/api.js?v=2.8 Authorize.Net
ordercheckpays.com/api.js?v=2.9 ๋ฒ ๋ฆฌ์‚ฌ์ธ
ordercheckpays.com/api.js?v=3.1 Authorize.Net
ordercheckpays.com/api.js?v=3.2 Authorize.Net
ordercheckpays.com/api.js?v=3.3 ์„ธ์ด์ง€ ํŽ˜์ด
ordercheckpays.com/api.js?v=3.4 Authorize.Net
ordercheckpays.com/api.js?v=3.5 ์ŠคํŠธ๋ผ์ดํ”„
ordercheckpays.com/api.js?v=3.6 Authorize.Net
ordercheckpays.com/api.js?v=3.7 Authorize.Net
ordercheckpays.com/api.js?v=3.8 ๋ฒ ๋ฆฌ์‚ฌ์ธ
ordercheckpays.com/api.js?v=3.9 ํŽ˜์ดํŒ”
ordercheckpays.com/api.js?v=4.0 Authorize.Net
ordercheckpays.com/api.js?v=4.1 Authorize.Net
ordercheckpays.com/api.js?v=4.2 ์„ธ์ด์ง€ ํŽ˜์ด
ordercheckpays.com/api.js?v=4.3 Authorize.Net
Reactjsapi.com/api.js?v=0.1.0 Authorize.Net
Reactjsapi.com/api.js?v=0.1.1 ํŽ˜์ดํŒ”
Reactjsapi.com/api.js?v=4.1.2 ๋ถ€์‹ฏ๋Œ
Reactjsapi.com/api.js?v=4.1.4 ํŽ˜์ดํŒ”
Reactjsapi.com/api.js?v=4.1.5 ์„ธ์ด์ง€ ํŽ˜์ด
Reactjsapi.com/api.js?v=4.1.51 ๋ฒ ๋ฆฌ์‚ฌ์ธ
Reactjsapi.com/api.js?v=4.1.6 Authorize.Net
Reactjsapi.com/api.js?v=4.1.7 Authorize.Net
Reactjsapi.com/api.js?v=4.1.8 ์ŠคํŠธ๋ผ์ดํ”„
Reactjsapi.com/api.js?v=4.1.9 ๋šฑ๋šฑํ•œ ์–ผ๋ฃฉ๋ง
Reactjsapi.com/api.js?v=4.2.0 ์„ธ์ด์ง€ ํŽ˜์ด
Reactjsapi.com/api.js?v=4.2.1 Authorize.Net
Reactjsapi.com/api.js?v=4.2.2 ์ฒซ ๋ฒˆ์งธ ๋ฐ์ดํ„ฐ ๊ธ€๋กœ๋ฒŒ ๊ฒŒ์ดํŠธ์›จ์ด
Reactjsapi.com/api.js?v=4.2.3 Authorize.Net
Reactjsapi.com/api.js?v=4.2.4 eWAY ๋ž˜ํ”ผ๋“œ
Reactjsapi.com/api.js?v=4.2.5 ์•„๋”” ์—”
Reactjsapi.com/api.js?v=4.2.7 ํŽ˜์ดํŒ”
Reactjsapi.com/api.js?v=4.2.8 QuickBooks ํŒ๋งค์ž ์„œ๋น„์Šค
Reactjsapi.com/api.js?v=4.2.9 ๋ฒ ๋ฆฌ์‚ฌ์ธ
Reactjsapi.com/api.js?v=4.2.91 ์„ธ์ด์ง€ ํŽ˜์ด
Reactjsapi.com/api.js?v=4.2.92 ๋ฒ ๋ฆฌ์‚ฌ์ธ
Reactjsapi.com/api.js?v=4.2.94 Authorize.Net
Reactjsapi.com/api.js?v=4.3.97 Authorize.Net
Reactjsapi.com/api.js?v=4.5 ์„ธ์ด์ง€ ํŽ˜์ด
Reactjsapi.com/react.js Authorize.Net
sydneysalonsupplies.com/gtm.js eWAY ๋ž˜ํ”ผ๋“œ
Tagsmediaget.com/react.js Authorize.Net
Tagstracking.com/tag.js?v=2.1.2 ANZ eGate
Tagstracking.com/tag.js?v=2.1.3 ํŽ˜์ดํŒ”
Tagstracking.com/tag.js?v=2.1.5 ์‚ฌ์ด๋ฒ„์†Œ์Šค
Tagstracking.com/tag.js?v=2.1.7 Authorize.Net
Tagstracking.com/tag.js?v=2.1.8 ์„ธ์ด์ง€ ํŽ˜์ด
Tagstracking.com/tag.js?v=2.1.9 ๋ฆด๋ ‰์Šค
Tagstracking.com/tag.js?v=2.2.0 ์‚ฌ์ด๋ฒ„์†Œ์Šค
Tagstracking.com/tag.js?v=2.2.1 ํŽ˜์ดํŒ”
Tagstracking.com/tag.js?v=2.2.2 ํŽ˜์ดํŒ”
Tagstracking.com/tag.js?v=2.2.3 ํŽ˜์ดํŒ”
Tagstracking.com/tag.js?v=2.2.4 ๋ฒ ๋ฆฌ์‚ฌ์ธ
Tagstracking.com/tag.js?v=2.2.5 eWAY ๋ž˜ํ”ผ๋“œ
Tagstracking.com/tag.js?v=2.2.7 ์„ธ์ด์ง€ ํŽ˜์ด
Tagstracking.com/tag.js?v=2.2.8 ์„ธ์ด์ง€ ํŽ˜์ด
Tagstracking.com/tag.js?v=2.2.9 ๋ฒ ๋ฆฌ์‚ฌ์ธ
Tagstracking.com/tag.js?v=2.3.0 Authorize.Net
Tagstracking.com/tag.js?v=2.3.1 Authorize.Net
Tagstracking.com/tag.js?v=2.3.2 ์ฒซ ๋ฒˆ์งธ ๋ฐ์ดํ„ฐ ๊ธ€๋กœ๋ฒŒ ๊ฒŒ์ดํŠธ์›จ์ด
Tagstracking.com/tag.js?v=2.3.3 Authorize.Net
Tagstracking.com/tag.js?v=2.3.4 Authorize.Net
Tagstracking.com/tag.js?v=2.3.5 ๋ชจ๋„ค๋ฆฌ์Šค
Tagstracking.com/tag.js?v=2.3.6 Authorize.Net
Tagstracking.com/tag.js?v=2.3.8 ํŽ˜์ดํŒ”

์•”ํ˜ธ ์Šค๋‹ˆํผ

์›น์‚ฌ์ดํŠธ์˜ ํด๋ผ์ด์–ธํŠธ ์ธก์—์„œ ์ž‘๋™ํ•˜๋Š” JavaScript ์Šค๋‹ˆํผ์˜ ์žฅ์  ์ค‘ ํ•˜๋‚˜๋Š” ๋‹ค์šฉ์„ฑ์ž…๋‹ˆ๋‹ค. ์›น์‚ฌ์ดํŠธ์— ๋‚ด์žฅ๋œ ์•…์„ฑ ์ฝ”๋“œ๋Š” ๊ฒฐ์ œ ์ •๋ณด๋‚˜ ์‚ฌ์šฉ์ž ๊ณ„์ •์˜ ๋กœ๊ทธ์ธ ๋ฐ ์•”ํ˜ธ ๋“ฑ ๋ชจ๋“  ์œ ํ˜•์˜ ๋ฐ์ดํ„ฐ๋ฅผ ํ›”์น  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. Group-IB ์ „๋ฌธ๊ฐ€๋“ค์€ ์‚ฌ์ดํŠธ ์‚ฌ์šฉ์ž์˜ ์ด๋ฉ”์ผ ์ฃผ์†Œ์™€ ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ํ›”์น˜๋„๋ก ์„ค๊ณ„๋œ ReactGet ์ œํ’ˆ๊ตฐ์— ์†ํ•˜๋Š” ์Šค๋‹ˆํผ ์ƒ˜ํ”Œ์„ ๋ฐœ๊ฒฌํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

ImageID ์Šค๋‹ˆํผ์™€ ๊ต์ฐจ

๊ฐ์—ผ๋œ ์ƒ์  ์ค‘ ํ•˜๋‚˜๋ฅผ ๋ถ„์„ํ•˜๋Š” ๋™์•ˆ ํ•ด๋‹น ์›น ์‚ฌ์ดํŠธ๊ฐ€ ๋‘ ๋ฒˆ ๊ฐ์—ผ๋œ ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ReactGet ๊ณ„์—ด ์Šค๋‹ˆํผ์˜ ์•…์„ฑ ์ฝ”๋“œ ์™ธ์—๋„ ImageID ๊ณ„์—ด ์Šค๋‹ˆํผ ์ฝ”๋“œ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด๋Ÿฌํ•œ ์ค‘์ฒฉ์€ ๋‘ ์Šค๋‹ˆํผ ๋ฐฐํ›„์˜ ์šด์˜์ž๊ฐ€ ์œ ์‚ฌํ•œ ๊ธฐ์ˆ ์„ ์‚ฌ์šฉํ•˜์—ฌ ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ์ฃผ์ž…ํ•˜๊ณ  ์žˆ๋‹ค๋Š” ์ฆ๊ฑฐ๊ฐ€ ๋  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

๋ฒ”์šฉ ์Šค๋‹ˆํผ

ReactGet ์Šค๋‹ˆํผ ์ธํ”„๋ผ์™€ ๊ด€๋ จ๋œ ๋„๋ฉ”์ธ ์ด๋ฆ„ ์ค‘ ํ•˜๋‚˜๋ฅผ ๋ถ„์„ํ•˜๋Š” ๋™์•ˆ ๋™์ผํ•œ ์‚ฌ์šฉ์ž๊ฐ€ ์„ธ ๊ฐœ์˜ ๋‹ค๋ฅธ ๋„๋ฉ”์ธ ์ด๋ฆ„์„ ๋“ฑ๋กํ•œ ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ์ด ์„ธ ๋„๋ฉ”์ธ์€ ์‹ค์ œ ์‚ฌ์ดํŠธ์˜ ๋„๋ฉ”์ธ์„ ๋ชจ๋ฐฉํ–ˆ์œผ๋ฉฐ ์ด์ „์—๋Š” ์Šค๋‹ˆํผ๋ฅผ ํ˜ธ์ŠคํŒ…ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. 15๊ฐœ์˜ ํ•ฉ๋ฒ•์ ์ธ ์‚ฌ์ดํŠธ์˜ ์ฝ”๋“œ๋ฅผ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ ์•Œ๋ ค์ง€์ง€ ์•Š์€ ์Šค๋‹ˆํผ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์œผ๋ฉฐ ์ถ”๊ฐ€ ๋ถ„์„ ๊ฒฐ๊ณผ ์ด๊ฒƒ์ด ReactGet ์Šค๋‹ˆํผ์˜ ๊ฐœ์„ ๋œ ๋ฒ„์ „์ธ ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ์ด ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์˜ ์ด์ „์— ์ถ”์ ๋œ ๋ชจ๋“  ๋ฒ„์ „์€ ๋‹จ์ผ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์„ ๋Œ€์ƒ์œผ๋กœ ํ–ˆ์Šต๋‹ˆ๋‹ค. ์ฆ‰, ๊ฐ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์—๋Š” ํŠน์ˆ˜ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๊ฐ€ ํ•„์š”ํ–ˆ์Šต๋‹ˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜์ด ๊ฒฝ์šฐ ์˜จ๋ผ์ธ ๊ฒฐ์ œ๋ฅผ์œ„ํ•œ ์ „์ž ์ƒ๊ฑฐ๋ž˜ ์‚ฌ์ดํŠธ์˜ ๋ชจ๋“ˆ ๋ฐ XNUMX ๊ฐ€์ง€ ๊ฒฐ์ œ ์‹œ์Šคํ…œ๊ณผ ๊ด€๋ จ๋œ ์–‘์‹์—์„œ ์ •๋ณด๋ฅผ ํ›”์น  ์ˆ˜์žˆ๋Š” ๋ฒ”์šฉ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

๋”ฐ๋ผ์„œ ์ž‘์—… ์ดˆ๊ธฐ์— ์Šค๋‹ˆํผ๋Š” ์ด๋ฆ„, ์‹ค์ œ ์ฃผ์†Œ, ์ „ํ™”๋ฒˆํ˜ธ ๋“ฑ ํ”ผํ•ด์ž์˜ ๊ฐœ์ธ ์ •๋ณด๊ฐ€ ํฌํ•จ๋œ ๊ธฐ๋ณธ ์–‘์‹ ํ•„๋“œ๋ฅผ ๊ฒ€์ƒ‰ํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๊ทธ๋Ÿฐ ๋‹ค์Œ ์Šค๋‹ˆํผ๋Š” ์˜จ๋ผ์ธ ๊ฒฐ์ œ๋ฅผ ์œ„ํ•ด ๋‹ค์–‘ํ•œ ๊ฒฐ์ œ ์‹œ์Šคํ…œ ๋ฐ ๋ชจ๋“ˆ์— ํ•ด๋‹นํ•˜๋Š” 15๊ฐœ ์ด์ƒ์˜ ์ ‘๋‘์‚ฌ๋ฅผ ๊ฒ€์ƒ‰ํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋‹ค์Œ์œผ๋กœ ํ”ผํ•ด์ž์˜ ๊ฐœ์ธ ๋ฐ์ดํ„ฐ์™€ ์ง€๋ถˆ ์ •๋ณด๊ฐ€ ํ•จ๊ป˜ ์ˆ˜์ง‘๋˜์–ด ๊ณต๊ฒฉ์ž๊ฐ€ ์ œ์–ดํ•˜๋Š” โ€‹โ€‹์‚ฌ์ดํŠธ๋กœ ์ „์†ก๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด ํŠน๋ณ„ํ•œ ๊ฒฝ์šฐ ๋‘ ๊ฐ€์ง€ ํ•ดํ‚น๋œ ์‚ฌ์ดํŠธ์—์„œ ๋‘ ๊ฐ€์ง€ ๋ฒ„์ „์˜ ReactGet ๋ฒ”์šฉ ์Šค๋‹ˆํผ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ๋‘ ๋ฒ„์ „ ๋ชจ๋‘ ํ›”์นœ ๋ฐ์ดํ„ฐ๋ฅผ ๋™์ผํ•œ ํ•ดํ‚น ์‚ฌ์ดํŠธ๋กœ ๋ณด๋ƒˆ์Šต๋‹ˆ๋‹ค. Zoobashop.com.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
ํ”ผํ•ด์ž์˜ ๊ฒฐ์ œ ์ •๋ณด๊ฐ€ ํฌํ•จ๋œ ํ•„๋“œ๋ฅผ ์ฐพ๊ธฐ ์œ„ํ•ด ์Šค๋‹ˆํผ๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ์ ‘๋‘์‚ฌ๋ฅผ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ ์ด โ€‹โ€‹์Šค๋‹ˆํผ ์ƒ˜ํ”Œ์ด ๋‹ค์Œ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์„ ๋Œ€์ƒ์œผ๋กœ ํ•˜๋Š” ๊ฒƒ์œผ๋กœ ํ™•์ธ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

  • Authorize.Net
  • ๋ฒ ๋ฆฌ์‚ฌ์ธ
  • ์ฒซ ๋ฒˆ์งธ ๋ฐ์ดํ„ฐ
  • USAePay
  • ์ŠคํŠธ๋ผ์ดํ”„
  • ํŽ˜์ดํŒ”
  • ANZ eGate
  • Braintree
  • ๋ฐ์ดํ„ฐ ์บ์‹œ(๋งˆ์Šคํ„ฐ์นด๋“œ)
  • ๋ฆฌ์–ผ๋ ‰์Šค ๊ฒฐ์ œ
  • ์‚ฌ์ด๊ฒŒ์ดํŠธ
  • ํ•˜ํŠธ ๋žœ๋“œ ๊ฒฐ์ œ ์‹œ์Šคํ…œ

๊ฒฐ์ œ ์ •๋ณด๋ฅผ ๋„์šฉํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜๋Š” ๋„๊ตฌ

๊ณต๊ฒฉ์ž์˜ ์ธํ”„๋ผ ๋ถ„์„ ์ค‘์— ๋ฐœ๊ฒฌ๋œ ์ฒซ ๋ฒˆ์งธ ๋„๊ตฌ๋Š” ์€ํ–‰ ์นด๋“œ๋ฅผ ํ›”์น˜๋Š” ์•…์„ฑ ์Šคํฌ๋ฆฝํŠธ๋ฅผ ๋‚œ๋…ํ™”ํ•˜๋Š” ์—ญํ• ์„ ํ•ฉ๋‹ˆ๋‹ค. ๊ณต๊ฒฉ์ž์˜ ํ˜ธ์ŠคํŠธ ์ค‘ ํ•˜๋‚˜์—์„œ ํ”„๋กœ์ ํŠธ์˜ CLI๋ฅผ ์‚ฌ์šฉํ•˜๋Š” bash ์Šคํฌ๋ฆฝํŠธ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ-๋‚œ๋…ํ™”๊ธฐ ์Šค๋‹ˆํผ ์ฝ”๋“œ ๋‚œ๋…ํ™”๋ฅผ ์ž๋™ํ™”ํ•ฉ๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋‘ ๋ฒˆ์งธ๋กœ ๋ฐœ๊ฒฌ๋œ ๋„๊ตฌ๋Š” ๊ธฐ๋ณธ ์Šค๋‹ˆํผ ๋กœ๋“œ๋ฅผ ๋‹ด๋‹นํ•˜๋Š” ์ฝ”๋“œ๋ฅผ ์ƒ์„ฑํ•˜๋„๋ก ์„ค๊ณ„๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด ๋„๊ตฌ๋Š” ๋ฌธ์ž์—ด์— ๋Œ€ํ•œ ์‚ฌ์šฉ์ž์˜ ํ˜„์žฌ ์ฃผ์†Œ๋ฅผ ๊ฒ€์ƒ‰ํ•˜์—ฌ ์‚ฌ์šฉ์ž๊ฐ€ ์ฒดํฌ์•„์›ƒ ํŽ˜์ด์ง€์— ์žˆ๋Š”์ง€ ํ™•์ธํ•˜๋Š” JavaScript ์ฝ”๋“œ๋ฅผ ์ƒ์„ฑํ•ฉ๋‹ˆ๋‹ค. ์ ๊ฒ€, ์นดํŠธ ๋“ฑ๋“ฑ, ๊ฒฐ๊ณผ๊ฐ€ ๊ธ์ •์ ์ด๋ฉด ์ฝ”๋“œ๋Š” ์นจ์ž…์ž์˜ ์„œ๋ฒ„์—์„œ ๊ธฐ๋ณธ ์Šค๋‹ˆํผ๋ฅผ ๋กœ๋“œํ•ฉ๋‹ˆ๋‹ค. ์•…์˜์ ์ธ ํ™œ๋™์„ ์ˆจ๊ธฐ๊ธฐ ์œ„ํ•ด ์ง€๋ถˆ ํŽ˜์ด์ง€๋ฅผ ๊ฒฐ์ •ํ•˜๊ธฐ ์œ„ํ•œ ํ…Œ์ŠคํŠธ ๋ผ์ธ๊ณผ ์Šค๋‹ˆํผ์— ๋Œ€ํ•œ ๋งํฌ๋ฅผ ํฌํ•จํ•œ ๋ชจ๋“  ๋ผ์ธ์€ ๋‹ค์Œ์„ ์‚ฌ์šฉํ•˜์—ฌ ์ธ์ฝ”๋”ฉ๋ฉ๋‹ˆ๋‹ค. base64.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

ํ”ผ์‹ฑ ๊ณต๊ฒฉ

๊ณต๊ฒฉ์ž์˜ ๋„คํŠธ์›Œํฌ ์ธํ”„๋ผ๋ฅผ ๋ถ„์„ํ•˜๋Š” ๋™์•ˆ ๋ฒ”์ฃ„ ์ง‘๋‹จ์ด ๋Œ€์ƒ ์˜จ๋ผ์ธ ์ƒ์ ์˜ ๊ด€๋ฆฌ ํŒจ๋„์— ์•ก์„ธ์Šคํ•˜๊ธฐ ์œ„ํ•ด ํ”ผ์‹ฑ์„ ์ž์ฃผ ์‚ฌ์šฉํ•˜๋Š” ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ๊ณต๊ฒฉ์ž๋Š” ์ƒ์  ๋„๋ฉ”์ธ์ฒ˜๋Ÿผ ๋ณด์ด๋Š” ๋„๋ฉ”์ธ์„ ๋“ฑ๋กํ•œ ๋‹ค์Œ ์—ฌ๊ธฐ์— ๊ฐ€์งœ Magento ๊ด€๋ฆฌ์ž ๋กœ๊ทธ์ธ ์–‘์‹์„ ๋ฐฐํฌํ•ฉ๋‹ˆ๋‹ค. ์„ฑ๊ณตํ•˜๋ฉด ๊ณต๊ฒฉ์ž๋Š” Magento CMS ๊ด€๋ฆฌ ํŒจ๋„์— ์•ก์„ธ์Šคํ•˜์—ฌ ์‚ฌ์ดํŠธ ๊ตฌ์„ฑ ์š”์†Œ๋ฅผ ํŽธ์ง‘ํ•˜๊ณ  ์Šค๋‹ˆํผ๋ฅผ ๊ตฌํ˜„ํ•˜์—ฌ ์‹ ์šฉ ์นด๋“œ ๋ฐ์ดํ„ฐ๋ฅผ ํ›”์น  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
ํ•˜๋ถ€ ๊ตฌ์กฐ

๋„๋ฉ”์ธ ์ด๋ฆ„ ๋ฐœ๊ฒฌ/์ถœํ˜„ ๋‚ ์งœ
mediapack.info 04.05.2017
Adsgetapi.com 15.06.2017
simcounter.com 14.08.2017
mageanalytics.com 22.12.2017
maxstatics.com 16.01.2018
Reactjsapi.com 19.01.2018
mxcounter.com 02.02.2018
apitstatus.com 01.03.2018
orderracker.com 20.04.2018
tagtracking.com 25.06.2018
Adsapigate.com 12.07.2018
trusttracker.com 15.07.2018
fbstatspartner.com 02.10.2018
billgetstatus.com 12.10.2018
www.aldenmlilhouse.com 20.10.2018
balletbeautlful.com 20.10.2018
bargalnjunkie.com 20.10.2018
payselector.com 21.10.2018
ํƒœ๊ทธmediaget.com 02.11.2018
hs-payments.com 16.11.2018
ordercheckpays.com 19.11.2018
geissei.com 24.11.2018
gtmproc.com 29.11.2018
livegetpay.com 18.12.2018
sydneysalonssupplies.com 18.12.2018
newrelicnet.com 19.12.2018
nr-public.com 03.01.2019
cloudodesc.com 04.01.2019
ajaxstatic.com 11.01.2019
livecheckpay.com 21.01.2019
asianfoodgracer.com 25.01.2019

G-Analytics ์ œํ’ˆ๊ตฐ

์ด ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์€ ์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ณ ๊ฐ ์นด๋“œ๋ฅผ ํ›”์น˜๋Š” ๋ฐ ์‚ฌ์šฉ๋ฉ๋‹ˆ๋‹ค. ๊ทธ๋ฃน์ด ์‚ฌ์šฉํ•˜๋Š” ์ตœ์ดˆ์˜ ๋„๋ฉ”์ธ ์ด๋ฆ„์€ 2016๋…„ 2016์›”์— ๋“ฑ๋ก๋˜์—ˆ์œผ๋ฉฐ, ์ด๋Š” XNUMX๋…„ ์ค‘๋ฐ˜ ๊ทธ๋ฃน ํ™œ๋™์˜ ์‹œ์ž‘์„ ์•Œ๋ฆด ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

ํ˜„์žฌ ์บ ํŽ˜์ธ์—์„œ ์ด ๊ทธ๋ฃน์€ Google Analytics ๋ฐ jQuery์™€ ๊ฐ™์€ ์‹ค์ œ ์„œ๋น„์Šค๋ฅผ ๋ชจ๋ฐฉํ•œ ๋„๋ฉ”์ธ ์ด๋ฆ„์„ ์‚ฌ์šฉํ•˜์—ฌ ์Šค๋‹ˆํผ ํ™œ๋™์„ ํ•ฉ๋ฒ•์ ์ธ ์Šคํฌ๋ฆฝํŠธ ๋ฐ ํ•ฉ๋ฒ•์ ์œผ๋กœ ๋ณด์ด๋Š” ๋„๋ฉ”์ธ ์ด๋ฆ„์œผ๋กœ ๋งˆ์Šคํ‚นํ•ฉ๋‹ˆ๋‹ค. CMS Magento์—์„œ ์‹คํ–‰๋˜๋Š” ์›น์‚ฌ์ดํŠธ๊ฐ€ ๊ณต๊ฒฉ์„ ๋ฐ›์•˜์Šต๋‹ˆ๋‹ค.

G-Analytics๊ฐ€ ์˜จ๋ผ์ธ ์ƒ์  ์ฝ”๋“œ์—์„œ ๊ตฌํ˜„๋˜๋Š” ๋ฐฉ์‹

์ด ํŒจ๋ฐ€๋ฆฌ์˜ ํŠน์ง•์€ ์‚ฌ์šฉ์ž ๊ฒฐ์ œ ์ •๋ณด๋ฅผ ํ›”์น˜๋Š” ๋‹ค์–‘ํ•œ ๋ฐฉ๋ฒ•์„ ์‚ฌ์šฉํ•œ๋‹ค๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค. ์‚ฌ์ดํŠธ์˜ ํด๋ผ์ด์–ธํŠธ ์ธก์— ๋Œ€ํ•œ ๊ณ ์ „์ ์ธ JavaScript ์ฃผ์ž… ์™ธ์—๋„ ๋ฒ”์ฃ„ ๊ทธ๋ฃน์€ ์‚ฌ์ดํŠธ์˜ ์„œ๋ฒ„ ์ธก์— ์ฝ”๋“œ๋ฅผ ์ฃผ์ž…ํ•˜๋Š” ๊ธฐ์ˆ , ์ฆ‰ ์‚ฌ์šฉ์ž ์ž…๋ ฅ์„ ์ฒ˜๋ฆฌํ•˜๋Š” PHP ์Šคํฌ๋ฆฝํŠธ๋ฅผ ์‚ฌ์šฉํ–ˆ์Šต๋‹ˆ๋‹ค. ์ด ๊ธฐ์ˆ ์€ ํƒ€์‚ฌ ์—ฐ๊ตฌ์›์ด ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ํƒ์ง€ํ•˜๊ธฐ ์–ด๋ ต๊ฒŒ ๋งŒ๋“ ๋‹ค๋Š” ์ ์—์„œ ์œ„ํ—˜ํ•ฉ๋‹ˆ๋‹ค. Group-IB ์ „๋ฌธ๊ฐ€๋“ค์€ ๋„๋ฉ”์ธ์„ ๊ฒŒ์ดํŠธ๋กœ ์‚ฌ์šฉํ•˜์—ฌ ์‚ฌ์ดํŠธ์˜ PHP ์ฝ”๋“œ์— ๋‚ด์žฅ๋œ ์Šค๋‹ˆํผ ๋ฒ„์ „์„ ๋ฐœ๊ฒฌํ–ˆ์Šต๋‹ˆ๋‹ค. dittm.org.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋™์ผํ•œ ๋„๋ฉ”์ธ์„ ์‚ฌ์šฉํ•˜์—ฌ ํ›”์นœ ๋ฐ์ดํ„ฐ๋ฅผ ์ˆ˜์ง‘ํ•˜๋Š” ์ดˆ๊ธฐ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๋„ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. dittm.org, ํ•˜์ง€๋งŒ ์ด ๋ฒ„์ „์€ ์ด๋ฏธ ์˜จ๋ผ์ธ ์ƒ์ ์˜ ํด๋ผ์ด์–ธํŠธ ์ธก์— ์„ค์น˜ํ•˜๊ธฐ ์œ„ํ•œ ๊ฒƒ์ž…๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋‚˜์ค‘์— ๊ทธ๋ฃน์€ ์ „์ˆ ์„ ๋ณ€๊ฒฝํ•˜๊ณ  ์•…์˜์ ์ธ ํ™œ๋™ ๋ฐ ์œ„์žฅ์˜ ์€ํ์— ๋” ๋งŽ์€ ์ฃผ์˜๋ฅผ ๊ธฐ์šธ์ด๊ธฐ ์‹œ์ž‘ํ–ˆ์Šต๋‹ˆ๋‹ค.

2017๋…„ ์ดˆ์— ๊ทธ๋ฃน์€ ๋„๋ฉ”์ธ์„ ์‚ฌ์šฉํ•˜๊ธฐ ์‹œ์ž‘ํ–ˆ์Šต๋‹ˆ๋‹ค. jquery-js.comjQuery์šฉ CDN์œผ๋กœ ์œ„์žฅ: ์•…์„ฑ ์‚ฌ์ดํŠธ๋กœ ์ด๋™ ์‹œ ์‚ฌ์šฉ์ž๋ฅผ ํ•ฉ๋ฒ•์ ์ธ ์‚ฌ์ดํŠธ๋กœ ๋ฆฌ๋””๋ ‰์…˜ ์ œ์ด์ฟผ๋ฆฌ๋‹ท์ปด.

๊ทธ๋ฆฌ๊ณ  2018๋…„ ์ค‘๋ฐ˜์— ๊ทธ๋ฃน์€ ๋„๋ฉ”์ธ ์ด๋ฆ„์„ ์ฑ„ํƒํ–ˆ์Šต๋‹ˆ๋‹ค. g-analytics.com ์Šค๋‹ˆํผ์˜ ํ™œ๋™์„ ํ•ฉ๋ฒ•์ ์ธ Google Analytics ์„œ๋น„์Šค๋กœ ์œ„์žฅํ•˜๊ธฐ ์‹œ์ž‘ํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

๋ฒ„์ „ ๋ถ„์„

์Šค๋‹ˆํผ ์ฝ”๋“œ๋ฅผ ์ €์žฅํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜๋Š” ๋„๋ฉ”์ธ์„ ๋ถ„์„ํ•˜๋Š” ๋™์•ˆ ์‚ฌ์ดํŠธ์—๋Š” ๋‚œ๋…ํ™”์˜ ์กด์žฌ ์—ฌ๋ถ€์™€ ์ฃผ์˜๋ฅผ ๋ถ„์‚ฐ์‹œํ‚ค๊ธฐ ์œ„ํ•ด ํŒŒ์ผ์— ์ถ”๊ฐ€๋œ ๋„๋‹ฌํ•  ์ˆ˜ ์—†๋Š” ์ฝ”๋“œ์˜ ์กด์žฌ ์—ฌ๋ถ€๊ฐ€ ๋‹ค๋ฅธ ๋งŽ์€ ๋ฒ„์ „์ด ์žˆ๋Š” ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ์ˆจ๊น๋‹ˆ๋‹ค.

์‚ฌ์ดํŠธ ์ด์•ก jquery-js.com XNUMX๊ฐ€์ง€ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๊ฐ€ ์‹๋ณ„๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด๋Ÿฌํ•œ ์Šค๋‹ˆํผ๋Š” ํ›”์นœ ๋ฐ์ดํ„ฐ๋ฅผ ์Šค๋‹ˆํผ์™€ ๋™์ผํ•œ ์‚ฌ์ดํŠธ์— ์žˆ๋Š” ์ฃผ์†Œ๋กœ ๋ณด๋ƒ…๋‹ˆ๋‹ค. hxxps://jquery-js[.]com/latest/jquery.min.js:

  • hxxps://jquery-js[.]com/jquery.min.js
  • hxxps://jquery-js[.]com/jquery.2.2.4.min.js
  • hxxps://jquery-js[.]com/jquery.1.8.3.min.js
  • hxxps://jquery-js[.]com/jquery.1.6.4.min.js
  • hxxps://jquery-js[.]com/jquery.1.4.4.min.js
  • hxxps://jquery-js[.]com/jquery.1.12.4.min.js

๋‚˜์ค‘์— ๋„๋ฉ”์ธ g-analytics.com2018๋…„ ์ค‘๋ฐ˜๋ถ€ํ„ฐ ๊ณต๊ฒฉ์— ์‚ฌ์šฉ๋œ ์ด ๊ทธ๋ฃน์€ ๋” ๋งŽ์€ ์Šค๋‹ˆํผ๋ฅผ ์œ„ํ•œ ์ €์žฅ์†Œ ์—ญํ• ์„ ํ•ฉ๋‹ˆ๋‹ค. ์ด 16๊ฐœ์˜ ๋‹ค๋ฅธ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด ๊ฒฝ์šฐ ํ›”์นœ ๋ฐ์ดํ„ฐ๋ฅผ ์ „์†กํ•˜๋Š” ๊ฒŒ์ดํŠธ๋Š” ํ˜•์‹์˜ ์ด๋ฏธ์ง€์— ๋Œ€ํ•œ ๋งํฌ๋กœ ์œ„์žฅํ–ˆ์Šต๋‹ˆ๋‹ค. GIF: hxxp://g-analytics[.]com/__utm.gif?v=1&_v=j68&a=98811130&t=pageview&_s=1&sd=24-bit&sr=2560ร—1440&vp=2145ร—371&je=0&_u=AACAAEAB~&jid=1841704724&gjid=877686936&cid
= 1283183910.1527732071
:

  • hxxps://g-analytics[.]com/libs/1.0.1/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.10/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.11/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.12/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.13/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.14/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.15/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.16/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.3/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.4/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.5/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.6/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.7/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.8/analytics.js
  • hxxps://g-analytics[.]com/libs/1.0.9/analytics.js
  • hxxps://g-analytics[.]com/libs/analytics.js

๋„๋‚œ๋‹นํ•œ ๋ฐ์ดํ„ฐ์˜ ์ˆ˜์ตํ™”

๋ฒ”์ฃ„ ์ง‘๋‹จ์€ ์นด๋“œ ์‚ฌ์šฉ์ž์—๊ฒŒ ์„œ๋น„์Šค๋ฅผ ์ œ๊ณตํ•˜๋Š” ํŠน๋ณ„ํžˆ ๋งŒ๋“ค์–ด์ง„ ์ง€ํ•˜ ๋งค์žฅ์„ ํ†ตํ•ด ์นด๋“œ๋ฅผ ํŒ๋งคํ•˜์—ฌ ํ›”์นœ ๋ฐ์ดํ„ฐ๋กœ ์ˆ˜์ต์„ ์ฐฝ์ถœํ•ฉ๋‹ˆ๋‹ค. ๊ณต๊ฒฉ์ž๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ๋„๋ฉ”์ธ์„ ๋ถ„์„ํ•˜๋ฉด ๋‹ค์Œ์„ ํ™•์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. google-analytics.cm ๋„๋ฉ”์ธ๊ณผ ๋™์ผํ•œ ์‚ฌ์šฉ์ž๊ฐ€ ๋“ฑ๋กํ–ˆ์Šต๋‹ˆ๋‹ค. ์นด๋“œ์ฆˆ.vc. ๋„๋ฉ”์ธ ์นด๋“œ์ฆˆ.vc ์นด๋“œ์„œํ”„์Šค(Flysurfs)๋Š” ๋„๋‚œ๋‹นํ•œ ์€ํ–‰ ์นด๋“œ๋ฅผ ํŒ๋งคํ•˜๋Š” ์ƒ์ ์œผ๋กœ AlphaBay ์ง€ํ•˜ ์‹œ์žฅ์—์„œ ์Šค๋‹ˆํผ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋„๋‚œ๋‹นํ•œ ์€ํ–‰ ์นด๋“œ๋ฅผ ํŒ๋งคํ•˜๋Š” ์ƒ์ ์œผ๋กœ ์ธ๊ธฐ๋ฅผ ์–ป์—ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋„๋ฉ”์ธ ๋ถ„์„ ๋ถ„์„์ .is, ๋„๋‚œ๋‹นํ•œ ๋ฐ์ดํ„ฐ๋ฅผ ์ˆ˜์ง‘ํ•˜๊ธฐ ์œ„ํ•ด ์Šค๋‹ˆํผ๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ๋„๋ฉ”์ธ๊ณผ ๋™์ผํ•œ ์„œ๋ฒ„์— ์œ„์น˜ํ•œ Group-IB ์ „๋ฌธ๊ฐ€๋Š” ์ฟ ํ‚ค ์Šคํ‹ธ๋Ÿฌ ๋กœ๊ทธ๊ฐ€ ํฌํ•จ๋œ ํŒŒ์ผ์„ ๋ฐœ๊ฒฌํ–ˆ์œผ๋ฉฐ ๋‚˜์ค‘์— ๊ฐœ๋ฐœ์ž๊ฐ€ ์ด ๋กœ๊ทธ๋ฅผ ๋ฒ„๋ฆฐ ๊ฒƒ์œผ๋กœ ๋ณด์ž…๋‹ˆ๋‹ค. ๋กœ๊ทธ์˜ ํ•ญ๋ชฉ ์ค‘ ํ•˜๋‚˜์— ๋„๋ฉ”์ธ์ด ํฌํ•จ๋จ iozoz.com, ์ด์ „์— 2016๋…„์— ํ™œ์„ฑํ™”๋œ ์Šค๋‹ˆํผ ์ค‘ ํ•˜๋‚˜์—์„œ ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์•„๋งˆ๋„ ์ด ๋„๋ฉ”์ธ์€ ์ด์ „์— ๊ณต๊ฒฉ์ž๊ฐ€ ์Šค๋‹ˆํผ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋„๋‚œ๋‹นํ•œ ์นด๋“œ๋ฅผ ์ˆ˜์ง‘ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜์—ˆ์„ ๊ฒƒ์ž…๋‹ˆ๋‹ค. ์ด ๋„๋ฉ”์ธ์€ ์ด๋ฉ”์ผ ์ฃผ์†Œ๋กœ ๋“ฑ๋ก๋˜์—ˆ์Šต๋‹ˆ๋‹ค. [์ด๋ฉ”์ผ ๋ณดํ˜ธ], ๋„๋ฉ”์ธ ๋“ฑ๋ก์—๋„ ์‚ฌ์šฉ๋จ ์นด๋“œ์ฆˆ.su ะธ ์นด๋“œ์ฆˆ.vcCardsurfs ์นด๋”ฉ ์ƒต ๊ด€๋ จ.

ํ™•๋ณดํ•œ ๋ฐ์ดํ„ฐ๋ฅผ ๋ฐ”ํƒ•์œผ๋กœ G-Analytics ์Šค๋‹ˆํผ ํŒจ๋ฐ€๋ฆฌ์™€ ์ง€ํ•˜ Cardsurfs ์€ํ–‰ ์นด๋“œ ๋งค์žฅ์€ ๊ฐ™์€ ์‚ฌ๋žŒ์ด ์šด์˜ํ•˜๋ฉฐ ๋งค์žฅ์€ ์Šค๋‹ˆํผ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋„๋‚œ๋‹นํ•œ ์€ํ–‰ ์นด๋“œ๋ฅผ ํŒ๋งคํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋œ๋‹ค๊ณ  ์ถ”์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

ํ•˜๋ถ€ ๊ตฌ์กฐ

๋„๋ฉ”์ธ ์ด๋ฆ„ ๋ฐœ๊ฒฌ/์ถœํ˜„ ๋‚ ์งœ
iozoz.com 08.04.2016
dittm.org 10.09.2016
jquery-js.com 02.01.2017
g-analytics.com 31.05.2018
google-analytics.is 21.11.2018
๋ถ„์„์ .to 04.12.2018
google-analytics.to 06.12.2018
google-analytics.cm 28.12.2018
๋ถ„์„์ .is 28.12.2018
googlelc-analytics.cm 17.01.2019

์ผ๋ฃธ ํŒจ๋ฐ€๋ฆฌ

Illum์€ Magento CMS๋ฅผ ์‹คํ–‰ํ•˜๋Š” ์˜จ๋ผ์ธ ์ƒ์ ์„ ๊ณต๊ฒฉํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜๋Š” ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์ž…๋‹ˆ๋‹ค. ์•…์„ฑ ์ฝ”๋“œ ๋„์ž… ์™ธ์—๋„ ์ด ์Šค๋‹ˆํผ ์šด์˜์ž๋Š” ๊ณต๊ฒฉ์ž๊ฐ€ ์ œ์–ดํ•˜๋Š” โ€‹โ€‹๊ฒŒ์ดํŠธ๋กœ ๋ฐ์ดํ„ฐ๋ฅผ ๋ณด๋‚ด๋Š” ๋ณธ๊ฒฉ์ ์ธ ๊ฐ€์งœ ์ง€๋ถˆ ์–‘์‹์„ ๋„์ž…ํ•ฉ๋‹ˆ๋‹ค.

์ด ์Šค๋‹ˆํผ ์šด์˜์ž๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ๋„คํŠธ์›Œํฌ ์ธํ”„๋ผ๋ฅผ ๋ถ„์„ํ•  ๋•Œ ๋‹ค์ˆ˜์˜ ์•…์„ฑ ์Šคํฌ๋ฆฝํŠธ, ์ต์Šคํ”Œ๋กœ์ž‡, ๊ฐ€์งœ ์ง€๋ถˆ ์–‘์‹ ๋ฐ ์•…์˜์ ์ธ ์Šค๋‹ˆํผ ๊ฒฝ์Ÿ์—…์ฒด์˜ ์‚ฌ๋ก€ ๋ชจ์Œ์ด ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ๊ทธ๋ฃน์—์„œ ์‚ฌ์šฉํ•˜๋Š” ๋„๋ฉ”์ธ ์ด๋ฆ„์˜ ์ถœํ˜„ ๋‚ ์งœ์— ๋Œ€ํ•œ ์ •๋ณด๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ์บ ํŽ˜์ธ ์‹œ์ž‘์ด 2016๋…„ ๋ง์ด๋ผ๊ณ  ๊ฐ€์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์˜ ์ฝ”๋“œ์—์„œ Illum์ด ๊ตฌํ˜„๋˜๋Š” ๋ฐฉ์‹

์ฒ˜์Œ ๋ฐœ๊ฒฌ๋œ ์Šค๋‹ˆํผ ๋ฒ„์ „์€ ์†์ƒ๋œ ์‚ฌ์ดํŠธ์˜ ์ฝ”๋“œ์— ์ง์ ‘ ์‚ฝ์ž…๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ํ›”์นœ ๋ฐ์ดํ„ฐ๋Š” ๋‹ค์Œ ์ฃผ์†Œ๋กœ ์ „์†ก๋˜์—ˆ์Šต๋‹ˆ๋‹ค. cdn.illum[.]pw/records.php, ๊ฒŒ์ดํŠธ๋Š” ๋‹ค์Œ์„ ์‚ฌ์šฉํ•˜์—ฌ ์ธ์ฝ”๋”ฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. base64.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋‚˜์ค‘์— ๋‹ค๋ฅธ ๊ฒŒ์ดํŠธ๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ํŒจํ‚ค์ง€ ๋ฒ„์ „์˜ ์Šค๋‹ˆํผ๊ฐ€ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. records.nstatistics[.]com/records.php.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
์— ๋”ฐ๋ฅด๋ฉด ๋ณด๊ณ ์„œ Willem de Groot, ๋™์ผํ•œ ํ˜ธ์ŠคํŠธ๊ฐ€ ๊ตฌํ˜„๋œ ์Šค๋‹ˆํผ์— ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์‡ผํ•‘ ์›น์‚ฌ์ดํŠธ, ๋…์ผ ์ •๋‹น CSU ์†Œ์œ .

๊ณต๊ฒฉ ์‚ฌ์ดํŠธ ๋ถ„์„

Group-IB ์ „๋ฌธ๊ฐ€๋“ค์€ ์ด ๋ฒ”์ฃ„ ์ง‘๋‹จ์ด ๋„๊ตฌ๋ฅผ ์ €์žฅํ•˜๊ณ  ํ›”์นœ ์ •๋ณด๋ฅผ ์ˆ˜์ง‘ํ•˜๊ธฐ ์œ„ํ•ด ์‚ฌ์šฉํ•˜๋Š” ์‚ฌ์ดํŠธ๋ฅผ ๋ฐœ๊ฒฌํ•˜๊ณ  ๋ถ„์„ํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๊ณต๊ฒฉ์ž์˜ ์„œ๋ฒ„์—์„œ ๋ฐœ๊ฒฌ๋œ ๋„๊ตฌ ์ค‘์—๋Š” Linux OS์—์„œ ๊ถŒํ•œ ์ƒ์Šน์„ ์œ„ํ•œ ์Šคํฌ๋ฆฝํŠธ ๋ฐ ์ต์Šคํ”Œ๋กœ์ž‡์ด ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด Mike Czumak์ด ๊ฐœ๋ฐœํ•œ Linux Privilege Escalation Check Script์™€ CVE-2009-1185 ์ต์Šคํ”Œ๋กœ์ž‡์ด ์žˆ์Šต๋‹ˆ๋‹ค.

๊ณต๊ฒฉ์ž๋Š” ์˜จ๋ผ์ธ ์ƒ์ ์„ ๊ณต๊ฒฉํ•˜๊ธฐ ์œ„ํ•ด ๋‘ ๊ฐ€์ง€ ์ต์Šคํ”Œ๋กœ์ž‡์„ ์ง์ ‘ ์‚ฌ์šฉํ–ˆ์Šต๋‹ˆ๋‹ค. ะฟะตั€ะฒั‹ะน ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ์ฃผ์ž…ํ•  ์ˆ˜ ์žˆ๋Š” core_config_data CVE-2016-4010์„ ์•…์šฉํ•˜์—ฌ ์ดˆ Magento CMS ํ”Œ๋Ÿฌ๊ทธ์ธ์˜ RCE ์ทจ์•ฝ์ ์„ ์•…์šฉํ•˜์—ฌ ์ทจ์•ฝํ•œ ์›น ์„œ๋ฒ„์—์„œ ์ž„์˜์˜ ์ฝ”๋“œ๋ฅผ ์‹คํ–‰ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋˜ํ•œ ์„œ๋ฒ„ ๋ถ„์„ ๊ณผ์ •์—์„œ ๊ณต๊ฒฉ์ž๊ฐ€ ํ•ดํ‚น๋œ ์‚ฌ์ดํŠธ์—์„œ ๊ฒฐ์ œ ์ •๋ณด๋ฅผ ์ˆ˜์ง‘ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉํ•˜๋Š” ๋‹ค์–‘ํ•œ ์Šค๋‹ˆํผ ์ƒ˜ํ”Œ๊ณผ ๊ฐ€์งœ ๊ฒฐ์ œ ์–‘์‹์ด ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์•„๋ž˜ ๋ชฉ๋ก์—์„œ ๋ณผ ์ˆ˜ ์žˆ๋“ฏ์ด ํ•ดํ‚น๋œ ๊ฐ ์‚ฌ์ดํŠธ์— ๋Œ€ํ•ด ์ผ๋ถ€ ์Šคํฌ๋ฆฝํŠธ๊ฐ€ ๊ฐœ๋ณ„์ ์œผ๋กœ ์ƒ์„ฑ๋˜์—ˆ์œผ๋ฉฐ ํŠน์ • CMS ๋ฐ ์ง€๋ถˆ ๊ฒŒ์ดํŠธ์›จ์ด์— ๋Œ€ํ•ด ๋ฒ”์šฉ ์†”๋ฃจ์…˜์ด ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ์Šคํฌ๋ฆฝํŠธ segapay_standard.js ะธ segapay_onpage.js Sage Pay ์ง€๋ถˆ ๊ฒŒ์ดํŠธ์›จ์ด๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ์‚ฌ์ดํŠธ์— ๋‚ด์žฅ๋˜๋„๋ก ์„ค๊ณ„๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

๋‹ค์–‘ํ•œ ๊ฒฐ์ œ ๊ฒŒ์ดํŠธ์›จ์ด์šฉ ์Šคํฌ๋ฆฝํŠธ ๋ชฉ๋ก

์Šคํฌ๋ฆฝํŠธ ๊ฒฐ์ œ ๊ฒŒ์ดํŠธ์›จ์ด
sr.illum[.]pw/mjs_special/visiondirect.co.uk.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs_special/topdirenshop.nl.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/tiendalenovo.es.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/pro-bolt.com.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/plae.co.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/ottolenghi.co.uk.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/oldtimecandy.com.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs_special/mylook.ee.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/mjs_special/luluandsky.com.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs_special/julep.com.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/mjs_special/gymcompany.es.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/grotekadoshop.nl.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs_special/fushi.co.uk.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs_special/fareastflora.com.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs_special/compuindia.com.js //request.payrightnow[.]cf/alldata.php
sr.illum[.]pw/mjs/segapay_standart.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/mjs/segapay_onpage.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/mjs/replace_standard.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/mjs/all_inputs.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/mjs/add_inputs_standart.js //request.payrightnow[.]cf/checkpay.php
sr.illum[.]pw/magento/payment_standard.js //cdn.illum[.]pw/records.php
sr.illum[.]pw/magento/pay_redirect.js //payrightnow[.]cf/?๊ฒฐ์ œ=
sr.illum[.]pw/magento/๊ฒฐ์ œ_redcrypt.js //payrightnow[.]cf/?๊ฒฐ์ œ=
sr.illum[.]pw/magento/๊ฒฐ์ œ_forminsite.js //๊ฒฐ์ œ์ง€๊ธˆ[.]tk/?๊ฒฐ์ œ=

์ฃผ์ธ ์ง€๊ธˆ ๊ฒฐ์ œ[.]tk, ์Šคํฌ๋ฆฝํŠธ์—์„œ ๊ฒŒ์ดํŠธ๋กœ ์‚ฌ์šฉ Payment_forminsite.js, ๋กœ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค ์ฃผ์ œ ๋Œ€์ฒด ์ด๋ฆ„ CloudFlare ์„œ๋น„์Šค์™€ ๊ด€๋ จ๋œ ์—ฌ๋Ÿฌ ์ธ์ฆ์„œ์—์„œ. ๋˜ํ•œ ์Šคํฌ๋ฆฝํŠธ๋Š” ํ˜ธ์ŠคํŠธ์— ์žˆ์Šต๋‹ˆ๋‹ค. evil.js. ์Šคํฌ๋ฆฝํŠธ ์ด๋ฆ„์œผ๋กœ ๋ฏธ๋ฃจ์–ด ๋ณด์•„ CVE-2016-4010 ์ต์Šคํ”Œ๋กœ์ž‡์˜ ์ผ๋ถ€๋กœ ์‚ฌ์šฉ๋˜์—ˆ์„ ๊ฐ€๋Šฅ์„ฑ์ด ์žˆ์Šต๋‹ˆ๋‹ค. ๋•๋ถ„์— Magento CMS๋ฅผ ์‹คํ–‰ํ•˜๋Š” ์‚ฌ์ดํŠธ์˜ ๋ฐ”๋‹ฅ๊ธ€์— ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ์ฃผ์ž…ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ด ์Šคํฌ๋ฆฝํŠธ๋Š” ํ˜ธ์ŠคํŠธ๋ฅผ ๊ฒŒ์ดํŠธ๋กœ ์‚ฌ์šฉํ–ˆ์Šต๋‹ˆ๋‹ค. request.requestnet[.]tk, ํ˜ธ์ŠคํŠธ์™€ ๋™์ผํ•œ ์ธ์ฆ์„œ ์‚ฌ์šฉ ์ง€๊ธˆ ๊ฒฐ์ œ[.]tk.

๊ฐ€์งœ ๊ฒฐ์ œ ์–‘์‹

์•„๋ž˜ ๊ทธ๋ฆผ์€ ์นด๋“œ ๋ฐ์ดํ„ฐ๋ฅผ ์ž…๋ ฅํ•˜๋Š” ์–‘์‹์˜ ์˜ˆ๋ฅผ ๋ณด์—ฌ์ค๋‹ˆ๋‹ค. ์ด ์–‘์‹์€ ์˜จ๋ผ์ธ ์ƒ์  ์›น ์‚ฌ์ดํŠธ์— ์นจํˆฌํ•˜์—ฌ ์นด๋“œ ๋ฐ์ดํ„ฐ๋ฅผ ๋„์šฉํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋‹ค์Œ ๊ทธ๋ฆผ์€ ๊ณต๊ฒฉ์ž๊ฐ€ ์ด ๊ฒฐ์ œ ์ˆ˜๋‹จ์„ ์‚ฌ์šฉํ•˜์—ฌ ์‚ฌ์ดํŠธ์— ์นจํˆฌํ•˜๊ธฐ ์œ„ํ•ด ์‚ฌ์šฉํ•œ ๊ฐ€์งœ PayPal ๊ฒฐ์ œ ํ˜•์‹์˜ ์˜ˆ์ž…๋‹ˆ๋‹ค.
์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
ํ•˜๋ถ€ ๊ตฌ์กฐ

๋„๋ฉ”์ธ ์ด๋ฆ„ ๋ฐœ๊ฒฌ/์ถœํ˜„ ๋‚ ์งœ
cdn.illum.pw 27/11/2016
records.nstatistics.com 06/09/2018
request.payrightnow.cf 25/05/2018
Paymentnow.tk 16/07/2017
์ง€๋ถˆ-line.tk 01/03/2018
Paymentpal.cf 04/09/2017
requestnet.tk 28/06/2017

์ปคํ”ผ๋ชจ๊ผฌํŒจ๋ฐ€๋ฆฌ

์˜จ๋ผ์ธ ์ƒ์  ์‚ฌ์šฉ์ž์˜ ์€ํ–‰ ์นด๋“œ๋ฅผ ํ›”์น˜๋„๋ก ์„ค๊ณ„๋œ CoffeMokko ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์€ ์ ์–ด๋„ 2017๋…„ 1์›”๋ถ€ํ„ฐ ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์•„๋งˆ๋„ 2016๋…„ RiskIQ ์ „๋ฌธ๊ฐ€๊ฐ€ ๊ธฐ์ˆ ํ•œ ๊ทธ๋ฃน XNUMX ๋ฒ”์ฃ„ ๊ทธ๋ฃน์ด ์ด ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์˜ ์šด์˜์ž์ผ ๊ฒƒ์ž…๋‹ˆ๋‹ค. Magento, OpenCart, WordPress, osCommerce, Shopify์™€ ๊ฐ™์€ CMS๋ฅผ ์‹คํ–‰ํ•˜๋Š” ์›น์‚ฌ์ดํŠธ๊ฐ€ ๊ณต๊ฒฉ์„ ๋ฐ›์•˜์Šต๋‹ˆ๋‹ค.

CoffeMokko๊ฐ€ ์˜จ๋ผ์ธ ์ƒ์  ์ฝ”๋“œ์— ์‚ฝ์ž…๋˜๋Š” ๋ฐฉ์‹

์ด ์ œํ’ˆ๊ตฐ์˜ ์šด์˜์ž๋Š” ๊ฐ ๊ฐ์—ผ์— ๋Œ€ํ•ด ๊ณ ์œ ํ•œ ์Šค๋‹ˆํผ๋ฅผ ์ƒ์„ฑํ•ฉ๋‹ˆ๋‹ค. ์Šค๋‹ˆํผ ํŒŒ์ผ์€ ๋””๋ ‰ํ„ฐ๋ฆฌ์— ์žˆ์Šต๋‹ˆ๋‹ค. SRC ๋˜๋Š” js ๊ณต๊ฒฉ์ž์˜ ์„œ๋ฒ„์—์„œ. ์‚ฌ์ดํŠธ ์ฝ”๋“œ๋กœ์˜ ๊ตฌํ˜„์€ ์Šค๋‹ˆํผ์— ๋Œ€ํ•œ ์ง์ ‘ ๋งํฌ๋ฅผ ํ†ตํ•ด ์ˆ˜ํ–‰๋ฉ๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
์Šค๋‹ˆํผ ์ฝ”๋“œ๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ๋„์šฉํ•˜๋ ค๋Š” ์–‘์‹ ํ•„๋“œ์˜ ์ด๋ฆ„์„ ํ•˜๋“œ ์ฝ”๋”ฉํ•ฉ๋‹ˆ๋‹ค. ์Šค๋‹ˆํผ๋Š” ๋˜ํ•œ ์‚ฌ์šฉ์ž์˜ ํ˜„์žฌ ์ฃผ์†Œ์— ๋Œ€ํ•œ ํ‚ค์›Œ๋“œ ๋ชฉ๋ก์„ ํ™•์ธํ•˜์—ฌ ์‚ฌ์šฉ์ž๊ฐ€ ์ฒดํฌ์•„์›ƒ ํŽ˜์ด์ง€์— ์žˆ๋Š”์ง€ ํ™•์ธํ•ฉ๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋ฐœ๊ฒฌ๋œ ์Šค๋‹ˆํผ์˜ ์ผ๋ถ€ ๋ฒ„์ „์€ ๋‚œ๋…ํ™”๋˜์—ˆ์œผ๋ฉฐ ๋ฆฌ์†Œ์Šค์˜ ๊ธฐ๋ณธ ๋ฐฐ์—ด์„ ์ €์žฅํ•˜๋Š” ์•”ํ˜ธํ™”๋œ ๋ฌธ์ž์—ด์„ ํฌํ•จํ•˜๊ณ  ์žˆ์Šต๋‹ˆ๋‹ค. ์—ฌ๊ธฐ์—๋Š” ๋‹ค์–‘ํ•œ ๊ฒฐ์ œ ์‹œ์Šคํ…œ์˜ ์–‘์‹ ํ•„๋“œ ์ด๋ฆ„๊ณผ ํ›”์นœ ๋ฐ์ดํ„ฐ๋ฅผ ์ „์†กํ•ด์•ผ ํ•˜๋Š” ๊ฒŒ์ดํŠธ ์ฃผ์†Œ๊ฐ€ ํฌํ•จ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
ํ›”์นœ ๊ฒฐ์ œ ์ •๋ณด๋Š” ๋„์ค‘์— ๊ณต๊ฒฉ์ž์˜ ์„œ๋ฒ„์— ์žˆ๋Š” ์Šคํฌ๋ฆฝํŠธ๋กœ ์ „์†ก๋˜์—ˆ์Šต๋‹ˆ๋‹ค. /savePayment/index.php ๋˜๋Š” /tr/index.php. ์•„๋งˆ๋„ ์ด ์Šคํฌ๋ฆฝํŠธ๋Š” ๊ฒŒ์ดํŠธ์—์„œ ๋ชจ๋“  ์Šค๋‹ˆํผ์˜ ๋ฐ์ดํ„ฐ๋ฅผ ํ†ตํ•ฉํ•˜๋Š” ์ฃผ ์„œ๋ฒ„๋กœ ๋ฐ์ดํ„ฐ๋ฅผ ๋ณด๋‚ด๋Š” ๋ฐ ์‚ฌ์šฉ๋ฉ๋‹ˆ๋‹ค. ์ „์†ก๋œ ๋ฐ์ดํ„ฐ๋ฅผ ์ˆจ๊ธฐ๊ธฐ ์œ„ํ•ด ํ”ผํ•ด์ž์˜ ๋ชจ๋“  ๊ฒฐ์ œ ์ •๋ณด๋Š” ๋‹ค์Œ์„ ์‚ฌ์šฉํ•˜์—ฌ ์•”ํ˜ธํ™”๋ฉ๋‹ˆ๋‹ค. base64, ๊ทธ๋Ÿฐ ๋‹ค์Œ ๋ช‡ ๊ฐ€์ง€ ๋ฌธ์ž ๋Œ€์ฒด๊ฐ€ ๋ฐœ์ƒํ•ฉ๋‹ˆ๋‹ค.

  • ๋ฌธ์ž "e"๋Š” ":"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๊ธฐํ˜ธ "w"๋Š” "+"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "o"๋Š” "%"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "d"๋Š” "#"์œผ๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "a"๋Š” "-"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๊ธฐํ˜ธ "7"์€ "^"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "h"๋Š” "_"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • "T" ๊ธฐํ˜ธ๋Š” "@"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "0"์€ "/"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.
  • ๋ฌธ์ž "Y"๋Š” "*"๋กœ ๋Œ€์ฒด๋ฉ๋‹ˆ๋‹ค.

๋กœ ์ธ์ฝ”๋”ฉ๋œ ๋ฌธ์ž ๋Œ€์ฒด์˜ ๊ฒฐ๊ณผ base64 ์—ญ๋ณ€ํ™˜ ์—†์ด๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ๋””์ฝ”๋”ฉํ•  ์ˆ˜ ์—†์Šต๋‹ˆ๋‹ค.

๋‚œ๋…ํ™”๋˜์ง€ ์•Š์€ ์Šค๋‹ˆํผ ์ฝ”๋“œ์˜ ์ผ๋ถ€๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

์ธํ”„๋ผ ๋ถ„์„

์ดˆ๊ธฐ ์บ ํŽ˜์ธ์—์„œ ๊ณต๊ฒฉ์ž๋Š” ํ•ฉ๋ฒ•์ ์ธ ์˜จ๋ผ์ธ ์‡ผํ•‘ ์‚ฌ์ดํŠธ์™€ ์œ ์‚ฌํ•œ ๋„๋ฉ”์ธ ์ด๋ฆ„์„ ๋“ฑ๋กํ–ˆ์Šต๋‹ˆ๋‹ค. ๊ทธ๋“ค์˜ ๋„๋ฉ”์ธ์€ ํ•ฉ๋ฒ•์ ์ธ ๋„๋ฉ”์ธ๊ณผ ํ•˜๋‚˜์˜ ๋ฌธ์ž ๋˜๋Š” ๋‹ค๋ฅธ TLD์™€ ๋‹ค๋ฅผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๋“ฑ๋ก๋œ ๋„๋ฉ”์ธ์€ ์Šคํ† ์–ด ์ฝ”๋“œ์— ํฌํ•จ๋œ ๋งํฌ์ธ ์Šค๋‹ˆํผ ์ฝ”๋“œ๋ฅผ ์ €์žฅํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

์ด ๊ทธ๋ฃน์€ ์ธ๊ธฐ ์žˆ๋Š” jQuery ํ”Œ๋Ÿฌ๊ทธ์ธ์„ ์—ฐ์ƒ์‹œํ‚ค๋Š” ๋„๋ฉ”์ธ ์ด๋ฆ„๋„ ์‚ฌ์šฉํ–ˆ์Šต๋‹ˆ๋‹ค(slickjs[.]org ํ”Œ๋Ÿฌ๊ทธ์ธ์„ ์‚ฌ์šฉํ•˜๋Š” ์‚ฌ์ดํŠธ slick.js), ๊ฒฐ์ œ ๊ฒŒ์ดํŠธ์›จ์ด(sagecdn[.]org Sage Pay ๊ฒฐ์ œ ์‹œ์Šคํ…œ์„ ์‚ฌ์šฉํ•˜๋Š” ์‚ฌ์ดํŠธ).

๋‚˜์ค‘์— ๊ทธ๋ฃน์€ ์ƒ์ ์˜ ๋„๋ฉ”์ธ์ด๋‚˜ ์ƒ์ ์˜ ํ…Œ๋งˆ์™€ ์•„๋ฌด ๊ด€๋ จ์ด ์—†๋Š” ์ด๋ฆ„์„ ๊ฐ€์ง„ ๋„๋ฉ”์ธ์„ ๋งŒ๋“ค๊ธฐ ์‹œ์ž‘ํ–ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๊ฐ ๋„๋ฉ”์ธ์€ ๋””๋ ‰ํ† ๋ฆฌ๊ฐ€ ์ƒ์„ฑ๋œ ์‚ฌ์ดํŠธ์— ํ•ด๋‹นํ•ฉ๋‹ˆ๋‹ค. /js ๋˜๋Š” /src. ์Šค๋‹ˆํผ ์Šคํฌ๋ฆฝํŠธ๋Š” ์ด ๋””๋ ‰ํ† ๋ฆฌ์— ์ €์žฅ๋˜์—ˆ์Šต๋‹ˆ๋‹ค: ๊ฐ๊ฐ์˜ ์ƒˆ๋กœ์šด ๊ฐ์—ผ์— ๋Œ€ํ•ด ํ•˜๋‚˜์˜ ์Šค๋‹ˆํผ. ์Šค๋‹ˆํผ๋Š” ์ง์ ‘ ๋งํฌ๋ฅผ ํ†ตํ•ด ์‚ฌ์ดํŠธ ์ฝ”๋“œ์— ๋„์ž…๋˜์—ˆ์ง€๋งŒ ๋“œ๋ฌผ๊ฒŒ ๊ณต๊ฒฉ์ž๊ฐ€ ์‚ฌ์ดํŠธ์˜ ํŒŒ์ผ ์ค‘ ํ•˜๋‚˜๋ฅผ ์ˆ˜์ •ํ•˜๊ณ  ์•…์„ฑ ์ฝ”๋“œ๋ฅผ ์ถ”๊ฐ€ํ–ˆ์Šต๋‹ˆ๋‹ค.

์ฝ”๋“œ ๋ถ„์„

์ฒซ ๋ฒˆ์งธ ๋‚œ๋…ํ™” ์•Œ๊ณ ๋ฆฌ์ฆ˜

์ด ๊ณ„์—ด์˜ ์ผ๋ถ€ ์Šค๋‹ˆํผ ์ƒ˜ํ”Œ์—์„œ ์ฝ”๋“œ๋Š” ๋‚œ๋…ํ™”๋˜์—ˆ์œผ๋ฉฐ ์Šค๋‹ˆํผ๊ฐ€ ์ž‘๋™ํ•˜๋Š” ๋ฐ ํ•„์š”ํ•œ ์•”ํ˜ธํ™”๋œ ๋ฐ์ดํ„ฐ(ํŠนํžˆ ์Šค๋‹ˆํผ์˜ ๊ฒŒ์ดํŠธ ์ฃผ์†Œ, ๊ฒฐ์ œ ์–‘์‹ ํ•„๋“œ ๋ชฉ๋ก ๋ฐ ๊ฒฝ์šฐ์— ๋”ฐ๋ผ ๊ฐ€์งœ ๊ฒฐ์ œ ์–‘์‹ ์ฝ”๋“œ)๊ฐ€ ํฌํ•จ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค. ํ•จ์ˆ˜ ๋‚ด๋ถ€์˜ ์ฝ”๋“œ์—์„œ ๋ฆฌ์†Œ์Šค๋Š” ๋ฌด๋ฃŒ ๋™์ผํ•œ ํ•จ์ˆ˜์— ์ธ์ˆ˜๋กœ ์ „๋‹ฌ๋œ ํ‚ค๋กœ.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๊ฐ ์ƒ˜ํ”Œ์— ๋Œ€ํ•ด ๊ณ ์œ ํ•œ ํ•ด๋‹น ํ‚ค๋กœ ๋ฌธ์ž์—ด์„ ํ•ด๋…ํ•˜๋ฉด ๊ตฌ๋ถ„ ๋ฌธ์ž๋กœ ๊ตฌ๋ถ„๋œ ์Šค๋‹ˆํผ ์ฝ”๋“œ์˜ ๋ชจ๋“  ํ–‰์„ ํฌํ•จํ•˜๋Š” ๋ฌธ์ž์—ด์„ ์–ป์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

๋‘ ๋ฒˆ์งธ ๋‚œ๋…ํ™” ์•Œ๊ณ ๋ฆฌ์ฆ˜

์ด ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์˜ ์ดํ›„ ์ƒ˜ํ”Œ์—์„œ๋Š” ๋‹ค๋ฅธ ๋‚œ๋…ํ™” ๋ฉ”์ปค๋‹ˆ์ฆ˜์ด ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด ๊ฒฝ์šฐ ๋ฐ์ดํ„ฐ๋Š” ์ž์ฒด ์ž‘์„ฑ ์•Œ๊ณ ๋ฆฌ์ฆ˜์„ ์‚ฌ์šฉํ•˜์—ฌ ์•”ํ˜ธํ™”๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์Šค๋‹ˆํผ๊ฐ€ ์ž‘๋™ํ•˜๋Š” ๋ฐ ํ•„์š”ํ•œ ์•”ํ˜ธํ™”๋œ ๋ฐ์ดํ„ฐ๊ฐ€ ํฌํ•จ๋œ ๋ฌธ์ž์—ด์ด ์•”ํ˜ธ ํ•ด๋… ๊ธฐ๋Šฅ์— ์ธ์ˆ˜๋กœ ์ „๋‹ฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋ธŒ๋ผ์šฐ์ € ์ฝ˜์†”์„ ์‚ฌ์šฉํ•˜์—ฌ ์•”ํ˜ธํ™”๋œ ๋ฐ์ดํ„ฐ๋ฅผ ํ•ด๋…ํ•˜๊ณ  ์Šค๋‹ˆํผ ๋ฆฌ์†Œ์Šค๊ฐ€ ํฌํ•จ๋œ ๋ฐฐ์—ด์„ ๊ฐ€์ ธ์˜ฌ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ

์ดˆ๊ธฐ MageCart ๊ณต๊ฒฉ์— ๋Œ€ํ•œ ๋งํฌ

๊ทธ๋ฃน์ด ๋„๋‚œ ๋ฐ์ดํ„ฐ๋ฅผ ์ˆ˜์ง‘ํ•˜๊ธฐ ์œ„ํ•œ ๊ฒŒ์ดํŠธ๋กœ ์‚ฌ์šฉํ•˜๋Š” ๋„๋ฉ”์ธ ์ค‘ ํ•˜๋‚˜๋ฅผ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ, ์ด ๋„๋ฉ”์ธ์€ ์ฒซ ๋ฒˆ์งธ ๊ทธ๋ฃน ์ค‘ ํ•˜๋‚˜์ธ ๊ทธ๋ฃน 1์—์„œ ์‚ฌ์šฉํ•œ ๊ฒƒ๊ณผ ๋™์ผํ•œ ์‹ ์šฉ ์นด๋“œ ๋„์šฉ ์ธํ”„๋ผ๋ฅผ ๊ตฌ์ถ•ํ•œ ๊ฒƒ์œผ๋กœ ๋‚˜ํƒ€๋‚ฌ์Šต๋‹ˆ๋‹ค. ๋ฐœ๊ฒฌ ๋œ RiskIQ ์ „๋ฌธ๊ฐ€.

CoffeMokko ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ์˜ ํ˜ธ์ŠคํŠธ์—์„œ ๋‘ ๊ฐœ์˜ ํŒŒ์ผ์ด ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

  • mage.js โ€” ๊ฒŒ์ดํŠธ ์ฃผ์†Œ๊ฐ€ ์žˆ๋Š” ๊ทธ๋ฃน 1 ์Šค๋‹ˆํผ ์ฝ”๋“œ๋ฅผ ํฌํ•จํ•˜๋Š” ํŒŒ์ผ js-cdn.link
  • mag.php - ์Šค๋‹ˆํผ๊ฐ€ ํ›”์นœ ๋ฐ์ดํ„ฐ ์ˆ˜์ง‘์„ ๋‹ด๋‹นํ•˜๋Š” PHP ์Šคํฌ๋ฆฝํŠธ

mage.js ํŒŒ์ผ์˜ ๋‚ด์šฉ ์˜จ๋ผ์ธ ์ƒ์ ์—์„œ ๊ธฐ๋‹ค๋ฆฌ๊ณ  ์žˆ๋Š” XNUMX๊ฐ€์ง€ JavaScript ์Šค๋‹ˆํผ
๋˜ํ•œ CoffeMokko ์Šค๋‹ˆํผ ์ œํ’ˆ๊ตฐ ๋’ค์— ์žˆ๋Š” ๊ทธ๋ฃน์ด ์‚ฌ์šฉํ•œ ์ตœ์ดˆ์˜ ๋„๋ฉ”์ธ์ด 17๋…„ 2017์›” XNUMX์ผ์— ๋“ฑ๋ก๋œ ๊ฒƒ์œผ๋กœ ํ™•์ธ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

  • ๋งํฌ-js[.]๋งํฌ
  • info-js[.]๋งํฌ
  • track-js[.]๋งํฌ
  • map-js[.]๋งํฌ
  • smart-js[.]๋งํฌ

์ด๋Ÿฌํ•œ ๋„๋ฉ”์ธ ์ด๋ฆ„์˜ ํ˜•์‹์€ 1๋…„ ๊ณต๊ฒฉ์— ์‚ฌ์šฉ๋œ ๊ทธ๋ฃน 2016 ๋„๋ฉ”์ธ ์ด๋ฆ„๊ณผ ๋™์ผํ•ฉ๋‹ˆ๋‹ค.

๋ฐœ๊ฒฌ๋œ ์‚ฌ์‹ค์„ ๋ฐ”ํƒ•์œผ๋กœ CoffeMokko ์Šค๋‹ˆํผ ์šด์˜์ž์™€ Group 1 ๋ฒ”์ฃ„ ๊ทธ๋ฃน ์‚ฌ์ด์— ์—ฐ๊ด€์„ฑ์ด ์žˆ๋‹ค๊ณ  ์ถ”์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์•„๋งˆ๋„ CoffeMokko ์šด์˜์ž๋Š” ์ „์ž„์ž์˜ ์นด๋“œ๋ฅผ ํ›”์น˜๊ธฐ ์œ„ํ•ด ๋„๊ตฌ์™€ ์†Œํ”„ํŠธ์›จ์–ด๋ฅผ ๋นŒ๋ ธ์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ CoffeMokko ํŒจ๋ฐ€๋ฆฌ ์Šค๋‹ˆํผ๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ๋ฒ”์ฃ„ ์ง‘๋‹จ์€ ๊ทธ๋ฃน 1 ํ™œ๋™์˜ ์ผํ™˜์œผ๋กœ ๊ณต๊ฒฉ์„ ์ˆ˜ํ–‰ํ•œ ๋™์ผ ์ธ๋ฌผ์ผ ๊ฐ€๋Šฅ์„ฑ์ด ๋” ํฝ๋‹ˆ๋‹ค. ๋„๋ฉ”์ธ ์ด๋ฆ„์€ ์ฐจ๋‹จ๋˜์—ˆ๊ณ  ๋„๊ตฌ๋Š” ์ž์„ธํžˆ ์—ฐ๊ตฌ๋˜๊ณ  ์„ค๋ช…๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด ๊ทธ๋ฃน์€ ๊ณต๊ฒฉ์„ ๊ณ„์†ํ•˜๊ณ  ๋ˆˆ์— ๋„์ง€ ์•Š๊ฒŒ ์œ ์ง€ํ•˜๊ธฐ ์œ„ํ•ด ํœด์‹์„ ์ทจํ•˜๊ณ  ๋‚ด๋ถ€ ๋„๊ตฌ๋ฅผ ๋ฏธ์„ธ ์กฐ์ •ํ•˜๊ณ  ์Šค๋‹ˆํผ ์ฝ”๋“œ๋ฅผ ๋‹ค์‹œ ์ž‘์„ฑํ•ด์•ผ ํ–ˆ์Šต๋‹ˆ๋‹ค.

ํ•˜๋ถ€ ๊ตฌ์กฐ

๋„๋ฉ”์ธ ์ด๋ฆ„ ๋ฐœ๊ฒฌ/์ถœํ˜„ ๋‚ ์งœ
๋งํฌ-js.link 17.05.2017
info-js.link 17.05.2017
ํŠธ๋ž™-js.link 17.05.2017
์ง€๋„-js.๋งํฌ 17.05.2017
์Šค๋งˆํŠธ js.link 17.05.2017
adorebeauty.org 03.09.2017
๋ณด์•ˆ ์ง€๋ถˆ.su 03.09.2017
Braincdn.org 04.09.2017
sagecdn.org 04.09.2017
slickjs.org 04.09.2017
Oakandfort.org 10.09.2017
citywlnery.org 15.09.2017
dobell.su 04.10.2017
childrensplayclothing.org 31.10.2017
jewsondirect.com 05.11.2017
shop-rnib.org 15.11.2017
closetlondon.org 16.11.2017
misshaus.org 28.11.2017
Battery-force.org 01.12.2017
kik-vape.org 01.12.2017
greatfurnituretradingco.org 02.12.2017
etradesupply.org 04.12.2017
replacementmyremote.org 04.12.2017
all-about-sneakers.org 05.12.2017
mage-checkout.org 05.12.2017
nililotan.org 07.12.2017
lamoodbighat.net 08.12.2017
walletgear.org 10.12.2017
dahlie.org 12.12.2017
davidsfootwear.org 20.12.2017
blackriverimaging.org 23.12.2017
exrpesso.org 02.01.2018
parks.su 09.01.2018
pmtonline.su 12.01.2018
otocap.org 15.01.2018
christohperward.org 27.01.2018
Coffeetea.org 31.01.2018
Energycoffe.org 31.01.2018
Energytea.org 31.01.2018
teacoffe.net 31.01.2018
adaptivecss.org 01.03.2018
coffemokko.com 01.03.2018
londontea.net 01.03.2018
ukcoffe.com 01.03.2018
labbe.biz 20.03.2018
Batterynart.com 03.04.2018
btosports.net 09.04.2018
๋ณ‘์•„๋ฆฌ์ƒˆ๋“ค๋Ÿฌ๋ฆฌ.net 16.04.2018
paypaypay.org 11.05.2018
ar500arnor.com 26.05.2018
Authorizecdn.com 28.05.2018
slickmin.com 28.05.2018
๋ฐฐ๋„ˆ๋ฒ„์ฆˆ.info 03.06.2018
kandypens.net 08.06.2018
mylrendyphone.com 15.06.2018
freshchat.info 01.07.2018
3lift.org 02.07.2018
abtasty.net 02.07.2018
mechat.info 02.07.2018
zoplm.com 02.07.2018
zapaljs.com 02.09.2018
foodandcot.com 15.09.2018
freshdepor.com 15.09.2018
swappastore.com 15.09.2018
verywellfitness.com 15.09.2018
elegrina.com 18.11.2018
majsurplus.com 19.11.2018
top5value.com 19.11.2018

์ถœ์ฒ˜ : habr.com

์ฝ”๋ฉ˜ํŠธ๋ฅผ ์ถ”๊ฐ€