G DATA Softwareã¯ã2008幎äžåæã«ããããã«ãŠã§ã¢ã¬ããŒããçºè¡šããã
æ¿å¢ãããã«ãŠã§ã¢
ãŸãã¯ã2008幎1æãã6æãŸã§ã®ãã«ãŠã§ã¢ã®çºçä»¶æ°ãèŠãŠã»ãã(衚1)ã
衚1 æªæ§ã³ãŒã矀åå¥ãã«ãŠã§ã¢çºçæ°ããã5(2008幎1ïœ6æ)
| æªæ§ã³ãŒã矀å | æ°çš® | æ¯ç(%) |
|---|---|---|
| ããã¯ã㢠| 75,027 | 23.6% |
| ããŠã³ããŒã/ãããã | 64,482 | 20.3% |
| ã¹ãã€ãŠã§ã¢ | 58,872 | 18.5% |
| ããã€ã®æšéЬ | 52,087 | 16.4% |
| ã¢ããŠã§ã¢ | 32,068 | 10.1% |
2007幎ã«ã¯133,253çš®ã®æ°çš®ã®ãã«ãŠã§ã¢ãçºèŠããããã2008幎ã®ç¬¬äžååæã ãã§ã318,000皮以äžã®ãã«ãŠã§ã¢ãçºèŠãããŠãã(G DATAã»ãã¥ãªãã£ã©ãã®èª¿æ»ã«ãã)ããã®åŸåã¯ä»åŸãç¶ããšäºæ³ããããG DATAã®è©Šç®ã«ããã°ãä»å¹Ž1幎ã§50äžçš®ä»¥äžã®æ°çš®ãã«ãŠã§ã¢ãäœæããããšäºæž¬ãããå幎æ¯ã§çŽ4åå¢ãšãªãæ°åã§ããã
ãã«ãŠã§ã¢ã®ææçµè·¯ã§ãããããããŸã§ã¯ãã¡ãŒã«ã«æ·»ä»ããããã¡ã€ã«ãéãããšã§ææãããã®ãå€ãã£ãããããããã®ææ³ã¯ãæšå¹Žã®æç¹ã§1äœã§ã¯ãªããæªæãæã£ãæ»æè ã¯ãã¡ãŒã«ã䜿ããæªæ§ã³ãŒãã仿ããWebãµã€ãã«ãã³ãå¯ããææ®µãšããŠäœ¿ã£ãŠãããããã¯ãWebããŒãžãé²èЧããã ãã§ææããããã©ã€ããã€ããŠã³ããŒãããšããææ³ã§ããã
ãããŸã§ããã«ãŠã§ã¢ãžã®æææºã¯ãã«ãç³»ã®Webãµã€ããªã©ãå€ãã£ããããããæè¿ã§ã¯ãWebãã©ãŠã¶ã®è匱æ§ãçªããFlashãAcrobat Readerã®ãã©ã°ã€ã³ãæªçšãããã®ãªã©ã倧ããå€åããŠããŠããã
2008幎äžåæã®åŸå
2008幎äžåæã¯ããµã€ããŒç¯çœªã®æŽ»åãéåžžã«æŽ»çºåãããç¹ã«ãäžåºŠã¯2007幎æ«é ã«çµæ¯ã«åãã£ããšèããããŠããã¹ããŒã ã¯ãŒã ãåæµè¡ã®å ããèŠãããã¹ããŒã ã¯ãŒã ã«ææããPCã¯ãã«ãŒã¿ã䜿çšããå Žåã¯ã¹ãã ã®ã¿éä¿¡ããã«ãŒã¿ã䜿çšããŠããªãå Žåã¯ãã¹ãã ããã£ãã·ã³ã°ãµã€ãããã¹ãããããã«äœ¿ããããããããããã®åœ¹å²ãåæ ããŠããã
æªæ§ã³ãŒããåã蟌ãã Webãµã€ããããã«ãŠã§ã¢ã«ææããã±ãŒã¹ã®å¢å ãèŠãããããªã³ã©ã€ã³ç¯çœªè ã¯ãç¹å¥ãªããŒã«ãããã䜿ããWebãµãŒããªã©ã«ç°¡åã«ãã«ãŠã§ã¢ãå¿ã³èŸŒãŸããŠãããåç¯ã«ãè§Šããããã«ããã«ãŠã§ã¢ã®ææçµè·¯ãšããŠäœ¿ãããŠããææ³ã§ããã
ãŸããäžæåã®æè¡ãä»ãŸã䜿çšãããç¹ã«ã泚æãæããããçŸåšã®ããŒãã»ã¯ã¿ãŠã€ã«ã¹ã¯ããã¡ã€ã«ã«ããææã§ã¯ãªããã«ãŒãããããå©çšããŠããã
2008幎äžåæã®å±æ
G DATAã¯ã2008幎äžåæã®ãã«ãŠã§ã¢ãªã©ã®å±éãã以äžã®ããã«äºæ³ããã
ã»ãã«ãŠã§ã¢ãä»çµãã ãµã€ãã®æ¬æ Œå
Webçµç±ã§ã®ãã«ãŠã§ã¢ã®ææã¯ãããããæ¬æ Œçãªæµè¡æ®µéã«çªå ¥ãããã€ã³ã¿ãŒããããµãŒãã¹ã®æäŸè ããã¹ãããšãšããŠãã¯ãã¹ãµã€ãã¹ã¯ãªããã£ã³ã°ãã¯ãã¹ãµã€ããªã¯ãšã¹ããã©ãŒãžã§ãªãSQLã€ã³ãžã§ã¯ã·ã§ã³ã®ãããªã»ãã¥ãªãã£ããŒã«ã朰ãããšããããŠããããããã®è匱æ§ã«ã€ããŠã¯ãéçºæ®µéããã®ååãªæºåãå¿ èŠãšãªãããŸãã皌åäžã®Webã¢ããªã±ãŒã·ã§ã³ãµãŒãã®å Žåã忢ãããããšãé£ããã±ãŒã¹ãå€ããè匱æ§ãçºèŠãããŠããæéãšæééããããããã®éãå±éºã«ãããããããšã«ãªãã
ã»å©çéèŠã®å²ããããžãã¹ã¢ãã«
ãã«ãŠã§ã¢ã®éçºã®éå£ã¯ãããåãããããžãã¹ã¢ãã«ãæã£ãŠãããã¹ãã ãã¢ããŠã§ã¢ãªã©ãé§äœ¿ããŠçšŒãå¹Žéæ°åååèŠæš¡ã®åžå ŽãååšããŠããã®ã§ãããæ žãšãªãã®ã¯ãããããããããŸã³ãPCã ãä»åŸããã¹ãã ã¡ãŒã«ãéãã³ã³ãã¥ãŒã¿ããŸã³ãPCã«å€ããããŠã³ããŒããããã¯ãã¢ã®çåšã¯ç¶ããšäºæ³ãããã
ã»çãã«ãªãããŒã¿äº€æ
äžè¿°ã®ããžãã¹ã¢ãã«ã§ã¯ããã«ãŠã§ã¢äœè ãã¹ãããŒãçé£ããŒã¿è²·å ¥äººãªã©ãããäºãã«ååäœå¶ãæŽããŠããããã¡ããããã§åãåŒããããã®ã¯ãããŸããŸãªå人ããŒã¿ã§ããã
ã¹ãã€ãŠã§ã¢ã¯ãªã³ã©ã€ã³ãã³ãã³ã°ã®ã¢ã¯ã»ã¹ããŒã¿ãçããããŒãã¬ãŒã¯äœ¿çšãã人ã ã®IDããçã£ãŠããããããã®æ å ±ã¯ãæŸåãããã°ãã¡ãŸã¡ã®ãã¡ã«ã圌ãã®å ±æç©ãšãªããæªçšãããã®ã§ããã
ã»æé·ãæãæ©ãã¢ããŠã§ã¢
æ°çš®ã®ã¢ããŠã§ã¢æ°ã¯ã2007幎ã«ã5å以äžã«å¢å ãããã2008幎ã®äžåæã ãã§ãã2007å¹Žãšæ¯èŒãã8å以äžã®æ°çš®ã¢ããŠã§ã¢ãçºèŠãããŠããããããã¢ãããªã©ã«ããåºåã®è¡šç€ºãæ€çŽ¢çµæã®æäœãšãã£ãææ³ã¯ãä»åŸãã¢ããŠã§ã¢ã§å€ã䜿ãããã§ãããããã®ææ³ã§ã¯ããŽã¡ãŒãã¥ã¢ã³ã(Virtumonde)ãããããã©ãŠã¶ãã«ããŒãªããžã§ã¯ã(BHO)ãšããŠInernet Explorerã«çµã¿èŸŒãŸãããããã¢ãããŠã£ã³ããŠã§åºåã衚瀺ãããããããŠãåœè£ ã¯ãªãã¯ãæ°Žå¢ããããŠã¢ããŠã§ã¢ã®äœè ã¯å²ããããšããŠããã®ã ã
åºåå ¥ããœãããŠã§ã¢ã®ææ³ããããåœè£ ã¢ã³ããŠã€ã«ã¹ããã°ã©ã ã®WinAntiVirusProã¯ãã€ã³ã¹ããŒã«ããã ãã§Webãã©ãŠã¶ã®ããŒã ããŒãžããã€ãžã£ãã¯ããé »ç¹ã«ãããã¢ããåºåã衚瀺ããããããã§æ°ã»ã³ãã®å©çãå ¥ã£ãŠããä»çµã¿ã§ããã
éèŠãªã®ã¯ãããšãèå©ã§ãã£ãŠãéãå€ããã°éé¡ã¯èšããããšããããšã ãæ°ããªãã«ãŠã§ã¢ã®åçãªå¢å ã¯ããã®ããžãã¹ã¢ãã«ãå©çãçãã§ããããšã®èšŒæ ã§ãããã
ã»æ°ããåœè£ ã¡ã«ããºã
ã·ãã¯ã«(Backdoor.Win32.Sinowal)ãŸãã¯ãMebrootããšããååã®ãã«ãŠã§ã¢ã®äŸã玹ä»ãããã¯MBR(ãã¹ã¿ãŒããŒãã¬ã³ãŒã)ãäžæžãããåœè£ æ©èœã䜿ã£ãŠWindows XPã®ã«ãŒãã«å ã«åžžé§ããããã®æ°ããåœè£ æè¡ã¯ããªã³ã©ã€ã³ãã³ãã³ã°çšã®è©æ¬ºæ©èœãé ãããã«äœ¿ãããã
MBRã«æžã蟌ã¿ãè¡ããã®ãšããŠãäžæã®ããŒãã»ã¯ã¿ãŠã€ã«ã¹ããããããã§äœ¿ãããŠããææ³ããªãã¥ãŒã¢ã«ãããã®ãšãããããã®æè¡ãåœè£ ã«äœ¿çšãããããªè åšãç»å Žããã®ã¯æéã®åé¡ãšG DATAã¯äºæ³ãããMBRã«ããŒã¿ãæžãèŸŒãææ³èªäœã¯ãæå®³ãªæ©èœã§ã¯ãªããVistaã§ã¯ãããã«å°é£ã«ãªã£ãŠã¯ãããããããã·ãã¯ã«ã®äºçš®ã®ç»å Žãæ¯èŒççæéã«å€ããçºèŠããããåæ§ã®ãã«ãŠã§ã¢ã®åºçŸã®å±éºæ§ã¯é«ããšãããã ããã
ã»äŸ¿ä¹è©æ¬º
å京äºèŒªã®ãããªäžå€§ã€ãã³ãã¯ãè©æ¬ºã°ã«ãŒãã«ã¯çµ¶å¥œã®ãã£ã³ã¹ãšãªããã¹ãã ã¡ãŒã«ããã£ãã·ã³ã°ããã«ãŠã§ã¢æ·»ä»ã¡ãŒã«ãªã©ãããããã®ã€ãã³ããå©çšããŠãã°ãæãããã®ã§ããããã®ãããªã€ãã³ãã«ã¯ãã€ãèŠæå¿ãèããªããã¡ã§ããããããã¹ãããŒã¯çã£ãŠããã®ã§ããã