ãã¬ã³ããã€ã¯ãã¯ã2011幎2æåºŠã®ã€ã³ã¿ãŒãããè åšãã³ã¹ãªãŒã¬ããŒããçºè¡šããã2011幎1æããããã¬ã³ããã€ã¯ãã®ã¯ã©ãŠãåã»ãã¥ãªãã£åºç€ãTrend Micro Smart Protection Networkãã®ã¹ããŒããã£ãŒãããã¯ã«ããåéã»éèšãããè åšã®æ€åºæ°ã®ã©ã³ãã³ã°ãåæã«çºè¡šãããããã«ãªã£ãã
2æã®è åšåŸå
2æã®æ¥æ¬åœå
ã«ãããææè¢«å®³å ±åã«ã¯ã2äœã«ãTROJ_FAKEAV(ãã§ã€ã¯ãšã€ãã€)ããå
¥ã£ããããã¯ããSystem Toolããšããååã®åœã»ãã¥ãªãã£å¯Ÿçãœããã§ãããæ¹ãããããæ£èŠã®Webãµã€ããé²èЧããããšã§ææããäºäŸã確èªãããŠãããSystem Toolã«ææãããšããŸãã¯å£çŽã倿Žããå
šç»é¢ã«åœã®èŠåãåºçŸããã(å³1)ã
![]() |
å³1 ãã¹ãã€ãŠã§ã¢ã«ææããããšåœã®èŠåã衚瀺(ãã³ã¹ãªãŒã¬ããŒããã) |
ãŸãã¯ãããããŠãŠãŒã¶ã®ææå¿ãç œãããããŠãåœã®ã¹ãã£ã³ãè¡ãããŠã€ã«ã¹ãæ€åºããããšåœã®å ±åããã(å³2)ã
![]() |
å³2 åœã®ã¹ãã£ã³ãåºçŸããçµæã¯ãã¹ãŠåœç©ã§ãã(ãã³ã¹ãªãŒã¬ããŒããã) |
åœã»ãã¥ãªãã£å¯Ÿçãœããã®ç®çã¯ãã·ã¹ãã ã®ä¿®åŸ©ã«ã¯æ£èŠçãå¿ èŠãšããŠãééãå人æ å ±ãæŸåããããšã«ããã
ãã¬ã³ããã€ã¯ãã§ã¯ãééãçãåŸåãé«ãŸã£ãŠããçŸåšã«ãããŠãééã«çŽçµããæ»æãšããŠãŸããŸãå¢å ãããšã泚æåèµ·ãããŠãããã©ã³ãã³ã°ã§æ³šæãããã®ã¯ãåœå
ã§7äœãäžçã§6äœã«å
¥ã£ããTROJ_SPYEYE.SMEP(ã¹ãã€ã¢ã€)ãã§ãããããã¯ãã€ã³ã¿ãŒããããã³ãã³ã°ã®å£åº§æ
å ±ãçããããã§ãããSpy Eyeãé¢é£ã®äºçš®ã§ã2æã«æ°ãã«æ€ç¥ããããã®ã ããããã®ããããæãããŒã«ãããã¯ãããäžã§å£²è²·ãããŠãããäºçš®ãæ°ããªæ»æç®æšãæ¡å€§ããå¯èœæ§ãããã
åœå ã§åéã»éèšãããã©ã³ãã³ã°
æ¥æ¬ã§ã¯ã1æã«åŒãç¶ããã¡ã€ã«å ±æãœããã§æ¡æ£ããã¢ã³ãã£ããŒãªã©ãå€ãã©ã³ã¯ã€ã³ããŠããããã¡ã€ã«å ±æãœããã§æµåºããæ å ±ã¯æ±ºããŠåé€ã§ããªããå³ã«ãã¡ã€ã«å ±æãœããã®äœ¿çšãããªãããšããæã广çãªå¯Ÿçãšãªãã
衚1 äžæ£ããã°ã©ã æ€åºæ°ã©ã³ãã³ã°(æ¥æ¬åœå [2011幎2æåºŠ])
| é äœ | æ€åºå | éç§° | çš®å¥ | æ€åºæ° | å æé äœ |
|---|---|---|---|---|---|
| 1äœ | WORM_DOWNAD.AD | ããŠã³ã¢ã | ã¯ãŒã | 4,570å° | 2äœ |
| 2äœ | CRCK_KEYGEN | ããŒã²ã³ | ã¯ã©ããã³ã°ããŒã« | 3,273å° | 3äœ |
| 3äœ | MAL_DLDER | ãã£ããŒã㌠| ãã®ä» | 1,478å° | â |
| 4äœ | HKTL_KEYGEN | ããŒã²ã³ | ã¯ã©ããã³ã°ããŒã« | 1,450å° | 6äœ |
| 5äœ | WORM_ANTINNY.AI | ã¢ã³ãã£ã㌠| ã¯ãŒã | 1,377å° | 4äœ |
| 6äœ | PE_PARITE.A | ããªãã | ãã¡ã€ã«ææå | 1,347å° | 8äœ |
| 7äœ | TROJ_SPYEYE.SMEP | ã¹ãã€ã¢ã€ | ããã€ã®æšéЬ | 1,269å° | NEW |
| 8äœ | WORM_ANTINNY.JB | ã¢ã³ãã£ã㌠| ã¯ãŒã | 1,149å° | 7äœ |
| 9äœ | MAL_OLGM-41 | ãªãŒãšã«ãžãŒãšã | ãã®ä» | 1,142å° | â |
| 10äœ | TROJ_DLOADR.KDS | ãã£ããŒã㌠| ããã€ã®æšéЬ | 1,076å° | NEW |
äžçã§åéã»éèšãããã©ã³ãã³ã°
3äœã«å
¥ã£ããWORM_KELIHOS.SM(ã±ãªãã¹)ãã¯ãæ°å¹Žã®æšæ¶ãè£
ãã°ãªãŒãã£ã³ã°ã«ãŒããä»ããææããã
![]() |
å³4 WORM_KELIHOSãéãã¡ãŒã«ããªã³ã¯ãã¯ãªãã¯ãããšããŠã€ã«ã¹ãããŠã³ããŒãããã(ãã³ã¹ãªãŒã¬ããŒããã) |
ä»¶åã¯ãHappy2011!ãããI made an Ecard for U!ããªã©ã䜿ãããéä¿¡è
(From)ã¯ååãªã¹ããæé¢ã¯åè£ãªã¹ãã®äžããéžæãããã2æã«ãªããæ€åºæ°ãæ¥å¢ããããŸãã5äœã®ãTSPY_ONLINEG.MCS(ãªã³ã©ã€ã³ãžãŒ)ãã¯hostsãã¡ã€ã«ãæžãæããããšã§ç¹å®ã®éè¡ãµã€ããžã¢ã¯ã»ã¹ããéã«äžæ£ãªãµã€ããžèªå°ããã6äœã®ãTROJ_SPYEYE.SMEPãã¯ãã€ã³ã¿ãŒããããã³ãã³ã°ãçããSpy Eyeãã®æ°ããäºçš®ã§ããããã®ããã«ãã€ã³ã¿ãŒããããã³ãã³ã°ã®æ
å ±ãçã(ã€ãŸãã¯ééç®ç)ãŠã€ã«ã¹ãå€ãæ€åºãããŠããã
衚2 äžæ£ããã°ã©ã æ€åºæ°ã©ã³ãã³ã°(å šäžç[2011幎2æåºŠ])
| é äœ | æ€åºå | éç§° | çš®å¥ | æ€åºæ° | å æé äœ |
|---|---|---|---|---|---|
| 1äœ | WORM_DOWNAD.AD | ããŠã³ã¢ã | ã¯ãŒã | 133,681å° | 1äœ |
| 2äœ | CRCK_KEYGEN | ããŒã²ã³ | ã¯ã©ããã³ã°ããŒã« | 35,838å° | 2äœ |
| 3äœ | WORM_KELIHOS.SM | ã±ãªãã¹ | ã¯ãŒã | 20,914å° | åå€ |
| 4äœ | HKTL_KEYGEN | ããŒã²ã³ | ã¯ã©ããã³ã°ããŒã« | 18,603å° | 4äœ |
| 5äœ | TSPY_ONLINEG.MCS | ãªã³ã©ã€ã³ãžãŒ | ã¹ãã€ãŠã§ã¢ | 17,451å° | 3äœ |
| 6äœ | TROJ_SPYEYE.SMEP | ã¹ãã€ã¢ã€ | ããã€ã®æšéЬ | 12,629å° | NEW |
| 7äœ | PE_SALITY.RL | ãµãªã㣠| ãã¡ã€ã«ææå | 11,542å° | 10äœ |
| 8äœ | ADW_HOTBAR | ãããã㌠| ã¢ããŠã§ã¢ | 10,150å° | åå€ |
| 9äœ | ADW_ONESTEP | ã¯ã³ã¹ããã | ã¢ããŠã§ã¢ | 9,439å° | åå€ |
| 10äœ | WORM_FLYSTUDI.B | ãã©ã€ã¹ãã¥ãŒã㣠| ã¯ãŒã | 8,905å° | 5äœ |
æ¥æ¬åœå ã«ãããææè¢«å®³å ±å
2æã®äžæ£ããã°ã©ã ææè¢«å®³ã®ç·å ±åæ°ã¯863ä»¶ã§ã1æã®715ä»¶ããå¢å ããŠãããã©ã³ãã³ã°ã®äžäœã¯ãã€ãéãã§ãããã2æã¯ããŠã³ããŒããŒã®ã©ã³ã¯ã€ã³ã«æ³šæãããã5äœã®ãJAVA_DLOADR(ãã£ããŒããŒ)ãã¯ãWebãµã€ãã«æ¥ç¶ããŠã€ã«ã¹ãåæã«ããŠã³ããŒããããããŠã³ããŒãããããŠã€ã«ã¹ã«ãããããŸããŸãªè
åšã®å±éºæ§ãããããããã察çãšããŠã¯ãWebã¬ãã¥ããŒã·ã§ã³ã§ãWebãµã€ãã®ä¿¡é Œæ§ãäºåã«ç¢ºèªãããªã©ã广çã§ããã
衚3 äžæ£ããã°ã©ã ææè¢«å®³å ±åæ°ã©ã³ãã³ã°(æ¥æ¬åœå [2011幎2æåºŠ])
| é äœ | æ€åºå | éç§° | çš®å¥ | æ€åºæ° | å æé äœ |
|---|---|---|---|---|---|
| 1äœ | WORM_DOWNAD | ããŠã³ã¢ã | ã¯ãŒã | 35ä»¶ | 1äœ |
| 2äœ | MAL_OTORUN | ãªãŒãã©ã³ | ãã®ä» | 16ä»¶ | 2äœ |
| 2äœ | TROJ_FAKEAV | ãã§ã€ã¯ãšã€ã〠| ããã€ã®æšéЬ | d>16ä»¶ | 6äœ |
| 4äœ | MAL_OLGM-41 | ãªãŒãšã«ãžãŒãšã | ãã®ä» | 12ä»¶ | 4äœ |
| 5äœ | BKDR_AGENT | ãšãŒãžã§ã³ã | ããã¯ã㢠| 11ä»¶ | 3äœ |
| 5äœ | JAVA_DLOADR | ãã£ããŒã㌠| ãã®ä» | 11ä»¶ | åå€ |
ã³ã³ãã¥ãŒã¿ãŠã€ã«ã¹ã®æŽå²ïŒäžçåã®ãŠã€ã«ã¹
æäŸã®ã¬ããŒããšå ±ã«ãããŸã§ã®ãŠã€ã«ã¹ã®æŽå²ãæ¯ãè¿ã£ãŠã¿ããããŸãã¯ãäžçåã®ãŠã€ã«ã¹ã玹ä»ãããããšãã£ãŠãããªããã諞説ãååšãããããã§ã¯ã2ã€ã®ãŠã€ã«ã¹ã玹ä»ãããããŸãã¯1983幎ã®ãElk Coner(ãšã«ã¯ã³ããŒ)ãã§ããããã®ãŠã€ã«ã¹ã¯Apple IIäžã§æ€ç¥ããããŠã€ã«ã¹ã§ãããApple IIã¯ãçŸåšã®Macintosh以åã®ã³ã³ãã¥ãŒã¿ã§PCã®ã«ãŒããšãåŒã°ãããã·ã³ã ãElk Conerã¯ãåœæã®é«æ ¡çãäœæãããã®ã§ãå³5ã®ãããªã¡ãã»ãŒãžã衚瀺ããã
ãŸãã«æå¿«ç¯çãªãã®ã§ãå人ãããããããã«äœæããããããã²ãšã€ã¯1986幎ã®ãBrain(ãã¬ã€ã³)ãã§ããããã¡ããäžçåãšããã®ã¯ãIBM PCãšåŒã°ããä»ã®PCã®çŽç³»ã®ãã·ã³ã«ææãããŠã€ã«ã¹ãçç±ãšããããã ãBrainãäœæããã®ã¯ãããã¹ã¿ã³ã®Brainå åŒã§ãBrain Computer Service瀟ãçµå¶ããŠããããã®äŒç€Ÿã®ãœãããŠã§ã¢ãéæ³ã«ã³ããŒãããŠããããšã«æ¥ãç ®ãããäœæããããã®ã§ãããç»é¢ã«æ¬¡ã®ãããªã¡ãã»ãŒãžã衚瀺ãããã
Welcome to the Dungeon (c) 1986 Basit * Amjad (pvt) Ltd.
BRAIN COMPUTER SERVICES
730 NIZAM BLOCK ALLAMA IQBAL TOWN LAHORE-PAKISTAN
PHONE: 430791,443248,280530.
Beware of this VIRUS.... Contact us for vaccination...
äžæ£ã³ããŒã®äžæ¢ã蚎ããå 容ã§ãããäœæãé»è©±çªå·ãŸã§æžãããŠãããäžèª¬ã«ããã°ã10äžå°ãã®ãããããŒã«Brainã®ææãè¡ããããšã®ããšã ããããã®ãŠã€ã«ã¹ã«ãå ±éããã®ã¯ããããããŒãã£ã¹ã¯ãä»ããŠææãè¡ããããããŒãã»ã¯ã¿ã«ææããã¡ã¢ãªã«åžžé§ããæ°ãã«ãã£ã¹ã¯ãæ¿å ¥ãããšããã«ææããããããŠãããããã£ãšãéèŠãªéšåã§ããããç¹ã«ç Žå£æŽ»åãªã©ã¯è¡ããããããŸã§ãã¡ãã»ãŒãžã衚瀺ããããšã§ããŠã€ã«ã¹èªèº«ã®ååšãç¥ããããããšãç®çãšããŠããã
ãããçŸåšã®ãŠã€ã«ã¹ãšã¯å€§ããç°ãªããçŸåšã®ãŠã€ã«ã¹ã®å€ãã¯ãææããããšããé ããç Žå£ãçèŽæŽ»åãè¡ããåœæã¯ãã³ã³ãã¥ãŒã¿ãŠã€ã«ã¹ãšãã£ãŠããç¡å®³ãªãã®ã§ãå±ãªããã®ãšããæèãäœãã£ãããããŠãå®å®³ãåãŒããŠã€ã«ã¹ã®ç»å Žã¯ããã®åŸã«ãªãã®ã ã




