[º¸¾È´º½º ±èÁ¤¿Ï] ¾Èö¼ö¿¬±¸¼Ò(´ëÇ¥ ±èÈ«¼±)´Â 4ÀÏ ¿ÀÀü 10½Ã¿Í ¿ÀÈÄ 6½Ã 30ºÐ¿¡ °¢°¢ 29°³, 40°³ À¥»çÀÌÆ®¸¦ ´ë»óÀ¸·Î ¹ß»ýÇÑ 2Â÷ °ø°ÝÀÌ ¸ðµÎ Å« ÇÇÇØ°¡ ¾ø´Â °ÍÀ¸·Î ÃßÁ¤Çß´Ù. ÇÏÁö¸¸ ÀÌÈÄ Àç¹ß °¡´É¼ºÀÌ ÀÖÀ¸¹Ç·Î ¹«·á Àü¿ë¹é½Å ¼³Ä¡ µîÀ» ÅëÇØ ¡®Á»ºñPC¡¯ÀÇ ¼ö¸¦ ÁÙÀÌ´Â °ÍÀÌ °ü°ÇÀ̶ó°í ¹àÇû´Ù.
¶ÇÇÑ ¾Èö¼ö¿¬±¸¼Ò´Â ±¹°¡Á¤º¸¿ø, ¹æ¼ÛÅë½ÅÀ§¿øȸ, Çѱ¹ÀÎÅͳÝÁøÈï¿ø(KISA)°ú °øµ¿À¸·Î ºÐ¼®ÇÑ °á°ú, DDoS °ø°ÝÀ» À¯¹ßÇÏ´Â ¾Ç¼ºÄڵ尡 ƯÁ¤ Á¶°Ç ÇÏ¿¡¼ ÇÏµå µð½ºÅ©¿Í ÆÄÀÏÀ» ¼Õ»ó½ÃŲ´Ù°í ¹àÇû´Ù. ÀÌ·± Áõ»óÀº 3°¡Áö Á¶°Ç ÇÏ¿¡¼ ¹ß»ýÇÑ´Ù.
¿ì¼± ¾Ç¼ºÄڵ尡 »ý¼ºÇÏ´Â noise03.dat ÆÄÀÏÀÇ ½Ã°¢°ú PC ½Ã½ºÅÛÀÇ ½Ã°¢À» ºñ±³ÇØ noise03.dat ÆÄÀÏÀÇ ½Ã°¢º¸´Ù PC ½Ã½ºÅÛÀÇ ½Ã°¢ÀÌ °ú°ÅÀÎ °æ¿ì¿¡ ¹ß»ýÇÑ´Ù. ¶ÇÇÑ noise03.dat ÆÄÀÏÀÌ »ý¼ºµÆ´Ù »èÁ¦µÈ °æ¿ì¿Í noise03.dat ÆÄÀÏ¿¡ ¼³Á¤µÈ °¨¿° ³¯Â¥+ƯÁ¤ÀÏ(4ÀÏ È¤Àº 7ÀÏ)ÀÌ Áö³µÀ» °æ¿ì¿¡µµ ¹ß»ýÇÑ´Ù. °¡·É noise03.dat ÆÄÀÏÀÇ ³¯Â¥°¡ 3¿ù 4ÀÏÀÌ°í PC ³¯Â¥°¡ 3¿ù 8ÀÏ, 3¿ù 11ÀÏ ÀÌÈÄÀÏ °æ¿ìÀÌ´Ù. ƯÁ¤ÀÏÀº °ø°ÝÀÚ¿¡ ÀÇÇØ 0¿¡¼ 10±îÁö º¯°æ °¡´ÉÇϹǷΠnoise03.dat ÆÄÀÏÀÇ ³¯Â¥°¡ 3¿ù 4ÀÏÀÌ°í PC ³¯Â¥°¡ 3¿ù 14ÀÏ ÀÌÈÄÀÎ °æ¿ìµµ ÇØ´çµÈ´Ù.
ÆÄÀÏ ¼Õ»óÀÇ °æ¿ì A~Z±îÁö ¸ðµç µå¶óÀ̺긦 °Ë»öÇØ zip, c, h, cpp, java, jsp, aspx, asp, php, rar, gho, alz, pst, eml, kwp, gul, hna, hwp, pdf, pptx, ppt, mdb, xlsx, xls, wri, wpx, wpd, docm, docx, doc ÆÄÀϵéÀ» ¼Õ»ó½ÃŲ´Ù. µð½ºÅ© ¼Õ»óÀÇ °æ¿ì A~Z±îÁö ¸ðµç °íÁ¤ µå¶óÀ̺긦 °Ë»öÇÏ¿© ½ÃÀÛºÎÅÍ ÀÏÁ¤ Å©±â¸¸ÅÀ» 0À¸·Î ä¿ö µð½ºÅ©¸¦ ¼Õ»ó½ÃŲ´Ù. ÆÄÀÏ ¼Õ»óÀº À̵¿½Ä µð½ºÅ©µµ ´ë»óÀ̸ç, µð½ºÅ© ¼Õ»óÀº °íÁ¤ µð½ºÅ©¸¸ ÇØ´çµÈ´Ù.
¾Èö¼ö¿¬±¸¼Ò´Â PCÂ÷¿ø¿¡¼ DDoS °ø°Ý À¯¹ß ¾Ç¼ºÄڵ带 Áø´Ü/Ä¡·áÇÒ ¼ö ÀÖ´Â ±ä±Þ Àü¿ë¹é½Å(http://www.ahnlab.com/kr/site/download/vacc/downFile.do?file_name=v3removaltool.exe)À» ¹èÆ÷ ÁßÀ̸ç, Àü¿ë¹é½Å ´Ù¿î·Îµå ¼ö´Â 4ÀÏ ¿ÀÈÄ 6½Ã ÇöÀç 25¸¸¿© °ÇÀÌ´Ù. °³ÀÎ¿ë ¹«·á¹é½Å ¡®V3 ¶óÀÌÆ®(www.V3Lite.com)¡¯¸¦ ºñ·ÔÇØ ¡®V3 365 Ŭ¸®´Ð(v3clinic.ahnlab.com/v365/nbMain.ahn)¡¯, ¡®V3 Internet Security 8.0¡¯ µîÀ¸·Îµµ Áø´Ü¡¤Ä¡·á ±â´ÉÀ» Á¦°øÇÑ´Ù. ¶ÇÇÑ ¼¹ö Â÷¿ø¿¡¼ DDoS °ø°ÝÀ» ¸·´Â ³×Æ®¿öÅ© º¸¾È ÀåºñÀÎ Æ®·¯½º°¡µå DPX, Æ®·¯½º°¡µå Á¦Ç°±ºÀ» Á¦°ø ÁßÀÌ´Ù.
ÇÑÆí ¾Èö¼ö¿¬±¸¼Ò´Â ±¹Á¤¿ø, ¹æÅëÀ§, KISA µî°ú ±ä¹ÐÇÑ ÇùÁ¶¿Í Á¤º¸ °øÀ¯·Î ÇÇÇظ¦ ÃÖ¼ÒÈÇßÀ¸¸ç, ÇöÀç±îÁö V3Á¦Ç°±ºÀÌ Áø´ÜÇÑ Áø´Ü¸íÀº ´ÙÀ½°ú °°´Ù.
<3¿ù 4ÀÏ ¿ÀÀü 10½Ã µðµµ½º °ø°Ý À¯¹ß ¾Ç¼ºÄÚµå ÆÄÀϸí°ú V3Á¦Ç°±ºÀÇ Áø´Ü¸í>
setup_filecity.exe : Win-Trojan/Ddosagent.20480
mdomsvc.dll : Win-Trojan/Ddosagent.71008
ntgg55.dll : Win-Trojan/Ddosagent.126976
rtdrvupr.exe : Win-Trojan/Ddosagent.16384
ssaxsvc.dll : Win-Trojan/Ddosagent.46416
wricsvc.dll : Win-Trojan/Ddosagent.42320
mdomsvc.dll : Win-Trojan/Ddosagent.71008
ntgg55.dll : Win-Trojan/Ddosagent.126976
rtdrvupr.exe : Win-Trojan/Ddosagent.16384
ssaxsvc.dll : Win-Trojan/Ddosagent.46416
wricsvc.dll : Win-Trojan/Ddosagent.42320
<3¿ù 4ÀÏ ¿ÀÀü 6½Ã 30ºÐ µðµµ½º °ø°Ý À¯¹ß ¾Ç¼ºÄÚµå ÆÄÀϸí°ú V3Á¦Ç°±ºÀÇ Áø´Ü¸í>
ntcm63.dll : Win-Trojan/Agent.131072.WL
SBUpdate.exe : Win-Trojan/Agent.11776.VJ
ntds50.dll : Win-Trojan/Agent.118784.AAU
watcsvc.dll : Win-Trojan/Agent.40960.BOH
soetsvc.dll : Win-Trojan/Agent.46432.D
mopxsvc.dll : Win-Trojan/Agent.71008
SBUpdate.exe : Win-Trojan/Npkon.10240
[±èÁ¤¿Ï ±âÀÚ(boan3@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>