Home > Àüü±â»ç

iOS ´Ü¸» °¨¿° ÈÄ ±¤°í¼öÀÍ °¡·Îæ ¾Ç¼ºÄÚµå µîÀå

ÀÔ·Â : 2014-09-12 11:05
ÆäÀ̽ººÏ º¸³»±â Æ®À§ÅÍ º¸³»±â ³×À̹ö ¹êµå º¸³»±â Ä«Ä«¿À ½ºÅ丮 º¸³»±â ³×À̹ö ºí·Î±× º¸³»±â

75,000´ë iOS ´Ü¸» °¨¿° ÈÄ 2,200¸¸°³ ±¤°í¼öÀÍ °¡·Îä


[º¸¾È´º½º ¹Î¼¼¾Æ] ¾Û °³¹ßÀÚ ´ë½Å ÇØÄ¿¿¡°Ô ±¤°íºñ¸¦ º¸³»µµ·Ï ÇÏ´Â ¾Ç¼ºÄÚµå(iOS/AdThief)°¡ Å»¿ÁµÈ 75,000´ë iOS ´Ü¸»¿¡¼­ ¹ß°ßµÆ´Ù. ÀÌ´Â ¾Û È­¸é ÇÏ´Ü µî¿¡ ±¤°í °ÔÀç ½Ã ¾Û °³¹ßÀÚ¿¡°Ô ¼öÀÍÀÌ ¹ß»ýÇÏ´Â ÇÁ·Î¼¼½º¸¦ ÀÌ¿ëÇÑ °ÍÀÌ´Ù.


ÇØÄ¿´Â ±¤°í ¾÷ü¿¡ ¾Û °³¹ßÀÚ ¾ÆÀ̵𸦠Àü¼ÛÇÏ´Â ÇÔ¼ö¸¦ ÈÄÅ·ÇØ °³¹ßÀÚ ¾ÆÀ̵ð ´ë½Å ÀÚ½ÅÀÇ ¾ÆÀ̵ð·Î º¯°æÇÏ´Â ¹æ½ÄÀ¸·Î ¹üÇàÀ» ÀúÁú·¶´Ù. ÇöÀç±îÁö ±¤°í ¾÷ü´Â ÇØÄ¿ÀÇ ¾ÆÀ̵ð·Î 2,200¸¸°³ ±¤°í¿¡ ´ëÇÑ ºñ¿ëÀ» ÁöºÒÇÑ °ÍÀ¸·Î Æľǵǰí ÀÖ´Ù.


¡ã¾Ç¼ºÄڵ带 ÀÌ¿ëÇØ ±¤°í¼öÀÍÀ» °¡·Îä´Â °úÁ¤


ÇØÄ¿°¡ ±¤°í¼öÀÍÀ» °¡·Îä±â À§ÇØ Å¸°ÙÆÃÇÑ ±¤°í ¾÷ü(Adkit)´Â YouMi, Vpon, MobClick, Umeng, AdSage/MobiSage, MdotM, InMobi, Domob, AdWhirl, AdsMogo, Google Mobile, Ads SDK, AderMob, Weibo, MIX SDK and Poly SDKÀÌ¸ç ´ëºÎºÐ Áß±¹ ¾÷ü´Ù.


±¤°í ¼öÀÍÀ» °¡·Îä±â À§ÇØ Å¸±ê ´ë»óÀÌ µÈ 15°³ ±¤°í ¾÷ü´Â ´ÙÀ½°ú °°À¸¸ç ÈÄÅ·µÈ ¸ðµâ(Ŭ·¡½º ¸í µî)Àº Ç¥¸¦ ÂüÁ¶ÇÏ¸é µÈ´Ù.


¡ãŸ±ê ´ë»ó ±¤°í ¾÷ü


¡ãÈÄÅ·µÈ ¸ðµâ(Ŭ·¡½º ¸í µî)


VirusBulletinÀº ¾Ç¼ºÄÚµå ¼Ò½ºÄڵ忡¼­ ÇØÄ¿ÀÇ ÀÛ¾÷°æ·Î¸íÀ» ¹ß°ßÇßÀ¸¸ç, À̸¦ ÅëÇØ °³¹ßÀÚ À̸§ÀÌ Rover12421ÀÏ °ÍÀ¸·Î ÆÇ´ÜÇÏ°í, À̸¦ ÃßÀûÇÑ °á°ú ÇØÄ¿ÀÇ ºí·Î±×, À̸ÞÀÏ µîÀ» È®ÀÎÇß´Ù.


¡Ø ¹ß°ßµÈ ÀÛ¾÷ °æ·Î¸í : Users/Rover12421/Library/Developer/Xcode/DerivedData/SpAd-  krggjdyjwgdpkbqd/Build/Intermediates/SpAd.build/Release-iphoneos/SpAd.build/Objects-normal/  armv7/SpAd.o.


Rover12421 ÇØÄ¿¿¡°Ô ¹®ÀÇÇÑ °á°ú, ÇØ´ç ¼Ò½ºÄÚµå´Â spad iOS ÇÁ·ÎÁ§Æ® ÀÏȯÀ¸·Î °ú°Å¿¡ °³¹ßÇßÀ¸¸ç ÇöÀç´Â °ü·ÃµÅ ÀÖÁö ¾Ê´Ù°í ÀÀ´äÇÑ °ÍÀ¸·Î ¾Ë·ÁÁ³´Ù.


¾Ç¼ºÄÚµå´Â MSHookMessageEx¸¦ ÅëÇØ YouMi ¾÷üÀÇ Á¤»ó adViewWithContentSizeIdentifier:delegate: ÇÔ¼ö¸¦ ÈÄÅ·ÇÏ°í ÇØÄ¿°¡ Á¦ÀÛÇÑ logos_meta_method__undgoruped_YouMi(»ý·«) ÇÔ¼ö¸¦ È£ÃâÇß´Ù.


¡ãMSHookMessageEx¸¦ ÅëÇÔ ±¤°í °ü·Ã ÇÔ¼ö ÈÄÅ· ¸ðµâ


ÇØÄ¿°¡ Á¦ÀÛÇÑ ÇÔ¼ö¸¦ »ìÆ캸¸é, setAdUnitID:¸¦ ÀÚ½ÅÀÇ IDÀÎ a1521215ab55cd2·Î º¯°æÇØ ±¤°í¼öÀÍÀ» °¡·Îä´Â °ÍÀ» º¼ ¼ö ÀÖ´Ù.


¡ãÇØÄ¿°¡ Á¦ÀÛÇÑ Æ®À¨¿¡¼­ ¾ÆÀ̵𸦠º¯°æÇÏ´Â ÇÔ¼ö


º¸´Ù ÀÚ¼¼ÇÑ »çÇ×Àº Çѱ¹ÀÎÅͳÝÁøÈï¿ø ÀÎÅͳÝħÇØ´ëÀÀ¼¾Åͳª ¾Æ·¡ÀÇ Ãâó¸¦ Âü°íÇÏ¸é µÈ´Ù.


[Ãâó]
https://www.virusbtn.com/pdf/magazine/2014/vb201408-AdThief.pdf

[¹Î¼¼¾Æ ±âÀÚ(boan5@boannews.com)]


<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>

  •  
  • 1
  • ÆäÀ̽ººÏ º¸³»±â Æ®À§ÅÍ º¸³»±â ³×À̹ö ¹êµå º¸³»±â Ä«Ä«¿À ½ºÅ丮 º¸³»±â ³×À̹ö ºí·Î±× º¸³»±â

  • ¡°
  •  SNS¿¡¼­µµ º¸¾È´º½º¸¦ ¹Þ¾Æº¸¼¼¿ä!! 
  • ¡±
¾Æ½ºÆ®·Ð½ÃÅ¥¸®Æ¼ ÆÄ¿öºñÁî 2023³â2¿ù23ÀÏ ½ÃÀÛ ³Ý¾Øµå ÆÄ¿öºñÁî ÁøÇà 2020³â1¿ù8ÀÏ ½ÃÀÛ~2021³â 1¿ù8ÀϱîÁö À§Áîµð¿£¿¡½º 2018
¼³¹®Á¶»ç
³»³â ȸ»ç¿¡ ²À µµÀÔÇÏ°í ½ÍÀº º¸¾È ¼Ö·ç¼Ç ¶Ç´Â Ç÷§ÆûÀº ¹«¾ùÀΰ¡¿ä?
XDR
EDR
AI º¸¾È
Á¦·ÎÆ®·¯½ºÆ®
°ø±Þ¸Á º¸¾È ü°è(SBOM)
Ŭ¶ó¿ìµå º¸¾È ¼Ö·ç¼Ç
±âŸ(´ñ±Û·Î)