Ê׿ÀÕË÷¡¢¼äµý¡¢ÒøÐÐľÂíÓÚÒ»ÌåµÄÐÂÐÍ×ÛºÏÐÍAndroid²¡¶¾Éî¶È·ÖÎö

°ä²¼¹¦·ò 2018-09-21

Ò»¡¢¼òÊö


GA»Æ½ð¼×ADLab½üÆÚ·¢ÏÖÒ»¿î¼¯ÀÕË÷¼ÓÃܲ¡¶¾¡¢¼äµýÈí¼þ¡¢ÒøÐÐľÂíÓÚÒ»ÌåµÄÐÂÐÍAndroid¶ñÒâ´úÂë,ÆäʵÏÖÁËÈç¼ÓÃÜÀÕË÷£¨Ransomware£©¡¢¼üÅ̼ͼ£¨keylogger£©¡¢Ô¶³Ì½Ó¼ûľÂí£¨RAT£©¡¢¶ÌÐÅÀ¹½Ø¡¢ºô½Ð×ªÒÆºÍËø¶¨ÆÁÄ»µÈ¶àÖÖÖ°ÄÜ¡£
¾ßÌå·ÖÎö¸Ã¶ñÒâ´úÂëºó·¢ÏÖ£¬¸Ã¶ñÒâ´úÂëбäÖֿɽٳÖÏÕЩº­¸ÇÈ«ÊÀ½ç¸÷´ó½ðÈÚ»ú¹¹µÄÊÖ»úAPP£¬×ÜÊýÓÐ300¶à¸ö£¬Éæ¼°Öйú¡¢ÃÀ¹ú¡¢Ó¢¹ú¡¢ÈÕ±¾¡¢ÖйúÏã¸Û¡¢·¨¹úµÈ40¶à¸ö¹ú¶ÈºÍµØÓò¡£¸Ã¶ñÒâ´úÂ뻹ӵÓÐÀÕË÷Èí¼þµÄÖ°ÄÜ£¬»áʹÓÃ256λ¶Ô³ÆÃÜÔ¿¶ÔÊܺ¦Óû§µÄÊÖ»úÎļþ½øÐмÓÃÜ´¦Ö㬲¢ÇÒÒÔ¡°.AnubisCrypt¡±×÷Ϊ¼ÓÃÜÎļþµÄÀ©´óÃû£¬Í¬Ê±»¹Î±ÔìÁËFBIÖÒ¸æ½çÃæÍ¨ÖªÊܺ¦Óû§ÒÔ±ÈÌØ±ÒµÄ·½Ê½Ö§¸¶·£½ð·½¿É¶ÔÎļþ½øÐнâÃÜ¡£Áí±í£¬Ëü»¹¿ÉÄܱ»ÓÃÓÚ½øÐÐÍøÂç¼äµý»î¶¯£¬ÀýÈ磺¼à¶½ÊÜϰȾÉ豸Ö÷´°¿Ú»î¶¯¡¢½øÐÐÆÁÄ»½ØÍ¼²¢·¢Ë͸ø¹¥»÷Õß¡¢Ê¹ÓÃÄÚÖÃÂó¿Ë·ç¼àÌýÊÜϰȾÉ豸ÖÜΧ»·¾³ÖеÄÉùÒôµÈµÈ¡£

¶þ¡¢¶ñÒâ´úÂë·¢ÏÖ

2018Äê8Ôµ×£¬GA»Æ½ð¼×ADLab¼à²âµ½Ò»¸öµ±ÔÂÐÂ×¢²áµÄÒì³£TwitterÕË»§£¬¸ÃÕË»§ÔÚTwitterÉϰ䲼ÁËһЩÀàËÆÓÃbase64±àÂëµÄÍÆÎÄ¡£Æä2018Äê8ÔÂ27ÈÕ°ä²¼ÁËÁ½ÌõËÆºõÆëȫһÑùµÄÍÆÎÄ£¬²¢ÇÒÔÚÎÒÃÇ·¢ÏÖµ±Ì죬ÓÖÂ½Ðø°ä²¼Á½Ìõ·ÖÆçµÄÍÆÎÄ£¨¼ûͼ1£©¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ1 ¿ÉÒÉTwitterÕË»§ÍÆÎÄ


ÎÒÃÇͨ¹ýbase64½âÂëÕâÐ©ÍÆÎĺó£¬ÒÀÈ»¿´²»µ½ÈκÎÓÐÒâ˼µÄÊý¾Ý¡£Òò¶ø£¬ÎÒÃÇͨ¹ý¸ÃTwitterÁ´½Ó¡°https://twitter.com/sHybzhzZWJgdbdj¡±À´×ö¹ØÁª·ÖÎö£¬²¢ÇÒ·¢ÏÖÁËһЩ¿ÉÒɵÄapkÎļþ£¬Í¨¹ý¶ÈÎöÈ·ÈϸÃapkÎļþΪAndroidƽ̨ÏÂÒ»¿î·çÏÕÐÔ¼«´óµÄ¶ñÒâAPP£¬²¢ÇÒĿǰ»¹´¦ÓÚ»îԾ״̬¡£Í¨¹ýÉî¿Ì·ÖÎöÎÒÃÇ·¢ÏÖ£¬¸Ã¶ñÒâAPP»áÏνӸÃTwitterÁ´½Ó¡°https://twitter.com/sHybzhzZWJgdbdj¡±»ñÈ¡ÍÆÎÄ£¬²¢½«Æä½âÃܳÉΪC&CµØÖ·£¬Æä½âÃÜËã·¨·ÂÕÕÁËbase64µÄ³ÉЧ£¬µ«²¢·ÇΪbase64Ëã·¨£¬ÒԴ˹ƻó·¢ÏÖÒì³£ÍÆÎĵķÖÎöÈËÔ±¡£½âÃܺóµÄ×Ö·û´®Èç±í1Ëùʾ£º

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

±í1 ÍÆÎĵĽâÃÜ


Ò»Ïòµ½9ÔÂ2ÈÕ£¬ºÚ¿Íɾ³ýÁËÆäÖеÄ3ÌõÍÆÎÄ£¬Ö»ÁôÏÂ×î½üµÄÒ»ÌõÍÆÎÄ£¨¼ûͼ2£©¡£×¢Ã÷ÀûÓøöñÒâ´úÂë½øÐеÄÍøÂç¹¥»÷»î¶¯ÔÚ½øÐС£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ2 ¹¥»÷ÕßµÄÍÆÎÄֻʣÏÂÒ»ÌõC&C


ÎÒÃǰÑÎȵ½£¬¸ÃTwitterÕË»§Ê¹ÓÃÁ˱»³ÆÎª¡°È«ÊÀ½ç×î´óµÄÆ­×Ó¡±µÄ¶íÂÞ˹½ðÈÚÚ¿Æ­·¸Sergei MavrodiµÄÕÕÆ¬×÷ΪͼÏñ£¬´§Ä¦¹¥»÷ÕߺܿÉÄÜÊÇSergei MavrodiµÄ·ÛË¿¡£Sergei Mavrodi£¨1955Äê8ÔÂ11ÈÕ- 2018Äê3ÔÂ26ÈÕ£©ÉúÓÚĪ˹¿Æ£¬1989Äê³ÉÁ¢ÁËMMM¹«Ë¾£¬MMMÐû³ÆÒÔ·ÛËéÊÀ½ç²»¹«ÕýµÄ½ðÈÚϵͳΪָ±ê£¬ÏÖʵÉÏÊÇÍæÁËÒ»¸ö¡°¹«¹²¼¯×Ê¡±µÄÅÓÊÏȦÌ×ÓÎÏ·¡£¹úÄÚµÄe×ⱦ¡¢Ç®±¦ÍøµÈÒ²¶¼±»È϶¨ÊÇÅÓÊÏȦÌס£ÔÚSergei MavrodiºÍÆäMMM¹«Ë¾½«¶íÂÞ˹ÏÕЩÄÜÆ­µÄÈ˶¼Æ­ÍêÁËÖ®ºó£¬2015ÄêSergei Mavrodi½«ËûµÄÓÎÏ·´øÈëÁËÖйú£¬²¢ÇÒΪÁ˶ã±Ü¼à¹Ü£¬Sergei MavrodiÍŶӡ°´´Ðµء±½«±ÈÌØ±ÒÖ§¸¶ÒýÈëÁËÆäÖ§¸¶ÏµÍ³£¬¼¤ÀøÍ¶×ÊÕßʹÓñÈÌØ±Ò½øÐÐתÕËÂòÂô£¬²¢Îª´ËרÃÅÔì×÷Á˱ÈÌØ±ÒɨäÊÓÆµ£¬¼ûͼ3¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ3 Sergei MavrodiÍŶÓÔì×÷µÄ±ÈÌØ±ÒɨäÊÓÆµ


Èý¡¢Ñù±¾ÑÝ»¯


ƾ¾ÝÑù±¾¹ØÁª·ÖÎö£¬ÎÒÃÇ·¢ÏָöñÒâ´úÂëÑù±¾ÎªAnubisµÄÒ»¸öбäÖÖ¡£


2017Äê1Ô£¬°²È«¹«Ë¾Dr.WebÔø·¢³öÖÒ¸æ£¬ÒøÐÐľÂíBankBotµÄÔ´´úÂë±»¹«¿ª°ä²¼ÔÚÁËÒ»¸öÂÛ̳ÉÏ¡£Ëæºó£¬ÓÐÍøÂç·¸×ï·Ö×ÓÀûÓøÃÔ´Âë´´½¨Á˰²×¿ÒøÐÐľÂíAndroid.BankBot.149.origin£¬±ËʱµÄBankBot»¹½öÊÇÒ»¸öµäÐ͵ÄÒøÐÐľÂí£¬¿ÉÄÜÀûÓÃÍøÂç´¹µö¶Ô»°¿òÇÔȡϰȾÓû§ÊÖ»úÒøÐеÄÃô¸ÐÐÅÏ¢£¬ÈçÒøÐоßÌåÐÅÏ¢ºÍÐÅÓþ¿¨Êý¾Ý¡£


2018Äê3ÔÂ5ÈÕ£¬PhishLabs·¢ÏÖÁËÒøÐÐľÂíBankBotµÄÒ»¸öбäÖÖ£¬²¢µÚÒ»´Î½«Æä¶¨ÃûΪAnubis£¬AnubisͬÑù»ùÓÚBankBotÔ´Â뿪·¢£¬²¢ÕûºÏÁ˶à¶à·ÖÆçÀàÐͶñÒâÈí¼þµÄÖ°ÄÜÓÚÒ»Éí¡£


2018Äê7Ô£¬IBM X-ForceµÄÒÆ¶¯¶ñÒâÈí¼þ×êÑÐÈËÔ±¹Û²ìµ½ÁË´óÁ¿µÄAndroid¶ñÒâÈí¼þÏÂÔØÆ÷±»ÉÏ´«µ½ÁËGoogle Play¡£ÕâЩ¶ñÒâÈí¼þÏÂÔØÆ÷»áÔÚÊÜϰȾÉ豸ÉÏ×°ÖÃAnubis¡£ÕâÅú×¢Ò»¸öÌØ¶¨µÄ¶ñÒâÈí¼þ·ÖÏúÉÌÒѾ­´ÓʹÓÃMarcherתÏòÁË·Ö·¢Anubis¡£


ËÄ¡¢Ö°ÄܽéÉÜ


AnubisбäÖÖÕûºÏÁ˶àÖÖÀàÐͶñÒâÈí¼þÖ°ÄÜÓÚÒ»Éí£¬Í¼4ÊÇÆäÖ°ÄÜʾÒâͼ£¬¸Ã±äÖÖÔ̺¬ÀÕË÷Èí¼þÖ°ÄÜ¡¢¼üÅ̼ͼְÄÜ¡¢RATÖ°ÄÜ¡¢¶ÌÐÅÀ¹½ØÖ°Äܺͺô½Ð×ªÒÆÖ°ÄܵÈ¡£Í¬Ê±£¬Anubis»¹Äܹ»ÇÔÈ¡Êܺ¦Óû§µÄͨѶ¼¡¢¶ÌÐŵÈÃô¸ÐÐÅÏ¢¡£´Ë±í£¬¹¥»÷Õß»¹Äܹ»Ô¶³Ì½ÚÔìÊÜϰȾÉ豸£¬ÀûÓÃÊÜϰȾÉ豸Ïò¹¥»÷ÕßÖ¸¶¨µÄÖ¸±ê·¢ËÍÌØ¶¨¶ÌÐÅ¡£²»ÄÑÉèÏ룬¹¥»÷Õ߯ëÈ«Äܹ»¶ÔÊܺ¦ÕßµÄÉç½»ÍøÂç½øÐÐÈ«·½Î»ÉøÈëºÍڲƭ¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ4 AnubisÖ°ÄÜʾÒâͼ


ͼ5ÊÇÎÒÃÇץȡµ½µÄ¸Ã¶ñÒâ´úÂë±äÖÖºÍC&C·þÎñÆ÷ͨѶµÄÊý¾Ý°ü£¬´ÓͼÖÐÄܹ»¿´³ö£¬¸Ã±äÖÖʹÓÃhttpºÍ̸ºÍC&C·þÎñÆ÷½øÐÐͨѶ£¬Í¨Ñ¶Êý¾Ý±»¼ÓÃÜ´¦Öúó½øÐд«Êä¡£ÎÒÃÇÀûÓ÷ÖÎö³öµÄ½âÃÜËã·¨¶ÔͼÖмÓÃÜÊý¾Ý½øÐнâÃÜ£¬±ðÀëµÃµ½¡°aa5193bdfeb39625:(CHINA  MOBILE):4.4.4:cn::AOSP on HammerHead (aosp_hammerhead):V::0:0:¡±ºÍ¡°|OK|¡±£¬ºÜÏÔÈ»ÊÇÒ»¸öľ¶ÙʱÏß°ü¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ5 C&CÉÏÏß°ü


C&CºÅÁîºÍÆä¸½¼ÓÊý¾ÝѡȡͬÑùµÄ¼ÓÃܹ滮´«Ê䣬ÎÒÃǽ«¸Ã¶ñÒâ´úÂë±äÖÖÔ̺¬µÄÖØÒªC&CºÅÁî¼°ÆäÔ¢Òâ×ۺϵ½Á˱í2£º

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

±í2 ÖØÒªµÄC&CºÅÁîºÍÖ°ÄÜ


Îå¡¢µäÐÍÐÐΪ·ÖÎö

5.1¡¢ÇÔÈ¡Êܺ¦ÕßÒøÐÐÕË»§Æ¾Ö¤


Anubis¼à¶½Ö¸±êÀûÓ÷¨Ê½Æô¶¯£¬¶øºóʹÓöÔÓ¦µÄ´¹µöÆÁÄ»¸²¸ÇµôºÏ·¨µÄÀûÓ÷¨Ê½ÒÔÇÔÈ¡Êܺ¦ÕßµÄÕË»§Æ¾Ö¤£¨¼ûͼ6ºÍͼ7£©£¬Í¬Ê±»áÀûÓöÌÐÅÀ¹½ØÖ°ÄÜÀ´À¹½ØÒøÐз¢Ë͸øÊܺ¦ÕßµÄËùÓжÌÐÅ£¨¼ûͼ8£©£¬ÕâÑù¹¥»÷Õß¾ÍÈÆ¹ýÁËÒøÐеÄË«²ãÉí·ÝÈÏÖ¤£¬³É¹¦¶ÔÊܺ¦ÕߵIJƸ»½øÐÐÏ´½Ù¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ6 ¼ÓÔØ´¹µöÒ³ÃæµÄ´úÂë


AnubisαÔìµÄ´¹µöÒ³Ãæ£º

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ7 αÔìµÄ´¹µöÒ³Ãæ


¶ñÒâ´úÂ뽫×ÔÉíÉèÖóÉĬÈ϶ÌÐÅÀûÓã¬À¹½ØÓû§¶ÌÐÅ£º

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ8 À¹½ØÓû§¶ÌÐÅ


¹¥»÷ÕߵĽٳÖÖ¸±êÏÕЩº­¸ÇÈ«ÊÀ½ç¸÷´ó½ðÈÚ»ú¹¹µÄÊÖ»úAPP£¬×ÜÊý´ïµ½ÁË300¶à¸ö£¬Éæ¼°Öйú¡¢ÃÀ¹ú¡¢Ó¢¹ú¡¢ÈÕ±¾¡¢ÖйúÏã¸Û¡¢·¨¹úµÈ40¶à¸ö¹ú¶ÈºÍµØÓò£¬²¿ÃÅÖ¸±ê½ðÈÚAPPµÄ°üÃû¼û±í3£º

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

±í3 ²¿ÃÅÖ¸±ê½ðÈÚAPP


5.2¡¢¼ÓÃÜÊÜϰȾÉ豸Îļþ£¬¶ÔÊܺ¦Õß½øÐÐÀÕË÷


·ÖÆçÓÚ³£¼ûµÄÖ»Êǵ¥Ò»²»ÈÝÊܺ¦Õß½Ó¼ûÊÖ»ú½çÃæµÄËø¶¨ÆÁÄ»µÄÀÕË÷Èí¼þ£¬Anubis¶ÔÊܺ¦Óû§µÄÎļþ½øÐÐÁ˼ÓÃÜ£¬¼ÓÃܵÄĿ¼Ô̺¬¡°/mnt¡±¡¢¡°/mount¡±¡¢¡°/sdcard¡±¡¢¡°/storage¡±ÒÔ¼°Óû§µÄÄÚº­´æ´¢¿¨Ä¿Â¼£¬¼ûͼ9¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ9 ¼ÓÃܵÄÎļþĿ¼


AnubisµÄÄ £¿éʹÓÃ256λ¶Ô³ÆÃÜÔ¿¶ÔÎļþ½øÐмÓÃÜ´¦Ö㬲¢ÒÔ¡°.AnubisCrypt¡±×÷Ϊ¼ÓÃÜÎļþµÄÀ©´óÃû£¬¼ûͼ10¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ10 ¼ÓÃܲÙ×÷


ÔÚʵÏÖÎļþ¼ÓÃܺó£¬Anubis»á¼ÓÔØÆäËø¶¨Ò³Ã棨ͼ11£©£¬ÌáÐÑÊܺ¦Óû§µÄÊÖ»úÒѾ­±»Ëø¶¨²¢ÇÒÎļþ±»¼ÓÃÜ£¬±ØÒªÊܺ¦Óû§Ö§¸¶±ÈÌØ±Ò·½¿É¶ÔÎļþ½øÐнâÃÜ¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ11 ¼ÓÔØËø¶¨Ò³Ãæ


Ëø¶¨Ò³ÃæhtmllockerÊÇ´ÓÔ¶³Ì·þÎñÆ÷¶¯Ì¬»ñÈ¡µ½µÄ²¢±£ÁôÔÚÆäÅäÖÃÎļþset.xmlÖУ¬Èçͼ12£¬ÎÒÃÇÄܹ»¿´µ½FBI WARNINGµÄÀÕË÷ÐÅÏ¢£º·î¸æÊܺ¦Óû§µÄÊÖ»ú±»Ëø¶¨£¬²¢ÇÒËùÓеÄÎļþ±»¼ÓÃÜ£¬Óû§µÄÊý¾Ý½«»á±»´«Ë͵½FBI£¬³ý·ÇÊܺ¦Óû§Ö§¸¶·£½ð·½¿É½âÃÜ¡£


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ12 ÅäÖÃÎļþÖеÄËø¶¨Ò³Ãæ´úÂë


ͼ13ÊÇhtmllocker´úÂë¼ÓÔØºóµÄÒ³Ãæ£¬¸ÃÒ³Ãæ×öµÄÏàµ±ÕæÇУ¬ÔÚ¡°FBI WARNING¡±ÎÄ×ÖÉÏ·½ÊÇ¡°FBI¡±µÄLOGO £¬Ï·½¼´ÊÇͼ12ÅäÖÃÎļþÖеÄÄÇÒ»¶ÎÀÕË÷ÐÅÏ¢¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ13 Ëø¶¨Ò³Ãæ


5.3¡¢ÀûÓÃÉ豸²¦ºÅÀûÓÃÖ´ÐÐUSSDºÅÁî


USSDΪGSMϵͳËùʹÓõÄÒ»ÖÖͨѶºÍ̸£¬Óû§Äܹ»Í¨¹ýÊÖ»ú²¦ºÅ·¨Ê½ÊäÈëÌØ¶¨µÄÖ¸Áî»ñµÃϵͳ·þÎñÉÌÌṩµÄ·þÎñ£¬ºÃ±È²éÎÊÔ¤¸¶¿¨Óà¶îµÈ£¬Ò²Äܹ»ÓÃÓÚ²éÎÊÊÖ»úÄÚ²¿ÐÅÏ¢£¬Èç¡°*#06#¡±Äܹ»²éÎÊÊÖ»úµÄIMEIÂë¡£Ò²Óв¿°Ý±ð»ú³§ÉÌʹÓÃ×Ô½ç˵µÄUSSDÖ¸ÁîµÐÊÖ»ú×öÌØÊâµÄÉ趨»ò²Ù×÷£¬ÀýÈ罫ÊÖ»ú¸´Ô­Îª³ö³§ÉèÖ㬿ªÆôÊÖ»úµÄ¹¤³ÌģʽµÈ¡£


¸Ã±äÖÖÀûÓÃÊÜϰȾÉ豸µÄ²¦ºÅ·¨Ê½À´Ö´ÐÐÔ¶³Ì·þÎñÆ÷´«À´µÄÖ¸Á´Óͼ14ÖÐÎÒÃÇÄܹ»¿´µ½£¬¹¥»÷ÕßÊ×ÏÈ´ò¿ª²¦ºÅ·¨Ê½£¬¶øºóÊäÈë´ÓC&C»ñÈ¡µ½µÄ¶ñÒâÖ¸Á·ÖÆçµÄÖ¸Áî¶ÔÓ¦·ÖÆçµÄÖ°ÄÜ¡£²»Åųý¹¥»÷Õß¶ÔÊÜϰȾÉ豸¸´Ô­³ö³§Ä£Ê½»òÕß¶ñÒâÌåʽ»¯ÊÜϰȾÉ豸´æ´¢¿¨µÈ¿ÉÄÜÐÔ¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ14 ÀûÓÃÉ豸²¦ºÅÀûÓÃÖ´ÐÐUSSDºÅÁî


5.4¡¢ÉèÖúô½Ðת½Ó


ÉèÖÃÊÜϰȾÉ豸µÄºô½Ðת½ÓºÅÂëΪ¹¥»÷ÕßÔ¶³ÌÖ¸¶¨µÄÊÖ»úºÅÂ루¼ûͼ15£©¡£¹¥»÷ÕßÊ×ÏÈ´ò¿ªÊÜϰȾÉ豸µÄ²¦ºÅ·¨Ê½£¬¶øºóͨ¹ýÊäÈë¡°*21*ÊÖ»úºÅÂë#¡±¶ÔÊÜϰȾÉ豸ÉèÖúô½Ðת½Ó¡£ÕâÑù£¬¹¥»÷Õß¾ÍÄܹ»³É¹¦À¹½ØÊܺ¦Óû§µÄÊÖ»úÀ´µç£¬²¢ÇÒÄܹ»ÀûÓôËÖ°ÄܶÔÊܺ¦Óû§½øÐÐڲƭ¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ͼ15 ÉèÖúô½Ðת½Ó


Áù¡¢½¨Òé


½¨ÒéÓû§²»ÒªµÈÏеã»÷¶ÌÐÅÖеIJ»Ã÷Á´½Ó£¬²»Òª×°Öò»Ã÷ÆðÔ´µÄAPP¡£¶ÔÉêÇë¿ÉÒÉȨÏÞÓÈÆäÊǶÌÐŶÁд¡¢´òµç»°ÒÔ¼°±ØÒª¼¤»îÉ豸ÖÎÀíÆ÷µÄAPPÒª³ö¸ñ×¢Òâ£¬Éæ¼°µ½½ðÇ®µÄ²Ù×÷Òª¸ñ±íÉóÉ÷¡£Óöµ½²Ù×÷Òì³££¬¸Ãµ±ÊµÊ±Ê¹ÓÃɱ¶¾Èí¼þ²éɱ»òÕÒרÈË´¦Öá£Ä¿Ç°»¥ÁªÍøÉÏÒ²³äÒç×ÅÐÎÐÎÈÝÉ«µÄµÚÈý·½APPÏÂÔØÕ¾µã£¬ºÃ¶àÉõÖÁ³ÉÁ˶ñÒâÀûÓõÄÅú·¢¼¯É¢µØ¡£Óû§Ó¦³ö¸ñ×¢Òâ²»Ó¦µÈÏеÄÔÚһЩÏÂÔØÕ¾µãÏÂÔØAPP£¬¾¡Á¿´Ó¹ÙÍøÏÂÔØËùÐèAPPÀûÓã¬ÔÚ²»µÃ²»´ÓµÚÈý·½ÏÂÔØÕ¾µãÏÂÔØÈí¼þʱ£¬Òª¸ß¶Èά³Ö¾¯Ì裬µ±ÕæÕç±ð£¬Ô¤·ÀÎó϶ñÒâÀûÓ㬸ø×Ô¼ºÔì³É²»ÓÃÒªµÄÂé·³ºÍËðʧ¡£


²Î¿¼Á´½Ó£º
https://securityintelligence.com/anubis-strikes-again-mobile-malware-continues-to-plague-users-in-official-app-stores/

https://blogs.quickheal.com/android-malware-combines-banking-trojan-keylogger-ransomware-one-package/