¿Íµ¤¤Î¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¤òµ¶¤ë¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ë¥µ¥¤¥Ð¡¼¹¶·â¤ËÃí°Õ
Trellix¤Ï5·î23Æü(Êƹñ»þ´Ö)¡¢¡ÖA Catalog of Hazardous AV Sites - A Tale of Malware Hosting¡×¤Ë¤ª¤¤¤Æ¡¢¿Íµ¤¤Î¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤Ëµ¶Áõ¤·¤Æ¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ë¥µ¥¤¥Ð¡¼¹¶·â¤Î¥¥ã¥ó¥Ú¡¼¥ó¤Ë¤Ä¤¤¤Æ¡¢Ãí°Õ¤ò´µ¯¤·¤¿¡£Æ±¼Ò¤ÎÀ½ÉʤΥХ¤¥Ê¥ê¤Ëµ¶Áõ¤·¤¿¥Þ¥ë¥¦¥§¥¢¤âȯ¸«¤·¤¿¤È¤¤¤¦¡£
A Catalog of Hazardous AV Sites - A Tale of Malware Hosting
¡û¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤Ëµ¶Áõ¤·¤¿¥Þ¥ë¥¦¥§¥¢¤ò¸¡½Ð
Trellix¤¬È¯¸«¤·¤¿¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ëWeb¥µ¥¤¥È¤Ï¼¡¤Î¤È¤ª¤ê¡£
avast-securedownload[.]com
bitdefender-app[.]com
malwarebytes[.]pro
¤³¤ì¤é¤Ï¥»¥¥å¥ê¥Æ¥£´ë¶È¡ÖAvast Software(avast.com)¡×¡¢¡ÖBitdefender(bitdefender.com)¡×¡¢¡ÖMalwarebytes(malwarebytes.com)¡×¤ÎWeb¥µ¥¤¥È¤ò¥³¥Ô¡¼¤·¤¿µ¶¥µ¥¤¥È¤Ç¡¢¤½¤ì¤¾¤ì°Û¤Ê¤ë¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ë¤È¤µ¤ì¤ë¡£
avast-securedownload[.]com¤Î²èÌÌ¡¡ °úÍÑ¡§Trellix
Trellix¤¬³Îǧ¤·¤¿³Æµ¶¥µ¥¤¥È¤«¤éÇÛÉÛ¤µ¤ì¤¿¥Þ¥ë¥¦¥§¥¢¤Ï¼¡¤Î¤È¤ª¤ê¡£
¡ûavast-securedownload[.]com
Avast Software(avast.com)¤Ëµ¶Áõ¤·¤¿¡Öavast-securedownload[.]com¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëAndroid¥Ñ¥Ã¥±¡¼¥¸¡ÖAvast.apk¡×¤¬ÇÛÉÛ¤µ¤ì¤ë¡£¤³¤Î¥Ñ¥Ã¥±¡¼¥¸¤ò¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤È¡¢¼¡¤Îµ¡Ç½¤ò»ý¤Ä¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖSpynote¡×¤Ë´¶À÷¤¹¤ë¡£
¥Ñ¥Ã¥±¡¼¥¸¤Î¥¤¥ó¥¹¥È¡¼¥ë¤ª¤è¤Óºï½ü
ÄÌÏÃÍúÎò¡¢¥·¥ç¡¼¥È¥á¥Ã¥»¡¼¥¸¥µ¡¼¥Ó¥¹(SMS: Short Message Service)¡¢Ï¢ÍíÀè¡¢¥Õ¥¡¥¤¥ë¡¢ÅÅÏþõÂÖ¤ÎÀà¼è
¥Í¥Ã¥È¥ï¡¼¥¯ÀßÄê¡¢Wi-FiÀßÄê¤ÎÀà¼è¤ª¤è¤ÓÊѹ¹
²»À¼¤ÎÀà¼è
¥¡¼¥¬¡¼¥É¤Î̵¸ú²½
ÊÉ»æ¤ÎÊѹ¹
¥¹¥¯¥ê¡¼¥ó¥·¥ç¥Ã¥È¤ÎÀà¼è
¥æ¡¼¥¶¡¼Áàºî¤ÎÀà¼è
¥³¥¤¥ó¥Þ¥¤¥Ê¡¼¤Î¼Â¹Ô
¥Ç¥Ð¥¤¥¹°ÌÃÖ¤ÎÄÉÀ×
¡ûbitdefender-app[.]com
Bitdefender(bitdefender.com)¤Ëµ¶Áõ¤·¤¿¡Öbitdefender-app[.]com¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëZIP¥Õ¥¡¥¤¥ë¤¬ÇÛÉÛ¤µ¤ì¤ë¡£ZIP¥Õ¥¡¥¤¥ë¤Ë¤ÏWindows¸þ¤±¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡Ösetup-win-x86-x64.exe¡×¤¬´Þ¤Þ¤ì¤Æ¤ª¤ê¡¢¼Â¹Ô¤¹¤ë¤È¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖLumma Stealer¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûmalwarebytes[.]pro
Malwarebytes(malwarebytes.com)¤Ëµ¶Áõ¤·¤¿¡Ömalwarebytes[.]pro¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëRAR¥Õ¥¡¥¤¥ë¤¬ÇÛÉÛ¤µ¤ì¤ë¡£RAR¥Õ¥¡¥¤¥ë¤Ë¤Ï¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡ÖMBSetup.exe¡×¤¬´Þ¤Þ¤ì¤Æ¤ª¤ê¡¢¼Â¹Ô¤¹¤ë¤È¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖStealC¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûTrellix¤Î¥Ð¥¤¥Ê¥ê¤Ëµ¶Áõ¤·¤¿¥Þ¥ë¥¦¥§¥¢
Trellix¤Ï¥³¥ó¥Æ¥ó¥Ä¤Î¹¹¿·¤Ë´ØÏ¢¤·¤¿¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡ÖAMCoreDat.exe¡×¤Ëµ¶Áõ¤·¤¿°°Õ¤Î¤¢¤ë¥Ð¥¤¥Ê¥ê¡¼¤òȯ¸«¤·¤Æ¤¤¤ë¡£¤³¤Î¥Ð¥¤¥Ê¥ê¤ò¼Â¹Ô¤¹¤ë¤ÈAvast Software¤Î¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤ò¶¯À©½ªÎ»¤·¡¢¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖLumma Stealer¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûÂкö
¹¶·â¼Ô¤¬Èï³²¼Ô¤ò¤³¤ì¤éµ¶¥µ¥¤¥È¤Ë¤É¤Î¤è¤¦¤ËͶƳ¤·¤¿¤«¤Ï¤ï¤«¤Ã¤Æ¤¤¤Ê¤¤¤¬¡¢Trellix¤Ï¤³¤ì¤é¹¶·â¤ò²óÈò¤¹¤ë¤¿¤á¡¢¼¡¤Î¤è¤¦¤ÊÂкö¤ò¿ä¾©¤·¤Æ¤¤¤ë¡£
¥á¡¼¥ë¡¢¥á¥Ã¥»¡¼¥¸¡¢¸¡º÷·ë²Ì¤Ê¤É¤Î¥ê¥ó¥¯¤Ë¥¢¥¯¥»¥¹¤¹¤ë¾ì¹ç¤Ï¡¢¥ê¥ó¥¯¤ò¥¯¥ê¥Ã¥¯¤¹¤ëÁ°¤Ë¥ê¥ó¥¯À襢¥É¥ì¥¹¤ò³Îǧ¤¹¤ë
¥Õ¥¡¥¤¥ë¤ò¥À¥¦¥ó¥í¡¼¥É¤¹¤ëÁ°¤Ë¡¢¥¢¥¯¥»¥¹¤·¤Æ¤¤¤ëWeb¥µ¥¤¥È¤ÎURL¤¬Àµµ¬¥µ¥¤¥È¤Î¥É¥á¥¤¥ó¤«³Îǧ¤¹¤ë
¹âÅ٤ʥ»¥¥å¥ê¥Æ¥£¥½¥ê¥å¡¼¥·¥ç¥ó¤òƳÆþ¤¹¤ë
³¤Â±ÈÇ¥½¥Õ¥È¥¦¥§¥¢¤Ï»ÈÍѤ·¤Ê¤¤
¥À¥¦¥ó¥í¡¼¥É¤·¤¿¥Õ¥¡¥¤¥ë¤ò¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤Ç¸¡¾Ú¤¹¤ë
¤Þ¤¿¡¢Trellix¤Ï¤³¤Î·ï¤ÎÄ´ºº¤Î²áÄø¤ÇȽÌÀ¤·¤¿¥»¥¥å¥ê¥Æ¥£¿¯³²¥¤¥ó¥¸¥±¡¼¥¿¡¼(IoC: Indicator of Compromise)¤ò¸ø³«¤·¤Æ¤ª¤ê¡¢É¬Íפ˱þ¤¸¤Æ³èÍѤ¹¤ë¤³¤È¤¬Ë¾¤Þ¤ì¤Æ¤¤¤ë¡£
A Catalog of Hazardous AV Sites - A Tale of Malware Hosting
Trellix¤¬È¯¸«¤·¤¿¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ëWeb¥µ¥¤¥È¤Ï¼¡¤Î¤È¤ª¤ê¡£
avast-securedownload[.]com
bitdefender-app[.]com
malwarebytes[.]pro
¤³¤ì¤é¤Ï¥»¥¥å¥ê¥Æ¥£´ë¶È¡ÖAvast Software(avast.com)¡×¡¢¡ÖBitdefender(bitdefender.com)¡×¡¢¡ÖMalwarebytes(malwarebytes.com)¡×¤ÎWeb¥µ¥¤¥È¤ò¥³¥Ô¡¼¤·¤¿µ¶¥µ¥¤¥È¤Ç¡¢¤½¤ì¤¾¤ì°Û¤Ê¤ë¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤¹¤ë¤È¤µ¤ì¤ë¡£
avast-securedownload[.]com¤Î²èÌÌ¡¡ °úÍÑ¡§Trellix
Trellix¤¬³Îǧ¤·¤¿³Æµ¶¥µ¥¤¥È¤«¤éÇÛÉÛ¤µ¤ì¤¿¥Þ¥ë¥¦¥§¥¢¤Ï¼¡¤Î¤È¤ª¤ê¡£
¡ûavast-securedownload[.]com
Avast Software(avast.com)¤Ëµ¶Áõ¤·¤¿¡Öavast-securedownload[.]com¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëAndroid¥Ñ¥Ã¥±¡¼¥¸¡ÖAvast.apk¡×¤¬ÇÛÉÛ¤µ¤ì¤ë¡£¤³¤Î¥Ñ¥Ã¥±¡¼¥¸¤ò¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤È¡¢¼¡¤Îµ¡Ç½¤ò»ý¤Ä¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖSpynote¡×¤Ë´¶À÷¤¹¤ë¡£
¥Ñ¥Ã¥±¡¼¥¸¤Î¥¤¥ó¥¹¥È¡¼¥ë¤ª¤è¤Óºï½ü
ÄÌÏÃÍúÎò¡¢¥·¥ç¡¼¥È¥á¥Ã¥»¡¼¥¸¥µ¡¼¥Ó¥¹(SMS: Short Message Service)¡¢Ï¢ÍíÀè¡¢¥Õ¥¡¥¤¥ë¡¢ÅÅÏþõÂÖ¤ÎÀà¼è
¥Í¥Ã¥È¥ï¡¼¥¯ÀßÄê¡¢Wi-FiÀßÄê¤ÎÀà¼è¤ª¤è¤ÓÊѹ¹
²»À¼¤ÎÀà¼è
¥¡¼¥¬¡¼¥É¤Î̵¸ú²½
ÊÉ»æ¤ÎÊѹ¹
¥¹¥¯¥ê¡¼¥ó¥·¥ç¥Ã¥È¤ÎÀà¼è
¥æ¡¼¥¶¡¼Áàºî¤ÎÀà¼è
¥³¥¤¥ó¥Þ¥¤¥Ê¡¼¤Î¼Â¹Ô
¥Ç¥Ð¥¤¥¹°ÌÃÖ¤ÎÄÉÀ×
¡ûbitdefender-app[.]com
Bitdefender(bitdefender.com)¤Ëµ¶Áõ¤·¤¿¡Öbitdefender-app[.]com¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëZIP¥Õ¥¡¥¤¥ë¤¬ÇÛÉÛ¤µ¤ì¤ë¡£ZIP¥Õ¥¡¥¤¥ë¤Ë¤ÏWindows¸þ¤±¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡Ösetup-win-x86-x64.exe¡×¤¬´Þ¤Þ¤ì¤Æ¤ª¤ê¡¢¼Â¹Ô¤¹¤ë¤È¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖLumma Stealer¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûmalwarebytes[.]pro
Malwarebytes(malwarebytes.com)¤Ëµ¶Áõ¤·¤¿¡Ömalwarebytes[.]pro¡×¤«¤é¤Ï°°Õ¤Î¤¢¤ëRAR¥Õ¥¡¥¤¥ë¤¬ÇÛÉÛ¤µ¤ì¤ë¡£RAR¥Õ¥¡¥¤¥ë¤Ë¤Ï¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡ÖMBSetup.exe¡×¤¬´Þ¤Þ¤ì¤Æ¤ª¤ê¡¢¼Â¹Ô¤¹¤ë¤È¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖStealC¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûTrellix¤Î¥Ð¥¤¥Ê¥ê¤Ëµ¶Áõ¤·¤¿¥Þ¥ë¥¦¥§¥¢
Trellix¤Ï¥³¥ó¥Æ¥ó¥Ä¤Î¹¹¿·¤Ë´ØÏ¢¤·¤¿¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¡ÖAMCoreDat.exe¡×¤Ëµ¶Áõ¤·¤¿°°Õ¤Î¤¢¤ë¥Ð¥¤¥Ê¥ê¡¼¤òȯ¸«¤·¤Æ¤¤¤ë¡£¤³¤Î¥Ð¥¤¥Ê¥ê¤ò¼Â¹Ô¤¹¤ë¤ÈAvast Software¤Î¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤ò¶¯À©½ªÎ»¤·¡¢¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¡ÖLumma Stealer¡×¤Ë´¶À÷¤¹¤ë¡£
¡ûÂкö
¹¶·â¼Ô¤¬Èï³²¼Ô¤ò¤³¤ì¤éµ¶¥µ¥¤¥È¤Ë¤É¤Î¤è¤¦¤ËͶƳ¤·¤¿¤«¤Ï¤ï¤«¤Ã¤Æ¤¤¤Ê¤¤¤¬¡¢Trellix¤Ï¤³¤ì¤é¹¶·â¤ò²óÈò¤¹¤ë¤¿¤á¡¢¼¡¤Î¤è¤¦¤ÊÂкö¤ò¿ä¾©¤·¤Æ¤¤¤ë¡£
¥á¡¼¥ë¡¢¥á¥Ã¥»¡¼¥¸¡¢¸¡º÷·ë²Ì¤Ê¤É¤Î¥ê¥ó¥¯¤Ë¥¢¥¯¥»¥¹¤¹¤ë¾ì¹ç¤Ï¡¢¥ê¥ó¥¯¤ò¥¯¥ê¥Ã¥¯¤¹¤ëÁ°¤Ë¥ê¥ó¥¯À襢¥É¥ì¥¹¤ò³Îǧ¤¹¤ë
¥Õ¥¡¥¤¥ë¤ò¥À¥¦¥ó¥í¡¼¥É¤¹¤ëÁ°¤Ë¡¢¥¢¥¯¥»¥¹¤·¤Æ¤¤¤ëWeb¥µ¥¤¥È¤ÎURL¤¬Àµµ¬¥µ¥¤¥È¤Î¥É¥á¥¤¥ó¤«³Îǧ¤¹¤ë
¹âÅ٤ʥ»¥¥å¥ê¥Æ¥£¥½¥ê¥å¡¼¥·¥ç¥ó¤òƳÆþ¤¹¤ë
³¤Â±ÈÇ¥½¥Õ¥È¥¦¥§¥¢¤Ï»ÈÍѤ·¤Ê¤¤
¥À¥¦¥ó¥í¡¼¥É¤·¤¿¥Õ¥¡¥¤¥ë¤ò¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤Ç¸¡¾Ú¤¹¤ë
¤Þ¤¿¡¢Trellix¤Ï¤³¤Î·ï¤ÎÄ´ºº¤Î²áÄø¤ÇȽÌÀ¤·¤¿¥»¥¥å¥ê¥Æ¥£¿¯³²¥¤¥ó¥¸¥±¡¼¥¿¡¼(IoC: Indicator of Compromise)¤ò¸ø³«¤·¤Æ¤ª¤ê¡¢É¬Íפ˱þ¤¸¤Æ³èÍѤ¹¤ë¤³¤È¤¬Ë¾¤Þ¤ì¤Æ¤¤¤ë¡£