English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 27323
À§Çèµµ 20
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù MALWARE
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â "BargainBuddy" ÇÁ·Î±×·¥ÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù.
ÀÌ ÇÁ·Î±×·¥Àº ¶§¶§·Î ½Ã½ºÅÛ »ó¿¡¼­ ±¤°í¸¦ º¸¿© ÁÖ´Â ¾Öµå¿þ¾î(Adware) ¶Ç´Â ÀÎÅÍ³Ý ÀͽºÇ÷η¯ÀÇ ½ÃÀÛ ½Ã¿¡ ÀÚµ¿À¸·Î ½ÇÇàµÇ´Â BHO(Browser Help Object)·Î °£ÁÖµÉ ¼ö ÀÖ´Ù. ÀϹÝÀûÀ¸·Î, ¾Öµå¿þ¾î¿Í BHO ´Â »ç¿ëÀÚÀÇ ºê¶ó¿ì¡ ½À°üÀ» Áß¾ÓÀÇ ±¤°í¿ë ¼­¹ö ¹× Á¦ÀÛÀÚ¿¡°Ô À¯ÃâÇÒ ¼ö ÀÖ´Â À§Ç輺À» °®À¸¸ç ¹è³Ê ±¤°í¸¦ ´Ù¸¥ ±¤°í·Î ±³Ã¼Çϰųª ºê¶ó¿ìÀúÀÇ È¨ ÆäÀÌÁö¸¦ º¯°æÇÒ ¼ö ÀÖ´Ù. BargainBuddy ´Â ÄÄÇ»ÅÍÀÇ ½ÃÀÛ°ú ÇÔ²² µ¿ÀÛÇÏ´Â ÇÁ·Î¼¼½º¿Í BHO·Î ±¸¼ºµÇ¾î ÀÖ¾î ¿äûµÈ À¥ ÆäÀÌÁö ¹× Æû(form)¿¡ ÀÔ·ÂµÈ ´Ü¾î(term)µéÀ» ¸ð´ÏÅÍÇÑ´Ù. ¶ÇÇÑ, "adp.ikena.com" ¼­¹ö¸¦ ÅëÇØ¼­ Àº¹ÐÈ÷ ÀÚ½ÅÀ» ¾÷µ¥ÀÌÆ®ÇÑ´Ù. ÀÌ ÇÁ·Î±×·¥Àº ÀÎÅÍ³Ý ÀͽºÇ÷η¯ÀÇ ¼º´ÉÀ» ÀúÇϽÃų ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇØ¼­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://securityresponse.symantec.com/avcenter/venc/data/adware.bargainbuddy.html
http://www.spywareguide.com/product_show.php?id=463
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml


* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
ÇØ°áÃ¥ ÇØ´ç ÇÁ·Î±×·¥ÀÌ »ç¿ëÀÚ°¡ ¾ËÁö ¸øÇÏ´Â »çÀÌ¿¡ Àº¹ÐÈ÷ ¼³Ä¡µÇ¾ú°Å³ª ÇÁ·Î±×·¥ÀÇ »ç¿ëÀÌ º¸¾È Á¤Ã¥¿¡ ¾î±ß³ª´Â °æ¿ì, ´ÙÀ½°ú °°Àº ¹æ¹ýµéÀ» »ç¿ëÇÏ¿© ½Ã½ºÅÛÀ¸·ÎºÎÅÍ ÇÁ·Î±×·¥À» Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù.

1. Á¦¾îÆÇ -> "ÇÁ·Î±×·¥ Á¦°Å"¿¡¼­ ÇØ´ç ÇÁ·Î±×·¥ÀÇ Á¦°Å ÇÁ·Î±×·¥(uninstaller)À» »ç¿ë.
2. Spyware/Adware Á¦°Å ÇÁ·Î±×·¥À̳ª ¹é½Å ÇÁ·Î±×·¥(¾ÈƼ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥)À» »ç¿ë. ´ÙÀ½ÀÇ ÇÁ·Î±×·¥À» »ç¿ëÇÒ ¼ö ÀÖ´Ù:
- Norton AntiVirus: http://www.symantec.com/downloads
- McAfee VirusScan: http://www.mcafee.com
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)