{"id":128696,"date":"2023-06-15T17:44:14","date_gmt":"2023-06-16T00:44:14","guid":{"rendered":"https:\/\/unit42.paloaltonetworks.com\/?p=128696"},"modified":"2024-07-30T18:12:15","modified_gmt":"2024-07-31T01:12:15","slug":"android-malware-poses-as-chatgpt","status":"publish","type":"post","link":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/","title":{"rendered":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b"},"content":{"rendered":"<h1><a id=\"post-128696-_gcytq79ugzfy\"><\/a>\u6982\u8981<\/h1>\n<p>Unit 42\u306e\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306f\u3001\u4eba\u6c17\u306e\u3042\u308bChatGPT\u30a2\u30d7\u30ea\u306b\u306a\u308a\u3059\u307e\u305d\u3046\u3068\u3059\u308bAndroid\u30d7\u30e9\u30c3\u30c8\u30d5\u30a9\u30fc\u30e0\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u6025\u5897\u3092\u89b3\u6e2c\u3057\u307e\u3057\u305f\u3002\u3053\u308c\u3089\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u306fOpenAI\u306b\u3088\u308bGPT-3.5\u3068\u305d\u308c\u306b\u7d9a\u304fGPT-4\u306e\u30ea\u30ea\u30fc\u30b9\u306b\u3068\u3082\u306a\u3063\u3066\u51fa\u73fe\u3057\u305f\u3082\u306e\u3067\u3001ChatGPT\u30c4\u30fc\u30eb\u306e\u5229\u7528\u306b\u8208\u5473\u304c\u3042\u308b\u88ab\u5bb3\u8005\u306b\u611f\u67d3\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>\u672c\u7a3f\u3067\u306f\u73fe\u5728\u30a2\u30af\u30c6\u30a3\u30d6\u306a2\u7a2e\u985e\u306e\u30de\u30eb\u30a6\u30a7\u30a2 \u30af\u30e9\u30b9\u30bf\u30fc\u306e\u8a73\u7d30\u5206\u6790\u3092\u884c\u3044\u307e\u3059\u3002\u6700\u521d\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306f\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308bMeterpreter\u3067\u3001\u300cSuperGPT\u300d\u3068\u3044\u3046\u30a2\u30d7\u30ea\u306b\u507d\u88c5\u3057\u3066\u3044\u307e\u3059\u30022\u3064\u3081\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306f\u30bf\u30a4\u56fd\u5185\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u306bSMS\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u9001\u4fe1\u3059\u308b\u300cChatGPT\u300d\u3068\u3044\u3046\u30a2\u30d7\u30ea\u3067\u3001\u88ab\u5bb3\u8005\u306b\u306f\u5229\u7528\u6599\u304c\u767a\u751f\u3057\u3001\u8105\u5a01\u30a2\u30af\u30bf\u30fc\u304c\u305d\u308c\u3092\u7740\u670d\u3057\u307e\u3059\u3002<\/p>\n<p>Android\u30e6\u30fc\u30b6\u30fc\u306fAndroid\u30d7\u30e9\u30c3\u30c8\u30d5\u30a9\u30fc\u30e0\u7528\u306b\u66f8\u304b\u308c\u305f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092\u3055\u307e\u3056\u307e\u306a\u5834\u6240\u304b\u3089\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3067\u304d\u307e\u3059\u3002\u516c\u5f0f\u30b9\u30c8\u30a2\u306fGoogle Play\u3067\u3059\u304c\u3001Web\u30b5\u30a4\u30c8\u3084\u30e1\u30fc\u30eb\u5185\u306e\u30ea\u30f3\u30af\u306a\u3069\u307b\u304b\u306e\u63d0\u4f9b\u5143\u304b\u3089\u3082\u81ea\u7531\u306b\u30a2\u30d7\u30ea\u3092\u5165\u624b\u3067\u304d\u308b\u3053\u3068\u304b\u3089\u3001\u30e6\u30fc\u30b6\u30fc\u306fGoogle\u306e\u5165\u5ff5\u306a\u5be9\u67fb\u3092\u53d7\u3051\u3066\u3044\u306a\u3044\u30a2\u30d7\u30ea\u3092\u5165\u624b\u3057\u3046\u308b\u3053\u3068\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>\u672c\u7a3f\u306b\u8a18\u8f09\u3057\u305f\u30d5\u30a1\u30a4\u30eb\u306f\u3059\u3067\u306bGoogle\u306b\u9001\u4fe1\u6e08\u307f\u3067\u3001Google Play\u30b9\u30c8\u30a2\u304b\u3089\u306f\u30d6\u30ed\u30c3\u30af\u3055\u308c\u308b\u4e88\u5b9a\u3067\u3059\u3002\u307e\u305fGoogle Play\u30b5\u30fc\u30d3\u30b9\u3092\u642d\u8f09\u3057\u3066\u3044\u308bAndroid\u7aef\u672b\u306e\u5834\u5408\u3001\u30e6\u30fc\u30b6\u30fc\u306fGoogle Play Protect\u306b\u3088\u308a\u3053\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u3092\u542b\u3080\u30a2\u30d7\u30ea\u304b\u3089\u4fdd\u8b77\u3055\u308c\u3066\u3044\u307e\u3059 (\u5bfe\u8c61\u306e\u30a2\u30d7\u30ea\u304c\u307b\u304b\u306e\u63d0\u4f9b\u5143\u304b\u3089\u306e\u3082\u306e\u3067\u3042\u3063\u3066\u3082\u4fdd\u8b77\u306e\u5bfe\u8c61\u3068\u306a\u308a\u307e\u3059)\u3002\u30e2\u30d0\u30a4\u30eb\u7aef\u672b\u30e6\u30fc\u30b6\u30fc\u306e\u7686\u3055\u3093\u306b\u306f\u305c\u3072\u3001\u30a2\u30d7\u30ea\u3092\u6b63\u898f\u30b9\u30c8\u30a2\u4ee5\u5916\u304b\u3089\u5165\u624b\u3059\u308b\u3055\u3044\u306b\u751f\u3058\u308b\u3053\u3046\u3057\u305f\u30ea\u30b9\u30af\u3092\u3054\u8a8d\u8b58\u3044\u305f\u3060\u3051\u308c\u3070\u3068\u601d\u3044\u307e\u3059\u3002\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u4e0a\u306e\u3079\u3064\u306e\u5834\u6240\u304b\u3089\u60aa\u610f\u306e\u3042\u308b\u30a2\u30d7\u30ea\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3066\u3057\u307e\u3046\u53ef\u80fd\u6027\u306f\u6b8b\u3063\u3066\u3044\u308b\u306e\u3067\u3059\u3002<\/p>\n<p><a href=\"https:\/\/docs-cortex.paloaltonetworks.com\/p\/XDR\" target=\"_blank\" rel=\"noopener\">Cortex XDR<\/a>\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/ngfw\" target=\"_blank\" rel=\"noopener\">\u6b21\u4e16\u4ee3\u30d5\u30a1\u30a4\u30a2\u30a6\u30a9\u30fc\u30eb\u306eNGFW\u30b7\u30ea\u30fc\u30ba<\/a>\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/advanced-url-filtering\/administration\" target=\"_blank\" rel=\"noopener\">Advanced URL Filtering<\/a>\u3092\u3054\u5229\u7528\u306e\u30d1\u30ed\u30a2\u30eb\u30c8\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30b9\u306e\u304a\u5ba2\u69d8\u306f\u3001\u672c\u7a3f\u3067\u53d6\u308a\u4e0a\u3052\u305fChatGPT\u3092\u30c6\u30fc\u30de\u3068\u3059\u308b\u653b\u6483\u304b\u3089\u306e\u4fdd\u8b77\u3092\u53d7\u3051\u3066\u3044\u307e\u3059\u3002\u307e\u305f\u60aa\u610f\u306e\u3042\u308b\u6307\u6a19(\u30c9\u30e1\u30a4\u30f3\u3001URL\u3001\u30cf\u30c3\u30b7\u30e5)\u306f\u3001\u5f0a\u793e<a href=\"https:\/\/docs.paloaltonetworks.com\/dns-security\" target=\"_blank\" rel=\"noopener\">DNS Security<\/a>\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/wildfire\" target=\"_blank\" rel=\"noopener\">WildFire<\/a>\u30b5\u30fc\u30d3\u30b9\u304c\u9632\u6b62\u3057\u307e\u3059\u3002<\/p>\n<table style=\"width: 100%;\">\n<thead>\n<tr>\n<td style=\"width: 35%;\"><b>\u95a2\u9023\u3059\u308bUnit 42\u306e\u30c8\u30d4\u30c3\u30af<\/b><\/td>\n<td style=\"width: 100%;\"><a href=\"https:\/\/unit42.paloaltonetworks.jp\/tag\/chatgpt-ja\/\" target=\"_blank\" rel=\"noopener\"><b>ChatGPT<\/b><\/a>, <strong><a href=\"https:\/\/unit42.paloaltonetworks.jp\/tag\/meterpreter-ja\/\" target=\"_blank\" rel=\"noopener\">Meterpreter<\/a>, <a href=\"https:\/\/unit42.paloaltonetworks.jp\/tag\/scams-ja\/\" target=\"_blank\" rel=\"noopener\">Scams<\/a><\/strong><\/td>\n<\/tr>\n<\/thead>\n<\/table>\n<h1><a id=\"post-128696-_h9vr6a8h2vel\"><\/a>\u306f\u3058\u3081\u306b<\/h1>\n<p>OpenAI\u306f\u3001Chat \"Generative Pre-trained Transformer\"\u3001\u7565\u3057\u3066ChatGPT\u3068\u547c\u3070\u308c\u308b\u30c4\u30fc\u30eb\u3092\u4f5c\u6210\u3057\u307e\u3057\u305f\u3002\u3053\u306e\u30c4\u30fc\u30eb\u3092\u652f\u3048\u3066\u3044\u308b\u6280\u8853\u306fLLM (Large Language Model: \u5927\u898f\u6a21\u8a00\u8a9e\u30e2\u30c7\u30eb)\u3067\u3001\u73fe\u5728\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u306f4\u3067\u3059\u3002<\/p>\n<p>ChatGPT\u306f2022\u5e7411\u670830\u65e5\u306b\u521d\u3081\u3066\u4e00\u822c\u516c\u958b\u3055\u308c\u3001\u56de\u7b54\u304c\u6b63\u78ba\u3067\u306a\u3044\u3053\u3068\u3082\u3042\u308b\u3082\u306e\u306e\u3001\u3081\u3056\u307e\u3057\u3044\u8cea\u554f\u56de\u7b54\u80fd\u529b\u3092\u793a\u3057\u305f\u3068\u3057\u3066\u307e\u305f\u305f\u304f\u9593\u306b\u8a71\u984c\u3092\u3055\u3089\u3044\u307e\u3057\u305f\u3002<\/p>\n<p>\u8105\u5a01\u30a2\u30af\u30bf\u30fc\u306f\u6709\u52b9\u306a\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u4f7f\u3063\u305f\u30c4\u30fc\u30eb\u306e\u62e1\u6563\u3092\u3064\u306d\u306b\u63a2\u3063\u3066\u3044\u307e\u3059\u3002\u305d\u306e\u6642\u3005\u306e\u4e16\u754c\u7684\u30c8\u30ec\u30f3\u30c9\u306b\u306a\u3089\u3063\u3066\u5e83\u304f\u666e\u53ca\u3057\u305f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306b\u306a\u308a\u3059\u307e\u3059\u3053\u3068\u306f\u3001\u305d\u3046\u3057\u305f\u76ee\u7684\u3092\u9054\u6210\u3059\u308b\u6700\u3082\u6709\u52b9\u306a\u624b\u6bb5\u306e1\u3064\u3067\u3059\u3002\u305f\u3068\u3048\u3070\u653b\u6483\u8005\u306f\u65b0\u578b\u30b3\u30ed\u30ca\u30a6\u30a4\u30eb\u30b9\u611f\u67d3\u75c7(COVID-19)\u306e\u611f\u67d3\u62e1\u5927\u3092\u5229\u7528\u3057\u3001Android\u30d7\u30e9\u30c3\u30c8\u30d5\u30a9\u30fc\u30e0\u5411\u3051\u306b\u300cHealth and Wellness\u300d\u30ab\u30c6\u30b4\u30ea\u306e\u60aa\u610f\u306e\u3042\u308b\u30d0\u30fc\u30b8\u30e7\u30f3\u306e\u30a2\u30d7\u30ea\u3092\u66f8\u3044\u3066\u62e1\u6563\u3055\u305b\u308b\u3053\u3068\u304c\u3088\u304f\u3042\u308a\u307e\u3057\u305f\u3002<\/p>\n<p><a href=\"https:\/\/www.sangfor.com\/blog\/cybersecurity\/chatgpt-malware-a-new-threat-in-cybersecurity\" target=\"_blank\" rel=\"noopener\">ChatGPT\u95a2\u9023\u30c4\u30fc\u30eb\u3092\u88c5\u3063\u305f\u30de\u30eb\u30a6\u30a7\u30a2<\/a>\u306b\u95a2\u3059\u308b\u904e\u53bb\u306e\u5831\u544a\u3084\u3001\u4ee5\u524d\u79c1\u305f\u3061\u304c\u516c\u958b\u3057\u305f\u300c<a href=\"https:\/\/unit42.paloaltonetworks.jp\/chatgpt-scam-attacks-increasing\" target=\"_blank\" rel=\"noopener\">ChatGPT\u3092\u30c6\u30fc\u30de\u306b\u3057\u305f\u8a50\u6b3a\u653b\u6483\u304c\u5897\u52a0\u4e2d<\/a>\u300d\u3067\u306f\u3001\u8a50\u6b3a\u5e2b\u304cChatGPT\u4eba\u6c17\u306b\u4e57\u3058\u3066\u653b\u6483\u3092\u3057\u304b\u3051\u3066\u3044\u308b\u3053\u3068\u304c\u5224\u660e\u3057\u307e\u3057\u305f\u3002\u8105\u5a01\u30a2\u30af\u30bf\u30fc\u306f\u3001\u5b57\u9762\u306e\u3088\u304f\u4f3c\u305f\u30c9\u30e1\u30a4\u30f3\u540d\u3092\u4f7f\u3044\u3001\u88ab\u5bb3\u8005\u304c\u500b\u4eba\u60c5\u5831\u3092\u6e21\u3059\u3088\u3046\u306b\u3057\u3080\u3051\u305f\u308a\u3001\u30de\u30eb\u30a6\u30a7\u30a2\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3055\u305b\u305f\u308a\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u672c\u7a3f\u306f\u3053\u306e\u30c8\u30ec\u30f3\u30c9\u306b\u95a2\u3059\u308b\u7d9a\u5831\u3067\u3001\u6700\u8fd1\u306e\u30c6\u30ec\u30e1\u30c8\u30ea\u304b\u3089\u898b\u3064\u304b\u3063\u305f\u8907\u6570\u306e\u60aa\u610f\u306e\u3042\u308bAndroid\u30a2\u30d7\u30ea\u306e\u8abf\u67fb\u7d50\u679c\u3092\u5171\u6709\u3057\u307e\u3059\u3002\u5177\u4f53\u7684\u306b\u306f2\u7a2e\u985e\u306e\u30a2\u30af\u30c6\u30a3\u30d6\u306a\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u3063\u3066\u3044\u307e\u3059\u30021\u3064\u306f\u300cSuperGPT\u300d\u3068\u3044\u3046\u30a2\u30d7\u30ea\u306b\u507d\u88c5\u3057\u3066Meterpreter\u3092\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u3068\u3057\u3066\u4f7f\u3046\u3082\u306e\u3067\u3001\u3082\u30461\u3064\u306f\u30bf\u30a4\u56fd\u5185\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u306bSMS\u3092\u9001\u4fe1\u3059\u308b\u300cChatGPT\u300d\u3068\u3044\u3046\u30a2\u30d7\u30ea\u3067\u3059\u3002<\/p>\n<h1><a id=\"post-128696-_gjgck1hc5thy\"><\/a>\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u3068\u3057\u3066\u306eMeterpreter<\/h1>\n<p>\u79c1\u305f\u3061\u306e\u30c1\u30fc\u30e0\u306f\u60aa\u610f\u306e\u3042\u308bAndroid Package Kit (APK)\u30b5\u30f3\u30d7\u30eb\u3092\u767a\u898b\u3057\u3001\u305d\u308c\u304c\u6b63\u898f\u30a2\u30d7\u30ea\u3092\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u5316\u3057\u305f\u30d0\u30fc\u30b8\u30e7\u30f3\u3067\u3042\u308b\u3053\u3068\u3092\u7a81\u304d\u6b62\u3081\u307e\u3057\u305f\u3002\u6b63\u898f\u30a2\u30d7\u30ea\u306f\u6700\u65b0\u7248\u306eChatGPT\u3092\u30d9\u30fc\u30b9\u306b\u3057\u305fAI\u30a2\u30b7\u30b9\u30bf\u30f3\u30c8\u3067\u3059\u3002\u3053\u306e\u60aa\u610f\u306e\u3042\u308b\u30d0\u30fc\u30b8\u30e7\u30f3\u306e\u30a2\u30d7\u30ea\u306b\u3088\u3063\u3066\u3001\u30a8\u30af\u30b9\u30d7\u30ed\u30a4\u30c8\u304c\u6210\u529f\u3057\u305f\u5834\u5408\u3001\u30a2\u30af\u30bf\u30fc\u306fAndroid\u30c7\u30d0\u30a4\u30b9\u3078\u306e\u30ea\u30e2\u30fc\u30c8\u30a2\u30af\u30bb\u30b9\u3092\u78ba\u7acb\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>\u88681\u306f\u6b63\u898f\u30a2\u30d7\u30ea\u3001\u88682\u306f\u60aa\u610f\u306e\u3042\u308b\u30a2\u30d7\u30ea\u306e\u8aac\u660e\u3067\u3059\u3002<\/p>\n<table style=\"width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 37.2%;\"><b>\u30a2\u30d7\u30ea\u540d<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400;\">SuperGPT - AI with GPT-4<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2%;\"><b>\u8aac\u660e\u6587(<\/b><a href=\"https:\/\/play.google.com\/store\/apps\/details?id=com.dominapp.supergpt\" target=\"_blank\" rel=\"noopener\"><b>\u516c\u5f0f\u5185\u5bb9\u304b\u3089\u8981\u7d04<\/b><\/a><b>)<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400;\">GPT-4\u642d\u8f09\u306eAI\u30a2\u30b7\u30b9\u30bf\u30f3\u30c8\u3067\u4ee5\u4e0b\u306e\u3053\u3068\u3092\u884c\u3048\u307e\u3059: <\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">\u96fb\u5b50\u30e1\u30fc\u30eb\u3092\u66f8\u304f<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">\u8cea\u554f\u306b\u7b54\u3048\u308b<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">\u8a18\u4e8b\u3092\u4f5c\u6210\u3059\u308b<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">\u3053\u306e\u307b\u304b\u4ee5\u4e0b\u306e\u6a5f\u80fd\u3082\u5099\u308f\u3063\u3066\u3044\u307e\u3059\u3002<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">\u97f3\u58f0\u8a8d\u8b58<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">\u8a00\u8a9e\u7ffb\u8a33<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2%;\"><b>\u30d1\u30c3\u30b1\u30fc\u30b8\u540d<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2%;\"><b>\u30d0\u30fc\u30b8\u30e7\u30f3\u540d(\u30b3\u30fc\u30c9)<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400;\">1.2 (8)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2%;\"><b>SHA-256\u30cf\u30c3\u30b7\u30e5<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">d7ef8929b236a43917f351c39963916c1dd3a9c0580499443322750435245f9f<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2%;\"><b>\u30d5\u30a1\u30a4\u30eb \u30b5\u30a4\u30ba<\/b><\/td>\n<td style=\"width: 61.8667%;\"><span style=\"font-weight: 400;\">10.85MB (11,378,336\u30d0\u30a4\u30c8)<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"font-size: 8pt; color: #999999;\"><em>\u88681. \u6b63\u898f\u30a2\u30d7\u30ea\u306e\u30e1\u30bf\u30c7\u30fc\u30bf <\/em><\/span><\/p>\n<p>\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306e<span style=\"font-family: 'courier new', courier, monospace;\">MainActivity<\/span>\u30af\u30e9\u30b9\u306b\u306f\u516c\u5f0f\u306eChatGPT\u306eURL (<a href=\"https:\/\/chat.openai.com\/chat\" target=\"_blank\" rel=\"noopener\">https:\/\/chat.openai.com\/chat<\/a>)\u3092\u53c2\u7167\u3059\u308b<span style=\"font-family: 'courier new', courier, monospace;\">String<\/span>\u5909\u6570\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002<span style=\"font-family: 'courier new', courier, monospace;\">v3.v<\/span>\u3068\u3044\u3046\u540d\u524d\u306e\u3064\u3044\u305fPackage-Class\u306f\u3001\u30ab\u30b9\u30bf\u30de\u30a4\u30ba\u3055\u308c\u305f<span style=\"font-family: 'courier new', courier, monospace;\">WebViewClient<\/span> (AndroidOS\u5411\u3051\u30a2\u30d7\u30ea\u306bWeb\u30d6\u30e9\u30a6\u30b6\u6a5f\u80fd\u3092\u7d44\u307f\u8fbc\u3080Android\u306e\u30d3\u30eb\u30c8\u30a4\u30f3\u306e\u5b9f\u88c5)\u30af\u30e9\u30b9\u306e\u5b9f\u88c5\u306a\u306e\u3067\u3001\u30c7\u30d5\u30a9\u30eb\u30c8\u6a5f\u80fd\u306e\u62e1\u5f35\u3084\u30aa\u30fc\u30d0\u30fc\u30e9\u30a4\u30c9\u304c\u53ef\u80fd\u3067\u3059\u3002\u305d\u306e\u305f\u3081\u306b\u6b21\u306e\u30ea\u30c0\u30a4\u30ec\u30af\u30c8 \u30eb\u30fc\u30eb\u304c\u8ffd\u52a0\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<ol>\n<li>URL\u306b<a href=\"https:\/\/openai.com\/blog\/chatgpt\/\" target=\"_blank\" rel=\"noopener\">https:\/\/openai.com\/blog\/chatgpt\/<\/a>\u304c\u542b\u307e\u308c\u3066\u3044\u308c\u3070<a href=\"https:\/\/chat.openai.com\/chat\" target=\"_blank\" rel=\"noopener\">https:\/\/chat.openai.com\/chat<\/a>\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8\u3059\u308b<\/li>\n<li>URL\u306b<a href=\"https:\/\/beta.openai.com\/\" target=\"_blank\" rel=\"noopener\">beta.openai.com\/<\/a>\u304c\u542b\u307e\u308c\u3066\u3044\u308c\u30701,000ms\u9045\u5ef6\u3055\u305b\u3066\u304b\u3089<a href=\"https:\/\/chat.openai.com\/chat\" target=\"_blank\" rel=\"noopener\">https:\/\/chat.openai.com\/chat<\/a>\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8\u3059\u308b<\/li>\n<\/ol>\n<table style=\"width: 100%; height: 640px;\">\n<tbody>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px; text-align: center;\" colspan=\"2\"><b>\u30a2\u30d7\u30ea\u306e\u30a2\u30a4\u30b3\u30f3<\/b><\/td>\n<td style=\"height: 56px; text-align: center;\"><b>\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8<\/b><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\" colspan=\"2\">\n<p><figure id=\"attachment_128668\" aria-describedby=\"caption-attachment-128668\" style=\"width: 192px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128668 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/image4.png\" alt=\"\u753b\u50cf1\u306fSuperGPT\u30a2\u30d7\u30ea\u306e\u30a2\u30a4\u30b3\u30f3\u3067\u3059\u3002\u3053\u306e\u30a2\u30a4\u30b3\u30f3\u306b\u306f\u3001\u30de\u30a4\u30af\u4ed8\u304d\u30d8\u30c3\u30c9\u30d5\u30a9\u30f3\u3092\u3064\u3051\u305f\u9752\u3044\u30ed\u30dc\u30c3\u30c8\u306e\u982d\u90e8\u304c\u63cf\u304b\u308c\u3066\u3044\u307e\u3059\u3002\" width=\"192\" height=\"192\" \/><figcaption id=\"caption-attachment-128668\" class=\"wp-caption-text\">ic_launcher.png (\u30a2\u30d7\u30ea\u306e\u30a2\u30a4\u30b3\u30f3)<\/figcaption><\/figure><\/td>\n<td style=\"height: 56px;\">\n<p><figure id=\"attachment_128670\" aria-describedby=\"caption-attachment-128670\" style=\"width: 200px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128670 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/image7.png\" alt=\"\u753b\u50cf2\u306fSuperGPT\u30a2\u30d7\u30ea\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3067\u3059\u3002SuperGPT\u306e\u30ed\u30b4\u304c\u4e0a\u90e8\u306b\u8868\u793a\u3055\u308c\u3066\u304a\u308a\u3001\u305d\u306e\u4e0b\u306b\u306f\u300cTalk with AI(AI\u3068\u8a71\u305d\u3046)\u300d\u3068\u3044\u3046\u30d8\u30c3\u30c0\u30fc\u304c\u3042\u308a\u307e\u3059\u3002\u305d\u306e\u4e0b\u306b\u306f\u300cYou can ask any question in your language and receive a response with a human-like voice powered by GPT-3. (\u304a\u4f7f\u3044\u306e\u8a00\u8a9e\u3067\u3069\u3093\u306a\u8cea\u554f\u3067\u3082\u3067\u304d\u3001GPT-3\u304c\u4eba\u9593\u306e\u3088\u3046\u306a\u58f0\u3067\u8fd4\u4e8b\u3092\u3057\u3066\u304f\u308c\u307e\u3059\u3002)\u300d\u3068\u3044\u3046\u30c6\u30ad\u30b9\u30c8\u304c\u8868\u793a\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u4e0b\u90e8\u306b\u306f\u300cGet started (\u306f\u3058\u3081\u308b)\u300d\u3068\u66f8\u304b\u308c\u305f\u30dc\u30bf\u30f3\u304c\u3042\u308a\u307e\u3059\u3002\" width=\"200\" height=\"422\" \/><figcaption id=\"caption-attachment-128670\" class=\"wp-caption-text\">\u30a2\u30d7\u30ea\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8<\/figcaption><\/figure><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>\u30a2\u30d7\u30ea\u540d<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400;\">SuperGPT<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>SHA-256\u30cf\u30c3\u30b7\u30e5<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">af19ca9213a20263c30584a2bf260dcdb3b4eafa4f43af10824af781573a2314<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>\u30d5\u30a1\u30a4\u30eb \u30b5\u30a4\u30ba<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400;\">12.39MB (12,994,395\u30d0\u30a4\u30c8)<\/span><\/td>\n<\/tr>\n<tr style=\"height: 80px;\">\n<td style=\"height: 80px;\"><b>\u30d7\u30ed\u30b0\u30e9\u30df\u30f3\u30b0\u8a00\u8a9e<\/b><\/td>\n<td style=\"height: 80px;\" colspan=\"2\"><span style=\"font-weight: 400;\">Kotlin<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>\u30d0\u30fc\u30b8\u30e7\u30f3\u540d(\u30b3\u30fc\u30c9)<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400;\">1.2 (8)<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>\u30d1\u30c3\u30b1\u30fc\u30b8\u540d<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><b>MainActivity<\/b><\/td>\n<td style=\"height: 56px;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt.activities.MainActivity<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 112px;\" rowspan=\"2\"><b>Android\u306e\u30d0\u30fc\u30b8\u30e7\u30f3<\/b><\/td>\n<td style=\"height: 56px;\"><span style=\"font-weight: 400;\">\u5fc5\u8981\u6700\u4f4e\u8981\u4ef6:<\/span><\/td>\n<td style=\"height: 56px;\"><span style=\"font-weight: 400;\">API level 23 (Android 6)<\/span><\/td>\n<\/tr>\n<tr style=\"height: 56px;\">\n<td style=\"height: 56px;\"><span style=\"font-weight: 400;\">\u30bf\u30fc\u30b2\u30c3\u30c8:<\/span><\/td>\n<td style=\"height: 56px;\"><span style=\"font-weight: 400;\">API level 32 (Android 12L)<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"font-size: 8pt; color: #999999;\"><em>\u88682 \u60aa\u610f\u306e\u3042\u308bAPK\u30b5\u30f3\u30d7\u30eb\u306e\u30e1\u30bf\u30c7\u30fc\u30bf<\/em><\/span><\/p>\n<p>VirusTotal\u306b\u3088\u308b\u3068\u3001\u3053\u306e\u30b5\u30f3\u30d7\u30eb\u306f2023-03-16 02:06:04 UTC\u306b\u30cb\u30ab\u30e9\u30b0\u30a2(NI)\u304b\u3089VirusTotal\u306eWeb\u30a4\u30f3\u30bf\u30fc\u30d5\u30a7\u30fc\u30b9\u7d4c\u7531\u3067\u30d5\u30a1\u30a4\u30eb\u540d<span style=\"font-family: 'courier new', courier, monospace;\">2021id.apk<\/span>\u3068\u3057\u3066\u6700\u521d\u306b\u63d0\u51fa\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<h2><a id=\"post-128696-_m7jltngb4b17\"><\/a>\u30da\u30a4\u30ed\u30fc\u30c9\u306e\u30a4\u30f3\u30d7\u30e9\u30f3\u30c8(\u6ce8\u5165)<\/h2>\n<p>\u6b63\u898fAPK\u30b5\u30f3\u30d7\u30eb\u3068\u60aa\u6027APK\u30b5\u30f3\u30d7\u30eb\u306e\u9055\u3044\u3092\u6bd4\u8f03\u3057\u3066\u307f\u308b\u3068\u3001\u30d5\u30a1\u30a4\u30eb\u306b\u8ffd\u52a0\u3055\u308c\u305f\u30c8\u30ed\u30a4\u306e\u6728\u99ac\u5316\u306e\u809d\u306f\u6b21\u306eSmali\u30b3\u30fc\u30c9\u884c\u3068\u3044\u3046\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059(\u56f31\u53c2\u7167)\u3002<\/p>\n<figure id=\"attachment_128655\" aria-describedby=\"caption-attachment-128655\" style=\"width: 522px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128655 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/word-image-128648-3.png\" alt=\"\u753b\u50cf3\u306fSmali\u30b3\u30fc\u30c9\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3067\u3059\u3002\u8ffd\u52a0\u3055\u308c\u305f\u60aa\u6027\u30b3\u30fc\u30c9\u306e\u884c\u306f\u592a\u5b57\u3067\u8868\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"522\" height=\"176\" \/><figcaption id=\"caption-attachment-128655\" class=\"wp-caption-text\">\u56f31. \u60aa\u610f\u306e\u3042\u308bSmali\u30b3\u30fc\u30c9\u884c\u304c\u8ffd\u52a0\u3055\u308c\u3066\u3044\u308b<\/figcaption><\/figure>\n<p>\u3053\u306e\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u3067\u4e2d\u5fc3\u3068\u306a\u308b\u8105\u5a01\u306f\u300cMeterpreter\u300d\u306e\u540d\u524d\u3067\u77e5\u3089\u308c\u308b\u3082\u306e\u3067\u3001Metasploit\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u3092\u4f7f\u3063\u3066\u4f5c\u6210\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u521d\u671f\u306eJava\u30d9\u30fc\u30b9\u306eAndroid\u7528Meterpreter\u30b9\u30c6\u30fc\u30b8\u30e3\u30fc\u306e\u30bd\u30fc\u30b9\u30b3\u30fc\u30c9\u306f\u3001<a href=\"https:\/\/github.com\/rapid7\/metasploit-payloads\/tree\/master\/java\/androidpayload\/app\/src\/com\/metasploit\/stage\" target=\"_blank\" rel=\"noopener\">Rapid7\u306eGitHub\u30ea\u30dd\u30b8\u30c8\u30ea<\/a>\u304b\u3089\u78ba\u8a8d\u3067\u304d\u307e\u3059\u3002\u305d\u306e\u4e3b\u306a\u6a5f\u80fd\u306f<span style=\"font-family: 'courier new', courier, monospace;\">Payload<\/span>\u30af\u30e9\u30b9\u5185\u306b\u5b9f\u88c5\u3055\u308c\u3066\u3044\u307e\u3059\u3002<span style=\"font-family: 'courier new', courier, monospace;\">Payload<\/span>\u30af\u30e9\u30b9\u306estart\u30e1\u30bd\u30c3\u30c9\u306f<span style=\"font-family: 'courier new', courier, monospace;\">MainService<\/span>\u30af\u30e9\u30b9\u304b\u3089\u547c\u3073\u51fa\u3055\u308c\u307e\u3059\u3002\u3053\u306e<span style=\"font-family: 'courier new', courier, monospace;\">MainService<\/span>\u30af\u30e9\u30b9\u306f\u4ee5\u4e0b\u306e\u3044\u305a\u308c\u304b\u306e\u65b9\u6cd5\u3067\u8d77\u52d5\u3055\u308c\u307e\u3059\u3002<\/p>\n<ul>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">MainActivity<\/span>\u30af\u30e9\u30b9\u306b\u3088\u3063\u3066\u8d77\u52d5\u3059\u308b<\/li>\n<li>\u30c7\u30d0\u30a4\u30b9\u306e\u30d6\u30fc\u30c8 \u30b7\u30fc\u30b1\u30f3\u30b9\u7d42\u4e86\u6642\u306b<span style=\"font-family: 'courier new', courier, monospace;\">MainBroadcastReceiver<\/span>\u30af\u30e9\u30b9\u306b\u3088\u3063\u3066\u81ea\u52d5\u7684\u306b\u8d77\u52d5\u3059\u308b<\/li>\n<\/ul>\n<p><span style=\"font-family: 'courier new', courier, monospace;\">Payload<\/span>\u30af\u30e9\u30b9\u306e<span style=\"font-family: 'courier new', courier, monospace;\">main<\/span>\u30e1\u30bd\u30c3\u30c9\u306f\u4ee5\u4e0b\u306e\u4e00\u9023\u306e\u52d5\u4f5c\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002<\/p>\n<ol>\n<li>byte\u914d\u5217 <span style=\"font-family: 'courier new', courier, monospace;\">configBytes<\/span> (\u56f32)\u306b\u683c\u7d0d\u3055\u308c\u3066\u3044\u308b\u30cf\u30fc\u30c9\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30a8\u30af\u30b9\u30d7\u30ed\u30a4\u30c8\u69cb\u6210\u3092\u30d1\u30fc\u30b9\u3059\u308b\n<ul>\n<li>\u6ce8: \u3053\u308c\u306f\u4e00\u5207\u96e3\u8aad\u5316\u3055\u308c\u3066\u3044\u306a\u3044(\u305f\u3068\u3048\u3070TCP\u3084HTTP\u306e\u30ea\u30e2\u30fc\u30c8 \u30db\u30b9\u30c8 \u30a2\u30c9\u30ec\u30b9\u3084\u30dd\u30fc\u30c8\u304c\u5e73\u6587\u3067\u898b\u3048\u308b)<\/li>\n<\/ul>\n<\/li>\n<li>PowerManager\u306e\u30b7\u30b9\u30c6\u30e0 \u30b5\u30fc\u30d3\u30b9\u6a5f\u80fd\u3067\u3042\u308bpartial wake lock\u6a5f\u80fd\u3092\u4f7f\u3044\u3001Android\u30c7\u30d0\u30a4\u30b9\u306eCPU(\u4e2d\u592e\u51e6\u7406\u88c5\u7f6e)\u3092\u30aa\u30f3\u306e\u307e\u307e\u306b\u3059\u308b<\/li>\n<li>\u8981\u6c42\u3055\u308c\u305f\u5834\u5408\u306f\u30a2\u30a4\u30b3\u30f3\u306e\u30a2\u30d7\u30ea\u3092\u975e\u8868\u793a\u306b\u3059\u308b<\/li>\n<li>\u30de\u30eb\u30a6\u30a7\u30a2\u4f5c\u8005\u304c\u7ba1\u7406\u3059\u308b\u30ea\u30e2\u30fc\u30c8 \u30db\u30b9\u30c8\u3078\u306e\u30bd\u30b1\u30c3\u30c8\u63a5\u7d9a\u3092\u78ba\u7acb\u3059\u308b<\/li>\n<li>\u63a5\u7d9a\u304c\u6210\u529f\u3057\u305f\u6642\u70b9\u3067\u7b2c2\u6bb5\u968e\u306e\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3001\u3059\u3079\u3066\u306e\u6a5f\u80fd\u3092\u5b9f\u88c5\u3059\u308b(<span style=\"font-family: 'courier new', courier, monospace;\">dump_sms<\/span>\u30b3\u30de\u30f3\u30c9\u306a\u3069)<\/li>\n<\/ol>\n<p>\u4eca\u56de\u53d6\u308a\u4e0a\u3052\u305fAPK\u306e\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306e\u5834\u5408\u3001\u4ee5\u4e0b\u306e\u4e00\u9023\u306e\u30aa\u30da\u30ec\u30fc\u30b7\u30e7\u30f3\u306b\u3088\u308a\u3053\u306eMeterpreter\u30da\u30a4\u30ed\u30fc\u30c9\u304c\u8d77\u52d5\u3057\u307e\u3059\u3002<\/p>\n<ol>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">AndroidManifest.xml<\/span>\u30d5\u30a1\u30a4\u30eb\u3067\u5ba3\u8a00\u3055\u308c\u3066\u3044\u308b\u3068\u304a\u308a<span style=\"font-family: 'courier new', courier, monospace;\">BOOT_COMPLETED<\/span>\u30a2\u30af\u30b7\u30e7\u30f3\u3092\u53d7\u3051\u3066<span style=\"font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt.eluad.Vojnd<\/span>\u3068\u3044\u3046\u30b5\u30fc\u30d3\u30b9\u304c\u958b\u59cb\u3059\u308b<\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt.eluad.C2094e<\/span>\u3068\u3044\u3046\u540d\u524d\u306e\u30b9\u30ec\u30c3\u30c9\u304c\u751f\u6210\u3055\u308c\u3066\u5b9f\u884c\u3055\u308c\u308b<\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">com.dominapp.supergpt.eluad.Dapjs<\/span>\u3068\u3044\u3046\u30d1\u30c3\u30b1\u30fc\u30b8 \u30af\u30e9\u30b9\u306emain\u30e1\u30bd\u30c3\u30c9\u304c\u547c\u3073\u51fa\u3055\u308c\u308b<\/li>\n<\/ol>\n<figure id=\"attachment_128657\" aria-describedby=\"caption-attachment-128657\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128657 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/word-image-128648-4.png\" alt=\"\u753b\u50cf4\u306fMeterpreter\u306e\u30da\u30a4\u30ed\u30fc\u30c9\u306b\u7279\u5fb4\u7684\u306a\u69cb\u6210\u3092\u542b\u3080byte\u914d\u5217\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3067\u3059\u3002\" width=\"900\" height=\"179\" \/><figcaption id=\"caption-attachment-128657\" class=\"wp-caption-text\">\u56f32. Meterpreter\u30da\u30a4\u30ed\u30fc\u30c9\u306b\u7279\u5fb4\u7684\u306a\u69cb\u6210\u3092\u542b\u3080byte\u914d\u5217<\/figcaption><\/figure>\n<p>\u3053\u306eMeterpreter\u306e\u30da\u30a4\u30ed\u30fc\u30c9\u306f\u3001<span style=\"font-family: 'courier new', courier, monospace;\">tcp[:\/\/]Gwdidkfkf-47070[.]portmap[.]io:47070<\/span>\u3068\u3044\u3046\u30ea\u30e2\u30fc\u30c8 \u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u306b\u63a5\u7d9a\u3059\u308b\u3088\u3046\u69cb\u6210\u3055\u308c\u3066\u3044\u307e\u3059\u3002<a href=\"https:\/\/portmap.io\" target=\"_blank\" rel=\"noopener\">Portmap.io<\/a>\u3068\u3044\u3046\u306e\u306f\u30dd\u30fc\u30c8 \u30d5\u30a9\u30ef\u30fc\u30c7\u30a3\u30f3\u30b0\u3092\u7121\u511f\u3067\u884c\u3046\u30b5\u30fc\u30d3\u30b9\u3067\u3059\u3002<\/p>\n<h2><a id=\"post-128696-_1pxfnk7p1kcu\"><\/a>\u8a3c\u660e\u66f8\u306e\u5c5e\u6027<\/h2>\n<p>\u3053\u306e\u30b5\u30f3\u30d7\u30eb\u306e\u30c7\u30b8\u30bf\u30eb\u7f72\u540d\u306b\u4f7f\u308f\u308c\u305f\u30b3\u30fc\u30c9\u30b5\u30a4\u30cb\u30f3\u30b0\u8a3c\u660e\u66f8\u306f\u3001\u6b21\u306e\u7279\u5fb4\u3092\u6301\u3064\u653b\u6483\u8005\u306e\u3082\u306e\u3067\u3057\u305f\u3002<\/p>\n<ul>\n<li>\u30e1\u30fc\u30eb \u30a2\u30c9\u30ec\u30b9 \u2013 <span style=\"font-family: 'courier new', courier, monospace;\">lkpandey950@gmail[.]com<\/span><\/li>\n<li>\u7d44\u7e54\u306e\u30b3\u30e2\u30f3 \u30cd\u30fc\u30e0 (CN) \u2013 Hax4Us<\/li>\n<li>\u6240\u5728\u5730 \u2013 \u30a4\u30f3\u30c9 \u30c7\u30ea\u30fc\u5e02\u30b7\u30e3\u30fc\u30c0\u30e9 (Shahdara, Delhi, India)<\/li>\n<li>\u8a3c\u660e\u66f8\u306e\u6709\u52b9\u671f\u9593 \u2013 2020-07-17 11:08:41 UTC \u304b\u3089 2047-12-02 11:08:41 UTC<\/li>\n<li>\u30b7\u30ea\u30a2\u30eb\u30ca\u30f3\u30d0\u30fc \u2013 <span style=\"font-family: 'courier new', courier, monospace;\">1a505d53b1c75046a81acb021fdb5f99936b75db<\/span><\/li>\n<li>SHA-1\u30b5\u30e0\u30d7\u30ea\u30f3\u30c8 \u2013 <span style=\"font-family: 'courier new', courier, monospace;\">65094A64233F818AEF5A4EDE90AC1D0C5A569A8B<\/span><\/li>\n<\/ul>\n<p>\u3053\u306e\u8a3c\u660e\u66f8\u306fVirusTotal\u4e0a\u306b\u516c\u958b\u3055\u308c\u3066\u3044\u308b\u307b\u304b\u306e100\u4ee5\u4e0a\u306e\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306b\u6dfb\u4ed8\u3055\u308c\u3066\u3044\u308b\u3082\u306e\u3067\u3057\u305f(\u56f33\u53c2\u7167)\u3002<\/p>\n<p><figure id=\"attachment_128659\" aria-describedby=\"caption-attachment-128659\" style=\"width: 887px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128659 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/word-image-128648-5.png\" alt=\"\u753b\u50cf5\u306fVirusTotal\u306e\u691c\u7d22\u30af\u30a8\u30ea\u30fc\u753b\u9762\u3067\u3059\u3002\u5404\u5217\u306b\u306fDetections (\u691c\u51fa\u6570)\u3001Size (\u30b5\u30a4\u30ba)\u3001First seen (\u521d\u8a8d\u65e5\u6642)\u304c\u8a18\u8f09\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u30b5\u30f3\u30d7\u30eb\u306b\u306f\u3001android\u3001obfuscated\u3001reflection\u3001telephony\u306a\u3069\u306e\u30bf\u30b0\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002\" width=\"887\" height=\"358\" \/><figcaption id=\"caption-attachment-128659\" class=\"wp-caption-text\">\u56f33. VirusTotal\u306e\u691c\u7d22\u30af\u30a8\u30ea\u30fc Androguard: \"<span style=\"font-family: 'courier new', courier, monospace;\">C:IN, CN:hax4us<\/span>, <span style=\"font-family: 'courier new', courier, monospace;\">L:shahdara<\/span>, <span style=\"font-family: 'courier new', courier, monospace;\">O:hax4us<\/span>, <span style=\"font-family: 'courier new', courier, monospace;\">ST:delhi<\/span>, <span style=\"font-family: 'courier new', courier, monospace;\">email:lkpandey950@gmail[.]com.<\/span>\"\u306e\u90e8\u5206\u7684\u7d50\u679c\u306e\u30b9\u30ca\u30c3\u30d7\u30b7\u30e7\u30c3\u30c8<\/figcaption><\/figure>\u3053\u308c\u306b\u5bfe\u3057\u3001\u6b63\u898f\u30a2\u30d7\u30ea\u306f\u6c4e\u7528\u7684\u306a\u8a3c\u660e\u66f8\u3067\u96fb\u5b50\u7f72\u540d\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<h1><a id=\"post-128696-_mrt4v9a9hiub\"><\/a>SMS\u304b\u3089\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u3078<\/h1>\n<p>\u3079\u3064\u306eAPK\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u3082\u898b\u3064\u304b\u308a\u307e\u3057\u305f\u3002\u4e00\u898b\u3001\u3053\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u306fChatGPT\u306e\u8aac\u660e\u3092\u542b\u3080\u4ee5\u4e0b\u306eWeb\u30da\u30fc\u30b8(\u56f34)\u3092\u63d0\u793a\u3057\u3066\u3044\u308b\u3060\u3051\u306b\u898b\u3048\u307e\u3059\u304c\u3001\u305d\u306e\u88cf\u306b\u3058\u3064\u306f\u4e0d\u5409\u306a\u610f\u56f3\u304c\u96a0\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_128661\" aria-describedby=\"caption-attachment-128661\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128661 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/word-image-128648-6.png\" alt=\"\u753b\u50cf6\u306fChatGPT\u306b\u95a2\u3059\u308bWeb\u30da\u30fc\u30b8\u306e\u8a18\u4e8b(ChatGPT: optimizing language models for dialogue)\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3067\u3059\u3002\u30ed\u30dc\u30c3\u30c8\u306e\u982d\u306bChatGPT\u3068\u3044\u3046\u6587\u5b57\u304c\u66f8\u304b\u308c\u305f\u753b\u50cf\u304c\u3042\u308a\u3001\u305d\u306e\u4e0b\u3067ChatGPT\u306b\u3064\u3044\u3066\u8a73\u3057\u304f\u8aac\u660e\u3057\u3066\u3044\u307e\u3059\u3002\" width=\"900\" height=\"604\" \/><figcaption id=\"caption-attachment-128661\" class=\"wp-caption-text\">\u56f34. ChatGPT: Optimizing Language Models for Dialogue. (ChatGPT: \u5bfe\u8a71\u306e\u305f\u3081\u306e\u8a00\u8a9e\u30e2\u30c7\u30eb\u6700\u9069\u5316)<span style=\"font-family: 'courier new', courier, monospace;\">hxxps[:\/\/]apkafe[.]com\/what-is-chatgpt<\/span><\/figcaption><\/figure>\n<figure id=\"attachment_128663\" aria-describedby=\"caption-attachment-128663\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-128663 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2023\/06\/word-image-128648-7.png\" alt=\"\u753b\u50cf7\u306fOpenAI\u306e\u30ed\u30b4\u3068\u30ed\u30b4\u30bf\u30a4\u30d7\u3067\u3059\u3002 \" width=\"900\" height=\"245\" \/><figcaption id=\"caption-attachment-128663\" class=\"wp-caption-text\">\u56f35. OpenAI\u306e\u30ed\u30b4\u3068\u30ed\u30b4\u30bf\u30a4\u30d7<\/figcaption><\/figure>\n<p>\u3055\u3089\u306b\u3053\u308c\u3089\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306f\u3059\u3079\u3066ChatGPT\u3068\u306e\u95a2\u9023\u3067\u3088\u304f\u4f7f\u308f\u308c\u308bOpenAI\u306e\u30ed\u30b4(\u56f35)\u3092\u30a2\u30d7\u30ea \u30a2\u30a4\u30b3\u30f3\u3068\u3057\u3066\u5171\u6709\u3059\u308b\u3053\u3068\u3067\u3001\u3053\u306e\u30a2\u30d7\u30ea\u304cAI\u30c4\u30fc\u30eb ChatGPT\u3068\u95a2\u9023\u3057\u3066\u3044\u308b\u304b\u306e\u3088\u3046\u306a\u96f0\u56f2\u6c17\u3092\u91b8\u3057\u51fa\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u3053\u308c\u3089APK\u306e\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306f\u3001\u30bf\u30a4(TH)\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u306bSMS\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u9001\u4fe1\u3067\u304d\u307e\u3059\u3002\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306b\u96fb\u8a71\u3092\u304b\u3051\u305f\u5834\u5408\u3001\u4f55\u3089\u304b\u306e\u30b5\u30fc\u30d3\u30b9(\u305f\u3068\u3048\u3070\u30e6\u30fc\u30b6\u30fc\u306b\u3088\u308b\u60c5\u5831\u63d0\u4f9b\u306a\u3069)\u304c\u63d0\u4f9b\u3055\u308c\u308b\u4ee3\u308f\u308a\u306b\u96fb\u8a71\u6599\u91d1\u304c\u5272\u308a\u5897\u3057\u3055\u308c\u307e\u3059\u3002\u3053\u306e\u53ce\u76ca\u3092\u30b5\u30fc\u30d3\u30b9\u306e\u63d0\u4f9b\u4e8b\u696d\u8005\u304c\u56de\u53ce\u3059\u308b\u306e\u3067\u3059\u304c\u3001\u3053\u308c\u3092\u60aa\u7528\u3057\u3001\u8a50\u6b3a\u3084\u4e0d\u6b63\u884c\u70ba\u304c\u884c\u308f\u308c\u308b\u3053\u3068\u3082\u3042\u308a\u307e\u3059\u3002\u53c2\u8003\u307e\u3067\u306b\u516c\u5f0f\u306e<a href=\"https:\/\/android.googlesource.com\/platform\/frameworks\/base\/+\/master\/core\/res\/res\/xml\/sms_short_codes.xml#258\" target=\"_blank\" rel=\"noopener\">Android Open Source Project (AOSP)\u30b3\u30fc\u30c9\u30d9\u30fc\u30b9\u306b\u306f<\/a>\u56fd\u5225\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u96fb\u8a71\u756a\u53f7\u306e\u30ea\u30b9\u30c8\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u30a2\u30d7\u30ea\u306fSMS\u306b\u3088\u308b\u30c6\u30ad\u30b9\u30c8 \u30e1\u30c3\u30bb\u30fc\u30b8\u9001\u4fe1\u306e\u305f\u3081\u306bAndroid\u306e<span style=\"font-family: 'courier new', courier, monospace;\">android.permission.SEND_SMS<\/span>\u3068\u3044\u3046\u6a29\u9650\u3092\u8981\u6c42\u3057\u3001<span style=\"font-family: 'courier new', courier, monospace;\">\"country\":\"thailand\"<\/span>\u3078\u306e\u53c2\u7167\u304c<span style=\"font-family: 'courier new', courier, monospace;\">ContentValue<\/span>\u3068\u3057\u3066\u6e21\u3055\u308c\u307e\u3059\u3002\u307e\u305f\u3053\u308c\u3089\u306e\u30b5\u30f3\u30d7\u30eb\u306f\u3001\u30e1\u30fc\u30eb\u3084SMS\u3001\u30a2\u30d7\u30ea\u5185\u901a\u77e5\u306a\u3069\u3001\u30a2\u30d7\u30ea\u304c\u30d7\u30c3\u30b7\u30e5\u901a\u77e5\u3067\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u9001\u308c\u308b\u30b5\u30fc\u30d3\u30b9\u300c<a href=\"https:\/\/onesignal.com\" target=\"_blank\" rel=\"noopener\">OneSignal<\/a>\u300d\u3092\u4f7f\u3063\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u305f\u3068\u3048\u3070<span style=\"font-family: 'courier new', courier, monospace;\">hxxps[:\/\/]api[.]onesignal[.]com\/apps\/<strong>af63b434-ec50-46a0-9374-d57a383f2e03<\/strong>\/android_params[.]js<\/span>\u3068\u3044\u3046URL\u304b\u3089\u5f97\u3089\u308c\u305f\u69cb\u6210\u5185\u5bb9\u3092\u518d\u73fe\u3059\u308b\u3068\u4ee5\u4e0b\u306e\u3088\u3046\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p><em>(OneSignal\u306eapp ID\u306f<\/em><span style=\"font-family: 'courier new', courier, monospace;\"><strong><em>af63b434-ec50-46a0-9374-d57a383f2e03<\/em><\/strong><\/span>)<\/p>\n<p><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">{<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\"awl_list\": {},<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\"><span style=\"font-weight: 400;\">\u00a0\u00a0\"android_sender_id\": \"<\/span><b>660194064544<\/b><span style=\"font-weight: 400;\">\",<\/span><\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\"chnl_lst\": [],<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\"outcomes\": {<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\"direct\": {<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"enabled\": false<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0},<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\"indirect\": {<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"notification_attribution\": {<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"minutes_since_displayed\": 60,<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"limit\": 10<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0},<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"enabled\": false<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0},<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\"unattributed\": {<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\"enabled\": false<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\u00a0\u00a0}<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0},<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0\"receive_receipts_enable\": false<\/span><br \/>\n<span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">}<\/span><\/p>\n<p><span style=\"font-family: 'courier new', courier, monospace;\">android_sender_id<\/span>\u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8a2d\u5b9a\u3055\u308c\u3066\u3044\u308b\u30d5\u30a9\u30fc\u30de\u30c3\u30c8\u6e08\u307f\u96fb\u8a71\u756a\u53f7\u306e\u5024\u306f<strong>+661-9406-4544<\/strong>\u3067\u3059\u3002<\/p>\n<p>\u3053\u308c\u3089\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306f\u3001\u6c4e\u7528\u7684\u306a\u8a3c\u660e\u66f8\u306b\u3088\u308a\u30c7\u30b8\u30bf\u30eb\u7f72\u540d\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u305d\u306e\u307b\u304b\u306e\u4e3b\u306a\u5c5e\u6027\u306f\u4ee5\u4e0b\u306e\u88683\u306b\u793a\u3057\u305f\u3068\u304a\u308a\u3067\u3059\u3002<\/p>\n<table style=\"width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 37.2346%;\"><b>Validity<\/b><\/td>\n<td style=\"width: 74.0157%;\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">From 2008-02-29 01:33:46 UTC<\/span><\/p>\n<p><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">\u00a0\u00a0To 2035-07-17 01:33:46 UTC<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2346%;\"><b>Serial number<\/b><\/td>\n<td style=\"width: 74.0157%;\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">936eacbe07f201df<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 37.2346%;\"><b>Thumbprint (SHA-1)<\/b><\/td>\n<td style=\"width: 74.0157%;\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">61ED377E85D386A8DFEE6B864BD85B0BFAA5AF81<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"font-size: 8pt; color: #999999;\"><em>\u88683 Type II APK\u30b5\u30f3\u30d7\u30eb\u306e\u30b3\u30fc\u30c9\u30b5\u30a4\u30cb\u30f3\u30b0\u8a3c\u660e\u66f8\u306e\u5c5e\u6027<\/em><\/span><\/p>\n<p>\u3053\u306e\u30b5\u30f3\u30d7\u30eb \u30af\u30e9\u30b9\u30bf\u30fc\u306f\u3001\u5171\u901a\u3059\u308b\u7279\u5fb4\u304c\u8907\u6570\u3042\u308b2\u3064\u306e\u5c0f\u3055\u306a\u30d0\u30c3\u30c1\u306b\u5206\u3051\u3089\u308c\u307e\u3059\u3002\u30d0\u30c3\u30c11\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306f\u3001\u30cf\u30fc\u30c9\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30bf\u30a4\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u306e1\u3064\u306bSMS\u306e\u30c6\u30ad\u30b9\u30c8 \u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u9001\u4fe1\u3057\u3001OneSignal\u30b5\u30fc\u30d3\u30b9\u3092\u5229\u7528\u3059\u308b\u3082\u306e\u3067\u3059\u3002\u30d0\u30c3\u30c12\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306f\u3001\u305d\u308c\u3068\u306f\u307e\u305f\u3079\u3064\u306e\u30cf\u30fc\u30c9\u30b3\u30fc\u30c9\u3055\u308c\u305f\u30bf\u30a4\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u756a\u53f72\u3064\u306b\u7570\u306a\u308bSMS\u30c6\u30ad\u30b9\u30c8\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u9001\u4fe1\u3057\u3001\u5916\u90e8\u306eOneSignal\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u304b\u3089\u69cb\u6210\u3092\u53d6\u5f97\u3057\u307e\u305b\u3093\u3002<\/p>\n<p>\u30d0\u30c3\u30c11\u306b\u5c5e\u3059\u308bAPK\u30b5\u30f3\u30d7\u30eb\u306f\u3001\u30d0\u30c3\u30c12\u306b\u5c5e\u3059\u308bAPK\u30b5\u30f3\u30d7\u30eb\u3068\u6bd4\u3079\u3066\u5c0f\u3055\u3044\u30d0\u30fc\u30b8\u30e7\u30f3\u756a\u53f7\u3092\u3082\u3061\u307e\u3059\u3002\u3053\u306e\u3053\u3068\u304b\u3089\u3001\u30d0\u30c3\u30c11\u306f\u30d0\u30c3\u30c12\u3088\u308a\u3082\u30de\u30eb\u30a6\u30a7\u30a2\u958b\u767a\u306e\u521d\u671f\u6bb5\u968e\u306e\u3082\u306e\u3067\u3042\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002\u3053\u306e\u4eee\u8aac\u306fVirusTotal\u4e0a\u3067\u306e\u3053\u308c\u3089APK\u30b5\u30f3\u30d7\u30eb\u306e\u521d\u63d0\u4f9b\u65e5\u6642\u306e\u30bf\u30a4\u30e0\u30b9\u30bf\u30f3\u30d7\u304c\u30d0\u30c3\u30c11\u306f2023\u5e742\u6708\u3067\u30d0\u30c3\u30c12\u304c2023\u5e743\u6708\u3067\u3042\u308b\u3053\u3068\u304b\u3089\u3082\u77db\u76fe\u306f\u3057\u307e\u305b\u3093\u3002<\/p>\n<h2><a id=\"post-128696-_9s83fhlid7gh\"><\/a>\u30d0\u30c3\u30c11<\/h2>\n<p>\u3053\u306e\u30d0\u30c3\u30c1\u306b\u542b\u307e\u308c\u308b\u30b5\u30f3\u30d7\u30eb\u306eSHA-256\u30cf\u30c3\u30b7\u30e5\u306f\u6b21\u306e\u3068\u304a\u308a\u3067\u3059\u3002<\/p>\n<ul>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">2980329fa5eaed0f5625e961572f7ae8136ca7df30cca9e9c8783c827627b692<\/span><\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">391e8f394af425f1e7edff6aea1605aa89f2fb0233c44e70cff265fc60ec3b1b<\/span><\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">d1844bf3865c7d2e4745baa2496297937821171d7a3ad4412b0a4e767bc32b5e<\/span><\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">d1b1813f7975b7117931477571a2476decff41f124b84cc7a2074dd00b5eba7c<\/span><\/li>\n<\/ul>\n<p>\u3053\u306e\u30d0\u30c3\u30c1\u306e\u30b5\u30f3\u30d7\u30eb\u306e\u9759\u7684\u5c5e\u6027\u3092\u4ee5\u4e0b\u306e\u88684\u306b\u307e\u3068\u3081\u307e\u3059\u3002<\/p>\n<table style=\"width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 30%;\"><b>\u30d1\u30c3\u30b1\u30fc\u30b8\u540d<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\">\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.chatgpt.tl<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.gg.gptchatt<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.chatgpt.go<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.chatgpt.ogothai<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>MainActivity<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\">\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">chatgpt.subth.MainActivity<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">tikitaka.sub.MainActivity<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>\u30d0\u30fc\u30b8\u30e7\u30f3\u540d(\u30b3\u30fc\u30c9)<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400;\">chatgpt (183)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\" rowspan=\"2\"><b>Android\u306e\u30d0\u30fc\u30b8\u30e7\u30f3<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400;\">\u6700\u4f4e\u8981\u4ef6: API level 18 (Android 4.3)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400;\">\u30bf\u30fc\u30b2\u30c3\u30c8: API level 30 (Android 11)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>\u30bf\u30b0<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\">\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">GTA_TT<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">ChatGPT<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>VirusTotal\u3078\u306e\u521d\u56de\u63d0\u4f9b\u65e5\u6642\u306e\u30bf\u30a4\u30e0\u30b9\u30bf\u30f3\u30d7 (UTC)<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400;\">2023-02-02 08:37:23 \u304b\u3089 2023-02-07 03:08:33 \u307e\u3067\u306e\u9593<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\" colspan=\"3\">\n<p style=\"text-align: center;\"><strong><i>OneSignal\u306e\u69cb\u6210<\/i><\/strong><\/p>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>App ID<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">af63b434-ec50-46a0-9374-d57a383f2e03<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 30%;\"><b>Android\u306esender ID<\/b><\/td>\n<td style=\"width: 70%;\" colspan=\"2\"><span style=\"font-weight: 400;\">+661-9406-4544<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"font-size: 8pt; color: #999999;\"><i><span style=\"font-weight: 400;\">\u88684 \u30d0\u30c3\u30c11\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306e\u9759\u7684\u5c5e\u6027<\/span><\/i><\/span><\/p>\n<h2><a id=\"post-128696-_3jdw1m1tus07\"><\/a>\u30d0\u30c3\u30c12<\/h2>\n<p>\u3053\u306e\u30d0\u30c3\u30c1\u306b\u542b\u307e\u308c\u308b\u30b5\u30f3\u30d7\u30eb\u306eSHA-256\u30cf\u30c3\u30b7\u30e5\u306f\u6b21\u306e\u3068\u304a\u308a\u3067\u3059\u3002<\/p>\n<ul>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">b787d5ef4a0c350a9f62f55907c8ef6d92bf7699b8544fabff5a263e52a2d0d1<\/span><\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">be757541584cc2dc2e7adacf7a5186be07d474f06c8698a938589f86ce56ea34<\/span><\/li>\n<li><span style=\"font-family: 'courier new', courier, monospace;\">e9bb6d04d796eb147b9d73a7df91fb9e6a99e0be8a41a61329d600a9dfe8b1ae<\/span><\/li>\n<\/ul>\n<p>\u3053\u306e\u30d0\u30c3\u30c1\u306e\u30b5\u30f3\u30d7\u30eb\u306e\u9759\u7684\u5c5e\u6027\u3092\u4ee5\u4e0b\u306e\u88685\u306b\u307e\u3068\u3081\u307e\u3059\u3002<\/p>\n<table style=\"width: 120%;\">\n<tbody>\n<tr>\n<td style=\"width: 20%;\"><b>\u30d5\u30a1\u30a4\u30eb \u30b5\u30a4\u30ba<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400;\">1.249MB (1,309,619\u30d0\u30a4\u30c8)<\/span><\/td>\n<\/tr>\n<tr>\n<td><b>\u30d1\u30c3\u30b1\u30fc\u30b8\u540d<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">com.chatgpt.ggmmtlan<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><b>MainActivity<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">ggtlan.sub.MainActivity<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><b>\u30d0\u30fc\u30b8\u30e7\u30f3\u540d(\u30b3\u30fc\u30c9)<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400;\">chatgpt (200)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\" rowspan=\"2\"><b>Android\u306e\u30d0\u30fc\u30b8\u30e7\u30f3<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400;\">\u6700\u4f4e\u8981\u4ef6: API level 22 (Android 5.1)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400;\">\u30bf\u30fc\u30b2\u30c3\u30c8: API level 30 (Android 11)<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><b>VirusTotal\u3078\u306e\u521d\u56de\u63d0\u4f9b\u65e5\u6642\u306e\u30bf\u30a4\u30e0\u30b9\u30bf\u30f3\u30d7 (UTC)<\/b><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><b>SHA-256\u30cf\u30c3\u30b7\u30e5<\/b><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><span style=\"font-weight: 400;\">2023-03-08 22:16:21<\/span><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">be757541584cc2dc2e7adacf7a5186be07d474f06c8698a938589f86ce56ea34<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><span style=\"font-weight: 400;\">2023-03-10 12:00:23<\/span><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">e9bb6d04d796eb147b9d73a7df91fb9e6a99e0be8a41a61329d600a9dfe8b1ae<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 20%;\"><span style=\"font-weight: 400;\">2023-03-17 10:19:14<\/span><\/td>\n<td style=\"width: 80%;\" colspan=\"2\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">b787d5ef4a0c350a9f62f55907c8ef6d92bf7699b8544fabff5a263e52a2d0d1<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"color: #999999; font-size: 8pt;\"><i><span style=\"font-weight: 400;\">\u88685 \u30d0\u30c3\u30c12\u306eAPK\u30b5\u30f3\u30d7\u30eb\u306e\u9759\u7684\u5c5e\u6027<\/span><\/i><\/span><\/p>\n<h1><a id=\"post-128696-_2ppj4li8j1wa\"><\/a>\u7d50\u8ad6<\/h1>\n<p>ChatGPT\u3092\u30c6\u30fc\u30de\u3068\u3059\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u51fa\u73fe\u306f\u3001\u30e2\u30d0\u30a4\u30eb \u30c7\u30d0\u30a4\u30b9\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3068\u30d7\u30e9\u30a4\u30d0\u30b7\u30fc\u306b\u5bfe\u3059\u308b\u6df1\u523b\u306a\u8105\u5a01\u3068\u306a\u3063\u3066\u3044\u307e\u3059\u3002\u3053\u306e\u7a2e\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u306f\u3001\u6a5f\u5fae\u60c5\u5831\u306e\u7a83\u53d6\u3084\u30e6\u30fc\u30b6\u30fc\u306e\u884c\u52d5\u76e3\u8996\u3001\u7121\u9632\u5099\u306a\u88ab\u5bb3\u8005\u306b\u5bfe\u3059\u308b\u751a\u5927\u306a\u91d1\u92ad\u7684\u640d\u5931\u306a\u3069\u3092\u3082\u305f\u3089\u3059\u61f8\u5ff5\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u3053\u3046\u3057\u305f\u30de\u30eb\u30a6\u30a7\u30a2\u304b\u3089\u81ea\u8eab\u3092\u5b88\u308b\u305f\u3081\u3001\u30e2\u30d0\u30a4\u30eb\u7aef\u672b\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306f\u4e88\u9632\u7684\u5bfe\u7b56\u3092\u8b1b\u3058\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\u305f\u3068\u3048\u3070\u3001\u4fe1\u983c\u3067\u304d\u308b\u30a6\u30a4\u30eb\u30b9\u5bfe\u7b56\u30bd\u30d5\u30c8\u30a6\u30a7\u30a2\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u3001\u30b5\u30fc\u30c9\u30d1\u30fc\u30c6\u30a3\u304b\u3089\u306e\u30a2\u30d7\u30ea \u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u306b\u306f\u614e\u91cd\u306b\u306a\u308b\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30d1\u30c3\u30c1\u3067\u30c7\u30d0\u30a4\u30b9\u3092\u6700\u65b0\u306b\u4fdd\u3064\u306a\u3069\u3067\u3059\u3002<\/p>\n<p>\u3042\u3089\u305f\u3081\u3066\u3001\u3053\u3046\u3057\u305f\u30e2\u30d0\u30a4\u30eb \u30de\u30eb\u30a6\u30a7\u30a2\u306e\u8105\u5a01\u306f\u3001\u30e2\u30d0\u30a4\u30eb \u30c7\u30d0\u30a4\u30b9\u306b\u304a\u3051\u308b\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u306e\u91cd\u8981\u6027\u3092\u5168\u9762\u7684\u306b\u6d6e\u304d\u5f6b\u308a\u306b\u3059\u308b\u3082\u306e\u3068\u3044\u3048\u307e\u3059\u3002\u8b66\u6212\u3092\u6020\u3089\u305a\u7a4d\u6975\u7684\u306b\u30c7\u30d0\u30a4\u30b9\u3092\u4fdd\u8b77\u3059\u308b\u3053\u3068\u304c\u3001\u3053\u3046\u3057\u305f\u5371\u967a\u306a\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u62e1\u6563\u3092\u9632\u304e\u3001\u6f5c\u5728\u7684\u306a\u88ab\u5bb3\u304b\u3089\u81ea\u8eab\u3092\u5b88\u308b\u3053\u3068\u306b\u3064\u306a\u304c\u308a\u307e\u3059\u3002<\/p>\n<p><a href=\"https:\/\/docs-cortex.paloaltonetworks.com\/p\/XDR\" target=\"_blank\" rel=\"noopener\">Cortex XDR<\/a>\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/ngfw\" target=\"_blank\" rel=\"noopener\">\u6b21\u4e16\u4ee3\u30d5\u30a1\u30a4\u30a2\u30a6\u30a9\u30fc\u30eb\u306eNGFW\u30b7\u30ea\u30fc\u30ba<\/a>\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/wildfire\" target=\"_blank\" rel=\"noopener\">WildFire<\/a>\u3092\u3054\u5229\u7528\u306e\u30d1\u30ed\u30a2\u30eb\u30c8\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30b9\u306e\u304a\u5ba2\u69d8\u306f\u3001\u672c\u7a3f\u3067\u53d6\u308a\u4e0a\u3052\u305f\u653b\u6483\u304b\u3089\u306e\u4fdd\u8b77\u3092\u53d7\u3051\u3066\u3044\u307e\u3059\u3002\u3055\u3089\u306b\u3001\u60aa\u610f\u306e\u3042\u308b\u6307\u6a19(\u30c9\u30e1\u30a4\u30f3\u3001URL\u3001\u30cf\u30c3\u30b7\u30e5)\u306f\u3001<a href=\"https:\/\/docs.paloaltonetworks.com\/dns-security\" target=\"_blank\" rel=\"noopener\">DNS Security<\/a>\u3084<a href=\"https:\/\/docs.paloaltonetworks.com\/advanced-url-filtering\/administration\" target=\"_blank\" rel=\"noopener\">Advanced URL Filtering<\/a>\u30b5\u30fc\u30d3\u30b9\u306b\u3088\u308a\u9632\u3050\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002<\/p>\n<p>\u4fb5\u5bb3\u306e\u61f8\u5ff5\u304c\u3042\u308a\u5f0a\u793e\u306b\u30a4\u30f3\u30b7\u30c7\u30f3\u30c8\u30ec\u30b9\u30dd\u30f3\u30b9\u306b\u95a2\u3059\u308b\u3054\u76f8\u8ac7\u3092\u306a\u3055\u308a\u305f\u3044\u5834\u5408\u306f\u3001<a href=\"https:\/\/start.paloaltonetworks.jp\/contact-unit42.html\" target=\"_blank\" rel=\"noopener\">\u3053\u3061\u3089\u306e\u30d5\u30a9\u30fc\u30e0<\/a>\u304b\u3089\u3054\u9023\u7d61\u3044\u305f\u3060\u304f\u304b\u3001infojapan@paloaltonetworks.com\u307e\u3067\u30e1\u30fc\u30eb\u306b\u3066\u3054\u9023\u7d61\u3044\u305f\u3060\u304f\u304b\u3001\u4e0b\u8a18\u306e\u96fb\u8a71\u756a\u53f7\u307e\u3067\u304a\u554f\u3044\u5408\u308f\u305b\u304f\u3060\u3055\u3044(\u3054\u76f8\u8ac7\u306f\u5f0a\u793e\u88fd\u54c1\u306e\u304a\u5ba2\u69d8\u306b\u306f\u9650\u5b9a\u3055\u308c\u307e\u305b\u3093)\u3002<\/p>\n<ul>\n<li><strong>\u5317\u7c73\u30d5\u30ea\u30fc\u30c0\u30a4\u30e4\u30eb<\/strong>: 1.866.486.4842 (+1.866.4.UNIT42)<\/li>\n<li><strong>\u82f1\u56fd<\/strong>: +44.20.3743.3660<\/li>\n<li><strong>EMEA<\/strong>: +31.20.299.3130<\/li>\n<li><strong>APAC<\/strong>: +65.6983.8730<\/li>\n<li><strong>\u65e5\u672c<\/strong>: +81.50.1790.0200<\/li>\n<\/ul>\n<h2><a id=\"post-128696-_44mv3hh9vd0m\"><\/a>IoC (\u4fb5\u5bb3\u6307\u6a19)<\/h2>\n<table style=\"width: 101.023%;\">\n<tbody>\n<tr>\n<td style=\"text-align: center; width: 26.6389%;\"><b>\u30ab\u30c6\u30b4\u30ea\u30fc<\/b><\/td>\n<td style=\"text-align: center; width: 72.3057%;\"><b>SHA-256\u30cf\u30c3\u30b7\u30e5<\/b><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 26.6389%;\"><span style=\"font-weight: 400;\">APK\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb Type I<\/span><\/td>\n<td style=\"width: 72.3057%;\">\n<ul>\n<li><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">af19ca9213a20263c30584a2bf260dcdb3b4eafa4f43af10824af781573a2314<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 26.6389%;\" rowspan=\"2\"><span style=\"font-weight: 400;\">APK\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb Type II<\/span><\/td>\n<td style=\"width: 72.3057%;\">\n<p style=\"text-align: center;\"><i><span style=\"font-weight: 400;\">\u30d0\u30c3\u30c11<\/span><\/i><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">2980329fa5eaed0f5625e961572f7ae8136ca7df30cca9e9c8783c827627b692<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">391e8f394af425f1e7edff6aea1605aa89f2fb0233c44e70cff265fc60ec3b1b<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">d1844bf3865c7d2e4745baa2496297937821171d7a3ad4412b0a4e767bc32b5e<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">d1b1813f7975b7117931477571a2476decff41f124b84cc7a2074dd00b5eba7c<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 72.3057%;\">\n<p style=\"text-align: center;\"><i><span style=\"font-weight: 400;\">\u30d0\u30c3\u30c12<\/span><\/i><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">b787d5ef4a0c350a9f62f55907c8ef6d92bf7699b8544fabff5a263e52a2d0d1<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">be757541584cc2dc2e7adacf7a5186be07d474f06c8698a938589f86ce56ea34<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">e9bb6d04d796eb147b9d73a7df91fb9e6a99e0be8a41a61329d600a9dfe8b1ae<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 26.6389%;\"><span style=\"font-weight: 400;\">URL<\/span><\/td>\n<td style=\"width: 72.3057%;\">\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">hxxps[:\/\/]api[.]onesignal[.]com\/apps\/af63b434-ec50-46a0-9374-d57a383f2e03\/android_params[.]js<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">tcp[:\/\/]Gwdidkfkf-47070[.]portmap[.]io<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 26.6389%;\"><span style=\"font-weight: 400;\">\u8a3c\u660e\u66f8\u306e\u30b5\u30e0\u30d7\u30ea\u30f3\u30c8(SHA-1)<\/span><\/td>\n<td style=\"width: 72.3057%;\">\n<ul>\n<li><span style=\"font-weight: 400; font-family: 'courier new', courier, monospace;\">65094A64233F818AEF5A4EDE90AC1D0C5A569A8B<\/span><\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2><a id=\"post-128696-_akwvt7tf6krj\"><\/a>MITRE ATT&amp;CK\u306b\u3088\u308bTTP (\u6226\u8853\u30fb\u6280\u8853\u30fb\u624b\u9806)<\/h2>\n<table style=\"width: 100.848%;\">\n<tbody>\n<tr>\n<td style=\"text-align: center; width: 10.4309%;\"><b>ID<\/b><\/td>\n<td style=\"text-align: center; width: 29.6426%;\"><b>\u6280\u8853<\/b><\/td>\n<td style=\"text-align: center; width: 85.8798%;\"><b>\u8aac\u660e<\/b><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 10.4309%;\"><span style=\"font-weight: 400;\">T1582<\/span><\/td>\n<td style=\"width: 29.6426%;\"><span style=\"font-weight: 400;\">SMS Control<\/span><\/td>\n<td style=\"width: 85.8798%;\"><span style=\"font-weight: 400;\">APK\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306f\u3001\u30bf\u30a4\u306e\u6709\u6599\u60c5\u5831\u30b5\u30fc\u30d3\u30b9\u306e\u96fb\u8a71\u756a\u53f7\u306bSMS\u3092\u9001\u4fe1\u3067\u304d\u307e\u3059\u3002<\/span><\/td>\n<\/tr>\n<tr>\n<td style=\"width: 10.4309%;\"><span style=\"font-weight: 400;\">T1623<\/span><\/td>\n<td style=\"width: 29.6426%;\"><span style=\"font-weight: 400;\">Command and Scripting Interpreter<\/span><\/td>\n<td style=\"width: 85.8798%;\"><span style=\"font-weight: 400;\">APK\u30de\u30eb\u30a6\u30a7\u30a2 \u30b5\u30f3\u30d7\u30eb\u306fMeterpreter\u30b7\u30a7\u30eb\u3078\u306e\u30a2\u30af\u30bb\u30b9\u3092\u63d0\u4f9b\u3067\u304d\u307e\u3059\u3002<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2><a id=\"post-128696-_4o1quao359l9\"><\/a>\u8ffd\u52a0\u30ea\u30bd\u30fc\u30b9<\/h2>\n<ul>\n<li><a href=\"https:\/\/www.sangfor.com\/blog\/cybersecurity\/chatgpt-malware-a-new-threat-in-cybersecurity\" target=\"_blank\" rel=\"noopener\">ChatGPT Malware: A New Threat in Cybersecurity<\/a>, Sangfor Technologies<\/li>\n<li><a href=\"https:\/\/medium.com\/p\/ef5aad2ebf12\" target=\"_blank\" rel=\"noopener\">Into Android Meterpreter and how the malware launches it \u2014 part 2<\/a>, Medium<\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/chatgpt-scam-attacks-increasing\" target=\"_blank\" rel=\"noopener\">ChatGPT-Themed Scam Attacks Are on the Rise<\/a>, Unit 42, Palo Alto Networks<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u6982\u8981 Unit 42\u306e\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306f\u3001\u4eba\u6c17\u306e\u3042\u308bChatGPT\u30a2\u30d7\u30ea\u306b\u306a\u308a\u3059\u307e\u305d\u3046\u3068\u3059\u308bAndroid\u30d7\u30e9\u30c3\u30c8\u30d5\u30a9\u30fc\u30e0\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u6025\u5897\u3092\u89b3\u6e2c\u3057\u307e\u3057\u305f\u3002\u3053\u308c\u3089\u306e\u30de\u30eb\u30a6\u30a7\u30a2\u306fOpenAI\u306b\u3088\u308bGPT-3.5\u3068\u305d\u308c\u306b\u7d9a\u304fG<\/p>\n","protected":false},"author":335,"featured_media":134334,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1974,4428],"tags":[4909,5133,5135,4799],"product_categories":[4441,4443,4444,4448,4456],"coauthors":[3893,3962,1762,408,73],"class_list":["post-128696","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-malware-ja","category-threat-research-ja","tag-android-ja","tag-chatgpt-ja","tag-meterpreter-ja","tag-scams-ja","product_categories-advanced-dns-security-ja","product_categories-advanced-url-filtering-ja","product_categories-advanced-wildfire-ja","product_categories-cortex-xdr-ja","product_categories-next-generation-firewall-ja"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.0) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b<\/title>\n<meta name=\"description\" content=\"ChatGPT\u3092\u507d\u88c5\u3059\u308bAndroid\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u30e2\u30d0\u30a4\u30eb\u30e6\u30fc\u30b6\u30fc\u3092\u72d9\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\u3002\u5927\u304d\u304f2\u3064\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306b\u5206\u985e\u3055\u308c\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30b5\u30f3\u30d7\u30eb\u3092\u53d6\u308a\u4e0a\u3052\u3066\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/\" \/>\n<meta property=\"og:locale\" content=\"ja_JP\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b\" \/>\n<meta property=\"og:description\" content=\"ChatGPT\u3092\u507d\u88c5\u3059\u308bAndroid\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u30e2\u30d0\u30a4\u30eb\u30e6\u30fc\u30b6\u30fc\u3092\u72d9\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\u3002\u5927\u304d\u304f2\u3064\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306b\u5206\u985e\u3055\u308c\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30b5\u30f3\u30d7\u30eb\u3092\u53d6\u308a\u4e0a\u3052\u3066\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002\" \/>\n<meta property=\"og:url\" content=\"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/\" \/>\n<meta property=\"og:site_name\" content=\"Unit 42\" \/>\n<meta property=\"article:published_time\" content=\"2023-06-16T00:44:14+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-07-31T01:12:15+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1920\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Lee Wei Yeong, Xingjiali Zhang, Yang Ji, Wenjun Hu, Royce Lu\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b","description":"ChatGPT\u3092\u507d\u88c5\u3059\u308bAndroid\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u30e2\u30d0\u30a4\u30eb\u30e6\u30fc\u30b6\u30fc\u3092\u72d9\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\u3002\u5927\u304d\u304f2\u3064\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306b\u5206\u985e\u3055\u308c\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30b5\u30f3\u30d7\u30eb\u3092\u53d6\u308a\u4e0a\u3052\u3066\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/","og_locale":"ja_JP","og_type":"article","og_title":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b","og_description":"ChatGPT\u3092\u507d\u88c5\u3059\u308bAndroid\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u30e2\u30d0\u30a4\u30eb\u30e6\u30fc\u30b6\u30fc\u3092\u72d9\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\u3002\u5927\u304d\u304f2\u3064\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306b\u5206\u985e\u3055\u308c\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30b5\u30f3\u30d7\u30eb\u3092\u53d6\u308a\u4e0a\u3052\u3066\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002","og_url":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/","og_site_name":"Unit 42","article_published_time":"2023-06-16T00:44:14+00:00","article_modified_time":"2024-07-31T01:12:15+00:00","og_image":[{"width":1920,"height":900,"url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg","type":"image\/jpeg"}],"author":"Lee Wei Yeong, Xingjiali Zhang, Yang Ji, Wenjun Hu, Royce Lu","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#article","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/"},"author":{"name":"Yang Ji","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/ddc6deaac3d12b73f99c9108ec14bb73"},"headline":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b","datePublished":"2023-06-16T00:44:14+00:00","dateModified":"2024-07-31T01:12:15+00:00","mainEntityOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/"},"wordCount":982,"commentCount":0,"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg","keywords":["Android","ChatGPT","Meterpreter","Scams"],"articleSection":["\u30de\u30eb\u30a6\u30a7\u30a2","\u8105\u5a01\u30ea\u30b5\u30fc\u30c1"],"inLanguage":"ja","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/","url":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/","name":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#primaryimage"},"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg","datePublished":"2023-06-16T00:44:14+00:00","dateModified":"2024-07-31T01:12:15+00:00","author":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/ddc6deaac3d12b73f99c9108ec14bb73"},"description":"ChatGPT\u3092\u507d\u88c5\u3059\u308bAndroid\u5411\u3051\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u30e2\u30d0\u30a4\u30eb\u30e6\u30fc\u30b6\u30fc\u3092\u72d9\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\u3002\u5927\u304d\u304f2\u3064\u306e\u30af\u30e9\u30b9\u30bf\u30fc\u306b\u5206\u985e\u3055\u308c\u308bAPK\u30de\u30eb\u30a6\u30a7\u30a2\u306e\u30b5\u30f3\u30d7\u30eb\u3092\u53d6\u308a\u4e0a\u3052\u3066\u653b\u6483\u30d9\u30af\u30c8\u30eb\u3092\u89e3\u8aac\u3057\u307e\u3059\u3002","breadcrumb":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#breadcrumb"},"inLanguage":"ja","potentialAction":[{"@type":"ReadAction","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/"]}]},{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#primaryimage","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/07_Malware_Category_1920x900.jpg","width":1920,"height":900,"caption":"A digital concept showing a large malware alert symbol on a screen, set against a background filled with lines of computer code and network diagrams in shades of blue and pink. The word \"MALWARE\" prominently displayed within the alert symbol."},{"@type":"BreadcrumbList","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/android-malware-poses-as-chatgpt\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/unit42.paloaltonetworks.com\/ja\/"},{"@type":"ListItem","position":2,"name":"ChatGPT\u95a2\u9023\u30a2\u30d7\u30ea\u3092\u507d\u88c5\u3059\u308bAndroid\u30de\u30eb\u30a6\u30a7\u30a2\u304c\u898b\u3064\u304b\u308b"}]},{"@type":"WebSite","@id":"https:\/\/unit42.paloaltonetworks.com\/#website","url":"https:\/\/unit42.paloaltonetworks.com\/","name":"Unit 42","description":"Palo Alto Networks","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/unit42.paloaltonetworks.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ja"},{"@type":"Person","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/ddc6deaac3d12b73f99c9108ec14bb73","name":"Yang Ji","image":{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/image\/4ffb3c2d260a0150fb91b3715442f8b3","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","caption":"Yang Ji"},"url":"https:\/\/unit42.paloaltonetworks.com\/ja\/author\/yang-ji\/"}]}},"_links":{"self":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/128696","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/users\/335"}],"replies":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/comments?post=128696"}],"version-history":[{"count":9,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/128696\/revisions"}],"predecessor-version":[{"id":135975,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/128696\/revisions\/135975"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media\/134334"}],"wp:attachment":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media?parent=128696"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/categories?post=128696"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/tags?post=128696"},{"taxonomy":"product_categories","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/product_categories?post=128696"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/coauthors?post=128696"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}