{"id":6245,"date":"2019-07-26T17:58:16","date_gmt":"2019-07-26T14:58:16","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=6245"},"modified":"2020-05-13T19:54:14","modified_gmt":"2020-05-13T16:54:14","slug":"anubis-turkey","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/anubis-turkey\/6245\/","title":{"rendered":"Anubis Truva At\u0131&#8217;ndan T\u00fcrkiye&#8217;ye yo\u011fun sald\u0131r\u0131 var"},"content":{"rendered":"<p>Sald\u0131rganlar kullan\u0131c\u0131lar\u0131 \u00f6nde gelen bir telekom\u00fcnikasyon ve teknoloji hizmetleri sa\u011flay\u0131c\u0131s\u0131ndan \u00fccretsiz internet ba\u011flant\u0131s\u0131 teklifi gibi g\u00f6r\u00fcnen SMS\u2019lerle kand\u0131rmaya \u00e7al\u0131\u015f\u0131yor. Gelen SMS\u2019teki ba\u011flant\u0131ya t\u0131kland\u0131\u011f\u0131nda Truva at\u0131 indiriliyor.<\/p>\n<p>Anubis\u2019i yaymak i\u00e7in kullan\u0131lan SMS\u2019lerin baz\u0131 \u00f6rnekleri \u015funlar: \u201cMesajla\u015ft\u0131k\u00e7a kazan, kazand\u0131k\u00e7a daha \u00e7ok mesajla\u015f. Davet ettiklerin doyas\u0131ya internet paketi kazan\u0131yor. \u015eimdi sen de indir 2GB internet paketi hakk\u0131 kazan. Detayl\u0131 Bilgi\u201d; \u201c10GB Her operat\u00f6rde internet keyfini s\u00fcr\u00fcn\u201d.<\/p>\n<p>Uzmanlar\u0131m\u0131za g\u00f6re bu y\u0131l\u0131n ba\u015f\u0131ndan beri 6200\u2019den fazla kullan\u0131c\u0131 Anubis\u2019le kar\u015f\u0131la\u015ft\u0131. En yo\u011fun g\u00fcnde 190 ki\u015finin etkilendi\u011fi belirlendi. Son SMS sald\u0131r\u0131s\u0131n\u0131n as\u0131l hedefi T\u00fcrk kullan\u0131c\u0131lar olsa da bu yaz\u0131l\u0131mdan en \u00e7ok etkilenen \u00fclkeler s\u0131ras\u0131yla Rusya, Almanya ve T\u00fcrkiye oldu. Takip sistemleri Nisan ay\u0131nda Rus kullan\u0131c\u0131lara y\u00f6nelik bir SMS sald\u0131r\u0131s\u0131n\u0131 da tespit etmi\u015fti. O sald\u0131r\u0131da g\u00f6nderilen mesajlardaki MMS\u2019i a\u00e7abilmek i\u00e7in kullan\u0131c\u0131lardan bir uygulama indirmesi isteniyordu. Ba\u015fka t\u00fcr mesajlarda ise para yard\u0131m\u0131 talep ediliyordu.<\/p>\n<p>Anubis ilk kez y\u0131llar \u00f6nce tespit edildi. Bu Truva at\u0131 insanlar\u0131 yasal hizmet gibi g\u00f6r\u00fcnen zararl\u0131 yaz\u0131l\u0131mlar\u0131 indirmeye ikna eden sosyal m\u00fchendislik ve kimlik av\u0131 sald\u0131r\u0131lar\u0131nda kullan\u0131l\u0131yor. Truva at\u0131 indirildikten sonra \u015funlar\u0131 yapabiliyor:<\/p>\n<ul>\n<li>SMS g\u00f6nderme, alma ve silme<\/li>\n<li>Ki\u015fi listesini ve hesap giri\u015f bilgilerini \u00e7alma<\/li>\n<li>URL a\u00e7ma<\/li>\n<li>Mobil cihazlarda sakl\u0131 dosyalar\u0131 \u015fifreleme<\/li>\n<li>Ses kaydetme ve ekran g\u00f6r\u00fcnt\u00fcs\u00fc alma<\/li>\n<li>Tu\u015f takibi yapma<\/li>\n<li>Kullan\u0131c\u0131lar\u0131n kimlik bilgilerini \u00e7almak i\u00e7in sahte giri\u015f sayfalar\u0131 (bankac\u0131l\u0131k uygulamalar\u0131) g\u00f6sterme<\/li>\n<\/ul>\n<p>Kaspersky Zararl\u0131 Yaz\u0131l\u0131m Analisti Alexander Eremin, \u201cBireysel kullan\u0131c\u0131lar s\u00f6z konusu oldu\u011funda k\u00f6t\u00fc \u015f\u00f6hretli Truva atlar\u0131n\u0131n para \u00e7almak i\u00e7in kullan\u0131lmaya devam etti\u011fini g\u00f6r\u00fcyoruz. Kullan\u0131c\u0131lara, cihazlar\u0131na bir yaz\u0131l\u0131m indirirken dikkatli olmalar\u0131n\u0131 ve \u00fccretsiz \u015feylere verilen \u00e7ok iyi pazarlama tekliflerine kar\u015f\u0131 \u015f\u00fcpheyle yakla\u015fmalar\u0131n\u0131 tavsiye ediyoruz\u201d dedi.<\/p>\n<p>Anubis zararl\u0131 yaz\u0131l\u0131m\u0131na yakalanmamak i\u00e7in \u015fu basit kurallar\u0131 uygulaman\u0131z\u0131 \u00f6neriyoruz:<\/p>\n<ul>\n<li>Uygulamalar\u0131 yaln\u0131zca resmi kaynaklardan indirin.<\/li>\n<li>M\u00fcmk\u00fcnse ak\u0131ll\u0131 telefon ayarlar\u0131n\u0131zda \u00fc\u00e7\u00fcnc\u00fc taraf kaynaklardan gelen uygulamalar\u0131n kurulumunu devre d\u0131\u015f\u0131 b\u0131rak\u0131n.<\/li>\n<li>Tan\u0131mad\u0131\u011f\u0131n\u0131z ki\u015filerden gelen \u015f\u00fcpheli ba\u011flant\u0131lara t\u0131klamay\u0131n.<\/li>\n<li>Mobil cihaz\u0131n\u0131z\u0131 korumak i\u00e7in <a href=\"https:\/\/www.kaspersky.com.tr\/mobile-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2c_kdaily_wpplaceholder_sm-team___kisa____c8090141bf3f79f6\" target=\"_blank\" rel=\"noopener\">sa\u011flam bir g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fc kurun<\/a>.<\/li>\n<\/ul>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"android-malware\">\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky uzmanlar\u0131 Anubis adl\u0131 Truva at\u0131n\u0131n Haziran ay\u0131n\u0131n ba\u015f\u0131ndan bu yana T\u00fcrkiye\u2019de yo\u011fun faaliyet g\u00f6sterdi\u011fini tespit etti. Siber su\u00e7lular bu zararl\u0131 yaz\u0131l\u0131m\u0131 yaymak i\u00e7in ele ge\u00e7irilen cihazlardaki ki\u015fi listelerine SMS g\u00f6nderiyor.<\/p>\n","protected":false},"author":706,"featured_media":6246,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1287],"tags":[1967,652],"class_list":{"0":"post-6245","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-news","8":"tag-anubis","9":"tag-truva-ati"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/anubis-turkey\/6245\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/truva-ati\/","name":"truva at\u0131"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6245","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/706"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=6245"}],"version-history":[{"count":6,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6245\/revisions"}],"predecessor-version":[{"id":8314,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6245\/revisions\/8314"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/6246"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=6245"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=6245"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=6245"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}