We would like to inform you that a ransomware called "SynoLocker" is currently affecting some Synology NAS users. This ransomware locks down affected servers, encrypts users¡¯ files, and demands a fee to regain access to the encrypted files.
We have confirmed that the ransomware only affects Synology NAS servers running older versions of DiskStation Manager by exploiting a security vulnerability that was fixed and patched in December, 2013.
Affected users may encounter the following symptoms:
When attempting to log in to DSM, a screen appears informing users that data has been encrypted and a fee is required to unlock data.
Abnormally high CPU usage or a running process called ¡°synosync¡± (which can be checked at Main Menu > Resource Monitor).
DSM 4.3-3810 or earlier; DSM 4.2-3236 or earlier; DSM 4.1-2851 or earlier; DSM 4.0-2257 or earlier is installed, but the system says no updates are available at Control Panel > DSM Update.
If you have encountered the above symptoms, please shutdown the system immediately and contact our technical support here: https://myds.synology.com/support/support_form.php If you have not encountered the above symptoms, we strongly recommend downloading and installing DSM 5.0, or any version below:
DSM 4.3-3827 or later
DSM 4.2-3243 or later
DSM 4.0-2259 or later
DSM 3.x or earlier is not affected
You can manually download the latest version from our Download Center and install it at Control Panel > DSM Update > Manual DSM Update.
If you notice any strange behavior or suspect your Synology NAS server has been affected by the above issue, please contact us at security@synology.com.
We sincerely apologize for any problems or inconvenience this issue has caused our users. We¡¯ll keep you updated with the latest information as we continue to address this issue.
Thank you for your continued patience and support.
¹«Á¶°Ç ¾÷µ¥ÀÌÆ®¸¦ °¨ÇàÇÒ ¼öµµ ¾øÁö¿ä.
¾÷µ¥ÀÌÆ® ¶© ±âÁ¸ µ¥ÀÌŸµéÀ» ¾µ¼ö ÀÖ¾î¾ß Çϴµ¥ ±×·¸Áö ¸øÇϴϱî
½±°Ô ¾÷µ¥ÀÌÆ®¸¦ ÇÒ¼ö°¡ ¾ø¾ú½À´Ï´Ù.
´Ù¸¥ ºÐµéÀº ²À ¾÷µ¥ÀÌÆ® ÇÏ°í »ç¿ëÇϼ¼¿ä
¾î¶»°Ô Ç®¼ö ÀÖ´ÂÁö Á» ¾Ë°í ½Í½À´Ï´Ù.
µ¥ÀÌÅ͸¦ ½á¾ß Çϴµ¥ ¸ø ¾²°í ÀÖ¾î¼ ±× »ç¹«½ÇÀº Áö±Ý ¸àºØÀÔ´Ï´Ù..
ºñÆ®ÄÚÀÎ = ÀüÀÚÈÆó
Àú °°Àº °æ¿ì´Â SynoLocker¿¡¼ Ç϶ó´Â ´ë·Î ÄÚºñÆ®³ª Xcoin °°Àº ±¹³» ºñÆ®ÄÚÀÎ °Å·¡¼Ò¿¡¼ 0.6ºñÆ®ÄÚÀÎÀ» ±¸¸ÅÇؼ SynoLockerÂÊ ÀüÀÚÁö°©¿¡ ÀÔ±ÝÀ» Çß¾ú½À´Ï´Ù. ±×·¨´õ´Ï ¼¹öÀÇ SynoLocker ÆäÀÌÁö(DSM Á¢¼ÓÇÏ¸é ³ª¿À´Â ÆäÀÌÁö)¿¡ 1~2½Ã°£ »çÀÌ¿¡ ¾ÏÈ£ ÇØÁ¦ Å°°¡ µµÂøÀ» Çß¾ú°í, http://¼¹ö ³»ºÎ IP:443 ÆäÀÌÁö·Î °¡¼ ±× Å°¸¦ ºÙ¿©³Ö±â ÇÏ°í Submit ¹öÆ°À» ´·¯¼ ÇØÁ¦ ¿äûÀ» Çϴϱî.. óÀ½¿¡´Â ¹ÝÀÀÀÌ ¾ø±æ·¡ ¾È µÇ´ÂÁÙ ¾Ë°í µ· ³¯·È±¸³ª Çß¾ú´Âµ¥.. ÇÑ µÎ½Ã°£ ÂëÀΰ¡? Áö³ª¼ º¸´Ï±î Å°¸¦ ºÙ¿©³Ö±â ÇÑ À¥ÆäÀÌÁö°¡ ÀÚµ¿À¸·Î ¹Ù²î¸é¼ ÆÄÀϵéÀ» ¾ÏÈ£ ÇØÁ¦Çϱ⠽ÃÀÛÇß¾ú½À´Ï´Ù. Àú´Â ÁøÂ¥ ½É°¢Çؼ.. 27¸¸°³ Á¤µµ µÇ´Â ÆÄÀϵéÀÌ °¨¿°(?) µÆ¾ú´Âµ¥, SynoLocker¿¡¼ Á¦°øÇØ ÁÖ´Â °¨¿° ¸ñ·Ï°ú Á¤È®È÷ ÀÏÄ¡ÇÏ°Ô ´Ù Ç®¾îÁÖ´õ±º¿ä. ¾ÏÈ£ ÇØÁ¦ÇÑ ÆÄÀÏ ¸ñ·Ïµµ °°ÀÌ ÁÝ´Ï´Ù.
Ãʱâ ȸéÀÌ ´Ù¸£°Ô ³ª¿Í¼ ÇÁ·Î¼¼½º ÀÚü¸¦ ¾Ë ¼ö ¾ø¾ú´ø °Å¶ó...
¿ù¿äÀϳ¯ »¡¸® ó¸®Ç϶ó°í ÇØ¾ß °Ú½À´Ï´Ù. ¶ó°í ¾²°í ¿½ÉÈ÷ üũÇÏ°í ÀÖ´Â Á¦ ¸ð½ÀÀÌ º¸ÀÔ´Ï´Ù.
ÀÌ°Ç ³» »ç¹«½Çµµ ¾Æ´Ñµ¥... Çϸé¼... ¿¡°í Àú ¸ÛûÀÌµé µ¥¸®°í ÀϽÃÅ°´À´Ï Â÷¶ó¸® ³»°¡ ÇÏ°í ¸»Áö ÇÏ°í ÀÖ°ÚÁö¿ä.
ÁøÇà °úÁ¤ Áß°£ Áß°£¿¡¶óµµ ÂÊÁöµç ¹®ÀÚ·Î ¾Ë·Áµå¸±°Ô¿ä...
¿À´Ã °¨»çÇÏ¿´½À´Ï´Ù.
µµ¿òÀÌ µÇ¼ÌÀ¸¸é ÁÁ°Ú³×¿ä. ºÎµð ¹«»çÈ÷ º¹±¸ µÇ½Ã±æ ¹Ù¶ø´Ï´Ù. ^^
ÀúÈñµµ ȸ»ç Áß¿äÇÑ µ¥ÀÌŸ(µðÀÚÀÎȸ»çÀÔ´Ï´Ù)°¡ ´Ùµé¾îÀÖ´Â ¼¹ö¶ó ¸·¸·ÇÏ°íÀÖ¾ú½À´Ï´Ù.. µµÀúÈ÷ º»»ç³ª Ä¿¹Â´ÏƼ¿¡¼´Â ÇØ°áÃ¥ÀÌ ¾È³ª¿Ã°Í°°¾Æ Àúµµ ´ÔÀÌ Çѹæ¹ý´ë·Î ºñÆ®ÄÚÀÎÁöºÒÇÏ°í ÇØÁ¦Å°¸¦ ¹Þ¾Ò³×¿ä (±×·±µ¥ ±âÇѳѰܼ 1.2BTC ÁöºÒ ¤Ð ¤Ð)
Áö±ÝÇØÁ¦ ÁßÀ̱äÇѵ¥ Ǫ´Â¼Óµµ°¡ ÇÑÂü ´À¸®³×¿ä.. ´Ôµµ ±×·¯Çß´ÂÁö ±Ã±ÝÇؼ ¿©Â庾´Ï´Ù. Çص¶ÇÑ ÈÀϵéÀº ´Ù Á¤»óÀûÀ¸·Î ÀÛµ¿À» ÇÏ´ÂÁöµµ ±Ã±ÝÇϱ¸¿ä..ºñ½ÁÇÑ »ç·Ê¿Í °æÇèÇϽźÐÀÌ ¸¹ÀÌ ¾ø¾î ¿¬¶ôµå¸³´Ï´Ù. ½Ã°£ µÇ½Ç¶§ ´äº¯ºÎŹµå¸³´Ï´Ù. ±×¸®°í º¹±¸ÈÄ¿¡´Â ¾î¶²½ÄÀ¸·Î ´ëóÇؾßÇÏ´ÂÁöµµ ±Ã±ÝÇϳ׿ä....
Important security message regarding SynoLocker
Dear Synology users,
We would like to inform you that a ransomware called "SynoLocker" is currently affecting some Synology NAS users. This ransomware locks down affected servers, encrypts users¡¯ files, and demands a fee to regain access to the encrypted files.
We have confirmed that the ransomware only affects Synology NAS servers running older versions of DiskStation Manager by exploiting a security vulnerability that was fixed and patched in December, 2013.
Affected users may encounter the following symptoms:
When attempting to log in to DSM, a screen appears informing users that data has been encrypted and a fee is required to unlock data.
Abnormally high CPU usage or a running process called ¡°synosync¡± (which can be checked at Main Menu > Resource Monitor).
DSM 4.3-3810 or earlier; DSM 4.2-3236 or earlier; DSM 4.1-2851 or earlier; DSM 4.0-2257 or earlier is installed, but the system says no updates are available at Control Panel > DSM Update.
If you have encountered the above symptoms, please shutdown the system immediately and contact our technical support here: https://myds.synology.com/support/support_form.php
If you have not encountered the above symptoms, we strongly recommend downloading and installing DSM 5.0, or any version below:
DSM 4.3-3827 or later
DSM 4.2-3243 or later
DSM 4.0-2259 or later
DSM 3.x or earlier is not affected
You can manually download the latest version from our Download Center and install it at Control Panel > DSM Update > Manual DSM Update.
If you notice any strange behavior or suspect your Synology NAS server has been affected by the above issue, please contact us at security@synology.com.
We sincerely apologize for any problems or inconvenience this issue has caused our users. We¡¯ll keep you updated with the latest information as we continue to address this issue.
Thank you for your continued patience and support.
Sincerely,
Synology Development Team
Àú´Â Á¤Ç° ½Ã³î·ÎÁö ¾²°í ÀÖ¾ú´Âµ¥ ÇØÅ· ´çÇÑ°Ì´Ï´Ù.
À̹øÀÏ ¶§¹®¿¡ ±â±â¸¦ È® ¹ö¸®°í ½ÍÀºµ¥ ±×·¯Áö ¸øÇÏ°í
±ÞÇÑ´ë·Î »õ·Î ¼³Ä¡ÇÏ°í ÀÏ´Ü ¾²·Á°í ÇÕ´Ï´Ù
½Ã³î·ÎÁöÀÇ Æí¸®ÇÔ¿¡ ±æµé¿©Á³³ª º¾´Ï´Ù.¤Ì¤Ì
½Ã°£ÀÌ ¾ø¾î¼ ȨÆäÀÌÁö ¸®ºôµùÀº 11¿ù ÀÌÈÄ·Î ¹Ì·ç¾î ³õ¾Ò½À´Ï´Ù.
Á» ´õ °í¹ÎÇغ¸°í ¹é¾÷¿¡ Á» ´õ ½Å°æÀ» ¾²·Á°í ÇÕ´Ï´Ù
ÀÚÁÖ ¹é¾÷ÇÏ½Ã°í °ú°¨ÇÏ°Ô »ç¿ëÇÒ±î À̸®Àú¸® °í¹Î ¸¹ÀÌÇÏ°í ÀÖ½À´Ï´Ù.
±×³É ¾²½Ç°Å¸é ²À ¹é¾÷ ÀÚÁÖÇÏ½Ã¸é¼ »ç¿ëÇϼ¼¿ä
±×ÂÊ¿¡ ¿ø°ÝÀÛ¾÷ÇÏ°í ¾÷µ¥ÀÌÆ® Çߴµ¥ SynoLockerÆäÀÌÁö°¡ ¾ø¾î Á³¾î¿ä.
ÀÌ·¸°Ô µÇ¸é º¹±¸ ÇÒ¼ö ¹æ¹ýÀÌ ¾ø³ª¿ä.
¿ù¸»Àº ´Ù°¡ ¿À°í ¾î¶»°Ô ÇؾßÇÒÁö »ç¶÷ Á¤¸» ¹ÌÄ¡°Ú³×¿ä.
¾÷üº° °Å·¡¿øÀå, ¼¼±Ý°è»ê¼, °ßÀû¼ ¿¢¼¿ ÆÄÀϵéÀÌ ´Ù ±×·¸³×¿ä.
¾î¶»°Ô ÇÒ¼ö ÀÖ´ÂÁö ¹æ¹ý Á» ¾Ë·Á ÁÖ¼¼¿ä.