Chinanews Client Beijing, December 8th (Reporter Wu Tao) What?

Are there mobile phone companies planting Trojan horses on their branded phones?

Isn't this self-destructing brand image?

Recently, a first-instance judgment published by China Judgment Documents website shows that there are really mobile phone manufacturers that did just that!

  The verdict shows that some companies and mobile phone brand manufacturers have cooperated to make profits by implanting "trojan horses" in mobile phones. Since April 2019 alone, the number of devices covered by mobile phones has been more than 20 million units per month.

Gionee Mobile, which was once all the rage and invited the endorsement of Heavenly King Andy Lau, participated in the event, and companies such as Meizu and Vipshop were also behind it.

Is your phone recruited?

Data map.

More than 20 million mobile phones are implanted with Trojan horses every month

  According to the first-instance criminal verdict of Shenzhen Zhipu Technology Co., Ltd., Xu Li, Zhu Ying and others for the crime of illegally obtaining computer information system data and illegally controlling computer information system, China Judgment Document Network recently announced that Beijing Baice Technology Co., Ltd. (hereinafter referred to as "Beijing") "Baice") legal representative Zhu and Xu Li, the person in charge of Shenzhen Zhipu Technology Co., Ltd. (hereinafter referred to as "Shenzhen Zhipu"), conspired to cooperate to carry out "pulling" by using the SDK with the "pulling" function to control the user's mobile phone. "business.

  According to the verdict, Beijing Baice configures "pulling" links, "pulling" methods, feedback data, etc. through the "pulling" product service end (that is, the Xiongji system).

The mobile phone equipped with the "pulling" function SDK automatically updates the version without the user's knowledge, and receives the "pulling" command from the rooster system.

  In December 2018, due to the inefficiency of the existing "pulling" methods, Wang Dengke (head of Beijing Baice Xi'an Technology Department) proposed to implant the hot update plug-in "Dark Horse Platform" into "Story Lock Screen" and other apps It is used to upgrade APPs such as "Story Lock Screen" and their SDK versions with Trojan plug-ins, and then install and update "Pulling Trojans" through the "Dark Horse Platform" without the user's knowledge, thereby improving the efficiency of pulls. .

  From December 2018 to October 2019, Beijing Baice and Shenzhen Zhipu partnered to carry out more than 2.8 billion pulls, involving at least 26.51 million Gionee mobile phones.

Among them, since April 2019, the number of covered devices has been more than 20 million units per month.

  From December 2018 to October 2019, Shenzhen Zhipu estimates that it can earn more than 27.85 million yuan from the "pull-work" business of Beijing Baice Company.

At present, Shenzhen Zhipu has received a settlement fee of over 8.42 million yuan from Beijing Baice Company.

Which companies are behind you?

Gionee, Meizu, Vipshop, etc. emerge

  Interestingly, according to the company's investigation, Shenzhen Zhipu's major shareholder is Shenzhen Gionee Communication Equipment Co., Ltd., with the latter holding 85% of the former.

In other words, Gionee cooperated with its partner companies to implant the "Living Trojan Horse" into its own product Gionee mobile phone, and profit from it.

The major shareholder of Shenzhen Zhipu, the company involved, is Gionee.

Enterprise check screenshot

  It’s worth noting that the verdict also shows that Beijing Baice also undertook the "pull live" business from advertising agency companies such as Shanghai Shengyuan Network Technology Co., Ltd., Shenzhen Aguzha Media Co., Ltd., and cooperated with Zhuhai Xiaoyuan Technology Co., Ltd. , Zhuhai Meizu Technology Co., Ltd. and the defendant Shenzhen Zhipu Company and other mobile phone vendors cooperated to carry out the "pulling" business.

The second largest shareholder of Zhuhai Xiaoyuan Technology Co., Ltd. involved is Vipshop.

Enterprise check screenshot

  There are many well-known companies behind this.

According to an enterprise search, the second largest shareholder of Zhuhai Xiaoyuan Technology Co., Ltd. is Chongqing Vipshop Investment Co., Ltd., holding 12.3885% of the shares.

Guangzhou Vipshop E-Commerce Co., Ltd. holds 100% of the above-mentioned Vipshop Investment Company.

  The aforementioned Zhuhai Meizu Technology Co., Ltd. owns Meizu mobile phone products. The actual controller is Huang Xiuzhang (Huang Zhang), holding 49.0819% of the shares. Taobao is its second largest shareholder, holding 27.2319%.

Meizu denies implanting Trojan horses on mobile phones

  It is not difficult to see from the verdict that Jin Lishi Hammer participated in the implantation of the "Pulling Trojan Horse" to profit from it. What about Meizu?

Meizu Flyme's official Weibo response: Adhere to legal operations and have not participated in related illegal incidents. In the future, we will continue to deepen the mobile phone security business to ensure the security of mobile phone information.

Some netizens commented screenshots.

  In this regard, some netizens said, “The official Meizu 17 pro browser will install the “Top Ten Headlines” software when browsing the web on the official browser of Meizu 17 pro, and there is no record in the download interface.

  Some netizens also said, “It took Meizu for many years and I haven’t encountered it.” “The verdict only mentions that Meizu and Shenzhen Zhipu, the company involved in the case, cooperated to carry out the'pulling activity' business, and did not point out that it was'the wooden horse-pulling activity implanted in the Meizu mobile phone. 'There are many ways of'pulling'."

  The judgment also shows that Beijing Baice Company and its controller Zhu will handle the case separately.

Some netizens left a message, "Sit down and wait for the following, Meizu's best to provide evidence to prove itself, not too lightly."

  A reporter from Chinanews.com tried multiple channels such as telephone and WeChat to contact the person in charge of Meizu's public relations. As of the time of press, the other party's phone has been "unanswered".

What are the hazards of Trojan horses?

How to prevent it?

  The verdict shows that the "Pulling Trojan Horse" can perform the pull of the designated APP under the condition of meeting the configuration conditions, so as to achieve the effect of advertising pull and earn money for pull.

  At present, the judgment does not disclose whether the Trojan will infringe on user privacy and other rights.

However, netizens still need to be vigilant, because the Trojan horse may be by your side.

For example, it has recently been reported that some shared power banks hide Trojan horses, and once users use them, mobile phones may be hacked.

  360 security experts told reporters from Chinanews.com that once a user’s mobile phone is implanted with a Trojan horse or malicious program, it can steal data from the user’s mobile phone for a long time in the future, download malicious programs for advertising, and even use the user’s mobile phone to perform other malicious activities. This type of hazard is particularly serious, which is equivalent to your mobile phone being controlled by the other party at will.

  "Android mobile phone users, unless you encounter special circumstances, try not to open the'Developer Mode', after opening it will be more vulnerable to attacks." 360 security experts reminded, if a similar prompt such as "trust this device" appears on the phone At this time, you must be vigilant. Once you select "Yes", the third-party device will have the authority to operate the mobile phone, which can easily cause user data leakage or be implanted with Trojan horses.

(Finish)