조회 수 58 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부

Adware.SpywareRemover
 


*file
C:\Users\{USERNAME}\Desktop\Malware Sweeper.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\MalwareSweeper.com\Malware Sweeper\Uninstall.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\MalwareSweeper.com\Malware Sweeper\Help.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\MalwareSweeper.com\Malware Sweeper.lnk
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\update.exe
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\update.cli
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\unins000.exe
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\unins000.dat
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Trial.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Splash.spl
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\scan.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Purchase.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Message.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\MalSwep.exe
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Main.skn
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Help.chm
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\English.jpg
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\English.inf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Engine.dll
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\db.ini
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\browse.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\Alert.swf
C:\Prorogram Files\MalwareSweeper.com\MalwareSweeper\agent.exe

* regisry path
HKCU\Software\Malware Sweeper
HKLM\SOFTWARE\Classes\CLSID\{3064AFBF-23B5-4794-A1D7-3C0D5188BEAD}
HKLM\SOFTWARE\Classes\CLSID\{7BE57914-454F-4149-BB0E-054194E64693}
HKLM\SOFTWARE\Classes\CLSID\{A0DF63D4-3C61-4FA8-AE92-AA4B3F794024}
HKLM\SOFTWARE\Classes\CLSID\{BB044F38-E542-423B-9701-8D31957BD0AC}
HKLM\SOFTWARE\Classes\CLSID\{D593AFF0-9F4F-4E7D-886B-11E1BC63B98C}
HKLM\SOFTWARE\Classes\CLSID\{EEC98240-0748-44FC-89F4-CB9216459E1F}
HKLM\SOFTWARE\Classes\CLSID\{FB03E1AD-6946-4CF9-A2CB-D5C53DCF9583}
HKLM\SOFTWARE\Classes\CLSID\{3C6B0E9C-11E4-4307-AADA-C4EFCAD29B44}
HKLM\SOFTWARE\Classes\CLSID\{4CEE2F94-8683-419E-8023-C9CC589909C4}
HKLM\SOFTWARE\Classes\TypeLib\{1DEC989A-8B5A-4032-903A-50B1E071B77B}
HKLM\SOFTWARE\Classes\Interface\{01B3B657-E7BF-4936-BF6E-C1CFF3AAF0DD}
HKLM\SOFTWARE\Classes\Interface\{34196F64-C524-4AE3-8572-0AE00843EF54}
HKLM\SOFTWARE\Classes\Interface\{376193BC-493C-4B19-AC30-32FF54225EE7}
HKLM\SOFTWARE\Classes\Interface\{453C3579-3A18-4B7E-8E11-ABF856DFA67E}
HKLM\SOFTWARE\Classes\Interface\{B3F969A7-6C91-4594-A418-A042CCE8BE07}
HKLM\SOFTWARE\Classes\Interface\{BC3CE04B-B40B-481D-855F-F1165D4554D0}
HKLM\SOFTWARE\Classes\Interface\{BE641ACD-9500-4EA8-B7CC-2534C95EB5D3}
HKLM\SOFTWARE\Classes\Interface\{C08CD4E6-ED0C-499B-A86A-23ADDF8F41BE}
HKLM\SOFTWARE\Classes\Interface\{D994B6D8-32BF-4B39-AFA6-A5701087DCA4}
HKLM\SOFTWARE\Classes\Interface\{E6395F5E-8E54-4392-8BCE-D433FB0B695E}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malware Sweeper_is1
HKLM\SOFTWARE\Classes\Engine.BackupEngine
HKLM\SOFTWARE\Classes\Engine.ErrorLogger
HKLM\SOFTWARE\Classes\Engine.LoadingEngine
HKLM\SOFTWARE\Classes\Engine.Monitor_Engine
HKLM\SOFTWARE\Classes\Engine.RemoveEngine
HKLM\SOFTWARE\Classes\Engine.ScanEngine
HKLM\SOFTWARE\Classes\Engine.Worker
HKLM\SOFTWARE\Classes\Engine.ThreadLaunch
HKLM\SOFTWARE\Classes\Engine.ThreadControl
HKCU\Software\Microsoft\Windows\CurrentVersion\Run | Malware Sweeper

 

Adware.CloudGuard


*file
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\_metadata\verified_contents.json
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\manifest.json
C:\Prorogram Files\GTFPOQUOTT\gtfpoquott.exe
C:\windows\System32\Tasks\GTFPOQUOTT
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\Ghostify 48pix.png
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\Ghostify 16pix.png
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\Ghostify 128pix.png
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\back.js
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0\_metadata
C:\Users\{USERNAME}\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaocmnfllndpbbmjmniielgaanaifehp\0.3_0


*reg_key
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F281C29C-8BF6-4C4D-8984-B28ECD661AF5}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GTFPOQUOTT
HKLM\SOFTWARE\Google\Chrome\Extensions\oaocmnfllndpbbmjmniielgaanaifehp
HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.oaocmnfllndpbbmjmniielgaanaifehp.uid
HKLM\SOFTWARE\GTFPOQUOTT Updater
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GTFPOQUOTT Updater_is1
HKLM\SYSTEM\CurrentControlSet\Services\GTFPOQUOTT Updater

 

11111.png

 


  1. PUP.DownTango

    PUP.DownTango *file C:\Users\Ad\AppData\Roaming\downtangofttoolbar\downtangofttoolbar.dll C:\ProgramData\Microsoft\Windows\Start Menu\Programs\downtango\uninstall.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\downtango\downtango.l...
    Date2021.03.16 Byezclean Reply0 Views51 file
    Read More
  2. PUP.DriverXYZ, LiveSupport

    PUP.DriverXYZ *file c:\users\public\desktop\driverxyz.lnk c:\programdata\microsoft\windows\start menu\programs\driverxyz\driverxyz.lnk c:\programdata\microsoft\windows\start menu\programs\driverxyz\register driverxyz.lnk c:\programdata\micro...
    Date2020.12.02 Byezclean Reply0 Views52 file
    Read More
  3. PUP. Guffins, PriceLess

    PUP. Guffins *file C:\Program Files\Guffins\bar\1.bin\chrome\u4ffxtbr.jar C:\Program Files\Guffins\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML C:\Program Files\Guffins\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE C:\Pr...
    Date2021.01.22 Byezclean Reply0 Views53 file
    Read More
  4. Adware.SpywareRemover, CloudGuard

    Adware.SpywareRemover *file C:\Users\{USERNAME}\Desktop\Malware Sweeper.lnk C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\MalwareSweeper.com\Malware Sweeper\Uninstall.lnk C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\Malwar...
    Date2021.02.03 Byezclean Reply0 Views58 file
    Read More
  5. Trojan.DMA, PCBooster

    Trojan.DMA C:\Users\{USERNAME}\AppData\Roaming\Desktop Management Agent\9giyumuw.exe C:\ProgramData\desktop management Agent\135cc5sig.exe C:\ProgramData\Desktop Management Agent\1u15919i3ye.exe C:\ProgramData\Desktop Management Agent\3ag117...
    Date2020.12.10 Byezclean Reply0 Views61 file
    Read More
  6. PUP.modinhalls

    PUP.modinhalls *file c:\program files\modinhalls\windihalls_uins.dat c:\program files\modinhalls\uninst.exe c:\program files\modinhalls\mdihallsupsvc.exe c:\program files\modinhalls\mdihallsupnad.dll c:\program files\modinhalls\mdihallsup.dl...
    Date2021.03.12 Byezclean Reply0 Views66 file
    Read More
  7. PUP.UCalendar, WebInternet

    PUP.UCalendar *file C:\Users\{USERNAME}\AppData\Local\ucalendar\desktopcalendar.dll C:\Users\{USERNAME}\AppData\Local\ucalendar\huangli.xml C:\Users\{USERNAME}\AppData\Local\ucalendar\icolog C:\Users\{USERNAME}\AppData\Local\ucalendar\niaoji...
    Date2021.01.25 Byezclean Reply0 Views67 file
    Read More
  8. Trojan.TechAgent, Ghapoly

    Trojan.TechAgent *file C:\Windows\System32\Tasks\TechAgentTask C:\Windows\System32\Tasks\TechAgent Task C:\Users\Public\Desktop\TechAgent.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechAgent\TechAgent.lnk C:\ProgramData\Microso...
    Date2021.01.08 Byezclean Reply0 Views68 file
    Read More
  9. PUP.Mallapp, professional cleaning Software

    PUP.Mallapp C:\Prorogram files\mallapp\joamom\imgs\woman_app_check.jpg C:\Prorogram files\mallapp\joamom\imgs\menu_tray_ov.bmp C:\Prorogram files\mallapp\joamom\imgs\menu_tray.bmp C:\Prorogram files\mallapp\joamom\imgs\menu_qna_ov.bmp C:\Pro...
    Date2021.02.08 Byezclean Reply0 Views71 file
    Read More
  10. PUP.AdvancePCProtector, AdvancedSP

    PUP.AdvancePCProtector *file c:\program files\akick\advance pc protector\savapi\aecore.dll c:\program files\akick\advance pc protector\savapi\aehelp.dll c:\program files\akick\advance pc protector\savapi\aerdl.dll c:\program files\akick\adva...
    Date2020.12.16 Byezclean Reply0 Views73 file
    Read More
  11. PUP.SpaceSondPro

    PUP.SpaceSondPro *file C:\Users\{USERNAME}\Desktop\SpaceSoundPro.lnk C:\Users\{USERNAME}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpaceSoundPro 1.0\Uninstall.lnk C:\Users\{USERNAME}\AppData\Roaming\Microsoft\Windows\Start Menu\P...
    Date2021.03.25 Byezclean Reply0 Views77 file
    Read More
  12. trojan.ASRF, DTeroVDTeroV

    trojan.ASRF *file C:\Program Files\ASRF\ASRFree.exe C:\Program Files\ASRF\build.exe C:\Program Files\ASRF\config.exe C:\Program Files\ASRF\save.exe C:\Program Files\ASRF\uninstall.exe Trojan.DTeroVDTeroV *file C:\DTeroVDTeroV\DTeroV.exe C:\U...
    Date2020.11.10 Byezclean Reply0 Views78 file
    Read More
  13. PUP.dll-files.com fixer, Registry Cure Pro

    PUP.dll-files.com fixer *file c:\program files\dll-files.com fixer\chinese_rcp.ini c:\program files\dll-files.com fixer\cleanschedule.exe c:\program files\dll-files.com fixer\danish_rcp.ini c:\program files\dll-files.com fixer\dllfixer.exe c...
    Date2020.12.01 Byezclean Reply0 Views79 file
    Read More
  14. Adware.BlueMoon, FileSubmit

    Adware.Agent *file C:\Program Files\ZPA7NKFZ6Y\uninstaller.exe C:\Program Files\ZPA7NKFZ6Y\ZPA7NKFZ6.exe C:\Program Files\1CW6G366CO\E13LO2C7B.exe C:\Program Files\1CW6G366CO\uninstaller.exe *reg_key HKLM\SOFTWARE\Microsoft\Tracing\E13LO2C7B...
    Date2021.01.07 Byezclean Reply0 Views79 file
    Read More
  15. Trojan. RegistryTool, AdwareAlert

    Trojan. RegistryTool * File path C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegistryTool\Uninstall RegistryTool.lnk C:\Program Files\Downloaded Installers\{954FB8FF-7FCF-46F2-869F-1B61D1212904}\setup.msi C:\Users\Public\Desktop\Reg...
    Date2021.01.26 Byezclean Reply0 Views80 file
    Read More
  16. PUP.BestYouTube

    PUP.BestYouTube *file C:\Windows\Temp\pMvQJe726B_1\uninstall.exe C:\Windows\Temp\pMvQJe726B_1\sqlite3.dll C:\Windows\Temp\pMvQJe726B_1\softokn3.dll C:\Windows\Temp\pMvQJe726B_1\plds4.dll C:\Windows\Temp\pMvQJe726B_1\plc4.dll C:\Windows\Temp\...
    Date2021.03.15 Byezclean Reply0 Views83 file
    Read More
  17. PUP.Carambis, PUP.AppMaster

    PUP.Carambis *file c:\users\{USERNAME}\appdata\local\carambis\cleaner.ini c:\users\{USERNAME}\desktop\cleaner.lnk c:\program files\carambis\cleaner\imageformats\qico.dll c:\program files\carambis\cleaner\imageformats\qjpeg.dll c:\program fil...
    Date2020.12.11 Byezclean Reply0 Views84 file
    Read More
  18. PUP.RemoteAdmin

    RemoteAdmin *file C\Program Files\AIMP4\rfusclient.exe C\Program Files\AIMP4\rutserv.exe C\Program Files\AIMP4\vp8decoder.dll C\Program Files\AIMP4\vp8encoder.dll *reg HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RManService
    Date2020.11.09 Byezclean Reply0 Views87 file
    Read More
  19. PUP.DealPly, MinerGate

    PUP. DealPly *file C:\windows\tasks\dealplyliveupdatetaskmachinecore.job C:\program files\dealplylive\update\1.3.23.0\psuser.dll C:\program files\dealplylive\update\1.3.23.0\psmachine.dll C:\program files\dealplylive\update\1.3.23.0\npgoogle...
    Date2021.01.12 Byezclean Reply0 Views87 file
    Read More
  20. PUP.SweetIM

    PUP.SweetIM *file C:\Program Files\sweetimC:\Program Files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe C:\Program Files\SweetIMC:\Program Files\SweetIM\Toolbars\Internet Explorer\conf\logger.xml C:\Program Files\SweetIMC:\Program Files\...
    Date2021.04.08 Byezclean Reply0 Views88 file
    Read More
Board Pagination Prev 1 2 3 4 5 ... 8 Next
/ 8
XE Login