PUP.GrassValley, Heinote

by ezclean posted Dec 28, 2020
?

단축키

Prev이전 문서

Next다음 문서

ESC닫기

크게 작게 위로 아래로 댓글로 가기 인쇄

PUP.GrassValley

*file
C\Users\{USERNAME}\Desktop\EDIUS7_LO{USERNAME}ER.lnk
C\Users\{USERNAME}\Desktop\EDIUS6_5_LO{USERNAME}ER.lnk
C\Program Files\Grass Valley\EDIUS 7\Uninstall.exe
C\Program Files\Grass Valley\EDIUS 7\LO{USERNAME}ER_7.40 4884.exe
C\Program Files\Grass Valley\EDIUS 6.5\LO{USERNAME}ER_7.40 4884.exe

*reg_key
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LO{USERNAME}ER_5_5

 

PUP.Heinote

*file
C:\Users\{USERNAME}\AppData\Roaming\Heinote\mininewsxhtt.exe
C:\Users\{USERNAME}\AppData\Roaming\Heinote\hntpop3.exe
C:\Users\{USERNAME}\AppData\Roaming\Heinote\hntips.exe
C:\Users\{USERNAME}\AppData\Roaming\Heinote
C:\Program Files\Heinote\upgr{USERNAME}e.exe

*reg_key
HKCU\Software\Heinote\UpdateChecker
HKCU\Software\Heinote\update

 

11111.png

 

TAG •