Adware.Linkury, Netfilter

by ezclean posted Jan 27, 2021
?

단축키

Prev이전 문서

Next다음 문서

ESC닫기

크게 작게 위로 아래로 댓글로 가기 인쇄

Adware.Linkury


*reg_key
HKCU\software\microsoft\internet explorer\main\featurecontrol\feature_browser_emulation:linkury.exe
HKLM\software\microsoft\windows\currentversion\run:linkury chrome smartbar
HKLM\software\microsoft\tracing\linkury_rasmancs
HKLM\software\microsoft\tracing\linkury_rasapi32
HKLM\software\wow6432node\microsoft\tracing\linkury_rasmancs
HKLM\software\wow6432node\microsoft\tracing\linkury_rasapi32
HKCU\software\microsoft\installer\products\c5670ca607d1c7c4aa305de018401aa3
HKCU\software\microsoft\installer\features\c5670ca607d1c7c4aa305de018401aa3
HKCU\software\linkury

*file
C:\ProrogramData\Utatity\ZathTop.dat
C:\ProrogramData\Utatity\Utatity.dat
C:\ProrogramData\Utatity\Utatity.d.dat
C:\ProrogramData\Utatity\uninstall.dat
C:\ProrogramData\Utatity\TechDom.bin
C:\ProrogramData\Utatity\Stockfind.bin
C:\ProrogramData\Utatity\snp.sc
C:\ProrogramData\Utatity\Silvertop.bin
C:\ProrogramData\Utatity\Silverstrong.exe.config
C:\ProrogramData\Utatity\Silverstrong.exe
C:\ProrogramData\Utatity\Sanex.dll
C:\ProrogramData\Utatity\Opelam.dat
C:\ProrogramData\Utatity\md.xml
C:\ProrogramData\Utatity\Icesing.dll
C:\ProrogramData\Utatity\Hottam.bin
C:\ProrogramData\Utatity\Greenity.bin
C:\ProrogramData\Utatity\Goldjob.exe.config
C:\ProrogramData\Utatity\Goldjob.exe
C:\ProrogramData\Utatity\Geophase.bin
C:\ProrogramData\Utatity\ff.NT
C:\ProrogramData\Utatity\ff.HP
C:\ProrogramData\Utatity\Config.xml
C:\ProrogramData\Utatity\conf.config
C:\ProrogramData\Utatity\BlueFinplus.bin
C:\ProrogramData\Utatity\temp
C:\ProrogramData\Utatity\ondemand

 

Adware.Netfilter
 

*reg_key
HKLM\SOFTWARE\Caphyon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6764914E5AD471D4784A9D2F63F584CD\InstallProperties
HKLM\SOFTWARE\netfilter
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E4194676-4DA5-4D17-87A4-D9F2365F48DC}
HKLM\SYSTEM\CurrentControlSet\Services\netfilter2

*file
C:\windows\System32\drivers\netfilter2.sys
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\x-rates\x-rates_x64.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\x-rates\x-rates.lnk
C:\Prorogram Files\x-rates\ProgramFiles64Folder\netfilter\x-rates.exe
C:\Prorogram Files\x-rates\ProgramFiles64Folder\netfilter\netfilter2.sys
C:\Prorogram Files\netfilter\x-rates.exe
C:\Prorogram Files\netfilter\netfilter2.sys

 

11111.png