PUP.PCPurifier, Catered

by ezclean posted Feb 05, 2021
?

단축키

Prev이전 문서

Next다음 문서

ESC닫기

크게 작게 위로 아래로 댓글로 가기 인쇄

PUP.PCPurifier


*file
C:\windows\Tasks\PC Purifier_UPDATES.job
C:\windows\Tasks\PC Purifier_DEFAULT.job
C:\windows\System32\Tasks\PC Purifier_UPDATES
C:\windows\System32\Tasks\PC Purifier_DEFAULT
C:\windows\System32\Tasks\PC Purifier
C:\Users\Public\Desktop\PC Purifier.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\PC Purifier\Register PC Purifier.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\PC Purifier\PC Purifier.lnk
C:\Prorogram Files\PC Purifier\unins000.exe
C:\Prorogram Files\PC Purifier\smsetup.exe
C:\Prorogram Files\PC Purifier\PCPUUns.exe
C:\Prorogram Files\PC Purifier\PCPurifier.exe
C:\Prorogram Files\PC Purifier\isxdl.dll

 
*reg_key
HKCU\Software\PC Purifier
HKCU\Software\PC:\Prourifier
HKLM\SOFTWARE\PC Purifier
HKLM\SOFTWARE\PC:\Prourifier
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC Purifier_is1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{765BEF81-A314-4F71-A92F-67C7B1D28937}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D69E5E2C-0A21-4BD9-8851-70498F9AC812}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DCD3FE95-7E20-409D-8FCF-0A0553F2B4A1}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PC Purifier
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PC Purifier_DEFAULT
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PC Purifier_UPDATES

*reg_val
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures | PC Purifier_DEFAULT.job
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures | PC Purifier_DEFAULT.job.fp
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures | PC Purifier_UPDATES.job
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures | PC Purifier_UPDATES.job.fp


PUP.Catered
 

*file
c:\program files\catered to you\extensions\b90183ad-1cf4-4d7b-9461-b89083957547.dll

 
*reg_key
HKLM\system\currentcontrolset\services\service mgr cateredtoyou
HKLM\software\cateredtoyou
HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{b90183ad-1cf4-4d7b-9461-b89083957547}
HKLM\software\microsoft\internet explorer\domstorage\cateredtoyou-a.akamaihd.net
HKLM\software\microsoft\internet explorer\lowregistry\domstorage\cateredtoyou-a.akamaihd.net
HKEY_CLASSES_ROOT\clsid\{3177b693-97c8-4916-a9d6-6fbd49bcfa56}
HKEY_CLASSES_ROOT\clsid\{37cf752f-989b-4567-9d45-ee76e0f59a95}
HKEY_CLASSES_ROOT\clsid\{b90183ad-1cf4-4d7b-9461-b89083957547}
HKEY_CLASSES_ROOT\clsid\{cc71154e-1c1f-4c4b-ac24-36bb4e847e45}
HKEY_CLASSES_ROOT\clsid\{cf9c673e-3e09-405a-80fb-1cc365ae3bcd}
HKEY_CLASSES_ROOT\clsid\{d5848f09-fbb0-430a-9386-edaeafc3ea35}
HKEY_CLASSES_ROOT\clsid\{fa5b4fd5-caf8-499a-a4a0-52378a48978a}
HKEY_CLASSES_ROOT\clsid\{fbb037e4-1cb2-406c-accc-925bd5bc7fd7}

 

11111.png