2021.01.15 09:20

Trojan.winrule, BitCoinMiner

조회 수 271 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부

Trojan.winrule

 

*file
C:\Program Files\winrule\Uninstall.exe
C:\Program Files\winrule\WinRule.exe
C:\Program Files\winrule\WinRuleSync.exe
C:\Program Files\winrule\WinRuleSync_.exe
C:\Program Files\winrule\winruletask.exe
C:\Program Files\winrule\winruletask_.exe
C:\Program Files\winrule\WinRule_.exe

*reg_key
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Window Rules Manager
HKLM\SOFTWARE\okwinrule
HKLM\SYSTEM\CurrentControlSet\Services\WinRuleSvc
HKLM\SYSTEM\CurrentControlSet\Services\WinRuleSvc2

 

Trojan. BitCoinMiner

 

*file
c:\users\{USERNAME}\appdata\roaming\nscpucnminer\pools.txt
c:\users\{USERNAME}\appdata\roaming\nscpucnminer\nscpucnminer64.exe
c:\users\{USERNAME}\appdata\roaming\nscpucnminer\nscpucnminer32.exe
c:\users\{USERNAME}\appdata\roaming\img001.exe
c:\users\{USERNAME}\appdata\roaming\snappy\snappy.exe
c:\users\{USERNAME}\appdata\roaming\nsminer\img001.exe
c:\users\{USERNAME}\appdata\roaming\nsminer\img002.exe
c:\users\{USERNAME}\appdata\roaming\nsminer\nscpucnminer32.exe
c:\users\{USERNAME}\appdata\roaming\nsminer\pools.txt

*reg_key
HKCU\SOFTWARE\bifrost
HKCU\SOFTWARE\snappy

*reg_val
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\run | c:\users\{USERNAME}\appdata\roaming\nscpucnminer\img001.exe

 

11111.png

 


  1. Windows Explorer Plugin CerKey KB311113 광고창 생성 프로그램

  2. Windows Desktop MBT Icons Ver 6.1.1.4 삭제 방법

  3. Windows Bookmark Service 광고 삭제 방법

  4. Windows Application TopsAdon 광고 삭제 방법

  5. Windows Application iconmania 광고 삭제 방법

  6. Trojan.winrule, BitCoinMiner

  7. Trojan.TweakBit

  8. Trojan.TechAgent, Ghapoly

  9. Trojan.TCClock, PDFCracker

  10. Trojan.ShopForRewards

  11. Trojan.nscpucnminer

  12. Trojan.KaZaA

  13. Trojan.ImageCropResize

  14. Trojan.HSM

  15. Trojan.HavijPro

  16. Trojan.HaoTuKanKan, HPMonkey

  17. Trojan.Ghapoly, BestCleaner

  18. Trojan.DVD Region+CSS Free

  19. Trojan.DMA, PCBooster

  20. Trojan.Clocker

Board Pagination Prev 1 2 3 4 5 ... 8 Next
/ 8
XE Login