2020.12.24 13:44

PUP.YoutubeMusic, DealPly

조회 수 9 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 첨부

PUP.YoutubeMusic


*file
C\Users\{USERNAME}\Desktop\Youtube Music Downlo{USERNAME}er.lnk
C\Users\{USERNAME}\AppData\Local\Temp\is-AP0D1.tmp\Youtube_Music_Downlo{USERNAME}er_Setup.exe
C\ProgramData\Microsoft\Windows\Start Menu\Programs\youtube music downlo{USERNAME}er\Youtube Music Downlo{USERNAME}er.lnk
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Music Downlo{USERNAME}er\Youtube Music Downlo{USERNAME}er on the Web.lnk
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Music Downlo{USERNAME}er\Uninstall Youtube Music Downlo{USERNAME}er.lnk

*reg_key
HKCU\Software\YoutubeMusicDownlo{USERNAME}er.us
HKCU\YoutubeMusicDownlo{USERNAME}er.us
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{00AA23A3-F4F7-4805-AA6B-4C2A74F3AB2B}_is1

 

PUP.DealPly

*file
C\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA
C\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job
C\Program Files\dealply\dealply.crx
C\Program Files\dealply\dealply.xpi
C\Program Files\dealply\dealplyie.dll
C\Program Files\dealply\dealplyie64.dll
C\Program Files\dealply\dealplyupdate.exe
C\Program Files\dealply\dealplyupdaterun.exe
C\Program Files\dealply\dealplyupdatever.exe
C\Program Files\dealply\icon.ico
C\Program Files\dealply\uninst.exe
C\Users\{USERNAME}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dealply\dealply.url
C\Users\{USERNAME}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dealply\dealply help.url
C\Users\{USERNAME}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dealply\uninstall dealply.lnk
C\Program Files\dealplylive\update\1.3.23.0\psuser.dll
C\Program Files\dealplylive\update\1.3.23.0\psmachine.dll
C\Program Files\dealplylive\update\1.3.23.0\npgoogleupdate3.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_zh-tw.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_zh-cn.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_vi.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ur.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_uk.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_tr.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_th.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_te.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ta.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_sw.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_sv.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_sr.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_sl.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_sk.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ru.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ro.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_pt-pt.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_pt-br.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_pl.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_no.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_nl.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ms.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_mr.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ml.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_lv.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_lt.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ko.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_kn.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ja.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_iw.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_it.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_is.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_id.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_hu.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_hr.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_hi.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_gu.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_fr.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_fil.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_fi.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_fa.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_et.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_es.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_es-419.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_en.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_en-gb.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_el.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_de.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_da.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_cs.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ca.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_bn.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_bg.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_ar.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdateres_am.dll
C\Program Files\dealplylive\update\1.3.23.0\goopdate.dll
C\Program Files\dealplylive\update\1.3.23.0\dealplyliveondemand.exe
C\Program Files\dealplylive\update\1.3.23.0\dealplylivebroker.exe
C\Program Files\dealplylive\update\dealplylive.exe

*reg_key
HKLM\SOFTWARE\Classes\AppID\{80fabb17-63AF-4655-9F07-B6509EE37AF2}
HKLM\SOFTWARE\Classes\Installer\Features\93B{USERNAME}29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Classes\Installer\Products\93B{USERNAME}29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93B{USERNAME}29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{092A642B-141A-4422-9A56-FFC008181735}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9850733-08C1-4CB6-AF33-14C7F0757B90}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyLiveUpdateTaskMachineUA
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9
HKLM\SOFTWARE\Google\Chrome\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Compatibility{USERNAME}apter\Signatures | DealPlyLiveUpdateTaskMachineUA.job
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Compatibility{USERNAME}apter\Signatures | DealPlyLiveUpdateTaskMachineUA.job.fp
HKLM\SOFTWARE\Classes\Installer\Upgr{USERNAME}eCodes\DBFF5159BA0409649B38F48A1EE47E5F | 93B{USERNAME}29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9507B717889AF294FAB1CD7FB08E90BA | 93B{USERNAME}29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Upgr{USERNAME}eCodes\DBFF5159BA0409649B38F48A1EE47E5F | 93B{USERNAME}29AC2E44034A96BCB446EB8552E

 

11111.png

 


  1. PUP.HohoSearch, Popfreeka

    PUP.HohoSearch *file C:\windows\System32\tasks\coacuiedclernege module C:\Prorogram files\ckotersequzight\vercolystecuyconfiguration.dll C:\Prorogram files\ckotersequzight\coacuiedclernegemodulejedeentsherwusy.exe C:\Prorogram files\ckoterse...
    Date2021.01.28 Byezclean Reply0 Views1 file
    Read More
  2. Adware.Linkury, Netfilter

    Adware.Linkury *reg_key HKCU\software\microsoft\internet explorer\main\featurecontrol\feature_browser_emulation:linkury.exe HKLM\software\microsoft\windows\currentversion\run:linkury chrome smartbar HKLM\software\microsoft\tracing\linkury_ra...
    Date2021.01.27 Byezclean Reply0 Views6 file
    Read More
  3. Trojan. RegistryTool, AdwareAlert

    Trojan. RegistryTool * File path C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegistryTool\Uninstall RegistryTool.lnk C:\Program Files\Downloaded Installers\{954FB8FF-7FCF-46F2-869F-1B61D1212904}\setup.msi C:\Users\Public\Desktop\Reg...
    Date2021.01.26 Byezclean Reply0 Views6 file
    Read More
  4. PUP.UCalendar, WebInternet

    PUP.UCalendar *file C:\Users\{USERNAME}\AppData\Local\ucalendar\desktopcalendar.dll C:\Users\{USERNAME}\AppData\Local\ucalendar\huangli.xml C:\Users\{USERNAME}\AppData\Local\ucalendar\icolog C:\Users\{USERNAME}\AppData\Local\ucalendar\niaoji...
    Date2021.01.25 Byezclean Reply0 Views1 file
    Read More
  5. PUP. Guffins, PriceLess

    PUP. Guffins *file C:\Program Files\Guffins\bar\1.bin\chrome\u4ffxtbr.jar C:\Program Files\Guffins\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML C:\Program Files\Guffins\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE C:\Pr...
    Date2021.01.22 Byezclean Reply0 Views1 file
    Read More
  6. Adware.DVDVideoSoft, FileRubber

    Adware.DVDVideoSoft *file C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\DVDVideoSoft Free Studio.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Log Report.lnk C:\ProgramData\Microsoft\Windows\Start ...
    Date2021.01.21 Byezclean Reply0 Views3 file
    Read More
  7. Adware.CoolVerte, Grape

    Adware.CoolVerte *file C:\users\public\Desktop\coolverter.lnk C:\programdata\microsoft\windows\start menu\programs\coolverter\coolverter.lnk C:\program files\coolverter\updater.exe C:\program files\coolverter\coolverter.exe *reg_key HKLM\sof...
    Date2021.01.20 Byezclean Reply0 Views11 file
    Read More
  8. Adware.dvdvideosoft, UniversalDriver

    Adware.dvdvideosoft *file C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dvdvideosoft free studio.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\log report.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\premium memb...
    Date2021.01.19 Byezclean Reply0 Views4 file
    Read More
  9. Trojan.winrule, BitCoinMiner

    Trojan.winrule *file C:\Program Files\winrule\Uninstall.exe C:\Program Files\winrule\WinRule.exe C:\Program Files\winrule\WinRuleSync.exe C:\Program Files\winrule\WinRuleSync_.exe C:\Program Files\winrule\winruletask.exe C:\Program Files\win...
    Date2021.01.15 Byezclean Reply0 Views14 file
    Read More
  10. PUP.DealPly, MinerGate

    PUP. DealPly *file C:\windows\tasks\dealplyliveupdatetaskmachinecore.job C:\program files\dealplylive\update\1.3.23.0\psuser.dll C:\program files\dealplylive\update\1.3.23.0\psmachine.dll C:\program files\dealplylive\update\1.3.23.0\npgoogle...
    Date2021.01.12 Byezclean Reply0 Views16 file
    Read More
  11. Trojan.TechAgent, Ghapoly

    Trojan.TechAgent *file C:\Windows\System32\Tasks\TechAgentTask C:\Windows\System32\Tasks\TechAgent Task C:\Users\Public\Desktop\TechAgent.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechAgent\TechAgent.lnk C:\ProgramData\Microso...
    Date2021.01.08 Byezclean Reply0 Views7 file
    Read More
  12. Adware.BlueMoon, FileSubmit

    Adware.Agent *file C:\Program Files\ZPA7NKFZ6Y\uninstaller.exe C:\Program Files\ZPA7NKFZ6Y\ZPA7NKFZ6.exe C:\Program Files\1CW6G366CO\E13LO2C7B.exe C:\Program Files\1CW6G366CO\uninstaller.exe *reg_key HKLM\SOFTWARE\Microsoft\Tracing\E13LO2C7B...
    Date2021.01.07 Byezclean Reply0 Views3 file
    Read More
  13. PUP.MarvelSound, CalendarTool

    PUP.MarvelSound *reg_key HKLM\SOFTWARE\Classes\MarvelSound.Media.1 HKLM\SOFTWARE\Classes\SystemFileAssociations\audio\OpenWithList\marvelsound.exe HKLM\SOFTWARE\Classes\SystemFileAssociations\video\OpenWithList\marvelsound.exe *reg_val HKLM\...
    Date2021.01.06 Byezclean Reply0 Views7 file
    Read More
  14. Trojan.Ghapoly, BestCleaner

    Trojan.Ghapoly *file C:\Program Files\ghapoly\Release_21.dll C:\Program Files\Ghapoly\Proxy32.dll C:\Program Files\Ghapoly\libvlc.dll C:\Program Files\Ghapoly\launcher_2.dll C:\Program Files\Ghapoly\drizutainshupkCld.dll2428453 C:\Program Fi...
    Date2021.01.05 Byezclean Reply0 Views7 file
    Read More
  15. Adware.Ebuyer, SmartCloud

    Adware.Ebuyer *file C\Windows\System32\Tasks\e-Buyer Updater C\Users\{USERNAME}\AppData\Local\ebuyer\ebuyer\1.4.4.4\res.dll C\Users\{USERNAME}\AppData\Local\ebuyer\ebuyer\1.4.4.4\fobkbCag.dll C\Users\{USERNAME}\AppData\Local\ebuyer\ebuyer\1....
    Date2021.01.04 Byezclean Reply0 Views6 file
    Read More
  16. Trojan.TCClock, PDFCracker

    Trojan.TCClock *file C:\Users\{USERNAME}\AppData\Roaming\RAF\coffeeclock\TCC-ClockFace.exe C:\Users\{USERNAME}\AppData\Roaming\RAF\coffeeclock\TCCalEvents.exe C:\Users\{USERNAME}\AppData\Roaming\RAF\coffeeclock\TCClock.exe C:\Users\{USERNAME...
    Date2020.12.29 Byezclean Reply0 Views15 file
    Read More
  17. PUP.GrassValley, Heinote

    PUP.GrassValley *file C\Users\{USERNAME}\Desktop\EDIUS7_LO{USERNAME}ER.lnk C\Users\{USERNAME}\Desktop\EDIUS6_5_LO{USERNAME}ER.lnk C\Program Files\Grass Valley\EDIUS 7\Uninstall.exe C\Program Files\Grass Valley\EDIUS 7\LO{USERNAME}ER_7.40 488...
    Date2020.12.28 Byezclean Reply0 Views4 file
    Read More
  18. PUP.YoutubeMusic, DealPly

    PUP.YoutubeMusic *file C\Users\{USERNAME}\Desktop\Youtube Music Downlo{USERNAME}er.lnk C\Users\{USERNAME}\AppData\Local\Temp\is-AP0D1.tmp\Youtube_Music_Downlo{USERNAME}er_Setup.exe C\ProgramData\Microsoft\Windows\Start Menu\Programs\youtube ...
    Date2020.12.24 Byezclean Reply0 Views9 file
    Read More
  19. PUP.WinZipDiskTool

    PUP.WinZipDiskTool *files %appdata%\wzdt\lci.lci %appdata%\wzdt\uid.txt %programfiles%\winzip disk tools\wzdthelper.dll %programfiles%\winzip disk tools\asores.dll %programfiles%\winzip disk tools\wzdtdefragsrv64.exe %programfiles%\winzip di...
    Date2020.12.23 Byezclean Reply0 Views10 file
    Read More
  20. Trojan.HaoTuKanKan, HPMonkey

    Trojan.HaoTuKanKan *file C\Users\{USERNAME}\AppData\Local\HaoTuKanKan\HaoTuKanKan.exe C\Users\{USERNAME}\AppData\Local\HaoTuKanKan\haotu_update.dll C\Users\{USERNAME}\AppData\Local\HaoTuKanKan\uninstall.exe *reg_key HKCU\Software\HaoTuKanKan...
    Date2020.12.23 Byezclean Reply0 Views2 file
    Read More
Board Pagination Prev 1 2 3 4 5 6 Next
/ 6
XE Login