2017.02.03 10:23

[Trojan] AdwareAlert

조회 수 595 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄

Trojan.AdwareAlert

 

* Registry path

 

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6743C36C-CBFE-11DB-9705-005056C00008}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\DC2CAED2C71EB9A4286940BC8177CCE1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel\NameSpace\{6743C36C-CBFE-11DB-9705-005056C00008}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B4016981C40D5F4B9925ED64AD7B526|  DC2CAED2C71EB9A4286940BC8177CCE1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A0BD03E9B55E174BA58880AA481EE87
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A30D1592ADAA3D743884B8318328AD99
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A491438A809F60F458DF33E67C80A5D2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF91BD5C23255BE4C8550ACDF0F2EE89
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E326614894984A1468CA53B7DFCF99A5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DC2CAED2C71EB9A4286940BC8177CCE1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2DEAC2CD-E17C-4A9B-8296-04CB1877CC1E}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AdwareAlertSrv

 

 

* Files path

 

C\Users\Public\Desktop\AdwareAlert.lnk
C\Program Files\adwarealert\FilterDrv\AdwareAlert.x86.sys
C\Program Files\AdwareAlert\FilterDrv\AdwareAlert.inf
C\Program Files\AdwareAlert\FilterDrv\AdwareAlert.cat
C\Program Files\AdwareAlert\FilterDrv\AdwareAlert.amd64.sys
C\Program Files\AdwareAlert\zlib.dll
C\Program Files\AdwareAlert\TCL.dll
C\Program Files\AdwareAlert\SpyCleaner.dll
C\Program Files\AdwareAlert\AdwareAlert.url
C\Program Files\AdwareAlert\AdwareAlert.srv.exe
C\Program Files\AdwareAlert\AdwareAlert.exe