2016.12.14 16:13

[PUP] SimpleMalware

조회 수 155 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄

 

PUP.SimpleMalware

 

* Registry path

 

HKEY_CURRENT_USER\Software\Simple Star
HKEY_LOCAL_MACHINE\SOFTWARE\Simple Star
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\E33A688D\A9DE\4653\9D98\86CBB8910021_Simple Star~F6DA81E5_is1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE7CDB1C\5DF4\4814\8C2A\EE1E51797B0C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Simple Malware Protector_startup

 

 

* Files path

 

C\Windows\System32\Tasks\Simple Malware Protector_startup
C\Users\Public\Desktop\Simple Malware Protector.lnk
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Simple Malware Protector\Uninstall Simple Malware Protector.lnk
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Simple Malware Protector\Simple Malware Protector.lnk
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Simple Malware Protector\Register Simple Malware Protector.lnk
C\Program Files\simple malware Protector\clamunpack\libclamav.dll
C\Program Files\Simple Malware Protector\clamunpack\clamscan.exe
C\Program Files\Simple Malware Protector\unins000.exe
C\Program Files\Simple Malware Protector\smpsys.dll
C\Program Files\Simple Malware Protector\SimpleMalwareProtector.exe
C\Program Files\Simple Malware Protector\scandll.dll
C\Program Files\Simple Malware Protector\AppResource.dll
C\Program Files\Simple Malware Protector\AppManager.exe
C\ProgramData\Microsoft\Windows\Start Menu\Programs\Simple Malware Protector
C\Program Files\Simple Malware Protector\clamunpack