PUP.MineApp
* Registry path
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run | mineApplication
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\MinesweeperApp
* Files path
C\Users\TEST\AppData\Roaming\MinesweeperApp\mineApplication.exe
C\Users\TEST\AppData\Roaming\MinesweeperApp\uninstaller.exe
DIR_C\Users\TEST\AppData\Roaming\MinesweeperApp
Adware.BlueMoon
* Files path
C\Users\TEST\AppData\Roaming\bluemoon\tongji.dll
C\Program Files\BlueMoon\uninst.exe
C\Program Files\BlueMoon\BlueMoonLegend.exe
|
|