¿¡ºê¸®Á¸¼Ò°³ | Á¦Ç°¼Ò°³ | °í°´¼¾ÅÍ | »çÀÌÆ®¸Ê | Home
°³ÀÎ°í°´ ¿©¼º°í°´ eº¸¾È¸¶ÄÏ À̺¥Æ®
°³ÀÎ°í°´±â¾÷°í°´
º¸¾ÈÁ¢¼Ó IDÀúÀå
AD ¹«·á·Î Ã¥¹Þ¾Æ°¡¼¼¿ä!


 
Adware/Pointshop
 Á¾·ù
adware
 °¨¿°°æ·Î
´Ù¿î·Îµå
 Ä¡·á¹æ¹ý

¿¡ºê¸®Á¸ Á¦Ç°±ºÀ¸·Î Áø´Ü/Ä¡·á °¡´ÉÇÕ´Ï´Ù.

 
Áõ»ó
Adware/Pointshop´Â Ÿ ÇÁ·Î±×·¥¿¡ ÇÔ²² µ¿ÀÇ ¾øÀÌ ¼³Ä¡ µÇ´Â ¾Ç¼ºÄÚµåÀÌ´Ù.

ÀÌ´Â
- À¥ ºê¶ó¿ìÀúÀÇ È¨ÆäÀÌÁö ¼³Á¤À̳ª °Ë»ö ¼³Á¤À» º¯°æ ¶Ç´Â ½Ã½ºÅÛ ¼³Á¤À» º¯°æÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¿î¿µÀ» ¹æÇØ, ÁßÁö ¶Ç´Â »èÁ¦ ÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¼³Ä¡¸¦ ¹æÇØÇÏ´Â ÇàÀ§
- ´Ù¸¥ ÇÁ·Î±×·¥À» ´Ù¿î·Îµå ÇÏ¿© ¼³Ä¡ÇÏ°Ô ÇÏ´Â ÇàÀ§
- ¿î¿µÃ¼°è ¶Ç´Â Ÿ ÇÁ·Î±×·¥ÀÇ º¸¾È¼³Á¤À» Á¦°ÅÇϰųª ³·°Ô º¯°æÇÏ´Â ÇàÀ§
- ÀÌ¿ëÀÚ°¡ ÇÁ·Î±×·¥À» Á¦°ÅÇϰųª Á¾·á½ÃÄѵµ ÇÁ·Î±×·¥(´çÇØ ÇÁ·Î±×·¥ÀÇ º¯Á¾ ÇÁ·Î±×·¥µµ Æ÷ÇÔ)ÀÌ Á¦°Å µÇ°Å³ª Á¾·áµÇÁö ¾Ê´Â ÇàÀ§
- »ç¿ëÀÚÀÇ Àǵµ¿Í »ó°ü¾ø´Â ±¤°í È¿°ú¸¦ ¹ß»ý½ÃÅ°´Â °æ¿ì

[»ý¼º ÆÄÀÏ]
%prog%\Pointshop´Â\uninst.exe
%prog%\Pointshop´Â\pointshp.DLL
%prog%\Pointshop´Â\*.*
%prog%\Pointshop´Â



[»ý¼º ·¹Áö]
HKEY_CURRENT_USER\software\1111111111
HKEY_CLASSES_ROOT\CLSID\{5E6A5D4D-16BF-4b30-978C-202CB8745EA9}
HKEY_CLASSES_ROOT\TypeLib\{C29FB616-E164-4AEA-AB00-661596DE0DDF}
HKEY_CLASSES_ROOT\Interface\{D8AB6DA4-DDE3-4349-9C53-AB89343BC4D4}
HKEY_CLASSES_ROOT\Windows pointshop
HKEY_CLASSES_ROOT\Windows pointshop.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows pointshop
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Windows pointshop




°æ·Î´Â ¾Æ·¡¸¦ ÂüÁ¶ ÇÑ´Ù.
%windows%
c:\windows
%program%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º\ÇÁ·Î±×·¥
%system%
C:\windows\system32
%prog%
C:\Program Files
%currentuser%
C:\Documents and Settings\(username)
%startmenu%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º
»ç¿ëÀÚ µ¿ÀǾøÀÌ BHO·Î ¼³Ä¡µÇ¾î »ç¿ëÀÚ Å°¿öµå¸¦ °¨½ÃÇÏ´Â ¾Öµå¿þ¾îÀÌ´Ù.
 
 
Adware/Rogue.AntiVirusXP2008
 Á¾·ù
adware
 °¨¿°°æ·Î
´Ù¿î·Î´õ
 Ä¡·á¹æ¹ý

¿¡ºê¸®Á¸ Á¦Ç°±ºÀ¸·Î Áø´Ü/Ä¡·á °¡´ÉÇÕ´Ï´Ù.

 
Áõ»ó
Adware/Rogue.AntiVirusXP2008´Â ´Ù¿î·Î´õ¿¡ ÀÇÇØ ¼³Ä¡µÇ¸ç,
ÇãÀ§ º¸¾È °æº¸, ºñ Á¤»óÀûÀÎ Á¾·á Áö¿ø, ºñ Á¤»óÀûÀÎ ¼³Ä¡ ¹æ¹ý,
Ÿ À¯ÇØÄÚµå ¼³Ä¡ µîÀ» ÇÏ´Â ÇãÀ§ ¾ÈƼ ¹ÙÀÌ·¯½º Á¦Ç°ÀÌ´Ù.

ÀÌ´Â
- À¥ ºê¶ó¿ìÀúÀÇ È¨ÆäÀÌÁö ¼³Á¤À̳ª °Ë»ö ¼³Á¤À» º¯°æ ¶Ç´Â ½Ã½ºÅÛ ¼³Á¤À» º¯°æÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¿î¿µÀ» ¹æÇØ, ÁßÁö ¶Ç´Â »èÁ¦ ÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¼³Ä¡¸¦ ¹æÇØÇÏ´Â ÇàÀ§
- ´Ù¸¥ ÇÁ·Î±×·¥À» ´Ù¿î·Îµå ÇÏ¿© ¼³Ä¡ÇÏ°Ô ÇÏ´Â ÇàÀ§
- ¿î¿µÃ¼°è ¶Ç´Â Ÿ ÇÁ·Î±×·¥ÀÇ º¸¾È¼³Á¤À» Á¦°ÅÇϰųª ³·°Ô º¯°æÇÏ´Â ÇàÀ§
- ÀÌ¿ëÀÚ°¡ ÇÁ·Î±×·¥À» Á¦°ÅÇϰųª Á¾·á½ÃÄѵµ ÇÁ·Î±×·¥(´çÇØ ÇÁ·Î±×·¥ÀÇ º¯Á¾ ÇÁ·Î±×·¥µµ Æ÷ÇÔ)ÀÌ Á¦°Å µÇ°Å³ª Á¾·áµÇÁö ¾Ê´Â ÇàÀ§
- »ç¿ëÀÚÀÇ Àǵµ¿Í »ó°ü¾ø´Â ±¤°í È¿°ú¸¦ ¹ß»ý½ÃÅ°´Â °æ¿ì

[»ý¼º ÆÄÀÏ]

%system%\blrhc5wej0etc7.scr
%system%\prhc5wej0etc7.exe
%system%\lrhc5wej0etc7.exe
%system%\rhc5wej0etc7.bmp (·»´ýÇÑ ÆÄÀÏÀ̸§)
%prog%\rhc5wej0etc7\*.* (·»´ýÇÑ Æú´õÀ̸§)
%prog%\rhc5wej0etc7


[»ý¼º ·¹Áö]
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run rhc5wej0etc7
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ************
HKEY_*_*\software\rhc5wej0etc7
HKEY_*_*\software\************

°æ·Î´Â ¾Æ·¡¸¦ ÂüÁ¶ ÇÑ´Ù.
%windows%
c:\windows
%program%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º\ÇÁ·Î±×·¥
%system%
C:\windows\system32
%prog%
C:\Program Files
%currentuser%
C:\Documents and Settings\(username)
%startmenu%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º
»ç¿ëÀÚ µ¿ÀǾøÀÌ BHO·Î ¼³Ä¡µÇ¾î »ç¿ëÀÚ Å°¿öµå¸¦ °¨½ÃÇÏ´Â ¾Öµå¿þ¾îÀÌ´Ù.
 
 
Adware/Rogue.Antispyware2008XP
 Á¾·ù
adware
 °¨¿°°æ·Î
´Ù¿î·Î´õ
 Ä¡·á¹æ¹ý

¿¡ºê¸®Á¸ Á¦Ç°±ºÀ¸·Î Áø´Ü/Ä¡·á °¡´ÉÇÕ´Ï´Ù.

 
Áõ»ó
Adware/Rogue.Antispyware2008XP´Â ÇãÀÇ °æ°í ¸Þ½ÃÁö¿Í ÇÔ²² Ÿ ¹ÙÀÌ·¯½º¸¦ ´Ù¿î¹Þ¾Æ ¼³Ä¡ Çϸç,
Á¤»óÀûÀÎ ¼³Ä¡ °æ·Î¸¦ Áؼö ÇÏÁö ¾ÊÀ¸¸ç, Á¾·á ¶ÇÇÑ ÀÏ¹Ý »ç¿ëÀÚµéÀÌ ÇÒ¼ö ¾øµµ·Ï ÇÏ´Â ¾Ç¼ºÄÚµåÀÌ´Ù.

ÀÌ´Â
- À¥ ºê¶ó¿ìÀúÀÇ È¨ÆäÀÌÁö ¼³Á¤À̳ª °Ë»ö ¼³Á¤À» º¯°æ ¶Ç´Â ½Ã½ºÅÛ ¼³Á¤À» º¯°æÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¿î¿µÀ» ¹æÇØ, ÁßÁö ¶Ç´Â »èÁ¦ ÇÏ´Â ÇàÀ§
- Á¤»ó ÇÁ·Î±×·¥ÀÇ ¼³Ä¡¸¦ ¹æÇØÇÏ´Â ÇàÀ§
- ´Ù¸¥ ÇÁ·Î±×·¥À» ´Ù¿î·Îµå ÇÏ¿© ¼³Ä¡ÇÏ°Ô ÇÏ´Â ÇàÀ§
- ¿î¿µÃ¼°è ¶Ç´Â Ÿ ÇÁ·Î±×·¥ÀÇ º¸¾È¼³Á¤À» Á¦°ÅÇϰųª ³·°Ô º¯°æÇÏ´Â ÇàÀ§
- ÀÌ¿ëÀÚ°¡ ÇÁ·Î±×·¥À» Á¦°ÅÇϰųª Á¾·á½ÃÄѵµ ÇÁ·Î±×·¥(´çÇØ ÇÁ·Î±×·¥ÀÇ º¯Á¾ ÇÁ·Î±×·¥µµ Æ÷ÇÔ)ÀÌ Á¦°Å µÇ°Å³ª Á¾·áµÇÁö ¾Ê´Â ÇàÀ§
- »ç¿ëÀÚÀÇ Àǵµ¿Í »ó°ü¾ø´Â ±¤°í È¿°ú¸¦ ¹ß»ý½ÃÅ°´Â °æ¿ì

[»ý¼º ÆÄÀÏ]
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\BASE\*.*
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\BASE
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\DELETED\*.*
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\DELETED
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\LOG\*.*
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\LOG
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\SAVED\*.*
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\SAVED
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP\*.*
%currentuser%\Application Data\Secure Solutions\Antispyware 2008 XP
%currentuser%\Application Data\Secure Solutions\*.*
%currentuser%\Application Data\Secure Solutions


[»ý¼º ·¹Áö]
HKEY_CURRENT_USER\software\Secure Solutions
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run s9201
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run InstallProgram



°æ·Î´Â ¾Æ·¡¸¦ ÂüÁ¶ ÇÑ´Ù.
%windows%
c:\windows
%program%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º\ÇÁ·Î±×·¥
%system%
C:\windows\system32
%prog%
C:\Program Files
%currentuser%
C:\Documents and Settings\(username)
%startmenu%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º
»ç¿ëÀÚ µ¿ÀǾøÀÌ BHO·Î ¼³Ä¡µÇ¾î »ç¿ëÀÚ Å°¿öµå¸¦ °¨½ÃÇÏ´Â ¾Öµå¿þ¾îÀÌ´Ù.
 
 
¹«´ÜÀüÀç¤ý¹èÆ÷±ÝÁö
¿¡ºê¸®Á¸¿¡¼­ Á¦°øÇÏ´Â ¸ðµç ÄÁÅÙÃ÷ Á¤º¸¿¡ ´ëÇÑ ÀúÀÛ±ÇÀº ¿¡ºê¸®Á¸ÀÇ ¼ÒÀ¯ÀÌ¸ç °ü·Ã¹ýÀÇ º¸È£¸¦ ¹Þ½À´Ï´Ù.
¿¡ºê¸®Á¸ÀÇ »çÀü Çã°¡ ¾øÀÌ ¿¡ºê¸®Á¸ ÄÁÅÙÃ÷¸¦ ¹«´ÜÀ¸·Î ÀüÀç, ¹èÆ÷¸¦ ±ÝÁöµÇ¾î ÀÖ½À´Ï´Ù.
À̸¦ À§¹ÝÇÏ´Â °æ¿ì ¼ÕÇعè»óÀÇ ´ë»ó ¶Ç´Â ¹Î.Çü»ç»óÀÇ ¹ýÀû ¼Ò¼Û ´ë»óÀÌ µÉ ¼ö ÀÖ½À´Ï´Ù.
                                                                 * ¿¡ºê¸®Á¸ Á¤º¸ ÀÌ¿ë ¹®ÀÇ : greenking@everyzone.com
   | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20