|
|
|
|
¾Ç¼ºÄÚµå À̸§ |
Adware/EzReward |
¾Ç¼ºÄÚµå Á¾·ù |
adware |
½ÇÇà
ȯ°æ |
ActiveX, Dropper |
Á¦ÀÛÁö |
|
¹ß°ßÀÏ |
|
¾Ç¼ºÄÚµå
Å©±â |
|
¸ÞÀÏ
Á¦¸ñ |
|
÷ºÎÆÄÀÏ |
|
Áõ»ó |
Adware/EzReward´Â ActiveX Çü½Ä ¹× °í°´ÀÇ µ¿ÀÇ ÀºÆÐÀûÀÎ ÇൿÀ¸·Î ´Ù¿î ¼³Ä¡ µÇ¸ç,
¼³Ä¡ °úÁ¤¿¡¼µµ ¼³Ä¡°úÁ¤À» Ç¥½Ã ÇÏÁö ¾Ê´Â ¾Ç¼ºÄÚµåÀÌ´Ù.
¼³Ä¡ ÀÌÈÄ, ÃÖ¼ÒÇÑÀÇ Ç¥½Ã ÀÌ¿Ü¿¡´Â ÇÁ·Î±×·¥ ¼³Ä¡¸¦ ¾Ë¾Æº¼¼ö ¾øµµ·Ï Çϸç,
»ç¿ëÀÚ µ¿ÀÇ ¾øÀÌ À¥»çÀÌÆ®ÀÇ ¼³Á¤¹× ±âº» ±â´ÉÀ» º¯°æ ÈÄ °í°´ÀÇ ÀԷ¸¦ °¡·Îä¾î,
ƯÁ¤ ½ÎÀÌÆ®¸¦ Ãß°¡·Î ºÒ·¯ µå¸®´Â ¿ªÈ°¸¦ ÇÑ´Ù.
¶ÇÇÑ »ç¿ëÀÚ µ¿ÀÇ ¾øÀÌ ´Ù¸¥ ÇÁ·Î±×·¥À» ´Ù¿î ¹Þ¾Æ ¼³Ä¡ ÇÑ´Ù.
ÀÌ´Â
1. À¥ ºê¶ó¿ìÀúÀÇ È¨ÆäÀÌÁö ¼³Á¤À̳ª °Ë»ö ¼³Á¤À» º¯°æ ¶Ç´Â ½Ã½ºÅÛ ¼³Á¤À» º¯°æÇÏ´Â ÇàÀ§
4. ´Ù¸¥ ÇÁ·Î±×·¥À» ´Ù¿î·Îµå ÇÏ¿© ¼³Ä¡ÇÏ°Ô ÇÏ´Â ÇàÀ§
¿¡ ÇØ´çÇÏ¿© ¾Ç¼ºÄÚµå·Î °£ÁÖ ÇÑ´Ù.
[»ý¼º ÆÄÀÏ]
%prog%\ezReward\ezReward.exe
%prog%\ezReward\Loading.exe
%prog%\ezReward\MaiSQLite.dll
%prog%\ezReward\erWindow.exe
%prog%\ezReward\ezReward.dll
%prog%\ezReward\HttpDll.dll
%prog%\ezReward\localsql.dll
%prog%\ezReward\Maicache.dll
%prog%\ezReward
%system%\EzReward.dll
%system%\npx32.exe --> ´Ù¿î·Î´õ ÃßÁ¤
[»ý¼º ·¹Áö]
HKEY_CURRENT_USER\software\ezReward
HKEY_CLASSES_ROOT\CLSID\{03E03234-EA1B-4392-8B72-F70B03664DD9}
HKEY_CLASSES_ROOT\TypeLib\{1FF1997C-C510-40EC-ADB9-CD350FA12093}
HKEY_CLASSES_ROOT\Interface\{05B2E66C-C616-417F-8F17-D362BEE65340}
HKEY_CLASSES_ROOT\MainBond.EzReward
HKEY_CLASSES_ROOT\MainBond.EzReward.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ezReward
HKEY_*_*\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ezReward
°æ·Î´Â ¾Æ·¡¸¦ ÂüÁ¶ ÇÑ´Ù.
%windows%
c:\windows
%program%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º\ÇÁ·Î±×·¥
%system%
C:\windows\system32
%prog%
C:\Program Files
%currentuser%
C:\Documents and Settings\(username)
%startmenu%
C:\Documents and Settings\(username)\½ÃÀÛ ¸Þ´º |
Ä¡·á ¹æ¹ý |
|
Á÷Á¢Ä¡·á¹æ¹ý |
|
|
|
|
|