애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


[00-PROCESS]**cmd -/- C:\WINDOWS\system32\cmd.exe
[00-PROCESS]**conime -/- C:\WINDOWS\Tasks\conime.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[00-PROCESS]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[00-PROCESS]**entering-se -/- C:\WINDOWS\system32\entering-se.exe
[00-PROCESS]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[00-PROCESS]**Hwp -/- C:\HNC\Hwp70\Hwp.exe
[00-PROCESS]**ie_signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\ie_signkey.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**internetdownload_se -/- C:\WINDOWS\system32\internetdownload_se.exe
[00-PROCESS]**IProtect -/- C:\Program Files\IProtect\IProtect.exe
[00-PROCESS]**IProtectUpdate -/- C:\Program Files\IProtect\IProtectUpdate.exe
[00-PROCESS]**mbox -/- C:\Program Files\displaylink\mbox.exe
[00-PROCESS]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**msfeedssync -/- C:\WINDOWS\system32\msfeedssync.exe
[00-PROCESS]**msfsvc -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[00-PROCESS]**NATEONMain -/- C:\Program Files\NATEON\BIN\NATEONMain.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[00-PROCESS]**nmnewmgr -/- C:\Program Files\addendum_sb\nmnewmgr.exe
[00-PROCESS]**nmnewup -/- C:\Program Files\addendum_sb\nmnewup.exe
[00-PROCESS]**npkcmsvc -/- C:\Program Files\PlayNC\nctalk\npkcrypt\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**realsched -/- C:\Program Files\Real\RealPlayer\update\realsched.exe
[00-PROCESS]**realupgrade -/- C:\Program Files\Real\RealUpgrade\realupgrade.exe
[00-PROCESS]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[00-PROCESS]**smartmode_se -/- C:\WINDOWS\system32\smartmode_se.exe
[00-PROCESS]**userinforesetupdate -/- C:\WINDOWS\userinforesetupdate.exe
[00-PROCESS]**weblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblink.exe
[00-PROCESS]**weblinkup -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\Fileham.com\FileHam(fast)\WinCloud.exe
[00-PROCESS]**windowstab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstab.exe
[00-PROCESS]**windowstabup -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[00-PROCESS]**winst -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**wscntfy -/- C:\WINDOWS\system32\wscntfy.exe
[01-HKCUREG]**ctdata -/- C:\Documents and Settings\Administrator\LOCALS~1\Temp\data.exe
[01-HKCUREG]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[01-HKCUREG]**iniweblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[01-HKCUREG]**IProtect -/- C:\Program Files\IProtect\IProtectUpdate.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**mbox -/- C:\Program Files\displaylink\mbox.exe
[01-HKCUREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**nmnew -/- C:\Program Files\addendum_sb\nmnewup.exe
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[01-HKCUREG]**TkBellExe -/- C:\Program Files\Real\RealPlayer\update\realsched.exe  -osboot
[01-HKCUREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[01-HKCUREG]**WindowsTab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[01-HKCUREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe UPDATE
[01-HKCUREG]**winsigntool -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe update
[02-HKLMREG]**ctdata -/- C:\Documents and Settings\Administrator\LOCALS~1\Temp\data.exe
[02-HKLMREG]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[02-HKLMREG]**iniweblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[02-HKLMREG]**IProtect -/- C:\Program Files\IProtect\IProtectUpdate.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**mbox -/- C:\Program Files\displaylink\mbox.exe
[02-HKLMREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**nmnew -/- C:\Program Files\addendum_sb\nmnewup.exe
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[02-HKLMREG]**TkBellExe -/- C:\Program Files\Real\RealPlayer\update\realsched.exe  -osboot
[02-HKLMREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[02-HKLMREG]**WindowsTab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[02-HKLMREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe UPDATE
[02-HKLMREG]**winsigntool -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe update
[03-BHOCLSD]**{AB705622-B25B-491B-A6BF-4A46FDDBC88E} -/- C:\WINDOWS\system32\kakutk.dll
[04-TOOLBAR]**{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9} -/- C:\PROGRA~1\WingGo\winggo.dll
[04-TOOLBAR]**{EB291D96-1D76-450D-90E4-BE798BA796E8} -/- C:\Program Files\smartmode\smartmode.dll
[05-SERVICE]**3RUmYAM9 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\c85oCu.pic
[05-SERVICE]**enteringservice -/- C:\WINDOWS\system32\entering-se.exe
[05-SERVICE]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[05-SERVICE]**InternetDownload Update Service -/- C:\WINDOWS\system32\internetdownload_se.exe
[05-SERVICE]**msfsvc32 -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[05-SERVICE]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**npggsvc -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- C:\Program Files\PlayNC\nctalk\npkcrypt\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**NVSvc -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**nvUpdatusService -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**SmartMode Update Service -/- C:\WINDOWS\system32\smartmode_se.exe
[05-SERVICE]**V3 Lite Service -/-
[05-SERVICE]**WinCloud -/- C:\Program Files\Fileham.com\FileHam(fast)\WinCloud.exe
[05-SERVICE]**windowfaster Update Service -/- C:\WINDOWS\userinforesetupdate.exe
[05-SERVICE]**WindowsDriver -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WindowsDriver.dll
[05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 4. 21. 07:55 ] Posted by 프로세스 천국 , 프로그램분석
,