애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


[00-PROCESS]**17f3 -/- c:\Users\Administrator\appdata\roaming\17f3.exe
[00-PROCESS]**2250 -/- c:\Users\Administrator\appdata\roaming\2250.exe
[00-PROCESS]**24naq -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[00-PROCESS]**Agagag -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Agagag.exe
[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**atiesrxx -/- C:\Windows\system32\atiesrxx.exe
[00-PROCESS]**azza9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861390\azza9.exe
[00-PROCESS]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
[00-PROCESS]**cafef9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[00-PROCESS]**chrome -/- C:\Program Files\Google\Chrome\Application\chrome.exe
[00-PROCESS]**CNAB8SWK -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAB8SWK.EXE
[00-PROCESS]**CNAP2LAK -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2LAK.EXE
[00-PROCESS]**CNAP2RPK -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2RPK.EXE
[00-PROCESS]**ctfmon -/- C:\Windows\system32\ctfmon.exe
[00-PROCESS]**DCSHelper -/- C:\ProgramData\DatacardService\DCSHelper.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**dqklonee -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-92171\dqklonee.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**Explorer -/- C:\Windows\Explorer.EXE
[00-PROCESS]**FacebookUpdate -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe
[00-PROCESS]**fjpar10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85609\fjpar10.exe
[00-PROCESS]**fjpar11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-89609\fjpar11.exe
[00-PROCESS]**fjpark1 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82502\fjpark1.exe
[00-PROCESS]**fjpark2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82503\fjpark2.exe
[00-PROCESS]**fjpark3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82504\fjpark3.exe
[00-PROCESS]**fjpark4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82505\fjpark4.exe
[00-PROCESS]**fjpark5 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82506\fjpark5.exe
[00-PROCESS]**fjpark6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82507\fjpark6.exe
[00-PROCESS]**fjpark7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82508\fjpark7.exe
[00-PROCESS]**fjpark8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82509\fjpark8.exe
[00-PROCESS]**fjpark8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85509\fjpark8.exe
[00-PROCESS]**fjpdqz -/- c:\recycler\s-1-5-21-0243556031-888888379-781863308-11609\fjpdqz.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**fsssvc -/- C:\Program Files\Windows Live\Family Safety\fsssvc.exe
[00-PROCESS]**FWDmgr -/- C:\RECYCLER\FWDmgr.exe
[00-PROCESS]**fxssvc -/- C:\Windows\system32\fxssvc.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GROOVE -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**inetb123 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-121921\inetb123.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**magent -/- C:\Users\Administrator\AppData\Roaming\Mail.Ru\Agent\magent.exe
[00-PROCESS]**maintenanceservice -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\Windows\system32\msiexec.exe
[00-PROCESS]**mspaint -/- C:\Windows\system32\mspaint.exe
[00-PROCESS]**notepad -/- C:\Windows\system32\notepad.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**ouc -/- C:\Program Files\MegaFon Modem\UpdateDog\ouc.exe
[00-PROCESS]**p444y129 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\p444y129.exe
[00-PROCESS]**peacewm10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64108\peacewm10.exe
[00-PROCESS]**peacewm11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64118\peacewm11.exe
[00-PROCESS]**peacewm98 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64178\peacewm98.exe
[00-PROCESS]**peacewme -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-73591\peacewme.exe
[00-PROCESS]**peacewme2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71291\peacewme2.exe
[00-PROCESS]**peacewme3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71294\peacewme3.exe
[00-PROCESS]**peacewme4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-74294\peacewme4.exe
[00-PROCESS]**peacewme6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64594\peacewme6.exe
[00-PROCESS]**peacewme7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64574\peacewme7.exe
[00-PROCESS]**peacewme8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64578\peacewme8.exe
[00-PROCESS]**peacewme9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64598\peacewme9.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**proxzy129 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-13259\proxzy129.exe
[00-PROCESS]**prxzy129 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\prxzy129.exe
[00-PROCESS]**realsched -/- c:\program files\real\realplayer\Update\realsched.exe
[00-PROCESS]**recordingmanager -/- C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe
[00-PROCESS]**rndlresolversvc -/- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
[00-PROCESS]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
[00-PROCESS]**s11h10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-187892\s11h10.exe
[00-PROCESS]**s11z2ec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-101417\s11z2ec.exe
[00-PROCESS]**s222h10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-22892\s222h10.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**SearchProtocolHost -/- C:\Windows\system32\SearchProtocolHost.exe
[00-PROCESS]**sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe
[00-PROCESS]**Skype -/- C:\Program Files\Skype\Phone\Skype.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**soffice -/- C:\Program Files\OpenOffice.org 3\program\soffice.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**sppsvc -/- C:\Windows\system32\sppsvc.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**sxshin -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-81540\sxshin.exe
[00-PROCESS]**szsec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861397\szsec.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**TuneUpUtilitiesApp32 -/- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
[00-PROCESS]**TuneUpUtilitiesService32 -/- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**Updater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[00-PROCESS]**Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**wbengine -/- C:\Windows\system32\wbengine.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**Ygagae -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ygagae.exe
[01-HKCUREG]**Agagag -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Agagag.exe
[01-HKCUREG]**ApnUpdater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[01-HKCUREG]**azzrab9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861390\azza9.exe
[01-HKCUREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[01-HKCUREG]**ca40229dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[01-HKCUREG]**CNAP2 Launcher -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2LAK.EXE
[01-HKCUREG]**dqklonee -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-92171\dqklonee.exe
[01-HKCUREG]**Egagak -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Egagak.exe
[01-HKCUREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[01-HKCUREG]**fjpar10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85609\fjpar10.exe
[01-HKCUREG]**fjpar11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-89609\fjpar11.exe
[01-HKCUREG]**fjpark1 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82502\fjpark1.exe
[01-HKCUREG]**fjpark2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82503\fjpark2.exe
[01-HKCUREG]**fjpark3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82504\fjpark3.exe
[01-HKCUREG]**fjpark4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82505\fjpark4.exe
[01-HKCUREG]**fjpark5 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82506\fjpark5.exe
[01-HKCUREG]**fjpark6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82507\fjpark6.exe
[01-HKCUREG]**fjpark7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82508\fjpark7.exe
[01-HKCUREG]**fjpark8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82509\fjpark8.exe
[01-HKCUREG]**fjpark9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85509\fjpark8.exe
[01-HKCUREG]**fjpdqz -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-11609\fjpdqz.exe
[01-HKCUREG]**Ggagam -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ggagam.exe
[01-HKCUREG]**Hgagan -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Hgagan.exe
[01-HKCUREG]**IEtemp -/- C:\Users\Administrator\AppData\Roaming\IEtemp.scr
[01-HKCUREG]**Igagao -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Igagao.exe
[01-HKCUREG]**inetb123 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-121921\inetb123.exe
[01-HKCUREG]**Jgagap -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Jgagap.exe
[01-HKCUREG]**MAgent -/- C:\Users\Administrator\AppData\Roaming\Mail.Ru\Agent\magent.exe -CU
[01-HKCUREG]**Ogagau -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ogagau.exe
[01-HKCUREG]**p4440229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\p444y129.exe
[01-HKCUREG]**peacewm10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64108\peacewm10.exe
[01-HKCUREG]**peacewm11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64118\peacewm11.exe
[01-HKCUREG]**peacewm98 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64178\peacewm98.exe
[01-HKCUREG]**peacewme -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-73591\peacewme.exe
[01-HKCUREG]**peacewme2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71291\peacewme2.exe
[01-HKCUREG]**peacewme3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71294\peacewme3.exe
[01-HKCUREG]**peacewme4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-74294\peacewme4.exe
[01-HKCUREG]**peacewme6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64594\peacewme6.exe
[01-HKCUREG]**peacewme7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64574\peacewme7.exe
[01-HKCUREG]**peacewme8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64578\peacewme8.exe
[01-HKCUREG]**peacewme9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64598\peacewme9.exe
[01-HKCUREG]**Pgagav -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Pgagav.exe
[01-HKCUREG]**proxzy0229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-13259\proxzy129.exe
[01-HKCUREG]**przy0229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\prxzy129.exe
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[01-HKCUREG]**Screen Saver Pro 3.1 -/- C:\Users\Administrator\AppData\Roaming\ScreenSaverPro.scr
[01-HKCUREG]**Sgagay -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Sgagay.exe
[01-HKCUREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[01-HKCUREG]**Skype -/- C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun
[01-HKCUREG]**sz1s3ec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-101417\s11z2ec.exe
[01-HKCUREG]**szsec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861397\szsec.exe
[01-HKCUREG]**t4q -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[01-HKCUREG]**TkBellExe -/- c:\program files\real\realplayer\Update\realsched.exe -osboot
[01-HKCUREG]**Vgagab -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Vgagab.exe
[01-HKCUREG]**Windows Firewall IP Manager -/- C:\RECYCLER\FWDmgr.exe
[01-HKCUREG]**x111n9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-187892\s11h10.exe
[01-HKCUREG]**x222n9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-22892\s222h10.exe
[01-HKCUREG]**xshin -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-81540\sxshin.exe
[01-HKCUREG]**Ygagae -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ygagae.exe
[01-HKCUREG]**Zgagaf -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Zgagaf.exe
[02-HKLMREG]**Agagag -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Agagag.exe
[02-HKLMREG]**ApnUpdater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[02-HKLMREG]**azzrab9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861390\azza9.exe
[02-HKLMREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[02-HKLMREG]**ca40229dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[02-HKLMREG]**CNAP2 Launcher -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2LAK.EXE
[02-HKLMREG]**dqklonee -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-92171\dqklonee.exe
[02-HKLMREG]**Egagak -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Egagak.exe
[02-HKLMREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[02-HKLMREG]**fjpar10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85609\fjpar10.exe
[02-HKLMREG]**fjpar11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-89609\fjpar11.exe
[02-HKLMREG]**fjpark1 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82502\fjpark1.exe
[02-HKLMREG]**fjpark2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82503\fjpark2.exe
[02-HKLMREG]**fjpark3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82504\fjpark3.exe
[02-HKLMREG]**fjpark4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82505\fjpark4.exe
[02-HKLMREG]**fjpark5 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82506\fjpark5.exe
[02-HKLMREG]**fjpark6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82507\fjpark6.exe
[02-HKLMREG]**fjpark7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82508\fjpark7.exe
[02-HKLMREG]**fjpark8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-82509\fjpark8.exe
[02-HKLMREG]**fjpark9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-85509\fjpark8.exe
[02-HKLMREG]**fjpdqz -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-11609\fjpdqz.exe
[02-HKLMREG]**Ggagam -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ggagam.exe
[02-HKLMREG]**Hgagan -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Hgagan.exe
[02-HKLMREG]**IEtemp -/- C:\Users\Administrator\AppData\Roaming\IEtemp.scr
[02-HKLMREG]**Igagao -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Igagao.exe
[02-HKLMREG]**inetb123 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-121921\inetb123.exe
[02-HKLMREG]**Jgagap -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Jgagap.exe
[02-HKLMREG]**MAgent -/- C:\Users\Administrator\AppData\Roaming\Mail.Ru\Agent\magent.exe -CU
[02-HKLMREG]**Ogagau -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ogagau.exe
[02-HKLMREG]**p4440229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\p444y129.exe
[02-HKLMREG]**peacewm10 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64108\peacewm10.exe
[02-HKLMREG]**peacewm11 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64118\peacewm11.exe
[02-HKLMREG]**peacewm98 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64178\peacewm98.exe
[02-HKLMREG]**peacewme -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-73591\peacewme.exe
[02-HKLMREG]**peacewme2 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71291\peacewme2.exe
[02-HKLMREG]**peacewme3 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-71294\peacewme3.exe
[02-HKLMREG]**peacewme4 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-74294\peacewme4.exe
[02-HKLMREG]**peacewme6 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64594\peacewme6.exe
[02-HKLMREG]**peacewme7 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64574\peacewme7.exe
[02-HKLMREG]**peacewme8 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64578\peacewme8.exe
[02-HKLMREG]**peacewme9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-64598\peacewme9.exe
[02-HKLMREG]**Pgagav -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Pgagav.exe
[02-HKLMREG]**proxzy0229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-13259\proxzy129.exe
[02-HKLMREG]**przy0229 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15559\prxzy129.exe
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[02-HKLMREG]**Screen Saver Pro 3.1 -/- C:\Users\Administrator\AppData\Roaming\ScreenSaverPro.scr
[02-HKLMREG]**Sgagay -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Sgagay.exe
[02-HKLMREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[02-HKLMREG]**Skype -/- C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun
[02-HKLMREG]**sz1s3ec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-101417\s11z2ec.exe
[02-HKLMREG]**szsec -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-861397\szsec.exe
[02-HKLMREG]**t4q -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[02-HKLMREG]**TkBellExe -/- c:\program files\real\realplayer\Update\realsched.exe -osboot
[02-HKLMREG]**Vgagab -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Vgagab.exe
[02-HKLMREG]**Windows Firewall IP Manager -/- C:\RECYCLER\FWDmgr.exe
[02-HKLMREG]**x111n9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-187892\s11h10.exe
[02-HKLMREG]**x222n9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-22892\s222h10.exe
[02-HKLMREG]**xshin -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-81540\sxshin.exe
[02-HKLMREG]**Ygagae -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ygagae.exe
[02-HKLMREG]**Zgagaf -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Zgagaf.exe
[03-BHOCLSD]**Foxit PDF Creator Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~1\MIF5BA~1\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MIF5BA~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**RealNetworks Download and Record Plugin for Internet Explorer -/- C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll -/- {3049C3E9-B461-4BC5-8870-4C09146192CA}
[03-BHOCLSD]**Softonic Helper Object -/- C:\Program Files\Softonic\Softonic\1.8.8.11\bh\Softonic.dll -/- {E87806B5-E908-45FD-AF5E-957D83E58E68}
[03-BHOCLSD]**Windows Live Sign-in Helper -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[04-TOOLBAR]**Foxit PDF Creator Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[04-TOOLBAR]**SimilarWeb -/- C:\Program Files\SimilarWeb\SimilarWeb.dll -/- {74198672-5F7D-4FE9-A611-4AC1D5A66A15}
[04-TOOLBAR]**Softonic Toolbar -/- C:\Program Files\Softonic\Softonic\1.8.8.11\SoftonicTlbr.dll -/- {5018CFD2-804D-4C99-9F81-25EAEA2769DE}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**AMD External Events Utility -/- AMD External Events Utility -/- C:\Windows\system32\atiesrxx.exe
[05-SERVICE]**fsssvc -/- Windows Live Family Safety Service -/- C:\Program Files\Windows Live\Family Safety\fsssvc.exe
[05-SERVICE]**gupdate -/- Служба Google Update (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Служба Google Update (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**HWDeviceService.exe -/- HWDeviceService.exe -/- C:\ProgramData\DatacardService\HWDeviceService.exe -/service
[05-SERVICE]**lmhosts -/- Модуль поддержки NetBIOS через TCP/IP -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\lltdsvc.dll
[05-SERVICE]**MegaFon Modem. RunOuc -/- MegaFon Modem. OUC -/- C:\Program Files\MegaFon Modem\UpdateDog\ouc.exe
[05-SERVICE]**Microsoft SharePoint Workspace Audit Service -/- Microsoft SharePoint Workspace Audit Service -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[05-SERVICE]**MozillaMaintenance -/- Mozilla Maintenance Service -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[05-SERVICE]**NlaSvc -/- Служба сведений о подключенных сетях -/- C:\Windows\System32\svchost.exe
[05-SERVICE]**nsi -/- Служба интерфейса сохранения сети -/- C:\Windows\system32\svchost.exe
[05-SERVICE]**ose -/- Office  Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**RealNetworks Downloader Resolver Service -/- RealNetworks Downloader Resolver Service -/- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
[05-SERVICE]**SkypeUpdate -/- Skype Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[05-SERVICE]**TuneUp.UtilitiesSvc -/- TuneUp Utilities Service -/- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe
[05-SERVICE]**UxTuneUp -/- TuneUp Theme Extension -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\uxtuneup.dll




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 9. 7. 21:52 ] Posted by 프로세스 천국 , 프로그램분석
,