애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


[00-PROCESS]**1348138991 -/- C:\Windows\1348138991.exe
[00-PROCESS]**1351353514 -/- C:\ProgramData\System\1351353514.exe
[00-PROCESS]**5936.tmp -/- c:\Users\Administrator\appdata\local\temp\5936.tmp.exe
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AutoKMS -/- C:\Windows\AutoKMS\AutoKMS.exe
[00-PROCESS]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
[00-PROCESS]**booiken -/- C:\Users\Novin Pendar\booiken.exe
[00-PROCESS]**conhost -/- C:\Windows\system32\conhost.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**cyksazukhegy -/- c:\users\novin pendar\cyksazukhegy.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**explorer -/- C:\Windows\explorer.exe
[00-PROCESS]**gearupicjudu -/- c:\users\novin pendar\gearupicjudu.exe
[00-PROCESS]**HPSIsvc -/- C:\Windows\system32\HPSIsvc.exe
[00-PROCESS]**hydmilushonu -/- C:\Users\Novin Pendar\hydmilushonu.exe
[00-PROCESS]**hyzodhyzalea -/- c:\users\novin pendar\hyzodhyzalea.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**keusoa -/- C:\Users\Administrator\AppData\Roaming\Microsoft\keusoa.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**mocvakujijim -/- c:\users\novin pendar\mocvakujijim.exe
[00-PROCESS]**mopzyqbaratj -/- c:\users\novin pendar\mopzyqbaratj.exe
[00-PROCESS]**MSOSYNC -/- C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
[00-PROCESS]**Nimbuzz -/- C:\Program Files\Nimbuzz\Nimbuzz.exe
[00-PROCESS]**orbitdm -/- C:\Program Files\Orbit Downloader\orbitdm.exe
[00-PROCESS]**orbitnet -/- C:\Program Files\Orbit Downloader\orbitnet.exe
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**qeuqoa -/- C:\Users\Administrator\AppData\Roaming\Microsoft\qeuqoa.exe
[00-PROCESS]**Reader_sl -/- C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe
[00-PROCESS]**RTDHCPLM -/- C:\Windows\system32\RTDHCPLM.EXE
[00-PROCESS]**SearchFilterHost -/- C:\Windows\system32\SearchFilterHost.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**SearchProtocolHost -/- C:\Windows\system32\SearchProtocolHost.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**suxfogazuzyb -/- C:\Users\Novin Pendar\suxfogazuzyb.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**tebufsufeapa -/- c:\users\novin pendar\tebufsufeapa.exe
[00-PROCESS]**UpdateTask -/- C:\Program Files\Ask.com\UpdateTask.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**WUDFHost -/- C:\Windows\system32\WUDFHost.exe
[00-PROCESS]**zuhihikuctyk -/- c:\users\novin pendar\zuhihikuctyk.exe
[01-HKCUREG]**1351353514 -/- C:\ProgramData\System\1351353514.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe
[01-HKCUREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[01-HKCUREG]**booiken -/- C:\Users\Administrator\booiken.exe /q
[01-HKCUREG]**Classes -/- C:\Users\Administrator\AppData\Roaming\dwerrhfr\dibevcvf.exe
[01-HKCUREG]**cyksazukhegy -/- c:\Users\Administrator\cyksazukhegy.exe
[01-HKCUREG]**gearupicjudu -/- c:\Users\Administrator\gearupicjudu.exe
[01-HKCUREG]**hydmilushonu -/- C:\Users\Administrator\hydmilushonu.exe
[01-HKCUREG]**hyzodhyzalea -/- c:\Users\Administrator\hyzodhyzalea.exe
[01-HKCUREG]**Microsoft Security Updates -/- C:\Users\Administrator\AppData\Roaming\Microsoft\qeuqoa.exe
[01-HKCUREG]**mocvakujijim -/- c:\Users\Administrator\mocvakujijim.exe
[01-HKCUREG]**mopzyqbaratj -/- c:\Users\Administrator\mopzyqbaratj.exe
[01-HKCUREG]**MSNetDKNowiz -/- c:\Users\Administrator\appdata\local\temp\5936.tmp.exe
[01-HKCUREG]**Nimbuzz -/- C:\Program Files\Nimbuzz\Nimbuzz.exe
[01-HKCUREG]**OfficeSyncProcess -/- C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
[01-HKCUREG]**Regedit32 -/- C:\Windows\system32\regedit.exe
[01-HKCUREG]**RTDHCPL -/- RTDHCPL.EXE
[01-HKCUREG]**suxfogazuzyb -/- C:\Users\Administrator\suxfogazuzyb.exe
[01-HKCUREG]**tcpudp -/- C:\Windows\1348138991.exe
[01-HKCUREG]**tebufsufeapa -/- c:\Users\Administrator\tebufsufeapa.exe
[01-HKCUREG]**WinDLL (service.exe) -/- service.exe
[01-HKCUREG]**Windows Management Instrumentation -/- C:\Users\Administrator\AppData\Roaming\Microsoft\keusoa.exe
[01-HKCUREG]**zuhihikuctyk -/- c:\Users\Administrator\zuhihikuctyk.exe
[02-HKLMREG]**1351353514 -/- C:\ProgramData\System\1351353514.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe
[02-HKLMREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[02-HKLMREG]**booiken -/- C:\Users\Administrator\booiken.exe /q
[02-HKLMREG]**Classes -/- C:\Users\Administrator\AppData\Roaming\dwerrhfr\dibevcvf.exe
[02-HKLMREG]**cyksazukhegy -/- c:\Users\Administrator\cyksazukhegy.exe
[02-HKLMREG]**gearupicjudu -/- c:\Users\Administrator\gearupicjudu.exe
[02-HKLMREG]**hydmilushonu -/- C:\Users\Administrator\hydmilushonu.exe
[02-HKLMREG]**hyzodhyzalea -/- c:\Users\Administrator\hyzodhyzalea.exe
[02-HKLMREG]**Microsoft Security Updates -/- C:\Users\Administrator\AppData\Roaming\Microsoft\qeuqoa.exe
[02-HKLMREG]**mocvakujijim -/- c:\Users\Administrator\mocvakujijim.exe
[02-HKLMREG]**mopzyqbaratj -/- c:\Users\Administrator\mopzyqbaratj.exe
[02-HKLMREG]**MSNetDKNowiz -/- c:\Users\Administrator\appdata\local\temp\5936.tmp.exe
[02-HKLMREG]**Nimbuzz -/- C:\Program Files\Nimbuzz\Nimbuzz.exe
[02-HKLMREG]**OfficeSyncProcess -/- C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
[02-HKLMREG]**Regedit32 -/- C:\Windows\system32\regedit.exe
[02-HKLMREG]**RTDHCPL -/- RTDHCPL.EXE
[02-HKLMREG]**suxfogazuzyb -/- C:\Users\Administrator\suxfogazuzyb.exe
[02-HKLMREG]**tcpudp -/- C:\Windows\1348138991.exe
[02-HKLMREG]**tebufsufeapa -/- c:\Users\Administrator\tebufsufeapa.exe
[02-HKLMREG]**WinDLL (service.exe) -/- service.exe
[02-HKLMREG]**Windows Management Instrumentation -/- C:\Users\Administrator\AppData\Roaming\Microsoft\keusoa.exe
[02-HKLMREG]**zuhihikuctyk -/- c:\Users\Administrator\zuhihikuctyk.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**Expat Shield Class -/- C:\Program Files\Expat Shield\HssIE\ExpatIE_64.dll -/- {3706EE7C-3CAD-445D-8A43-03EBC3B75908}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Hotspot Shield Class -/- C:\Program Files\Hotspot Shield\HssIE\HssIE_64.dll -/- {F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[04-TOOLBAR]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[06-TASKLST]**AutoKMS -/- C:\Windows\AutoKMS\AutoKMS.exe
[06-TASKLST]**Scheduled Update for Ask Toolbar -/- C:\Program Files\Ask.com\UpdateTask.exe




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 9. 27. 23:51 ] Posted by 프로세스 천국 , 프로그램분석
,