Trojan. KGBKeyLogger
*file
C:\Program Files\KGB\unins000.exe
C:\Program Files\KGB\ssleay32.dll
C:\Program Files\KGB\sqlite3.dll
C:\Program Files\KGB\MPKView.exe
C:\Program Files\KGB\MPK64.exe
C:\Program Files\KGB\Mpk64.dll
C:\Program Files\KGB\MPK.exe
C:\Program Files\KGB\Mpk.dll
C:\Program Files\KGB\libeay32.dll
*reg_key
HKLM\SOFTWARE\Classes\mpkreg
HKLM\SOFTWARE\KGB Software
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D319D38-B681-40FA-8063-3F50116B4E34}
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask
*reg_val
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run | Mpk.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers | C:\Program Files\KGB\Mpk.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers | C:\Program Files\KGB\MpkView.exe
'PC tips > 멀웨어 정보' 카테고리의 다른 글
PUP.MaxUnInstaller (0) | 2021.04.30 |
---|---|
Adware.AnySend (0) | 2021.04.29 |
Trojan. CalculatemPro (0) | 2021.04.27 |
Adware.LiveSupport (0) | 2021.04.26 |
PUP.DriverXYZ (0) | 2021.04.25 |