안녕하십니까? 잉카인터넷 nProtect 입니다.


2017년 07월 05일자 두번째 업데이트 안내문입니다.


금일 정기 업데이트에서는 총 1개 악성코드에 대한 진단/치료가 안티 바이러스에 업데이트 되었습니다.



1. 안티 바이러스 업데이트 안내


1-1. 안티 바이러스 업데이트 버전 : 2017-07-05.02


1-2. 다음 1개 악성코드에 대한 진단/치료가 자사 엔진에 업데이트 되었습니다.


Banker/W32.Pharm.766490



--------------------------------------------------------------------------------------

       Copyright ⓒ, (주) 잉카인터넷, 2000-2017, All rights reserved.

--------------------------------------------------------------------------------------



저작자 표시 비영리 변경 금지
신고
크리에이티브 커먼즈 라이선스
Creative Commons License
Posted by Erteam

안녕하십니까? 잉카인터넷 nProtect 입니다.


2017년 07월 05일자 첫번째 업데이트 안내문입니다.


금일 정기 업데이트에서는 총 1003개 악성코드에 대한 진단/치료가 안티 바이러스에 업데이트 되었습니다.



1. 안티 바이러스 업데이트 안내


1-1. 안티 바이러스 업데이트 버전 : 2017-07-05.01


1-2. 다음 1003개 악성코드에 대한 진단/치료가 자사 엔진에 업데이트 되었습니다.


Backdoor/W32.Agent.100288

Backdoor/W32.Agent.1008640.E

Backdoor/W32.Agent.110592.FO

Backdoor/W32.Agent.114688.GG

Backdoor/W32.Agent.12288.BU

Backdoor/W32.Agent.1286653

Backdoor/W32.Agent.1294780

Backdoor/W32.Agent.1394688.D

Backdoor/W32.Agent.1457664.C

Backdoor/W32.Agent.14720.B

Backdoor/W32.Agent.150592

Backdoor/W32.Agent.166520

Backdoor/W32.Agent.166520.B

Backdoor/W32.Agent.196608.HG

Backdoor/W32.Agent.206848.U

Backdoor/W32.Agent.216432

Backdoor/W32.Agent.21720

Backdoor/W32.Agent.2509312

Backdoor/W32.Agent.269721

Backdoor/W32.Agent.2789376

Backdoor/W32.Agent.279021

Backdoor/W32.Agent.2800640

Backdoor/W32.Agent.30943

Backdoor/W32.Agent.319488.BJ

Backdoor/W32.Agent.405504.BP

Backdoor/W32.Agent.418159

Backdoor/W32.Agent.425984.BB

Backdoor/W32.Agent.458070

Backdoor/W32.Agent.475648.K

Backdoor/W32.Agent.50176.BO

Backdoor/W32.Agent.52128.B

Backdoor/W32.Agent.524766

Backdoor/W32.Agent.614400.AI

Backdoor/W32.Agent.619570

Backdoor/W32.Agent.634906

Backdoor/W32.Agent.659456.AQ

Backdoor/W32.Agent.665600.I

Backdoor/W32.Agent.68056

Backdoor/W32.Agent.6825472

Backdoor/W32.Agent.703488.D

Backdoor/W32.Agent.714752.I

Backdoor/W32.Agent.7366626

Backdoor/W32.Agent.789387

Backdoor/W32.Agent.815104.AD

Backdoor/W32.Agent.82536.C

Backdoor/W32.Agent.899996

Backdoor/W32.Agent.91224

Backdoor/W32.Androm.163840.AY

Backdoor/W32.Androm.419381

Backdoor/W32.Bladabindi.1302528

Backdoor/W32.Bladabindi.136192

Backdoor/W32.Bladabindi.1368064

Backdoor/W32.Bladabindi.139264

Backdoor/W32.DarkKomet.1010176

Backdoor/W32.DarkKomet.1025024.E

Backdoor/W32.DarkKomet.1027072

Backdoor/W32.DarkKomet.1029120.E

Backdoor/W32.DarkKomet.1052160

Backdoor/W32.DarkKomet.1235456.B

Backdoor/W32.DarkKomet.1843200.B

Backdoor/W32.DarkKomet.2638848

Backdoor/W32.DarkKomet.572928.C

Backdoor/W32.DarkKomet.606720.B

Backdoor/W32.DarkKomet.662016.E

Backdoor/W32.DarkKomet.667136

Backdoor/W32.DarkKomet.668160.D

Backdoor/W32.DarkKomet.676864.C

Backdoor/W32.DarkKomet.689152.K

Backdoor/W32.DarkKomet.692736.D

Backdoor/W32.DarkKomet.696832.E

Backdoor/W32.DarkKomet.785920.F

Backdoor/W32.DarkKomet.846336.C

Backdoor/W32.DarkKomet.871424.E

Backdoor/W32.DarkKomet.905728.B

Backdoor/W32.DarkKomet.940544.C

Backdoor/W32.Dridex.131072.D

Backdoor/W32.IRCBot.510824

Backdoor/W32.NanoBot.2621440

Backdoor/W32.NanoBot.830976

Backdoor/W32.Nhopro.20480

Backdoor/W32.Poison.1559228

Backdoor/W32.Poison.2842624

Backdoor/W32.Xtreme.535552.C

Backdoor/W32.Xtreme.77824.G

Backdoor/W32.Zegost.392822

Backdoor/W64.Agent.2603476

Backdoor/W64.Bedep.356352.B

Backdoor/W64.Dreambot.180224

Banker/W32.Agent.9871360

Banker/W32.Banbra.1651435

Banker/W32.Banbra.1766702

Banker/W32.Banbra.23749120

Banker/W32.Banbra.2667120

Banker/W32.Banbra.4049408.B

Banker/W32.Banbra.498176

Banker/W32.Banbra.5001331

Banker/W32.Banbra.6584098

Banker/W32.BestaFera.1035904.B

Banker/W32.BestaFera.5514752

Banker/W32.Emotet.106496

Banker/W32.Pharm.133996

Banker/W32.Pharm.145408

Banker/W32.Pharm.461086

Banker/W32.Pharm.526786

Banker/W32.Pharm.6576

Banker/W64.Agent.402944

Downloader/W32.Agent.341319

Downloader/W32.Agent.53830

Downloader/W32.Agent.68477

Downloader/W32.Agent.84992

Downloader/W32.Agent.86528

Ransom/W32.Agent.2363838

Ransom/W32.Agent.2364307

Ransom/W32.Agent.2420051

Ransom/W32.Agent.2420305

Ransom/W32.Agent.4062504

Ransom/W32.Agent.508416

Ransom/W32.Agent.66560.B

Ransom/W32.Agent.69632.B

Ransom/W32.Agent.746844

Ransom/W32.Agent.854016

Ransom/W32.Agent.898048.B

Ransom/W32.Agent.898048.C

Ransom/W32.Aura.2551808

Ransom/W32.Blocker.12075008

Ransom/W32.Blocker.1265664.D

Ransom/W32.Blocker.2977792

Ransom/W32.Blocker.3203072.E

Ransom/W32.Blocker.3325952.D

Ransom/W32.Blocker.358912

Ransom/W32.Blocker.4456448.D

Ransom/W32.Blocker.4456448.E

Ransom/W32.Blocker.6131712.D

Ransom/W32.Blocker.7954432.C

Ransom/W32.Blocker.9781248.B

Ransom/W32.Cerber.237568.F

Ransom/W32.Cerber.237568.G

Ransom/W32.Cerber.237568.H

Ransom/W32.Cerber.237568.I

Ransom/W32.Cerber.237568.J

Ransom/W32.Cerber.237568.K

Ransom/W32.Cerber.245760.G

Ransom/W32.Cerber.245760.H

Ransom/W32.Cerber.245760.I

Ransom/W32.Cerber.249856.D

Ransom/W32.Cerber.256000

Ransom/W32.Cerber.283136.H

Ransom/W32.Cerber.319488.D

Ransom/W32.Cerber.319488.E

Ransom/W32.Cerber.319488.F

Ransom/W32.Cerber.322290.B

Ransom/W32.Cerber.327801.B

Ransom/W32.Cerber.381440

Ransom/W32.Cerber.393216.E

Ransom/W32.Cerber.399360

Ransom/W32.Cerber.399872

Ransom/W32.Cerber.400384

Ransom/W32.Cerber.413491

Ransom/W32.Cerber.561843.C

Ransom/W32.Crypto.22662

Ransom/W32.Crypto.22894

Ransom/W32.Foreign.466944.D

Ransom/W32.PornoAsset.757760.B

Ransom/W32.Shade.229114

Ransom/W32.Shade.281749

Ransom/W32.Spora.189440

Ransom/W32.Spora.189952

Ransom/W32.WannaCry.524281

Ransom/W32.WannaCry.5320704

Trojan-Downloader/W32.Agent.24318

Trojan-Downloader/W32.Agent.245760.CM

Trojan-Downloader/W32.Agent.364576

Trojan-Downloader/W32.Agent.375990

Trojan-Downloader/W32.Agent.422242

Trojan-Downloader/W32.Agent.78336.CH

Trojan-Downloader/W32.Godzilla.222720

Trojan-Downloader/W32.Inject.208896.E

Trojan-Downloader/W32.Inject.245760.B

Trojan-Downloader/W32.Inject.245760.C

Trojan-Downloader/W32.Sysdrop.825411

Trojan-Downloader/W32.Sysdrop.825442

Trojan-Downloader/W32.Upatre.1013106

Trojan-Downloader/W32.Upatre.1045895

Trojan-Downloader/W32.Upatre.112016

Trojan-Downloader/W32.Upatre.112360.B

Trojan-Downloader/W32.Upatre.112416.N

Trojan-Downloader/W32.Upatre.112466

Trojan-Downloader/W32.Upatre.112872

Trojan-Downloader/W32.Upatre.113600.B

Trojan-Downloader/W32.Upatre.123736

Trojan-Downloader/W32.Upatre.125368

Trojan-Downloader/W32.Upatre.140288

Trojan-Downloader/W32.Upatre.1429504

Trojan-Downloader/W32.Upatre.21098

Trojan-Downloader/W32.Upatre.24622.B

Trojan-Downloader/W32.Upatre.250824

Trojan-Downloader/W32.Upatre.251916

Trojan-Downloader/W32.Upatre.255586

Trojan-Downloader/W32.Upatre.256610

Trojan-Downloader/W32.Upatre.257410

Trojan-Downloader/W32.Upatre.257658

Trojan-Downloader/W32.Upatre.258170

Trojan-Downloader/W32.Upatre.258688

Trojan-Downloader/W32.Upatre.315728

Trojan-Downloader/W32.Upatre.363964

Trojan-Downloader/W32.Upatre.368148

Trojan-Downloader/W32.Upatre.369396

Trojan-Downloader/W32.Upatre.377256

Trojan-Downloader/W32.Upatre.377616

Trojan-Downloader/W32.Upatre.383188

Trojan-Downloader/W32.Upatre.38720.C

Trojan-Downloader/W32.Upatre.393076

Trojan-Downloader/W32.Upatre.40040.D

Trojan-Downloader/W32.Upatre.40176.C

Trojan-Downloader/W32.Upatre.40608.E

Trojan-Downloader/W32.Upatre.41330.B

Trojan-Downloader/W32.Upatre.42176.B

Trojan-Downloader/W32.Upatre.47928

Trojan-Downloader/W32.Upatre.48064.C

Trojan-Downloader/W32.Upatre.48916.B

Trojan-Downloader/W32.Upatre.49052

Trojan-Downloader/W32.Upatre.49134

Trojan-Downloader/W32.Upatre.49248.B

Trojan-Downloader/W32.Upatre.49278

Trojan-Downloader/W32.Upatre.49524

Trojan-Downloader/W32.Upatre.49660

Trojan-Downloader/W32.Upatre.51070

Trojan-Downloader/W32.Upatre.68568.B

Trojan-Downloader/W32.Upatre.68632

Trojan-Downloader/W32.Upatre.68684.B

Trojan-Downloader/W32.Wauchos.45122

Trojan-Downloader/W64.Agent.207872

Trojan-Dropper/W32.Agent.1024512.D

Trojan-Dropper/W32.Agent.1067520.D

Trojan-Dropper/W32.Agent.2618856

Trojan-Dropper/W32.Agent.28414976

Trojan-Dropper/W32.Agent.664746

Trojan-Dropper/W32.Agent.774144.AV

Trojan-Dropper/W32.Agent.8543523

Trojan-Dropper/W32.Dinwod.286208

Trojan-Dropper/W32.Dinwod.5160448

Trojan-Dropper/W32.Dinwod.5160807

Trojan-Dropper/W32.Dinwod.5161170

Trojan-Dropper/W32.Dinwod.5161221

Trojan-Dropper/W32.Dinwod.5161254

Trojan-Dropper/W32.Dinwod.5161417

Trojan-Dropper/W32.Dinwod.5262551

Trojan-Dropper/W32.Dinwod.5262676

Trojan-Dropper/W32.Dinwod.6233063

Trojan-Dropper/W32.Dinwod.6233507

Trojan-Dropper/W32.Dinwod.6233553

Trojan-Dropper/W32.Dinwod.6236423

Trojan-Dropper/W32.Inject.1324609

Trojan-Dropper/W32.Inject.1462747

Trojan-Dropper/W32.Inject.216854

Trojan-Dropper/W32.Inject.2863616

Trojan-Dropper/W32.Inject.49664

Trojan-Dropper/W32.Inject.614912

Trojan-Dropper/W32.Inject.990208

Trojan-Dropper/W32.Keylogger.792646

Trojan-Dropper/W32.Raven.68096

Trojan-Exploit/W32.UACSkip.10060021

Trojan-PWS/W32.Agent.1422336

Trojan-PWS/W32.Agent.2198890

Trojan-PWS/W32.Fareit.169472.D

Trojan-PWS/W32.Fareit.204800.M

Trojan-PWS/W32.Fareit.204800.N

Trojan-PWS/W32.Fareit.204800.O

Trojan-PWS/W32.Fareit.204800.P

Trojan-PWS/W32.Fareit.204800.Q

Trojan-PWS/W32.Fareit.204800.R

Trojan-PWS/W32.Fareit.204800.S

Trojan-PWS/W32.Fareit.208896.P

Trojan-PWS/W32.Fareit.208896.Q

Trojan-PWS/W32.Fareit.208896.R

Trojan-PWS/W32.Fareit.208896.S

Trojan-PWS/W32.Fareit.208912

Trojan-PWS/W32.Fareit.212992.N

Trojan-PWS/W32.Fareit.2145249

Trojan-PWS/W32.OnLineGames.90624

Trojan-PWS/W32.OnLineGames.981928

Trojan-PWS/W32.Ruftar.289273

Trojan-PWS/W32.Tepfer.14492

Trojan-PWS/W32.Tepfer.1569280.C

Trojan-PWS/W32.Tepfer.200704.L

Trojan-PWS/W32.Tepfer.200704.M

Trojan-PWS/W32.Tepfer.28246016

Trojan-Spy/W32.Agent.1987529

Trojan-Spy/W32.Agent.2038008

Trojan-Spy/W32.Agent.2345402

Trojan-Spy/W32.Agent.2564274

Trojan-Spy/W32.Agent.954880

Trojan-Spy/W32.SpyEyes.2090584

Trojan-Spy/W32.SpyEyes.929280

Trojan-Spy/W32.Ursnif.479232

Trojan-Spy/W32.Zapchast.237997

Trojan-Spy/W32.ZBot.136280

Trojan-Spy/W32.ZBot.136444

Trojan-Spy/W32.ZBot.136746.B

Trojan-Spy/W32.ZBot.136884

Trojan-Spy/W32.ZBot.137120

Trojan-Spy/W32.ZBot.143932

Trojan-Spy/W32.ZBot.144070

Trojan-Spy/W32.ZBot.17328.B

Trojan-Spy/W32.ZBot.17780

Trojan-Spy/W32.ZBot.17904.B

Trojan-Spy/W32.ZBot.17970.B

Trojan-Spy/W32.ZBot.18018.B

Trojan-Spy/W32.ZBot.18108.C

Trojan-Spy/W32.ZBot.18568

Trojan-Spy/W32.ZBot.19014.B

Trojan-Spy/W32.ZBot.19222.C

Trojan-Spy/W32.ZBot.19588.C

Trojan-Spy/W32.ZBot.19788.C

Trojan-Spy/W32.ZBot.19974.C

Trojan-Spy/W32.ZBot.20032.C

Trojan-Spy/W32.ZBot.20212.D

Trojan-Spy/W32.ZBot.20340.E

Trojan-Spy/W32.ZBot.20382.B

Trojan-Spy/W32.ZBot.20480.AA

Trojan-Spy/W32.ZBot.20924.D

Trojan-Spy/W32.ZBot.21404.C

Trojan-Spy/W32.ZBot.21538

Trojan-Spy/W32.ZBot.21650.C

Trojan-Spy/W32.ZBot.21656.B

Trojan-Spy/W32.ZBot.21780.G

Trojan-Spy/W32.ZBot.21836.E

Trojan-Spy/W32.ZBot.22068.D

Trojan-Spy/W32.ZBot.22232.C

Trojan-Spy/W32.ZBot.22524.C

Trojan-Spy/W32.ZBot.22676.B

Trojan-Spy/W32.ZBot.22764

Trojan-Spy/W32.ZBot.22768.C

Trojan-Spy/W32.ZBot.23416

Trojan-Spy/W32.ZBot.23484.B

Trojan-Spy/W32.ZBot.23584.B

Trojan-Spy/W32.ZBot.24146.B

Trojan-Spy/W32.ZBot.24422.B

Trojan-Spy/W32.ZBot.24628

Trojan-Spy/W32.ZBot.24722

Trojan-Spy/W32.ZBot.24860

Trojan-Spy/W32.ZBot.25688.B

Trojan-Spy/W32.ZBot.26240

Trojan-Spy/W32.ZBot.26334.B

Trojan-Spy/W32.ZBot.27146

Trojan-Spy/W32.ZBot.27948.B

Trojan-Spy/W32.ZBot.28654

Trojan-Spy/W32.ZBot.30192

Trojan-Spy/W32.ZBot.30208.E

Trojan-Spy/W32.ZBot.30532.B

Trojan-Spy/W32.ZBot.30756.B

Trojan-Spy/W32.ZBot.31042.C

Trojan-Spy/W32.ZBot.31320.C

Trojan-Spy/W32.ZBot.31458.B

Trojan-Spy/W32.ZBot.31710

Trojan-Spy/W32.ZBot.329836

Trojan-Spy/W32.ZBot.34296

Trojan-Spy/W32.ZBot.34400

Trojan-Spy/W32.ZBot.34534

Trojan-Spy/W32.ZBot.34536

Trojan-Spy/W32.ZBot.34672

Trojan-Spy/W32.ZBot.35546

Trojan-Spy/W32.ZBot.430592.AC

Trojan-Spy/W32.ZBot.46836

Trojan-Spy/W32.ZBot.46898

Trojan-Spy/W32.ZBot.47036

Trojan-Spy/W32.ZBot.51466

Trojan-Spy/W32.ZBot.708608.V

Trojan-Spy/W32.ZBot.90230

Trojan-Spy/W32.ZBot.90368.B

Trojan-Spy/W32.ZBot.90544.B

Trojan-Spy/W32.ZBot.90984

Trojan-Spy/W32.ZBot.91124

Trojan-Spy/W32.ZBot.91328

Trojan-Spy/W32.ZBot.91464

Trojan/W32.Agent.101413

Trojan/W32.Agent.1021501

Trojan/W32.Agent.1021503

Trojan/W32.Agent.106496.CVY

Trojan/W32.Agent.107037.B

Trojan/W32.Agent.1101824.GZ

Trojan/W32.Agent.1101824.HA

Trojan/W32.Agent.11051008.B

Trojan/W32.Agent.113969

Trojan/W32.Agent.1154560

Trojan/W32.Agent.1180019

Trojan/W32.Agent.1185280.X

Trojan/W32.Agent.1191936.CU

Trojan/W32.Agent.1196032.DV

Trojan/W32.Agent.119808.UB

Trojan/W32.Agent.1263616.X

Trojan/W32.Agent.126976.CTY

Trojan/W32.Agent.129536.UT

Trojan/W32.Agent.12953600

Trojan/W32.Agent.1297964

Trojan/W32.Agent.1297966

Trojan/W32.Agent.130048.WS

Trojan/W32.Agent.1319041

Trojan/W32.Agent.1327104.DQ

Trojan/W32.Agent.135680.WB

Trojan/W32.Agent.135781.B

Trojan/W32.Agent.136198.E

Trojan/W32.Agent.136987.B

Trojan/W32.Agent.1389539

Trojan/W32.Agent.1449880

Trojan/W32.Agent.151861.B

Trojan/W32.Agent.164864.PR

Trojan/W32.Agent.1654784.CK

Trojan/W32.Agent.1721856.K

Trojan/W32.Agent.17459833

Trojan/W32.Agent.1792000.I

Trojan/W32.Agent.180786.C

Trojan/W32.Agent.18084193

Trojan/W32.Agent.1867776.BR

Trojan/W32.Agent.192512.BNH

Trojan/W32.Agent.19379454

Trojan/W32.Agent.196608.BVD

Trojan/W32.Agent.200704.BGQ

Trojan/W32.Agent.201728.PB

Trojan/W32.Agent.2027008.L

Trojan/W32.Agent.202752.NI

Trojan/W32.Agent.202752.NJ

Trojan/W32.Agent.204800.BHN

Trojan/W32.Agent.206908.B

Trojan/W32.Agent.208896.AWH

Trojan/W32.Agent.2127872.CN

Trojan/W32.Agent.2127872.CO

Trojan/W32.Agent.2127872.CP

Trojan/W32.Agent.2127872.CQ

Trojan/W32.Agent.212992.DCQ

Trojan/W32.Agent.212992.DCR

Trojan/W32.Agent.212992.DCS

Trojan/W32.Agent.212992.DCT

Trojan/W32.Agent.212992.DCU

Trojan/W32.Agent.212992.DCV

Trojan/W32.Agent.212992.DCW

Trojan/W32.Agent.212992.DCX

Trojan/W32.Agent.212992.DCY

Trojan/W32.Agent.212992.DCZ

Trojan/W32.Agent.212992.DDA

Trojan/W32.Agent.212992.DDB

Trojan/W32.Agent.212992.DDC

Trojan/W32.Agent.212992.DDD

Trojan/W32.Agent.212992.DDE

Trojan/W32.Agent.212992.DDF

Trojan/W32.Agent.212992.DDG

Trojan/W32.Agent.212992.DDH

Trojan/W32.Agent.212992.DDI

Trojan/W32.Agent.212992.DDJ

Trojan/W32.Agent.212992.DDK

Trojan/W32.Agent.212992.DDL

Trojan/W32.Agent.212992.DDM

Trojan/W32.Agent.212992.DDN

Trojan/W32.Agent.212992.DDO

Trojan/W32.Agent.212992.DDP

Trojan/W32.Agent.212992.DDQ

Trojan/W32.Agent.212992.DDR

Trojan/W32.Agent.212992.DDS

Trojan/W32.Agent.212992.DDT

Trojan/W32.Agent.212992.DDU

Trojan/W32.Agent.212992.DDV

Trojan/W32.Agent.212992.DDW

Trojan/W32.Agent.212992.DDX

Trojan/W32.Agent.212992.DDY

Trojan/W32.Agent.212992.DDZ

Trojan/W32.Agent.212992.DEA

Trojan/W32.Agent.212992.DEB

Trojan/W32.Agent.212992.DEC

Trojan/W32.Agent.212992.DED

Trojan/W32.Agent.212992.DEE

Trojan/W32.Agent.212992.DEF

Trojan/W32.Agent.212992.DEG

Trojan/W32.Agent.212992.DEH

Trojan/W32.Agent.212992.DEI

Trojan/W32.Agent.212992.DEJ

Trojan/W32.Agent.212992.DEK

Trojan/W32.Agent.212992.DEL

Trojan/W32.Agent.212992.DEM

Trojan/W32.Agent.212992.DEN

Trojan/W32.Agent.212992.DEO

Trojan/W32.Agent.212992.DEP

Trojan/W32.Agent.212992.DEQ

Trojan/W32.Agent.212992.DER

Trojan/W32.Agent.212992.DES

Trojan/W32.Agent.212992.DET

Trojan/W32.Agent.212992.DEU

Trojan/W32.Agent.212992.DEV

Trojan/W32.Agent.212992.DEW

Trojan/W32.Agent.212992.DEX

Trojan/W32.Agent.212992.DEY

Trojan/W32.Agent.212992.DEZ

Trojan/W32.Agent.212992.DFA

Trojan/W32.Agent.212992.DFB

Trojan/W32.Agent.212992.DFC

Trojan/W32.Agent.212992.DFD

Trojan/W32.Agent.212992.DFE

Trojan/W32.Agent.212992.DFF

Trojan/W32.Agent.212992.DFG

Trojan/W32.Agent.212992.DFH

Trojan/W32.Agent.212992.DFI

Trojan/W32.Agent.212992.DFJ

Trojan/W32.Agent.212992.DFK

Trojan/W32.Agent.212992.DFL

Trojan/W32.Agent.212992.DFM

Trojan/W32.Agent.212992.DFN

Trojan/W32.Agent.212992.DFO

Trojan/W32.Agent.212992.DFP

Trojan/W32.Agent.212992.DFQ

Trojan/W32.Agent.212992.DFR

Trojan/W32.Agent.212992.DFS

Trojan/W32.Agent.212992.DFT

Trojan/W32.Agent.212992.DFU

Trojan/W32.Agent.212992.DFV

Trojan/W32.Agent.212992.DFW

Trojan/W32.Agent.212992.DFX

Trojan/W32.Agent.212992.DFY

Trojan/W32.Agent.212992.DFZ

Trojan/W32.Agent.212992.DGA

Trojan/W32.Agent.212992.DGB

Trojan/W32.Agent.212992.DGC

Trojan/W32.Agent.212992.DGD

Trojan/W32.Agent.2206720.J

Trojan/W32.Agent.2264576.I

Trojan/W32.Agent.2265088.DE

Trojan/W32.Agent.2265088.DF

Trojan/W32.Agent.2265088.DG

Trojan/W32.Agent.2265088.DH

Trojan/W32.Agent.2265088.DI

Trojan/W32.Agent.2265600.H

Trojan/W32.Agent.228352.JG

Trojan/W32.Agent.2294272.AW

Trojan/W32.Agent.2294272.AX

Trojan/W32.Agent.235520.JX

Trojan/W32.Agent.239616.LS

Trojan/W32.Agent.2464768.AC

Trojan/W32.Agent.2464768.AD

Trojan/W32.Agent.2464768.AE

Trojan/W32.Agent.2464768.AF

Trojan/W32.Agent.2464768.AG

Trojan/W32.Agent.2464768.AH

Trojan/W32.Agent.2483200.Z

Trojan/W32.Agent.249856.ALK

Trojan/W32.Agent.250440.C

Trojan/W32.Agent.264614.B

Trojan/W32.Agent.266701.C

Trojan/W32.Agent.2705920.J

Trojan/W32.Agent.275456.HH

Trojan/W32.Agent.287232.GZ

Trojan/W32.Agent.288805.B

Trojan/W32.Agent.294912.AOV

Trojan/W32.Agent.29609.C

Trojan/W32.Agent.3021312.D

Trojan/W32.Agent.313662

Trojan/W32.Agent.313664.C

Trojan/W32.Agent.32030.D

Trojan/W32.Agent.32640.E

Trojan/W32.Agent.32768.EJA

Trojan/W32.Agent.32768.EJB

Trojan/W32.Agent.32768.EJC

Trojan/W32.Agent.32768.EJD

Trojan/W32.Agent.32768.EJE

Trojan/W32.Agent.32778.J

Trojan/W32.Agent.345088.JR

Trojan/W32.Agent.349447.B

Trojan/W32.Agent.35760.C

Trojan/W32.Agent.376415

Trojan/W32.Agent.381952.HG

Trojan/W32.Agent.38834

Trojan/W32.Agent.393728.JG

Trojan/W32.Agent.4014308

Trojan/W32.Agent.4032530

Trojan/W32.Agent.40960.DPK

Trojan/W32.Agent.442151

Trojan/W32.Agent.446976.EK

Trojan/W32.Agent.4587512

Trojan/W32.Agent.46080.XX

Trojan/W32.Agent.46848.H

Trojan/W32.Agent.475440.C

Trojan/W32.Agent.48128.UH

Trojan/W32.Agent.485376.DF

Trojan/W32.Agent.49753

Trojan/W32.Agent.524374.B

Trojan/W32.Agent.524376

Trojan/W32.Agent.52736.ANM

Trojan/W32.Agent.532405

Trojan/W32.Agent.534016.GK

Trojan/W32.Agent.547328.BW

Trojan/W32.Agent.557056.QT

Trojan/W32.Agent.56449.C

Trojan/W32.Agent.579438

Trojan/W32.Agent.589824.RT

Trojan/W32.Agent.607045.B

Trojan/W32.Agent.608317

Trojan/W32.Agent.610304.PB

Trojan/W32.Agent.61376.I

Trojan/W32.Agent.6146469

Trojan/W32.Agent.629248.CU

Trojan/W32.Agent.635392.CQ

Trojan/W32.Agent.639080.B

Trojan/W32.Agent.639082.B

Trojan/W32.Agent.639775.B

Trojan/W32.Agent.641536.CW

Trojan/W32.Agent.652288.EU

Trojan/W32.Agent.654848.DB

Trojan/W32.Agent.65536.EXQ

Trojan/W32.Agent.655906

Trojan/W32.Agent.6704.C

Trojan/W32.Agent.70034.C

Trojan/W32.Agent.70344.D

Trojan/W32.Agent.70482.C

Trojan/W32.Agent.70516.B

Trojan/W32.Agent.7168.AAT

Trojan/W32.Agent.720463

Trojan/W32.Agent.727549

Trojan/W32.Agent.73728.FHW

Trojan/W32.Agent.763904.CL

Trojan/W32.Agent.764964

Trojan/W32.Agent.76873.B

Trojan/W32.Agent.77241.B

Trojan/W32.Agent.7725056

Trojan/W32.Agent.77446.C

Trojan/W32.Agent.784896.BS

Trojan/W32.Agent.793642

Trojan/W32.Agent.796215

Trojan/W32.Agent.81920.DIT

Trojan/W32.Agent.82944.AAK

Trojan/W32.Agent.834615

Trojan/W32.Agent.841258

Trojan/W32.Agent.846472

Trojan/W32.Agent.846786

Trojan/W32.Agent.847989

Trojan/W32.Agent.850368

Trojan/W32.Agent.86016.ECB

Trojan/W32.Agent.868354

Trojan/W32.Agent.869376.AV

Trojan/W32.Agent.8704.AHY

Trojan/W32.Agent.872448.JD

Trojan/W32.Agent.893440.BC

Trojan/W32.Agent.896512.AX

Trojan/W32.Agent.900096.AQ

Trojan/W32.Agent.900096.AR

Trojan/W32.Agent.905323

Trojan/W32.Agent.928768

Trojan/W32.Agent.934081

Trojan/W32.Agent.965557

Trojan/W32.Agent.976896.CR

Trojan/W32.Agent.977408.AG

Trojan/W32.Agent.989696

Trojan/W32.Agent.989696.B

Trojan/W32.Agent.990208

Trojan/W32.Agent.990208.B

Trojan/W32.Agent.990208.C

Trojan/W32.Agent.990208.D

Trojan/W32.Agent.990208.E

Trojan/W32.Agent.995328.FU

Trojan/W32.Agent2.6652.AU

Trojan/W32.Agent2.98304.AL

Trojan/W32.Bcex.229349

Trojan/W32.Bcex.25410897

Trojan/W32.Bcex.25410898

Trojan/W32.Bcex.368640

Trojan/W32.Bublik.21562.B

Trojan/W32.Bublik.21586

Trojan/W32.Bublik.21698

Trojan/W32.Bublik.21818.B

Trojan/W32.Bublik.22242

Trojan/W32.Bublik.22308.B

Trojan/W32.Bublik.27820.B

Trojan/W32.Bublik.28516

Trojan/W32.Bublik.289313

Trojan/W32.Cnopa.172033

Trojan/W32.Cnopa.84489.B

Trojan/W32.CoinMiner.23753216

Trojan/W32.CoinMiner.96256

Trojan/W32.CoinMiner.98304

Trojan/W32.Cometer.381256

Trojan/W32.Cometer.395340

Trojan/W32.Cometer.439956

Trojan/W32.Cometer.532052

Trojan/W32.Cometer.568208

Trojan/W32.Cometer.586300

Trojan/W32.Cometer.586932

Trojan/W32.Cometer.599472

Trojan/W32.Cossta.990208

Trojan/W32.Cossta.990208.B

Trojan/W32.Crypt.1323008.C

Trojan/W32.Crypt.1692790

Trojan/W32.Crypt.1747977

Trojan/W32.Crypt.2583552

Trojan/W32.Crypt.4207104

Trojan/W32.Crypt.547904

Trojan/W32.Csfrsys.176747

Trojan/W32.Cutwail.24254

Trojan/W32.Cutwail.24286

Trojan/W32.DelfiDelfi.971776

Trojan/W32.Diple.1069947

Trojan/W32.Diple.134656.D

Trojan/W32.Diple.135168.P

Trojan/W32.Diple.204800.T

Trojan/W32.Diztakun.450560

Trojan/W32.Diztakun.518309

Trojan/W32.Diztakun.658432

Trojan/W32.Diztakun.966656

Trojan/W32.Enchanim.102400.E

Trojan/W32.Enchanim.102400.F

Trojan/W32.EquationDrug.126976

Trojan/W32.FakeAV.22016.AX

Trojan/W32.FakeAV.23552.N

Trojan/W32.FakeAV.983040.E

Trojan/W32.Fsysna.1519768

Trojan/W32.Fsysna.2136576

Trojan/W32.Gena.253956

Trojan/W32.Gena.253959

Trojan/W32.Gena.253961

Trojan/W32.Gena.253963

Trojan/W32.Gena.253966

Trojan/W32.Gofot.242340

Trojan/W32.Gofot.630784

Trojan/W32.Gotango.1687552

Trojan/W32.Gotango.1695744

Trojan/W32.Gotango.1712128.B

Trojan/W32.Gotango.1753088.B

Trojan/W32.Gotango.1802240

Trojan/W32.Inject.100959

Trojan/W32.Inject.103556

Trojan/W32.Inject.103675

Trojan/W32.Inject.104928

Trojan/W32.Inject.105180

Trojan/W32.Inject.107861

Trojan/W32.Inject.107875

Trojan/W32.Inject.109226

Trojan/W32.Inject.110605

Trojan/W32.Inject.1126964

Trojan/W32.Inject.114434

Trojan/W32.Inject.115736

Trojan/W32.Inject.120874

Trojan/W32.Inject.124759

Trojan/W32.Inject.126145

Trojan/W32.Inject.127912

Trojan/W32.Inject.128063

Trojan/W32.Inject.128791

Trojan/W32.Inject.128910

Trojan/W32.Inject.131444

Trojan/W32.Inject.133120.S

Trojan/W32.Inject.133859

Trojan/W32.Inject.137688

Trojan/W32.Inject.140838

Trojan/W32.Inject.146319

Trojan/W32.Inject.147782

Trojan/W32.Inject.1654644

Trojan/W32.Inject.192992

Trojan/W32.Inject.218432

Trojan/W32.Inject.236600

Trojan/W32.Inject.262144.AB

Trojan/W32.Inject.262144.AC

Trojan/W32.Inject.383488.E

Trojan/W32.Inject.40960.RB

Trojan/W32.Inject.40960.RC

Trojan/W32.Inject.5690368

Trojan/W32.Inject.66560.AFLT

Trojan/W32.Inject.66560.AFLU

Trojan/W32.Inject.66560.AFLV

Trojan/W32.Inject.66560.AFLW

Trojan/W32.Inject.66560.AFLX

Trojan/W32.Inject.66560.AFLY

Trojan/W32.Inject.66560.AFLZ

Trojan/W32.Inject.66560.AFMA

Trojan/W32.Inject.66560.AFMB

Trojan/W32.Inject.66560.AFMC

Trojan/W32.Inject.66560.AFMD

Trojan/W32.Inject.66560.AFME

Trojan/W32.Inject.66560.AFMF

Trojan/W32.Inject.66560.AFMG

Trojan/W32.Inject.66560.AFMH

Trojan/W32.Inject.66560.AFMI

Trojan/W32.Inject.66560.AFMJ

Trojan/W32.Inject.710144.F

Trojan/W32.Inject.719927

Trojan/W32.Inject.730183

Trojan/W32.Inject.738304.E

Trojan/W32.Inject.750117

Trojan/W32.Inject.754722

Trojan/W32.Inject.768554

Trojan/W32.Inject.769094

Trojan/W32.Inject.775214

Trojan/W32.Inject.777236

Trojan/W32.Inject.777254.B

Trojan/W32.Inject.790069

Trojan/W32.Inject.793642

Trojan/W32.Inject.794169

Trojan/W32.Inject.794171

Trojan/W32.Inject.794179

Trojan/W32.Inject.797233

Trojan/W32.Inject.797249

Trojan/W32.Inject.812572

Trojan/W32.Inject.838725

Trojan/W32.Inject.839212

Trojan/W32.Inject.888932

Trojan/W32.Inject.957952.H

Trojan/W32.Inject.96640

Trojan/W32.Inject.97088

Trojan/W32.Inject.999443

Trojan/W32.Inject.999464

Trojan/W32.IRCBot.1781760

Trojan/W32.IRCBot.22239744

Trojan/W32.Kasidet.155648.B

Trojan/W32.Kasidet.155648.C

Trojan/W32.Kasidet.184320

Trojan/W32.Kasidet.192512

Trojan/W32.Kasidet.348160.B

Trojan/W32.Kasidet.487424

Trojan/W32.KrServ.103339

Trojan/W32.KrServ.139776

Trojan/W32.Loskad.2704384.B

Trojan/W32.MicroFake.1552896

Trojan/W32.MicroFake.218112

Trojan/W32.MicroFake.253440

Trojan/W32.MicroFake.320000

Trojan/W32.Miner.10900

Trojan/W32.Miner.169876

Trojan/W32.Miner.275455

Trojan/W32.Miner.46832

Trojan/W32.naKocTb.1097216

Trojan/W32.naKocTb.1709568

Trojan/W32.naKocTb.286720.E

Trojan/W32.naKocTb.344064.I

Trojan/W32.naKocTb.403080

Trojan/W32.naKocTb.515981

Trojan/W32.naKocTb.6094848

Trojan/W32.naKocTb.7239680

Trojan/W32.naKocTb.902656

Trojan/W32.naKocTb.916992

Trojan/W32.Nymaim.343739

Trojan/W32.Nymaim.507579

Trojan/W32.Nymaim.568829

Trojan/W32.Nymaim.612864.C

Trojan/W32.Nymaim.623616

Trojan/W32.Nymaim.694272

Trojan/W32.Nymaim.696320.C

Trojan/W32.Nymaim.698368.C

Trojan/W32.Nymaim.735744

Trojan/W32.Nymaim.740864

Trojan/W32.Nymaim.848384

Trojan/W32.Nymaim.875008

Trojan/W32.Nystprac.1421312

Trojan/W32.Patcher.654400

Trojan/W32.Pincav.1671495

Trojan/W32.Pincav.8322813

Trojan/W32.Poweliks.43138.E

Trojan/W32.Poweliks.475802

Trojan/W32.Poweliks.475837

Trojan/W32.Poweliks.478373

Trojan/W32.Poweliks.478550

Trojan/W32.Poweliks.480459

Trojan/W32.Poweliks.488639

Trojan/W32.Poweliks.488674

Trojan/W32.Poweliks.70794

Trojan/W32.Reconyc.2551547

Trojan/W32.Reconyc.5000240

Trojan/W32.Reconyc.5003395

Trojan/W32.Reconyc.5005112

Trojan/W32.Refroso.398848.C

Trojan/W32.Refroso.841728.B

Trojan/W32.Refroso.842752.B

Trojan/W32.Regsup.528384

Trojan/W32.Regsup.626688

Trojan/W32.Regsup.643072.B

Trojan/W32.Regsup.782336

Trojan/W32.Regsup.831488

Trojan/W32.Scarsi.1291511

Trojan/W32.Scarsi.1605632

Trojan/W32.Scarsi.265216

Trojan/W32.Scarsi.8355149

Trojan/W32.SchoolBoy.93696

Trojan/W32.SchoolBoy.94208.B

Trojan/W32.SchoolGirl.13631488

Trojan/W32.SchoolGirl.4702874

Trojan/W32.Shifu.1343488

Trojan/W32.ShipUp.185912.B

Trojan/W32.ShipUp.202576.B

Trojan/W32.ShipUp.216816.C

Trojan/W32.ShipUp.220304.C

Trojan/W32.ShipUp.240128.C

Trojan/W32.ShipUp.240216

Trojan/W32.ShipUp.267176

Trojan/W32.ShipUp.270184

Trojan/W32.ShipUp.275168.B

Trojan/W32.ShipUp.276072

Trojan/W32.ShipUp.276088

Trojan/W32.ShipUp.277312

Trojan/W32.ShipUp.640304

Trojan/W32.ShipUp.744192

Trojan/W32.Skillis.1371648

Trojan/W32.Snarasite.3907336

Trojan/W32.Snarasite.3907448

Trojan/W32.Snarasite.3907568

Trojan/W32.Snarasite.3907672

Trojan/W32.Snarasite.3907808

Trojan/W32.Snojan.7269888

Trojan/W32.TorJok.9164674

Trojan/W32.Trickster.458240

Trojan/W32.Trickster.478208

Trojan/W32.Trickster.494592

Trojan/W32.Trickster.526336

Trojan/W32.VBKryjetor.106496.F

Trojan/W32.VBKryjetor.286720.O

Trojan/W32.VBKrypt.1073152.I

Trojan/W32.VBKrypt.1089536.F

Trojan/W32.VBKrypt.1093632.E

Trojan/W32.VBKrypt.1093632.F

Trojan/W32.VBKrypt.1093632.G

Trojan/W32.VBKrypt.1097728.I

Trojan/W32.VBKrypt.1097728.J

Trojan/W32.VBKrypt.1101824.J

Trojan/W32.VBKrypt.1101824.K

Trojan/W32.VBKrypt.1101824.L

Trojan/W32.VBKrypt.1101824.M

Trojan/W32.VBKrypt.1105920.E

Trojan/W32.VBKrypt.1105920.F

Trojan/W32.VBKrypt.204800.DB

Trojan/W32.VBKrypt.204800.DC

Trojan/W32.VBKrypt.204800.DD

Trojan/W32.VBKrypt.204800.DE

Trojan/W32.VBKrypt.204800.DF

Trojan/W32.VBKrypt.204800.DG

Trojan/W32.VBKrypt.204800.DH

Trojan/W32.VBKrypt.204800.DI

Trojan/W32.VBKrypt.380928.AU

Trojan/W32.VBKrypt.393216.BB

Trojan/W32.VBKrypt.393216.BC

Trojan/W32.VBKrypt.397312.AM

Trojan/W32.VBKrypt.6045696

Trojan/W32.Vehidis.429056

Trojan/W32.Vilsel.340959

Trojan/W32.Waldek.6417312

Trojan/W32.Waldek.6714336

Trojan/W32.Waldek.691712

Trojan/W32.Waldek.6969984.B

Trojan/W32.Waldek.717824

Trojan/W32.Waldek.7716864

Trojan/W32.Wauchos.24914432

Trojan/W32.Wauchos.6815168

Trojan/W32.Wecod.275968

Trojan/W64.Agent.1477632

Trojan/W64.Agent.1818173

Trojan/W64.Agent.458752.B

Trojan/W64.Agent.482816

Trojan/W64.Agent.484352.B

Trojan/W64.Agent.485376

Trojan/W64.BitCoinMiner.672768

Trojan/W64.BitCoinMiner.6762496.C

Trojan/W64.BitCoinMiner.709120

Trojan/W64.Shelma.7168.GM

Trojan/W64.Starter.34816

Trojan/W64.Starter.34816.B

Worm/W32.Agent.107092

Worm/W32.Agent.131072

Worm/W32.Agent.20480.O

Worm/W32.Agent.3768320.C

Worm/W32.Agent.419840

Worm/W32.Agent.804436

Worm/W32.AutoRun.61440.T

Worm/W32.AutoRun.729142

Worm/W32.AutoRun.729335

Worm/W32.AutoRun.729365

Worm/W32.AutoRun.729366

Worm/W32.Bundpil.23493728

Worm/W32.Bundpil.5691488

Worm/W32.Duel.122880

Worm/W32.Kido.100756.C

Worm/W32.Kido.1080400

Worm/W32.Kido.108056.C

Worm/W32.Kido.138372

Worm/W32.Kido.150072

Worm/W32.Kido.153884

Worm/W32.Kido.155060.D

Worm/W32.Kido.155344.D

Worm/W32.Kido.157088.B

Worm/W32.Kido.158264.E

Worm/W32.Kido.158548.C

Worm/W32.Kido.160504

Worm/W32.Kido.162076.S

Worm/W32.Kido.163804

Worm/W32.Kido.163820.E

Worm/W32.Kido.164388.B

Worm/W32.Kido.165076

Worm/W32.Kido.165848

Worm/W32.Kido.166724

Worm/W32.Kido.172580

Worm/W32.Kido.220460

Worm/W32.Kido.94916

Worm/W32.MagistrCorr.1220608

Worm/W32.NgrBot.339968

Worm/W32.Palevo.115200.B

Worm/W32.Palevo.116224.AI

Worm/W32.Socks.230913

Worm/W32.Socks.242327

Worm/W32.Socks.95963

Worm/W32.VBNA.1560576

Worm/W32.VBNA.598016.C

Worm/W32.WBNA.126976.AY

Worm/W32.WBNA.164424

Worm/W32.WBNA.2314240



--------------------------------------------------------------------------------------

       Copyright ⓒ, (주) 잉카인터넷, 2000-2017, All rights reserved.

--------------------------------------------------------------------------------------



저작자 표시 비영리 변경 금지
신고
크리에이티브 커먼즈 라이선스
Creative Commons License
Posted by Erteam

‘Scarab ransomware’ 감염 주의



1. 개요 


사용자 PC의 중요 파일을 암호화하고 이 파일을 풀기 위한 금전을 요구하는 악성코드인 랜섬웨어는 하루가 멀다 하고 계속 발견되고 있다.


기업이나 공공기관에서 사용하는 대부분의 업무 자료가 종이 문서에서 디지털 문서로 대체되고 있는 만큼, 디지털 문서를 암호화하는 랜섬웨어는 업무를 마비시키거나 경제적으로 큰 손실로 이어질 수 있으므로, 모르는 파일이나 인터넷에서 다운로드한 파일은 실행 전에 다시 한번 의심을 가질 필요가 있다.


이번 보고서에서 다루는 ‘Scarab Ransomware’ 는 최근 발견되었으며 앞서 말했던 랜섬웨어와 마찬가지로 여러 확장자를 암호화하는 랜섬웨어이다.







2. 분석 정보


2-1. 파일 정보

구분

내용

파일명

Scarab_Ransom.exe

파일크기

350,208 byte

진단명

Ransom/W32.Scarab.350208

악성동작

파일 암호화, 금전 요구

 


2-2. 유포 경로

정확한 유포 경로는 밝혀지지 않았지만 해당 랜섬웨어는 이메일에 실행파일을 첨부하여 유포되고 있는 것으로 확인 된다.



2-3. 실행 과정

‘Scarab ransomware’ 는 실행 시, 사용자의 파일을 암호화하고, 암호화한 파일 이름에 .[resque@plague.desi].scarab 문자와 확장자를 덧붙인다. 또한, 암호화 된 폴더에 ‘IF YOU WANT TO GET ALL YOUR FILES BACK, PLEASE READ THIS.TXT’ 랜섬노트를 생성하며, 암호화가 완료되면 바탕화면과 대상 폴더에 랜섬노트가 생성된다.




3. 악성 동작


3-1. 파일 암호화

‘Scarab ransomware’ 랜섬웨어는 원본 프로세스에서 파일 암호화 동작을 수행하지 않고 실제 원본파일이름과 동일한 자식프로세스를 생성하여 파일 암호화 동작을 수행한다.


[그림 1] 자식 프로세스 생성[그림 1] 자식 프로세스 생성



사용자 PC 를 탐색하며 아래 [표 1] 에 해당하는 파일의 경우 암호화 한 뒤. ‘ [resque@plague.desi].scarab’ 이라는 확장자를 덧붙인다.   

구분

내용

암호화 대상 파일

확장자

efs,000,001,1,101,103,108,110,123,128,1cd,1sp,1st,3,3d,3d4,3dd,3df,3df8,3dm,3dr,3ds,3dxml,3fr,3g2,3ga,
3gp,3gp2,3mm,3pr,3w,4w7,602,7z,7zip,8,89t,89y,8ba,8bc,8be,8bf,8bi8,8bl,8bs,8bx,8by,8li,8svx,8xt,9xt,9xy,
a$v,a2c,aa,aa3,aac,aaf,aah,aaui,ab4,ab65,abc,abk,abt,abw,ac2,ac3,ac5,acc,accdb,accde,accdr,accdt,ace,acf,
ach,acp,acr,acrobatsecuritysettings,acrodata,acroplugin,acrypt,act,ad,ada,adb,adc,add,ade,adi,adoc,ados,
adox,adp,adpb,adr,ads,adt,aea,aec,aep,aepx,aes,aet,afdesign,afm,afp,agd1,agdl,age3rec,age3sav,age3scn,
age3xrec,age3xsav,age3xscn,age3yrec,age3ysav,age3yscn,ahf,ai,aif,aiff,aim,aip,ais,ait,ak,al,al8,ala,alb3,alb4,
alb5,alb6,ald,ali,allet,alt3,alt5,amf,aml,amr,amt,amu,amx,amxx,anl,ann,ans,ansr,anx,aoi,ap,apa,apd,ape,apf,

apj,apk,apnx,apo,app,approj,apr,apt,apw,apxl,arc,arch00,arff,ari,arj,aro,arr,ars,arw,as,as$,as3,asa,asc,ascm,

ascx,asd,ase,asf,ashx,ask,asl,asm,asmx,asn,asnd,asp,aspx,asr,asset,ast,asv,asvx,asx,ath,atl,atomsvc,atw,

automaticdestinations-ms,aux,av,avi,avn,avs,awd,awe,awg,awp,aws,awt,aww,awwp,ax,azf,azs,azw,azw1,

azw3,azw4,b,b27,b2a,back,backup,backupdb,bad,bak,bak~,bamboopaper,bank,bar,bau,bax,bay,bbcd,bbl,

bbprojectd,bbs,bbxt,bc5,bc6,bc7,bcd,bck,bcp,bdb,bdb2,bdp,bdr,bdt2,bdt3,bean,bfa,bgt,bgv,bi8,bib,bibtex,

bic,big,bik,bil,bin,bina,bizdocument,bjl,bk,bk!,bk1,bk2,bk3,bk4,bk5,bk6,bk7,bk8,bk9,bkf,bkg,bkp,bks,bkup,

bld,blend,blend2,blg,blk,blm,blob,blp,bmc,bmf,bmk,bml,bmm,bmml,bmp,bmpr,bna,boc,book,bop,bp1,bp2

,bp3,bpf,bpk,bpl,bpm,bpmc,bps,bpw,brd,breaking_bad,brh,brl,brs,brx,bsa,bsk,bso,bsp,bst,btd,btf,btoa,btx,

burn,burntheme,bvd,bwd,bwf,bwp,bxx,bzabw,c,c2e,c6,cadoc,cae,cag,calca,cam,camproj,cap,capt,car,caro,cas,

cat,catproduct,cawr,cbf,cbor,cbr,cbz,cc,ccc,ccd,ccf,cch,ccitt,cd,cd1,cd2,cdc,cdd,cddz,cdf,cdi,cdk,cdl,cdm,cdml,

cdmm,cdmz,cdpz,cdr,cdr3,cdr4,cdr5,cdr6,cdrw,cds,cdt,cdtx,cdx,cdxml,ce1,ce2,cef,cer,cert,cf5,cfd,cfg,cfp,cfr,cgf,

cgfiletypetest,cgi,cgm,cgp,chi,chk,chm,chml,chmprj,chp,chpscrap,cht,chtml,cib,cida,cif,cipo,civ4worldbuildersave,

civbeyondswordsave,cl2arc,cl2doc,clam,clarify,class,clb,clkd,clkt,clp,clr,cls,clx,cmf,cml,cmp,cms,cmt,cmu,cnf,cng,

cnt,cnv,cod,col,comicdoc,comiclife,compositionmodel,compositiontemplate,con,conf,config,contact,converterx,

cp,cpc,cpd,cpdt,cphd,cpi,cpio,cpp,cpy,cr2,crashed,craw,crb,crd,creole,cri,crjoker,crs,crs3,crt,crtr,crw,crwl,crypt,

crypted,cryptowall,cryptra,cs,cs8,csa,cse,csh,csi,csl,cso,csp,csr,css,cst,csv,ctbl,ctd,cte,ctf,ctl,ctt,ctxt,cty,cue,current,

cvj,cvl,cvw,cw3,cwf,cwk,cwn,cwr,cws,cwwp,cyi,cys,d,d3dbsp,dac,dadx,dag,dal,dap,das,dash,dat,database,datx,

dayzprofile,dazip,db,db_journal,db0,db3,dba,dbb,dbc,dbf,dbfv,db-journal,dbk,dbr,dbs,dbx,dc2,dc4,dca,dcd,

dcf,dch,dco,dcp,dcr,dcs,dct5,dcu,ddc,ddcx,ddd,ddif,ddoc,ddrw,dds,deb,debian,dec,ded,default,del,dem,der,

des,desc,description,design,desklink,det,deu,dev,dex,dfe,dfl,dfm,dft,dfti,dgc,dgm,dgpd,dgr,dgrh,dgs,dhe,dic,did,

dif,dii,dim,dime,dip,dir,directory,disc,disco,disk,dit,divx,diz,djbz,djv,djvu,dk@p,dlc,dlg,dmbk,dmg,dmp,dmtemplate,

dmv,dna,dng,dnl,dob,doc,doc#,docb,doce,docenx,dochtml,docl,docm,docmhtml,docs,docset,docstates,doct,

documentrevisions-v100,docx,docxl,docxml,dok,dot,dothtml,dotm,dotmenx,dotx,dotxenx,dox,doxy,doz,dp,dpd,dpi

,dpk,dpl,dpr,drd,dream,drf,drm,drmx,drmz,drw,dsc,dsd,dsdic,dsf,dsg,dsk,dsl,dsn,dsp,dsy,dtd,dtm,dtml,dtp,dtx,dump,

dvb,dvd,dvi,dvs,dvx,dvz,dwd,dwdoc,dwf,dwfx,dwg,dwlibrary,dwp,dwt,dxb,dxd,dxe,dxf,dxg,dxn,dxr,dxstudio,dzp,e3s,

e4a,easmx,ebk,ebs,ec4,ecc,ecr,edb,edd,edf,edl,edml,edn,edoc,edrwx,edt,edz,efa,efax,eff,efl,efm,efr,eftx,efu,efx,egr,

egt,ehp,eif,eip,ekm,el6,eld,elf,elfo,eln,emc,emf,eml,emlxpart,emm,enc,enciphered,encrypted,enfpack,ent,enx,enyd,

eob,eot,ep,epdf,epf,epk,eprtx,eps,epsf,ept,epub,eql,erbsql,erd,ere,erf,err,es,es3,esc,esd,esf,esm,esp,ess,esv,et,ete,

etng,etnt,ets,etx,euc,evo,evy,ewl,ex,exc,exd,exf,exif,exprwdhtml,exprwdxml,exx,ez,ezc,ezm,ezs,ezz,f4v,f90,f96,fac,

fadein,fae,faq,fax,fbd,fbp6,fbs,fcd,fcf,fcstd,fd,fdb,fdf,fdoc,fdr,fds,fdseq,fdw,fdx,fed,feed-ms,feedsdb-ms,ff,ffa,ffd,

ffdata,fff,ffl,ffo,fft,ffx,fh,fhd,fig,fin,fl,fla,flac,flag,flat,flf,flib,flka,flkb,flm,flp,fls,flt,fltr,flv,flvv,fly,fm,fm3

,fmc,fmd,fmf,fml,fmp,fmp3,fnf,fo,fodg,fodp,fods,fodt,folio,for,forge,fos,fountain,fp,fpage,fpdoclib,fpenc,fphomeop,

fpk,fplinkbar,fpp,fpt,fpx,fra,frag,frdat,frdoc,freepp,frelf,frm,fs,fsc,fsd,fsf,fsh,fsp,fss,ft10,ft11,ft7,ft8,ft9,ftil,ftr,fwk,

fwtemplate,fxd,fxg,fxo,fxr,fzh,fzip,ga3,gam,gan,gcsx,gct,gdb,gdc,gdoc,ged,gev,gevl,gfe,gform,gfx,ggb,ghe,gho,gif,gil,

giw,glink,glk,glo,glos,gly,gml,gmp,gnd,gno,gofin,gp4,gpd,gpf,gpg,gpn,gpx,gpz,gra,grade,gray,grey,grf,grk,grle,groups,

gry,gs,gsa,gsf,gsheet,gslides,gsm,gthr,gui,gul,gvi,gxk,gxl,gz,gzig,gzip,h,h1q,h1s,h1w,h2o,h3m,h4r,haml,hbk,hbl,hbx,hcl,

hcw,hda,hdd,hdl,hdt,hdx,hed,help,helpindex,hex,hfd,hft,hhs,hkdb,hkx,hlf,hlp,hlx,hlx2,hlz,hm2,hmskin,hnd,hoi4,hot,

hp2,hpd,hpj,hplg,hpo,hpp,hps,hpt,hpw,hqx,hrx,hs,hsm,hsx,hta,htm,htm~,html,htmls,htmlz,htms,htpasswd,htz5,hvpl,

hw3,hwp,hwpml,hwt,hxe,hxi,hxq,hxr,hxs,hyp,hype,iab,iaf,ial,ibank,ibcd,ibd,ibk,ibz,icalevent,icaltodo,icc,icml,icmt,ico,

ics,icst,icxs,idap,idc,idd,idl,idml,idp,idx,ie5,ie6,ie7,ie8,ie9,iff,ifp,ign,igr,ihf,ihp,iif,iiq,iks,ila,ildoc,img,imp,imr,incp,incpas,

ind,indb,indd,indl,indp,indt,inf,info,ink,inld,inlk,inp,inprogress,inrs,inss,installhelper,insx,internetconnect,inx,ioca,iof,

ipa,ipf,ipr,ish1,ish2,ish3,iso,ispx,isu,isz,itdb,ite,itl,itm,itmz,itp,its,ivt,iw44,iwa,iwd,iwi,iwprj,iwtpl,ix,ixv,jac,jar,jav,java,

jb2,jbc,jbig,jbig2,jc,jdd,jfif,jge,jgz,jhd,jiaf,jias,jif,jiff,jnt,joe,jp1,jpc,jpe,jpeg,jpf,jpg,jpgx,jpm,jpw,jrf,jrl,jrprint,js,jsd,json,jsp,

jspa,jspx,jtd,jtdc,jtt,jtx,just,jw,jwl,jww,k25,kbd,kbf,kc2,kdb,kdbx,kdc,kde,kdf,kes,key,keynote,key-ef,kf,kfm,kfp,kid,klq,

klw,kmz,knt,kos,kpdx,kpr,ksd,ksp,kss,ksw,kuip,kwd,kwm,kwp,laccdb,lastlogin,lat,latex,lax,lay,lay6,layout,lbf,lbi,lbl,lcd,

lcf,lcn,ldb,ldf,lfe,lgp,lhd,lib,lit,litemod,ll3,llv,lmd,lngttarch2,lnk,localstorage,log,logonxp,lok,lot,lp,lp2,lp7,lpa,lpc,lpd,lpdf,

lpx,lrf,ls5,lst,ltcx,ltm,ltr,ltx,lua,lvd,lvivt,lvl,lvw,lwd,lwo,lwp,lyx,m,m13,m14,m2,m2ts,m3u,m3u8,m4a,m4p,m4u,m4v,m7p

,maca,mag,maker,maml,man,manu,map,mapimail,marc,markdn,mars,mass,max,maxfr,maxm,mbbk,mbox,mbx,mc9,

mcd,mcdx,mcf,mcgame,mcmac,mcmeta,mcrp,mcw,md,md0,md1,md2,md3,md5,mdb,mdbackup,mdbhtml,mdc,

mdccache,mddata,mdf,mdg,mdi,mdk,mdl,mdn,mds,mecontact,med,mef,meh,mell,mellel,menu,meo,met,

metadata_never_index,mf,mfa,mfp,mfw,mga,mgmt,mgourmet,mgourmet3,mhp,mht,mhtenx,mhtmlenx,mi,mic,mid,

mif,mim,mime,mindnode,mip,mission,mix,mjd,mjdoc,mke,mkv,mla,mlb,mlj,mlm,mls,mlsxml,mlx,mm,mm6,mm7,mm8,

mmap,mmc,mmd,mme,mmjs,mml,mmo,mmsw,mmw,mny,mo,mobi,mod,moneywell,mos,mov,movie,moz,mp1,mp2,

mp3,mp4,mp4v,mpa,mpe,mpeg,mpf,mpg,mph,mpj,mpq,mpqge,mpr,mpt,mpv,mpv2,mrd,mru,mrw,mrwref,ms,msd,

mse,msg,mshc,msi,msie,msl,mso,msor,msp,msq,ms-tnef,msw,mswd,mtdd,mtml,mto,mtp,mts,mtx,mug,mui,mvd,mvdx,

mvex,mwd,mwii,mwpd,mwpp,mws,mxd,mxg,mxp,myd,mydocs,myi,mz,n3,narrative,nav,navmap,nb,nbak,nbf,nbp,ncd,

ncf,nd,ndd,ndf,ndl,ndr,nds,ne1,ne3,nef,nfo,nfs11save,ng,njx,nk2,nmbtemplate,nmu,nokogiri,nop,note,now,npd,npdf,npp

,npt,nrbak,nrg,nri,nrl,nrmlib,nrw,ns2,ns3,ns4,nsd,nsf,nsg,nsh,nst,ntf,ntl,ntp,nts,number,numbers,nvd,nvdl,nvram,nwb,

nwbak,nwcab,nwcp,nx^d,nx__,nx1,nx2,nxl,nyf,oa2,oa3,oab,oad,oas,obd,obj,obr,obt,obx,obz,ocdc,ocs,oda,odb,odc,

odccubefile,odf,odg,odh,odi,odif,odm,odo,odp,ods,odt,odt#,odttf,odz,officeui,ofn,oft,oga,ogc,ogg,oil,ojz,okm,ole,

ole2,olf,olv,oly,omlog,omp,onb,one,oos,oot,opd,opf,opj,oplx,opn,opt,opx,opxs,orf,ort,osd,osdx,ost,otc,otf,otg,oth,

oti,otn,otp,ots,ott,otw,out,ovd,owl,oxps,oxt,p10,p12,p2s,p3x,p65,p7b,p7c,p7z,pab,pack,pad,pages,pages-tef,pak,paq,pas,pat,paux,pbd,pbf,pbk,pbp,pbr,pbs,pbx5script,pbxscript,pcd,pcf,pcj,pct,pcv,pcw,pd,pdb,pdc,pdcr,

pdd,pdf,pdf_,pdf_profile,pdf_tsid,pdfa,pdfe,pdfenx,pdfl,pdfua,pdfvt,pdfx,pdfxml,pdfz,pdg,pdp,pdz,peb,pef,pem,

pez,pf,pfc,pfd,pfl,pfm,pfsx,pft,pfx,pg,pgs,php,phr,phs,pih,pixexp,pj2,pj4,pj5,pk,pkb,pkey,pkg,pkh,pkpass,pl,plan,

plb,plc,pld,pli,pln,plus_muhd,pm,pm3,pm4,pm5,pm6,pm7,pmd,pmt,pmv,pmx,png,pnu,po,pod,pool,pot,pothtml,

potm,potx,pp3,ppam,ppd,ppdf,ppf,ppj,ppp,pps,ppsenx,ppsm,ppsx,ppt,ppte,ppthtml,pptl,pptm,pptmhtml,pptt,

pptx,ppws,ppx,prc,prd,pref,prel,prf,prj,prn,pro,pro4,pro4dvd,pro5,pro5dvd,pro5plx,pro5x,proofingtool,props,

proqc,prproj,prr,prs,prt,prtc,prv,ps,ps2,ps3,psa,psafe3,psb,psd,pse8db,psf,psg,psi2,psip,psk,psm,psmd,

pspimage,pst,psw,psw6,pswx,psz,pt3,pt6,ptc,ptf,pth,ptk,ptn,ptn2,pts,ptx,pub,pubf,pubhtml,pubmhtml,pubx,puz,pvd,pve,

pvf,pw,pwd,pwe,pwf,pwi,pwm,pwp,pwre,pxd,pxl,pxp,py,pys,pzc,pzf,pzt,qba,qbb,qbl,qbm,qbr,qbw,qbx,qby,qch,qcow,

qcow2,qct,qdf,qed,qel,qfl,qfxx,qhp,qht,qhtm,qic,qif,qlgenerator,qpx,qrt,qt,qtq,qtr,qtw,quox,qvw,qwd,qwt,qxb,qxd,qxl

,qxp,qxt,r00,r01,r02,r03,r0f,r0z,r3d,ra,ra2,raf,ram,ramd,rap,rar,rat,raw,razy,rb,rbc,rcb,rd,rd1,rdb,rdf,rdfs,rdi,rdo,

rdoc,rdoc_options,rdz,re4,rec,rels,res,resbuild,rest,result,rev,rf,rf1,rft,rgn,rgo,rgss3a,rha,rhif,rim,rit,rlf,rll,rm,rm5,r

md,rmf,rmh,rna,rng,rnt,rnw,ro3,rofl,roi,ros,rov,row,rox,rpf,rpt,rptr,rrd,rrpa,rrt,rrx,rs,rsdf,rsdoc,rsm,rsp,rsrc,rst,

rsw,rt,rt_,rtdf,rte,rtf,rtf_,rtfd,rtk,rtpi,rts,rtsl,rtsx,rtx,rum,run,rv,rvf,rvt,rw2,rwl,rwlibrary,rwz,rxdoc,rzk,rzx,s3db,

s8bn,sa5,sa7,sa8,saas,sad,saf,safe,safetext,sam,sas7bdat,sav,save,say,sb,sbn,sbo,sbpf,sbsc,sbst,sc2save,scd,

scdoc,sce,sch,scm,scmt,scn,scr,scriv,scrivx,scs,scspack,scssc,sct,scw,scx,sd,sd0,sd1,sda,sdb,sdc,sdd,sddraft,

sdf,sdi,sdl,sdmdocument,sdn,sdo,sdoc,sdp,sdr,sds,sdt,sdv,sdw,search-ms,secure,sef,sel,sen,

seq,sequ,server,ses,set,setup,sev,sff,sfs,sfx,sgf,sgi,sgl,sgm,sgml,sgz,sh,sh6,shar,shb,show,

shr,shs,shtml,shw,shy,sic,sid,sidd,sidn,sie,sik,sis,sky,sla,sldm,sldx,slf,slk,slm,slt,slz,sm,smd,sme,smf,smh,smlx,smn,smp,

sms,smwt,smx,smz,snb,snf,sng,snk,snp,snt,snx,so,soi,spb,spd,spdf,spk,spl,spm,spml,sppt,spr,sprt,sprz,sql,sqlite,sqlite3,

sqlitedb,sqllite,sqx,sr2,src,srf,srfl,srs,srt,srw,ssa,ssh,ssi,ssiw,ssm,ssx,st4,st5,st6,st7,st8,stc,std,sti,stm,stp,stpz,struct,

stt,stw,stx,stxt,sty,sud,suf,sum,surf,svd,svdl,svg,svi,svm,svn,svp,svr,svs,swd,swdoc,sweb,swf,switch,swp,sxc,sxd,sxe,

sxg,sxi,sxl,sxm,sxml,sxw,syn,syncdb,t,t01,t03,t05,t10,t12,t13,t14,t2,t2k,t2t,t4g,t80,ta1,ta2,ta9,tabula-doc,

tabula-docstyle,tah,tar,tax,tax2009,tax2013,tax2014,tb,tbb,tbd,tbk,tbkx,tbz2,tcd,tch,tck,tcx,tdg,tdl,tdoc,tdr,te1,

template,tex,texi,texinfo,text,textclipping,textile,tfd,tfm,tfr,tfrd,tg,tga,tgz,thm,thml,thmx,thr,tib,tif,tiff,tjp,tk3,tlb,

tld,tlg,tlt,tlx,tlz,tm,tm3,tmb,tmd,tml,tmlanguage,tmv,tmz,tns,tnsp,toast,toc,topx,tor,torrent,totalslayout,tp,tpl,tpo,

tpsdb,tpu,tpx,trashinfo,trif,trp,ts,tsc,tt11,tt2,ttax,ttxt,tu,tur,tvd,twdi,twdx,tww,tx,txd,txe,txf,txm,txn,txt,txtrpt,u3d,

uax,ubz,ucd,udb,udf,udl,uea,uhtml,ukr,ulf,uli,ulys,ump,umx,unity3d,unr,unx,uof,uop,uos,uot,updf,upk,upoi,upp,

urd-journal,urf,url,urp,usa,usx,ut2,ut3,utc,utd,ute,utf8,uti,utm,uts,utx,uu,uud,uue,uvx,uxx,v,v2t,val,vault,vbadoc,

vbd,vbk,vbox,vbs,vc,vcal,vcd,vce,vcf,vdf,vdi,vdo,vdoc,vdt,ver,vf,vfs0,vhd,vhdx,view,viz,vlc,vlt,vmbx,vmdk,vmf,vmg,

vmm,vmsd,vmt,vmx,vmxf,vob,voprefs,vor,vp,vpk,vpl,vpp_pc,vs,vsd,vsdx,vsf,vsi,vspolicy,vst,vstx,vtf,vthought,vtv,vtx,

vw,vw3,w,w2p,w3g,w3x,w51,w52,w60,w61,w6bn,w6w,w8bn,w8tn,wab,wad,waff,wallet,war,wav,wave,waw,wb,wb2,

wb3,wbk,wbt,wbxml,wbz,wcf,wcl,wcn,wcp,wcst,wd0,wd1,wd2,wdbn,wdgt,wdl,wdn,wdoc,wdx9,web,webdoc,webpart,

wep,wflx,wht,wiz,wk!,wk1,wk3,wk4,wkb,wki,wkl,wks,wlb,wld,wll,wls,wlxml,wm,wma,wmd,wmdb,wmf,wmga,wmk,wml,

wmlc,wmmp,wmo,wms,wmv,wmx,wn,wolf,word,wordlist,wotreplay,wow,wp,wp42,wp5,wp50,wp6,wp7,wpa,wpc2,

wpd,wpd0,wpd1,wpd2,wpd3,wpe,wpf,wpk,wpl,wpost,wps,wpt,wpw,wr1,wrf,wri,wrlk,ws,ws1,ws2,ws3,ws4,ws5,ws6,

ws7,wsd,wsf,wsh,wsp,wtbn,wtd,wtf,wtmp,wtp,wts,wtt,wtx,wvw,wvx,wwcx,wwi,wwl,wws,wwt,wxmx,wxp,wyn,wzn,

wzs,x11,x16,x3f,x3g,xamlx,xar,xav,xbd,xbrl,xci,xda,xdc,xdf,xdo,xdoc,xdw,xf,xfd,xfdf,xfi,xfl,xfn,xfo,xfp,xfx,xgml,xht,xhtm,

xhtml,xif,xig,xis,xjf,xl,xla,xlam,xlb,xlc,xle,xlf,xline,xlist,xlk,xll,xlm,xlnk,xlr,xls,xlsb,xlse,xlshtml,xlsl,xlsm,xlst,xlsx,xlsxl,xlt,

xlthtml,xltm,xltx,xlv,xlw,xlwx,xma,xmdf,xml,xmmap,xmn,xmp,xms,xmt_bin,xmta,xpd,xpi,xpm,xps,xpse,xpt,xpwe,xqm,

xqr,xqx,xrdml,xsc,xsd,xsig,xsl,xslt,xtbl,xtd,xtg,xtml,xtps,xtrl,xv0,xv2,xv3,xvg,xvid,xvl,xwd,xweb3htm,xweb3html,

xweb4stm,xweb4xml,xwf,xwp,xxe,xxx,xy,xy3,xy4v,xyd,yab,ycbcra,yenc,yml,ync,yps,yuv,z02,z04,zap,zip,zipx,zoo,zps,ztmp

[표 1] 암호화 대상 파일 확장자




암호화 된 파일의 모습은 아래 [그림 2]와 같으며, 바탕화면과 대상 폴더 마다 랜섬노트가 생성된 것을 확인할 수 있다.


[그림2] 암호화 된 파일과 랜섬노트[그림2] 암호화 된 파일과 랜섬노트






3-2. 볼륨 쉐도우(shadow) 복사본 삭제

해당 랜섬웨어에 감염 된 사용자가 PC를 암호화 되기 이전으로 되돌리는 것을 방지하기 위해 볼륨 섀도 복사본을 삭제한다. 또한 부팅 구성 데이터 편집기인 bcdedit.exe를 사용하여 Windows 자동 복구를 하지 못하도록 명령어를 수행한다.


[그림3] 쉐도우 파일 삭제[그림3] 쉐도우 파일 삭제






3-3. 금전 요구

파일 암호화가 완료되면 ‘Scarab Ransomware’ 는 암호화된 파일에 대하여 비트 코인을 요구한다. 암호화 된 파일에 대해서 복호화 하기 위한 방법으로 랜섬노트에 기록되어있는 E-MAIL 주소로 개인식별키를 작성하여 보내면 복호화 키를 준다는 내용을 포함하고 있다.


[그림 4] 암호화 완료 후 나타나는 랜섬노트[그림 4] 암호화 완료 후 나타나는 랜섬노트






4. 결론

이번 보고서에서 알아 본 ‘Scarab Ransomware’ 는 아직 다른 랜섬웨어들에 비하여 많은 피해 사례가 발생하지 않았지만, 랜섬웨어가 회사나 공공기관 만을 상대로 유포하는 것이 아니기 때문에 개인 사용자일 경우에도 안심하지 않고 항상 주의하여야 한다.


랜섬웨어의 피해를 최소한으로 예방하기 위해서는 불분명한 링크나 첨부 파일을 함부로 열어보아서는 안되며, 중요한 자료는 별도로 백업해 보관하여야 한다,


상기 악성코드는 잉카인터넷 안티바이러스 제품 nProtect Anti-Virus Spyware V3.0과 nProtect Anti-Virus/Spyware V4.0에서 진단 및 치료가 가능하다.


[그림 5] nProtect Anti-Virus/Spyware V4.0 진단 및 치료 화면[그림 5] nProtect Anti-Virus/Spyware V4.0 진단 및 치료 화면



[그림 6] nProtect Anti-Virus/Spyware V3.0 진단 및 치료 화면[그림 6] nProtect Anti-Virus/Spyware V3.0 진단 및 치료 화면





저작자 표시 비영리 변경 금지
신고
크리에이티브 커먼즈 라이선스
Creative Commons License
Posted by nProtect