Trend Micro Security

ADW_OPENCANDY.GO

2017年5月2日
 解析者: Janus Agcaoili   

 別名:

not-a-virus:AdWare.Win32.OpenCandy.db (Kaspersky), a variant of Win32/OpenCandy.A potentially unsafe (ESET-NOD32)

 プラットフォーム:

Windows

 危険度:
 ダメージ度:
 感染力:
 感染確認数:
 情報漏えい:


  • マルウェアタイプ: Adware
  • 破壊活動の有無: なし
  • 暗号化:  
  • 感染報告の有無: はい

  概要

感染経路 他のマルウェアからの作成, インターネットからのダウンロード

アドウェアは、他のマルウェアに作成されるか、悪意あるWebサイトからユーザが誤ってダウンロードすることによりコンピュータに侵入します。 アドウェアは、ユーザの手動インストールにより、コンピュータに侵入します。

アドウェアは、特定のWebサイトにアクセスし、情報を送受信します。 ただし、情報公開日現在、このWebサイトにはアクセスできません。


  詳細

ファイルサイズ 14,484,792 bytes
タイプ EXE
メモリ常駐 なし
発見日 2017年3月30日
ペイロード URLまたはIPアドレスに接続, ファイルの作成

侵入方法

アドウェアは、他のマルウェアに作成されるか、悪意あるWebサイトからユーザが誤ってダウンロードすることによりコンピュータに侵入します。

アドウェアは、ユーザの手動インストールにより、コンピュータに侵入します。

インストール

アドウェアは、以下のファイルを作成します。

  • %Program Files%\Freemake\Freemake Video Downloader\Uninstall\unins000.exe
  • %Program Files%\Freemake\Freemake Video Downloader\Uninstall\icon.ico
  • %Program Files%\Freemake\COM\1.1\msvcp100.dll
  • %Program Files%\Freemake\COM\1.1\msvcr100.dll
  • %Program Files%\Freemake\COM\1.1\avcodec-54.dll
  • %Program Files%\Freemake\COM\1.1\avdevice-54.dll
  • %Program Files%\Freemake\COM\1.1\avformat-54.dll
  • %Program Files%\Freemake\COM\1.1\avutil-52.dll
  • %Program Files%\Freemake\COM\1.1\avresample-1.dll
  • %Program Files%\Freemake\COM\1.1\swscale-2.dll
  • %Program Files%\Freemake\COM\1.1\avfilter-3.dll
  • %Program Files%\Freemake\COM\1.1\xvidcore.dll
  • %Program Files%\Freemake\COM\1.1\ffmpeg.exe
  • %Program Files%\Freemake\COM\1.1\postproc-52.dll
  • %Program Files%\Freemake\COM\1.1\swresample-0.dll
  • %Program Files%\Freemake\COM\1.1\libdvdnav.dll
  • %Program Files%\Freemake\COM\1.1\libdvdcss-2.dll
  • %Program Files%\Freemake\COM\1.1\FMMediaFormats.dll
  • %Program Files%\Freemake\COM\1.1\FMTransformBase.dll
  • %Program Files%\Freemake\COM\1.1\FMMediaSource.dll
  • %Program Files%\Freemake\COM\1.1\FMVideoConverter.dll
  • %Program Files%\Freemake\COM\1.1\FMMediaUtils.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FMProfileManager.dll
  • %Program Files%\Freemake\COM\1.1\id3lib.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FmUpdater.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\Freemake.CustomControls.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\Freemake.Effects.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\Freemake.Themes.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FreemakeCommon.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\GAnalytics.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\GoCartMonad.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\NLog.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\SmartThreadPool.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\cs\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\da\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\de-DE\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\el-GR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\es-ES\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\fr-fR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\hu\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\it\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\ja-JP\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\nl\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\pl\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\pt-BR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\ru-RU\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\sk\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\uk\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\vi\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\zh-CN\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\zh-TW\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FreemakeCommon\Profiles\FMCommonCodecProfiles.xml
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FreemakeCommon\Profiles\FmDownloaderProfiles.xml
  • %Program Files%\Freemake\Freemake Video Downloader\FMCommon\FreemakeCommon\Resources\Adv.xml
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\DownloaderCommon.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.Detector.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.GlobalSettings.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.HtmlParser.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.Interface.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.Miscellaneous.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.SmartDownloader.Core.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.SmartDownloader.Extensions.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.SupportedSite.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FMDownloader.TrackDownloaderLib.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\HtmlAgilityPack.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\ICSharpCode.SharpZipLib.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\Newtonsoft.Json.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\NLog.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\rtmpdump.exe
  • %Program Files%\Freemake\Freemake Video Downloader\FMWeb\Downloader\FmUpdater.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVD.exe
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\cs\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\cs\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\da\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\da\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\de-DE\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\de-DE\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\el-GR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\el-GR\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\es-ES\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\es-ES\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\fr-FR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\fr-FR\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\hu\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\hu\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\it\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\it\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\ja-JP\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\ja-JP\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\nl\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\nl\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\pl\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\pl\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\pt-BR\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\pt-BR\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\ru-RU\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\ru-RU\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\sk\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\sk\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\uk\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\uk\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\vi\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\vi\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\zh-CN\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\zh-CN\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\zh-TW\FreemakeCommon.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Languages\zh-TW\FreemakeVideoDownloader.resources.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\VideoDownloader.Model.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\VideoDownloader.Tools.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Ninject.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\System.Windows.Interactivity.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Newtonsoft.Json.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\FMiTunesLib.dll
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Resources\how_to_FVD.xml
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVideoDownloader\Resources\logo_FVD.png
  • %Program Files%\Freemake\Freemake Video Downloader\FreemakeVD.exe.config
  • %Program Files%\Freemake\Freemake Video Downloader\NLog.config
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome.manifest
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\install.rdf
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\content\about.xul
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\content\button-enable.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\content\ff-overlay.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\content\ff-overlay.xul
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\content\overlay.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\locale\en-US\about.dtd
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\locale\en-US\overlay.dtd
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\locale\en-US\overlay.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\skin\32freemake.png
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\skin\overlay.css
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\skin\toolbar-button-over.png
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\chrome\skin\toolbar-button.png
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\defaults\preferences\prefs.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome.manifest
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\install.rdf
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\content\downloader.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\content\downloader.xul
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\content\icons\32freemake.png
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\content\icons\icon.png
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\de-DE\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\en-US\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\es-ES\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\fr-FR\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\it-IT\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\jp-JP\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\chrome\locale\ru-RU\main.properties
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\modules\jQuery.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\modules\youtube_com.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\IEPluginDownloader.dll
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeDeleteIEDlls.bat
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\Interop.SHDocVw.dll
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.dll
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\7\script.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\8\script.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\9\script.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\10\script.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\youtube_com.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\IE\jQuery.js
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\MiddleChainClient.exe
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\MiddleChainInterface.dll
  • %Program Files%\Freemake\Freemake Video Downloader\BrowserPlugin\MiddleChainClient.exe.config
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\Adv.xml
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\AdvVersion
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\AudioConverter.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\AudioConverterOn.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\MusicBox.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\MusicBoxOn.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\VideoConverter.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\VideoConverterOn.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\VideoDownloader.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\VideoDownloaderOn.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\Youtube2Mp3Converter.png
  • %Program Files%\Freemake\Freemake Video Downloader\FmCommon\FreemakeCommon\Resources\Youtube2Mp3ConverterOn.png
  • %Program Files%\Freemake\CaptureLib\winpcap.exe
  • %Program Files%\Freemake\CaptureLib\CaptureDeployProject.dll
  • %Program Files%\Freemake\CaptureLib\CaptureLib.dll
  • %Program Files%\Freemake\CaptureLib\CaptureLibServiceLogic.dll
  • %Program Files%\Freemake\CaptureLib\CaptureLibType.dll
  • %Program Files%\Freemake\CaptureLib\PacketDotNet.dll
  • %Program Files%\Freemake\CaptureLib\SharpPcap.dll
  • %Program Files%\Freemake\CaptureLib\CaptureLibService.exe
  • %Program Files%\Freemake\CaptureLib\FreemakeVideoSniff.exe
  • %Program Files%\Freemake\dotNetFx40_Client_setup.exe
  • %Desktop%\Freemake Video Downloader.lnk <- points to the installed software
  • %Startup%\Freemake\Freemake Video Downloader.lnk <- points to the installed software
  • %User Startup%\Freemake\Uninstall\Uninstall Freemake Video Downloader.lnk <- points to the uninstaller of the installed software

他のシステム変更

アドウェアは、インストールの過程で、以下のレジストリ値を追加します。

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader\SystemSettings
FirstRunTimeStamp = "03/31/2017 16:58:37"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader
StaticticsInstalled = "0"

HKEY_CURRENT_USER\Software\Freemake
NumRun = "0"

HKEY_CURRENT_USER\Software\Freemake
TotalRun = "0"

HKEY_CURRENT_USER\Software\Freemake
CurRev = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake
GUID = "{DA1A609E-E271-4BB0-8A95-E99E532E97D2}"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader\SystemSettings
FirstRunTimeStamp = "03/31/2017 16:58:37"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader
StaticticsInstalled = "0"

HKEY_CURRENT_USER\Software\Freemake
NumRun = "0"

HKEY_CURRENT_USER\Software\Freemake
TotalRun = "0"

HKEY_CURRENT_USER\Software\Freemake
CurRev = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake
GUID = "{DA1A609E-E271-4BB0-8A95-E99E532E97D2}"

HKEY_CURRENT_USER\Software\Microsoft\
RestartManager\Session0000
RegFilesHash = "8E F5 9D A9 D5 40 3B 4D BC 77 8C 11 5B 59 4B 0B AB 5A F7 E3 8B FB DB 5D 3D 71 19 66 3D B0 DD F8 "

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\msvcp100.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\msvcr100.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avcodec-54.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avdevice-54.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avformat-54.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avutil-52.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avresample-1.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\swscale-2.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\avfilter-3.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\xvidcore.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\ffmpeg.exe = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\postproc-52.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\swresample-0.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\libdvdnav.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\libdvdcss-2.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\FMMediaFormats.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\FMTransformBase.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\FMMediaSource.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\FMVideoConverter.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\FMMediaUtils.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\SharedDLLs
C:\Program Files\Freemake\COM\1.1\id3lib.dll = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
AppPaths
FreemakeVideoDownloader = "C:\Program Files\Freemake\Freemake Video Downloader\FreemakeVD.exe"

HKEY_CURRENT_USER\Software\Freemake\
UninstallPaths
Freemake Video Downloader = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\unins000.exe"

HKEY_CURRENT_USER\Software\Freemake\
FreemakeVideoDownloader\SystemSettings
Culture = "en-US"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader\SystemSettings
UseRealTimeExtract = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
FreemakeVideoDownloader\SystemSettings
FileVersion = "3.7.0.4"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
AppPaths
MiddleChainClient = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\MiddleChainClient.exe"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
AppPaths
MiddleChainClientTarget = "C:\Program Files\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe"

HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\
Firefox\Extensions
fmdownloader@gmail.com = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\"

HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\
Firefox\Extensions
ytfmdownloader@gmail.com = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
path = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
version = "1.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
path = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
version = "1.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}
(Default) = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
(Default) = "mscoree.dll"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
Class = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
RuntimeVersion = "v4.0.30319"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
ThreadingModel = "Both"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\
1.0.4.0
Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\
1.0.4.0
Class = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\
1.0.4.0
CodeBase = "file:///C:\Program Files\Freemake/Freemake Video Downloader/BrowserPlugin/IE/FreemakeYoutubeButton.DLL"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\
1.0.4.0
RuntimeVersion = "v4.0.30319"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\ProgId
(Default) = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Freemake.YoutubeButton
(Default) = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Freemake.YoutubeButton\CLSID
(Default) = "{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}
(Default) = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
(Default) = "mscoree.dll"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
Class = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
RuntimeVersion = "v4.0.30319"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32
ThreadingModel = "Both"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32\1.0.4.0
Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32\1.0.4.0
Class = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32\1.0.4.0
CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
InprocServer32\1.0.4.0
RuntimeVersion = "v4.0.30319"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\
ProgId
(Default) = "Freemake.YoutubeButton"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Explorer\
Browser Helper Objects\{e9e8eb35-ff77-455d-b677-91e5e4fc06c2}
Alright = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Freemake\
AppPaths
DotNetInstallation = "C:\Program Files\Freemake\dotNetFx40_Client_setup.exe"

HKEY_CURRENT_USER\Software\Freemake
PrevEndNorm = "1"

HKEY_CURRENT_USER\Software\Freemake
PrevEndNorm = "0"

HKEY_CURRENT_USER\Software\Freemake
NumRun = "1"

HKEY_CURRENT_USER\Software\Freemake
CurRev = "2421"

HKEY_CURRENT_USER\Software\Freemake
TotalRun = "1"

HKEY_CURRENT_USER\Software\Freemake
TotalCrash = "0"

HKEY_CURRENT_USER\Software\Freemake
TotalHangOn = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Inno Setup: Setup Version = "5.5.3 (u)"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Inno Setup: App Path = "C:\Program Files\Freemake"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
InstallLocation = "C:\Program Files\Freemake\"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Inno Setup: Icon Group = "Freemake"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Inno Setup: User = "dyituser_732"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Inno Setup: Language = "en"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
DisplayName = "Freemake Video Downloader"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
DisplayIcon = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\icon.ico"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
UninstallString = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\unins000.exe""

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
QuietUninstallString = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\unins000.exe" /SILENT"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
DisplayVersion = "3.7.0"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
Publisher = "Ellora Assets Corporation"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
URLInfoAbout = "http://www.freemake.com"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1 "
HelpLink = "http://www.freemake.com/support"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
URLUpdateInfo = "http://www.freemake.com/downloads"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
NoModify = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
NoRepair = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
InstallDate = "20170331"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
MajorVersion = "3"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
MinorVersion = "7"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
Freemake Video Downloader_is1
EstimatedSize = "55274"

その他

アドウェアは、以下のWebサイトにアクセスし、情報を送受信します。

  • http://api.{BLOCKED}ndy.com/?bn=3&bv=8.00.7600.16385&clientv=101&cltzone=480&csk=05943206919248429236-10281316833478536421&language={language}&method=get_offers&mstime={time running}&num_offers=2&os={OS}&product_key=7ba982a1d4797c0f4f4805172cbaec7f&sub_key=FRM1FVD&tm={date and time}&v=1.0&signature=7bbffb61efdef2f951655aed665fc6a0
  • http://api.{BLOCKED}ndy.com/?clientv=101&csk=05943206919248429236-10281316833478536421&method=track_product_installed&mstime={time running}&pos=1&product_key=7ba982a1d4797c0f4f4805172cbaec7f&session_key=&skip=0&sub_key=FRM1FVD&tm={date and time}&v=1.0&signature=ef1651719fea3f2e2e5c6ad8965faa15
  • http://www.{BLOCKED}ke.com/installation?id=FreemakeVideoDownloader&hl=en&v=3.7.0.4&net=1&online=0
  • http://www.{BLOCKED}ke.com/en/installation/videodownloader_oldversion/?v=3.7.0.4&online=0&online=0

ただし、情報公開日現在、このWebサイトにはアクセスできません。

アドウェアが作成する以下のファイルは、インストールされたソフトウェアへ誘導します。

  • %Desktop%\Freemake Video Downloader.lnk
  • %Startup%\Freemake\Freemake Video Downloader.lnk

アドウェアが作成する以下のファイルは、インストールされたソフトウェアのアンインストーラーへ誘導します。

  • %User Startup%\Freemake\Uninstall\Uninstall Freemake Video Downloader.lnk

アドウェアは、インストール中およびインストール後に以下の画面を表示します。


  対応方法

対応検索エンジン: 9.850
SSAPI パターンバージョン: 1.825.00
SSAPI パターンリリース日: 2017年4月6日

手順 1

Windows XP、Windows Vista および Windows 7 のユーザは、コンピュータからマルウェアもしくはアドウェア等を完全に削除するために、ウイルス検索の実行前には必ず「システムの復元」を無効にしてください。

手順 2

このマルウェアもしくはアドウェア等の実行により、手順中に記載されたすべてのファイル、フォルダおよびレジストリキーや値がコンピュータにインストールされるとは限りません。インストールが不完全である場合の他、オペレーティングシステム(OS)の条件によりインストールがされない場合が考えられます。手順中に記載されたファイル/フォルダ/レジストリ情報が確認されない場合、該当の手順の操作は不要ですので、次の手順に進んでください。

手順 3

「ADW_OPENCANDY.GO」で検出したファイル名を確認し、そのファイルを終了します。

[ 詳細 ]

  • すべての実行中プロセスが、Windows のタスクマネージャに表示されない場合があります。この場合、"Process Explorer" などのツールを使用しマルウェアのファイルを終了してください。"Process Explorer" については、こちらをご参照下さい。
  • 検出ファイルが、Windows のタスクマネージャまたは "Process Explorer" に表示されるものの、削除できない場合があります。この場合、コンピュータをセーフモードで再起動してください。
    セーフモードについては、こちらをご参照下さい。
  • 検出ファイルがタスクマネージャ上で表示されない場合、次の手順にお進みください。

手順 4

不明なレジストリキーを削除します。

[ 詳細 ]

警告:レジストリはWindowsの構成情報が格納されているデータベースであり、レジストリの編集内容に問題があると、システムが正常に動作しなくなる場合があります。
レジストリの編集はお客様の責任で行っていただくようお願いいたします。弊社ではレジストリの編集による如何なる問題に対しても補償いたしかねます。
レジストリの編集前にこちらをご参照ください。

 
  • In HKEY_LOCAL_MACHINE\SOFTWARE
    • Freemake
  • In HKEY_CURRENT_USER\Software
    • Freemake

手順 5

このレジストリ値を削除します。

[ 詳細 ]

警告:レジストリはWindowsの構成情報が格納されているデータベースであり、レジストリの編集内容に問題があると、システムが正常に動作しなくなる場合があります。
レジストリの編集はお客様の責任で行っていただくようお願いいたします。弊社ではレジストリの編集による如何なる問題に対しても補償いたしかねます。
レジストリの編集前にこちらをご参照ください。

  • In HKEY_CURRENT_USER\Software\Microsoft\RestartManager\Session0000
    • RegFilesHash = "8E F5 9D A9 D5 40 3B 4D BC 77 8C 11 5B 59 4B 0B AB 5A F7 E3 8B FB DB 5D 3D 71 19 66 3D B0 DD F8"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\msvcp100.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\msvcr100.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avcodec-54.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avdevice-54.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avformat-54.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avutil-52.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avresample-1.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\swscale-2.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\avfilter-3.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\xvidcore.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\ffmpeg.exe = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\postproc-52.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\swresample-0.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\libdvdnav.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\libdvdcss-2.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\FMMediaFormats.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\FMTransformBase.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\FMMediaSource.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\FMVideoConverter.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\FMMediaUtils.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
    • C:\Program Files\Freemake\COM\1.1\id3lib.dll = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions
    • fmdownloader@gmail.com = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions
    • ytfmdownloader@gmail.com = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
    • path = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
    • version = "1.0.0"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
    • path = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
    • version = "1.0.0"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}
    • (Default) = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • (Default) = "mscoree.dll"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • Class = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • RuntimeVersion = "v4.0.30319"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • ThreadingModel = "Both"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • Class = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • CodeBase = "file:///C:\Program Files\Freemake/Freemake Video Downloader/BrowserPlugin/IE/FreemakeYoutubeButton.DLL"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • RuntimeVersion = "v4.0.30319"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\ProgId
    • (Default) = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Freemake.YoutubeButton
    • (Default) = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Freemake.YoutubeButton\CLSID
    • (Default) = "{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}
    • (Default) = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • (Default) = "mscoree.dll"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • Class = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • RuntimeVersion = "v4.0.30319"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32
    • ThreadingModel = "Both"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • Assembly = "FreemakeYoutubeButton, Version=1.0.4.0, Culture=neutral, PublicKeyToken=null"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • Class = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • CodeBase = "C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\FreemakeYoutubeButton_1.0.4.0.DLL"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\InprocServer32\1.0.4.0
    • RuntimeVersion = "v4.0.30319"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}\ProgId
    • (Default) = "Freemake.YoutubeButton"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e9e8eb35-ff77-455d-b677-91e5e4fc06c2}
    • Alright = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Inno Setup: Setup Version = "5.5.3 (u)"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Inno Setup: App Path = "C:\Program Files\Freemake"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • InstallLocation = "C:\Program Files\Freemake\"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Inno Setup: Icon Group = "Freemake"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Inno Setup: User = "dyituser_732"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Inno Setup: Language = "en"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • DisplayName = "Freemake Video Downloader"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • DisplayIcon = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\icon.ico"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • UninstallString = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\unins000.exe""
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • QuietUninstallString = "C:\Program Files\Freemake\Freemake Video Downloader\Uninstall\unins000.exe" /SILENT"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • DisplayVersion = "3.7.0"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • Publisher = "Ellora Assets Corporation"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • URLInfoAbout = "http://www.freemake.com"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1 "
    • HelpLink = "http://www.freemake.com/support"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • URLUpdateInfo = "http://www.freemake.com/downloads"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • NoModify = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • NoRepair = "1"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • InstallDate = "20170331"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • MajorVersion = "3"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • MinorVersion = "7"
  • In HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freemake Video Downloader_is1
    • EstimatedSize = "55274

手順 6

以下のフォルダを検索し削除します。

[ 詳細 ]
註:このフォルダは、隠しフォルダとして設定されている場合があります。[詳細設定オプション]をクリックし、[隠しファイルとフォルダの検索]のチェックボックスをオンにし、検索結果に隠しファイルとフォルダが含まれるようにしてください。
  • %Program Files%\Freemake

手順 7

以下のファイルを検索し削除します。

[ 詳細 ]
コンポーネントファイルが隠しファイル属性の場合があります。[詳細設定オプション]をクリックし、[隠しファイルとフォルダの検索]のチェックボックスをオンにし、検索結果に隠しファイルとフォルダが含まれるようにしてください。
  • %Desktop%\Freemake Video Downloader.lnk
  • %Startup%\Freemake\Freemake Video Downloader.lnk
  • %User Startup%\Freemake\Uninstall\Uninstall Freemake Video Downloader.lnk

手順 8

最新のバージョン(エンジン、パターンファイル)を導入したウイルス対策製品を用い、ウイルス検索を実行してください。「ADW_OPENCANDY.GO」と検出したファイルはすべて削除してください。 検出されたファイルが、弊社ウイルス対策製品により既に駆除、隔離またはファイル削除の処理が実行された場合、ウイルスの処理は完了しており、他の削除手順は特にありません。


ご利用はいかがでしたか? アンケートにご協力ください