애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Microsoft Windows XP Service Pack 3(5.1.2600.196608)
Intel(R) Core(TM) i3 CPU       M 380  @ 2.53GHz / 767.48 MB
x86 Family 6 Model 37 Stepping 5
Date : 2011-10-06
----------------------------------------------------------------------
DF000 C:\Program Files\CodiGrils\CodiGirlsTBtn.dll
DF001 C:\Program Files\CodiGrils\uninst.exe
DF002 C:\Program Files\hahatv\ggUpdate.exe
DF003 C:\Program Files\hahatv\hahaDelete.exe
DF004 C:\Program Files\hahatv\hahaExecute.exe
DF005 C:\Program Files\hahatv\hahaInstall.exe
DF006 C:\Program Files\hahatv\hahaProcess.exe
DF007 C:\Program Files\hahatv\hahaUninstall.exe
DF008 C:\Program Files\hahatv\hahaUpdate.exe
DF009 C:\Program Files\hahatv\MSCOMCTL.OCX
DF010 C:\Program Files\hahatv\VB6KO.DLL
DF011 C:\Program Files\netimo\Common Shared\URLHelper\efbbar.dll
DF012 C:\Program Files\netimo\Common Shared\URLHelper\efsbar.dll
DF013 C:\Program Files\netimo\Common Shared\URLHelper\iewindow.exe
DF014 C:\Program Files\netimo\Common Shared\URLHelper\nnlogon.exe
DF015 C:\Program Files\netimo\Common Shared\URLHelper\ntmEnd.exe
DF016 C:\Program Files\netimo\Common Shared\URLHelper\ntmurl.dll
DF017 C:\Program Files\netimo\Common Shared\URLHelper\ntmurl.exe
DF018 C:\Program Files\netimo\Common Shared\URLHelper\sslaunch.dll
DF019 C:\Program Files\netimo\Common Shared\URLHelper\uninst.exe
DF020 C:\Program Files\netimo\Common Shared\URLHelper\urld.exe
DF021 C:\Program Files\netimo\Common Shared\URLHelper\UrlUpdate.exe
DF022 C:\Program Files\netimo\Common Shared\URLHelper\urlupdate1.exe
DF023 C:\Program Files\WindowSmart\inssw.exe
DF024 C:\Program Files\WindowSmart\smartwindow.dll
DF025 C:\Program Files\WindowSmart\smartwindow.exe
DF026 C:\Program Files\WindowSmart\smartwindowvw1.exe
DF027 C:\Program Files\WindowSmart\smartwindowvw2.exe
DF028 C:\Program Files\WindowSmart\spacern.exe
DF029 C:\Program Files\WindowSmart\uninstall.exe
DF030 C:\WINDOWS\system32\dwsbc80.OCX
DF031 C:\WINDOWS\system32\dwshengine80.dll
DF032 C:\WINDOWS\system32\DWSHK80.OCX
DF033 C:\WINDOWS\system32\MSCOMCTL.OCX
DF034 C:\WINDOWS\system32\NSearcher.exe
----------------------------------------------------------------------
SC035 efinderservice -/- efinderservice -/- - -/-  -/- C:\Program Files\netimo\Common Shared\URLHelper\nnlogon.exe
----------------------------------------------------------------------
UN036 코디걸스 제거 -/- - -/- CodiGirlsP -/- - -/- -
UN037 ms_exqhelper -/- (주)쎈뉴스 -/- NNavigator -/-  -/- -
UN038 WidnowSmart IE Service 1.1.1.1 -/- - -/- WidnowSmart IE Service 1.1.1.1 -/- - -/- -
----------------------------------------------------------------------
LS039 Window Smart -/- C:\Program Files\WindowSmart\smartwindow.exe
LS040 hahatv -/- C:\Program Files\hahatv\hahaUpdate.exe
----------------------------------------------------------------------
BH041 WindowSmartObj Class -/- C:\Program Files\WindowSmart\smartwindow.dll -/- {439E8634-0031-4D0C-BAB9-77E89E3C0F58}
BH042 efinder service -/- C:\Program Files\netimo\Common Shared\URLHelper\ntmurl.dll -/- {72CEEE43-C350-4932-B3DC-B6201F01EFCB}
BH043 e-shopper -/- C:\Program Files\netimo\Common Shared\URLHelper\efsbar.dll -/- {D815AB8A-E840-4054-B37D-943893116452}
----------------------------------------------------------------------
NA000 babotv.net/nlogadmin/nalogd.php?counter=1_1_1_woowatv&url=<?=$H**.***
NA001 cfile1.uf.tistory.com/image/1135BE274C21997C60*.***
NA002 cfile1.uf.tistory.com/image/142DF71F4C243DA499*.***
NA003 cfile10.uf.tistory.com/image/147523164C3574F034*.***
NA004 cfile10.uf.tistory.com/image/153285174C21676708*.***
NA005 cfile105.uf.daum.net/S120x120/70/11479C384D38EE8214*.***
NA006 cfile23.uf.tistory.com/image/121098194C357B911B*.***
NA007 cfile25.uf.tistory.com/image/202957154C357A9DAE*.***
NA008 cfile25.uf.tistory.com/image/203B06184C20704973*.***
NA009 cfile28.uf.tistory.com/image/167CE8164C35782719*.***
NA010 cfile9.uf.tistory.com/image/1768C8174C3576DE68*.***
NA011 cfs5.flvs.daum.net/files/12/86/31/48/41200254/thumb.jpg.*.***
NA012 cfs5.flvs.daum.net/files/13/41/67/16/41151709/thumb.jpg.*.***
NA013 cfs5.flvs.daum.net/files/16/77/15/40/41251849/thumb.jpg.*.***
NA014 cfs5.flvs.daum.net/files/18/27/10/42/41027826/thumb.jpg.*.***
NA015 cfs5.flvs.daum.net/files/3/88/70/47/41025462/thumb.jpg.*.***
NA016 cfs5.flvs.daum.net/files/43/76/33/22/41004013/thumb.jpg.*.***
NA017 cfs5.flvs.daum.net/files/52/67/21/87/41026120/thumb.jpg.*.***
NA018 cfs5.flvs.daum.net/files/69/94/7/10/41034489/thumb.jpg.*.***
NA019 cfs5.flvs.daum.net/files/80/96/78/101/41231207/thumb.jpg.*.***
NA020 cfs5.flvs.daum.net/files/83/59/60/21/41130290/thumb.jpg.*.***
NA021 cfs5.flvs.daum.net/files/9/71/8/4/41102463/thumb.jpg.*.***
NA022 endingbr.netimo.net/index.php?Mediapcode=nfdisk&ServiceType=end**.***
NA023 env.smartwindow.co.kr/index.php?code=qq23x977H0p7svCSTUQ7Cga7zc**.***
NA024 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/2nVjr3FAn-g$/thu**.***
NA025 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/2xapiKsdWtw$/thu**.***
NA026 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/5SUZtBXwjos$/thu**.***
NA027 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/bCr9EoMbafw$/thu**.***
NA028 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/c885-ClM74w$/thu**.***
NA029 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/CtaHuN_iPNA$/2.j**.***
NA030 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/DPxvYz80Snc$/thu**.***
NA031 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/fGel1sLEuhE$/thu**.***
NA032 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/FxW4zyES3a0$/thu**.***
NA033 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/i-74yMPinlw$/2.j**.***
NA034 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/Ig3cQCiWAPc$/2.j**.***
NA035 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/ksLLUp2R6pc$/thu**.***
NA036 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/paWOrYBI6co$/thu**.***
NA037 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/PuREenDMcWw$/thu**.***
NA038 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/QIoXcCGO_as$/thu**.***
NA039 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/qR5wJ1vrWKg$/thu**.***
NA040 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/RV9fm2JPiOs$/thu**.***
NA041 i1.tvpot.daumcdn.net/svc/image/U03/tvpot_thumb/WYs5-BOuZlU$/thu**.***
NA042 search.netimo.net/gmtoolbar/log/m_install_counter.php?pcode=nfd**.***
NA043 search.netimo.net/urlhelper_kr/bhocfg.ini?pcode=nfdisk&subcode=**.***
NA044 search.netimo.net/urlhelper_kr/check.*.***
NA045 search.netimo.net/urlhelper_kr/endingbr/endinglist.ini?pcode=nf**.***
NA046 search.netimo.net/urlhelper_kr/endingbr/keywordlist.ini?pcode=n**.***
NA047 search.netimo.net/urlhelper_kr/tags.ini?pcode=nf*.***
NA048 search.netimo.net/urlhelper_kr/URLBRExceptionList*.***
NA049 search.netimo.net/urlhelper_kr/version.ini?ProductVersion=3.1.0**.***
NA050 search.netimo.net/urlhelper_web4/autoup*.***
NA051 search.netimo.net/urlhelper_web4/iewindow*.***
NA052 search.netimo.net/urlhelper_web4/nnlogon*.***
NA053 search.netimo.net/urlhelper_web4/ntmurl*.***
NA054 search.netimo.net/urlhelper_web4/tagstemp*.***
NA055 search.netimo.net/urlhelper_web4/uninst*.***
NA056 search.netimo.net/urlhelper_web4/version.ini?ProductVersion=3.1**.***
NA057 tvcup.co.kr/activeX/idcommunication/cgsetups_p26*.***
NA058 tvcup.co.kr/activeX/idcommunication/text*.***
NA059 ww*.hahatv.co.kr/activeX/clause*.***
NA060 ww*.hahatv.co.kr/activeX/ggUpdate*.***
NA061 ww*.hahatv.co.kr/activeX/hahatv*.***
NA062 ww*.hahatv.co.kr/activeX/Install*.***
NA063 ww*.hahatv.co.kr/activeX/netimo/ms_exqhelper*.***
NA064 ww*.hahatv.co.kr/activeX/netimo/yak*.***
NA065 ww*.hahatv.co.kr/css/CineGlobal*.***
NA066 ww*.hahatv.co.kr/favicon*.***
NA067 ww*.hahatv.co.kr/image/play*.***
NA068 ww*.hahatv.co.kr/include/pageCountLogProc.asp?pc*.***
NA069 ww*.hahatv.co.kr/include/pageCountLogProc.asp?pcNO=*.***
NA070 ww*.hahatv.co.kr/main/main*.***
NA071 ww*.hahatv.co.kr/main/movie.asp?mno=*.***
NA072 ww*.hahatv.co.kr/main/view.asp?page=&searchKey=&searchWord=&mno**.***
NA073 ww*.pcscan.kr/flash_addon/flashrun/install_powerad*.***
NA074 ww*.pcscan.kr/flash_addon/flashrun/smart_window*.***
NA075 ww*.youtube.com/verify_age?next_url=http%3Aww*.youtube.com/wa**.***
NA076 ww*.youtube.com/watch?v=-NvZGx2*.***
----------------------------------------------------------------------
Deleted Files : 35
Remove Service : 1
Remove Uninstall Entry : 3
Remove Startup Entry : 2
Remove Browser Helper Object : 3
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
[02-HKLMREG]**Window Smart
[02-HKLMREG]**hahatv
[03-BHOCLSD]**{439E8634-0031-4D0C-BAB9-77E89E3C0F58}
[03-BHOCLSD]**{72CEEE43-C350-4932-B3DC-B6201F01EFCB}
[03-BHOCLSD]**{D815AB8A-E840-4054-B37D-943893116452}
[05-SERVICE]**efinderservice
----------------------------------------------------------------------
Total Processing Time : 73ms
----------------------------------------------------------------------

신고



요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2011.10.07 07:03 ] Posted by windowexe.com , 프로그램분석

댓글을 달아 주세요

  1. windowexe.com - 2012.02.02 16:35 신고 댓글주소 수정/삭제 댓글쓰기

    USADD WinSCardwow.exe -/- C:\Windows\WinSCardwow.exe
    USADD mprdimwow.exe -/- C:\Windows\mprdimwow.exe
    USADD NlsLexicons0816wow.exe -/- C:\Windows\NlsLexicons0816wow.exe
    USADD raschapwow.exe -/- C:\Windows\raschapwow.exe
    USADD mtxlegihwow.exe -/- C:\Windows\mtxlegihwow.exe
    USADD qcapwow.exe -/- C:\Windows\qcapwow.exe
    USADD mimefiltwow.exe -/- C:\Windows\mimefiltwow.exe
    USADD potswow.exe -/- C:\Windows\potswow.exe
    USADD WMVDECODwow.exe -/- C:\Windows\WMVDECODwow.exe
    USADD XPSSHHDRwow.exe -/- C:\Windows\XPSSHHDRwow.exe
    USADD mlangwow.exe -/- C:\Windows\mlangwow.exe
    USADD ISUSPM Startup -/- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\isuspm.exe -startup
    USADD limewire plus+ -/- C:\Program Files (x86)\Limewire Plus+\limewire.exe -h
    USADD lime pro -/- C:\Program Files (x86)\Lime PRO\LimePro.exe -h
    USADD msnmsgr -/- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe /background
    FNADD msnmsgr.exe--/--C:\Program Files (x86)\Windows Live\Messenger--/--Windows Live Messenger--/--15.4.3538.0513--/--Microsoft Corporation--/--Windows Live Messenger--/----/--© Microsoft Corporation. All rights reserved.--/--3a8e5a6763024d6a15a85069ba82f2d1
    LSADD Adobe Reader Speed Launcher -/- C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe
    FNADD Reader_sl.exe--/--C:\Program Files (x86)\Adobe\Reader 8.0\Reader--/--Adobe Acrobat SpeedLauncher--/--8.0.0.0--/--Adobe Systems Incorporated--/--Adobe Acrobat--/----/--Copyright Adobe Systems Incorporated 2004--/--e28d00ec675f5f5a5a0555e7a4523a6e
    LSADD ATICustomerCare -/- C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe
    FNADD ATICustomerCare.exe--/--C:\Program Files (x86)\ATI\ATICustomerCare--/--ATI Customer Care--/--3.0.0.0--/--Advanced Micro Devices, Inc.--/--ATI Customer Care--/----/--Copyright (c) 2007, Advanced Micro Devices, Inc.--/--9b5e7eff0485f39a9663314667d97049
    LSADD tsnpstd3 -/- C:\Windows\tsnpstd3.exe
    FNADD tsnpstd3.exe--/--C:\Windows--/--tsnp2std Microsoft --/--1, 1, 3, 8--/--SONIX--/--tsnp2std --/--Sonix TrayIcon--/--Copyright (C) 2005--/--58ba3e9dd4667b181eee1fbe6dc4fcea
    LSADD HP Software Update -/- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
    FNADD HPWuSchd2.exe--/--C:\Program Files (x86)\HP\HP Software Update--/--hpwuSchd Application--/--80, 1, 0, 0--/--Hewlett-Packard--/-- hpwuSchd Application--/----/--Copyright (C) Hewlett-Packard 2007--/--21293443961a4e2597453ee7a9347f22
    LSADD iTunesHelper -/- C:\Program Files (x86)\iTunes\iTunesHelper.exe
    FNADD iTunesHelper.exe--/--C:\Program Files (x86)\iTunes--/--iTunesHelper Module--/--8.0.0.35--/--Apple Inc.--/--iTunes--/----/--© 2003-2008 Apple Inc. All Rights Reserved.--/--a7fa648719063b234a434a089fc0f49d
    LSADD SunJavaUpdateSched -/- C:\Program Files (x86)\Java\jre6\bin\jusched.exe
    LSADD QuickTime Task -/- C:\Program Files (x86)\QuickTime\QTTask.exe -atboottime
    FNADD QTTask.exe--/--C:\Program Files (x86)\QuickTime--/--QuickTime Task--/--7.6.9 (1680.9)--/--Apple Inc.--/--QuickTime--/----/--Copyright Apple Inc. 1989-2010--/--0aee5668eb59912f32ff245bfa72465f
    LSADD BJCFD -/- C:\Program Files (x86)\BroadJump\Client Foundation\CFD.exe
    FNADD CFD.exe--/--C:\Program Files (x86)\BroadJump\Client Foundation--/--CFD--/--2,2,1,168--/--BroadJump, Inc.--/----/--PowderKeg Build Ref:15133 Machine:PKBUILDWIN02--/--Copyright ª 1999-2003, BroadJump, Inc.--/--021e25cfae7607a411d06f2b504d2256
    LSADD winscardwow.exe -/- c:\windows\winscardwow.exe
    LSADD kbdcrwow.exe -/- c:\windows\kbdcrwow.exe
    LSADD mprdimwow.exe -/- c:\windows\mprdimwow.exe
    LSADD fwcfgwow.exe -/- c:\windows\fwcfgwow.exe
    LSADD nlslexicons0816wow.exe -/- c:\windows\nlslexicons0816wow.exe
    LSADD linkinfowow.exe -/- c:\windows\linkinfowow.exe
    LSADD raschapwow.exe -/- c:\windows\raschapwow.exe
    LSADD mtxlegihwow.exe -/- c:\windows\mtxlegihwow.exe
    LSADD qcapwow.exe -/- c:\windows\qcapwow.exe
    LSADD mimefiltwow.exe -/- c:\windows\mimefiltwow.exe
    LSADD potswow.exe -/- c:\windows\potswow.exe
    LSADD wmvdecodwow.exe -/- c:\windows\wmvdecodwow.exe
    LSADD xpsshhdrwow.exe -/- c:\windows\xpsshhdrwow.exe
    LSADD mlangwow.exe -/- c:\windows\mlangwow.exe
    LSADD AVG_TRAY -/- C:\Program Files (x86)\AVG\AVG2012\avgtray.exe

  2. windowexe.com - 2012.02.05 11:13 신고 댓글주소 수정/삭제 댓글쓰기

    CP SDS gnusmaS

    bho {5CD3E78B-42E6-4AEE-ADF7-371520EFE516} -/- MED-V Object -/- -/- -/- C:\Program Files\Microsoft Enterprise Desktop Virtualization\Manager\KidaroBHO.dll
    service PfOuService -/- PRIFIA Driver Option UI Manager -/- Auto/Running -/- -/- C:\windows\system32\PFOUSVR.EXE
    service PcdrmSvc -/- PcdrmSvc -/- Auto/Running -/- -/- C:\windows\pcdrm\pcdrmsvc.exe
    service MEDVService -/- MEDV Service -/- Disabled/Stopped -/- -/- C:\Program Files\Microsoft Enterprise Desktop Virtualization\Manager\MEDVService.exe



티스토리 툴바