프로그램분석

Code : PkW3JAg1tF0L6mSZ7hZsgVs1RoAvtdJc4aDqhYBna6E=

프로세스 천국 2013. 6. 1. 18:57

Code : FJTYK4YYDXHJlO1Y495Xgho9KUc3tbllMJ+MGpVEUUM=
Code : xrUMyD9PZXpBX5SBcPZSmnXoylC7GoWsF/ZYmpEe9S0=
Code : pGhsLiFZu/YWHVwIxGg7iV9ECfYrTPYx
Code : p+/ZYOpUU4qdguN38X588n1TD36XrHdP


----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 2,047.49 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2013-06-01
----------------------------------------------------------------------
SC311 IMFservice -/- IMF Service -/- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe -/- IObit Malware Fighter Service
SC312 Application Updater -/- Application Updater -/- "C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe" -/- Automatically downloads and installs application updates.
SC313 PanService -/- PandoraService -/- C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe -/- This is a description for Pandora.TV Service Application.
SC314 Internet Security ISvrAuthService -/- Internet Security ISafesvr Authorization Service -/- C:\Program Files (x86)\ISafesvc\isvsrv.exe -/- Authentication service for starting and accessing ISafeplus service
SC315 NitroReaderDriverReadSpool3 -/- NitroPDFReaderDriverCreatorReadSpool3 -/- "C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe" -/- Nitro Reader Driver Read Spool 3
----------------------------------------------------------------------
UN316 Nitro Reader 3 -/- Nitro -/- {4436B9BD-CA66-4D69-9091-2D2EB62F09AD} -/- MsiExec.exe /X{4436B9BD-CA66-4D69-9091-2D2EB62F09AD} -/- nitroreader.zendesk.com/forums -/- nitroreader.zendesk.com/forums
UN317 Pandora Service -/- Pandora.TV -/- 4F6D5E84-5826-4394-9F40-3A9A19165651_is1 -/- C:\Program Files (x86)\PANDORA.TV\PanService\unins000.exe -/- hxxp://ww*.pandora.tv -/- hxxp://ww*.pandora.tv
UN318 FileDoumi -/- 네오UX -/- FileDoumi -/- C:\Users\Administrator\AppData\Roaming\FileDoumi\FileDoumiUninstall.exe -/- hxxp://ww*.FileDoumi.com/
UN319 Glary Utilities 2.56.0.1822 -/- Glarysoft Ltd -/- Glary Utilities_is1 -/- C:\Program Files (x86)\Glary Utilities\unins000.exe -/- hxxp://ww*.glaryutilities.com -/- hxxp://ww*.glaryutilities.com
UN320 GOM Player -/- Gretech Corporation -/- GOM Player -/- C:\Program Files (x86)\GRETECH\GomPlayer\Uninstall.exe -/- hxxp://player.gomlab.com/eng/support/supportcenter/ -/- hxxp://player.gomlab.com/eng/guide/
UN321 Internet Download Manager -/- Tonec Inc. -/- Internet Download Manager -/- C:\Program Files (x86)\Internet Download Manager\Uninstall.exe -/- hxxp://ww*.internetdownloadmanager.com -/- hxxp://ww*.internetdownloadmanager.com/contact_us.html
UN322 IObit Malware Fighter -/- IObit -/- IObit Malware Fighter_is1 -/- C:\Program Files (x86)\IObit\IObit Malware Fighter\unins000.exe -/- hxxp://ww*.IObit.com/ -/- hxxp://ww*.IObit.com/
UN323 IrfanView (remove only) -/- Irfan Skiljan -/- IrfanView -/- C:\Program Files (x86)\IrfanView\iv_uninstall.exe
UN324 Internet Explorer ISafesvc -/- Copyright (C) iSafePlus. All Right Reserved. -/- iSafePlus_is1 -/- C:\Program Files (x86)\ISafesvc\isvuninst.exe -/- iSafePlus -/- iSafePlus
UN325 OpentabUninstall -/- Opentab -/- C:\Users\Administrator\AppData\Roaming\Opentab\Opentabuninstall.exe
UN326 PrimoPDF -- brought to you by Nitro PDF Software -/- Nitro PDF Software -/- PrimoPDF -/- C:\Program Files (x86)\Nitro PDF\PrimoPDF\uninstaller.exe -/- hxxp://ww*.primopdf.com -/- hxxp://ww*.primopdf.com
UN327 Riptunes - YouTube to MP3 Converter -/- RipTunes -/- Riptunes - YouTube to MP3 Converter -/- C:\Program Files (x86)\RipTunes\uninst.exe -/- hxxp://ww*.getriptunes.com/
UN328 Xecure speller Application -/- Speller -/- C:\Program Files (x86)\Speller\SpellerUninst.exe
UN329 The KMPlayer (remove only) -/- KMP Media co., Ltd -/- The KMPlayer -/- C:\Program Files (x86)\The KMPlayer\uninstall.exe -/- hxxp://ww*.kmplayer.com
UN330 VirtualDJ Home FREE -/- Atomix Productions -/- {A6AC699F-8315-40CA-8F70-E917494978AB} -/- MsiExec.exe /I{A6AC699F-8315-40CA-8F70-E917494978AB} -/- hxxp://ww*.virtualdj.com/ -/- hxxp://ww*.virtualdj.com/contact
UN331 IObit Apps Toolbar v7.1 -/- Spigot, Inc. -/- {EA0F950C-D926-4366-A60C-9E7B71DB1FF2} -/- MsiExec.exe /X{EA0F950C-D926-4366-A60C-9E7B71DB1FF2}
UN332 VirtualDJ Home FREE -/- F996CA6A5138AC04F8079E71949487BA
----------------------------------------------------------------------
TS333 GlaryInitialize -/- C:\Program Files (x86)\Glary Utilities\initialize.exe  -/- Glary Utilities 초기화
TS334 isvex -/- "C:\Program Files (x86)\ISafesvc\isvex.exe"  -/- N/A
----------------------------------------------------------------------
US335 IDMan -/- C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
US336 Opentab -/- C:\Users\Administrator\AppData\Roaming\Opentab\Opentab.exe
US337 Opentabhper -/- C:\Users\Administrator\AppData\Roaming\Opentab\Opentabhper.exe
US338 Opentabup -/- c:\users\administrator\appdata\roaming\opentab\opentabup.exe
US339 FDoumiStart -/- C:\Users\Administrator\AppData\Roaming\FileDoumi\FileDoumiUpgrade.exe
US340 FDoumiup2Start -/- c:\users\administrator\appdata\roaming\filedoumi\filedoumiuphp.exe
US341 Configuring -/- rundll32.exe C:\Users\ADMINI~1\AppData\Local\Temp\3223355.txt,M
LS343 SearchSettings -/- C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
LS344 IObit Malware Fighter -/- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe /autostart
LS345 Speller -/- C:\Program Files (x86)\Speller\SpellerSvc.exe
----------------------------------------------------------------------
BH346 IDM integration (IDMIEHlprObj Class) -/- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
BH347 IDM integration (IDMIEHlprObj Class) -/- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
BH348 IObit Apps Toolbar -/- C:\Program Files (x86)\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll -/- {03EB0E9C-7A91-4381-A220-9B52B641CDB1}
BH349 오픈탭 -/- C:\Users\Administrator\AppData\Roaming\OpenTab\OpenTab.dll -/- {DA742A73-CFA7-4DE2-BF28-1FC51CF214BC}
EXADD IDM integration (IDMIEHlprObj Class) -/- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_7_700_169.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD IDM integration (IDMIEHlprObj Class) -/- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
EXADD IObit Apps Toolbar -/- C:\Program Files (x86)\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll -/- {03EB0E9C-7A91-4381-A220-9B52B641CDB1}
EXADD 스펠러 -/- C:\Program Files (x86)\Speller\SpellerCtrl.dll -/- {41ED1FD7-8C37-4806-AF9E-D5238A30E56F}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_7_700_169.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD 오픈탭 -/- C:\Users\Administrator\AppData\Roaming\OpenTab\OpenTab.dll -/- {DA742A73-CFA7-4DE2-BF28-1FC51CF214BC}
----------------------------------------------------------------------
TB350 IObit Apps Toolbar -/- C:\Program Files (x86)\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll -/- {03EB0E9C-7A91-4381-A220-9B52B641CDB1}
TB351 스펠러 -/- C:\Program Files (x86)\Speller\SpellerCtrl.dll -/- {41ED1FD7-8C37-4806-AF9E-D5238A30E56F}
----------------------------------------------------------------------
GS352 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\KMPlayer.exe.lnk
----------------------------------------------------------------------
Deleted Files : 311
Remove Service : 5
Remove Uninstall Entry : 17
Remove Startup Entry : 11
Remove Browser Helper Object : 4
Remove Toolbar : 2
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2013-06-01
[01-HKCUREG]**Configuring
[01-HKCUREG]**FDoumiStart
[01-HKCUREG]**FDoumiup2Start
[01-HKCUREG]**IDMan
[01-HKCUREG]**Opentab
[01-HKCUREG]**Opentabhper
[01-HKCUREG]**Opentabup
[02-HKLMREG]**IObit Malware Fighter
[02-HKLMREG]**SearchSettings
[02-HKLMREG]**Speller
[03-BHOCLSD]**{0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**{0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
[03-BHOCLSD]**{DA742A73-CFA7-4DE2-BF28-1FC51CF214BC}
[04-TOOLBAR]**{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
[04-TOOLBAR]**{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}
[05-SERVICE]**Application Updater
[05-SERVICE]**IMFservice
[05-SERVICE]**Internet Security ISvrAuthService
[05-SERVICE]**NitroReaderDriverReadSpool3
[05-SERVICE]**PanService
[06-TASKLST]**GlaryInitialize
[06-TASKLST]**isvex
----------------------------------------------------------------------
Total Processing Time : 1046ms
----------------------------------------------------------------------