프로그램분석

[유틸바다] Install log : 171ms / 2013-03-20

프로세스 천국 2013. 3. 20. 01:15

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 1,023.55 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2013-03-20
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\barocn\barocn.exe
DF001 C:\Program Files (x86)\barocn\barosvc.exe
DF002 C:\Program Files (x86)\barocn\uninst.exe
DF003 C:\Program Files (x86)\HiSearch\HSHelper.dll
DF004 C:\Program Files (x86)\HiSearch\HSSearch.exe
DF005 C:\Program Files (x86)\HiSearch\HSSvcApp.exe
DF006 C:\Program Files (x86)\HiSearch\HSUninst.exe
DF007 C:\Program Files (x86)\HiSearch\hswhk.dll
DF008 C:\Program Files (x86)\keywordpop\keywordpop.exe
DF009 C:\Program Files (x86)\NetMWin\NetMWin.exe
DF010 C:\Program Files (x86)\NetMWin\NMHelper.dll
DF011 C:\Program Files (x86)\NetMWin\NMUnins.exe
DF012 C:\Program Files (x86)\smartw\SmartWC.exe
DF013 C:\Program Files (x86)\smartw\SmartWD.exe
DF014 C:\Program Files (x86)\smartw\SmartWS.exe
DF015 C:\Program Files (x86)\smartw\SQLiteEncrypt.dll
DF016 C:\Program Files (x86)\windowfaster\uninst_windowfaster.exe
DF017 C:\Program Files (x86)\windowfaster\windowfaster.exe
DF018 C:\Program Files (x86)\windowfaster\windowfasterEngine.exe
DF019 C:\Program Files (x86)\windowfaster\windowfasterse.exe
DF020 C:\Program Files (x86)\windowfaster\windowfasterU.exe
DF021 C:\Program Files (x86)\WinsManager\Ex7z.dll
DF022 C:\Program Files (x86)\WinsManager\uninst.exe
DF023 C:\Program Files (x86)\WinsManager\winsmex.exe
DF024 C:\Program Files (x86)\WinsManager\winsms.dll
DF025 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinsManager\WinsManager Home.url
DF026 C:\ProgramData\Microsoft\Windows\Templates\2-12185_u1210_.zip[1]_.exe
DF027 C:\ProgramData\WindowsTab\uninst.exe
DF028 C:\ProgramData\WindowsTab\windowstab.exe
DF029 C:\ProgramData\WindowsTab\windowstabup.exe
DF030 C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
DF031 C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
DF032 C:\Users\Administrator\AppData\Local\signkey\iesignkey.exe
DF033 C:\Users\Administrator\AppData\Local\signkey\signkey.exe
DF034 C:\Users\Administrator\AppData\Local\signkey\skun.exe
DF035 C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewib.dll
DF036 C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewim.dll
DF037 C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewmgr.exe
DF038 C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewup.exe
DF039 C:\Users\Administrator\AppData\Roaming\addendum_sb\uninst.exe
DF040 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\windowfaster\Homepage.url
DF041 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\windowfaster\windowfaster 삭제.lnk
DF042 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\windowfaster\windowfaster.lnk
DF043 C:\Users\Administrator\AppData\Roaming\SpeedDownload\fbdchk.exe
DF044 C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDManager.exe
DF045 C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDMgr.dll
DF046 C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDSvcMan.exe
DF047 C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDUnist.exe
DF048 C:\Users\Administrator\AppData\Roaming\SpeedDownload\SpeedGet.exe
DF049 C:\Users\Administrator\AppData\Roaming\WingGo\winggo.dll
DF050 C:\Users\Administrator\AppData\Roaming\WingGo\winggom.exe
DF051 C:\Users\Administrator\AppData\Roaming\WingGo\winggou.exe
DF052 C:\Users\Administrator\Desktop\10원경매 럭키타임.url
DF053 C:\Users\Administrator\Favorites\10원경매 럭키타임.url
DF054 C:\Users\Administrator\Favorites\Links\11번가.url
DF055 C:\Users\Administrator\Favorites\Links\옥션.url
DF056 C:\Users\Administrator\Favorites\Links\지마켓.url
DF057 C:\Users\Administrator\Favorites\메타블로그 최신이슈.lnk
DF058 C:\Windows\SysWOW64\svcwsmwin.da.exe
DF059 C:\Windows\SysWOW64\svcwsmwin.exe
DF060 C:\Windows\SysWOW64\VB6KO.DLL
DF061 C:\Windows\SysWOW64\wdrwsmsvc.da.exe
DF062 C:\Windows\SysWOW64\wdrwsmsvc.exe
DF063 C:\Windows\userinforesetupdate.exe
----------------------------------------------------------------------
SC064 barocn -/- barocn svc -/- - -/-  -/- C:\Program Files (x86)\barocn\barosvc.exe
SC065 FBDSvcman -/- FBDSvcman -/- - -/-  -/- C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDSvcMan.exe
SC066 windowfaster Update Service -/- windowfaster Support Service -/- - -/-  -/- "C:\Windows\userinforesetupdate.exe" /update
SC067 windowfasterService -/- windowfaster Service -/- - -/-  -/- C:\Program Files (x86)\windowfaster\windowfasterse.exe
SC068 Windows WinsManager Diagnostics Service -/- Windows WinsManager Diagnostics Service -/- - -/-  -/- C:\Windows\SysWOW64\wdrwsmsvc.exe
SC069 WinsManager Service -/- WinsManager Service -/- - -/-  -/- C:\Windows\SysWOW64\svcwsmwin.exe
----------------------------------------------------------------------
UN070 XocureWeb Control HiSearch -/- HiSearch -/- Adv HiSearch -/- - -/- hxxp://www.hisearch.or.kr
UN071 Addendum-nm -/- - -/- nmnew -/- - -/- -
UN072 network manager win -/- NMWin -/- nmwin -/- - -/- hxxp://www.topclick.kr
UN073 Windows SpeedDownload -/- - -/- SpeedDownload -/- - -/- -
UN074 Internet Explorer Searcher Keywordpop -/- Internet Explorer Searcher Keywordpop -/- uninstall_keywordpop.exe -/- - -/-
UN075 userinforesetupdate -/- - -/- userinforesetupdate -/- hxxp://windowfaster.co.kr -/- hxxp://windowfaster.co.kr
UN076 windowfaster -/- UCF -/- windowfaster -/- hxxp://www.windowfaster.co.kr -/- hxxp://www.windowfaster.co.kr
UN077 Windows barocon  -/- Baro, Inc. -/- Windows barocon -/- - -/- -
UN078 WinsManager -/- 제이원소프트 -/- WinsManager -/- - -/- hxxp://www.winsmanager.com
UN079 signkey -/- - -/- signkey -/- - -/- -
UN080 SmartWeb Control -/- TGSM -/- SmartWeb Control -/- hxxp://smartw.co.kr -/- -
UN081 WindowsTab Uninstall -/- www.about-tab.com -/- WindowsTab -/- hxxp://www.about-tab.com -/- -
UN082 WingGo -/- - -/- WingGo -/- - -/- -
UN083 Metablog New Issues -/- Korea Contents Network, Inc. -/- {51632293-CBB6-47bc-9244-73C44C8516A6}_is1 -/- hxxp://www.blogdanawa.co.kr/ -/- hxxp://www.blogdanawa.co.kr/
TS084 Internet Explorer Searcher Keywordpop
TS085 SWSTART
----------------------------------------------------------------------
US086 MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
US087 metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
US088 WindowsTab -/- C:\ProgramData\WindowsTab\windowstabup.exe
US089 signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
US090 WingGo -/- C:\Users\Administrator\AppData\Roaming\WingGo\winggou.exe UPDATE
US091 HiSch -/- C:\Program Files (x86)\HiSearch\HSSearch.exe
LS092 keywordpop.exe -/- C:\Program Files (x86)\keywordpop\keywordpop.exe
LS093 nmnew -/- C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewup.exe
LS094 SpeedDownload -/- C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDManager.exe
LS095 rpga -/- C:\Users\Administrator\AppData\Roaming\SpeedDownload\rpgchk.exe
----------------------------------------------------------------------
BH096 WingGo -/- C:\Users\Administrator\AppData\Roaming\WingGo\winggo.dll -/- {002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
BH097 IESMon.Mon4 -/- C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewim.dll -/- {2F40ECDC-6F7B-4CF3-B1D0-ED8845084912}
BH098 NetMCtrl Class -/- C:\Program Files (x86)\NetMWin\NMHelper.dll -/- {7760E6D4-CC93-4495-981B-5E23919D602A}
BH099 HSAdvCtrl Class -/- C:\Program Files (x86)\HiSearch\HSHelper.dll -/- {A433374B-2F44-402B-AB7E-E58B4A09DF8A}
EXADD WingGo -/- C:\Users\Administrator\AppData\Roaming\WingGo\winggo.dll -/- {002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
EXADD WingGo -/- C:\Users\Administrator\AppData\Roaming\WingGo\winggo.dll -/- {003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
EXADD IESMon.Mon4 -/- C:\Users\Administrator\AppData\Roaming\addendum_sb\nmnewim.dll -/- {2F40ECDC-6F7B-4CF3-B1D0-ED8845084912}
EXADD NetMCtrl Class -/- C:\Program Files (x86)\NetMWin\NMHelper.dll -/- {7760E6D4-CC93-4495-981B-5E23919D602A}
EXADD HSAdvCtrl Class -/- C:\Program Files (x86)\HiSearch\HSHelper.dll -/- {A433374B-2F44-402B-AB7E-E58B4A09DF8A}
EXADD  -/- C:\Users\Administrator\AppData\Roaming\SpeedDown\SDDownLoad.dll -/- {A832F633-668F-4F8A-9EA1-A6375D1C1418}
----------------------------------------------------------------------
----------------------------------------------------------------------
TB100 WingGo -/- C:\Users\Administrator\AppData\Roaming\WingGo\winggo.dll -/- {003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 64
Remove Service : 6
Remove Uninstall Entry : 14
Remove Startup Entry : 10
Remove Browser Helper Object : 4
Remove Toolbar : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2013-03-20
[01-HKCUREG]**MetablogNewIssues
[01-HKCUREG]**metablogagent
[01-HKCUREG]**WindowsTab
[01-HKCUREG]**signkey
[01-HKCUREG]**WingGo
[01-HKCUREG]**HiSch
[02-HKLMREG]**keywordpop.exe
[02-HKLMREG]**nmnew
[02-HKLMREG]**SpeedDownload
[02-HKLMREG]**rpga
[03-BHOCLSD]**{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
[03-BHOCLSD]**{2F40ECDC-6F7B-4CF3-B1D0-ED8845084912}
[03-BHOCLSD]**{7760E6D4-CC93-4495-981B-5E23919D602A}
[03-BHOCLSD]**{A433374B-2F44-402B-AB7E-E58B4A09DF8A}
[04-TOOLBAR]**{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
[05-SERVICE]**barocn
[05-SERVICE]**FBDSvcman
[05-SERVICE]**windowfaster Update Service
[05-SERVICE]**windowfasterService
[05-SERVICE]**Windows WinsManager Diagnostics Service
[05-SERVICE]**WinsManager Service
----------------------------------------------------------------------
Total Processing Time : 171ms
----------------------------------------------------------------------