프로그램분석

Code : cbAOlOQeZ6AuHRMj+avH5A==

프로세스 천국 2013. 3. 24. 09:32

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i3 CPU       M 380  @ 2.53GHz / 1,023.55 MB
Intel64 Family 6 Model 37 Stepping 5
Date : 2013-03-24
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
DF001 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\APNSetup.exe
DF002 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\FF3\Passport.dll
DF003 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll
DF004 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ServiceLocator.exe
DF005 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\SO.dll
DF006 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\toolbar.dll
DF007 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Toolbar.exe
DF008 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ToolbarPS.dll
DF009 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\UpdateManager.exe
DF010 C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
DF011 C:\Program Files (x86)\Hotspot Shield\bin\af_proxy.dll
DF012 C:\Program Files (x86)\Hotspot Shield\bin\af_proxy_cmd.exe
DF013 C:\Program Files (x86)\Hotspot Shield\bin\cfghlp.dll
DF014 C:\Program Files (x86)\Hotspot Shield\bin\fbw.exe
DF015 C:\Program Files (x86)\Hotspot Shield\bin\FBWMgr.exe
DF016 C:\Program Files (x86)\Hotspot Shield\bin\hssfixme.exe
DF017 C:\Program Files (x86)\Hotspot Shield\bin\hssinst.dll
DF018 C:\Program Files (x86)\Hotspot Shield\bin\hssinst64.dll
DF019 C:\Program Files (x86)\Hotspot Shield\bin\HssInstaller.exe
DF020 C:\Program Files (x86)\Hotspot Shield\bin\HssInstaller64.exe
DF021 C:\Program Files (x86)\Hotspot Shield\bin\HSSTrayService.exe
DF022 C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
DF023 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-ara.dll
DF024 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-bur.dll
DF025 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-chi.dll
DF026 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-eng.dll
DF027 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-fre.dll
DF028 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-ger.dll
DF029 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-jpn.dll
DF030 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-per.dll
DF031 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-rus.dll
DF032 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-spa.dll
DF033 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-tur.dll
DF034 C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-vie.dll
DF035 C:\Program Files (x86)\Hotspot Shield\bin\libeay32.dll
DF036 C:\Program Files (x86)\Hotspot Shield\bin\libpkcs11-helper-1.dll
DF037 C:\Program Files (x86)\Hotspot Shield\bin\libssl32.dll
DF038 C:\Program Files (x86)\Hotspot Shield\bin\openvpn.exe
DF039 C:\Program Files (x86)\Hotspot Shield\bin\openvpnas.exe
DF040 C:\Program Files (x86)\Hotspot Shield\bin\openvpntray.exe
DF041 C:\Program Files (x86)\Hotspot Shield\bin\tapinstall.exe
DF042 C:\Program Files (x86)\Hotspot Shield\bin\vistahlp.dll
DF043 C:\Program Files (x86)\Hotspot Shield\bin\wddll.dll
DF044 C:\Program Files (x86)\Hotspot Shield\bin\zlib1.dll
DF045 C:\Program Files (x86)\Hotspot Shield\driver\taphss6.sys
DF046 C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE.dll
DF047 C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll
DF048 C:\Program Files (x86)\Hotspot Shield\HssWPR\hssdrv6.sys
DF049 C:\Program Files (x86)\Hotspot Shield\HssWPR\hssinst.dll
DF050 C:\Program Files (x86)\Hotspot Shield\HssWPR\hssinst64.dll
DF051 C:\Program Files (x86)\Hotspot Shield\HssWPR\HssInstaller64.exe
DF052 C:\Program Files (x86)\Hotspot Shield\HssWPR\HssSrv.exe
DF053 C:\Program Files (x86)\Hotspot Shield\Uninstall.exe
DF054 C:\Program Files (x86)\WinZip Registry Optimizer\CleanSchedule.exe
DF055 C:\Program Files (x86)\WinZip Registry Optimizer\isxdl.dll
DF056 C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.dll
DF057 C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.exe
DF058 C:\Program Files (x86)\WinZip Registry Optimizer\WROUninstall.exe
DF059 C:\Program Files (x86)\WinZip Registry Optimizer\xmllite.dll
DF060 C:\ProgramData\APN\APN-Stub\FF3\APNIC.dll
DF061 C:\ProgramData\APN\APN-Stub\FF3\APNSetup.exe
DF062 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\{PartnerID}\Passport.dll
DF063 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\apnmcp.exe
DF064 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\searchhook.dll
DF065 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\ServiceLocator.exe
DF066 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\SO.dll
DF067 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\toolbar.dll
DF068 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\Toolbar.exe
DF069 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\ToolbarPS.dll
DF070 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\UpdateManager.exe
DF071 C:\ProgramData\APN\APN-Stub\FF3\program files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
DF072 C:\Users\Administrator\AppData\Local\Temp\nsh50EA.tmp\1\wddll.dll
DF073 C:\Users\Administrator\AppData\Roaming\Hotspot Shield\report\af_proxy.dll
DF074 C:\Users\Administrator\AppData\Roaming\Hotspot Shield\report\af_proxy_cmd.exe
DF075 C:\Users\Administrator\AppData\Roaming\Hotspot Shield\report\zlib1.dll
DF076 C:\Users\Administrator\Desktop\HSS-2-87-install-plain-504-plain[1].exe
DF077 C:\Users\Administrator\Desktop\setup[1].exe
DF078 C:\Windows\System32\drivers\hssdrv6.sys
DF079 C:\Windows\System32\drivers\taphss6.sys
DF080 C:\Windows\System32\DriverStore\FileRepository\nethss6.inf_amd64_neutral_81e60bd6c02c2dbb\hssdrv6.sys
DF081 C:\Windows\System32\DriverStore\FileRepository\taphss6.inf_amd64_neutral_59612688cfbacefc\taphss6.sys
DF082 C:\Windows\System32\DriverStore\Temp\{34cba7c9-14ad-2dbf-3394-d52f08b62344}\hssdrv6.sys
DF083 C:\Windows\System32\DriverStore\Temp\{790a2fac-b071-630d-cf4b-a275a3db5a5b}\taphss6.sys
DF084 C:\Windows\System32\roboot64.exe
----------------------------------------------------------------------
SC085 HssWd -/- Hotspot Shield Monitoring Service -/- - -/-  -/- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
SC086 HssSrv -/- Hotspot Shield Routing Service -/- - -/-  -/- C:\Program Files (x86)\Hotspot Shield\HssWPR\hsssrv.exe
SC087 HssTrayService -/- Hotspot Shield Tray Service -/- - -/-  -/- C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE
SC088 hshld -/- Hotspot Shield Service -/- - -/-  -/- C:\Program Files (x86)\Hotspot Shield\bin\openvpnas.exe
SC089 APNMCP -/- Ask Update Service -/- - -/-  -/- "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe"
----------------------------------------------------------------------
UN090 FormatFactory 3.0.1 -/- Free Time -/- FormatFactory -/- hxxp://www.pcfreetime.com -/- -
UN091 Hotspot Shield 2.87 -/- AnchorFree Inc. -/- HotspotShield -/- - -/- -
UN092 WinZip Registry Optimizer -/- WinZip International LLC -/- WinZip Registry Optimizer_is1 -/- hxxp://www.winzip.com -/- hxxp://www.winzip.com
UN093 Ask Toolbar -/- Ask Partner Network -/- {46463300-6A76-A76A-76A7-A758B70B0701} -/-  -/- hxxp://about.ask.com/en/docs/about/index.shtml
TS094 Registry Optimizer
TS095 Registry Optimizer_DEFAULT
TS096 Registry Optimizer_UPDATES
----------------------------------------------------------------------
LS097 ApnTBMon -/- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
----------------------------------------------------------------------
BH098 Hotspot Shield Class -/- C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll -/- {F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
BH099 Ask Toolbar -/- "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\FF3\Passport.dll" -/- {46463300-6A76-A76A-76A7-7A786E7484D7}
BH100 Hotspot Shield Class -/- C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE.dll -/- {F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_1_102.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash11g.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
----------------------------------------------------------------------
----------------------------------------------------------------------
TB101 Ask Toolbar -/- "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\FF3\Passport.dll" -/- {46463300-6A76-A76A-76A7-7A786E7484D7}
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 85
Remove Service : 5
Remove Uninstall Entry : 4
Remove Startup Entry : 1
Remove Browser Helper Object : 3
Remove Toolbar : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2013-03-24
[02-HKLMREG]**ApnTBMon
[03-BHOCLSD]**{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
[03-BHOCLSD]**{46463300-6A76-A76A-76A7-7A786E7484D7}
[03-BHOCLSD]**{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
[04-TOOLBAR]**{46463300-6A76-A76A-76A7-7A786E7484D7}
[05-SERVICE]**HssWd
[05-SERVICE]**HssSrv
[05-SERVICE]**HssTrayService
[05-SERVICE]**hshld
[05-SERVICE]**APNMCP
----------------------------------------------------------------------
Total Processing Time : 188ms
----------------------------------------------------------------------