프로그램분석

[starfree PageActiveFormX] Install log : 73ms / 2012-09-09

프로세스 천국 2012. 9. 9. 16:01

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 1,023.55 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2012-09-09
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\kotechprotect\kotechprotect_setup_01.exe
DF001 C:\Program Files (x86)\NAT Service\natsvc.exe
DF002 C:\Program Files (x86)\NAT Service\upsvc.exe
DF003 C:\Program Files (x86)\saveboan\saveboan_setup_03.exe
DF004 C:\Program Files (x86)\sidematch\sidematch_setup_03.exe
DF005 C:\Program Files (x86)\브레인서버\BundelPack_Setup.exe
DF006 C:\Program Files (x86)\브레인서버\브레인서버바로가기.exe
DF007 C:\Program Files\saveboan\FreeApp.exe
DF008 C:\Program Files\saveboan\saveboan.exe
DF009 C:\Program Files\saveboan\saveboan_up.exe
DF010 C:\Program Files\sidematch\FreeApp.exe
DF011 C:\Program Files\sidematch\SideBand.dll
DF012 C:\Program Files\sidematch\sidematch.exe
DF013 C:\Program Files\sidematch\SideMatch_v3.dll
DF014 C:\Program Files\starfree\nat.dll
DF015 C:\Program Files\starfree\starfree.exe
DF016 C:\Program Files\starfree\svc_setup.exe
DF017 C:\Program Files\starlib\starlib.exe
DF018 C:\Program Files\starlib\starlib1161\BNUpdate.exe
DF019 C:\Program Files\starlib\starlib1161\Broodwar.exe
DF020 C:\Program Files\starlib\starlib1161\EditLocal.dll
DF021 C:\Program Files\starlib\starlib1161\install.exe
DF022 C:\Program Files\starlib\starlib1161\install2.exe
DF023 C:\Program Files\starlib\starlib1161\Local.dll
DF024 C:\Program Files\starlib\starlib1161\Riched20.dll
DF025 C:\Program Files\starlib\starlib1161\Smackw32.dll
DF026 C:\Program Files\starlib\starlib1161\StarCraft.exe
DF027 C:\Program Files\starlib\starlib1161\StarCraft.exe.lnk
DF028 C:\Program Files\starlib\starlib1161\staredit.exe
DF029 C:\Program Files\starlib\starlib1161\storm.dll
DF030 C:\Program Files\starlib\starlib1161\시디키 바꾸기.exe
DF031 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\saveboan\SaveBoan.lnk
DF032 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\브레인서버\브레인서버 제거.lnk
DF033 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\브레인서버\브레인서버.lnk
DF034 C:\starlib1161.exe
DF035 C:\Users\Administrator\AppData\Local\EasyPop\install.exe
DF036 C:\Users\Public\Desktop\브레인서버.lnk
DF037 C:\Users\Public\Documentseasypop.exe
DF038 C:\Users\Public\Documentskotechprotect.exe
DF039 C:\Windows\Downloaded Program Files\CONFLICT.1\starfree.dll
----------------------------------------------------------------------
SC040 NATService -/- NATService -/- - -/-  -/- C:\Program Files (x86)\NAT Service\natsvc.exe
----------------------------------------------------------------------
----------------------------------------------------------------------
US041 saveboan -/- C:\Program Files\saveboan\saveboan_up.exe
US042 starlib -/- C:\Program Files\starlib\starlib.exe
LS043 EasyPop -/- C:\Users\Administrator\AppData\Local\EasyPop\EasyPop.exe
----------------------------------------------------------------------
BH044 SideMatch Class -/- C:\PROGRA~1\SIDEMA~1\SIDEMA~1.DLL -/- {87F960CE-F106-4AE2-A395-33F819275B6F}
BH045 WinMgr -/- C:\Users\Administrator\AppData\Local\EasyPop\WinMgr.dll -/- {C94FF62F-10A4-4B78-A36C-E46934BDC8F5}
EXADD PageActiveFormX Control -/- C:\Windows\DOWNLO~1\CONFLICT.1\starfree.dll -/- {AF1F1FE2-7AB0-4FF1-AADB-0DFC8843F874}
EXADD WinMgr -/- C:\Users\Administrator\AppData\Local\EasyPop\WinMgr.dll -/- {C94FF62F-10A4-4B78-A36C-E46934BDC8F5}
----------------------------------------------------------------------
X046 {AF1F1FE2-7AB0-4FF1-AADB-0DFC8843F874} - PageActiveFormX Control - hxxp://starfree.co.kr/activex/starfree.cab
----------------------------------------------------------------------
NA001 119.70.227.141/brainserver*.***
NA002 applog.addwing.kr/app/appOptionRequest.php?code=MJSRtWqotw3990C**.***
NA003 applog.addwing.kr/app/appOptionRequest.php?code=PCamJe7455FP702**.***
NA004 applog.addwing.kr/app/appStateLog.php?code=0BZ3V5250c4950i5550u**.***
NA005 applog.addwing.kr/app/appStateLog.php?code=DU2sqvJv1260mtbE1188**.***
NA006 conf3.kgridhub.com:1120/neogrid/myconfig*.***
NA007 counter.side-match.com/analysis/ins.php?uq={07E2727E-5D57-4F3C-**.***
NA008 counter.starfree.co.kr/analysis/ins.php?uq={666781BD-88DC-41E8-**.***
NA009 download.addwing.kr/app/keywordList.php?data_type=keywordListGZ**.***
NA010 download.addwing.kr/app/keywordList.php?data_type=keywordListGZ**.***
NA011 m2.kgrid.co.kr:1120/neogrid/myip*.***
NA012 saveboan.com/app/inst_nor.php?pid=saveboan_03&GUID={06DA0DA7-C1**.***
NA013 starcraft.naver.com.cafe24-internet.explorer.tiekcfeigld39kdkdh**.***
NA014 starfree.co.kr/activex/install_EasyPop_itreesps*.***
NA015 starfree.co.kr/activex/kotechprotect_Setup_silent_01*.***
NA016 starfree.co.kr/activex/license.*.***
NA017 starfree.co.kr/activex/nat*.***
NA018 starfree.co.kr/activex/starfree*.***
NA019 starfree.co.kr/activex/starfree*.***
NA020 starfree.co.kr/activex/svc_setup*.***
NA021 starfree.co.kr/css/style*.***
NA022 starfree.co.kr/favicon*.***
NA023 starfree.co.kr/gnu/js/commo*.***
NA024 starfree.co.kr/gnu/js/jquery-1.4.2.mi*.***
NA025 starfree.co.kr/gnu/js/wres*.***
NA026 starfree.co.kr/gnu/style*.***
NA027 starfree.co.kr/html/main/index*.***
NA028 starfree.co.kr/img/active01*.***
NA029 starfree.co.kr/img/active01*.***
NA030 starfree.co.kr/img/bg*.***
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 40
Remove Service : 1
Remove Startup Entry : 3
Remove Browser Helper Object : 2
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-09-09
[01-HKCUREG]**saveboan
[01-HKCUREG]**starlib
[02-HKLMREG]**EasyPop
[03-BHOCLSD]**{87F960CE-F106-4AE2-A395-33F819275B6F}
[03-BHOCLSD]**{C94FF62F-10A4-4B78-A36C-E46934BDC8F5}
[05-SERVICE]**NATService
----------------------------------------------------------------------
Total Processing Time : 73ms
----------------------------------------------------------------------