프로그램분석

[utilkorea] Install log : 91ms / 2012-10-23

프로세스 천국 2012. 10. 23. 00:26

Code : U7E9BA4mEkcSUdH5cOF9/KICF0vfC0SPZjmRbb65Hn28k5nR0masZB/lF8nN+5zUU9Q0z5iIyxwOX8XJNtWFKh83CPk9XJga

 

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 1,023.55 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2012-10-23
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\addenbar\addenbar.dll
DF001 C:\Program Files (x86)\addenbar\addenbaragent.exe
DF002 C:\Program Files (x86)\addenbar\addenoptagent.exe
DF003 C:\Program Files (x86)\addenbar\addenov.dll
DF004 C:\Program Files (x86)\addenbar\uninst_dg.exe
DF005 C:\Program Files (x86)\AdMatching\AdMatching.exe
DF006 C:\Program Files (x86)\AdMatching\admsys.exe
DF007 C:\Program Files (x86)\bestvaccine\bestvaccine.exe
DF008 C:\Program Files (x86)\bestvaccine\bestvaccined.dll
DF009 C:\Program Files (x86)\bestvaccine\bestvaccinestart.exe
DF010 C:\Program Files (x86)\bestvaccine\bestvaccineu.exe
DF011 C:\Program Files (x86)\bestvaccine\EGutil.dll
DF012 C:\Program Files (x86)\bestvaccine\uninst_bestvaccine.exe
DF013 C:\Program Files (x86)\controlspeed\controlspeed.exe
DF014 C:\Program Files (x86)\controlspeed\controlspeedEngine.exe
DF015 C:\Program Files (x86)\controlspeed\controlspeedse.exe
DF016 C:\Program Files (x86)\controlspeed\controlspeedU.exe
DF017 C:\Program Files (x86)\controlspeed\uninst_controlspeed.exe
DF018 C:\Program Files (x86)\FileHam.com\FileHamBrowser\Cleanup.exe
DF019 C:\Program Files (x86)\FileHam.com\FileHamBrowser\파일함탐색기.exe
DF020 C:\Program Files (x86)\FileHam.com\Updater\FileHamUpdater.exe
DF021 C:\Program Files (x86)\internetdownload\internetdownload.exe
DF022 C:\Program Files (x86)\internetdownload\internetdownloadlauncher.dll
DF023 C:\Program Files (x86)\internetdownload\uninst_internetdownload.exe
DF024 C:\Program Files (x86)\Keyword Find\keywordfind.dll
DF025 C:\Program Files (x86)\Keyword Find\keywordfindagent.exe
DF026 C:\Program Files (x86)\Keyword Find\keywordfo.dll
DF027 C:\Program Files (x86)\Micropop\Micropop.exe
DF028 C:\Program Files (x86)\Micropop\MicropopU.exe
DF029 C:\Program Files (x86)\Micropop\MPopService.exe
DF030 C:\Program Files (x86)\smartmode\smartmode.dll
DF031 C:\Program Files (x86)\smartmode\smartmode_se.exe
DF032 C:\Program Files (x86)\smartmode\smartmodeu.exe
DF033 C:\Program Files (x86)\WinExpand_uk25\WinExpand_uk25.dll
DF034 C:\Program Files (x86)\WinExpand_uk25\WinxpendUP_uk25.exe
DF035 C:\Program Files\internetservice\internetservice-se.exe
DF036 C:\Program Files\internetservice\internetservice.exe
DF037 C:\Program Files\internetservice\internetserviceu.exe
DF038 C:\Program Files\internetservice\uninst_internetservice.exe
DF039 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\파일함\파일함 탐색기 삭제.lnk
DF040 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\파일함\파일함 탐색기.lnk
DF041 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\adInstall_ad021.exe
DF042 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\bestvaccinesetup_util.exe
DF043 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\controlspeedsetup_util.exe
DF044 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\exad013.exe
DF045 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\internetdownloadsetup_util.exe
DF046 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\internetservice_setup_util.exe
DF047 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Micropop_setup_hello.exe
DF048 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\setup_kf011_m.exe
DF049 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\setup_nid002.exe
DF050 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\ShortcutMaker.exe
DF051 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\smartmode_setup_top2.exe
DF052 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\WinExpandSetup_utilkorea2.exe
DF053 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\11번가 바로가기.lnk
DF054 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\반값할인 하프통 바로가기.lnk
DF055 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\오락실게임 바로가기.lnk
DF056 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\옥션 바로가기.lnk
DF057 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\지마켓 바로가기.lnk
DF058 C:\Users\Administrator\Desktop\11번가.lnk
DF059 C:\Users\Administrator\Desktop\FlashTweak.exe
DF060 C:\Users\Administrator\Desktop\G마켓.lnk
DF061 C:\Users\Administrator\Desktop\반값할인 하프통.lnk
DF062 C:\Users\Administrator\Desktop\오락실게임.lnk
DF063 C:\Users\Administrator\Desktop\옥션.lnk
DF064 C:\Users\Administrator\Favorites\11번가.url
DF065 C:\Users\Administrator\Favorites\G마켓.url
DF066 C:\Users\Administrator\Favorites\Links\11번가.url
DF067 C:\Users\Administrator\Favorites\Links\G마켓.url
DF068 C:\Users\Administrator\Favorites\Links\반값할인 하프통.url
DF069 C:\Users\Administrator\Favorites\Links\오락실게임.url
DF070 C:\Users\Administrator\Favorites\Links\옥션.url
DF071 C:\Users\Administrator\Favorites\반값할인 하프통.url
DF072 C:\Users\Administrator\Favorites\오락실게임.url
DF073 C:\Users\Administrator\Favorites\옥션.url
DF074 C:\Windows\System32\internetdownload_se.exe
DF075 C:\Windows\System32\internetdownloadU.exe
DF076 C:\Windows\SysWOW64\uninst_Micropop.exe
DF077 C:\Windows\SysWOW64\uninst_smartmode.exe
DF078 C:\Windows\winsetaccess.exe
DF079 C:\Windows\wuserinfodata.exe
----------------------------------------------------------------------
SC080 bestvaccine Update Service -/- bestvaccine Support Service -/- - -/-  -/- "C:\Windows\winsetaccess.exe" /update
SC081 internetserviceservice -/- Internetservice Service -/- - -/-  -/- C:\Program Files\internetservice\internetservice-se.exe
SC082 controlspeed Update Service -/- controlspeed Support Service -/- - -/-  -/- "C:\Windows\wuserinfodata.exe" /update
SC083 SmartMode Update Service -/- SmartMode Support Service -/- - -/-  -/- "C:\Program Files (x86)\smartmode\smartmode_se.exe" /service
SC084 controlspeedService -/- controlspeed Service -/- - -/-  -/- C:\Program Files (x86)\controlspeed\controlspeedse.exe
----------------------------------------------------------------------
TS085 WinExpandUpdate_uk25
----------------------------------------------------------------------
US086 keywordfindagent -/- C:\Program Files (x86)\Keyword Find\keywordfindagent.exe
US087 AdMatching -/- C:\Program Files (x86)\AdMatching\AdMatching.exe
US088 admsys -/- C:\Program Files (x86)\AdMatching\admsys.exe
US089 KeywordSearchUpdater -/- C:\Program Files (x86)\Keyword Find\keywordfindagent.exe
US090 addenbaragent -/- C:\Program Files (x86)\addenbar\addenbaragent.exe
US091 addenagent -/- C:\Program Files (x86)\addenbar\addenoptagent.exe
LS092 FileHamBrowser -/- C:\Program Files (x86)\Fileham.com\FileHamBrowser\파일함탐색기.exe menu
LS093 bestvaccine main -/- C:\Program Files (x86)\bestvaccine\bestvaccineu.exe /8L
LS094 bestvaccinestart.exe -/- C:\Program Files (x86)\bestvaccine\bestvaccinestart.exe
LS095 AdMatching -/- C:\Program Files (x86)\AdMatching\AdMatching.exe
LS096 admsys -/- C:\Program Files (x86)\AdMatching\admsys.exe
----------------------------------------------------------------------
BH097 WinExpandB Class -/- C:\Program Files (x86)\WinExpand_uk25\WinExpand_uk25.dll -/- {000000A3-C8CE-4AE1-B902-BFA335A2E66A}
BH098 keywordfind Class -/- C:\Program Files (x86)\Keyword Find\keywordfind.dll -/- {62283419-4E2B-435E-B408-483F55D0FEC5}
BH099 addenbar Class -/- C:\Program Files (x86)\addenbar\addenbar.dll -/- {9A3D68DC-5557-46E0-BD7B-BF64B561BD96}
BH100 add_en_ov -/- c:\PROGRA~2\addenbar\addenov.dll -/- {CC01FC6C-A536-4DF4-8C3B-B4ABDBAD7F99}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_1_102.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD WinExpandB Class -/- C:\Program Files (x86)\WinExpand_uk25\WinExpand_uk25.dll -/- {000000A3-C8CE-4AE1-B902-BFA335A2E66A}
EXADD keywordfind Class -/- C:\Program Files (x86)\Keyword Find\keywordfind.dll -/- {62283419-4E2B-435E-B408-483F55D0FEC5}
EXADD addenbar Class -/- C:\Program Files (x86)\addenbar\addenbar.dll -/- {9A3D68DC-5557-46E0-BD7B-BF64B561BD96}
EXADD SmartMode -/- C:\Program Files (x86)\smartmode\smartmode.dll -/- {C369A98F-263F-4F76-9757-9FC320F63E26}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash11g.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
----------------------------------------------------------------------
----------------------------------------------------------------------
TB101 SmartMode -/- C:\Program Files (x86)\smartmode\smartmode.dll -/- {C369A98F-263F-4F76-9757-9FC320F63E26}
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 80
Remove Service : 5
Remove Startup Entry : 11
Remove Browser Helper Object : 4
Remove Toolbar : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-10-23
[01-HKCUREG]**keywordfindagent
[01-HKCUREG]**AdMatching
[01-HKCUREG]**admsys
[01-HKCUREG]**KeywordSearchUpdater
[01-HKCUREG]**addenbaragent
[01-HKCUREG]**addenagent
[02-HKLMREG]**FileHamBrowser
[02-HKLMREG]**bestvaccine main
[02-HKLMREG]**bestvaccinestart.exe
[02-HKLMREG]**AdMatching
[02-HKLMREG]**admsys
[03-BHOCLSD]**{000000A3-C8CE-4AE1-B902-BFA335A2E66A}
[03-BHOCLSD]**{62283419-4E2B-435E-B408-483F55D0FEC5}
[03-BHOCLSD]**{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}
[03-BHOCLSD]**{CC01FC6C-A536-4DF4-8C3B-B4ABDBAD7F99}
[04-TOOLBAR]**{C369A98F-263F-4F76-9757-9FC320F63E26}
[05-SERVICE]**bestvaccine Update Service
[05-SERVICE]**internetserviceservice
[05-SERVICE]**controlspeed Update Service
[05-SERVICE]**SmartMode Update Service
[05-SERVICE]**controlspeedService
----------------------------------------------------------------------
Total Processing Time : 91ms
----------------------------------------------------------------------