프로그램분석

[Gemmir] Install log : 98ms / 2012-12-17

프로세스 천국 2012. 12. 17. 19:42

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 1,023.55 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2012-12-17
----------------------------------------------------------------------
DF000 C:\Gemmir Mame\mame32p.exe
DF001 C:\Gemmir Mame\mamep.exe
DF002 C:\Gemmir Mame\mameplib.dll
DF003 C:\Gemmir Mame\unicows.dll
DF004 C:\GEMMIR\system\BarIcon2.exe
DF005 C:\GEMMIR\system\DivXCodec.exe
DF006 C:\GEMMIR\system\gemmir_creditsms_100.exe
DF007 C:\GEMMIR\system\GemmirSupporterSetup.exe
DF008 C:\GEMMIR\system\Smartopenweb_com_102.exe
DF009 C:\Program Files (x86)\CreditSMS\CreditSMS.exe
DF010 C:\Program Files (x86)\CreditSMS\CreditSMS_c.exe
DF011 C:\Program Files (x86)\CreditSMS\CreditSMS_crm.dll
DF012 C:\Program Files (x86)\Smartopenweb\Smartopenweb.exe
DF013 C:\Program Files (x86)\Smartopenweb\Smartopenweb_c.exe
DF014 C:\Program Files (x86)\Smartopenweb\Smartopenweb_crm.dll
DF015 C:\Users\Administrator\AppData\Roaming\DivXCodec AF\DivXCodec_AF.exe
DF016 C:\Users\Administrator\AppData\Roaming\DivXCodec AF\DivXCodecCtrl_AF.exe
DF017 C:\Users\Administrator\AppData\Roaming\DivXCodec AF\DivXCodecSetup_AF.exe
DF018 C:\Users\Administrator\AppData\Roaming\DivXCodec AF\UnDivXCodec_AF.exe
DF019 C:\Users\Administrator\AppData\Roaming\Gemmir Supporter\GemmirSupporter.exe
DF020 C:\Users\Administrator\AppData\Roaming\Gemmir Supporter\GemmirSupporterh.dll
DF021 C:\Users\Administrator\Desktop\11번가.lnk
DF022 C:\Users\Administrator\Desktop\G마켓.lnk
DF023 C:\Users\Administrator\Desktop\옥션.lnk
DF024 C:\Users\Administrator\Favorites\11번가 - 고객감동 No1.1, 11번가.URL
DF025 C:\Users\Administrator\Favorites\G마켓 - 놀라움을 쇼핑하다.URL
DF026 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★고전게임★ 무료 오락실.lnk
DF027 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★무료마술★ 해법영상 공개 총 200가지 기본 마술.lnk
DF028 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★무료만화★ 일본, 칼라 만화 100% 무료.lnk
DF029 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★무료영화★ 인기 애니, 한국영화 해외영화.lnk
DF030 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★무료운세★ 궁합, 부적다운, 가입없이 사용.lnk
DF031 C:\Users\Administrator\Favorites\겜미르 공짜 서비스\겜미르 ★무료포토★ 모델, 엽기, 스타 포토.lnk
DF032 C:\Users\Administrator\Favorites\옥션 - 앞으로의 인터넷 쇼핑, 옥션.URL
DF033 C:\Users\Administrator\Favorites\최신 무료정보 사이트\24시간 최신영화 무료다운.lnk
DF034 C:\Users\Administrator\Favorites\최신 무료정보 사이트\고전게임 가입없이 무료사용.lnk
DF035 C:\Users\Administrator\Favorites\최신 무료정보 사이트\얼짱많은 무료 대화방.lnk
DF036 C:\Users\Administrator\Favorites\최신 무료정보 사이트\일본만화 100% 공짜로 보는곳.lnk
DF037 C:\Users\Administrator\Favorites\최신 무료정보 사이트\최신자료 7일간 무료받기.lnk
DF038 C:\Windows\Downloaded Program Files\BigGemmirLauncher.ocx
DF039 C:\Windows\GemmirPatcher.exe
----------------------------------------------------------------------
UN040 Gemmir Supporter -/-  -/- Gemmir Supporter -/- - -/- -
----------------------------------------------------------------------
US041 DivXCodec AF -/- C:\Users\Administrator\AppData\Roaming\DivXCodec AF\DivXCodec_AF.exe
US042 Gemmir Supporter -/- C:\Users\Administrator\AppData\Roaming\Gemmir Supporter\GemmirSupporter.exe
LS043 Smartopenweb -/- C:\Program Files (x86)\Smartopenweb\Smartopenweb.exe
LS044 CreditSMS -/- C:\Program Files (x86)\CreditSMS\CreditSMS.exe
----------------------------------------------------------------------
BH045 &Gemmir Supporter Helper Object -/- C:\Users\ADMINI~1\AppData\Roaming\GEMMIR~1\GEMMIR~1.DLL -/- {A7967B87-90A8-40DC-954D-877A9D19F351}
BH046 NLIA Resolver -/- C:\Program Files (x86)\NLIA\NLIAR.dll -/- {F6E8885E-D85A-432E-9978-40CB4ED6212A}
BH047 SearchNCtrl Class -/- C:\Program Files (x86)\SearchN\SearchN.dll -/- {FE14A4CA-5CFA-4C05-9274-6006397B68C9}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_1_102.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD XML HTTP Request -/- C:\Windows\System32\msxml3.dll -/- {ED8C108E-4349-11D2-91A4-00C04F7969E8}
EXADD XML HTTP -/- C:\Windows\System32\msxml3.dll -/- {F6D90F16-9C73-11D3-B32E-00C04F990BB4}
EXADD GemmirLaunchStart Control -/- C:\Windows\DOWNLO~1\BIGGEM~1.OCX -/- {72C2D6D4-21CF-40AE-B769-F7506A926789}
EXADD &Gemmir Supporter Helper Object -/- C:\Users\ADMINI~1\AppData\Roaming\GEMMIR~1\GEMMIR~1.DLL -/- {A7967B87-90A8-40DC-954D-877A9D19F351}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash11g.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD XML HTTP Request -/- C:\Windows\System32\msxml3.dll -/- {ED8C108E-4349-11D2-91A4-00C04F7969E8}
EXADD XML HTTP -/- C:\Windows\System32\msxml3.dll -/- {F6D90F16-9C73-11D3-B32E-00C04F990BB4}
EXADD NLIA Resolver -/- C:\Program Files (x86)\NLIA\NLIAR.dll -/- {F6E8885E-D85A-432E-9978-40CB4ED6212A}
EXADD SearchNCtrl Class -/- C:\Program Files (x86)\SearchN\SearchN.dll -/- {FE14A4CA-5CFA-4C05-9274-6006397B68C9}
----------------------------------------------------------------------
X048 {72C2D6D4-21CF-40AE-B769-F7506A926789} - GemmirLaunchStart Control - hxxp://ax.gemmir.com/New_Common_inc/Gemmir_Launcher.cab
----------------------------------------------------------------------
Deleted Files : 40
Remove Uninstall Entry : 1
Remove Startup Entry : 4
Remove Browser Helper Object : 3
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-12-17
[01-HKCUREG]**DivXCodec AF
[01-HKCUREG]**Gemmir Supporter
[02-HKLMREG]**Smartopenweb
[02-HKLMREG]**CreditSMS
[03-BHOCLSD]**{A7967B87-90A8-40DC-954D-877A9D19F351}
[03-BHOCLSD]**{F6E8885E-D85A-432E-9978-40CB4ED6212A}
[03-BHOCLSD]**{FE14A4CA-5CFA-4C05-9274-6006397B68C9}

----------------------------------------------------------------------
Total Processing Time : 98ms
----------------------------------------------------------------------
NA001 arcade2.gemmir.com/patch/HSCommon1/HSUpdate0*.***
NA002 arcade2.gemmir.com/patch/HSCommon1/mame32*.***
NA003 ax.gemmir.com/favicon*.***
NA004 ax.gemmir.com/GemmirLauncher.asp?co*.***
NA005 ax.gemmir.com/image/11st-2*.***
NA006 ax.gemmir.com/image/auction-2*.***
NA007 ax.gemmir.com/image/ax_03*.***
NA008 ax.gemmir.com/image/ax_08*.***
NA009 ax.gemmir.com/image/divx-1*.***
NA010 ax.gemmir.com/image/ff-2*.***
NA011 ax.gemmir.com/image/gb-2_color*.***
NA012 ax.gemmir.com/image/gf-2*.***
NA013 ax.gemmir.com/image/gmarket-2*.***
NA014 ax.gemmir.com/image/smartopenweb-1*.***
NA015 ax.gemmir.com/image/virus_scan-2*.***
NA016 ax.gemmir.com/image/zagogo-2*.***
NA017 ax.gemmir.com/js/ax_cooki*.***
NA018 ax.gemmir.com/js/ax_objec*.***
NA019 ax.gemmir.com/js/confi*.***
NA020 ax.gemmir.com/js/style*.***
NA021 ax.gemmir.com/New_Common_inc/Gemmir_Launcher*.***
NA022 axdown.gemmir.com/ActivexDn/BarIcon2*.***
NA023 axdown.gemmir.com/ActivexDn/gemmir_creditsms_100*.***
NA024 axdown.gemmir.com/ActivexDn/GemmirSupporterSetup*.***
NA025 axdown.gemmir.com/ActivexDn/Smartopenweb_com_102*.***
NA026 axdown.gemmir.com/RealCodec/DivXCodec*.***
NA027 creditsms.co.kr/set.asp?code=*.***
NA028 creditsms.co.kr/ver_check.asp?ver=1*.***
NA029 divxcodec.co.kr/filter/af/DivXCodecSetup_AF*.***
NA030 divxcodec.co.kr/filter/af/setupinfo.*.***
NA031 divxcodec.co.kr/filter/af/ver.*.***
NA032 divxcodec.co.kr/log/boot.asp?mode=boot&p=*.***
NA033 divxcodec.co.kr/log/install.asp?mode=install&m=00-0C-29-3E-CD-7**.***
NA034 download.gemmir.com/icon10*.***
NA035 download.gemmir.com/icon11*.***
NA036 download.gemmir.com/icon12*.***
NA037 free.gemmir.*.***
NA038 free.gemmir.com/Arcade_Game_List.asp?arcade=arcade&genre=11&gen**.***
NA039 free.gemmir.com/Arcade_Inc/Arcade_FLASHDATA.asp?ARCADE_CODE=arc**.***
NA040 free.gemmir.com/Arcade_inc/List_Game.swf?ARCADECODE=arcade&Btn_**.***
NA041 free.gemmir.com/favicon*.***
NA042 free.gemmir.com/index*.***
NA043 free.gemmir.com/js/confi*.***
NA044 free.gemmir.com/js/style*.***
NA045 free.gemmir.com/Sub_inc/Arcade_List_Frm.asp?arcade=arcade&genre**.***
NA046 free.gemmir.com/undef*.***
NA047 freethum.gemmir.com/102_68/2d/aero_t*.***
NA048 freethum.gemmir.com/102_68/2d/ggundam_t*.***
NA049 freethum.gemmir.com/102_68/2d/jurapark2_t*.***
NA050 freethum.gemmir.com/102_68/2d/maworldx_t*.***
NA051 freethum.gemmir.com/102_68/2d/parodius_t*.***
NA052 freethum.gemmir.com/102_68/2d/parodiusfan_t*.***
NA053 no2.gemmir.com/WEB_FILEUPLOAD/mainfile/SMALL2011216182964930_1.**.***
NA054 no2.gemmir.com/WEB_FILEUPLOAD/mainfile/SMALL2011216182964930_2.**.***
NA055 no2.gemmir.com/WEB_FILEUPLOAD/mainfile/SMALL2011216182964930_3.**.***
NA056 no2.gemmir.com/WEB_FILEUPLOAD/mainfile/SMALL2011216182964930_4.**.***
NA057 no2.gemmir.com/WEB_FILEUPLOAD/mainfile/SMALL2011216182964930_5.**.***
NA058 u1.websuprt.co.kr/NewSidebar/Gemmir/41Config*.***
NA059 u1.websuprt.co.kr/NewSidebar/Gemmir/Config*.***
NA060 u1.websuprt.co.kr/NewSidebar/Gemmir/DownFileInfo*.***
NA061 u1.websuprt.co.kr/NewSidebar/Gemmir/GemmirSupporter*.***
NA062 u1.websuprt.co.kr/NewSidebar/Gemmir/GemmirSupporterh*.***
NA063 u1.websuprt.co.kr/NewSidebar/Gemmir/Guide*.***
NA064 u1.websuprt.co.kr/NewSidebar/Gemmir/Query*.***
NA065 ww*.gemmir.*.***