프로그램분석

[CineRakWeb Control] Install log : 108ms / 2012-12-27

프로세스 천국 2012. 12. 27. 00:22

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz / 1,023.55 MB
Intel64 Family 6 Model 42 Stepping 7
Date : 2012-12-27
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\KeywordTab\opentabup.exe
DF001 C:\Program Files (x86)\ProtectTop\filter.dll
DF002 C:\Program Files (x86)\ProtectTop\ProtectTop.exe
DF003 C:\Program Files (x86)\ProtectTop\ProtectTopMtr.exe
DF004 C:\Program Files (x86)\ProtectTop\ProtectTopuck.exe
DF005 C:\Program Files (x86)\ProtectTop\RCEngine.dll
DF006 C:\Program Files (x86)\ProtectTop\RepairCode.exe
DF007 C:\Program Files (x86)\RClean\RCleanT.exe
DF008 C:\Program Files (x86)\RClean\RCleanUpdate.exe
DF009 C:\Program Files (x86)\VaccineStar\db\filter.dll
DF010 C:\Program Files (x86)\VaccineStar\db\inter.dll
DF011 C:\Program Files (x86)\VaccineStar\VaccineStar.exe
DF012 C:\Program Files (x86)\VaccineStar\VSAssist.dll
DF013 C:\Program Files (x86)\VaccineStar\VSAutoUpdate.exe
DF014 C:\Program Files (x86)\VaccineStar\VSEn.dll
DF015 C:\Program Files (x86)\VaccineStar\VSFD.SYS
DF016 C:\Program Files (x86)\Window Alarm\WinAlarm.exe
DF017 C:\Program Files (x86)\Window Alarm\WinAlarmUp.exe
DF018 C:\Program Files (x86)\Window Fortune\wfortune.exe
DF019 C:\Program Files (x86)\Window Fortune\WinForTuneUp.exe
DF020 C:\Program Files (x86)\Window SysCheck\SystemChkUp.exe
DF021 C:\Program Files (x86)\Window SysCheck\WSystemInfo.dll
DF022 C:\Program Files (x86)\Window SysCheck\WSystemInfoApp.exe
DF023 C:\Program Files (x86)\WinPro\WinPro.dll
DF024 C:\Program Files (x86)\WinPro\WinPro.exe
DF025 C:\Program Files (x86)\WinPro\WinPro__WP35.exe
DF026 C:\Program Files (x86)\WinPro\WinProUp.exe
DF027 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RClean\RClean 제거.lnk
DF028 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RClean\RClean.lnk
DF029 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\백신스타\백신스타 제거.lnk
DF030 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\백신스타\백신스타.lnk
DF031 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\프로텍트탑\프로텍트탑 제거.lnk
DF032 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\프로텍트탑\프로텍트탑.lnk
DF033 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files11st^2010_dbgolotto.exe
DF034 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filesbizform^2010_dbgolotto.exe
DF035 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet FilesDBGOWebtoon^2010_dbgolotto.exe
DF036 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filesfilecity^2010_dbgolotto.exe
DF037 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filesgmarket^2010_dbgolotto.exe
DF038 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filesiam010^2010_dbgolotto.exe
DF039 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet FilesProtectTop^2010_dbgolotto.exe
DF040 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filesstorm^2010_dbgolotto.exe
DF041 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Filessyscheck^2010_dbgolotto.exe
DF042 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet FilesVaccineStar^2010_dbgolotto.exe
DF043 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Fileswalarm^2010_dbgolotto.exe
DF044 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Fileswemake^2010_dbgolotto.exe
DF045 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Fileswfortune^2010_dbgolotto.exe
DF046 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Fileswinproutillbaksa^2010_dbgolotto.exe
DF047 C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Fileszeroauction^2010_dbgolotto.exe
DF048 C:\Users\Administrator\AppData\Roaming\KeywordTab\KeywordTabup.exe
DF049 C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\백신스타.lnk
DF050 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\백신스타.lnk
DF051 C:\Users\Administrator\Desktop\11번가.lnk
DF052 C:\Users\Administrator\Desktop\99%할인 공짜쇼핑!.lnk
DF053 C:\Users\Administrator\Desktop\반값할인 위메프.lnk
DF054 C:\Users\Administrator\Desktop\비즈폼 무료서식 100선.lnk
DF055 C:\Users\Administrator\Desktop\최신휴대폰 즉시개통.lnk
DF056 C:\Users\Administrator\Desktop\폭풍성장 무료체험.lnk
DF057 C:\Users\Administrator\Favorites\반값할인 위메프.url
DF058 C:\Windows\SysWOW64\VB5DB.DLL
DF059 C:\Windows\SysWOW64\VB6KO.DLL
----------------------------------------------------------------------
SC060 defencevaccine Update Service -/- defencevaccine Support Service -/- - -/-  -/- "C:\Windows\userconfigdata.exe" /update
SC061 IGImageCodec Service -/- IGImageCodec Service -/- - -/-  -/- C:\Windows\SysWOW64\svcigimg.exe
SC062 Windows WinsManager Diagnostics Service -/- Windows WinsManager Diagnostics Service -/- - -/-  -/- C:\Windows\SysWOW64\wdrwsmsvc.exe
SC063 WinsManager Service -/- WinsManager Service -/- - -/-  -/- C:\Windows\SysWOW64\svcwsmwin.exe
----------------------------------------------------------------------
UN064 AnCamCorder Uninstall -/- - -/- AnCamCorder -/- - -/- -
UN065 Ancamera Uninstall -/- - -/- AnCamera -/- - -/- -
UN066 badak mutil pack -/- - -/- badakcodecpack -/- - -/- -
UN067 동영상 인코더 - 바닥 인코더 -/- - -/- badakencoder -/- - -/- -
UN068 바탁통합툴즈 -/- - -/- badaktools -/- - -/- -
UN069 씨네락 할인쿠폰 -/- - -/- CineRakCoupon -/- - -/- -
UN070 CodeClinic -/- - -/- CodeClinicMain -/- - -/- -
UN071 DBGOLotto -/- - -/- DBGOLotto -/- - -/- -
UN072 defencevaccine -/- - -/- defencevaccine -/- hxxp://www.defencevaccine.co.kr -/- hxxp://www.defencevaccine.co.kr
UN073 ezenjoy -/- - -/- ezenjoy -/- - -/- -
UN074 KeywordTabUninstall -/- - -/- KeywordTab -/- - -/- -
UN075 LinkDirect -/- - -/- linkdirectmain -/- - -/- -
UN076 PatchUp_Plus -/- - -/- PatchUp_Plus -/- - -/- -
UN077 프라이버시매니져 -/- - -/- PrivacyManager -/- - -/- -
UN078 프로텍트킵 -/- - -/- ProtectKeep -/- - -/- -
UN079 프로텍트탑 -/- - -/- ProtectTop -/- - -/- -
UN080 Windows RightClick Copy -/- - -/- Racl -/- - -/- -
UN081 RClean -/- - -/- RCleanMain -/- - -/- -
UN082 별메모 -/- - -/- StarMemoMain -/- - -/- -
UN083 별PDF 리더 -/- - -/- StarPDFMain -/- - -/- -
UN084 별씨 -/- - -/- StarSeeMain -/- - -/- -
UN085 별툴즈 통합업데이트 -/- - -/- startoolsup -/- - -/- -
UN086 별집 -/- - -/- StarZipMain -/- - -/- -
UN087 userconfigdata -/- - -/- userconfigdata -/- hxxp://defencevaccine.co.kr -/- hxxp://defencevaccine.co.kr
UN088 UtilZone -/- NBIZ -/- UtilZone -/- - -/- -
UN089 백신스타 -/- - -/- VaccineStarMain -/- - -/- -
UN090 Window Alarm -/- - -/- walarm -/- - -/- -
UN091 Window Fortune -/- - -/- wfortune -/- - -/- -
UN092 윈도우세이프 -/- - -/- WindowSafeMain -/- - -/- -
UN093 windowtomgr . -/- JE com. -/- windowtomgr -/- - -/- -
UN094 WindowWizard -/- - -/- windowwizard -/- - -/- -
UN095 WinPro -/- NBIZ -/- WinPro -/- - -/- -
UN096 wins promgr . -/- JE com. -/- wins promgr -/- - -/- -
UN097 WinsManager -/- 제이원소프트 -/- WinsManager -/- - -/- hxxp://www.winsmanager.com
UN098 Window SysCheck -/- - -/- wsyscheck -/- - -/- -
TS099 AnCamCorder 실행
TS100 MedianVaccine 실행
TS101 PrivacyManager
TS102 ProtectKeep
TS103 ProtectTop
TS104 Window Alarm 실행
TS105 Window Fortune 실행
TS106 Window SysCheck 실행
TS107 WindowSafe 실행
TS108 바닥인코더 실행
TS109 별PDF업데이트 실행
TS110 별메모업데이트 실행
TS111 별씨업데이트 실행
TS112 별집업데이트 실행
TS113 코드클리닉 실행
----------------------------------------------------------------------
US114 startoolsup -/- C:\Program Files (x86)\STARtools\StarToolsUP\STARUpdate.exe -o
US115 DBGOLottoT -/- C:\Program Files (x86)\DBGOLotto\DBGOLottoT.exe -o
US116 PrivacyManager -/- C:\Program Files (x86)\PrivacyManager\PrivacyManager.exe /run1
US117 linkdirectmain -/- C:\Program Files (x86)\LinkDirect\linkdirectT.exe -o
US118 WinProUp -/- C:\Program Files (x86)\WinPro\WinProUp.exe /start
US119 UtilZoneUp -/- C:\Program Files (x86)\UtilZone\UtilZoneUp /start
US120 DBGOLottoU -/- C:\Program Files (x86)\DBGOLotto\LottoUpdate.exe /up
US121 ProtectKeep -/- C:\Program Files (x86)\ProtectKeep\ProtectKeep.exe /run1܀
US122 finetopup -/- C:\Program Files (x86)\FineTop\FineTopUp.exe -o
US123 ezenjoy -/- C:\Program Files (x86)\ezenjoy\ezenjoy.exe -o
US124 opentabup -/- C:\Program Files (x86)\KeywordTab\opentabup.exe -o
US125 keywordtabopen -/- C:\Users\Administrator\AppData\Roaming\KeywordTab\keywordtabopen.exe
US126 keywordtabhper -/- C:\Users\Administrator\AppData\Roaming\KeywordTab\keywordtabhper.exe
US127 keywordtab -/- c:\users\administrator\appdata\roaming\keywordtab\keywordtabup.exe
US128 windowtomgr -/- C:\Program Files (x86)\windowtomgr\oneups.exe
US129 wins promgr -/- C:\Program Files (x86)\wins promgr\vsupsvc.exe
US130 ProtectTop -/- C:\Program Files (x86)\ProtectTop\ProtectTop.exe /run1
LS131 Racl -/- C:\Program Files (x86)\Racl\RaclSvc.exe
LS132 defencevaccine main -/- C:\Program Files (x86)\defencevaccine\defencevaccineu.exe /8L
LS133 defencevaccinestart.exe -/- C:\Program Files (x86)\defencevaccine\defencevaccinestart.exe
LS134 CineRakCoupon -/- C:\Program Files (x86)\CineRak\CineRakCoupon\CineRakCouponUpdater.exe /start
LS135 RCleanMain -/- C:\Program Files (x86)\RClean\RCleanT.exe -o
LS136 windowwizard -/- C:\Program Files (x86)\WindowWizard\WindowWizardT.exe -o
LS137 UtilZone -/- C:\Program Files (x86)\UtilZone\UtilZone.exe
LS138 WinPro -/- C:\Program Files (x86)\WinPro\WinPro.exe
LS139 PatchUp_Plus -/- C:\Program Files (x86)\PatchUp_Plus\UpdatePlus.exe -r
LS140 windowwizardup -/- C:\Program Files (x86)\WindowWizard\WinWizardUpdater.exe /wo
LS141 badakcodecpack -/- C:\Program Files (x86)\badak multicodec\badakcodecpack.exe -o
LS142 windowtomgr -/- C:\Program Files (x86)\windowtomgr\oneups.exe
LS143 wins promgr -/- C:\Program Files (x86)\wins promgr\vsupsvc.exe
LS144 RCleanUp -/- C:\Program Files (x86)\RClean\RCleanUpdate.exe /up
----------------------------------------------------------------------
BH145 UtilZone -/- C:\Program Files (x86)\UtilZone\UtilZone.dll -/- {1C5099DD-7923-45e8-9680-5F285DC61213}
BH146 WinPro -/- C:\Program Files (x86)\WinPro\WinPro.dll -/- {339E5541-DA75-412A-9F9B-3C014BE1050B}
BH147 keywordtab -/- C:\Users\Administrator\AppData\Roaming\KeywordTab\keywordTab.dll -/- {98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}
BH148 WinsManager Helper -/- C:\Program Files (x86)\WinsManager\winsmb.dll -/- {C2727886-BDF8-4438-A7A3-34C74EF422B5}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_1_102.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD UtilZone -/- C:\Program Files (x86)\UtilZone\UtilZone.dll -/- {1C5099DD-7923-45E8-9680-5F285DC61213}
EXADD WinPro -/- C:\Program Files (x86)\WinPro\WinPro.dll -/- {339E5541-DA75-412A-9F9B-3C014BE1050B}
EXADD CineRakWeb Control -/- C:\Windows\DOWNLO~1\CINERA~1.OCX -/- {90AD4330-C001-4EB4-8EEB-C224ABECDF22}
EXADD keywordtab -/- C:\Users\Administrator\AppData\Roaming\KeywordTab\keywordTab.dll -/- {98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}
EXADD 잠김영역복사 -/- C:\Program Files (x86)\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
EXADD WinsManager Helper -/- C:\Program Files (x86)\WinsManager\winsmb.dll -/- {C2727886-BDF8-4438-A7A3-34C74EF422B5}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash11g.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
----------------------------------------------------------------------
X149 {90AD4330-C001-4EB4-8EEB-C224ABECDF22} - CineRakWeb Control - hxxp://www.cinerak.com/CineRakActivex/CineRakWebCtrl.cab
----------------------------------------------------------------------
TB150 잠김영역복사 -/- C:\Program Files (x86)\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 60
Remove Service : 4
Remove Uninstall Entry : 35
Remove Startup Entry : 31
Remove Browser Helper Object : 4
Remove Toolbar : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-12-27
[01-HKCUREG]**startoolsup
[01-HKCUREG]**DBGOLottoT
[01-HKCUREG]**PrivacyManager
[01-HKCUREG]**linkdirectmain
[01-HKCUREG]**WinProUp
[01-HKCUREG]**UtilZoneUp
[01-HKCUREG]**DBGOLottoU
[01-HKCUREG]**ProtectKeep
[01-HKCUREG]**finetopup
[01-HKCUREG]**ezenjoy
[01-HKCUREG]**opentabup
[01-HKCUREG]**keywordtabopen
[01-HKCUREG]**keywordtabhper
[01-HKCUREG]**keywordtab
[01-HKCUREG]**windowtomgr
[01-HKCUREG]**wins promgr
[01-HKCUREG]**ProtectTop
[02-HKLMREG]**Racl
[02-HKLMREG]**defencevaccine main
[02-HKLMREG]**defencevaccinestart.exe
[02-HKLMREG]**CineRakCoupon
[02-HKLMREG]**RCleanMain
[02-HKLMREG]**windowwizard
[02-HKLMREG]**UtilZone
[02-HKLMREG]**WinPro
[02-HKLMREG]**PatchUp_Plus
[02-HKLMREG]**windowwizardup
[02-HKLMREG]**badakcodecpack
[02-HKLMREG]**windowtomgr
[02-HKLMREG]**wins promgr
[02-HKLMREG]**RCleanUp
[03-BHOCLSD]**{1C5099DD-7923-45e8-9680-5F285DC61213}
[03-BHOCLSD]**{339E5541-DA75-412A-9F9B-3C014BE1050B}
[03-BHOCLSD]**{98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}
[03-BHOCLSD]**{C2727886-BDF8-4438-A7A3-34C74EF422B5}
[04-TOOLBAR]**{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**defencevaccine Update Service
[05-SERVICE]**IGImageCodec Service
[05-SERVICE]**Windows WinsManager Diagnostics Service
[05-SERVICE]**WinsManager Service
----------------------------------------------------------------------
Total Processing Time : 108ms
----------------------------------------------------------------------