프로그램분석

[vaccinedrive] Install log : 65ms / 2013-02-05

프로세스 천국 2013. 2. 5. 11:32

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i3 CPU       M 380  @ 2.53GHz / 1,023.55 MB
Intel64 Family 6 Model 37 Stepping 5
Date : 2013-02-05
----------------------------------------------------------------------
DF000 C:\Program Files (x86)\vaccinedrive\EGutil.dll
DF001 C:\Program Files (x86)\vaccinedrive\uninst_vaccinedrive.exe
DF002 C:\Program Files (x86)\vaccinedrive\vaccinedrive.exe
DF003 C:\Program Files (x86)\vaccinedrive\vaccinedrivestart.exe
DF004 C:\Program Files (x86)\vaccinedrive\vaccinedriveu.exe
DF005 C:\Program Files (x86)\vaccinedrive\vcncmndb.dll
DF006 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vaccinedrive\vaccinedrive 삭제.lnk
DF007 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vaccinedrive\vaccinedrive.lnk
DF008 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vaccinedrive\홈페이지.url
----------------------------------------------------------------------
UN009 vaccinedrive -/- UCF -/- vaccinedrive -/- hxxp://www.vaccinedrive.co.kr -/- hxxp://www.vaccinedrive.co.kr
UN010 XecureWeb Control -/- - -/- XecureWeb Control -/- - -/- -
----------------------------------------------------------------------
LS011 vaccinedrivestart.exe -/- C:\Program Files (x86)\vaccinedrive\vaccinedrivestart.exe
----------------------------------------------------------------------
----------------------------------------------------------------------
Deleted Files : 9
Remove Uninstall Entry : 2
Remove Startup Entry : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2013-02-05
[02-HKLMREG]**vaccinedrivestart.exe

----------------------------------------------------------------------
Total Processing Time : 65ms
----------------------------------------------------------------------

NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA006 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA007 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA008 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA009 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA010 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA011 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA012 echo change dir for x64
NA013 cd %windir%
NA014 cd syswow64
NA015 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA016 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA017 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA018 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA019 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA020 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA021 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA022 echo End
NA023 ======================================================================
NA024 echo Created by Windowexe.com / do not delete this label.
NA025 ======================================================================