방명록을 남겨주세요!

  1. 명왕성 2017.12.19 12:05 신고  수정/삭제  댓글쓰기

    정말 감사합니다.

    요즘 시스템 리소스 갉아 먹는 녀석들 때문에 고민이었는데,

    많은 도움을 받았습니다.

    뭣같은 녀석들도 많지만, 주인장님 같은 분이 있어 아직 살만한가 봅니다.

  2. ㅇㅅㅇ 2016.07.08 15:50 신고  수정/삭제  댓글쓰기

    도움감사드립니다~!

  3. aaaa 2016.01.09 16:12 신고  수정/삭제  댓글쓰기

    오랜만에 다시 들렸는데 저기 프로세스 자료천국은 이번에도 또 어베스트가 막고,v3가 못들어가게 막네요.
    저번처럼 제외로 해도 못들어가는군요.
    혹시 저만 그런건가요?

  4. dy200903 2015.12.04 17:25 신고  수정/삭제  댓글쓰기

    도움 많이받았습니다 감사합니다~!

  5. 23822 2015.10.24 00:57 신고  수정/삭제  댓글쓰기

    오늘 처음 댓글쓰려고하는데 차단되었다고 합니다...어떻게 푸나요?

  6. 이시화 2015.09.20 09:47 신고  수정/삭제  댓글쓰기

    감사합니다
    삭제코드 올려주셔서...

  7. tjstkfh 2015.07.27 20:46 신고  수정/삭제  댓글쓰기

    우연히 들렸다 도음 많이 됬습니다.
    다시 들리겟습니다.

  8. nightsong 2015.06.30 11:25 신고  수정/삭제  댓글쓰기

    http://www.windowexe.com/bbs/board.php?q=nossvc-exe-c-program-files-incainternet-nprotect-online-security-nossvc-exe

    nProtect Online Security(NOS)가 예전버전은 상위 방법으로 서비스중지가 가능했는데..버전업이 된건지 오늘 새로 해보니 중지가 되지 않더군요..
    시간되실때 체크한번 부탁드립니다.

    항상 정보 감사합니다.

    • windowexe.com 2015.06.30 14:24 신고  수정/삭제

      자기방어 형식으로 변경되어 적용이 안되는거 같네요. 프로그램을 아예 삭제해보세요.

    • nightsong 2015.07.01 08:01 신고  수정/삭제

      아무래도 그래야겟죠? 매번 번거롭네요..우리나라 깔리는 보안프로그램은 많은데 그닥 효용성이 느껴지진 않으니 원..
      몇번 신세진거 같은데 매번 감사합니다. 좋은하루 되시길~

  9. 돼지고기 2014.04.11 13:29 신고  수정/삭제  댓글쓰기

    그렇게 했는데 폴더가 지워지지않았네요 안전모드로 들어가서 그런것같은데...... 표준모드로 들어가서 했던걸 다시 보내드릴께요
    ----------------------------------------------------------------------
    Logfile of WindowexeAllkiller / Version : 1.0.5199.35991
    Website : http://windowexeallkiller.com
    Running from C:\Documents and Settings\_USER_NAME_\Local Settings\Temp\_AZTMP3_\Exec
    Operating System : Microsoft Windows XP Professional / Service Pack 3 / 51 / 32bit
    Internet Explorer Version : 8.0.6001.18702 / svcVersion : N.A
    Internet Explorer Homepage : http://www.nate.com/
    Boot mode : Normal
    ----------------------------------------------------------------------

    [00-PROCESS]**explorer -/- C:\WINDOWS\explorer.exe
    [00-PROCESS]**Acrotray -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
    [00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
    [00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    [00-PROCESS]**ASDSvc -/- C:\Program Files\AhnLab\V3IS90\ASDSvc.exe
    [00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\ati2evxx.exe
    [00-PROCESS]**ccc -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    [00-PROCESS]**conime -/- C:\WINDOWS\system32\conime.exe
    [00-PROCESS]**ctfmon -/- C:\WINDOWS\system32\ctfmon.exe
    [00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    [00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
    [00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
    [00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
    [00-PROCESS]**MOM -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    [00-PROCESS]**NATEONMain -/- C:\program files\sk communications\NATEON\BIN\NATEONMain.exe
    [00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
    [00-PROCESS]**SpyHunter4 -/- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
    [00-PROCESS]**V3UI -/- C:\Program Files\AhnLab\V3IS90\V3UI.exe
    [01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
    [01-HKCUREG]**NATEON -/- c:\program files\sk communications\nateon\bin\nateon.exe -as
    [02-HKLMREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
    [02-HKLMREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
    [02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
    [02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
    [02-HKLMREG]**Korean IME Migration -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
    [02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
    [02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
    [02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
    [02-HKLMREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
    [02-HKLMREG]**V3Tray -/- C:\Program Files\AhnLab\V3IS90\V3UI.exe /tray
    [03-BHOCLSD]**{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    [03-BHOCLSD]**{AE7CD045-E861-484f-8273-0445EE161910} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
    [04-TOOLBAR]**{47833539-D0C5-4125-9FA8-0819E2EAAC93} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
    [04-TOOLBAR]**10 -/- CLSID Nothing
    [05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    [05-SERVICE]**Alerter -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\alrsvc.dll
    [05-SERVICE]**ALG -/- C:\WINDOWS\system32\alg.exe
    [05-SERVICE]**Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    [05-SERVICE]**AppMgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\appmgmts.dll
    [05-SERVICE]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
    [05-SERVICE]**Ati HotKey Poller -/- C:\WINDOWS\system32\ati2evxx.exe
    [05-SERVICE]**AudioSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\audiosrv.dll
    [05-SERVICE]**Autodesk Licensing Service -/- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    [05-SERVICE]**BITS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\qmgr.dll
    [05-SERVICE]**Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
    [05-SERVICE]**Browser -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\browser.dll
    [05-SERVICE]**CiSvc -/- C:\WINDOWS\system32\cisvc.exe
    [05-SERVICE]**ClipSrv -/- C:\WINDOWS\system32\clipsrv.exe
    [05-SERVICE]**clr_optimization_v2.0.50727_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    [05-SERVICE]**clr_optimization_v4.0.30319_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    [05-SERVICE]**COMSysApp -/- C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    [05-SERVICE]**CryptSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\cryptsvc.dll
    [05-SERVICE]**DcomLaunch -/- C:\WINDOWS\system32\svchost -k DcomLaunch -/- C:\WINDOWS\system32\rpcss.dll
    [05-SERVICE]**Dhcp -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dhcpcsvc.dll
    [05-SERVICE]**dmadmin -/- C:\WINDOWS\System32\dmadmin.exe /com
    [05-SERVICE]**dmserver -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dmserver.dll
    [05-SERVICE]**Dnscache -/- C:\WINDOWS\system32\svchost.exe -k NetworkService -/- C:\WINDOWS\System32\dnsrslvr.dll
    [05-SERVICE]**Dot3svc -/- C:\WINDOWS\System32\svchost.exe -k dot3svc -/- C:\WINDOWS\System32\dot3svc.dll
    [05-SERVICE]**EapHost -/- C:\WINDOWS\System32\svchost.exe -k eapsvcs -/- C:\WINDOWS\System32\eapsvc.dll
    [05-SERVICE]**ERSvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ersvc.dll
    [05-SERVICE]**Eventlog -/- C:\WINDOWS\system32\services.exe
    [05-SERVICE]**EventSystem -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\es.dll
    [05-SERVICE]**FastUserSwitchingCompatibility -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    [05-SERVICE]**FontCache3.0.0.0 -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    [05-SERVICE]**helpsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    [05-SERVICE]**HidServ -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\hidserv.dll
    [05-SERVICE]**hkmsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\kmsvc.dll
    [05-SERVICE]**HTTPFilter -/- C:\WINDOWS\System32\svchost.exe -k HTTPFilter -/- C:\WINDOWS\System32\w3ssl.dll
    [05-SERVICE]**idsvc -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    [05-SERVICE]**ImapiService -/- C:\WINDOWS\system32\imapi.exe
    [05-SERVICE]**iPod Service -/- C:\Program Files\iPod\bin\iPodService.exe
    [05-SERVICE]**lanmanserver -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\srvsvc.dll
    [05-SERVICE]**lanmanworkstation -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wkssvc.dll
    [05-SERVICE]**LmHosts -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\lmhsvc.dll
    [05-SERVICE]**Messenger -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\msgsvc.dll
    [05-SERVICE]**mnmsrvc -/- C:\WINDOWS\system32\mnmsrvc.exe
    [05-SERVICE]**MSDTC -/- C:\WINDOWS\system32\msdtc.exe
    [05-SERVICE]**MSIServer -/- C:\WINDOWS\system32\msiexec.exe /V
    [05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\qagentrt.dll
    [05-SERVICE]**Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZinw12.dll
    [05-SERVICE]**NetDDE -/- C:\WINDOWS\system32\netdde.exe
    [05-SERVICE]**NetDDEdsdm -/- C:\WINDOWS\system32\netdde.exe
    [05-SERVICE]**Netlogon -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**Netman -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\netman.dll
    [05-SERVICE]**NetTcpPortSharing -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
    [05-SERVICE]**Nla -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mswsock.dll
    [05-SERVICE]**NtLmSsp -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**NtmsSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\ntmssvc.dll
    [05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    [05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    [05-SERVICE]**PlugPlay -/- C:\WINDOWS\system32\services.exe
    [05-SERVICE]**Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZipm12.dll
    [05-SERVICE]**PolicyAgent -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**ProtectedStorage -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**RasAuto -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasauto.dll
    [05-SERVICE]**RasMan -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasmans.dll
    [05-SERVICE]**RDSessMgr -/- C:\WINDOWS\system32\sessmgr.exe
    [05-SERVICE]**RemoteAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mprdim.dll
    [05-SERVICE]**RemoteRegistry -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\regsvc.dll
    [05-SERVICE]**RpcLocator -/- C:\WINDOWS\system32\locator.exe
    [05-SERVICE]**RpcSs -/- C:\WINDOWS\system32\svchost -k rpcss -/- C:\WINDOWS\system32\rpcss.dll
    [05-SERVICE]**RSVP -/- C:\WINDOWS\system32\rsvp.exe
    [05-SERVICE]**SamSs -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**SCardSvr -/- C:\WINDOWS\system32\scardsvr.exe
    [05-SERVICE]**Schedule -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\schedsvc.dll
    [05-SERVICE]**seclogon -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\seclogon.dll
    [05-SERVICE]**SENS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\sens.dll
    [05-SERVICE]**SharedAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ipnathlp.dll
    [05-SERVICE]**ShellHWDetection -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**Spooler -/- C:\WINDOWS\system32\spoolsv.exe
    [05-SERVICE]**srservice -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\srsvc.dll
    [05-SERVICE]**SSDPSRV -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\ssdpsrv.dll
    [05-SERVICE]**stisvc -/- C:\WINDOWS\system32\svchost.exe -k imgsvc -/- C:\WINDOWS\system32\wiaservc.dll
    [05-SERVICE]**SwPrv -/- C:\WINDOWS\system32\dllhost.exe /Processid:{69F8E583-4366-45DB-8EDE-33386712E8E2}
    [05-SERVICE]**SysmonLog -/- C:\WINDOWS\system32\smlogsvc.exe
    [05-SERVICE]**TapiSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\tapisrv.dll
    [05-SERVICE]**TermService -/- C:\WINDOWS\System32\svchost -k DComLaunch -/- C:\WINDOWS\System32\termsrv.dll
    [05-SERVICE]**Themes -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**TlntSvr -/- C:\WINDOWS\system32\tlntsvr.exe
    [05-SERVICE]**TrkWks -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\trkwks.dll
    [05-SERVICE]**upnphost -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\upnphost.dll
    [05-SERVICE]**UPS -/- C:\WINDOWS\system32\ups.exe
    [05-SERVICE]**V3Svc -/- C:\Program Files\AhnLab\V3IS90\ASDSvc.exe
    [05-SERVICE]**VSS -/- C:\WINDOWS\system32\vssvc.exe
    [05-SERVICE]**W32Time -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\w32time.dll
    [05-SERVICE]**WebClient -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\webclnt.dll
    [05-SERVICE]**winmgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wbem\WMIsvc.dll
    [05-SERVICE]**WmdmPmSN -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\MsPMSNSv.dll
    [05-SERVICE]**Wmi -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\advapi32.dll
    [05-SERVICE]**WmiApSrv -/- C:\WINDOWS\system32\wbem\wmiapsrv.exe
    [05-SERVICE]**WMPNetworkSvc -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
    [05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
    [05-SERVICE]**wscsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wscsvc.dll
    [05-SERVICE]**wuauserv -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wuauserv.dll
    [05-SERVICE]**WudfSvc -/- C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup -/- C:\WINDOWS\System32\WUDFSvc.dll
    [05-SERVICE]**WZCSVC -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wzcsvc.dll
    [05-SERVICE]**xmlprov -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\xmlprov.dll
    [06-TASKLST]**Adobe Flash Player Updater -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    [06-TASKLST]**AppleSoftwareUpdate -/- C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
    [06-TASKLST]**Microsoft Windows XP 서비스 중단 알림 로그인 -/- C:\WINDOWS\system32\xp_eos.exe -c
    [06-TASKLST]**월별 Microsoft Windows XP 서비스 중단 알림 -/- C:\WINDOWS\system32\xp_eos.exe
    [16-SEARCHS]**{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -/- http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
    [16-SEARCHS]**{13F8A7E6-2EDE-4bf5-BF99-939A6CAAA637} -/- http://gsp.gomtv.com/rd?version=111&sid=0&bypass=1&keyword={searchTerms}
    [16-SEARCHS]**{8AF268BF-A11B-45d1-A67A-65BDEA013148} -/- http://search.nate.com/search/search.asp?SearchField=1&q={searchTerms}&query={searchTerms}
    [16-SEARCHS]**{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} -/- http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=101&systemid=488&v=n11470-311&apn_uid=3241229067544048&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
    [17-CONTEXT]**Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**Microsoft Excel로 내보내기(&X) -/- res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    [17-CONTEXT]**기존 PDF에 추가 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**링크 대상을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**링크 대상을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**선택 영역을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**선택 영역을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**선택한 링크를 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    [17-CONTEXT]**선택한 링크를 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    [18-EXTRABT]**{92780B25-18CC-41C8-B9BE-3C9C571A8263} -/- N.A
    [18-EXTRABT]**{e2e2dd38-d088-4134-82b7-f2ba38496583} -/- %windir%\Network Diagnostic\xpnetdiag.exe
    [18-EXTRABT]**{FB5F1910-F110-11d2-BB9E-00C04F795683} -/- C:\Program Files\Messenger\msmsgs.exe
    [18-EXTRABT]**CmdMapping -/- N.A
    [21-SHELLFI]**AcShellExtension.AcContextMenuHandler -/- C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll
    [21-SHELLFI]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
    [21-SHELLFI]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [21-SHELLFI]**DLLRegSvr -/- C:\Program Files\SK Communications\NATEON\BIN\SMailExt.dll
    [22-SHELLDX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [29-SHELLDI]**Hwp.Print -/- 한글 문서(Hwp) 인쇄(&P)
    [30-SHELLFX]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
    [30-SHELLFX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [38-HANDLER]**ms-help -/- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    [38-HANDLER]**s-http -/- C:\Program Files\Initech\SHTTP\InitechSHTTPInterface.11015.dll
    [39-HOMEPAG]**http://www.google.com -/- If LEAVE IT CHECKED, Set your IE homepage
    [40-WNLOGON]**[HKLM.DEFAULT] -/- Shell : Explorer.exe / Userinit : C:\WINDOWS\system32\userinit.exe,
    [41-APPINIT]**[DEFAULT] -/- AppInit_DLLs :
    [42-RMHOSTS]**[DEFAULT] -/- If LEAVE IT CHECKED, Delete the %WINDIR%\system32\drivers\etc\hosts file and create default hosts file.

    ----------------------------------------------------------------------

    • windowexe.com 2014.04.11 13:30 신고  수정/삭제

      폴더는 직접 삭제하세요.

    • 돼지고기 2014.04.11 13:43 신고  수정/삭제

      폴더를 직접 휴지통에 넣거나 삭제를 눌러도 안됩니다.

    • windowexe.com 2014.04.11 21:37 신고  수정/삭제

      이상하네요. 로그에 bitguard 항목은 없는데요.

      37- 이나 41- 에 대부분 위치해 있는데 보이지 않네요.
      네트워크 모드 말고 안전모드로 부팅해서 그냥 삭제해보세요.
      안전모드에서도 삭제가 안되면 폴더나 파일의 권한 문제같은데 확인해보세요.

  10. 돼지고기 2014.04.11 11:50 신고  수정/삭제  댓글쓰기

    컴퓨터에 bitguard란 폴더가 생겼는데 지워지지도 않고 인터넷광고창도 저절로 생겨나고 제어판 프로그램 추가/제거에 Internet Explorer Distribution Of Earnings 란 프로그램은 지워지지도 않네요
    방명록에 windowexeallkiller 제 컴퓨터 상황을 남깁니다.
    죄송합니다만 확인 부탁드립니다.
    ----------------------------------------------------------------------
    Logfile of WindowexeAllkiller / Version : 1.0.5199.35991
    Website : http://windowexeallkiller.com
    Running from C:\Documents and Settings\_USER_NAME_\Local Settings\Temp\_AZTMP2_\Exec
    Operating System : Microsoft Windows XP Professional / Service Pack 3 / 51 / 32bit
    Internet Explorer Version : 8.0.6001.18702 / svcVersion : N.A
    Internet Explorer Homepage : http://www.nate.com/
    Boot mode : Safe.Networking
    ----------------------------------------------------------------------

    [00-PROCESS]**explorer -/- C:\WINDOWS\explorer.exe
    [00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
    [00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
    [01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
    [01-HKCUREG]**iniweblink -/- C:\Documents and Settings\_USER_NAME_\Local Settings\Application Data\weblink\weblinkup.exe
    [01-HKCUREG]**NATEON -/- c:\program files\sk communications\nateon\bin\nateon.exe -as
    [02-HKLMREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
    [02-HKLMREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
    [02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
    [02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
    [02-HKLMREG]**Korean IME Migration -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
    [02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
    [02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
    [02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
    [02-HKLMREG]**SpyHunter Security Suite -/- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
    [02-HKLMREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
    [02-HKLMREG]**V3Tray -/- C:\Program Files\AhnLab\V3IS90\V3UI.exe /tray
    [03-BHOCLSD]**{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    [03-BHOCLSD]**{375A6AB2-FEEC-445D-B853-2139FB561F80} -/- C:\Program Files\GRETECH\GomHelper\gomsearch.dll
    [03-BHOCLSD]**{AE7CD045-E861-484f-8273-0445EE161910} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
    [04-TOOLBAR]**{47833539-D0C5-4125-9FA8-0819E2EAAC93} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
    [04-TOOLBAR]**10 -/- CLSID Nothing
    [05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    [05-SERVICE]**Alerter -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\alrsvc.dll
    [05-SERVICE]**ALG -/- C:\WINDOWS\system32\alg.exe
    [05-SERVICE]**Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    [05-SERVICE]**AppMgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\appmgmts.dll
    [05-SERVICE]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
    [05-SERVICE]**Ati HotKey Poller -/- C:\WINDOWS\system32\ati2evxx.exe
    [05-SERVICE]**AudioSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\audiosrv.dll
    [05-SERVICE]**Autodesk Licensing Service -/- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    [05-SERVICE]**BITS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\qmgr.dll
    [05-SERVICE]**Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
    [05-SERVICE]**Browser -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\browser.dll
    [05-SERVICE]**CiSvc -/- C:\WINDOWS\system32\cisvc.exe
    [05-SERVICE]**ClipSrv -/- C:\WINDOWS\system32\clipsrv.exe
    [05-SERVICE]**clr_optimization_v2.0.50727_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    [05-SERVICE]**clr_optimization_v4.0.30319_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    [05-SERVICE]**COMSysApp -/- C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    [05-SERVICE]**CryptSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\cryptsvc.dll
    [05-SERVICE]**DcomLaunch -/- C:\WINDOWS\system32\svchost -k DcomLaunch -/- C:\WINDOWS\system32\rpcss.dll
    [05-SERVICE]**Dhcp -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dhcpcsvc.dll
    [05-SERVICE]**dmadmin -/- C:\WINDOWS\System32\dmadmin.exe /com
    [05-SERVICE]**dmserver -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dmserver.dll
    [05-SERVICE]**Dnscache -/- C:\WINDOWS\system32\svchost.exe -k NetworkService -/- C:\WINDOWS\System32\dnsrslvr.dll
    [05-SERVICE]**Dot3svc -/- C:\WINDOWS\System32\svchost.exe -k dot3svc -/- C:\WINDOWS\System32\dot3svc.dll
    [05-SERVICE]**EapHost -/- C:\WINDOWS\System32\svchost.exe -k eapsvcs -/- C:\WINDOWS\System32\eapsvc.dll
    [05-SERVICE]**ERSvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ersvc.dll
    [05-SERVICE]**Eventlog -/- C:\WINDOWS\system32\services.exe
    [05-SERVICE]**EventSystem -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\es.dll
    [05-SERVICE]**FastUserSwitchingCompatibility -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    [05-SERVICE]**FontCache3.0.0.0 -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    [05-SERVICE]**gcdefv -/- C:\Documents and Settings\_USER_NAME_\Application Data\gcdef\gcdefvc.exe
    [05-SERVICE]**GomService -/- C:\Program Files\GRETECH\GomHelper\gomsearch.exe /service
    [05-SERVICE]**helpsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    [05-SERVICE]**HidServ -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\hidserv.dll
    [05-SERVICE]**hkmsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\kmsvc.dll
    [05-SERVICE]**HTTPFilter -/- C:\WINDOWS\System32\svchost.exe -k HTTPFilter -/- C:\WINDOWS\System32\w3ssl.dll
    [05-SERVICE]**idsvc -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    [05-SERVICE]**ImapiService -/- C:\WINDOWS\system32\imapi.exe
    [05-SERVICE]**iPod Service -/- C:\Program Files\iPod\bin\iPodService.exe
    [05-SERVICE]**lanmanserver -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\srvsvc.dll
    [05-SERVICE]**lanmanworkstation -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wkssvc.dll
    [05-SERVICE]**LmHosts -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\lmhsvc.dll
    [05-SERVICE]**Messenger -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\msgsvc.dll
    [05-SERVICE]**mnmsrvc -/- C:\WINDOWS\system32\mnmsrvc.exe
    [05-SERVICE]**MSDTC -/- C:\WINDOWS\system32\msdtc.exe
    [05-SERVICE]**MSIServer -/- C:\WINDOWS\system32\msiexec.exe /V
    [05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\qagentrt.dll
    [05-SERVICE]**Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZinw12.dll
    [05-SERVICE]**NetDDE -/- C:\WINDOWS\system32\netdde.exe
    [05-SERVICE]**NetDDEdsdm -/- C:\WINDOWS\system32\netdde.exe
    [05-SERVICE]**Netlogon -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**Netman -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\netman.dll
    [05-SERVICE]**NetTcpPortSharing -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
    [05-SERVICE]**Nla -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mswsock.dll
    [05-SERVICE]**NtLmSsp -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**NtmsSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\ntmssvc.dll
    [05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    [05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    [05-SERVICE]**PlugPlay -/- C:\WINDOWS\system32\services.exe
    [05-SERVICE]**Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZipm12.dll
    [05-SERVICE]**PolicyAgent -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**ProtectedStorage -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**RasAuto -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasauto.dll
    [05-SERVICE]**RasMan -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasmans.dll
    [05-SERVICE]**RDSessMgr -/- C:\WINDOWS\system32\sessmgr.exe
    [05-SERVICE]**RemoteAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mprdim.dll
    [05-SERVICE]**RemoteRegistry -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\regsvc.dll
    [05-SERVICE]**RpcLocator -/- C:\WINDOWS\system32\locator.exe
    [05-SERVICE]**RpcSs -/- C:\WINDOWS\system32\svchost -k rpcss -/- C:\WINDOWS\system32\rpcss.dll
    [05-SERVICE]**RSVP -/- C:\WINDOWS\system32\rsvp.exe
    [05-SERVICE]**SamSs -/- C:\WINDOWS\system32\lsass.exe
    [05-SERVICE]**SCardSvr -/- C:\WINDOWS\system32\scardsvr.exe
    [05-SERVICE]**Schedule -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\schedsvc.dll
    [05-SERVICE]**seclogon -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\seclogon.dll
    [05-SERVICE]**SENS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\sens.dll
    [05-SERVICE]**SharedAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ipnathlp.dll
    [05-SERVICE]**ShellHWDetection -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**Spooler -/- C:\WINDOWS\system32\spoolsv.exe
    [05-SERVICE]**SpyHunter 4 Service -/- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
    [05-SERVICE]**srservice -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\srsvc.dll
    [05-SERVICE]**SSDPSRV -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\ssdpsrv.dll
    [05-SERVICE]**stisvc -/- C:\WINDOWS\system32\svchost.exe -k imgsvc -/- C:\WINDOWS\system32\wiaservc.dll
    [05-SERVICE]**SwPrv -/- C:\WINDOWS\system32\dllhost.exe /Processid:{69F8E583-4366-45DB-8EDE-33386712E8E2}
    [05-SERVICE]**SysmonLog -/- C:\WINDOWS\system32\smlogsvc.exe
    [05-SERVICE]**TapiSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\tapisrv.dll
    [05-SERVICE]**TermService -/- C:\WINDOWS\System32\svchost -k DComLaunch -/- C:\WINDOWS\System32\termsrv.dll
    [05-SERVICE]**Themes -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
    [05-SERVICE]**TlntSvr -/- C:\WINDOWS\system32\tlntsvr.exe
    [05-SERVICE]**TrkWks -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\trkwks.dll
    [05-SERVICE]**upnphost -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\upnphost.dll
    [05-SERVICE]**UPS -/- C:\WINDOWS\system32\ups.exe
    [05-SERVICE]**V3Svc -/- C:\Program Files\AhnLab\V3IS90\ASDSvc.exe
    [05-SERVICE]**VSS -/- C:\WINDOWS\system32\vssvc.exe
    [05-SERVICE]**W32Time -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\w32time.dll
    [05-SERVICE]**WebClient -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\webclnt.dll
    [05-SERVICE]**winmgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wbem\WMIsvc.dll
    [05-SERVICE]**WmdmPmSN -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\MsPMSNSv.dll
    [05-SERVICE]**Wmi -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\advapi32.dll
    [05-SERVICE]**WmiApSrv -/- C:\WINDOWS\system32\wbem\wmiapsrv.exe
    [05-SERVICE]**WMPNetworkSvc -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
    [05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
    [05-SERVICE]**wscsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wscsvc.dll
    [05-SERVICE]**wuauserv -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wuauserv.dll
    [05-SERVICE]**WudfSvc -/- C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup -/- C:\WINDOWS\System32\WUDFSvc.dll
    [05-SERVICE]**WZCSVC -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wzcsvc.dll
    [05-SERVICE]**xmlprov -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\xmlprov.dll
    [06-TASKLST]**Adobe Flash Player Updater -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    [06-TASKLST]**AppleSoftwareUpdate -/- C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
    [06-TASKLST]**Microsoft Windows XP 서비스 중단 알림 로그인 -/- C:\WINDOWS\system32\xp_eos.exe -c
    [06-TASKLST]**월별 Microsoft Windows XP 서비스 중단 알림 -/- C:\WINDOWS\system32\xp_eos.exe
    [16-SEARCHS]**{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -/- http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
    [16-SEARCHS]**{13F8A7E6-2EDE-4bf5-BF99-939A6CAAA637} -/- http://gsp.gomtv.com/rd?version=111&sid=0&bypass=1&keyword={searchTerms}
    [16-SEARCHS]**{8AF268BF-A11B-45d1-A67A-65BDEA013148} -/- http://search.nate.com/search/search.asp?SearchField=1&q={searchTerms}&query={searchTerms}
    [16-SEARCHS]**{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} -/- http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=101&systemid=488&v=n11470-311&apn_uid=3241229067544048&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
    [17-CONTEXT]**Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**Microsoft Excel로 내보내기(&X) -/- res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    [17-CONTEXT]**기존 PDF에 추가 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**링크 대상을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**링크 대상을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**선택 영역을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    [17-CONTEXT]**선택 영역을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    [17-CONTEXT]**선택한 링크를 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    [17-CONTEXT]**선택한 링크를 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    [18-EXTRABT]**{92780B25-18CC-41C8-B9BE-3C9C571A8263} -/- N.A
    [18-EXTRABT]**{e2e2dd38-d088-4134-82b7-f2ba38496583} -/- %windir%\Network Diagnostic\xpnetdiag.exe
    [18-EXTRABT]**{FB5F1910-F110-11d2-BB9E-00C04F795683} -/- C:\Program Files\Messenger\msmsgs.exe
    [18-EXTRABT]**CmdMapping -/- N.A
    [21-SHELLFI]**AcShellExtension.AcContextMenuHandler -/- C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll
    [21-SHELLFI]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
    [21-SHELLFI]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [21-SHELLFI]**DLLRegSvr -/- C:\Program Files\SK Communications\NATEON\BIN\SMailExt.dll
    [22-SHELLDX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [29-SHELLDI]**Hwp.Print -/- 한글 문서(Hwp) 인쇄(&P)
    [30-SHELLFX]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
    [30-SHELLFX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
    [37-APPCERT]**x64 -/- c:\program files\browser tab search by ask\safetynut\x64\safetycrt.dll
    [38-HANDLER]**ms-help -/- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    [38-HANDLER]**s-http -/- C:\Program Files\Initech\SHTTP\InitechSHTTPInterface.11015.dll
    [39-HOMEPAG]**http://www.google.com -/- If LEAVE IT CHECKED, Set your IE homepage
    [40-WNLOGON]**[HKLM.DEFAULT] -/- Shell : Explorer.exe / Userinit : C:\WINDOWS\system32\userinit.exe,
    [41-APPINIT]**[DEFAULT] -/- AppInit_DLLs :
    [42-RMHOSTS]**[DEFAULT] -/- If LEAVE IT CHECKED, Delete the %WINDIR%\system32\drivers\etc\hosts file and create default hosts file.

    ----------------------------------------------------------------------

    • windowexe.com 2014.04.11 12:17 신고  수정/삭제

      아래항목 체크
      [00-PROCESS]**explorer
      [00-PROCESS]**ALZip
      [00-PROCESS]**explorer
      [00-PROCESS]**iexplore


      아래항목 체크해제
      [01-HKCUREG]**iniweblink
      [02-HKLMREG]**iniweblink
      [03-BHOCLSD]**{375A6AB2-FEEC-445D-B853-2139FB561F80}
      [05-SERVICE]**gcdefv
      [05-SERVICE]**GomService
      [05-SERVICE]**SpyHunter 4 Service
      [37-APPCERT]**x64


      그 외는 건드리지 말고 상단의 버튼을 누르세요. 목록에 없는 건 무시하고 다음으로 진행하세요.

      재부팅하고 그 폴더 삭제하세요.

    • 돼지고기 2014.04.11 13:28 신고  수정/삭제

      그렇게 했는데 폴더가 지워지지않았네요 안전모드로 들어가서 그런것같은데...... 표준모드로 들어가서 했던걸 다시 보내드릴께요
      ----------------------------------------------------------------------
      Logfile of WindowexeAllkiller / Version : 1.0.5199.35991
      Website : http://windowexeallkiller.com
      Running from C:\Documents and Settings\_USER_NAME_\Local Settings\Temp\_AZTMP3_\Exec
      Operating System : Microsoft Windows XP Professional / Service Pack 3 / 51 / 32bit
      Internet Explorer Version : 8.0.6001.18702 / svcVersion : N.A
      Internet Explorer Homepage : http://www.nate.com/
      Boot mode : Normal
      ----------------------------------------------------------------------

      [00-PROCESS]**explorer -/- C:\WINDOWS\explorer.exe
      [00-PROCESS]**Acrotray -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
      [00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
      [00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      [00-PROCESS]**ASDSvc -/- C:\Program Files\AhnLab\V3IS90\ASDSvc.exe
      [00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\ati2evxx.exe
      [00-PROCESS]**ccc -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
      [00-PROCESS]**conime -/- C:\WINDOWS\system32\conime.exe
      [00-PROCESS]**ctfmon -/- C:\WINDOWS\system32\ctfmon.exe
      [00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
      [00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
      [00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
      [00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
      [00-PROCESS]**MOM -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
      [00-PROCESS]**NATEONMain -/- C:\program files\sk communications\NATEON\BIN\NATEONMain.exe
      [00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
      [00-PROCESS]**SpyHunter4 -/- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
      [00-PROCESS]**V3UI -/- C:\Program Files\AhnLab\V3IS90\V3UI.exe
      [01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
      [01-HKCUREG]**NATEON -/- c:\program files\sk communications\nateon\bin\nateon.exe -as
      [02-HKLMREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
      [02-HKLMREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
      [02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
      [02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
      [02-HKLMREG]**Korean IME Migration -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
      [02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
      [02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
      [02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
      [02-HKLMREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
      [02-HKLMREG]**V3Tray -/- C:\Program Files\AhnLab\V3IS90\V3UI.exe /tray
      [03-BHOCLSD]**{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      [03-BHOCLSD]**{AE7CD045-E861-484f-8273-0445EE161910} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
      [04-TOOLBAR]**{47833539-D0C5-4125-9FA8-0819E2EAAC93} -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
      [04-TOOLBAR]**10 -/- CLSID Nothing
      [05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
      [05-SERVICE]**Alerter -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\alrsvc.dll
      [05-SERVICE]**ALG -/- C:\WINDOWS\system32\alg.exe
      [05-SERVICE]**Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      [05-SERVICE]**AppMgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\appmgmts.dll
      [05-SERVICE]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
      [05-SERVICE]**Ati HotKey Poller -/- C:\WINDOWS\system32\ati2evxx.exe
      [05-SERVICE]**AudioSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\audiosrv.dll
      [05-SERVICE]**Autodesk Licensing Service -/- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
      [05-SERVICE]**BITS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\qmgr.dll
      [05-SERVICE]**Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
      [05-SERVICE]**Browser -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\browser.dll
      [05-SERVICE]**CiSvc -/- C:\WINDOWS\system32\cisvc.exe
      [05-SERVICE]**ClipSrv -/- C:\WINDOWS\system32\clipsrv.exe
      [05-SERVICE]**clr_optimization_v2.0.50727_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
      [05-SERVICE]**clr_optimization_v4.0.30319_32 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
      [05-SERVICE]**COMSysApp -/- C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
      [05-SERVICE]**CryptSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\cryptsvc.dll
      [05-SERVICE]**DcomLaunch -/- C:\WINDOWS\system32\svchost -k DcomLaunch -/- C:\WINDOWS\system32\rpcss.dll
      [05-SERVICE]**Dhcp -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dhcpcsvc.dll
      [05-SERVICE]**dmadmin -/- C:\WINDOWS\System32\dmadmin.exe /com
      [05-SERVICE]**dmserver -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\dmserver.dll
      [05-SERVICE]**Dnscache -/- C:\WINDOWS\system32\svchost.exe -k NetworkService -/- C:\WINDOWS\System32\dnsrslvr.dll
      [05-SERVICE]**Dot3svc -/- C:\WINDOWS\System32\svchost.exe -k dot3svc -/- C:\WINDOWS\System32\dot3svc.dll
      [05-SERVICE]**EapHost -/- C:\WINDOWS\System32\svchost.exe -k eapsvcs -/- C:\WINDOWS\System32\eapsvc.dll
      [05-SERVICE]**ERSvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ersvc.dll
      [05-SERVICE]**Eventlog -/- C:\WINDOWS\system32\services.exe
      [05-SERVICE]**EventSystem -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\es.dll
      [05-SERVICE]**FastUserSwitchingCompatibility -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
      [05-SERVICE]**FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
      [05-SERVICE]**FontCache3.0.0.0 -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
      [05-SERVICE]**helpsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
      [05-SERVICE]**HidServ -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\hidserv.dll
      [05-SERVICE]**hkmsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\kmsvc.dll
      [05-SERVICE]**HTTPFilter -/- C:\WINDOWS\System32\svchost.exe -k HTTPFilter -/- C:\WINDOWS\System32\w3ssl.dll
      [05-SERVICE]**idsvc -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
      [05-SERVICE]**ImapiService -/- C:\WINDOWS\system32\imapi.exe
      [05-SERVICE]**iPod Service -/- C:\Program Files\iPod\bin\iPodService.exe
      [05-SERVICE]**lanmanserver -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\srvsvc.dll
      [05-SERVICE]**lanmanworkstation -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wkssvc.dll
      [05-SERVICE]**LmHosts -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\lmhsvc.dll
      [05-SERVICE]**Messenger -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\msgsvc.dll
      [05-SERVICE]**mnmsrvc -/- C:\WINDOWS\system32\mnmsrvc.exe
      [05-SERVICE]**MSDTC -/- C:\WINDOWS\system32\msdtc.exe
      [05-SERVICE]**MSIServer -/- C:\WINDOWS\system32\msiexec.exe /V
      [05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\qagentrt.dll
      [05-SERVICE]**Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZinw12.dll
      [05-SERVICE]**NetDDE -/- C:\WINDOWS\system32\netdde.exe
      [05-SERVICE]**NetDDEdsdm -/- C:\WINDOWS\system32\netdde.exe
      [05-SERVICE]**Netlogon -/- C:\WINDOWS\system32\lsass.exe
      [05-SERVICE]**Netman -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\netman.dll
      [05-SERVICE]**NetTcpPortSharing -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
      [05-SERVICE]**Nla -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mswsock.dll
      [05-SERVICE]**NtLmSsp -/- C:\WINDOWS\system32\lsass.exe
      [05-SERVICE]**NtmsSvc -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\ntmssvc.dll
      [05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
      [05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
      [05-SERVICE]**PlugPlay -/- C:\WINDOWS\system32\services.exe
      [05-SERVICE]**Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -k HPZ12 -/- C:\WINDOWS\system32\HPZipm12.dll
      [05-SERVICE]**PolicyAgent -/- C:\WINDOWS\system32\lsass.exe
      [05-SERVICE]**ProtectedStorage -/- C:\WINDOWS\system32\lsass.exe
      [05-SERVICE]**RasAuto -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasauto.dll
      [05-SERVICE]**RasMan -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\rasmans.dll
      [05-SERVICE]**RDSessMgr -/- C:\WINDOWS\system32\sessmgr.exe
      [05-SERVICE]**RemoteAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\mprdim.dll
      [05-SERVICE]**RemoteRegistry -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\system32\regsvc.dll
      [05-SERVICE]**RpcLocator -/- C:\WINDOWS\system32\locator.exe
      [05-SERVICE]**RpcSs -/- C:\WINDOWS\system32\svchost -k rpcss -/- C:\WINDOWS\system32\rpcss.dll
      [05-SERVICE]**RSVP -/- C:\WINDOWS\system32\rsvp.exe
      [05-SERVICE]**SamSs -/- C:\WINDOWS\system32\lsass.exe
      [05-SERVICE]**SCardSvr -/- C:\WINDOWS\system32\scardsvr.exe
      [05-SERVICE]**Schedule -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\schedsvc.dll
      [05-SERVICE]**seclogon -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\seclogon.dll
      [05-SERVICE]**SENS -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\sens.dll
      [05-SERVICE]**SharedAccess -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\ipnathlp.dll
      [05-SERVICE]**ShellHWDetection -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
      [05-SERVICE]**Spooler -/- C:\WINDOWS\system32\spoolsv.exe
      [05-SERVICE]**srservice -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\srsvc.dll
      [05-SERVICE]**SSDPSRV -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\ssdpsrv.dll
      [05-SERVICE]**stisvc -/- C:\WINDOWS\system32\svchost.exe -k imgsvc -/- C:\WINDOWS\system32\wiaservc.dll
      [05-SERVICE]**SwPrv -/- C:\WINDOWS\system32\dllhost.exe /Processid:{69F8E583-4366-45DB-8EDE-33386712E8E2}
      [05-SERVICE]**SysmonLog -/- C:\WINDOWS\system32\smlogsvc.exe
      [05-SERVICE]**TapiSrv -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\tapisrv.dll
      [05-SERVICE]**TermService -/- C:\WINDOWS\System32\svchost -k DComLaunch -/- C:\WINDOWS\System32\termsrv.dll
      [05-SERVICE]**Themes -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\shsvcs.dll
      [05-SERVICE]**TlntSvr -/- C:\WINDOWS\system32\tlntsvr.exe
      [05-SERVICE]**TrkWks -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\trkwks.dll
      [05-SERVICE]**upnphost -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\upnphost.dll
      [05-SERVICE]**UPS -/- C:\WINDOWS\system32\ups.exe
      [05-SERVICE]**V3Svc -/- C:\Program Files\AhnLab\V3IS90\ASDSvc.exe
      [05-SERVICE]**VSS -/- C:\WINDOWS\system32\vssvc.exe
      [05-SERVICE]**W32Time -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\w32time.dll
      [05-SERVICE]**WebClient -/- C:\WINDOWS\system32\svchost.exe -k LocalService -/- C:\WINDOWS\System32\webclnt.dll
      [05-SERVICE]**winmgmt -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wbem\WMIsvc.dll
      [05-SERVICE]**WmdmPmSN -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\MsPMSNSv.dll
      [05-SERVICE]**Wmi -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\advapi32.dll
      [05-SERVICE]**WmiApSrv -/- C:\WINDOWS\system32\wbem\wmiapsrv.exe
      [05-SERVICE]**WMPNetworkSvc -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
      [05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
      [05-SERVICE]**wscsvc -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wscsvc.dll
      [05-SERVICE]**wuauserv -/- C:\WINDOWS\system32\svchost.exe -k netsvcs -/- C:\WINDOWS\system32\wuauserv.dll
      [05-SERVICE]**WudfSvc -/- C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup -/- C:\WINDOWS\System32\WUDFSvc.dll
      [05-SERVICE]**WZCSVC -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\wzcsvc.dll
      [05-SERVICE]**xmlprov -/- C:\WINDOWS\System32\svchost.exe -k netsvcs -/- C:\WINDOWS\System32\xmlprov.dll
      [06-TASKLST]**Adobe Flash Player Updater -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
      [06-TASKLST]**AppleSoftwareUpdate -/- C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
      [06-TASKLST]**Microsoft Windows XP 서비스 중단 알림 로그인 -/- C:\WINDOWS\system32\xp_eos.exe -c
      [06-TASKLST]**월별 Microsoft Windows XP 서비스 중단 알림 -/- C:\WINDOWS\system32\xp_eos.exe
      [16-SEARCHS]**{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -/- http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
      [16-SEARCHS]**{13F8A7E6-2EDE-4bf5-BF99-939A6CAAA637} -/- http://gsp.gomtv.com/rd?version=111&sid=0&bypass=1&keyword={searchTerms}
      [16-SEARCHS]**{8AF268BF-A11B-45d1-A67A-65BDEA013148} -/- http://search.nate.com/search/search.asp?SearchField=1&q={searchTerms}&query={searchTerms}
      [16-SEARCHS]**{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} -/- http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=101&systemid=488&v=n11470-311&apn_uid=3241229067544048&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
      [17-CONTEXT]**Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
      [17-CONTEXT]**Microsoft Excel로 내보내기(&X) -/- res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
      [17-CONTEXT]**기존 PDF에 추가 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
      [17-CONTEXT]**링크 대상을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
      [17-CONTEXT]**링크 대상을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
      [17-CONTEXT]**선택 영역을 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
      [17-CONTEXT]**선택 영역을 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
      [17-CONTEXT]**선택한 링크를 Adobe PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
      [17-CONTEXT]**선택한 링크를 기존 PDF로 변환 -/- res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
      [18-EXTRABT]**{92780B25-18CC-41C8-B9BE-3C9C571A8263} -/- N.A
      [18-EXTRABT]**{e2e2dd38-d088-4134-82b7-f2ba38496583} -/- %windir%\Network Diagnostic\xpnetdiag.exe
      [18-EXTRABT]**{FB5F1910-F110-11d2-BB9E-00C04F795683} -/- C:\Program Files\Messenger\msmsgs.exe
      [18-EXTRABT]**CmdMapping -/- N.A
      [21-SHELLFI]**AcShellExtension.AcContextMenuHandler -/- C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll
      [21-SHELLFI]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
      [21-SHELLFI]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
      [21-SHELLFI]**DLLRegSvr -/- C:\Program Files\SK Communications\NATEON\BIN\SMailExt.dll
      [22-SHELLDX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
      [29-SHELLDI]**Hwp.Print -/- 한글 문서(Hwp) 인쇄(&P)
      [30-SHELLFX]**Adobe.Acrobat.ContextMenu -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat Elements\ContextMenu.dll
      [30-SHELLFX]**ALZip -/- C:\Program Files\ESTsoft\ALZip\AZCTM.dll
      [38-HANDLER]**ms-help -/- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
      [38-HANDLER]**s-http -/- C:\Program Files\Initech\SHTTP\InitechSHTTPInterface.11015.dll
      [39-HOMEPAG]**http://www.google.com -/- If LEAVE IT CHECKED, Set your IE homepage
      [40-WNLOGON]**[HKLM.DEFAULT] -/- Shell : Explorer.exe / Userinit : C:\WINDOWS\system32\userinit.exe,
      [41-APPINIT]**[DEFAULT] -/- AppInit_DLLs :
      [42-RMHOSTS]**[DEFAULT] -/- If LEAVE IT CHECKED, Delete the %WINDIR%\system32\drivers\etc\hosts file and create default hosts file.

      ----------------------------------------------------------------------