애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AlipaySecSvc -/- C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**atieclxx -/- C:\Windows\system32\atieclxx.exe
[00-PROCESS]**atiesrxx -/- C:\Windows\system32\atiesrxx.exe
[00-PROCESS]**ccApp -/- C:\Program Files\Common Files\Symantec Shared\ccApp.exe
[00-PROCESS]**ccSvcHst -/- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[00-PROCESS]**D4MON_ICBC -/- C:\Windows\system32\D4MON_ICBC.exe
[00-PROCESS]**D4Ser_ICBC -/- C:\Windows\system32\D4Ser_ICBC.exe
[00-PROCESS]**D4Svr_ICBC -/- C:\Windows\System32\D4Svr_ICBC.exe
[00-PROCESS]**EXCEL -/- C:\Program Files\Microsoft Office\Office14\EXCEL.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**HPSIsvc -/- C:\Windows\system32\HPSIsvc.exe
[00-PROCESS]**ibmpmsvc -/- C:\Windows\system32\ibmpmsvc.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMECMNT -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMECMNT.EXE
[00-PROCESS]**IMEDICTUPDATE -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\microsoft shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\apps\iTunes\iTunesHelper.exe
[00-PROCESS]**iTunesHelper -/- C:\Apps\iTunes\iTunesHelper.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**LUCOMS~1 -/- C:\Program Files\Symantec\LiveUpdate\LUCOMS~1.EXE
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**MSASCui -/- C:\Program Files\Windows Defender\MSASCui.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**OUTLOOK -/- C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
[00-PROCESS]**QQ -/- C:\Apps\Tencent\QQ\bin\QQ.exe
[00-PROCESS]**QQExternal -/- C:\Apps\Tencent\QQ\bin\QQExternal.exe
[00-PROCESS]**QQProtect -/- C:\Apps\Tencent\QQ\QQProtect\Bin\QQProtect.exe
[00-PROCESS]**RSoPProv -/- C:\Windows\system32\RSoPProv.exe
[00-PROCESS]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
[00-PROCESS]**Rtvscan -/- C:\apps\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[00-PROCESS]**SangforPromoteService -/- C:\Program Files\Sangfor\SSL\Promote\SangforPromoteService.exe
[00-PROCESS]**SLsvc -/- C:\Windows\system32\SLsvc.exe
[00-PROCESS]**SmartInfoAgent -/- C:\apps\SogouInput\Components\SmartInfo\1.0.0.155\SmartInfoAgent.exe
[00-PROCESS]**Smc -/- C:\apps\Symantec\Symantec Endpoint Protection\Smc.exe
[00-PROCESS]**SmcGui -/- C:\apps\Symantec\Symantec Endpoint Protection\SmcGui.exe
[00-PROCESS]**SNAC -/- C:\apps\Symantec\Symantec Endpoint Protection\SNAC.EXE
[00-PROCESS]**SogouCloud -/- C:\apps\SogouInput\7.0.0.9420\SogouCloud.exe
[00-PROCESS]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[00-PROCESS]**SYNTPHELPER -/- C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
[00-PROCESS]**SynTPLpr -/- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
[00-PROCESS]**TdxW -/- C:\new_wukuang\TdxW.exe
[00-PROCESS]**TenpayServer -/- C:\Program Files\Common Files\tencent\paycenter\TenpayServer.exe
[00-PROCESS]**TOTALCMD -/- C:\Apps\totalcmd\TOTALCMD.EXE
[00-PROCESS]**TpShocks -/- C:\Windows\System32\TpShocks.exe
[00-PROCESS]**TXPlatform -/- C:\Apps\Tencent\QQ\bin\TXPlatform.exe
[00-PROCESS]**UAAService -/- C:\Program Files\LeagSoft\UniAccess Agent\UAAService.exe
[00-PROCESS]**UniAccessAgent -/- C:\Program Files\LeagSoft\UniAccess Agent\UniAccessAgent.exe
[00-PROCESS]**wandoujia_adb -/- C:\Users\Administrator\AppData\Roaming\Wandoujia2\Applications\2.54.0.2700\wandoujia_adb.exe
[00-PROCESS]**wandoujia_helper -/- C:\Users\Administrator\AppData\Roaming\Wandoujia2\Applications\2.54.0.2700\wandoujia_helper.exe
[00-PROCESS]**wordbook -/- C:\Apps\Youdao\Dict\5.4.43.3217\wordbook.exe
[00-PROCESS]**YodaoDict -/- C:\Apps\Youdao\Dict\YodaoDict.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[01-HKCUREG]**ccApp -/- C:\Program Files\Common Files\Symantec Shared\ccApp.exe
[01-HKCUREG]**D4Svr_ICBC.exe -/- D4Svr_ICBC.exe
[01-HKCUREG]**DBank_ClickUp -/- C:\Program Files\DBank\ClickUp\DBank_ClickUp.exe
[01-HKCUREG]**IME14 CHS Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /CHS /Log
[01-HKCUREG]**ISUSPM -/-  -scheduler
[01-HKCUREG]**iTunesHelper -/- C:\apps\iTunes\iTunesHelper.exe
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[01-HKCUREG]**TpShocks -/- TpShocks.exe
[01-HKCUREG]**Windows Defender -/- C:\Program Files\Windows Defender\MSASCui.exe -hide
[01-HKCUREG]**YodaoDict -/- C:\Apps\Youdao\Dict\YodaoDict.exe -hide -autostart
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[02-HKLMREG]**ccApp -/- C:\Program Files\Common Files\Symantec Shared\ccApp.exe
[02-HKLMREG]**D4Svr_ICBC.exe -/- D4Svr_ICBC.exe
[02-HKLMREG]**DBank_ClickUp -/- C:\Program Files\DBank\ClickUp\DBank_ClickUp.exe
[02-HKLMREG]**IME14 CHS Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /CHS /Log
[02-HKLMREG]**ISUSPM -/-  -scheduler
[02-HKLMREG]**iTunesHelper -/- C:\apps\iTunes\iTunesHelper.exe
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[02-HKLMREG]**TpShocks -/- TpShocks.exe
[02-HKLMREG]**Windows Defender -/- C:\Program Files\Windows Defender\MSASCui.exe -hide
[02-HKLMREG]**YodaoDict -/- C:\Apps\Youdao\Dict\YodaoDict.exe -hide -autostart
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**BHOImpl Class -/- C:\Users\Administrator\Documents\iTools\Plugin\iToolsBHO.dll -/- {E1499FE7-129D-4B6E-B681-DDF21E14172C}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre7\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**QQDownload IE Left Helper -/- C:\apps\Tencent\QQDownload\QQIEHelper01.dll -/- {00000000-12C9-4305-82F9-43058F20E8D2}
[03-BHOCLSD]**SangforIEBHO Class -/- C:\Program Files\Sangfor\SSL\ClientComponent\SangforBHO.dll -/- {FFD2FD1F-C991-4A2F-8557-CDB11E275900}
[03-BHOCLSD]**豌豆荚 apk 安装器 -/- C:\apps\WandouLabs\wandoujia_bho.dll -/- {000DA090-57AA-424B-A8F0-621B7C08B8F4}
[04-TOOLBAR]**N.A -/- N.A -/- Locked
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**AlipaySecSvc -/- Alipay security service -/- C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe
[05-SERVICE]**AMD External Events Utility -/- AMD External Events Utility -/- C:\Windows\system32\atiesrxx.exe
[05-SERVICE]**AppHostSvc -/- Application Host Helper Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\inetsrv\apphostsvc.dll
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Bonjour Service -/- Bonjour 服务 -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**ccEvtMgr -/- Symantec Event Manager -/- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**ccSetMgr -/- Symantec Settings Manager -/- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**Dhcp -/- DHCP Client -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\dhcpcsvc.dll
[05-SERVICE]**FCRegSvc -/- Microsoft Fibre Channel Platform Registration Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FCRegSvc.dll
[05-SERVICE]**FDResPub -/- Function Discovery Resource Publication -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\fdrespub.dll
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**gpsvc -/- Group Policy Client -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\gpsvc.dll
[05-SERVICE]**HPSIService -/- HP SI Service -/- C:\Windows\system32\HPSIsvc.exe
[05-SERVICE]**IBMPMSVC -/- Lenovo PM Service -/- C:\Windows\system32\ibmpmsvc.exe
[05-SERVICE]**ImeDictUpdateService -/- Microsoft IME Dictionary Update -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[05-SERVICE]**iPod Service -/- iPod 服务 -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**KtmRm -/- KtmRm for Distributed Transaction Coordinator -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\msdtckrm.dll
[05-SERVICE]**LanmanWorkstation -/- Workstation -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\wkssvc.dll
[05-SERVICE]**LiveUpdate -/- LiveUpdate -/- C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
[05-SERVICE]**msiserver -/- Windows Installer -/- C:\Windows\system32\msiexec
[05-SERVICE]**NetMsmqActivator -/- Net.Msmq Listener Adapter -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe -NetMsmqActivator
[05-SERVICE]**NetPipeActivator -/- Net.Pipe Listener Adapter -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpActivator -/- Net.Tcp Listener Adapter -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**OnKey Service _ICBC -/- OnKey Service _ICBC -/- C:\Windows\system32\D4Ser_ICBC.exe
[05-SERVICE]**ose -/- Office  Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**QQCertificateService -/- Tenpay Certificate Service -/- C:\Program Files\Common Files\tencent\paycenter\TenpayServer.exe
[05-SERVICE]**RSoPProv -/- Resultant Set of Policy Provider -/- C:\Windows\system32\RSoPProv.exe
[05-SERVICE]**sacsvr -/- Special Administration Console Helper -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\sacsvr.dll
[05-SERVICE]**SangforSP -/- SangforSP -/- C:\Program Files\Sangfor\SSL\Promote\SangforPromoteService.exe
[05-SERVICE]**SCardSvr -/- Smart Card -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\SCardSvr.dll
[05-SERVICE]**slsvc -/- Software Licensing -/- C:\Windows\system32\SLsvc.exe
[05-SERVICE]**SLUINotify -/- SL UI Notification Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\SLUINotify.dll
[05-SERVICE]**SmcService -/- Symantec Management Client -/- C:\apps\Symantec\Symantec Endpoint Protection\Smc.exe
[05-SERVICE]**SNAC -/- Symantec Network Access Control -/- C:\apps\Symantec\Symantec Endpoint Protection\SNAC.EXE
[05-SERVICE]**Symantec AntiVirus -/- Symantec Endpoint Protection -/- C:\apps\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[05-SERVICE]**TabletInputService -/- Tablet PC Input Service -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\TabSvc.dll
[05-SERVICE]**TapiSrv -/- Telephony -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\tapisrv.dll
[05-SERVICE]**TBS -/- TPM Base Services -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\tbssvc.dll
[05-SERVICE]**TPHDEXLGSVC -/- ThinkPad HDD APS Logging Service -/- System32\TPHDEXLG.exe
[05-SERVICE]**UniAccessAgent -/- UniAccessAgent -/- C:\Program Files\LeagSoft\UniAccess Agent\UAAService.exe
[05-SERVICE]**UniRemoteServer -/- UniRemoteServer -/- C:\Program Files\LeagSoft\UniAccess Agent\UniRemote.exe -service
[05-SERVICE]**WAS -/- Windows Process Activation Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\inetsrv\iisw3adm.dll
[05-SERVICE]**WdiServiceHost -/- Diagnostic Service Host -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\wdi.dll
[05-SERVICE]**WebClient -/- WebClient -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\webclnt.dll
[05-SERVICE]**Wlansvc -/- WLAN AutoConfig -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\wlansvc.dll
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 5. 10. 16:05 ] Posted by 프로세스 천국 , 프로그램분석
,