프로그램분석

Code : sFkYkTWSE7yzibmcH7zmOAGC3sruZtyojKUSGbJW7fc=

프로세스 천국 2013. 4. 16. 17:53

[00-PROCESS]**64barsvc -/- C:\Program Files\TelevisionFanatic\bar\1.bin\64barsvc.exe
[00-PROCESS]**64brmon -/- C:\Program Files\TelevisionFanatic\bar\1.bin\64brmon.exe
[00-PROCESS]**64srchmn -/- C:\Program Files\TelevisionFanatic\bar\1.bin\64srchmn.exe
[00-PROCESS]**82barsvc -/- C:\Program Files\PhotoFriendzy_82\bar\1.bin\82barsvc.exe
[00-PROCESS]**82brmon -/- C:\Program Files\PhotoFriendzy_82\bar\1.bin\82brmon.exe
[00-PROCESS]**82srchmn -/- C:\Program Files\PhotoFriendzy_82\bar\1.bin\82srchmn.exe
[00-PROCESS]**APCONSVC -/- C:\Program Files\Net Protector 2013\APPCON\APCONSVC.EXE
[00-PROCESS]**E_FATIHYP -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHYP.EXE
[00-PROCESS]**EMAILSCN -/- C:\Program Files\Net Protector 2013\EMAIL SCAN\EMAILSCN.EXE
[00-PROCESS]**firefox -/- C:\Program Files\Mozilla Firefox\firefox.exe
[00-PROCESS]**FlashPlayerPlugin_11_7_700_169 -/- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe
[00-PROCESS]**IEMonitor -/- C:\Program Files\Internet Download Manager\IEMonitor.exe
[00-PROCESS]**McCHSvc -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[00-PROCESS]**NPAV4 -/- C:\Program Files\Net Protector 2013\NPAV4.EXE
[00-PROCESS]**NPProt -/- C:\Users\Administrator\NPProt.exe
[00-PROCESS]**plugin-container -/- C:\Program Files\Mozilla Firefox\plugin-container.exe
[00-PROCESS]**RTDETECT -/- C:\Program Files\Net Protector 2013\RTDETECT.EXE
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**SSScheduler -/- C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**ZVMonNt -/- C:\Program Files\Net Protector 2013\ZVScan\ZVMonNt.exe
[00-PROCESS]**ZVMOUNT -/- C:\Program Files\Net Protector 2013\ZVMOUNT.EXE
[01-HKCUREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
[01-HKCUREG]**EPLTarget\P0000000000000000 -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHYP.EXE /EPT EPLTarget\P0000000000000000 /M PictureMate PM 245
[01-HKCUREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[01-HKCUREG]**NPAV4 -/- C:\PROGRAM FILES\NET PROTECTOR 2013\NPAV4.exe
[01-HKCUREG]**NpRootKt Detector -/- C:\PROGRA~1\NETPRO~1\RTDETECT.EXE /root
[01-HKCUREG]**PhotoFriendzy Search Scope Monitor -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82srchmn.exe /m=2 /w /h
[01-HKCUREG]**PhotoFriendzy_82 Browser Plugin Loader -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82brmon.exe
[01-HKCUREG]**TelevisionFanatic Browser Plugin Loader -/- C:\PROGRA~1\TELEVI~2\bar\1.bin\64brmon.exe
[01-HKCUREG]**TelevisionFanatic Search Scope Monitor -/- C:\PROGRA~1\TELEVI~2\bar\1.bin\64srchmn.exe /m=2 /w /h
[01-HKCUREG]**Zero-V Virus Shield -/- C:\Program Files\Net Protector 2013\EMAIL SCAN\EMAILSCN.EXE
[01-HKCUREG]**ZVMOUNT -/- C:\Program Files\Net Protector 2013\ZVMOUNT.EXE
[02-HKLMREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
[02-HKLMREG]**EPLTarget\P0000000000000000 -/- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHYP.EXE /EPT EPLTarget\P0000000000000000 /M PictureMate PM 245
[02-HKLMREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[02-HKLMREG]**NPAV4 -/- C:\PROGRAM FILES\NET PROTECTOR 2013\NPAV4.exe
[02-HKLMREG]**NpRootKt Detector -/- C:\PROGRA~1\NETPRO~1\RTDETECT.EXE /root
[02-HKLMREG]**PhotoFriendzy Search Scope Monitor -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82srchmn.exe /m=2 /w /h
[02-HKLMREG]**PhotoFriendzy_82 Browser Plugin Loader -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82brmon.exe
[02-HKLMREG]**TelevisionFanatic Browser Plugin Loader -/- C:\PROGRA~1\TELEVI~2\bar\1.bin\64brmon.exe
[02-HKLMREG]**TelevisionFanatic Search Scope Monitor -/- C:\PROGRA~1\TELEVI~2\bar\1.bin\64srchmn.exe /m=2 /w /h
[02-HKLMREG]**Zero-V Virus Shield -/- C:\Program Files\Net Protector 2013\EMAIL SCAN\EMAILSCN.EXE
[02-HKLMREG]**ZVMOUNT -/- C:\Program Files\Net Protector 2013\ZVMOUNT.EXE
[03-BHOCLSD]**{0055C089-8582-441B-A0BF-17B458C2A3A8} -/- C:\Program Files\Internet Download Manager\IDMIECC.dll
[03-BHOCLSD]**{4c7755e5-bc5f-4360-86f0-54627a5b5a04} -/- C:\Program Files\PhotoFriendzy_82\bar\1.bin\82SrcAs.dll
[03-BHOCLSD]**{9421DD08-935F-4701-A9CA-22DF90AC4EA6} -/- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
[03-BHOCLSD]**{9CB65201-89C4-402c-BA80-02D8C59F9B1D} -/- C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
[03-BHOCLSD]**{d1621b86-b96e-4cd7-ad79-cabc2058e26c} -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82bar.dll
[03-BHOCLSD]**{FE063DB1-4EC0-403e-8DD8-394C54984B2C} -/- C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
[04-TOOLBAR]**{00f9fafc-bfe0-42a8-be2e-c7a09c912408} -/- C:\Program Files\PhotoFriendzy_82\bar\1.bin\82bar.dll
[04-TOOLBAR]**{9421DD08-935F-4701-A9CA-22DF90AC4EA6} -/- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
[04-TOOLBAR]**{c98d5b61-b0ea-4d48-9839-1079d352d880} -/- C:\Program Files\TelevisionFanatic\bar\1.bin\64bar.dll
[04-TOOLBAR]**{FE063DB9-4EC0-403e-8DD8-394C54984B2C} -/- C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ApConSvc -/- C:\PROGRA~1\NETPRO~1\APPCON\APCONSVC.EXE
[05-SERVICE]**gusvc -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**McComponentHostService -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[05-SERVICE]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**NPVProt -/- C:\Users\Administrator\NPProt.exe
[05-SERVICE]**PhotoFriendzy_82Service -/- C:\PROGRA~1\PHOTOF~2\bar\1.bin\82barsvc.exe
[05-SERVICE]**StorSvc -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\storsvc.dll
[05-SERVICE]**TelevisionFanaticService -/- C:\PROGRA~1\TELEVI~2\bar\1.bin\64barsvc.exe
[05-SERVICE]**ZeroVProtect -/- C:\Program Files\Net Protector 2013\ZVScan\ZVMonNt.exe