프로그램분석

Code : t73H9x8Gr8SncRwLNLJhVpvjh1AP1d1z

프로세스 천국 2013. 4. 18. 22:33

[00-PROCESS]**adInstall_ad039 -/- C:\Windows\adInstall_ad039.exe
[00-PROCESS]**checkscan -/- C:\Program Files\checkscan\checkscan.exe
[00-PROCESS]**checkscanEngine -/- C:\Program Files\checkscan\checkscanEngine.exe
[00-PROCESS]**checkscanse -/- C:\Program Files\checkscan\checkscanse.exe
[00-PROCESS]**checkscansetup_fastrealm -/- C:\Windows\checkscansetup_fastrealm.exe
[00-PROCESS]**checkscanU -/- C:\Program Files\checkscan\checkscanU.exe
[00-PROCESS]**gongoo -/- C:\Windows\gongoo.exe
[00-PROCESS]**IETab -/- C:\Program Files\IETab\IETab.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneSetup_66_hide -/- C:\Windows\ISZoneSetup_66_hide.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**microab -/- C:\Users\Administrator\AppData\Roaming\microadbar\microab.exe
[00-PROCESS]**microadbar018 -/- C:\Windows\microadbar018.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RaclSetup_tjco001 -/- C:\Windows\RaclSetup_tjco001.exe
[00-PROCESS]**RaclSvc -/- C:\Program Files\Racl\RaclSvc.exe
[00-PROCESS]**RaclUninst -/- C:\Program Files\Racl\RaclUninst.exe
[00-PROCESS]**uninst_checkscan -/- C:\Program Files\checkscan\uninst_checkscan.exe
[00-PROCESS]**uninstall_webManager -/- C:\Program Files\webManager\uninstall_webManager.exe
[00-PROCESS]**userconditionreset -/- C:\Windows\userconditionreset.exe
[00-PROCESS]**webManager -/- C:\Program Files\webManager\webManager.exe
[00-PROCESS]**webManager_code28 -/- C:\Windows\webManager_code28.exe
[00-PROCESS]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[00-PROCESS]**WindowmodusSetup_k10000 -/- C:\Windows\WindowmodusSetup_k10000.exe
[00-PROCESS]**WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**IETab -/- C:\Program Files\IETab\IETab.exe
[01-HKCUREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**microadbar -/- C:\Users\Administrator\AppData\Roaming\microadbar\microab.exe update
[01-HKCUREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[01-HKCUREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[01-HKCUREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[02-HKLMREG]**IETab -/- C:\Program Files\IETab\IETab.exe
[02-HKLMREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**microadbar -/- C:\Users\Administrator\AppData\Roaming\microadbar\microab.exe update
[02-HKLMREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[02-HKLMREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[02-HKLMREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[03-BHOCLSD]**{B60FE1D2-2F84-42a7-AE04-03284738CC24} -/- C:\Program Files\IETab\IETab.dll
[04-TOOLBAR]**{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD} -/- C:\Program Files\Racl\RaclTB.dll
[05-SERVICE]**checkscan Update Service -/- C:\Windows\userconditionreset.exe
[05-SERVICE]**checkscanService -/- C:\Program Files\checkscan\checkscanse.exe
[05-SERVICE]**NetTcpPortSharing -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**vmvss -/- C:\Windows\system32\dllhost.exe
[05-SERVICE]**WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe