Code : 25l/dVzb/QrW7RDiwE3q1mlu6tdBPBY2Sc0PhalMhBo=
[00-PROCESS]**cmd -/- C:\WINDOWS\system32\cmd.exe
[00-PROCESS]**conime -/- C:\WINDOWS\Tasks\conime.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[00-PROCESS]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[00-PROCESS]**entering-se -/- C:\WINDOWS\system32\entering-se.exe
[00-PROCESS]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[00-PROCESS]**Hwp -/- C:\HNC\Hwp70\Hwp.exe
[00-PROCESS]**ie_signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\ie_signkey.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**internetdownload_se -/- C:\WINDOWS\system32\internetdownload_se.exe
[00-PROCESS]**IProtect -/- C:\Program Files\IProtect\IProtect.exe
[00-PROCESS]**IProtectUpdate -/- C:\Program Files\IProtect\IProtectUpdate.exe
[00-PROCESS]**mbox -/- C:\Program Files\displaylink\mbox.exe
[00-PROCESS]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**msfeedssync -/- C:\WINDOWS\system32\msfeedssync.exe
[00-PROCESS]**msfsvc -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[00-PROCESS]**NATEONMain -/- C:\Program Files\NATEON\BIN\NATEONMain.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[00-PROCESS]**nmnewmgr -/- C:\Program Files\addendum_sb\nmnewmgr.exe
[00-PROCESS]**nmnewup -/- C:\Program Files\addendum_sb\nmnewup.exe
[00-PROCESS]**npkcmsvc -/- C:\Program Files\PlayNC\nctalk\npkcrypt\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**realsched -/- C:\Program Files\Real\RealPlayer\update\realsched.exe
[00-PROCESS]**realupgrade -/- C:\Program Files\Real\RealUpgrade\realupgrade.exe
[00-PROCESS]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[00-PROCESS]**smartmode_se -/- C:\WINDOWS\system32\smartmode_se.exe
[00-PROCESS]**userinforesetupdate -/- C:\WINDOWS\userinforesetupdate.exe
[00-PROCESS]**weblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblink.exe
[00-PROCESS]**weblinkup -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\Fileham.com\FileHam(fast)\WinCloud.exe
[00-PROCESS]**windowstab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstab.exe
[00-PROCESS]**windowstabup -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[00-PROCESS]**winst -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**wscntfy -/- C:\WINDOWS\system32\wscntfy.exe
[01-HKCUREG]**ctdata -/- C:\Documents and Settings\Administrator\LOCALS~1\Temp\data.exe
[01-HKCUREG]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[01-HKCUREG]**iniweblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[01-HKCUREG]**IProtect -/- C:\Program Files\IProtect\IProtectUpdate.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**mbox -/- C:\Program Files\displaylink\mbox.exe
[01-HKCUREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**nmnew -/- C:\Program Files\addendum_sb\nmnewup.exe
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[01-HKCUREG]**TkBellExe -/- C:\Program Files\Real\RealPlayer\update\realsched.exe -osboot
[01-HKCUREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[01-HKCUREG]**WindowsTab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[01-HKCUREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe UPDATE
[01-HKCUREG]**winsigntool -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe update
[02-HKLMREG]**ctdata -/- C:\Documents and Settings\Administrator\LOCALS~1\Temp\data.exe
[02-HKLMREG]**displaylink -/- C:\Program Files\displaylink\displaylink.exe
[02-HKLMREG]**iniweblink -/- C:\Documents and Settings\Administrator\Application Data\iniweblink\weblinkup.exe
[02-HKLMREG]**IProtect -/- C:\Program Files\IProtect\IProtectUpdate.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**mbox -/- C:\Program Files\displaylink\mbox.exe
[02-HKLMREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**nmnew -/- C:\Program Files\addendum_sb\nmnewup.exe
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[02-HKLMREG]**TkBellExe -/- C:\Program Files\Real\RealPlayer\update\realsched.exe -osboot
[02-HKLMREG]**webManager.exe -/- C:\Program Files\webManager\webManager.exe
[02-HKLMREG]**WindowsTab -/- C:\Documents and Settings\Administrator\Application Data\WindowsTab\windowstabup.exe
[02-HKLMREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe UPDATE
[02-HKLMREG]**winsigntool -/- C:\Documents and Settings\Administrator\Application Data\winsigntool\winst.exe update
[03-BHOCLSD]**{AB705622-B25B-491B-A6BF-4A46FDDBC88E} -/- C:\WINDOWS\system32\kakutk.dll
[04-TOOLBAR]**{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9} -/- C:\PROGRA~1\WingGo\winggo.dll
[04-TOOLBAR]**{EB291D96-1D76-450D-90E4-BE798BA796E8} -/- C:\Program Files\smartmode\smartmode.dll
[05-SERVICE]**3RUmYAM9 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\c85oCu.pic
[05-SERVICE]**enteringservice -/- C:\WINDOWS\system32\entering-se.exe
[05-SERVICE]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[05-SERVICE]**InternetDownload Update Service -/- C:\WINDOWS\system32\internetdownload_se.exe
[05-SERVICE]**msfsvc32 -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[05-SERVICE]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**npggsvc -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- C:\Program Files\PlayNC\nctalk\npkcrypt\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**NVSvc -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**nvUpdatusService -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**SmartMode Update Service -/- C:\WINDOWS\system32\smartmode_se.exe
[05-SERVICE]**V3 Lite Service -/-
[05-SERVICE]**WinCloud -/- C:\Program Files\Fileham.com\FileHam(fast)\WinCloud.exe
[05-SERVICE]**windowfaster Update Service -/- C:\WINDOWS\userinforesetupdate.exe
[05-SERVICE]**WindowsDriver -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WindowsDriver.dll
[05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe