프로그램분석

Code : dBydg8Mpp3JBT0h+SM4heVlgp76wC1h7grsd0WGO5jg=

프로세스 천국 2013. 4. 30. 18:33

[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**AppsUpdater -/- C:\Program Files\SoftwareUpdater\AppsUpdater.exe
[00-PROCESS]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[00-PROCESS]**BTTray -/- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[00-PROCESS]**btwdins -/- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
[00-PROCESS]**ccSvcHst -/- C:\Program Files\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
[00-PROCESS]**chrome -/- C:\Users\Administrator\AppData\Local\Google\Chrome\Application\chrome.exe
[00-PROCESS]**cmd -/- C:\windows\system32\cmd.exe
[00-PROCESS]**cronsvc -/- C:\Prey\platform\windows\cronsvc.exe
[00-PROCESS]**CVHSVC -/- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[00-PROCESS]**DCSHelper -/- C:\ProgramData\DatacardService\DCSHelper.exe
[00-PROCESS]**dllhost  -/- C:\Users\Administrator\AppData\Roaming\dllhost .exe
[00-PROCESS]**DTAgent -/- C:\Program Files\DAEMON Tools Pro\DTAgent.exe
[00-PROCESS]**DTShellHlp -/- C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
[00-PROCESS]**FacebookUpdate -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**gato -/- C:\Program Files\ScreenMates\gato.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdate -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe
[00-PROCESS]**infocard -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**Kies -/- C:\Program Files\Samsung\Kies\Kies.exe
[00-PROCESS]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe
[00-PROCESS]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[00-PROCESS]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[00-PROCESS]**kmsvc -/- C:\Program Files\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
[00-PROCESS]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[00-PROCESS]**maintenanceservice -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[00-PROCESS]**MovieColorEnhancer -/- C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
[00-PROCESS]**mscorsvw -/- C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**NOBuClient -/- C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe
[00-PROCESS]**nvvsvc -/- C:\windows\system32\nvvsvc.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**ouc -/- C:\Program Files\Banda Ancha Movil\UpdateDog\ouc.exe
[00-PROCESS]**PresentationFontCache -/- C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RAVCpl64 -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
[00-PROCESS]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[00-PROCESS]**RunDll32 -/- C:\windows\system32\RunDll32.exe
[00-PROCESS]**sftlist -/- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
[00-PROCESS]**sftvsa -/- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
[00-PROCESS]**sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe
[00-PROCESS]**SMSvcHost -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**StarterW3i -/- C:\Program Files\Driver-Soft\DriverGenius\StarterW3i.exe
[00-PROCESS]**SUPDSvc -/- C:\windows\System32\SUPDSvc.exe
[00-PROCESS]**TurboBoost -/- C:\Program Files\Intel\TurboBoost\TurboBoost.exe
[00-PROCESS]**UNS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[00-PROCESS]**Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[00-PROCESS]**UpdaterService -/- C:\Program Files\SoftwareUpdater\UpdaterService.exe
[00-PROCESS]**vikyrefwaqis -/- C:\Users\Administrator\vikyrefwaqis.exe
[00-PROCESS]**WatAdminSvc -/- C:\windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**WinRAR -/- C:\Program Files\WinRAR\WinRAR.exe
[00-PROCESS]**WLIDSVC -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**YCMMirage -/- C:\Program Files\CyberLink\YouCam\YCMMirage.exe
[01-HKCUREG]**Akamai NetSession Interface -/- C:\Users\Administrator\AppData\Local\Akamai\netsession_win.exe
[01-HKCUREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[01-HKCUREG]**DAEMON Tools Pro Agent -/- C:\Program Files\DAEMON Tools Pro\DTAgent.exe -autorun
[01-HKCUREG]**dllhost -/- C:\Users\Administrator\AppData\Roaming\dllhost .exe
[01-HKCUREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[01-HKCUREG]**Felix -/- C:\Program Files\ScreenMates\gato.exe
[01-HKCUREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[01-HKCUREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[01-HKCUREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[01-HKCUREG]**Regedit32 -/- C:\windows\system32\regedit.exe
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[01-HKCUREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[01-HKCUREG]**Starter -/- C:\Program Files\Driver-Soft\DriverGenius\StarterW3i.exe
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**vikyrefwaqis -/- C:\Users\Administrator\vikyrefwaqis.exe
[02-HKLMREG]**Akamai NetSession Interface -/- C:\Users\Administrator\AppData\Local\Akamai\netsession_win.exe
[02-HKLMREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[02-HKLMREG]**DAEMON Tools Pro Agent -/- C:\Program Files\DAEMON Tools Pro\DTAgent.exe -autorun
[02-HKLMREG]**dllhost -/- C:\Users\Administrator\AppData\Roaming\dllhost .exe
[02-HKLMREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[02-HKLMREG]**Felix -/- C:\Program Files\ScreenMates\gato.exe
[02-HKLMREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[02-HKLMREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[02-HKLMREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[02-HKLMREG]**Regedit32 -/- C:\windows\system32\regedit.exe
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[02-HKLMREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[02-HKLMREG]**Starter -/- C:\Program Files\Driver-Soft\DriverGenius\StarterW3i.exe
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**vikyrefwaqis -/- C:\Users\Administrator\vikyrefwaqis.exe
[03-BHOCLSD]**{18DF081C-E8AD-4283-A596-FA578C2EBDC3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
[03-BHOCLSD]**{58124A0B-DC32-4180-9BFF-E0E21AE34026} -/- C:\Program Files\IMinent Toolbar\tbcore3.dll
[03-BHOCLSD]**{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -/- C:\Program Files\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
[03-BHOCLSD]**{6D53EC84-6AAE-4787-AEEE-F4628F01010C} -/- C:\Program Files\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
[03-BHOCLSD]**{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -/- C:\Program Files\Java\jre7\bin\ssv.dll
[03-BHOCLSD]**{9030D464-4C02-4ABF-8ECC-5164760863C6} -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[03-BHOCLSD]**{AA609D72-8482-4076-8991-8CDAE5B93BCB} -/- C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
[03-BHOCLSD]**{DBC80044-A445-435b-BC74-9C25C1C588A9} -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll
[04-TOOLBAR]**{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -/- C:\Program Files\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
[04-TOOLBAR]**{977AE9CC-AF83-45E8-9E03-E2798216E2D5} -/- C:\Program Files\IMinent Toolbar\tbcore3.dll
[04-TOOLBAR]**Locked -/- N.A
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Banda Ancha Movil. RunOuc -/- C:\Program Files\Banda Ancha Movil\UpdateDog\ouc.exe
[05-SERVICE]**BstHdAndroidSvc -/- C:\Program Files\BlueStacks\HD-Service.exe BstHdAndroidSvc Android
[05-SERVICE]**BstHdLogRotatorSvc -/- C:\Program Files\BlueStacks\HD-LogRotatorService.exe
[05-SERVICE]**btwdins -/- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
[05-SERVICE]**CLKMSVC10_38F51D56 -/- C:\Program Files\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
[05-SERVICE]**CronService -/- C:\Prey\platform\windows\cronsvc.exe
[05-SERVICE]**cvhsvc -/- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
[05-SERVICE]**gupdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**HWDeviceService64.exe -/- C:\ProgramData\DatacardService\HWDeviceService64.exe -/service
[05-SERVICE]**iPod Service -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**lmhosts -/- C:\windows\system32\svchost.exe -/- C:\windows\System32\lltdsvc.dll
[05-SERVICE]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**MozillaMaintenance -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[05-SERVICE]**NetTcpPortSharing -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NIS -/- C:\Program Files\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
[05-SERVICE]**NlaSvc -/- C:\windows\System32\svchost.exe
[05-SERVICE]**NOBU -/- C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE
[05-SERVICE]**nsi -/- C:\windows\system32\svchost.exe
[05-SERVICE]**NVSvc -/- C:\windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**PerfHost -/- C:\windows\system32\perfhost.exe
[05-SERVICE]**PnkBstrA -/- C:\windows\system32\PnkBstrA.exe
[05-SERVICE]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[05-SERVICE]**Samsung UPD Service -/- C:\windows\System32\SUPDSvc.exe
[05-SERVICE]**sftlist -/- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
[05-SERVICE]**sftvsa -/- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
[05-SERVICE]**SkypeUpdate -/- C:\Program Files\Skype\Updater\Updater.exe
[05-SERVICE]**SrvUpdater -/- C:\Program Files\SoftwareUpdater\UpdaterService.exe
[05-SERVICE]**TurboBoost -/- C:\Program Files\Intel\TurboBoost\TurboBoost.exe
[05-SERVICE]**UNS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[05-SERVICE]**wlidsvc -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE