프로그램분석

Code : GhsW4Go9h2/vLfzet29hCczAcG0xwk22

프로세스 천국 2013. 5. 1. 21:19

[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**aostray -/- C:\Program Files\AhnLab\ASP\Smart Update i\aostray.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**ASPLnchr -/- C:\Program Files\AhnLab\ASP\Components\ASPLnchr.exe
[00-PROCESS]**atbsvc -/- C:\Program Files\ESTsoft\ALToolBar\atbsvc.exe
[00-PROCESS]**ccSvcHst -/- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
[00-PROCESS]**CommonAgent -/- C:\Program Files\Samsung\S Agent\CommonAgent.exe
[00-PROCESS]**CVHSVC -/- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[00-PROCESS]**EasyButtonManager -/- C:\Program Files\Samsung\Easy Settings\EasyButtonManager.exe
[00-PROCESS]**EasySpeedUpManager -/- C:\Program Files\Samsung\Easy Settings\EasySpeedUpManager.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**HncViewerChecker -/- C:\Program Files\HNC\HOfficeViewer80\HncUtils\HncViewerChecker.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**ImageSAFERStart_X64 -/- C:\windows\system32\ImageSAFERStart_X64.exe
[00-PROCESS]**ImageSAFERStart_X86 -/- C:\windows\system32\ImageSAFERStart_X86.exe
[00-PROCESS]**ImageSAFERSvc -/- C:\windows\ImageSAFERSvc.exe
[00-PROCESS]**infocard -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**InstHelper -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe
[00-PROCESS]**mkd25tray -/- C:\Program Files\AhnLab\ASP\MyKeyDefense 2.5\mkd25tray.exe
[00-PROCESS]**MovieColorEnhancer -/- C:\Program Files\Samsung\Easy Settings\MovieColorEnhancer.exe
[00-PROCESS]**mscorsvw -/- C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**NCleanService -/- C:\Program Files\naver\NaverCleaner\NCleanService.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\BonDisk.com\Bondisk(normal)\NetAccelerator.exe
[00-PROCESS]**NOBuAgent -/- C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
[00-PROCESS]**npkcmsvc -/- C:\windows\system32\npkcmsvc.exe
[00-PROCESS]**nvtray -/- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
[00-PROCESS]**nvvsvc -/- C:\windows\system32\nvvsvc.exe
[00-PROCESS]**nvxdsync -/- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**PresentationFontCache -/- C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[00-PROCESS]**sftlist -/- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
[00-PROCESS]**sftvsa -/- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
[00-PROCESS]**SmartRestarter -/- C:\Program Files\Samsung\Easy Settings\SmartRestarter.exe
[00-PROCESS]**SSCKbdHk -/- C:\Program Files\Samsung\Easy Support Center\SSCKbdHk.exe
[00-PROCESS]**SteamService -/- C:\Program Files\Common Files\Steam\SteamService.exe
[00-PROCESS]**WatAdminSvc -/- C:\windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**WCScheduler -/- C:\Program Files\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
[00-PROCESS]**wlcrasvc -/- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
[00-PROCESS]**WLIDSVC -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[00-PROCESS]**WLIDSvcM -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[01-HKCUREG]**HOfficeViewerUpdate -/- C:\Program Files\HNC\HOfficeViewer80\HncUtils\HncViewerChecker.exe
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[02-HKLMREG]**HOfficeViewerUpdate -/- C:\Program Files\HNC\HOfficeViewer80\HncUtils\HncViewerChecker.exe
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[03-BHOCLSD]**{000011A1-74C9-4c7e-9B4E-59B5765CF409} -/- c:\program files\naver\navertoolbar\naversafeguard\nsafeguard_2013_3_11_1.dll
[03-BHOCLSD]**{18DF081C-E8AD-4283-A596-FA578C2EBDC3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
[03-BHOCLSD]**{1AB2CFE4-D6CC-4588-A4EF-EE98B8249883} -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsynchelper.dll
[03-BHOCLSD]**{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -/- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
[03-BHOCLSD]**{67C41E9E-2EBF-4F2B-AF74-314F0D793172} -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_16_241.dll
[03-BHOCLSD]**{6D53EC84-6AAE-4787-AEEE-F4628F01010C} -/- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
[03-BHOCLSD]**{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -/- C:\Program Files\Java\jre7\bin\ssv.dll
[03-BHOCLSD]**{7F1A79F9-78D1-4186-9F60-EE0B63DF042A} -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3040.dll
[03-BHOCLSD]**{9030D464-4C02-4ABF-8ECC-5164760863C6} -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[03-BHOCLSD]**{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA} -/- C:\Program Files\FreeWebToon\FreeWebToonCtrl.dll
[03-BHOCLSD]**{AA58ED58-01DD-4d91-8333-CF10577473F7} -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
[03-BHOCLSD]**{AA58ED58-01DD-4d91-8333-CF10577473F7} -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_64.dll
[03-BHOCLSD]**{C1C92372-4705-4020-998B-D1E5E95716C3} -/- N.A
[03-BHOCLSD]**{DBC80044-A445-435b-BC74-9C25C1C588A9} -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll
[03-BHOCLSD]**{FE14A4CA-5CFA-4C05-9274-6006397B68C9} -/- C:\Program Files\SearchN\SearchN.dll
[04-TOOLBAR]**{2318C2B1-4965-11d4-9B18-009027A5CD4F} -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
[04-TOOLBAR]**{2318C2B1-4965-11d4-9B18-009027A5CD4F} -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_64.dll
[04-TOOLBAR]**{38FBE93D-4CA1-4414-AF6A-94920C5BD8DA} -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3040.dll
[04-TOOLBAR]**{41ED1FD7-8C37-4806-AF9E-D5238A30E56F} -/- C:\Program Files\Speller\SpellerCtrl.dll
[04-TOOLBAR]**{5402F30A-DE34-4240-A594-132217F7D52D} -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsynchelper.dll
[04-TOOLBAR]**{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -/- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
[04-TOOLBAR]**{D09CFF09-A42A-4EDC-9804-E61224F59CA1} -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_16_241.dll
[04-TOOLBAR]**Locked -/- N.A
[05-SERVICE]**AdobeARMservice -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**clr_optimization_v2.5.20121_86 -/- C:\windows\System32\svchost.exe
[05-SERVICE]**ctwopop -/- C:\Program Files\ctserv\ctserv.exe
[05-SERVICE]**cvhsvc -/- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
[05-SERVICE]**FontCache -/- C:\windows\system32\svchost.exe -/- C:\windows\system32\FntCache.dll
[05-SERVICE]**FreeWebToon -/- C:\Program Files\FreeWebToon\FWTChkSvc.exe
[05-SERVICE]**gupdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**Image Protection -/- C:\windows\ImageSAFERSvc.exe
[05-SERVICE]**NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NCleanService -/- C:\Program Files\naver\NaverCleaner\NCleanService.exe
[05-SERVICE]**NetAccelerator -/- C:\Program Files\BonDisk.com\Bondisk(normal)\NetAccelerator.exe
[05-SERVICE]**NetTcpPortSharing -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NIS -/- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
[05-SERVICE]**NOBU -/- C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE
[05-SERVICE]**npggsvc -/- C:\windows\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- C:\windows\system32\npkcmsvc.exe
[05-SERVICE]**nvsvc -/- C:\windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**PerfHost -/- C:\windows\system32\perfhost.exe
[05-SERVICE]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[05-SERVICE]**SearchN -/- C:\Program Files\SearchN\SNChkSvc.exe
[05-SERVICE]**sftlist -/- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
[05-SERVICE]**sftvsa -/- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
[05-SERVICE]**Steam Client Service -/- C:\Program Files\Common Files\Steam\SteamService.exe
[05-SERVICE]**wlcrasvc -/- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
[05-SERVICE]**wlidsvc -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[05-SERVICE]**xsherlock -/- C:\windows\system32\xsherlock.xem