프로그램분석

Code : DSB7g2ElPruIB39t7vORnJxoQTUA1ihy

프로세스 천국 2013. 5. 2. 10:43

[00-PROCESS]**addendov -/- C:\Program Files\addendum\addendov.exe
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**Adobelmsvc -/- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
[00-PROCESS]**allpopsvi -/- C:\Program Files\allpopup\allpopsvi.exe
[00-PROCESS]**allpopup -/- C:\Program Files\allpopup\allpopup.exe
[00-PROCESS]**atieclxx -/- C:\Windows\system32\atieclxx.exe
[00-PROCESS]**atiesrxx -/- C:\Windows\system32\atiesrxx.exe
[00-PROCESS]**CCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
[00-PROCESS]**CnxDIAS -/- C:\Program Files\Canon\DIAS\CnxDIAS.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[00-PROCESS]**FBDSvcMan -/- C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDSvcMan.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GUI -/- C:\Program Files\GIGABYTE\ET6\GUI.exe
[00-PROCESS]**ICCProxy -/- C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
[00-PROCESS]**IDriverT -/- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\microsoft shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**keycast -/- C:\Program Files\keycast\keycast.exe
[00-PROCESS]**matchkey -/- C:\Program Files\matchkey\matchkey.exe
[00-PROCESS]**mbox -/- C:\Program Files\displaylink\mbox.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**microab -/- C:\Users\Administrator\AppData\Roaming\microadbar\microab.exe
[00-PROCESS]**MOM -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
[00-PROCESS]**msconfig -/- C:\Windows\system32\msconfig.exe
[00-PROCESS]**msfctrl -/- C:\Program Files\MSSafeFilter 3.0\msfctrl.exe
[00-PROCESS]**msfsvc -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**NeoDiary -/- C:\Program Files\NeoDiary\NeoDiary.exe
[00-PROCESS]**nvtray -/- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**nvxdsync -/- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**openvpn -/- C:\Program Files\OpenVPN\bin\openvpn.exe
[00-PROCESS]**openvpnserv -/- C:\Program Files\OpenVPN\bin\openvpnserv.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**RaMediaServer -/- C:\Program Files\Ralink\Common\RaMediaServer.exe
[00-PROCESS]**RaRegistry -/- C:\Program Files\Ralink\Common\RaRegistry.exe
[00-PROCESS]**RaUI -/- C:\Program Files\Ralink\Common\RaUI.exe
[00-PROCESS]**Reader_sl -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[00-PROCESS]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
[00-PROCESS]**RtlService -/- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtlService.exe
[00-PROCESS]**RtWlan -/- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWlan.exe
[00-PROCESS]**sbssl-client -/- C:\Program Files\OpenVPN\bin\sbssl-client.exe
[00-PROCESS]**sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe
[00-PROCESS]**srvany -/- C:\WINDOWS\system32\srvany.exe
[00-PROCESS]**userinforeset -/- C:\Windows\userinforeset.exe
[00-PROCESS]**V3PScan -/- C:\Program Files\AhnLab\V3IS80\V3PScan.exe
[00-PROCESS]**V3SP -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[00-PROCESS]**V3Svc -/- C:\Program Files\AhnLab\V3IS80\V3Svc.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\mFile.co.kr\mFile(fast)\WinCloud.exe
[00-PROCESS]**WLANExt -/- C:\Windows\system32\WLANExt.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**addendov -/- C:\Program Files\addendum\addendov.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[01-HKCUREG]**neodiary -/- C:\Program Files\NeoDiary\NeoDiary.exe /background
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[01-HKCUREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[01-HKCUREG]**V3 Session Process -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[02-HKLMREG]**addendov -/- C:\Program Files\addendum\addendov.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**neodiary -/- C:\Program Files\NeoDiary\NeoDiary.exe /background
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[02-HKLMREG]**Sidebar -/- C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[02-HKLMREG]**V3 Session Process -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[03-BHOCLSD]**{000011A1-74C9-4c7e-9B4E-59B5765CF409} -/- c:\program files\naver\navertoolbar\naversafeguard\nsafeguard_2013_3_11_1.dll
[03-BHOCLSD]**{17338E82-5F64-471D-8D19-BC2B68692ADC} -/- C:\PROGRA~1\DISPLA~1\DISPLA~1.DLL
[03-BHOCLSD]**{18DF081C-E8AD-4283-A596-FA578C2EBDC3} -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
[03-BHOCLSD]**{67C41E9E-2EBF-4F2B-AF74-314F0D793172} -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_16_241.dll
[03-BHOCLSD]**{6956446B-312B-4F69-B23B-FEF01097EB12} -/- C:\Program Files\addendum\sidebar\addendum_ts.dll
[03-BHOCLSD]**{6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -/- N.A
[03-BHOCLSD]**{CC01FC6C-A4F1-42C2-814B-606F66026AB0} -/- c:\PROGRA~1\iestart\iestt.dll
[03-BHOCLSD]**{F8D523EB-98BB-4094-8D55-FF494D7DE323} -/- C:\Program Files\iestart\iestartvb.dll
[04-TOOLBAR]**{D09CFF09-A42A-4EDC-9804-E61224F59CA1} -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_16_241.dll
[05-SERVICE]**Adobe LM Service -/- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**allpopup -/- C:\Program Files\allpopup\allpopsvi.exe
[05-SERVICE]**AMD External Events Utility -/- C:\Windows\system32\atiesrxx.exe
[05-SERVICE]**AppleChargerSrv -/- system32\AppleChargerSrv.exe
[05-SERVICE]**Canon Driver Information Assist Service -/- C:\Program Files\Canon\DIAS\CnxDIAS.exe
[05-SERVICE]**FBDSvcman -/- C:\Users\Administrator\AppData\Roaming\SpeedDownload\FBDSvcMan.exe
[05-SERVICE]**FontCache -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**gpsvc -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\gpsvc.dll
[05-SERVICE]**ICCS -/- C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
[05-SERVICE]**IDriverT -/- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
[05-SERVICE]**msfsvc32 -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[05-SERVICE]**Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NetMsmqActivator -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe -NetMsmqActivator
[05-SERVICE]**NetPipeActivator -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpActivator -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpPortSharing -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**nvsvc -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**OpenVPNService -/- C:\Program Files\OpenVPN\bin\openvpnserv.exe
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**RalinkRegistryWriter -/- C:\Program Files\Ralink\Common\RaRegistry.exe
[05-SERVICE]**RaMediaServer -/- C:\Program Files\Ralink\Common\RaMediaServer.exe
[05-SERVICE]**Realtek11nCU -/- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtlService.exe
[05-SERVICE]**sbssl-start -/- C:\WINDOWS\system32\srvany.exe
[05-SERVICE]**StorSvc -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\storsvc.dll
[05-SERVICE]**V3 Service -/- C:\Program Files\AhnLab\V3IS80\V3Svc.exe
[05-SERVICE]**vaccineclinic Update Service -/- C:\Windows\userinforeset.exe
[05-SERVICE]**WinCloud -/- C:\Program Files\mFile.co.kr\mFile(fast)\WinCloud.exe