Code : l+bn5FHLlqSWhNczP0oDDhA8Z5QAREmx
[00-PROCESS]**allpopsvi -/- C:\Program Files\allpopup\allpopsvi.exe
[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**clgsvr -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[00-PROCESS]**E_FATIEGP -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGP.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**hkcmd -/- C:\WINDOWS\system32\hkcmd.exe
[00-PROCESS]**HPZipm12 -/- C:\WINDOWS\system32\HPZipm12.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**igfxpers -/- C:\WINDOWS\system32\igfxpers.exe
[00-PROCESS]**igfxsrvc -/- C:\WINDOWS\system32\igfxsrvc.exe
[00-PROCESS]**igfxtray -/- C:\WINDOWS\system32\igfxtray.exe
[00-PROCESS]**IMJPMIG -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient\ismsvc.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\Windows ISM\ismsvc.exe
[00-PROCESS]**lstspop -/- C:\Program Files\lastpopup\lstspop.exe
[00-PROCESS]**lstspsv -/- C:\Program Files\lastpopup\lstspsv.exe
[00-PROCESS]**msfctrl -/- C:\Program Files\MSSafeFilter 3.0\msfctrl.exe
[00-PROCESS]**msfsvc -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[00-PROCESS]**neturo -/- C:\Program Files\LGU+\Neturo\neturo.exe
[00-PROCESS]**nextray -/- C:\Program Files\nextray\nextray.exe
[00-PROCESS]**ntrNTService -/- C:\Program Files\LGU+\Neturo\ntrNTService.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**powertime_mon -/- C:\Program Files\powertime\powertime_mon.exe
[00-PROCESS]**powertime_uc -/- C:\Program Files\powertime\powertime_uc.exe
[00-PROCESS]**SoftwareUpdate -/- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
[00-PROCESS]**TINTSETP -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[00-PROCESS]**tooltip -/- C:\Program Files\tooltip\tooltip.exe
[00-PROCESS]**tooltip_mon -/- C:\Program Files\tooltip\tooltip_mon.exe
[00-PROCESS]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**EPSON Stylus TX400 Series -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGP.EXE /FU C:\Documents and Settings\Administrator\LOCALS~1\Temp\E_S21.tmp /EF HKCU
[01-HKCUREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[01-HKCUREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[01-HKCUREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[01-HKCUREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[01-HKCUREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[01-HKCUREG]**powertime -/- C:\Program Files\powertime\powertime_uc.exe /run
[01-HKCUREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[01-HKCUREG]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[01-HKCUREG]**U+ 원격제어 -/- C:\Program Files\LGU+\Neturo\AutoPatcher -autorun
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**EPSON Stylus TX400 Series -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGP.EXE /FU C:\Documents and Settings\Administrator\LOCALS~1\Temp\E_S21.tmp /EF HKCU
[02-HKLMREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[02-HKLMREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[02-HKLMREG]**powertime -/- C:\Program Files\powertime\powertime_uc.exe /run
[02-HKLMREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[02-HKLMREG]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[02-HKLMREG]**U+ 원격제어 -/- C:\Program Files\LGU+\Neturo\AutoPatcher -autorun
[03-BHOCLSD]**{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -/- C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[03-BHOCLSD]**{39AA03A6-B5D9-4F47-99DF-1666A7B8D8E8} -/- C:\Program Files\NATEON\BIN\NateSearchSafe.dll
[03-BHOCLSD]**{AE7CD045-E861-484f-8273-0445EE161910} -/- C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
[03-BHOCLSD]**{E77FA0B2-C931-411C-82A2-FF672456B730} -/- C:\Program Files\nate_as\nate_as.dll
[03-BHOCLSD]**{E81E1598-BCE6-40B9-8B68-AE57DAA04452} -/- C:\Program Files\nate_as\nate_as.dll
[04-TOOLBAR]**{47833539-D0C5-4125-9FA8-0819E2EAAC93} -/- C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**allpopup -/- C:\Program Files\allpopup\allpopsvi.exe
[05-SERVICE]**ALYac_RTSrv -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**clgsvr32 -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[05-SERVICE]**ismsvc -/- C:\Program Files\Windows ISM\ismsvc.exe
[05-SERVICE]**ismsvc32 -/- C:\Program Files\insafeclient\ismsvc.exe
[05-SERVICE]**lstspsv32 -/- C:\Program Files\lastpopup\lstspsv.exe
[05-SERVICE]**msfsvc32 -/- C:\Program Files\MSSafeFilter 3.0\msfsvc.exe
[05-SERVICE]**napagent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NetTcpPortSharing -/- c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NeturoNTService -/- C:\Program Files\LGU+\Neturo\ntrNTService.exe
[05-SERVICE]**odserv -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Pml Driver HPZ12 -/- C:\WINDOWS\system32\HPZipm12.exe
[05-SERVICE]**sutsrpop -/- C:\Program Files\tooltip\tooltip_mon.exe
[05-SERVICE]**sutsrpt -/- C:\Program Files\powertime\powertime_mon.exe
[05-SERVICE]**vaccinelite Update Service -/- C:\WINDOWS\wininfouserreset.exe up
[05-SERVICE]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe