프로그램분석

Code : z4zpnPhlLBIEO1lChco+voUiMzFUr3le

프로세스 천국 2013. 5. 4. 20:20

[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**Adobelmsvc -/- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
[00-PROCESS]**atbsvc -/- C:\Program Files\ESTsoft\ALToolBar\atbsvc.exe
[00-PROCESS]**Au_ -/- C:\Documents and Settings\Administrator\Local Settings\Temp\~nsu.tmp\Au_.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**chrome -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
[00-PROCESS]**clgsve -/- C:\Program Files\Windows CloudGet\clgsve.exe
[00-PROCESS]**clgsvr -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[00-PROCESS]**cmd -/- C:\WINDOWS\system32\cmd.exe
[00-PROCESS]**DTLite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GrooveAuditService -/- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
[00-PROCESS]**ie_signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\ie_signkey.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**InstHelper -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient\ismsvc.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\Windows ISM\ismsvc.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**J2J25 -/- C:\Program Files\J2J25\J2J25.exe
[00-PROCESS]**jqs -/- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
[00-PROCESS]**lstspop -/- C:\Program Files\lastpopup\lstspop.exe
[00-PROCESS]**lstspsv -/- C:\Program Files\lastpopup\lstspsv.exe
[00-PROCESS]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**Microsource_se -/- C:\Program Files\Microsource\Microsource_se.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\FileDok\NetAccelerator.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[00-PROCESS]**npesvc60 -/- C:\Program Files\nProtect\nProtect Online Security v6.0\npesvc60.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PMBDeviceInfoProvider -/- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
[00-PROCESS]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[00-PROCESS]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
[00-PROCESS]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[00-PROCESS]**SwitchBoard -/- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
[00-PROCESS]**updaterstartuputility -/- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
[00-PROCESS]**voaclt -/- C:\Program Files\Windows VOA\voaclt.exe
[00-PROCESS]**voasvc -/- C:\Program Files\Windows VOA\voasvc.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**DAEMON Tools Lite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun
[01-HKCUREG]**Google Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**ISZone -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[01-HKCUREG]**J2J25 -/- C:\Program Files\J2J25\J2J25.exe
[01-HKCUREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[01-HKCUREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**DAEMON Tools Lite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun
[02-HKLMREG]**Google Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**ISZone -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[02-HKLMREG]**J2J25 -/- C:\Program Files\J2J25\J2J25.exe
[02-HKLMREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[02-HKLMREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[04-TOOLBAR]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3100.dll -/- {38FBE93D-4CA1-4414-AF6A-94920C5BD8DA}
[05-SERVICE]**10003 -/- 10003 -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\Yumk\10003.dll
[05-SERVICE]**10018 -/- 10018 -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\yumk\10018.dll
[05-SERVICE]**14001 -/- 14001 -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\Yumk\14001.dll
[05-SERVICE]**15003 -/- 15003 -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\Real\real88.dll
[05-SERVICE]**aa -/- aa -/- C:\WINDOWS\system32\svchost -k aa -/- C:\WINDOWS\system32\aa360.c
[05-SERVICE]**Adobe LM Service -/- Adobe LM Service -/- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**BEF -/- Base Engine Filtering -/- C:\WINDOWS\system32\befsvc.exe -service
[05-SERVICE]**clgsvr32 -/- Windows CloudGet Service -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[05-SERVICE]**clr_optimization_v2.5.20118_86 -/- Microsoft .NET Framework NGEN v2.5.20118_X86 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\mscosw.dll
[05-SERVICE]**clr_optimization_v2.5.20121_86 -/- Microsoft .NET Framework NGEN v2.5.20121_X86 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\mscorsvr.dll
[05-SERVICE]**Hwoipf -/- Explorer -/- C:\WINDOWS\System32\svchost.exe -/- c:\program files\internet explorer\Hwoipfex.dll
[05-SERVICE]**IEXPLORER.EXE -/- Remote Command Service -/- C:\WINDOWS\system32\yttddc.exe
[05-SERVICE]**ismsvc -/- Windows ISM -/- C:\Program Files\Windows ISM\ismsvc.exe
[05-SERVICE]**ismsvc32 -/- INSAFE Client 1.0 -/- C:\Program Files\insafeclient\ismsvc.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe -service -config C:\Program Files\Oracle\JavaFX 2.1 Runtime\lib\deploy\jqs\jqs.conf
[05-SERVICE]**lstspsv32 -/- Windows Explorer Lastpopup v1.11 -/- C:\Program Files\lastpopup\lstspsv.exe
[05-SERVICE]**Microsoft Office Groove Audit Service -/- Microsoft Office Groove Audit Service -/- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
[05-SERVICE]**Microsource Update Service -/- Microsource Support Service -/- C:\Program Files\Microsource\Microsource_se.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NBService -/- NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[05-SERVICE]**NetAccelerator -/- NetAccelerator_Service -/- C:\Program Files\FileDok\NetAccelerator.exe
[05-SERVICE]**NMIndexingService -/- NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**nProtect OnlineSecurity v6.0 Service -/- nProtect OnlineSecurity v6.0 Service -/- C:\Program Files\nProtect\nProtect Online Security v6.0\npesvc60.exe
[05-SERVICE]**NVSvc -/- NVIDIA Driver Helper Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PMBDeviceInfoProvider -/- PMBDeviceInfoProvider -/- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
[05-SERVICE]**RichVideo -/- Cyberlink RichVideo Service(CRVS) -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[05-SERVICE]**SwitchBoard -/- SwitchBoard -/- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
[05-SERVICE]**voasvc -/- Windows VOA -/- C:\Program Files\Windows VOA\voasvc.exe
[05-SERVICE]**WinCloud -/- WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe