프로그램분석

Code : /tyOEnhL63r03tGm+8jg4imaFtZbBnUr

프로세스 천국 2013. 5. 7. 21:09

 

[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**aspy32 -/- C:\WindowsTools\Boot-Spy\aspy32.exe
[00-PROCESS]**CCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
[00-PROCESS]**CLIStart -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
[00-PROCESS]**CTAELicensing -/- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
[00-PROCESS]**CTAudSvc -/- C:\Program Files\Creative\Shared Files\CTAudSvc.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**javax -/- C:\Users\Administrator\AppData\Roaming\Java\javax.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**Ksfkfu -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ksfkfu.exe
[00-PROCESS]**maintenanceservice -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**MOM -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**mspaint -/- C:\Windows\system32\mspaint.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RaMediaServer -/- C:\Program Files\Ralink\Common\RaMediaServer.exe
[00-PROCESS]**RaRegistry -/- C:\Program Files\Ralink\Common\RaRegistry.exe
[00-PROCESS]**RaRegistry64 -/- C:\Program Files\Ralink\Common\RaRegistry64.exe
[00-PROCESS]**Run! -/- C:\WindowsTools\run\Run!.exe
[00-PROCESS]**taskmgr -/- C:\Windows\system32\taskmgr.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**AMD AVT -/- Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml
[01-HKCUREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**Java -/- C:\Users\Administrator\AppData\Roaming\Java\javax.exe
[01-HKCUREG]**Ksfkfu -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ksfkfu.exe
[01-HKCUREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**AMD AVT -/- Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml
[02-HKLMREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**Java -/- C:\Users\Administrator\AppData\Roaming\Java\javax.exe
[02-HKLMREG]**Ksfkfu -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ksfkfu.exe
[02-HKLMREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Google Toolbar Helper -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {AA58ED58-01DD-4d91-8333-CF10577473F7}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre7\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**Yontoo -/- C:\Program Files\Yontoo\YontooIEClient.dll -/- {FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
[04-TOOLBAR]**Google Toolbar -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AMD External Events Utility -/- AMD External Events Utility -/- C:\Windows\system32\atiesrxx.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Bonjour Service -/- Service Bonjour -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**Creative Audio Engine Licensing Service -/- Creative Audio Engine Licensing Service -/- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
[05-SERVICE]**CTAudSvcService -/- Creative Audio Service -/- C:\Program Files\Creative\Shared Files\CTAudSvc.exe
[05-SERVICE]**FontCache -/- Service de cache de police Windows -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**gupdate -/- Service Google Update (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Service Google Update (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Software Updater -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**iPod Service -/- Service de l’iPod -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**lmhosts -/- Assistance NetBIOS sur TCP/IP -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\lltdsvc.dll
[05-SERVICE]**MozillaMaintenance -/- Mozilla Maintenance Service -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[05-SERVICE]**NetTcpPortSharing -/- Service de partage de ports Net.Tcp -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NlaSvc -/- Connaissance des emplacements réseau -/- C:\Windows\System32\svchost.exe
[05-SERVICE]**nsi -/- Service Interface du magasin réseau -/- C:\Windows\system32\svchost.exe
[05-SERVICE]**PerfHost -/- Hôte de DLL de compteur de performance -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**RalinkRegistryWriter -/- Ralink Registry Writer -/- C:\Program Files\Ralink\Common\RaRegistry.exe
[05-SERVICE]**RalinkRegistryWriter64 -/- Ralink Registry Writer 64 -/- C:\Program Files\Ralink\Common\RaRegistry64.exe
[05-SERVICE]**RaMediaServer -/- Ralink UPnP Media Server -/- C:\Program Files\Ralink\Common\RaMediaServer.exe
[05-SERVICE]**rpcapd -/- Remote Packet Capture Protocol v.0 (experimental) -/- C:\Program Files\WinPcap\rpcapd.exe -d -f C:\Program Files\WinPcap\rpcapd.ini
[05-SERVICE]**Yontoo Desktop Updater -/- Yontoo Desktop Updater -/- C:\Program Files\Yontoo\Y2Desktop.Updater.exe C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe