프로그램분석

Code : ZZIpVoin/1RoRDxTC6D0MyISFig4LDUC

프로세스 천국 2013. 5. 10. 09:27

[00-PROCESS]**ADriveDownService -/- C:\Program Files\ADrive\ADriveDownService.exe
[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[00-PROCESS]**dgdersvc -/- C:\WINDOWS\system32\dgdersvc.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**internetdownload_se -/- C:\WINDOWS\system32\internetdownload_se.exe
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre6\bin\jqs.exe
[00-PROCESS]**liveupdater-se -/- C:\Program Files\liveupdater\liveupdater-se.exe
[00-PROCESS]**microservice-se -/- C:\Program Files\microservice\microservice-se.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\FileDok\NetAccelerator.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**Pareto_Update3 -/- C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
[00-PROCESS]**RalinkRegistryWriter -/- C:\Program Files\EFM\Common\RalinkRegistryWriter.exe
[00-PROCESS]**resetuserconfig -/- C:\WINDOWS\resetuserconfig.exe
[00-PROCESS]**rundll32 -/- C:\WINDOWS\system32\rundll32.exe
[00-PROCESS]**savedump -/- C:\WINDOWS\system32\savedump.exe
[00-PROCESS]**ScsiCommandService2 -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[00-PROCESS]**smartchip -/- C:\WINDOWS\smartchip.exe
[00-PROCESS]**smartmode_se -/- C:\WINDOWS\system32\smartmode_se.exe
[00-PROCESS]**systemview-se -/- C:\Program Files\systemview\systemview-se.exe
[00-PROCESS]**Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[00-PROCESS]**updateservice-se -/- C:\Program Files\updateservice\updateservice-se.exe
[00-PROCESS]**userinfowinreset -/- C:\WINDOWS\userinfowinreset.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe
[00-PROCESS]**WinxpendUP_lvu5 -/- C:\Program Files\WinExpand_lvu5\WinxpendUP_lvu5.exe
[01-HKCUREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[03-BHOCLSD]**IEHlprObj Class -/- C:\WINDOWS\system32\kakutk.dll -/- {AB705622-B25B-491B-A6BF-4A46FDDBC88E}
[05-SERVICE]**ADriveDownService -/- ADrive Download Service -/- C:\Program Files\ADrive\ADriveDownService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/-
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/-
[05-SERVICE]**dgdersvc -/- Device Error Recovery Service -/- C:\WINDOWS\system32\dgdersvc.exe
[05-SERVICE]**everyclear Update Service -/- everyclear Support Service -/- C:\WINDOWS\resetuserconfig.exe
[05-SERVICE]**infocover Update Service -/- infocover Support Service -/- C:\WINDOWS\smartchip.exe
[05-SERVICE]**InfoSvc -/- InfoScan Manager -/- C:\KMC\Svc\InfoSvc.exe
[05-SERVICE]**InternetDownload Update Service -/- InternetDownload Support Service -/- C:\WINDOWS\system32\internetdownload_se.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
[05-SERVICE]**liveupdaterservice -/- liveupdater service -/- C:\Program Files\liveupdater\liveupdater-se.exe
[05-SERVICE]**Maker Movie Play Updatas -/- Maker Movie Play Updatas -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\lost_bj.dll
[05-SERVICE]**microserviceservice -/- microservice service -/- C:\Program Files\microservice\microservice-se.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NetAccelerator -/- NetAccelerator_Service -/- C:\Program Files\FileDok\NetAccelerator.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**Nsavsvc -/- Naver Anti-virus Realtime Monitor -/- C:\Program Files\Naver\NaverVaccine\Nsavsvc.npc
[05-SERVICE]**Nsvmon -/- Naver Anti-virus Scan Service -/- C:\Program Files\Naver\NaverVaccine\Nsvmon.npc
[05-SERVICE]**NVSvc -/- NVIDIA Driver Helper Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**nvUpdatusService -/- NVIDIA Update Service Daemon -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**RalinkRegistryWriter -/- Ralink Registry Writer -/- C:\Program Files\EFM\Common\RalinkRegistryWriter.exe
[05-SERVICE]**ScsiCommandService2 -/- SCSI command service -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[05-SERVICE]**SkypeUpdate -/- Skype Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[05-SERVICE]**SmartMode Update Service -/- SmartMode Support Service -/- C:\WINDOWS\system32\smartmode_se.exe
[05-SERVICE]**systemviewservice -/- systemview service -/- C:\Program Files\systemview\systemview-se.exe
[05-SERVICE]**updateserviceservice -/- updateservice service -/- C:\Program Files\updateservice\updateservice-se.exe
[05-SERVICE]**V3 Lite Service -/- V3 Lite Service -/-
[05-SERVICE]**WinCloud -/- WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe
[05-SERVICE]**winvaccine Update Service -/- winvaccine Support Service -/- C:\WINDOWS\userinfowinreset.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
[05-SERVICE]**xsherlock -/- xsherlock -/- C:\WINDOWS\system32\xsherlock.xem