프로그램분석

Code : Q3pF++kSs1CRVh2J0xG3Ppd9S0bP0BID

프로세스 천국 2013. 5. 10. 18:47

[00-PROCESS]**Acrotray -/- C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
[00-PROCESS]**AGRSMMSG -/- C:\WINDOWS\AGRSMMSG.exe
[00-PROCESS]**BTTray -/- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[00-PROCESS]**btwdins -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[00-PROCESS]**FileI_GDown -/- C:\Program Files\FileI\FileI_GDown.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GDownService -/- C:\Program Files\GDownService\GDownService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe
[00-PROCESS]**IMJPMIG -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre6\bin\jqs.exe
[00-PROCESS]**jucheck -/- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**msmsgs -/- C:\Program Files\Messenger\msmsgs.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
[00-PROCESS]**SRS_PostInstaller -/- C:\Program Files\SRS Labs\WOWXT and TSXT Driver\SRS_PostInstaller.exe
[00-PROCESS]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[00-PROCESS]**TankDiskService -/- C:\Program Files\TankDisk\TankDiskService.exe
[00-PROCESS]**TINTSETP -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[00-PROCESS]**TsService -/- C:\WINDOWS\system32\TsService.exe
[00-PROCESS]**xktreq -/- C:\WINDOWS\system32\xktreq.exe
[01-HKCUREG]**Acrobat Assistant 7.0 -/- C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
[01-HKCUREG]**AGRSMMSG -/- AGRSMMSG.exe
[01-HKCUREG]**Alcmtr -/- ALCMTR.EXE
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
[01-HKCUREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**MSMSGS -/- C:\Program Files\Messenger\msmsgs.exe /background
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**nwiz -/- nwiz.exe /install
[01-HKCUREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[01-HKCUREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[02-HKLMREG]**Acrobat Assistant 7.0 -/- C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
[02-HKLMREG]**AGRSMMSG -/- AGRSMMSG.exe
[02-HKLMREG]**Alcmtr -/- ALCMTR.EXE
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
[02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**MSMSGS -/- C:\Program Files\Messenger\msmsgs.exe /background
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**nwiz -/- nwiz.exe /install
[02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**SynTPEnh -/- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[03-BHOCLSD]**AcroIEHlprObj Class -/- C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll -/- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
[03-BHOCLSD]**Adobe PDF Conversion Toolbar Helper -/- C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll -/- {AE7CD045-E861-484f-8273-0445EE161910}
[03-BHOCLSD]**Google Toolbar Helper -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {AA58ED58-01DD-4d91-8333-CF10577473F7}
[03-BHOCLSD]**Google Toolbar Notifier BHO -/- C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll -/- {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**JQSIEStartDetectorImpl Class -/- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll -/- {E7E6F031-17CE-4C07-BC86-EABFE594F69C}
[04-TOOLBAR]**Adobe PDF -/- C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**Google Toolbar -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**BNDownService -/- File Download Service -/- C:\Program Files\GDownService\GDownService.exe
[05-SERVICE]**btwdins -/- Bluetooth Service -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[05-SERVICE]**GmPnSN -/- Portable Media Serial Numbar Service -/- C:\WINDOWS\system32\xktreq.exe
[05-SERVICE]**gupdate -/- Google 업데이트 서비스 (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google 업데이트 서비스 (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Software Updater -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**HwRunS -/- HowCodec Service -/- C:\PROGRA~1\howcodec\Howcodecsvc.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**NVSvc -/- NVIDIA Display Driver Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**RunS -/- MultidownLoad Service -/- C:\Documents and Settings\Administrator\APPLIC~1\MULTID~1\MultiDownLoadSvc.exe
[05-SERVICE]**SRS_PostInstaller -/- SRS PostInstaller Service -/- C:\Program Files\SRS Labs\WOWXT and TSXT Driver\SRS_PostInstaller.exe
[05-SERVICE]**TankDiskService -/- TankDisk Service -/- C:\Program Files\TankDisk\TankDiskService.exe
[05-SERVICE]**TsService -/- TsService -/- C:\WINDOWS\system32\TsService.exe