프로그램분석

Code : EgrOaQK8tHEHFXmrBGVdwV7p8eeZrVhEudK15TACO8s=

프로세스 천국 2013. 5. 11. 20:15

[00-PROCESS]**a5backup -/- C:\Program Files\Pastel IronTree\a5backup.exe
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\Ati2evxx.exe
[00-PROCESS]**ati2sgag -/- C:\WINDOWS\system32\ati2sgag.exe
[00-PROCESS]**BBSvc -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BBSvc.exe
[00-PROCESS]**BingApp -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BingApp.exe
[00-PROCESS]**BingBar -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BingBar.exe
[00-PROCESS]**BingSurrogate -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BingSurrogate.exe
[00-PROCESS]**ccSvcHst -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\ccSvcHst.exe
[00-PROCESS]**fppdis3a -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe
[00-PROCESS]**GoogleToolbarNotifier -/- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**HPWuSchd2 -/- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre6\bin\jqs.exe
[00-PROCESS]**jucheck -/- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**MDM -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**offlineService -/- C:\Program Files\e@syFile Service\offlineService.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PMBDeviceInfoProvider -/- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
[00-PROCESS]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[00-PROCESS]**qttask -/- C:\Program Files\QuickTime\qttask.exe
[00-PROCESS]**SeaPort -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.exe
[00-PROCESS]**Smc -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\Smc.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**snac -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\snac.exe
[00-PROCESS]**TeamViewer_Service -/- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Alcmtr -/- ALCMTR.EXE
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**HP Software Update -/- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**pdfFactory Dispatcher v3 -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe /source=HKLM
[01-HKCUREG]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[01-HKCUREG]**QuickTime Task -/- C:\Program Files\QuickTime\qttask.exe -atboottime
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**swg -/- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Alcmtr -/- ALCMTR.EXE
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**HP Software Update -/- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**pdfFactory Dispatcher v3 -/- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe /source=HKLM
[02-HKLMREG]**PMBVolumeWatcher -/- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
[02-HKLMREG]**QuickTime Task -/- C:\Program Files\QuickTime\qttask.exe -atboottime
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**swg -/- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Bing Bar Helper -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll -/- {d2ce3e00-f94a-4740-988e-03dc2f38c34f}
[03-BHOCLSD]**Google Toolbar Helper -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {AA58ED58-01DD-4d91-8333-CF10577473F7}
[03-BHOCLSD]**Google Toolbar Notifier BHO -/- C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll -/- {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**JQSIEStartDetectorImpl Class -/- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll -/- {E7E6F031-17CE-4C07-BC86-EABFE594F69C}
[03-BHOCLSD]**Sammsoft Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**Symantec Intrusion Prevention -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\bin\IPS\IPSBHO.DLL -/- {6D53EC84-6AAE-4787-AEEE-F4628F01010C}
[04-TOOLBAR]**Bing Bar -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll -/- {8dcb7100-df86-4384-8842-8fa844297b3f}
[04-TOOLBAR]**Google Toolbar -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
[04-TOOLBAR]**N.A -/- N.A -/- {CCC7A320-B3CA-4199-B1A6-9F516DD69829}
[04-TOOLBAR]**Sammsoft Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Ati HotKey Poller -/- Ati HotKey Poller -/- C:\WINDOWS\system32\Ati2evxx.exe
[05-SERVICE]**ATI Smart -/- ATI Smart -/- C:\WINDOWS\system32\ati2sgag.exe
[05-SERVICE]**BBSvc -/- BingBar Service -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\BBSvc.exe
[05-SERVICE]**BBUpdate -/- BBUpdate -/- C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.exe
[05-SERVICE]**Bonjour Service -/- Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**e@syfile Service -/- e@syfile Service -/- C:\Program Files\e@syFile Service\offlineService.exe -startlauncherinservicemode
[05-SERVICE]**gupdate -/- Google Update Service (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google Update Service (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Software Updater -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**iPod Service -/- iPod Service -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**IronTreeDL -/- Pastel IronTree -/- C:\Program Files\Pastel IronTree\a5backup.exe -start
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
[05-SERVICE]**MDM -/- Machine Debug Manager -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PMBDeviceInfoProvider -/- PMBDeviceInfoProvider -/- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
[05-SERVICE]**SepMasterService -/- Symantec Endpoint Protection -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\ccSvcHst.exe
[05-SERVICE]**SmcService -/- Symantec Management Client -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\Smc.exe
[05-SERVICE]**SNAC -/- Symantec Network Access Control -/- C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Bin\snac.exe
[05-SERVICE]**TeamViewer8 -/- TeamViewer 8 -/- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe