프로그램분석

Code : WyF7H3vT1JyOLwzfRFZFNHz9IcsSbgBSdNzr3exktE8=

프로세스 천국 2013. 5. 12. 17:48

[00-PROCESS]**AdobeARM -/- C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AsAPHider -/- C:\Programmi\ASUS\Eee Manager\AsAPHider\AsAPHider.exe
[00-PROCESS]**AsMessageController -/- C:\Programmi\ASUS\Message Controller\AsMessageController.exe
[00-PROCESS]**AsPowerTray -/- C:\Programmi\ASUS\Eee Manager\AsPowerTray\AsPowerTray.exe
[00-PROCESS]**AsSrcHelper -/- C:\Programmi\ASUS\ASUS Eee Screen Setting\AsSrcHelper.exe
[00-PROCESS]**BlueSoleil -/- C:\Programmi\IVT Corporation\BlueSoleil\BlueSoleil.exe
[00-PROCESS]**EeeManager -/- C:\Programmi\ASUS\Eee Manager\EeeManager.exe
[00-PROCESS]**egui -/- C:\Programmi\ESET\ESET Smart Security\egui.exe
[00-PROCESS]**EHttpSrv -/- C:\Programmi\ESET\ESET Smart Security\EHttpSrv.exe
[00-PROCESS]**ekrn -/- C:\Programmi\ESET\ESET Smart Security\ekrn.exe
[00-PROCESS]**EMMessageParser -/- C:\Programmi\ASUS\Eee Manager\EMMessageParser.exe
[00-PROCESS]**eMule -/- C:\Documents and Settings\Administrator\Desktop\eMule.exe
[00-PROCESS]**FNPLicensingService -/- C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Programmi\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**hkcmd -/- C:\WINDOWS\system32\hkcmd.exe
[00-PROCESS]**igfxpers -/- C:\WINDOWS\system32\igfxpers.exe
[00-PROCESS]**igfxsrvc -/- C:\WINDOWS\system32\igfxsrvc.exe
[00-PROCESS]**igfxtray -/- C:\WINDOWS\system32\igfxtray.exe
[00-PROCESS]**NMSAccessU -/- C:\Programmi\Illustrate\dBpoweramp\NMSAccessU.exe
[00-PROCESS]**ODSERV -/- C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**onda_mon -/- C:\WINDOWS\system32\SupportAppXL\onda_mon.exe
[00-PROCESS]**OSE -/- C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PandoraService -/- C:\Programmi\PANDORA.TV\PanService\PandoraService.exe
[00-PROCESS]**pokki -/- C:\Documents and Settings\Administrator\impostazioni locali\dati applicazioni\Pokki\Engine\pokki.exe
[00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
[00-PROCESS]**ServiceLayer -/- C:\Programmi\PC Connectivity Solution\ServiceLayer.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**soffice -/- C:\Programmi\Sun\StarOffice 8\program\soffice.exe
[00-PROCESS]**SRSPremiumSoundBig -/- C:\Programmi\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig.exe
[00-PROCESS]**TouchPackService -/- C:\Programmi\Touch Package\TouchPackService.exe
[00-PROCESS]**wDivi -/- C:\Programmi\Zapu\Zapu Accelerator\wDivi.exe
[00-PROCESS]**winzip32 -/- C:\Programmi\WINZIP\winzip32.exe
[00-PROCESS]**WMPNetwk -/- C:\Programmi\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**WZQKPICK -/- C:\Programmi\WinZip\WZQKPICK.EXE
[01-HKCUREG]**Adobe ARM -/- C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**ALaunch -/- c:\sysprep\ALaunch.exe
[01-HKCUREG]**Alcmtr -/- ALCMTR.EXE
[01-HKCUREG]**AsAPHider -/- C:\Programmi\ASUS\Eee Manager\AsAPHider\AsAPHider.exe
[01-HKCUREG]**AsMessageParser -/- C:\Programmi\ASUS\Eee Manager\EMMessageParser.exe
[01-HKCUREG]**AsPowerTray -/- C:\Programmi\ASUS\Eee Manager\AsPowerTray\AsPowerTray.exe
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**egui -/- C:\Programmi\ESET\ESET Smart Security\egui.exe /hide /waitservice
[01-HKCUREG]**eMuleAutoStart -/- C:\eMule.exe -AutoStart
[01-HKCUREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[01-HKCUREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[01-HKCUREG]**Pokki -/- C:\Documents and Settings\Administrator\impostazioni locali\dati applicazioni\Pokki\Engine\pokki.exe
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**RunMessageController -/- C:\Programmi\ASUS\Message Controller\AsMessageController.exe
[01-HKCUREG]**Screen Service -/- C:\Programmi\ASUS\ASUS Eee Screen Setting\AsSrcHelper.exe
[01-HKCUREG]**SRS Premium Sound -/- C:\Programmi\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig.exe /hideme
[01-HKCUREG]**SystweakASP -/- C:\Programmi\RegClean Pro\SystweakASP.exe /verysilent
[02-HKLMREG]**Adobe ARM -/- C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**ALaunch -/- c:\sysprep\ALaunch.exe
[02-HKLMREG]**Alcmtr -/- ALCMTR.EXE
[02-HKLMREG]**AsAPHider -/- C:\Programmi\ASUS\Eee Manager\AsAPHider\AsAPHider.exe
[02-HKLMREG]**AsMessageParser -/- C:\Programmi\ASUS\Eee Manager\EMMessageParser.exe
[02-HKLMREG]**AsPowerTray -/- C:\Programmi\ASUS\Eee Manager\AsPowerTray\AsPowerTray.exe
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**egui -/- C:\Programmi\ESET\ESET Smart Security\egui.exe /hide /waitservice
[02-HKLMREG]**eMuleAutoStart -/- C:\eMule.exe -AutoStart
[02-HKLMREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[02-HKLMREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[02-HKLMREG]**Pokki -/- C:\Documents and Settings\Administrator\impostazioni locali\dati applicazioni\Pokki\Engine\pokki.exe
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**RunMessageController -/- C:\Programmi\ASUS\Message Controller\AsMessageController.exe
[02-HKLMREG]**Screen Service -/- C:\Programmi\ASUS\ASUS Eee Screen Setting\AsSrcHelper.exe
[02-HKLMREG]**SRS Premium Sound -/- C:\Programmi\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig.exe /hideme
[02-HKLMREG]**SystweakASP -/- C:\Programmi\RegClean Pro\SystweakASP.exe /verysilent
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Secured-IE Toolbar -/- C:\Programmi\Secured-IE\prxtbSec0.dll -/- {b1dde7f0-20f9-4785-abb4-ecdd1dae8b10}
[03-BHOCLSD]**Shareiiit -/- C:\Programmi\Shareiiit\ScriptHost.dll -/- {3335A474-24D1-49FA-97D0-58542BC5793D}
[03-BHOCLSD]**Shmoopy Toolbar -/- C:\Programmi\Shmoopy\prxtbShm1.dll -/- {d94b5aaa-b1bd-438b-ac0a-c505f6b347d1}
[03-BHOCLSD]**Skype add-on (mastermind) -/- C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll -/- {22BF413B-C6D2-4d91-82A9-A0F997BA588C}
[03-BHOCLSD]**Yahoo! Toolbar Helper -/- C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll -/- {02478D38-C3F9-4EFB-9B51-7695ECA05670}
[04-TOOLBAR]**Secured-IE Toolbar -/- C:\Programmi\Secured-IE\prxtbSec0.dll -/- {b1dde7f0-20f9-4785-abb4-ecdd1dae8b10}
[04-TOOLBAR]**Shmoopy Toolbar -/- C:\Programmi\Shmoopy\prxtbShm1.dll -/- {d94b5aaa-b1bd-438b-ac0a-c505f6b347d1}
[04-TOOLBAR]**Yahoo! Toolbar con blocco Pop-Up -/- C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll -/- {EF99BD32-C1FB-11D2-892F-0090271D4F88}
[05-SERVICE]**EhttpSrv -/- ESET HTTP Server -/- C:\Programmi\ESET\ESET Smart Security\EHttpSrv.exe
[05-SERVICE]**ekrn -/- ESET Service -/- C:\Programmi\ESET\ESET Smart Security\ekrn.exe
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**gupdate -/- Servizio Google Update (gupdate) -/- C:\Programmi\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Servizio Google Update (gupdatem) -/- C:\Programmi\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Updater Service -/- C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**napagent -/- Agente protezione accesso alla rete -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NMSAccessU -/- NMSAccessU -/- C:\Programmi\Illustrate\dBpoweramp\NMSAccessU.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ONDA Autorun CDROM Monitor -/- ONDA Autorun CDROM Monitor -/- C:\WINDOWS\system32\SupportAppXL\onda_mon.exe
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PanService -/- PandoraService -/- C:\Programmi\PANDORA.TV\PanService\PandoraService.exe
[05-SERVICE]**ServiceLayer -/- ServiceLayer -/- C:\Programmi\PC Connectivity Solution\ServiceLayer.exe
[05-SERVICE]**TouchPack -/- TouchPack -/- C:\Programmi\Touch Package\TouchPackService.exe
[05-SERVICE]**WinRM -/- Windows Remote Management (WS-Management) -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WsmSvc.dll
[05-SERVICE]**WMPNetworkSvc -/- Servizio di condivisione in rete Windows Media Player -/- C:\Programmi\Windows Media Player\WMPNetwk.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe