프로그램분석

Code : sAJxtQKYBywd2fVunpMW9ZQR+CRjIxbNrlFlzO53Qis=

프로세스 천국 2013. 5. 13. 16:45

[00-PROCESS]**5CD40B -/- C:\WINDOWS\system32\F51D60\5CD40B.EXE
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**EvtEng -/- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**hnlaqd -/- C:\WINDOWS\TEMP\hnlaqd.exe
[00-PROCESS]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**KYDeviceServer -/- C:\Program Files\kuaiyong\DRM\KYDeviceServer.exe
[00-PROCESS]**maintenanceservice -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**NASvc -/- C:\Program Files\Nero\Update\NASvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**RegSrvc -/- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
[00-PROCESS]**S24EvMon -/- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
[00-PROCESS]**Safari -/- C:\Program Files\Safari\Safari.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[00-PROCESS]**StarWindServiceAE -/- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
[00-PROCESS]**WebKit2WebProcess -/- C:\Program Files\Safari\Apple Application Support\WebKit2WebProcess.exe
[00-PROCESS]**WinRAR -/- C:\Program Files\WinRAR\WinRAR.exe
[00-PROCESS]**winrasoil -/- C:\WINDOWS\TEMP\winrasoil.exe
[01-HKCUREG]**5CD40B -/- C:\WINDOWS\system32\F51D60\5CD40B.EXE
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[02-HKLMREG]**5CD40B -/- C:\WINDOWS\system32\F51D60\5CD40B.EXE
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[03-BHOCLSD]**Berowsye2saveEu -/- C:\Documents and Settings\Administrator\Application Data\Berowsye2saveEu\517fd206c6a0a.dll -/- {D4C200AE-478B-D0CC-3AE0-29A63BB5FDEE}
[03-BHOCLSD]**BHOImpl Class -/- C:\Documents and Settings\Administrator\My Documents\iTools\Plugin\iToolsBHO.dll -/- {E1499FE7-129D-4B6E-B681-DDF21E14172C}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**RealPlayer Download and Record Plugin for Internet Explorer -/- C:\Documents and Settings\Administrator\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll -/- {3049C3E9-B461-4BC5-8870-4C09146192CA}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Bonjour Service -/- Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**EvtEng -/- Intel(R) PROSet/Wireless Event Log -/- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
[05-SERVICE]**iPod Service -/- บริการ iPod -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**KYDeviceServer -/- ฟ์ำรษ่ฑธทฮ๑ -/- C:\Program Files\kuaiyong\DRM\KYDeviceServer.exe -Host
[05-SERVICE]**MozillaMaintenance -/- Mozilla Maintenance Service -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NAUpdate -/- Nero Update -/- C:\Program Files\Nero\Update\NASvc.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**RegSrvc -/- Intel(R) PROSet/Wireless Registry Service -/- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
[05-SERVICE]**S24EventMonitor -/- Intel(R) PROSet/Wireless Service -/- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
[05-SERVICE]**StarWindServiceAE -/- StarWind AE Service -/- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe