프로그램분석

Code : lxLbopE1ISih+U54hnmcw7+ZUqHzuVQh

프로세스 천국 2013. 5. 14. 09:50

[00-PROCESS]**ADriveDownService -/- C:\Program Files\ADrive\ADriveDownService.exe
[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**appcon -/- C:\Program Files\appcon\appcon.exe
[00-PROCESS]**c2c_service -/- C:\Documents and Settings\Administrator\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
[00-PROCESS]**chicon -/- C:\Program Files\chicon\chicon.exe
[00-PROCESS]**cnbasvc -/- C:\Program Files\cnbarod\cnbasvc.exe
[00-PROCESS]**ctserv -/- C:\Program Files\ctserv\ctserv.exe
[00-PROCESS]**direcon -/- C:\Program Files\direcon\direcon.exe
[00-PROCESS]**FBDSvcMan -/- C:\Documents and Settings\Administrator\Application Data\SpeedDownload\FBDSvcMan.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[00-PROCESS]**GuardConvert -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe
[00-PROCESS]**iamclt -/- C:\Program Files\Windows IAM\iamclt.exe
[00-PROCESS]**iamsvc -/- C:\Program Files\Windows IAM\iamsvc.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**intsfad -/- C:\Program Files\Windows InternetSafer\intsfad.exe
[00-PROCESS]**intsfsrv -/- C:\Program Files\Windows InternetSafer\intsfsrv.exe
[00-PROCESS]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[00-PROCESS]**MDM -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[00-PROCESS]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe
[00-PROCESS]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe
[00-PROCESS]**mmc -/- C:\WINDOWS\system32\mmc.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\FileJo\NetAccelerator.exe
[00-PROCESS]**NowDn_S -/- C:\Documents and Settings\Administrator\Local Settings\Temp\_nowcdn_\NowDn_S.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**piims -/- C:\Program Files\pims\piims.exe
[00-PROCESS]**PIIMSService -/- C:\Program Files\pims\PIIMSService.exe
[00-PROCESS]**SNChkSvc -/- C:\Program Files\SearchN\SNChkSvc.exe
[00-PROCESS]**svcwsmwin -/- C:\WINDOWS\System32\svcwsmwin.exe
[00-PROCESS]**Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[00-PROCESS]**wdrwsmsvc -/- C:\WINDOWS\System32\wdrwsmsvc.exe
[00-PROCESS]**windowstatus -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Applications\windowstatus.exe
[00-PROCESS]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[00-PROCESS]**winsmex -/- C:\Program Files\WinsManager\winsmex.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**appcon -/- C:\Program Files\appcon\appcon.exe
[01-HKCUREG]**appis.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[01-HKCUREG]**chicon -/- C:\Program Files\chicon\chicon.exe
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**direcon -/- C:\Program Files\direcon\direcon.exe
[01-HKCUREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -tNEuITB
[01-HKCUREG]**infocover main -/- C:\Program Files\infocover\infocoveru.exe
[01-HKCUREG]**intsfad -/- C:\Program Files\Windows InternetSafer\intsfad.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**Kp -/- C:\Program Files\kpupdate\kpupdate.exe
[01-HKCUREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -bwmdrB
[01-HKCUREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -bwmdrB
[01-HKCUREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -tNEuITB
[01-HKCUREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -tNEuITB
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[01-HKCUREG]**update.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\update.exe
[01-HKCUREG]**windowstatus -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Applications\windowstatus.exe
[01-HKCUREG]**winhelp.exe -/- C:\Program Files\winhelp\winhelp.exe
[01-HKCUREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[02-HKLMREG]**appcon -/- C:\Program Files\appcon\appcon.exe
[02-HKLMREG]**appis.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[02-HKLMREG]**chicon -/- C:\Program Files\chicon\chicon.exe
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**direcon -/- C:\Program Files\direcon\direcon.exe
[02-HKLMREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -tNEuITB
[02-HKLMREG]**infocover main -/- C:\Program Files\infocover\infocoveru.exe
[02-HKLMREG]**intsfad -/- C:\Program Files\Windows InternetSafer\intsfad.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**Kp -/- C:\Program Files\kpupdate\kpupdate.exe
[02-HKLMREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -bwmdrB
[02-HKLMREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -bwmdrB
[02-HKLMREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -tNEuITB
[02-HKLMREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -tNEuITB
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**signkey -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\signkey\signkey.exe
[02-HKLMREG]**update.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\update.exe
[02-HKLMREG]**windowstatus -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Applications\windowstatus.exe
[02-HKLMREG]**winhelp.exe -/- C:\Program Files\winhelp\winhelp.exe
[02-HKLMREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[03-BHOCLSD]**IEHlprObj Class -/- C:\WINDOWS\system32\kakutk.dll -/- {AB705622-B25B-491B-A6BF-4A46FDDBC88E}
[05-SERVICE]**adbfqqnvftj -/- adbfqqnvftj -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\adbfqqnvftj\adbfqqnvftj.dll
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ADriveDownService -/- ADrive Download Service -/- C:\Program Files\ADrive\ADriveDownService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**bhwjobm -/- bhwjobm -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\bhwjobm\bhwjobm.dll
[05-SERVICE]**cnbarod -/- cnbarod svc -/- C:\Program Files\cnbarod\cnbasvc.exe
[05-SERVICE]**crzflgqdg -/- crzflgqdg -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\crzflgqdg\crzflgqdg.dll
[05-SERVICE]**ctwopop -/- ctwopop svc -/- C:\Program Files\ctserv\ctserv.exe
[05-SERVICE]**dejenere -/- dejenere -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\dejenere\dejenere.dll
[05-SERVICE]**dogrwsmkj -/- dogrwsmkj -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\dogrwsmkj\dogrwsmkj.dll
[05-SERVICE]**dwmruwy -/- dwmruwy -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\dwmruwy\dwmruwy.dll
[05-SERVICE]**egsiecyqfh -/- egsiecyqfh -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\egsiecyqfh\egsiecyqfh.dll
[05-SERVICE]**ensxrfiibn -/- ensxrfiibn -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\ensxrfiibn\ensxrfiibn.dll
[05-SERVICE]**FBDSvcman -/- FBDSvcman -/- C:\Documents and Settings\Administrator\Application Data\SpeedDownload\FBDSvcMan.exe
[05-SERVICE]**fmzwrbz -/- fmzwrbz -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\fmzwrbz\fmzwrbz.dll
[05-SERVICE]**FsUsbExService -/- FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[05-SERVICE]**hcw24sir -/- hcw24sir -/- C:\WINDOWS\System32\svchost.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\hcw24sir\hcw24sir.dll
[05-SERVICE]**iamsvc -/- Windows IAM -/- C:\Program Files\Windows IAM\iamsvc.exe
[05-SERVICE]**InternetSafer Protector -/- InternetSafer Protector Application -/- C:\Program Files\Windows InternetSafer\intsfsrv.exe
[05-SERVICE]**ipjdpig -/- ipjdpig -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\ipjdpig\ipjdpig.dll
[05-SERVICE]**jonaodf -/- jonaodf -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\jonaodf\jonaodf.dll
[05-SERVICE]**jqmusqcnpw -/- jqmusqcnpw -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\jqmusqcnpw\jqmusqcnpw.dll
[05-SERVICE]**jvmpnq -/- jvmpnq -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\jvmpnq\jvmpnq.dll
[05-SERVICE]**llgmmh -/- llgmmh -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\llgmmh\llgmmh.dll
[05-SERVICE]**MDM -/- Machine Debug Manager -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**ncighstd -/- ncighstd -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\ncighstd\ncighstd.dll
[05-SERVICE]**NetAccelerator -/- NetAccelerator_Service -/- C:\Program Files\FileJo\NetAccelerator.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**NVSvc -/- NVIDIA Display Driver Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PIIMSService -/- piims -/- C:\Program Files\pims\PIIMSService.exe
[05-SERVICE]**qfskyebnlbl -/- qfskyebnlbl -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\qfskyebnlbl\qfskyebnlbl.dll
[05-SERVICE]**SearchN -/- 서치엔(SearchN) -/- C:\Program Files\SearchN\SNChkSvc.exe
[05-SERVICE]**Skype C2C Service -/- Skype C2C Service -/- C:\Documents and Settings\Administrator\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
[05-SERVICE]**SkypeUpdate -/- Skype Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[05-SERVICE]**svclcaskkkz -/- svclcaskkkz -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\svclcaskkkz\svclcaskkkz.dll
[05-SERVICE]**tnkljfkzboz -/- tnkljfkzboz -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\tnkljfkzboz\tnkljfkzboz.dll
[05-SERVICE]**vmewhsllaq -/- vmewhsllaq -/- C:\WINDOWS\System32\svchost.exe -/- C:\Program Files\vmewhsllaq\vmewhsllaq.dll
[05-SERVICE]**Windows WinsManager Diagnostics Service -/- Windows WinsManager Diagnostics Service -/- C:\WINDOWS\System32\wdrwsmsvc.exe
[05-SERVICE]**WindowsDriver -/- WindowsDriver -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WindowsDriver.dll
[05-SERVICE]**WinsManager Service -/- WinsManager Service -/- C:\WINDOWS\System32\svcwsmwin.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe