프로그램분석

Code : 7HOpW67QNd/xY/YfN0vx4TZ+AoXPqe8zW08rTpJCOKg=

프로세스 천국 2013. 5. 16. 00:01

[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**BAVSvc -/- C:\Program Files\Baidu Security\Cloud Security\BAVSvc.exe
[00-PROCESS]**BrMfcWnd -/- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
[00-PROCESS]**BrowserProtect -/- C:\Documents and Settings\Administrator\Application Data\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
[00-PROCESS]**chrome -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
[00-PROCESS]**CLHNServiceForPowerDVD -/- C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
[00-PROCESS]**CLMSMonitorService -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
[00-PROCESS]**CLMSServerForPDVD11 -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe
[00-PROCESS]**dmwu -/- C:\WINDOWS\system32\dmwu.exe
[00-PROCESS]**egui -/- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
[00-PROCESS]**EHttpSrv -/- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
[00-PROCESS]**ekrn -/- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
[00-PROCESS]**ExtensionUpdaterService -/- C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**mdm -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PCFaster -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.17\PCFaster.exe
[00-PROCESS]**PCFasterSvc -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.17\PCFasterSvc.exe
[00-PROCESS]**PDAgent -/- C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
[00-PROCESS]**PDEngine -/- C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
[00-PROCESS]**PrivitizeVPN -/- C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe
[00-PROCESS]**Reactivate -/- C:\Program Files\StartNow Toolbar\Reactivate.exe
[00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
[00-PROCESS]**SaveAs -/- C:\Documents and Settings\Administrator\Application Data\Premium\SaveAs\SaveAs.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**stij -/- C:\WINDOWS\system32\jmdp\stij.exe
[00-PROCESS]**SwitchBoard -/- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
[00-PROCESS]**ToolbarUpdaterService -/- C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
[00-PROCESS]**update_checker -/- C:\Program Files\FilesFrog Update Checker\update_checker.exe
[00-PROCESS]**Updater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[00-PROCESS]**USBGuard -/- C:\Program Files\USB Disk Security\USBGuard.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**WxDFast -/- C:\Documents and Settings\Administrator\Application Data\WxDFast\WxDFast.exe
[00-PROCESS]**ZoomEx -/- C:\Documents and Settings\Administrator\Application Data\Premium\ZoomEx\ZoomEx.exe
[01-HKCUREG]**ApnUpdater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[01-HKCUREG]**Baidu PC Faster 3.2.0.17 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.17\PCFaster.exe -auto -start
[01-HKCUREG]**BrMfcWnd -/- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
[01-HKCUREG]**CTFMON.EXE -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**egui -/- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice
[01-HKCUREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**PrivitizeVPN -/- C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe /autorun
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**SDP -/- C:\Program Files\FilesFrog Update Checker\update_checker.exe /auto
[01-HKCUREG]**USB Security -/- C:\Program Files\USB Disk Security\USBGuard.exe
[02-HKLMREG]**ApnUpdater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[02-HKLMREG]**Baidu PC Faster 3.2.0.17 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.17\PCFaster.exe -auto -start
[02-HKLMREG]**BrMfcWnd -/- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
[02-HKLMREG]**CTFMON.EXE -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**egui -/- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice
[02-HKLMREG]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**PrivitizeVPN -/- C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe /autorun
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**SDP -/- C:\Program Files\FilesFrog Update Checker\update_checker.exe /auto
[02-HKLMREG]**USB Security -/- C:\Program Files\USB Disk Security\USBGuard.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**Babylon toolbar helper -/- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.29.1\bh\BabylonToolbar.dll -/- {2EECD738-5844-4a99-B4B6-146BF802613B}
[03-BHOCLSD]**Complitly -/- C:\Documents and Settings\Administrator\Application Data\Complitly\Complitly.dll -/- {0FB6A909-6086-458F-BD92-1F8EE10042A0}
[03-BHOCLSD]**DownTango Launcher -/- C:\Documents and Settings\Administrator\Application Data\FTDownTango1bToolbar\FTDownTango1bToolbar.dll -/- {a4689b79-6a50-4cb1-b9e1-e5970c88bf96}
[03-BHOCLSD]**Google Toolbar Helper -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {AA58ED58-01DD-4d91-8333-CF10577473F7}
[03-BHOCLSD]**Google Toolbar Notifier BHO -/- C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll -/- {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**Incredibar.com Helper Object -/- C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll -/- {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre7\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**MinibarBHO -/- C:\Program Files\Minibar\Minibar.dll -/- {AA74D58F-ACD0-450D-A85E-6C04B171C044}
[03-BHOCLSD]**N.A -/- N.A -/- {5C255C8A-E604-49b4-9D64-90988571CECB}
[03-BHOCLSD]**SaveAs -/- C:\Documents and Settings\Administrator\Application Data\SaveAs\50dfd40503d48.dll -/- {6C6A5BBB-AA33-1B17-C6F2-2026E48EBE09}
[03-BHOCLSD]**StartNow Toolbar Helper -/- C:\Program Files\StartNow Toolbar\Toolbar32.dll -/- {6E13D095-45C3-4271-9475-F3B48227DD9F}
[03-BHOCLSD]**Web Assistant -/- C:\Program Files\Web Assistant\Extension32.dll -/- {336D0C35-8A85-403a-B9D2-65C292C39087}
[03-BHOCLSD]**Windows Live Sign-in Helper -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[03-BHOCLSD]**Zoomex -/- C:\Documents and Settings\Administrator\Application Data\Zoomex\50dfda2895222.dll -/- {44A4AB32-6525-F4BD-A0AC-71E7008164B2}
[03-BHOCLSD]**Zoomex -/- C:\Documents and Settings\Administrator\Application Data\Zoomex\50dfdacc45ae3.dll -/- {A3BFC298-D466-3B61-5E2D-F7FE5143ABD6}
[04-TOOLBAR]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[04-TOOLBAR]**Babylon Toolbar -/- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.29.1\BabylonToolbarTlbr.dll -/- {98889811-442D-49dd-99D7-DC866BE87DBC}
[04-TOOLBAR]**DownTango Launcher -/- C:\Documents and Settings\Administrator\Application Data\FTDownTango1bToolbar\FTDownTango1bToolbar.dll -/- {a4689b79-6a50-4cb1-b9e1-e5970c88bf96}
[04-TOOLBAR]**Google Toolbar -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll -/- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
[04-TOOLBAR]**Incredibar Toolbar -/- C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll -/- {F9639E4A-801B-4843-AEE3-03D9DA199E77}
[04-TOOLBAR]**StartNow Toolbar -/- C:\Program Files\StartNow Toolbar\Toolbar32.dll -/- {5911488E-9D1E-40ec-8CBB-06B231CC153F}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**BAVSvc -/- Baidu Antivirus Service -/- C:\Program Files\Baidu Security\Cloud Security\BAVSvc.exe
[05-SERVICE]**Bonjour Service -/- Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**BrowserProtect -/- BrowserProtect -/- C:\Documents and Settings\Administrator\Application Data\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
[05-SERVICE]**CLHNServiceForPowerDVD -/- CLHNServiceForPowerDVD -/- C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
[05-SERVICE]**CyberLink PowerDVD 11.0 Monitor Service -/- CyberLink PowerDVD 11.0 Monitor Service -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
[05-SERVICE]**CyberLink PowerDVD 11.0 Service -/- CyberLink PowerDVD 11.0 Service -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe
[05-SERVICE]**EhttpSrv -/- ESET HTTP Server -/- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
[05-SERVICE]**ekrn -/- ESET Service -/- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
[05-SERVICE]**gupdate -/- บริการ ข่าวอัพเดต Google (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- บริการ ข่าวอัพเดต Google (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Software Updater -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**IBUpdaterService -/- IBUpdaterService -/- C:\WINDOWS\system32\dmwu.exe
[05-SERVICE]**iPod Service -/- บริการ iPod -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre7\bin\jqs.exe -service -config C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf
[05-SERVICE]**MDM -/- Machine Debug Manager -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NMIndexingService -/- NMIndexingService -/- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
[05-SERVICE]**nvsvc -/- NVIDIA Display Driver Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**NWCWorkstation -/- Client Service for NetWare -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\nwwks.dll
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PCFasterSvc_{PCFaster_3.2.0.17} -/- Baidu PC Faster Service 3.2.0.17 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.17\PCFasterSvc.exe
[05-SERVICE]**PDAgent -/- PDAgent -/- C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
[05-SERVICE]**PDEngine -/- PDEngine -/- C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
[05-SERVICE]**SwitchBoard -/- SwitchBoard -/- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
[05-SERVICE]**Updater Service for StartNow Toolbar -/- Updater Service for StartNow Toolbar -/- C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
[05-SERVICE]**Web Assistant Updater -/- Web Assistant Updater -/- C:\Program Files\Web Assistant\ExtensionUpdaterService.exe