프로그램분석

Code : vtYLraGa1spfHy8bIVZlOQS+/hyh8FExXWpDKhiXEjA=

프로세스 천국 2013. 5. 18. 21:12

[00-PROCESS]**AdobeCollabSync -/- C:\Program Files\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe
[00-PROCESS]**apnmcp -/- C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[00-PROCESS]**aspnet_state -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
[00-PROCESS]**AutoDect -/- C:\Program Files\AIS Aircard Connection\AutoDect.exe
[00-PROCESS]**BAVSvc -/- C:\Program Files\Baidu Security\Cloud Security\BAVSvc.exe
[00-PROCESS]**chrome -/- C:\Users\Administrator\AppData\Local\Google\Chrome\Application\chrome.exe
[00-PROCESS]**CLHNServiceForPowerDVD -/- C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
[00-PROCESS]**CLMSMonitorService -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
[00-PROCESS]**CLMSServer -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServer.exe
[00-PROCESS]**CMUpdater -/- C:\Program Files\AIS Aircard Connection\CMUpdater.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GovernorofPoker2_SE_Alawar -/- C:\Program Files\GovernorofPoker2_at\GovernorofPoker2_SE_Alawar.exe
[00-PROCESS]**hale -/- C:\Windows\System32\hale.exe
[00-PROCESS]**IDMan -/- C:\Program Files\Internet Download Manager\IDMan.exe
[00-PROCESS]**igfxpers -/- C:\Windows\system32\igfxpers.exe
[00-PROCESS]**igfxpers -/- C:\Windows\System32\igfxpers.exe
[00-PROCESS]**igfxsrvc -/- C:\Windows\system32\igfxsrvc.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**KMService -/- C:\Windows\KMService.exe
[00-PROCESS]**McCHSvc -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**PCFaster -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.25\PCFaster.exe
[00-PROCESS]**PCFasterSvc -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.25\PCFasterSvc.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RAVCpl64 -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
[00-PROCESS]**rundll32 -/- C:\Windows\system32\rundll32.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[00-PROCESS]**srvany -/- C:\Windows\system32\srvany.exe
[00-PROCESS]**SSScheduler -/- C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe
[00-PROCESS]**TBNotifier -/- C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
[00-PROCESS]**TeamViewer_Service -/- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
[00-PROCESS]**UIMain -/- C:\Program Files\AIS Aircard Connection\UIMain.exe
[00-PROCESS]**Updater -/- C:\Program Files\Ask.com\Updater\Updater.exe
[00-PROCESS]**viakaraokesrv -/- C:\Windows\system32\viakaraokesrv.exe
[00-PROCESS]**wineaafhx -/- C:\Users\Administrator\AppData\Local\Temp\wineaafhx.exe
[00-PROCESS]**winfdopu -/- C:\Users\Administrator\AppData\Local\Temp\winfdopu.exe
[00-PROCESS]**WinRAR -/- C:\Program Files\WinRAR\WinRAR.exe
[00-PROCESS]**WLIDSVC -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[00-PROCESS]**WLIDSvcM -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**Y2Desktop.Updater -/- C:\Program Files\Yontoo\Y2Desktop.Updater.exe
[00-PROCESS]**YontooDesktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[01-HKCUREG]**Adobe Acrobat Synchronizer -/- C:\Program Files\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe
[01-HKCUREG]**ApnTBMon -/- C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
[01-HKCUREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[01-HKCUREG]**autodetect -/- C:\Program Files\AIS Aircard Connection\AutoDect.exe
[01-HKCUREG]**Baidu PC Faster 3.2.0.25 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.25\PCFaster.exe -auto -start
[01-HKCUREG]**Chew7Hale -/- C:\Windows\System32\hale.exe /nolog
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[01-HKCUREG]**Yontoo Desktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[02-HKLMREG]**Adobe Acrobat Synchronizer -/- C:\Program Files\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe
[02-HKLMREG]**ApnTBMon -/- C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
[02-HKLMREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[02-HKLMREG]**autodetect -/- C:\Program Files\AIS Aircard Connection\AutoDect.exe
[02-HKLMREG]**Baidu PC Faster 3.2.0.25 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.25\PCFaster.exe -auto -start
[02-HKLMREG]**Chew7Hale -/- C:\Windows\System32\hale.exe /nolog
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[02-HKLMREG]**Yontoo Desktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[03-BHOCLSD]**Adobe PDF Conversion Toolbar Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll -/- {AE7CD045-E861-484f-8273-0445EE161910}
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**Ask Toolbar -/- C:\Program Files\AskPartnerNetwork\Toolbar\ZTV-V6\Passport.dll -/- {5A54562D-5636-006A-76A7-7A786E7484D7}
[03-BHOCLSD]**ConetInUyetyOsaavvea -/- C:\ProgramData\ConetInUyetyOsaavvea\5191699542e93.dll -/- {66BA1394-A814-0A8B-3F68-95674AD4C20E}
[03-BHOCLSD]**contaiynuettosaovve -/- C:\ProgramData\contaiynuettosaovve\518a28ffc7002.dll -/- {9757F23E-231E-6C32-12DC-4AB6F9A84DBA}
[03-BHOCLSD]**contaiynuettosaovve -/- C:\ProgramData\contaiynuettosaovve\518a291929eef.dll -/- {0639D75A-D010-1C93-EF44-DBB8E1A38DD2}
[03-BHOCLSD]**coNtinuuetosave -/- C:\ProgramData\coNtinuuetosave\51970287b5545.dll -/- {4596E14A-46C1-90EE-663C-702CBC28B194}
[03-BHOCLSD]**coNtinuuetosave -/- C:\ProgramData\coNtinuuetosave\51972a1c3506f.dll -/- {5D4BA609-5856-4426-DFD1-6CEE1650B8B8}
[03-BHOCLSD]**delta Helper Object -/- C:\Program Files\Delta\delta\1.8.21.0\bh\delta.dll -/- {C1AF5FA5-852C-4C90-812E-A7F75E011D87}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC64.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**SearchNewTab -/- C:\ProgramData\SearchNewTab\51916b1a185bf.dll -/- {F5029F3E-3ECB-74D6-1501-330D685FA09F}
[03-BHOCLSD]**SearchNewTab -/- C:\ProgramData\SearchNewTab\51970391b7644.dll -/- {2A2F0FF7-6CBF-D99E-1646-0236D4FBCF67}
[03-BHOCLSD]**SearchNewTab -/- C:\ProgramData\SearchNewTab\51972a3d34f4b.dll -/- {F620C7B9-FE69-6840-3EC0-68561A23EC6E}
[03-BHOCLSD]**SmartSelect Class -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll -/- {F4971EE7-DAA0-4053-9964-665D8EE6A077}
[03-BHOCLSD]**Windows Live ID Sign-in Helper -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[03-BHOCLSD]**Yontoo -/- C:\Program Files\Yontoo\YontooIEClient.dll -/- {FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
[03-BHOCLSD]**ZiggyTV Downloader -/- mscoree.dll -/- {62e3fd2a-c728-409d-b1ce-4468fd455e82}
[04-TOOLBAR]**Adobe PDF -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**Ask Toolbar -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[04-TOOLBAR]**Ask Toolbar -/- C:\Program Files\AskPartnerNetwork\Toolbar\ZTV-V6\Passport.dll -/- {5A54562D-5636-006A-76A7-7A786E7484D7}
[04-TOOLBAR]**Delta Toolbar -/- C:\Program Files\Delta\delta\1.8.21.0\deltaTlbr.dll -/- {82E1477C-B154-48D3-9891-33D83C26BCD3}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**APNMCP -/- Ask Update Service -/- C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**BAVSvc -/- Baidu Antivirus Service -/- C:\Program Files\Baidu Security\Cloud Security\BAVSvc.exe
[05-SERVICE]**Bonjour Service -/- Bonjour Service -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**CLHNServiceForPowerDVD -/- CLHNServiceForPowerDVD -/- C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
[05-SERVICE]**CyberLink PowerDVD 11.0 Monitor Service -/- CyberLink PowerDVD 11.0 Monitor Service -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
[05-SERVICE]**CyberLink PowerDVD 11.0 Service -/- CyberLink PowerDVD 11.0 Service -/- C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServer.exe
[05-SERVICE]**gupdate -/- บริการอัปเดตของ Google (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- บริการ ข่าวอัพเดต Google (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**iPod Service -/- บริการ iPod -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**KMService -/- KMService -/- C:\Windows\system32\srvany.exe
[05-SERVICE]**McComponentHostService -/- McAfee Security Scan Component Host Service -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[05-SERVICE]**NetMsmqActivator -/- Net.Msmq Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe -NetMsmqActivator
[05-SERVICE]**NetPipeActivator -/- Net.Pipe Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpActivator -/- Net.Tcp Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**ose -/- Office  Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**PCFasterSvc_{PCFaster_3.2.0.25} -/- Baidu PC Faster Service 3.2.0.25 -/- C:\Program Files\Baidu Security\PC Faster\3.2.0.25\PCFasterSvc.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**TeamViewer6 -/- TeamViewer 6 -/- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
[05-SERVICE]**VIAKaraokeService -/- VIA Karaoke digital mixer Service -/- C:\Windows\system32\viakaraokesrv.exe
[05-SERVICE]**wlidsvc -/- Windows Live ID Sign-in Assistant -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[05-SERVICE]**Yontoo Desktop Updater -/- Yontoo Desktop Updater -/- C:\Program Files\Yontoo\Y2Desktop.Updater.exe C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe