프로그램분석

Code : rOokoTilkJ9NdOQaVFzQIxoNH9TBRuwj

프로세스 천국 2013. 5. 20. 14:36

[00-PROCESS]**allpopsvi -/- C:\Program Files\allpopup\allpopsvi.exe
[00-PROCESS]**allpopup -/- C:\Program Files\allpopup\allpopup.exe
[00-PROCESS]**bizboan -/- C:\Program Files\Bizboan\bizboan.exe
[00-PROCESS]**BizMon -/- C:\Program Files\Bizboan\BizMon.exe
[00-PROCESS]**bizstartup -/- C:\Program Files\Bizboan\bizstartup.exe
[00-PROCESS]**bizsvc -/- C:\Program Files\Bizboan\bizsvc.exe
[00-PROCESS]**boanfile -/- C:\Program Files\boanfile\boanfile.exe
[00-PROCESS]**boanfilecnt -/- C:\Users\Administrator\AppData\Roaming\boanfile\boanfilecnt.exe
[00-PROCESS]**boanfilemon -/- C:\Program Files\boanfile\boanfilemon.exe
[00-PROCESS]**boanfilesvc -/- C:\Program Files\boanfile\boanfilesvc.exe
[00-PROCESS]**bootingpro -/- C:\Program Files\bootingpro\bootingpro.exe
[00-PROCESS]**bootingprocnt -/- C:\Users\Administrator\AppData\Roaming\bootingpro\bootingprocnt.exe
[00-PROCESS]**bootingprosvc -/- C:\Program Files\bootingpro\bootingprosvc.exe
[00-PROCESS]**clgsve -/- C:\Program Files\Windows CloudGet\clgsve.exe
[00-PROCESS]**clgsvp -/- C:\Program Files\Windows CloudGet\clgsvp.exe
[00-PROCESS]**clgsvr -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[00-PROCESS]**ctpop -/- C:\Program Files\ctpop\ctpop.exe
[00-PROCESS]**enumerate_gtu -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe
[00-PROCESS]**enumst -/- C:\Program Files\enumerate\gt\enumst.exe
[00-PROCESS]**ie_signkey -/- C:\Users\Administrator\AppData\Local\signkey\ie_signkey.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**ismctrl -/- C:\Program Files\insafeclient\ismctrl.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient\ismsvc.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\Windows ISM\ismsvc.exe
[00-PROCESS]**ismsvp -/- C:\Program Files\insafeclient\ismsvp.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**jqs -/- C:\Program Files\AniCt\jqs.exe
[00-PROCESS]**jqu -/- C:\Program Files\AniCt\jqu.exe
[00-PROCESS]**kwinso -/- C:\Program Files\kwinstart\kwinso.exe
[00-PROCESS]**kwinstart -/- C:\Program Files\kwinstart\kwinstart.exe
[00-PROCESS]**kwinstartagent -/- C:\Program Files\kwinstart\kwinstartagent.exe
[00-PROCESS]**lstspop -/- C:\Program Files\lastpopup\lstspop.exe
[00-PROCESS]**lstspsp -/- C:\Program Files\lastpopup\lstspsp.exe
[00-PROCESS]**lstspsv -/- C:\Program Files\lastpopup\lstspsv.exe
[00-PROCESS]**matchkey -/- C:\Program Files\matchkey\matchkey.exe
[00-PROCESS]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**mkeydel -/- C:\Program Files\matchkey\mkeydel.exe
[00-PROCESS]**mkeyup -/- C:\Program Files\matchkey\mkeyup.exe
[00-PROCESS]**nextray -/- C:\Program Files\nextray\nextray.exe
[00-PROCESS]**OdiskShortcut -/- C:\Users\Administrator\AppData\Local\Odisk\OdiskShortcut.exe
[00-PROCESS]**PCO -/- C:\Program Files\PCO\PCO.exe
[00-PROCESS]**PCOUpdate -/- C:\Program Files\PCO\PCOUpdate.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RaclSvc -/- C:\Program Files\Racl\RaclSvc.exe
[00-PROCESS]**RaclUninst -/- C:\Program Files\Racl\RaclUninst.exe
[00-PROCESS]**revealer -/- C:\Users\Administrator\AppData\Roaming\revealer\revealer.exe
[00-PROCESS]**revealerul -/- C:\Users\Administrator\AppData\Roaming\revealer\revealerul.exe
[00-PROCESS]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[00-PROCESS]**skun -/- C:\Users\Administrator\AppData\Local\signkey\skun.exe
[00-PROCESS]**SmartWeb -/- C:\Program Files\SmartWeb\SmartWeb.exe
[00-PROCESS]**SmartWebAgent -/- C:\Program Files\SmartWeb\SmartWebAgent.exe
[00-PROCESS]**SpdMgMain -/- C:\Program Files\speedmagic\SpdMgMain.exe
[00-PROCESS]**SpdMgService -/- C:\Program Files\speedmagic\SpdMgService.exe
[00-PROCESS]**SpdMgUpdater -/- C:\Program Files\speedmagic\SpdMgUpdater.exe
[00-PROCESS]**svcwsmwin -/- C:\Windows\system32\svcwsmwin.exe
[00-PROCESS]**TPAutoConnSvc -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[00-PROCESS]**TPVCGateway -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[00-PROCESS]**userinforesetupdate -/- C:\Windows\userinforesetupdate.exe
[00-PROCESS]**vmtoolsd -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[00-PROCESS]**voacfg -/- C:\Program Files\Windows VOA\voacfg.exe
[00-PROCESS]**voaclt -/- C:\Program Files\Windows VOA\voaclt.exe
[00-PROCESS]**voasvc -/- C:\Program Files\Windows VOA\voasvc.exe
[00-PROCESS]**voaupdate -/- C:\Program Files\Windows VOA\voaupdate.exe
[00-PROCESS]**wdrwsmsvc -/- C:\Windows\system32\wdrwsmsvc.exe
[00-PROCESS]**WhiteVaccine -/- C:\Program Files\WhiteVaccine\WhiteVaccine.exe
[00-PROCESS]**windowfaster -/- C:\Program Files\windowfaster\windowfaster.exe
[00-PROCESS]**windowfasterEngine -/- C:\Program Files\windowfaster\windowfasterEngine.exe
[00-PROCESS]**windowfasterse -/- C:\Program Files\windowfaster\windowfasterse.exe
[00-PROCESS]**windowfasterU -/- C:\Program Files\windowfaster\windowfasterU.exe
[00-PROCESS]**windowstab -/- C:\ProgramData\WindowsTab\windowstab.exe
[00-PROCESS]**windowstabup -/- C:\ProgramData\WindowsTab\windowstabup.exe
[00-PROCESS]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[00-PROCESS]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[00-PROCESS]**winsmex -/- C:\Program Files\WinsManager\winsmex.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WVAutoUpdate -/- C:\Program Files\WhiteVaccine\WVAutoUpdate.exe
[00-PROCESS]**WVMon -/- C:\Program Files\WhiteVaccine\etc\WVMon.exe
[00-PROCESS]**WVReg -/- C:\Program Files\WhiteVaccine\etc\WVReg.exe
[00-PROCESS]**xxx -/- C:\Windows\system32\xxx.exe
[01-HKCUREG]**AniCt -/- C:\Program Files\AniCt\jqu.exe -a
[01-HKCUREG]**ctpop -/- C:\Program Files\ctpop\ctpop.exe
[01-HKCUREG]**Enumerate_gt -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe Runcmd
[01-HKCUREG]**Enumerate_gtst -/- C:\Program Files\enumerate\gt\enumst.exe Runcmd
[01-HKCUREG]**kwinso -/- C:\Program Files\kwinstart\kwinso.exe
[01-HKCUREG]**kwinstart -/- C:\Program Files\kwinstart\kwinstart.exe
[01-HKCUREG]**kwinstartagent -/- C:\Program Files\kwinstart\kwinstartagent.exe
[01-HKCUREG]**matchkey -/- C:\Program Files\matchkey\mkeyup.exe
[01-HKCUREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[01-HKCUREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[01-HKCUREG]**revealerApp -/- C:\Users\Administrator\AppData\Roaming\revealer\revealer.exe Runcmd
[01-HKCUREG]**revealerApps -/- C:\Users\Administrator\AppData\Roaming\revealer\revealerul.exe
[01-HKCUREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[01-HKCUREG]**VMware Tools -/- C:\Program Files\VMware\VMware Tools\VMwareTray.exe
[01-HKCUREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[01-HKCUREG]**WindowsTab -/- C:\ProgramData\WindowsTab\windowstabup.exe
[01-HKCUREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[01-HKCUREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[01-HKCUREG]**windvieweropt -/- C:\Program Files\windviewer\windopt.exe
[02-HKLMREG]**AniCt -/- C:\Program Files\AniCt\jqu.exe -a
[02-HKLMREG]**ctpop -/- C:\Program Files\ctpop\ctpop.exe
[02-HKLMREG]**Enumerate_gt -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe Runcmd
[02-HKLMREG]**Enumerate_gtst -/- C:\Program Files\enumerate\gt\enumst.exe Runcmd
[02-HKLMREG]**kwinso -/- C:\Program Files\kwinstart\kwinso.exe
[02-HKLMREG]**kwinstart -/- C:\Program Files\kwinstart\kwinstart.exe
[02-HKLMREG]**kwinstartagent -/- C:\Program Files\kwinstart\kwinstartagent.exe
[02-HKLMREG]**matchkey -/- C:\Program Files\matchkey\mkeyup.exe
[02-HKLMREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[02-HKLMREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[02-HKLMREG]**revealerApp -/- C:\Users\Administrator\AppData\Roaming\revealer\revealer.exe Runcmd
[02-HKLMREG]**revealerApps -/- C:\Users\Administrator\AppData\Roaming\revealer\revealerul.exe
[02-HKLMREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[02-HKLMREG]**VMware Tools -/- C:\Program Files\VMware\VMware Tools\VMwareTray.exe
[02-HKLMREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[02-HKLMREG]**WindowsTab -/- C:\ProgramData\WindowsTab\windowstabup.exe
[02-HKLMREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[02-HKLMREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[02-HKLMREG]**windvieweropt -/- C:\Program Files\windviewer\windopt.exe
[03-BHOCLSD]**Enumerate Top Search - GT -/- C:\Program Files\enumerate\gt\enumerate_gt.dll -/- {A6DBA346-DB0B-4C41-A016-0B9D119DA78A}
[03-BHOCLSD]**kwinso -/- c:\PROGRA~2\KWINST~1\kwinso.dll -/- {CC01FC6C-CACC-4E17-8C06-95C30EF5E6A7}
[03-BHOCLSD]**kwinstartvb Class -/- C:\Program Files\kwinstart\kwinstartvb.dll -/- {546B17D8-0CAE-451B-B953-673628864920}
[03-BHOCLSD]**Revealing Top Search App -/- C:\Users\Administrator\AppData\Roaming\revealer\revealertop.dll -/- {E5814D95-D494-4907-A206-BFBE8BAE5840}
[03-BHOCLSD]**windviewer Class -/- C:\Program Files\windviewer\windviewer.dll -/- {CC34B3C3-3904-4D0E-8035-536715B28BBA}
[04-TOOLBAR]**잠김영역복사 -/- C:\Program Files\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**allpopup -/- allpopup svc -/- C:\Program Files\allpopup\allpopsvi.exe
[05-SERVICE]**bizboan -/- bizboan 서비스 -/- C:\Program Files\Bizboan\bizsvc.exe
[05-SERVICE]**boanfile -/- boanfile svc -/- C:\Program Files\boanfile\boanfilesvc.exe
[05-SERVICE]**bootingpro -/- bootingpro svc -/- C:\Program Files\bootingpro\bootingprosvc.exe
[05-SERVICE]**clgsvr32 -/- Windows CloudGet Service -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[05-SERVICE]**ismsvc -/- Windows ISM -/- C:\Program Files\Windows ISM\ismsvc.exe
[05-SERVICE]**ismsvc32 -/- INSAFE Client 1.0 -/- C:\Program Files\insafeclient\ismsvc.exe
[05-SERVICE]**lstspsv32 -/- Windows Explorer Lastpopup v1.11 -/- C:\Program Files\lastpopup\lstspsv.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**SpdMgService -/- speedmagic Service -/- C:\Program Files\speedmagic\SpdMgService.exe
[05-SERVICE]**TPAutoConnSvc -/- TP AutoConnect Service -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[05-SERVICE]**TPVCGateway -/- TP VC Gateway Service -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[05-SERVICE]**VMTools -/- VMware Tools -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[05-SERVICE]**vmvss -/- VMware Snapshot Provider -/- C:\Windows\system32\dllhost.exe
[05-SERVICE]**voasvc -/- Windows VOA -/- C:\Program Files\Windows VOA\voasvc.exe
[05-SERVICE]**windowfaster Update Service -/- windowfaster Support Service -/- C:\Windows\userinforesetupdate.exe
[05-SERVICE]**windowfasterService -/- windowfaster Service -/- C:\Program Files\windowfaster\windowfasterse.exe
[05-SERVICE]**Windows WinsManager Diagnostics Service -/- Windows WinsManager Diagnostics Service -/- C:\Windows\system32\wdrwsmsvc.exe
[05-SERVICE]**WindowsDriver -/- WindowsDriver -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\WindowsDriver.dll
[05-SERVICE]**WinsManager Service -/- WinsManager Service -/- C:\Windows\system32\svcwsmwin.exe