Code : zvEPRqtV0+XGeRtalRBFAMp8ZLcFK+4c138tboWM9RY=
[00-PROCESS]**adInstall_ad039 -/- C:\Windows\adInstall_ad039.exe
[00-PROCESS]**gongoo -/- C:\Windows\gongoo.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneSetup_66_hide -/- C:\Windows\ISZoneSetup_66_hide.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RaclSetup_tjco001 -/- C:\Windows\RaclSetup_tjco001.exe
[00-PROCESS]**RaclSvc -/- C:\Program Files\Racl\RaclSvc.exe
[00-PROCESS]**RaclUninst -/- C:\Program Files\Racl\RaclUninst.exe
[00-PROCESS]**speedlite -/- C:\Program Files\speedlite\speedlite.exe
[00-PROCESS]**speedlitese -/- C:\Program Files\speedlite\speedlitese.exe
[00-PROCESS]**speedlitesetup_fastrealm -/- C:\Windows\speedlitesetup_fastrealm.exe
[00-PROCESS]**speedliteU -/- C:\Program Files\speedlite\speedliteU.exe
[00-PROCESS]**STool -/- C:\Program Files\STool\STool.exe
[00-PROCESS]**TPAutoConnSvc -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[00-PROCESS]**TPVCGateway -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[00-PROCESS]**vmtoolsd -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[00-PROCESS]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[00-PROCESS]**WindowmodusSetup_k10000 -/- C:\Windows\WindowmodusSetup_k10000.exe
[00-PROCESS]**WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[01-HKCUREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[01-HKCUREG]**STool -/- C:\Program Files\STool\STool.exe
[01-HKCUREG]**VMware Tools -/- C:\Program Files\VMware\VMware Tools\VMwareTray.exe
[01-HKCUREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[01-HKCUREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[02-HKLMREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[02-HKLMREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[02-HKLMREG]**STool -/- C:\Program Files\STool\STool.exe
[02-HKLMREG]**VMware Tools -/- C:\Program Files\VMware\VMware Tools\VMwareTray.exe
[02-HKLMREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[02-HKLMREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[03-BHOCLSD]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.dll -/- {0B3B9D03-5E08-4E48-BF77-FC88443F3DC2}
[03-BHOCLSD]**STool -/- C:\Program Files\STool\STool.dll -/- {88B3E7BD-0AD1-44FD-823F-9E880D871D5D}
[04-TOOLBAR]**잠김영역복사 -/- C:\Program Files\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**speedliteService -/- speedlite Service -/- C:\Program Files\speedlite\speedlitese.exe
[05-SERVICE]**TPAutoConnSvc -/- TP AutoConnect Service -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[05-SERVICE]**TPVCGateway -/- TP VC Gateway Service -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[05-SERVICE]**VMTools -/- VMware Tools -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[05-SERVICE]**vmvss -/- VMware Snapshot Provider -/- C:\Windows\system32\dllhost.exe
[05-SERVICE]**WindowmodusUpdateService -/- WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
NA001 api.admatching.co.kr/admatching/info.php?pid=ad039&cid=000c2961**.***
NA002 api.admatching.co.kr/admatching/matchsitelist.php?pid=ad039&cid**.***
NA003 api.admatching.co.kr/admatching/update_mb.php?pid=ad039&cid=000**.***
NA004 api.admatching.co.kr/admatching/urlmatchlist.php?pid=ad039&cid=**.***
NA005 api.admatching.co.kr/admatching/urlmatchlist_coworker.php?pid=a**.***
NA006 api.admatching.co.kr/admatching/urlmatchlist_merchant.php?pid=a**.***
NA007 api.provide.kr/AppTag/TagCnt.php?cddtc=g*.***
NA008 directkeyword.co.kr/daemon/ServiceReport.php?m=000C2961CEE7&t=B**.***
NA009 directkeyword.co.kr/daemon/SetActiveCount_new.php?companyID=k10**.***
NA010 directkeyword.co.kr/update/install2.php?companyID=k10000&mac=00**.***
NA011 insidetool.ietab.co.kr/update/IT137/InsideTool*.***
NA012 speedlite.co.kr/settle.php?strID=fastrealm&strPC=00:0C:29:61:CE**.***
NA013 stool.winpro.co.kr/update/SD28/STool*.***
NA014 undersite.kr/config/set*.***
NA015 update.keywordinfo.co.kr/UpdateCheck.php?Par*.***
NA016 update.speedlite.co.kr*.***
NA017 update.ucfdb.co.kr/version/except/excp*.***
NA018 ww*.ietab.co.kr/setting*.***
NA019 ww*.msftncsi.com/ncsi*.***
NA020 ww*.rightclick.co.kr/update_xml.php?gu=91C4AF58195FF8C903EC6DBB**.***
NA021 ww*.winpro.co.kr/setting*.***