Code : sPwt4ZxWFdXRTdrbQ5SzuqhyANoFP0vGlLR2hdU/lV2wfw02kfktTw==
[00-PROCESS]**addendov -/- C:\Program Files\addendum\addendov.exe
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**CodeMeter -/- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**intsfsrv -/- C:\Program Files\Windows InternetSafer\intsfsrv.exe
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre7\bin\jqs.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**Reader_sl -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[00-PROCESS]**RecoverMyFiles -/- C:\Program Files\GetData\Recover My Files v5\RecoverMyFiles.exe
[00-PROCESS]**SGDnldr -/- C:\Program Files\AhnLab\SiteGuard2\SGDnldr.exe
[00-PROCESS]**sgsvc -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**V3LSvc -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[00-PROCESS]**V3LTray -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**zayaraza -/- C:\Documents and Settings\Administrator\Application Data\wingzayaraza\zayaraza.exe
[00-PROCESS]**zayarazas -/- C:\Documents and Settings\Administrator\Application Data\wingzayaraza\zayarazas.exe
[01-HKCUREG]**addendov -/- C:\Program Files\addendum\addendov.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[01-HKCUREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[01-HKCUREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**addendov -/- C:\Program Files\addendum\addendov.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[02-HKLMREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[02-HKLMREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[03-BHOCLSD]**add_en_dov -/- -/- {CC01FC6C-28EC-4889-82C2-AA4CEB1C8930}
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**BitComet Helper -/- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll -/- {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}
[03-BHOCLSD]**SGAgentObj Class -/- C:\Program Files\AhnLab\SiteGuard2\SGAgenti.dll -/- {19217B99-F935-4A39-B857-A68A68D5BEBB}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**CodeMeter.exe -/- CodeMeter Runtime Server -/- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
[05-SERVICE]**InternetSafer Protector -/- InternetSafer Protector Application -/- C:\Program Files\Windows InternetSafer\intsfsrv.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre7\bin\jqs.exe -service -config C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Process Clean Service -/- Process Clean Service -/- C:\Documents and Settings\Administrator\My Documents\ProcessClean\ProcService.exe
[05-SERVICE]**sgsvc -/- SiteGuard Service -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[05-SERVICE]**V3 Lite Service -/- V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[05-SERVICE]**WinRM -/- Windows Remote Management (WS-Management) -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WsmSvc.dll
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
[05-SERVICE]**zayaraza -/- Microsoft AD WS -/- C:\Documents and Settings\Administrator\Application Data\wingzayaraza\zayarazas.exe