프로그램분석

Code : qR+hP63g0dzqCJHHYfvQ0eKMwkK8pPKM

프로세스 천국 2013. 6. 5. 20:32

[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**ASDSvc -/- C:\Program Files\AhnLab\V3Lite30\ASDSvc.exe
[00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\Ati2evxx.exe
[00-PROCESS]**carepcstart -/- C:\Program Files\carepc\carepcstart.exe
[00-PROCESS]**carepcu -/- C:\Program Files\carepc\carepcu.exe
[00-PROCESS]**downhelper_se -/- C:\WINDOWS\system32\downhelper_se.exe
[00-PROCESS]**entering-se -/- C:\WINDOWS\system32\entering-se.exe
[00-PROCESS]**f_LPS -/- C:\Program Files\Fasoo DRM\f_LPS.exe
[00-PROCESS]**flashlinker-se -/- C:\WINDOWS\system32\flashlinker-se.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**fph -/- C:\Program Files\Fasoo DRM\fph.exe
[00-PROCESS]**FsSvr -/- C:\Documents and Settings\Administrator\funshion\funshiontools\FsSvr.exe
[00-PROCESS]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[00-PROCESS]**HPZipm12 -/- C:\WINDOWS\system32\HPZipm12.exe
[00-PROCESS]**HubGate -/- C:\WINDOWS\system32\config\systemprofile\Application Data\HubGate\HubGate.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**internetdownload_se -/- C:\WINDOWS\system32\internetdownload_se.exe
[00-PROCESS]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[00-PROCESS]**live-service-se -/- C:\Program Files\live-service\live-service-se.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**msfeedssync -/- C:\WINDOWS\system32\msfeedssync.exe
[00-PROCESS]**msmsgs -/- C:\Program Files\Messenger\msmsgs.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**NKeeper -/- C:\Program Files\NKeeper\NKeeper.exe
[00-PROCESS]**NKUninstall -/- C:\Program Files\NKeeper\NKUninstall.exe
[00-PROCESS]**nnlogon -/- C:\Program Files\netimo\Common Shared\URLHelper\nnlogon.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**rapimgr -/- C:\Program Files\Microsoft ActiveSync\rapimgr.exe
[00-PROCESS]**resetuserwindowinfo -/- C:\WINDOWS\resetuserwindowinfo.exe
[00-PROCESS]**ScsiCommandService2 -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[00-PROCESS]**SearchNQ -/- C:\Program Files\SearchNQ\SearchNQ.exe
[00-PROCESS]**shadyac -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\shadyac.exe
[00-PROCESS]**shadyacs -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\shadyacs.exe
[00-PROCESS]**smartchip -/- C:\WINDOWS\smartchip.exe
[00-PROCESS]**smartmode_se -/- C:\WINDOWS\system32\smartmode_se.exe
[00-PROCESS]**smart-update-se -/- C:\Program Files\smart-update\smart-update-se.exe
[00-PROCESS]**SoftwareUpdate -/- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
[00-PROCESS]**speedlitese -/- C:\Program Files\speedlite\speedlitese.exe
[00-PROCESS]**system-service-se -/- C:\Program Files\system-service\system-service-se.exe
[00-PROCESS]**system-update-se -/- C:\Program Files\system-update\system-update-se.exe
[00-PROCESS]**trans -/- C:\Program Files\MelOn Karaoke\trans.exe
[00-PROCESS]**V3Lite -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe
[00-PROCESS]**wcescomm -/- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
[00-PROCESS]**winggou -/- C:\Program Files\WingGo\winggou.exe
[00-PROCESS]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\winkr.exe
[00-PROCESS]**winupdatedepend -/- C:\WINDOWS\winupdatedepend.exe
[00-PROCESS]**WinxpendUP_nwgn -/- C:\Program Files\WinExpand_nwgn\WinxpendUP_nwgn.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[01-HKCUREG]**carepc main -/- C:\Program Files\carepc\carepcu.exe /8L
[01-HKCUREG]**carepcstart.exe -/- C:\Program Files\carepc\carepcstart.exe
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**FPH Exe -/- C:\Program Files\Fasoo DRM\fph.exe
[01-HKCUREG]**H/PC Connection Agent -/- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
[01-HKCUREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**MSMSGS -/- C:\Program Files\Messenger\msmsgs.exe /background
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[01-HKCUREG]**NKeeper -/- C:\Program Files\NKeeper\NKeeper.exe
[01-HKCUREG]**SearchNQ -/- C:\Program Files\SearchNQ\SearchNQ.exe
[01-HKCUREG]**V3 Application -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe /tray
[01-HKCUREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe
[01-HKCUREG]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\winkr.exe
[02-HKLMREG]**carepc main -/- C:\Program Files\carepc\carepcu.exe /8L
[02-HKLMREG]**carepcstart.exe -/- C:\Program Files\carepc\carepcstart.exe
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**FPH Exe -/- C:\Program Files\Fasoo DRM\fph.exe
[02-HKLMREG]**H/PC Connection Agent -/- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
[02-HKLMREG]**metablogagent -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**MSMSGS -/- C:\Program Files\Messenger\msmsgs.exe /background
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**NKeeper -/- C:\Program Files\NKeeper\NKeeper.exe
[02-HKLMREG]**SearchNQ -/- C:\Program Files\SearchNQ\SearchNQ.exe
[02-HKLMREG]**V3 Application -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe /tray
[02-HKLMREG]**WingGo -/- C:\Program Files\WingGo\winggou.exe
[02-HKLMREG]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\winkr.exe
[03-BHOCLSD]**Naver SafeGuard -/- C:\Program Files\naver\NaverToolbar\NaverSafeGuard\nSafeGuard_2012_4_26_1.dll -/- {000011A1-74C9-4c7e-9B4E-59B5765CF409}
[03-BHOCLSD]**Smart Targeting AD -/- C:\Program Files\WinExpand_nwgn\WinExpandPu_nwgn.dll -/- {00000511-A51D-4353-BDA5-AD36A406C3BF}
[03-BHOCLSD]**WinExpandB Class -/- C:\Program Files\WinExpand_nwgn\WinExpand_nwgn.dll -/- {00000724-8D04-485C-B105-FB907A734050}
[03-BHOCLSD]**WingGo -/- C:\PROGRA~1\WingGo\winggo.dll -/- {002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
[04-TOOLBAR]**WingGo -/- C:\PROGRA~1\WingGo\winggo.dll -/- {003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**Ati HotKey Poller -/- Ati HotKey Poller -/- C:\WINDOWS\system32\Ati2evxx.exe
[05-SERVICE]**Bonjour Service -/- Bonjour 서비스 -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**downhelper Update Service -/- downhelper Support Service -/- C:\WINDOWS\system32\downhelper_se.exe
[05-SERVICE]**efinderservice -/- efinderservice -/- C:\Program Files\netimo\Common Shared\URLHelper\nnlogon.exe
[05-SERVICE]**enteringservice -/- Entering Service -/- C:\WINDOWS\system32\entering-se.exe
[05-SERVICE]**Fasoo Process Service -/- Fasoo Process Service -/- C:\Program Files\Fasoo DRM\f_LPS.exe
[05-SERVICE]**flashlinkerservice -/- Flashlinker Service -/- C:\WINDOWS\system32\flashlinker-se.exe
[05-SERVICE]**FsUsbExService -/- FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[05-SERVICE]**FunshionSvr -/- FSServicePlatform -/- C:\WINDOWS\System32\svchost.exe -/- C:\Documents and Settings\Administrator\funshion\funshiontools\FunshionSvr.dll
[05-SERVICE]**infocover Update Service -/- infocover Support Service -/- C:\WINDOWS\smartchip.exe
[05-SERVICE]**InternetDownload Update Service -/- InternetDownload Support Service -/- C:\WINDOWS\system32\internetdownload_se.exe
[05-SERVICE]**live-serviceservice -/- live-service service -/- C:\Program Files\live-service\live-service-se.exe
[05-SERVICE]**MelonKaraokeMonitor -/- MelonKaraokeMonitor -/- C:\Program Files\MelOn Karaoke\trans.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Pml Driver HPZ12 -/- Pml Driver HPZ12 -/- C:\WINDOWS\system32\HPZipm12.exe
[05-SERVICE]**ScsiCommandService2 -/- SCSI command service -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[05-SERVICE]**shadyac -/- Microsoft AD WS -/- C:\Documents and Settings\Administrator\Application Data\wingshadyac\shadyacs.exe
[05-SERVICE]**SmartMode Update Service -/- SmartMode Support Service -/- C:\WINDOWS\system32\smartmode_se.exe
[05-SERVICE]**smart-updateservice -/- smart-update service -/- C:\Program Files\smart-update\smart-update-se.exe
[05-SERVICE]**speedliteService -/- speedlite Service -/- C:\Program Files\speedlite\speedlitese.exe
[05-SERVICE]**system-serviceservice -/- system-service service -/- C:\Program Files\system-service\system-service-se.exe
[05-SERVICE]**system-updateservice -/- system-update service -/- C:\Program Files\system-update\system-update-se.exe
[05-SERVICE]**topscan Update Service -/- topscan Support Service -/- C:\WINDOWS\resetuserwindowinfo.exe
[05-SERVICE]**V3 Service -/- V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite30\ASDSvc.exe
[05-SERVICE]**vaccinehelper Update Service -/- vaccinehelper Support Service -/- C:\WINDOWS\winupdatedepend.exe
[05-SERVICE]**WinRM -/- Windows Remote Management (WS-Management) -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WsmSvc.dll
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe