프로그램분석

Code : qZ2hMOeVQcccycyaP4DM8LRJQw3Psrg4UGrPKl+csMV2IRD0HMv86w==

프로세스 천국 2013. 6. 14. 00:17

[00-PROCESS]**Acrotray -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**atbsvc -/- C:\Program Files\ESTsoft\ALToolBar\atbsvc.exe
[00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\Ati2evxx.exe
[00-PROCESS]**ati2sgag -/- C:\WINDOWS\system32\ati2sgag.exe
[00-PROCESS]**AvastEmUpdate -/- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
[00-PROCESS]**AvastSvc -/- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
[00-PROCESS]**avastUI -/- C:\Program Files\AVAST Software\Avast\avastUI.exe
[00-PROCESS]**BackupStack -/- C:\Program Files\MyPC Backup\BackupStack.exe
[00-PROCESS]**ccc -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
[00-PROCESS]**CLIStart -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**GuardConvert -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe
[00-PROCESS]**hpqbam08 -/- C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
[00-PROCESS]**hpqgpc01 -/- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
[00-PROCESS]**hpqSTE08 -/- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
[00-PROCESS]**hpqtra08 -/- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[00-PROCESS]**hpswp_clipbook -/- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
[00-PROCESS]**HPWuSchd2 -/- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
[00-PROCESS]**IE Support -/- C:\Documents and Settings\Administrator\Application Data\winsupport\Windows IE Support\IE Support.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**IMJPMIG -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**InstHelper -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe
[00-PROCESS]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe
[00-PROCESS]**MOM -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
[00-PROCESS]**MyPC Backup -/- C:\Program Files\MyPC Backup\MyPC Backup.exe
[00-PROCESS]**nateon -/- c:\program files\nateon\bin\nateon.exe
[00-PROCESS]**NATEONMain -/- C:\program files\nateon\BIN\NATEONMain.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PASPortal -/- C:\Program Files\Pasco scientific\DataStudio\PASPortal.exe
[00-PROCESS]**RichVideo -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[00-PROCESS]**RKService -/- C:\WINDOWS\system32\RKService.exe
[00-PROCESS]**rundll32 -/- C:\WINDOWS\system32\rundll32.exe
[00-PROCESS]**SOUNDMAN -/- C:\WINDOWS\SOUNDMAN.EXE
[00-PROCESS]**TINTSETP -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[00-PROCESS]**VERSIO~2 -/- C:\Program Files\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VERSIO~2.EXE
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[01-HKCUREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[01-HKCUREG]**Adobe_ID0EYTHM -/- C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
[01-HKCUREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[01-HKCUREG]**avast -/- C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -LWEEreF
[01-HKCUREG]**HP Software Update -/- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
[01-HKCUREG]**IME14 KOR Uninstall -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /KOR /Log
[01-HKCUREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -oJzqEOx
[01-HKCUREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -oJzqEOx
[01-HKCUREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -XpbfFt
[01-HKCUREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -XpbfFt
[01-HKCUREG]**Microsoft DLL Registration -/- C:\Documents and Settings\Administrator\Application Data\regsrv64.exe
[01-HKCUREG]**NATEON -/- c:\program files\nateon\bin\nateon.exe -as
[01-HKCUREG]**Njlqld -/- C:\Documents and Settings\Administrator\Application Data\Njlqld.exe
[01-HKCUREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[01-HKCUREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**snqpu -/- C:\Program Files\plusup\snqpu.exe
[01-HKCUREG]**SoundMan -/- SOUNDMAN.EXE
[01-HKCUREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
[01-HKCUREG]**TopUtilService -/- C:\Program Files\TopUtil\TopUtilService.exe run
[01-HKCUREG]**Windows IE Support -/- C:\Documents and Settings\Administrator\Application Data\winsupport\Windows IE Support\IE Support.exe update
[01-HKCUREG]**WINSXS32 -/- C:\Documents and Settings\Administrator\Application Data\48.exe
[02-HKLMREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[02-HKLMREG]**Adobe_ID0EYTHM -/- C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
[02-HKLMREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\InstHelper.exe -boot
[02-HKLMREG]**avast -/- C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -LWEEreF
[02-HKLMREG]**HP Software Update -/- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
[02-HKLMREG]**IME14 KOR Uninstall -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /KOR /Log
[02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -oJzqEOx
[02-HKLMREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -oJzqEOx
[02-HKLMREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -XpbfFt
[02-HKLMREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -XpbfFt
[02-HKLMREG]**Microsoft DLL Registration -/- C:\Documents and Settings\Administrator\Application Data\regsrv64.exe
[02-HKLMREG]**NATEON -/- c:\program files\nateon\bin\nateon.exe -as
[02-HKLMREG]**Njlqld -/- C:\Documents and Settings\Administrator\Application Data\Njlqld.exe
[02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**snqpu -/- C:\Program Files\plusup\snqpu.exe
[02-HKLMREG]**SoundMan -/- SOUNDMAN.EXE
[02-HKLMREG]**StartCCC -/- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun
[02-HKLMREG]**TopUtilService -/- C:\Program Files\TopUtil\TopUtilService.exe run
[02-HKLMREG]**Windows IE Support -/- C:\Documents and Settings\Administrator\Application Data\winsupport\Windows IE Support\IE Support.exe update
[02-HKLMREG]**WINSXS32 -/- C:\Documents and Settings\Administrator\Application Data\48.exe
[03-BHOCLSD]**Adobe PDF Conversion Toolbar Helper -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll -/- {AE7CD045-E861-484f-8273-0445EE161910}
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**ALToolbarBho -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3100.dll -/- {7F1A79F9-78D1-4186-9F60-EE0B63DF042A}
[03-BHOCLSD]**avast! WebRep -/- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll -/- {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
[03-BHOCLSD]**CJoySearch Object -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Goenjoy\Goenjoy.dll -/- {5B628070-B0EE-4BBA-A35F-4743A792130D}
[03-BHOCLSD]**CNATE_ASBHO Object -/- C:\Program Files\nate_as\nate_as.dll -/- {E81E1598-BCE6-40B9-8B68-AE57DAA04452}
[03-BHOCLSD]**ContributeBHO Class -/- C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll -/- {074C1DC5-9320-4A9A-947D-C042949C6216}
[03-BHOCLSD]**HP Print Enhancer -/- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll -/- {0347C33E-8762-4905-BF09-768834316C61}
[03-BHOCLSD]**HP Smart BHO Class -/- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll -/- {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}
[03-BHOCLSD]**Naver SafeGuard -/- c:\program files\naver\navertoolbar\naversafeguard\nsafeguard_2012_4_26_1.dll -/- {000011A1-74C9-4c7e-9B4E-59B5765CF409}
[03-BHOCLSD]**WinSearchTop -/- C:\Program Files\indoit\WinSearchTop\1.0.0.11\AXBHO.dll -/- {23C7E613-D0B3-422D-884C-2B6173435214}
[04-TOOLBAR]**Adobe PDF -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3100.dll -/- {38FBE93D-4CA1-4414-AF6A-94920C5BD8DA}
[04-TOOLBAR]**avast! WebRep -/- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll -/- {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
[04-TOOLBAR]**Contribute Toolbar -/- C:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll -/- {517BDDE4-E3A7-4570-B21E-2B52B6139FC7}
[05-SERVICE]**Adobe Version Cue CS3 -/- Adobe Version Cue CS3 -/- C:\Program Files\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe -win32service
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Ati HotKey Poller -/- Ati HotKey Poller -/- C:\WINDOWS\system32\Ati2evxx.exe
[05-SERVICE]**ATI Smart -/- ATI Smart -/- C:\WINDOWS\system32\ati2sgag.exe
[05-SERVICE]**avast! Antivirus -/- avast! Antivirus -/- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
[05-SERVICE]**BackupStack -/- Computer Backup (MyPC Backup) -/- C:\Program Files\MyPC Backup\BackupStack.exe
[05-SERVICE]**Bonjour Service -/- ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**hpqcxs08 -/- hpqcxs08 -/- C:\WINDOWS\system32\svchost.exe -/- C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
[05-SERVICE]**hpqddsvc -/- HP CUE DeviceDiscovery 서비스 -/- C:\WINDOWS\system32\svchost.exe -/- C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
[05-SERVICE]**HPSLPSVC -/- HP Network Devices Support -/- C:\WINDOWS\system32\svchost.exe -/- C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
[05-SERVICE]**Irmon -/- Infrared Monitor -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\irmon.dll
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**Net Driver HPZ12 -/- Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZinw12.dll
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Pml Driver HPZ12 -/- Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZipm12.dll
[05-SERVICE]**RichVideo -/- Cyberlink RichVideo Service(CRVS) -/- C:\Program Files\CyberLink\Shared files\RichVideo.exe
[05-SERVICE]**RKSvc -/- RealKeyword Updater -/- C:\WINDOWS\system32\RKService.exe