프로그램분석

Code : 4wBe6vpUyEX4JyvDkegJmyOc6ETzIm84KR/96NY3L+FxJ7oJfnpf9g==

프로세스 천국 2013. 6. 16. 00:09

[00-PROCESS]**acs -/- C:\WINDOWS\system32\acs.exe
[00-PROCESS]**Ati2evxx -/- C:\WINDOWS\system32\Ati2evxx.exe
[00-PROCESS]**ccSvcHst -/- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[00-PROCESS]**dgdersvc -/- C:\WINDOWS\system32\dgdersvc.exe
[00-PROCESS]**dwwin -/- C:\WINDOWS\system32\dwwin.exe
[00-PROCESS]**freqnims -/- C:\Documents and Settings\Administrator\Application Data\wingfreqnim\freqnims.exe
[00-PROCESS]**FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**GuardConvert -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**Kies -/- C:\Program Files\Samsung\Kies\Kies.exe
[00-PROCESS]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe
[00-PROCESS]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[00-PROCESS]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe
[00-PROCESS]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PCLoginAgent -/- C:\Program Files\PrintChaser\PCLoginAgent.exe
[00-PROCESS]**proxtrac -/- C:\Program Files\PrintChaser\proxtrac.exe
[00-PROCESS]**PROXTRAC -/- C:\Program Files\PrintChaser\PROXTRAC.EXE
[00-PROCESS]**rmfsvc -/- C:\Program Files\T store PCManager\bin\rmfsvc.exe
[00-PROCESS]**Rtvscan -/- c:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[00-PROCESS]**ScsiCommandService2 -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[00-PROCESS]**Smc -/- c:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
[00-PROCESS]**SmcGui -/- c:\Program Files\Symantec\Symantec Endpoint Protection\SmcGui.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**SNAC -/- c:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE
[00-PROCESS]**snprot -/- C:\Program Files\SearchN\snprot.exe
[00-PROCESS]**SNUpdate -/- C:\Program Files\SearchN\SNUpdate.exe
[00-PROCESS]**tamguard -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[00-PROCESS]**TAMUpdate -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[00-PROCESS]**TheAm -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[00-PROCESS]**TsService -/- C:\WINDOWS\system32\TsService.exe
[00-PROCESS]**userinfoconditionset -/- C:\WINDOWS\userinfoconditionset.exe
[00-PROCESS]**V3LSvc -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[00-PROCESS]**V3LTray -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe
[00-PROCESS]**WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe
[00-PROCESS]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingfreqnim\winkr.exe
[00-PROCESS]**xwISPLife -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[01-HKCUREG]**adhelp.exe -/- C:\Program Files\adhelp\adhelp.exe
[01-HKCUREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -fOOBnPle
[01-HKCUREG]**guardtam -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[01-HKCUREG]**ISP Life -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[01-HKCUREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[01-HKCUREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[01-HKCUREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[01-HKCUREG]**Kp -/- C:\Program Files\kpupdate\kpupdate.exe
[01-HKCUREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -DYOFTd
[01-HKCUREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -DYOFTd
[01-HKCUREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -VpgF
[01-HKCUREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -VpgF
[01-HKCUREG]**OMPService -/- C:\Program Files\T store PCManager\bin\rmfsvc.exe
[01-HKCUREG]**PcAgent -/- C:\Program Files\PrintChaser\proxtrac.exe
[01-HKCUREG]**PrintChaser -/- C:\Program Files\PrintChaser\PCLoginAgent.exe
[01-HKCUREG]**SearchN -/- C:\Program Files\SearchN\SNUpdate.exe
[01-HKCUREG]**snprot -/- C:\Program Files\SearchN\snprot.exe
[01-HKCUREG]**tamgrd -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[01-HKCUREG]**TheAM -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[01-HKCUREG]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingfreqnim\winkr.exe
[02-HKLMREG]**adhelp.exe -/- C:\Program Files\adhelp\adhelp.exe
[02-HKLMREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**GuardSupport -/- C:\Documents and Settings\Administrator\Application Data\GuardSupport\GuardConvert.exe -fOOBnPle
[02-HKLMREG]**guardtam -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[02-HKLMREG]**ISP Life -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[02-HKLMREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[02-HKLMREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[02-HKLMREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[02-HKLMREG]**Kp -/- C:\Program Files\kpupdate\kpupdate.exe
[02-HKLMREG]**MicroLabCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -DYOFTd
[02-HKLMREG]**MicroLabProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -DYOFTd
[02-HKLMREG]**MicroProCon -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProCon.exe -VpgF
[02-HKLMREG]**MicroProProc -/- C:\Documents and Settings\Administrator\Application Data\MicroLab\MyEngin\Common\MicroProProc.exe -VpgF
[02-HKLMREG]**OMPService -/- C:\Program Files\T store PCManager\bin\rmfsvc.exe
[02-HKLMREG]**PcAgent -/- C:\Program Files\PrintChaser\proxtrac.exe
[02-HKLMREG]**PrintChaser -/- C:\Program Files\PrintChaser\PCLoginAgent.exe
[02-HKLMREG]**SearchN -/- C:\Program Files\SearchN\SNUpdate.exe
[02-HKLMREG]**snprot -/- C:\Program Files\SearchN\snprot.exe
[02-HKLMREG]**tamgrd -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[02-HKLMREG]**TheAM -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[02-HKLMREG]**winkr -/- C:\Documents and Settings\Administrator\Application Data\wingfreqnim\winkr.exe
[04-TOOLBAR]**Adobe PDF -/- c:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**N.A -/- N.A -/- Locked
[04-TOOLBAR]**네이버 툴바 -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_18_249.dll -/- {D09CFF09-A42A-4EDC-9804-E61224F59CA1}
[05-SERVICE]**ACS -/- Atheros Configuration Service -/- C:\WINDOWS\system32\acs.exe
[05-SERVICE]**Ati HotKey Poller -/- Ati HotKey Poller -/- C:\WINDOWS\system32\Ati2evxx.exe
[05-SERVICE]**ccEvtMgr -/- Symantec Event Manager -/- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**ccSetMgr -/- Symantec Settings Manager -/- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**dgdersvc -/- Device Error Recovery Service -/- C:\WINDOWS\system32\dgdersvc.exe
[05-SERVICE]**FIDownService -/- FIDownService -/- C:\Program Files\FileI\FIDownService.exe
[05-SERVICE]**freqnim -/- Microsoft AD WS -/- C:\Documents and Settings\Administrator\Application Data\wingfreqnim\freqnims.exe
[05-SERVICE]**FsUsbExService -/- FsUsbExService -/- C:\WINDOWS\system32\FsUsbExService.Exe
[05-SERVICE]**gupdate -/- Google 업데이트 서비스 (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google 업데이트 서비스 (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- Google Software Updater -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**HwRunS -/- HowCodec Service -/- C:\PROGRA~1\howcodec\Howcodecsvc.exe
[05-SERVICE]**iPod Service -/- iPod 서비스 -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**mnsvsvc -/- Microsoft Remote user Service -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\mnsvsvc.dll
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**Net Driver HPZ12 -/- Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- c:\WINDOWS\system32\HPZinw12.dll
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Pml Driver HPZ12 -/- Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZipm12.dll
[05-SERVICE]**RunS -/- MultidownLoad Service -/- C:\Documents and Settings\Administrator\APPLIC~1\MULTID~1\MultiDownLoadSvc.exe
[05-SERVICE]**ScsiCommandService2 -/- SCSI command service -/- C:\WINDOWS\system32\ScsiCommandService2.exe
[05-SERVICE]**SmcService -/- Symantec Management Client -/- c:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
[05-SERVICE]**SNAC -/- Symantec Network Access Control -/- c:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE
[05-SERVICE]**speedlite Update Service -/- speedlite Support Service -/- C:\WINDOWS\userinfoconditionset.exe
[05-SERVICE]**spsysvc -/- DNS Security controler Service -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\spsysvc.dll
[05-SERVICE]**Symantec AntiVirus -/- Symantec Endpoint Protection -/- c:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[05-SERVICE]**TsService -/- TsService -/- C:\WINDOWS\system32\TsService.exe
[05-SERVICE]**V3 Lite Service -/- V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[05-SERVICE]**wefesvc -/- Windows Beautiful Windows background Service -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\wefesvc.dll
[05-SERVICE]**WinCloud -/- WinCloud -/- C:\Program Files\Fdisk.co.kr\Fdisk(fast)\WinCloud.exe