프로그램분석

Code : VUXeip7tSGqoRJ6U8jbCex5v4Sq+JlOARknGLUk7xCoeUVTJw3H8YA==

프로세스 천국 2013. 6. 18. 23:26

[00-PROCESS]**AClient -/- C:\Program Files\Altiris\AClient\AClient.exe
[00-PROCESS]**AClntUsr -/- C:\Program Files\Altiris\AClient\AClntUsr.EXE
[00-PROCESS]**AdobeARM -/- c:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AeXAgentActivate -/- C:\Program Files\Altiris\Altiris Agent\AeXAgentActivate.exe
[00-PROCESS]**AeXAgentUIHost -/- C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe
[00-PROCESS]**AeXNSAgent -/- C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe
[00-PROCESS]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework64\v2.0.50727\aspnet_state.exe
[00-PROCESS]**awhost32 -/- C:\Program Files\Symantec\pcAnywhere\awhost32.exe
[00-PROCESS]**BESClient -/- C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
[00-PROCESS]**BESClientUI -/- C:\Program Files\BigFix Enterprise\BES Client\BESClientUI.exe
[00-PROCESS]**bginfo -/- c:\WINDOWS\bginfo.exe
[00-PROCESS]**ccsrvc -/- C:\WINDOWS\system32\ccsrvc.exe
[00-PROCESS]**chrome -/- C:\Program Files\Google\Chrome\Application\chrome.exe
[00-PROCESS]**client -/- C:\Program Files\Altiris\Carbon Copy\client.exe
[00-PROCESS]**cmd -/- C:\WINDOWS\system32\cmd.exe
[00-PROCESS]**communicator -/- C:\Program Files\Microsoft Office Communicator\communicator.exe
[00-PROCESS]**eclipse -/- C:\sce_software\eclipse-java-ganymede-SR1-win32\eclipse\eclipse.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FrameworkService -/- C:\Program Files\McAfee\Common Framework\FrameworkService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**infocard -/- C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre6\bin\jqs.exe
[00-PROCESS]**jucheck -/- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**mcshield -/- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
[00-PROCESS]**McTray -/- C:\Program Files\McAfee\Common Framework\McTray.exe
[00-PROCESS]**MDM -/- c:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[00-PROCESS]**mfevtps -/- C:\WINDOWS\system32\mfevtps.exe
[00-PROCESS]**mscorsvw -/- C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**nslsvice -/- c:\Program Files\lotus\notes\nslsvice.exe
[00-PROCESS]**nusb3mon -/- C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
[00-PROCESS]**nvsvc64 -/- C:\WINDOWS\system32\nvsvc64.exe
[00-PROCESS]**nwiz -/- C:\Program Files\NVIDIA Corporation\nView\nwiz.exe
[00-PROCESS]**nxtsvc -/- C:\WINDOWS\system32\nxtsvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OpcEnum -/- C:\WINDOWS\system32\OpcEnum.exe
[00-PROCESS]**OSE -/- c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PKIMonitor -/- c:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x64\PKIMonitor.exe
[00-PROCESS]**PresentationFontCache -/- C:\WINDOWS\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**QTTask -/- c:\Program Files\QuickTime\QTTask.exe
[00-PROCESS]**Reader_sl -/- c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[00-PROCESS]**RefreshDistributorAgent -/- c:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe
[00-PROCESS]**RTDCPL -/- C:\WINDOWS\RTDCPL.EXE
[00-PROCESS]**rundll32 -/- C:\WINDOWS\system32\rundll32.exe
[00-PROCESS]**RUNDLL32 -/- C:\WINDOWS\system32\RUNDLL32.EXE
[00-PROCESS]**shellker -/- C:\Program Files\Altiris\Carbon Copy\shellker.exe
[00-PROCESS]**SHSTAT -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**sntlkeyssrvr -/- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe
[00-PROCESS]**spnsrvnt -/- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
[00-PROCESS]**trc_base -/- C:\Program Files\IBM\Tivoli\Remote Control\Target\trc_base.exe
[00-PROCESS]**trc_gui -/- C:\Program Files\IBM\Tivoli\Remote Control\Target\trc_gui.exe
[00-PROCESS]**TSVNCache -/- C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
[00-PROCESS]**udaterui -/- C:\Program Files\McAfee\Common Framework\udaterui.exe
[00-PROCESS]**VsTskMgr -/- C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
[00-PROCESS]**WindowsSearch -/- C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe
[01-HKCUREG]**AClntUsr -/- C:\Program Files\Altiris\AClient\AClntUsr.EXE
[01-HKCUREG]**Adobe ARM -/- c:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[01-HKCUREG]**AeXAgentLogon -/- C:\Program Files\Altiris\Altiris Agent\AeXAgentActivate.exe /logon
[01-HKCUREG]**Bginfo -/- c:\WINDOWS\bginfo.exe c:\WINDOWS\bginfo_shortcut.bgi /SILENT /TIMER:0 /NOLICPROMPT /TASKBAR
[01-HKCUREG]**Communicator -/- C:\Program Files\Microsoft Office Communicator\communicator.exe /fromrunkey
[01-HKCUREG]**CTFMON.EXE -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**eTMonitor -/- c:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x64\PKIMonitor.exe
[01-HKCUREG]**McAfeeUpdaterUI -/- C:\Program Files\McAfee\Common Framework\udaterui.exe /StartedFromRunKey
[01-HKCUREG]**NUSB3MON -/- C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**NvMediaCenter -/- RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dllNvTaskbarInit
[01-HKCUREG]**nwiz -/- C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
[01-HKCUREG]**QuickTime Task -/- c:\Program Files\QuickTime\QTTask.exe -atboottime
[01-HKCUREG]**RTHDCPL -/- RTDCPL.EXE
[01-HKCUREG]**ShStatEXE -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE /STANDALONE
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**AClntUsr -/- C:\Program Files\Altiris\AClient\AClntUsr.EXE
[02-HKLMREG]**Adobe ARM -/- c:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[02-HKLMREG]**AeXAgentLogon -/- C:\Program Files\Altiris\Altiris Agent\AeXAgentActivate.exe /logon
[02-HKLMREG]**Bginfo -/- c:\WINDOWS\bginfo.exe c:\WINDOWS\bginfo_shortcut.bgi /SILENT /TIMER:0 /NOLICPROMPT /TASKBAR
[02-HKLMREG]**Communicator -/- C:\Program Files\Microsoft Office Communicator\communicator.exe /fromrunkey
[02-HKLMREG]**CTFMON.EXE -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**eTMonitor -/- c:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x64\PKIMonitor.exe
[02-HKLMREG]**McAfeeUpdaterUI -/- C:\Program Files\McAfee\Common Framework\udaterui.exe /StartedFromRunKey
[02-HKLMREG]**NUSB3MON -/- C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**NvMediaCenter -/- RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dllNvTaskbarInit
[02-HKLMREG]**nwiz -/- C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
[02-HKLMREG]**QuickTime Task -/- c:\Program Files\QuickTime\QTTask.exe -atboottime
[02-HKLMREG]**RTHDCPL -/- RTDCPL.EXE
[02-HKLMREG]**ShStatEXE -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE /STANDALONE
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**JQSIEStartDetectorImpl Class -/- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll -/- {E7E6F031-17CE-4C07-BC86-EABFE594F69C}
[03-BHOCLSD]**scriptproxy -/- C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130605172646.dll -/- {7DB2D5A0-7241-4E79-B68D-6309F01C5231}
[05-SERVICE]**AClient -/- Altiris Client Service -/- C:\Program Files\Altiris\AClient\AClient.exe -service
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**AeXNSClient -/- Altiris Agent -/- C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe
[05-SERVICE]**aspnet_state -/- ASP.NET State Service -/- C:\WINDOWS\Microsoft.NET\Framework64\v2.0.50727\aspnet_state.exe
[05-SERVICE]**awhost32 -/- Symantec pcAnywhere Host Service -/- C:\Program Files\Symantec\pcAnywhere\awhost32.exe
[05-SERVICE]**BESClient -/- BES Client -/- C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
[05-SERVICE]**CarbonCopy32 -/- Altiris Carbon Copy -/- C:\WINDOWS\system32\ccsrvc.exe
[05-SERVICE]**Dhcp -/- DHCP Client -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\dhcpcsvc.dll
[05-SERVICE]**ERSvc -/- Error Reporting Service -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\ersvc.dll
[05-SERVICE]**gupdate -/- Service Google Update (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Service Google Update (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**HTTPFilter -/- HTTP SSL -/- C:\WINDOWS\System32\lsass.exe -/- C:\WINDOWS\System32\w3ssl.dll
[05-SERVICE]**IASJet -/- IAS Jet Database Access -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\iasrecst.dll
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
[05-SERVICE]**Lotus Notes Single Logon -/- Lotus Notes Single Logon -/- c:\Program Files\lotus\notes\nslsvice.exe
[05-SERVICE]**McAfeeFramework -/- McAfee Framework Service -/- C:\Program Files\McAfee\Common Framework\FrameworkService.exe
[05-SERVICE]**McShield -/- McAfee McShield -/- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
[05-SERVICE]**McTaskManager -/- McAfee Task Manager -/- C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
[05-SERVICE]**MDM -/- Machine Debug Manager -/- c:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[05-SERVICE]**mfevtp -/- McAfee Validation Trust Protection Service -/- C:\WINDOWS\system32\mfevtps.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**Nexthink Service -/- Nexthink Collector Service -/- C:\WINDOWS\system32\nxtsvc.exe
[05-SERVICE]**NVSvc -/- NVIDIA Driver Helper Service -/- C:\WINDOWS\system32\nvsvc64.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**OpcEnum -/- OpcEnum -/- C:\WINDOWS\system32\OpcEnum.exe
[05-SERVICE]**ose -/- Office Source Engine -/- c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Refresh Distributor -/- Refresh Distributor -/- c:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe
[05-SERVICE]**SentinelKeysServer -/- Sentinel Keys Server -/- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe
[05-SERVICE]**SentinelProtectionServer -/- Sentinel Protection Server -/- C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
[05-SERVICE]**TermService -/- Terminal Services -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\termsrv.dll
[05-SERVICE]**TRCTARGET -/- IBM Endpoint Manager for Remote Control - Target -/- C:\Program Files\IBM\Tivoli\Remote Control\Target\trc_base.exe -s
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe