프로그램분석

Code : 9hrY+dV1DvoyGjfiuLiu8iZXYUjd0HaqdkEhBh01nktNNOvG0X0YMA==

프로세스 천국 2013. 6. 18. 23:43

[00-PROCESS]**Acrotray -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[00-PROCESS]**AiChargerAP -/- C:\Program Files\ASUS\ASUS Ai Charger\AiChargerAP.exe
[00-PROCESS]**apodclientservice11 -/- c:\windows\pfizer\_utils\apodclient\apodclientservice11.exe
[00-PROCESS]**CcmExec -/- C:\WINDOWS\system32\CCM\CcmExec.exe
[00-PROCESS]**cidaemon -/- C:\WINDOWS\system32\cidaemon.exe
[00-PROCESS]**CINTLCFG -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE
[00-PROCESS]**client32 -/- C:\Program Files\NetSupport\NetSupport Manager\client32.exe
[00-PROCESS]**DrgToDsc -/- C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe
[00-PROCESS]**Dropbox -/- C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe
[00-PROCESS]**Ecview -/- C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe
[00-PROCESS]**EdWizard -/- C:\Program Files\Utimaco\SafeGuard Easy\EdWizard.exe
[00-PROCESS]**FileBackup -/- C:\Tools\FileBackupProBeta\FileBackup.exe
[00-PROCESS]**FireSvc -/- C:\Program Files\McAfee\Host Intrusion Prevention\FireSvc.exe
[00-PROCESS]**FireTray -/- C:\Program Files\McAfee\Host Intrusion Prevention\FireTray.exe
[00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**FrameworkService -/- C:\Program Files\McAfee\Common Framework\FrameworkService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**HIPSvc -/- C:\Program Files\McAfee\Host Intrusion Prevention\HIPSCore\HIPSvc.exe
[00-PROCESS]**hkcmd -/- C:\WINDOWS\system32\hkcmd.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**igfxpers -/- C:\WINDOWS\system32\igfxpers.exe
[00-PROCESS]**igfxsrvc -/- C:\WINDOWS\system32\igfxsrvc.exe
[00-PROCESS]**igfxtray -/- C:\WINDOWS\system32\igfxtray.exe
[00-PROCESS]**IMEKRMIG -/- C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
[00-PROCESS]**IMJPMIG -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE
[00-PROCESS]**ImScInst -/- C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe
[00-PROCESS]**inetinfo -/- C:\WINDOWS\system32\inetsrv\inetinfo.exe
[00-PROCESS]**ITFavorites -/- C:\WINDOWS\INSTALL\19687\ITFavorites.EXE
[00-PROCESS]**iviRegMgr -/- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
[00-PROCESS]**jqs -/- C:\Program Files\Java\jre1.6.0_18\bin\jqs.exe
[00-PROCESS]**launcher -/- C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe
[00-PROCESS]**mcshield -/- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
[00-PROCESS]**McTray -/- C:\Program Files\McAfee\Common Framework\McTray.exe
[00-PROCESS]**MDM -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[00-PROCESS]**mfevtps -/- C:\WINDOWS\system32\mfevtps.exe
[00-PROCESS]**MsDtsSrvr -/- C:\Program Files\Microsoft SQL Server\100\DTS\Binn\MsDtsSrvr.exe
[00-PROCESS]**msvsmon -/- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe
[00-PROCESS]**pSGEState -/- C:\Program Files\Utimaco\Safeguard Easy\pSGEState.exe
[00-PROCESS]**ptoneclk -/- C:\Program Files\WebEx\Productivity Tools\ptoneclk.exe
[00-PROCESS]**ptSrv -/- C:\Program Files\WebEx\Productivity Tools\ptSrv.exe
[00-PROCESS]**qttask -/- C:\Program Files\QuickTime\qttask.exe
[00-PROCESS]**Reader_sl -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[00-PROCESS]**RoxMediaDB10 -/- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
[00-PROCESS]**SgeCtl -/- C:\Program Files\Utimaco\SafeGuard Easy\SgeCtl.exe
[00-PROCESS]**SgLogPlayer -/- C:\WINDOWS\system32\SgLogPlayer.exe
[00-PROCESS]**SHSTAT -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE
[00-PROCESS]**smax4pnp -/- C:\Program Files\Analog Devices\Core\smax4pnp.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**stllssvr -/- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
[00-PROCESS]**SystemHost -/- C:\WINDOWS\system32\SystemHost.exe
[00-PROCESS]**TINTLCFG -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE
[00-PROCESS]**TSManager -/- C:\WINDOWS\system32\CCM\TSManager.exe
[00-PROCESS]**TSVNCache -/- C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
[00-PROCESS]**udaterui -/- C:\Program Files\McAfee\Common Framework\udaterui.exe
[00-PROCESS]**UnlockerAssistant -/- C:\Program Files\Unlocker\UnlockerAssistant.exe
[00-PROCESS]**vstskmgr -/- C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe
[00-PROCESS]**WiseTray -/- C:\Tools\Wise Care 365\WiseTray.exe
[00-PROCESS]**WksCfgSrv -/- C:\Program Files\Utimaco\SafeGuard Easy\WksCfgSrv.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[01-HKCUREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[01-HKCUREG]**ASUS Ai Charger -/- C:\Program Files\ASUS\ASUS Ai Charger\AiChargerAP.exe
[01-HKCUREG]**CJIMETIPSYNC -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE /CJIMETIPSync
[01-HKCUREG]**EdWizard -/- C:\Program Files\Utimaco\SafeGuard Easy\EdWizard.exe as
[01-HKCUREG]**FileBackup -/- C:\Tools\FileBackupProBeta\FileBackup.exe
[01-HKCUREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[01-HKCUREG]**IMEKRMIG6.1 -/- C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
[01-HKCUREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[01-HKCUREG]**ITFavorites -/- C:\WINDOWS\INSTALL\19687\ITFavorites.EXE
[01-HKCUREG]**McAfee Host Intrusion Prevention Tray -/- C:\Program Files\McAfee\Host Intrusion Prevention\FireTray.exe
[01-HKCUREG]**McAfeeUpdaterUI -/- C:\Program Files\McAfee\Common Framework\udaterui.exe /StartedFromRunKey
[01-HKCUREG]**MSPY2002 -/- C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
[01-HKCUREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[01-HKCUREG]**PHIMETIPSYNC -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE /PHIMETIPSync
[01-HKCUREG]**pSGEState -/- C:\Program Files\Utimaco\Safeguard Easy\pSGEState.exe
[01-HKCUREG]**PSQLLauncher -/- C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe /startup
[01-HKCUREG]**PTOneClick -/- C:\Program Files\WebEx\Productivity Tools\ptoneclk.exe  /AutoRunning=2
[01-HKCUREG]**QuickTime Task -/- C:\Program Files\QuickTime\qttask.exe -atboottime
[01-HKCUREG]**RoxioDragToDisc -/- C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe
[01-HKCUREG]**SgeEcView -/- C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe
[01-HKCUREG]**ShStatEXE -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE /STANDALONE
[01-HKCUREG]**SoundMAXPnP -/- C:\Program Files\Analog Devices\Core\smax4pnp.exe
[01-HKCUREG]**UnlockerAssistant -/- C:\Program Files\Unlocker\UnlockerAssistant.exe
[02-HKLMREG]**Acrobat Assistant 8.0 -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[02-HKLMREG]**ASUS Ai Charger -/- C:\Program Files\ASUS\ASUS Ai Charger\AiChargerAP.exe
[02-HKLMREG]**CJIMETIPSYNC -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE /CJIMETIPSync
[02-HKLMREG]**EdWizard -/- C:\Program Files\Utimaco\SafeGuard Easy\EdWizard.exe as
[02-HKLMREG]**FileBackup -/- C:\Tools\FileBackupProBeta\FileBackup.exe
[02-HKLMREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[02-HKLMREG]**IMEKRMIG6.1 -/- C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
[02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[02-HKLMREG]**ITFavorites -/- C:\WINDOWS\INSTALL\19687\ITFavorites.EXE
[02-HKLMREG]**McAfee Host Intrusion Prevention Tray -/- C:\Program Files\McAfee\Host Intrusion Prevention\FireTray.exe
[02-HKLMREG]**McAfeeUpdaterUI -/- C:\Program Files\McAfee\Common Framework\udaterui.exe /StartedFromRunKey
[02-HKLMREG]**MSPY2002 -/- C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
[02-HKLMREG]**Persistence -/- C:\WINDOWS\system32\igfxpers.exe
[02-HKLMREG]**PHIMETIPSYNC -/- C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE /PHIMETIPSync
[02-HKLMREG]**pSGEState -/- C:\Program Files\Utimaco\Safeguard Easy\pSGEState.exe
[02-HKLMREG]**PSQLLauncher -/- C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe /startup
[02-HKLMREG]**PTOneClick -/- C:\Program Files\WebEx\Productivity Tools\ptoneclk.exe  /AutoRunning=2
[02-HKLMREG]**QuickTime Task -/- C:\Program Files\QuickTime\qttask.exe -atboottime
[02-HKLMREG]**RoxioDragToDisc -/- C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe
[02-HKLMREG]**SgeEcView -/- C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe
[02-HKLMREG]**ShStatEXE -/- C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE /STANDALONE
[02-HKLMREG]**SoundMAXPnP -/- C:\Program Files\Analog Devices\Core\smax4pnp.exe
[02-HKLMREG]**UnlockerAssistant -/- C:\Program Files\Unlocker\UnlockerAssistant.exe
[03-BHOCLSD]**Adobe PDF Conversion Toolbar Helper -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll -/- {AE7CD045-E861-484f-8273-0445EE161910}
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre1.6.0_18\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**JQSIEStartDetectorImpl Class -/- C:\Program Files\Java\jre1.6.0_18\lib\deploy\jqs\ie\jqs_plugin.dll -/- {E7E6F031-17CE-4C07-BC86-EABFE594F69C}
[03-BHOCLSD]**Microsoft Web Test Recorder 9.0 Helper -/- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO90.dll -/- {E31CE47F-C268-41ba-897B-B415E613947D}
[03-BHOCLSD]**Microsoft Web 測試錄製器 10.0 Helper -/- C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll -/- {DDA57003-0068-4ed2-9D32-4D1EC707D94D}
[03-BHOCLSD]**scriptproxy -/- C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130404211949.dll -/- {7DB2D5A0-7241-4E79-B68D-6309F01C5231}
[03-BHOCLSD]**WebEx Productivity Tools -/- C:\Program Files\WebEx\Productivity Tools\ptonecli.dll -/- {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7}
[04-TOOLBAR]**Adobe PDF -/- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**WebEx Productivity Tools -/- C:\Program Files\WebEx\Productivity Tools\ptonecli.dll -/- {90E2BA2E-DD1B-4cde-9134-7A8B86D33CA7}
[05-SERVICE]**aPodClientService -/- aPod Client Service -/- c:\windows\pfizer\_utils\apodclient\apodclientservice11.exe
[05-SERVICE]**CcmExec -/- SMS Agent Host -/- C:\WINDOWS\system32\CCM\CcmExec.exe
[05-SERVICE]**Client32 -/- Client32 -/- C:\Program Files\NetSupport\NetSupport Manager\client32.exe
[05-SERVICE]**enterceptAgent -/- McAfee Host Intrusion Prevention Service -/- C:\Program Files\McAfee\Host Intrusion Prevention\FireSvc.exe
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**gupdate -/- Google更新 服務 (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google更新 服務 (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**hips -/- McAfee HIPSCore Service -/- C:\Program Files\McAfee\Host Intrusion Prevention\HIPSCore\HIPSvc.exe
[05-SERVICE]**IISADMIN -/- IIS Admin -/- C:\WINDOWS\system32\inetsrv\inetinfo.exe
[05-SERVICE]**InterBaseGuardian -/- InterBase Guardian -/- C:\Program Files\InterBase Corp\InterBase\Bin\ibguard.exe -s
[05-SERVICE]**InterBaseServer -/- InterBase Server -/- C:\Program Files\InterBase Corp\InterBase\Bin\ibserver.exe -s -g
[05-SERVICE]**IviRegMgr -/- IviRegMgr -/- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Program Files\Java\jre1.6.0_18\bin\jqs.exe -service -config C:\Program Files\Java\jre1.6.0_18\lib\deploy\jqs\jqs.conf
[05-SERVICE]**McAfeeFramework -/- McAfee Framework 服務 -/- C:\Program Files\McAfee\Common Framework\FrameworkService.exe
[05-SERVICE]**McShield -/- McAfee McShield -/- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
[05-SERVICE]**McTaskManager -/- McAfee Task Manager -/- C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe
[05-SERVICE]**MDM -/- Machine Debug Manager -/- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
[05-SERVICE]**mfevtp -/- McAfee Validation Trust Protection Service -/- C:\WINDOWS\system32\mfevtps.exe
[05-SERVICE]**MsDtsServer100 -/- SQL Server Integration Services 10.0 -/- C:\Program Files\Microsoft SQL Server\100\DTS\Binn\MsDtsSrvr.exe
[05-SERVICE]**MSFtpsvc -/- FTP Publishing -/- C:\WINDOWS\system32\inetsrv\inetinfo.exe
[05-SERVICE]**msvsmon90 -/- Visual Studio 2008 Remote Debugger -/- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**Net Driver HPZ12 -/- Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZinw12.dll
[05-SERVICE]**ose -/- Office Source Engine -/- C:\WINDOWS\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**Pml Driver HPZ12 -/- Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZipm12.dll
[05-SERVICE]**RoxMediaDB10 -/- RoxMediaDB10 -/- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
[05-SERVICE]**SgeCtl -/- SafeGuard Easy Control -/- C:\Program Files\Utimaco\SafeGuard Easy\SgeCtl.exe
[05-SERVICE]**SgLogPlayer -/- SafeGuard SGLOG  Player -/- C:\WINDOWS\system32\SgLogPlayer.exe
[05-SERVICE]**smstsmgr -/- SMS Task Sequence Agent -/- C:\WINDOWS\system32\CCM\TSManager.exe
[05-SERVICE]**SMTPSVC -/- Simple Mail Transfer Protocol (SMTP) -/- C:\WINDOWS\system32\inetsrv\inetinfo.exe
[05-SERVICE]**stllssvr -/- stllssvr -/- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
[05-SERVICE]**SystemHost -/- SystemHost -/- C:\WINDOWS\system32\SystemHost.exe
[05-SERVICE]**W3SVC -/- World Wide Web Publishing -/- C:\WINDOWS\system32\inetsrv\inetinfo.exe
[05-SERVICE]**WksCfgSrv -/- SafeGuard Easy Workstation Server -/- C:\Program Files\Utimaco\SafeGuard Easy\WksCfgSrv.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe