프로그램분석

Code : JODaidD7jA0XJvI8/n37PIoNb7Vixq1bP5cF+gOwNNV24WgPAZDv/g==

프로세스 천국 2013. 6. 22. 22:07

[00-PROCESS]**AirVideoServer -/- C:\Program Files\AirVideoServer\AirVideoServer.exe
[00-PROCESS]**ALSee -/- C:\Program Files\ESTsoft\ALSee\ALSee.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**catroot -/- C:\WINDOWS\system32\AppCompat\catroot\catroot.exe
[00-PROCESS]**chrome -/- C:\Users\Administrator\AppData\Local\Google\Chrome\Application\chrome.exe
[00-PROCESS]**CrazyRemote -/- C:\Program Files\CrazyRemote\CrazyRemote.exe
[00-PROCESS]**CrazyRemoteCommand -/- C:\Program Files\CrazyRemote\CrazyRemoteCommand.exe
[00-PROCESS]**CrazyRemoteServer -/- C:\Program Files\CrazyRemote\CrazyRemoteServer.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[00-PROCESS]**dgdersvc -/- C:\Windows\system32\dgdersvc.exe
[00-PROCESS]**DTLite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**Foxcorn -/- C:\Users\Administrator\AppData\Roaming\Microsoft\FoxPlugin\Tools\Foxcorn.exe
[00-PROCESS]**googletalk -/- C:\Program Files\Google\Google Talk\googletalk.exe
[00-PROCESS]**GoogleUpdate -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\microsoft shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[00-PROCESS]**jmss -/- C:\Windows\system32\jmss.exe
[00-PROCESS]**LivePotBoot -/- C:\Program Files\LivePOT\LivePotBoot.exe
[00-PROCESS]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**mxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\mxwho.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[00-PROCESS]**npnj5Agent -/- C:\Windows\system32\npnj5Agent.exe
[00-PROCESS]**nPStarterSVC -/- C:\Windows\system32\nPStarterSVC.exe
[00-PROCESS]**nvSCPAPISvr -/- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
[00-PROCESS]**nvtray -/- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**nvxdsync -/- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**oss_reinstall_svc -/- C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RemoteX -/- C:\Program Files\RemoteX\RemoteX.exe
[00-PROCESS]**RemoteXUser -/- C:\Program Files\RemoteX\RemoteXUser.exe
[00-PROCESS]**SideTab -/- C:\Program Files\SideTab\SideTab.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**SRService -/- C:\Program Files\Splashtop\Splashtop Remote\Server\SRService.exe
[00-PROCESS]**SSUService -/- C:\Program Files\Splashtop\Splashtop Software Updater\SSUService.exe
[00-PROCESS]**TeamViewer -/- C:\Program Files\TeamViewer\Version8\TeamViewer.exe
[00-PROCESS]**TeamViewer_Service -/- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
[00-PROCESS]**tv_w32 -/- C:\Program Files\TeamViewer\Version8\tv_w32.exe
[00-PROCESS]**tv_x64 -/- C:\Program Files\TeamViewer\Version8\tv_x64.exe
[00-PROCESS]**UNS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[00-PROCESS]**upenkr -/- C:\Users\Administrator\AppData\Roaming\Microsoft\FoxPlugin\Tools\upenkr.exe
[00-PROCESS]**upmxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\upmxwho.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**WindowServiceNT -/- C:\WINDOWS\system32\WindowServiceNT.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**YesWorkerSvr -/- C:\Users\Administrator\AppData\Roaming\YesWorkerW\YesWorkerSvr.exe
[00-PROCESS]**YesWorkerSystem -/- C:\Users\Administrator\AppData\Roaming\YesWorkerW\YesWorkerSystem.exe
[01-HKCUREG]**AirVideoServer -/- C:\Program Files\AirVideoServer\AirVideoServer.exe
[01-HKCUREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[01-HKCUREG]**catroot -/- C:\WINDOWS\system32\AppCompat\catroot\catrootsz.exe
[01-HKCUREG]**CrazyRemote -/- C:\Program Files\CrazyRemote\CrazyRemote.exe
[01-HKCUREG]**CrazyRemoteCommand -/- C:\Program Files\CrazyRemote\CrazyRemoteCommand.exe
[01-HKCUREG]**DAEMON Tools Lite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun
[01-HKCUREG]**Fox-Corn -/- C:\Users\Administrator\AppData\Roaming\Microsoft\FoxPlugin\Tools\upenkr.exe
[01-HKCUREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**googletalk -/- C:\Program Files\Google\Google Talk\googletalk.exe /autostart
[01-HKCUREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[01-HKCUREG]**jmss -/- C:\Windows\system32\jmss.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**LivePOTUpdater -/- C:\Program Files\LivePOT\LivePotBoot.exe
[01-HKCUREG]**MicrowindowSearch -/- C:\WINDOWS\system32\MicrowindowSearch\MicrowindowSearch.exe
[01-HKCUREG]**mxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\mxwho.exe
[01-HKCUREG]**ProcessClean -/- C:\Users\Administrator\Desktop\ProcessClean.exe
[01-HKCUREG]**SideTab -/- C:\Program Files\SideTab\SideTab.exe
[01-HKCUREG]**Switcher -/- C:\Windows\Lion Skin Pack\Switcher\Switcher.exe /quiet
[01-HKCUREG]**upmxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\upmxwho.exe
[01-HKCUREG]**winsrv64 -/- C:\Users\Administrator\AppData\Local\Microsoft\winsrv64\winsrv64.exe
[02-HKLMREG]**AirVideoServer -/- C:\Program Files\AirVideoServer\AirVideoServer.exe
[02-HKLMREG]**APSDaemon -/- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
[02-HKLMREG]**catroot -/- C:\WINDOWS\system32\AppCompat\catroot\catrootsz.exe
[02-HKLMREG]**CrazyRemote -/- C:\Program Files\CrazyRemote\CrazyRemote.exe
[02-HKLMREG]**CrazyRemoteCommand -/- C:\Program Files\CrazyRemote\CrazyRemoteCommand.exe
[02-HKLMREG]**DAEMON Tools Lite -/- C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun
[02-HKLMREG]**Fox-Corn -/- C:\Users\Administrator\AppData\Roaming\Microsoft\FoxPlugin\Tools\upenkr.exe
[02-HKLMREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**googletalk -/- C:\Program Files\Google\Google Talk\googletalk.exe /autostart
[02-HKLMREG]**iTunesHelper -/- C:\Program Files\iTunes\iTunesHelper.exe
[02-HKLMREG]**jmss -/- C:\Windows\system32\jmss.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**LivePOTUpdater -/- C:\Program Files\LivePOT\LivePotBoot.exe
[02-HKLMREG]**MicrowindowSearch -/- C:\WINDOWS\system32\MicrowindowSearch\MicrowindowSearch.exe
[02-HKLMREG]**mxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\mxwho.exe
[02-HKLMREG]**ProcessClean -/- C:\Users\Administrator\Desktop\ProcessClean.exe
[02-HKLMREG]**SideTab -/- C:\Program Files\SideTab\SideTab.exe
[02-HKLMREG]**Switcher -/- C:\Windows\Lion Skin Pack\Switcher\Switcher.exe /quiet
[02-HKLMREG]**upmxwho -/- C:\Users\Administrator\AppData\Roaming\Microsoft\mxwho\upmxwho.exe
[02-HKLMREG]**winsrv64 -/- C:\Users\Administrator\AppData\Local\Microsoft\winsrv64\winsrv64.exe
[04-TOOLBAR]**N.A -/- N.A -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**__RemoteX__ -/- RemoteX Server -/- C:\Program Files\RemoteX\RemoteX.exe
[05-SERVICE]**AcronisOSSReinstallSvc -/- Acronis OS Selector Reinstall Service -/- C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**antanning -/- antanning -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\antanning\antanning.dll
[05-SERVICE]**AppCatroots -/- Application Catroots -/- C:\WINDOWS\system32\AppCompat\catroot\catroot.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**ApplicationSpecialManagement -/- Application Special Management -/- C:\WINDOWS\system32\WindowServiceNT.exe
[05-SERVICE]**aricpleck -/- aricpleck -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\aricpleck\aricpleck.dll
[05-SERVICE]**bciostyqwenm -/- bciostyqwenm -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\bciostyqwenm\bciostyqwenm.dll
[05-SERVICE]**Bonjour Service -/- Bonjour 서비스 -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**coytwjciuc -/- coytwjciuc -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\coytwjciuc\coytwjciuc.dll
[05-SERVICE]**CrazyRemoteServer -/- CrazyRemoteServer -/- C:\Program Files\CrazyRemote\CrazyRemoteServer.exe
[05-SERVICE]**dgdersvc -/- Device Error Recovery Service -/- C:\Windows\system32\dgdersvc.exe
[05-SERVICE]**FontCache -/- Windows Font Cache Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**geoyar -/- geoyar -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\config\systemprofile\AppData\Local\geoyar\geoyar.dll
[05-SERVICE]**iPod Service -/- iPod 서비스 -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**jkeviwgklfsdkld -/- jkeviwgklfsdkld -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\jkeviwgklfsdkld\jkeviwgklfsdkld.dll
[05-SERVICE]**lidsiusgelk -/- lidsiusgelk -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\lidsiusgelk\lidsiusgelk.dll
[05-SERVICE]**LMS -/- Intel(R) Management and Security Application Local Management Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\Windows\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nPStarterSVC -/- nProtect Starter -/- C:\Windows\system32\nPStarterSVC.exe
[05-SERVICE]**NVSvc -/- NVIDIA Display Driver Service -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- NVIDIA Update Service Daemon -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**oostgvxfffs -/- oostgvxfffs -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\oostgvxfffs\oostgvxfffs.dll
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**SplashtopRemoteService -/- Splashtop® Remote Service -/- C:\Program Files\Splashtop\Splashtop Remote\Server\SRService.exe
[05-SERVICE]**SSUService -/- Splashtop Software Updater Service -/- C:\Program Files\Splashtop\Splashtop Software Updater\SSUService.exe
[05-SERVICE]**Stereo Service -/- NVIDIA Stereoscopic 3D Driver Service -/- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
[05-SERVICE]**StorSvc -/- Storage Service -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\storsvc.dll
[05-SERVICE]**TeamViewer8 -/- TeamViewer 8 -/- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
[05-SERVICE]**UNS -/- Intel(R) Management and Security Application User Notification Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[05-SERVICE]**vjhsioweteu -/- vjhsioweteu -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\vjhsioweteu\vjhsioweteu.dll
[05-SERVICE]**wbcosyjjs -/- wbcosyjjs -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\wbcosyjjs\wbcosyjjs.dll
[05-SERVICE]**WindowSearch Service Manager -/- WindowSearch Service Manager -/- C:\Program Files\WindowSearch\wssvrelv.exe
[05-SERVICE]**YesWorkerW -/- YesWorker System -/- C:\Users\Administrator\AppData\Roaming\YesWorkerW\YesWorkerSvr.exe