Code : 0t53AindrLHpvu76g8NGFav52K8hyOQU
[00-PROCESS]**ASDSvc -/- C:\Program Files\AhnLab\V3Lite30\ASDSvc.exe
[00-PROCESS]**EXCEL -/- C:\Program Files\Microsoft Office\Office14\EXCEL.EXE
[00-PROCESS]**f_LPS -/- C:\Program Files\Fasoo DRM\f_LPS.exe
[00-PROCESS]**FixpidN -/- C:\Program Files\Sweetple\Sweetple Fixpid!\FixpidN.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FsAgentManager -/- C:\DuzonBizon\NEO-iPlus\FsAgent\FsAgentManager.exe
[00-PROCESS]**FSAGENTMANAGER -/- C:\DUZONBIZON\NEO-IPLUS\FSAGENT\FSAGENTMANAGER.EXE
[00-PROCESS]**GROOVE -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[00-PROCESS]**hkcmd -/- C:\Windows\system32\hkcmd.exe
[00-PROCESS]**hkcmd -/- C:\Windows\System32\hkcmd.exe
[00-PROCESS]**igfxpers -/- C:\Windows\system32\igfxpers.exe
[00-PROCESS]**igfxpers -/- C:\Windows\System32\igfxpers.exe
[00-PROCESS]**igfxtray -/- C:\Windows\system32\igfxtray.exe
[00-PROCESS]**igfxtray -/- C:\Windows\System32\igfxtray.exe
[00-PROCESS]**IMEDICTUPDATE -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[00-PROCESS]**NATEONMain -/- C:\Program Files\NATEON\BIN\NATEONMain.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**npesvc -/- C:\Program Files\nProtect\nProtect Online Security\npesvc.exe
[00-PROCESS]**npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**OUTLOOK -/- C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
[00-PROCESS]**srvany -/- C:\Windows\system32\srvany.exe
[00-PROCESS]**V3Lite -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**zayaraza -/- C:\Users\Administrator\AppData\Roaming\wingzayaraza\zayaraza.exe
[00-PROCESS]**zayarazas -/- C:\Users\Administrator\AppData\Roaming\wingzayaraza\zayarazas.exe
[01-HKCUREG]**Fixpid! -/- C:\Program Files\Sweetple\Sweetple Fixpid!\FixpidN.exe
[01-HKCUREG]**FsAgentManager -/- C:\DUZONBIZON\NEO-IPLUS\FSAGENT\FSAGENTMANAGER.EXE
[01-HKCUREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[01-HKCUREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[01-HKCUREG]**V3 Application -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe /tray
[02-HKLMREG]**Fixpid! -/- C:\Program Files\Sweetple\Sweetple Fixpid!\FixpidN.exe
[02-HKLMREG]**FsAgentManager -/- C:\DUZONBIZON\NEO-IPLUS\FSAGENT\FSAGENTMANAGER.EXE
[02-HKLMREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[02-HKLMREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[02-HKLMREG]**V3 Application -/- C:\Program Files\AhnLab\V3Lite30\V3Lite.exe /tray
[03-BHOCLSD]**xWebDC Class -/- C:\Program Files\Fasoo DRM\f_webdc.dll -/- {4AAA2F98-2D2F-4938-AFB1-3EC1B51C41D9}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**Fasoo Process Service -/- Fasoo Process Service -/- C:\Program Files\Fasoo DRM\f_LPS.exe
[05-SERVICE]**FontCache -/- Windows Font Cache Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**gpsvc -/- Group Policy Client -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\gpsvc.dll
[05-SERVICE]**ImeDictUpdateService -/- Microsoft IME Dictionary Update -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[05-SERVICE]**KMService -/- KMService -/- C:\Windows\system32\srvany.exe
[05-SERVICE]**lmhosts -/- TCP/IP NetBIOS Helper -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\lltdsvc.dll
[05-SERVICE]**Microsoft SharePoint Workspace Audit Service -/- Microsoft SharePoint Workspace Audit Service -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NlaSvc -/- Network Location Awareness -/- C:\Windows\System32\svchost.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nProtect Online Security Service -/- nProtect Online Security Service -/- C:\Program Files\nProtect\nProtect Online Security\npesvc.exe
[05-SERVICE]**nsi -/- Network Store Interface Service -/- C:\Windows\system32\svchost.exe
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**V3 Service -/- V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite30\ASDSvc.exe
[05-SERVICE]**zayaraza -/- Microsoft AD WS -/- C:\Users\Administrator\AppData\Roaming\wingzayaraza\zayarazas.exe