프로그램분석

Code : gU4ESEqMmC4sPaS2BPuAoQHLi+TAY23RZ5MYg9TqCg15NzECoMX3Dw==

프로세스 천국 2013. 7. 1. 22:40

[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[00-PROCESS]**dlx5 -/- c:\windows\dlx5.exe
[00-PROCESS]**DlxSvc -/- C:\WINDOWS\system32\DlxSvc.exe
[00-PROCESS]**DRCSvc -/- C:\WINDOWS\system32\DRCSvc.exe
[00-PROCESS]**FindGame -/- C:\Program Files\ACT Deluxe\Client\FindGame.exe
[00-PROCESS]**GClean -/- C:\Program Files\GClean\GClean.exe
[00-PROCESS]**gtiexp -/- c:\windows\gtiexp.exe
[00-PROCESS]**HDeck -/- C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**isrunner -/- C:\isg\isrunner.exe
[00-PROCESS]**msgsvccln -/- C:\WINDOWS\system32\msgsvccln.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**nvsvc32 -/- C:\WINDOWS\system32\nvsvc32.exe
[00-PROCESS]**nwiz -/- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe
[00-PROCESS]**qrunsvc -/- C:\\qrunsvc.exe
[00-PROCESS]**RunDLL32 -/- C:\WINDOWS\system32\RunDLL32.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**HDAudDeck -/- C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
[01-HKCUREG]**ISRunner3 -/- C:\isg\isrunner.exe
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[01-HKCUREG]**NvMediaCenter -/- RunDLL32.exe NvMCTray.dllNvTaskbarInit -login
[01-HKCUREG]**nwiz -/- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
[01-HKCUREG]**pbwlauncher -/- C:\Program Files\Ghostmate\pbw.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**HDAudDeck -/- C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
[02-HKLMREG]**ISRunner3 -/- C:\isg\isrunner.exe
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dllNvStartup
[02-HKLMREG]**NvMediaCenter -/- RunDLL32.exe NvMCTray.dllNvTaskbarInit -login
[02-HKLMREG]**nwiz -/- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
[02-HKLMREG]**pbwlauncher -/- C:\Program Files\Ghostmate\pbw.exe
[03-BHOCLSD]**BhoApp Class -/- C:\WINDOWS\system32\BBDLL.dll -/- {44BC82DA-4D28-4CF1-BFBE-4DDACAD0543E}
[05-SERVICE]**ADClientService -/- AD_Client_Service -/- C:\WINDOWS\system32\DlxSvc.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**Deluxe-RHost -/- Deluxe-RHost -/- C:\WINDOWS\system32\DRCSvc.exe
[05-SERVICE]**Irmon -/- Infrared Monitor -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\irmon.dll
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\WINDOWS\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**NVSvc -/- NVIDIA Driver Helper Service -/- C:\WINDOWS\system32\nvsvc32.exe
[05-SERVICE]**nvUpdatusService -/- NVIDIA Update Service Daemon -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[05-SERVICE]**QR Service -/- QR Service -/- C:\qrunsvc.exe
[05-SERVICE]**Remote Procedure Call (RPC) Manager -/- Remote Procedure Call (RPC) Manager -/- C:\WINDOWS\system32\msgsvccln.exe
[05-SERVICE]**xsherlock -/- xsherlock -/- C:\WINDOWS\system32\xsherlock.xem