프로그램분석

Code : 3QF3+VhBZ3s1NQBpBk0OqA89snw4LndJTJzwKM+a3XpbPEWP7NUrlg==

프로세스 천국 2013. 7. 2. 16:53

[00-PROCESS]**aau -/- C:\Arquivos de programas\Automatos\Auto Update\aau.exe
[00-PROCESS]**aengine -/- C:\Arquivos de programas\Automatos\Desktop Agent\aengine.exe
[00-PROCESS]**ApMsgFwd -/- C:\Arquivos de programas\DellTPad\ApMsgFwd.exe
[00-PROCESS]**Apntex -/- C:\Arquivos de programas\DellTPad\Apntex.exe
[00-PROCESS]**Apoint -/- C:\Arquivos de programas\DellTPad\Apoint.exe
[00-PROCESS]**AsfIpMon -/- C:\Arquivos de programas\Broadcom\ASFIPMon\AsfIpMon.exe
[00-PROCESS]**asrcse -/- C:\Arquivos de programas\Automatos\Secure Remote Control\Server\asrcse.exe
[00-PROCESS]**AutoDect -/- C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
[00-PROCESS]**BRService -/- C:\Arquivos de programas\BandRich\BandLuxe HSDPA utility R11\BRService.exe
[00-PROCESS]**ccApp -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccApp.exe
[00-PROCESS]**CcmExec -/- C:\WINDOWS\system32\CCM\CcmExec.exe
[00-PROCESS]**ccSvcHst -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccSvcHst.exe
[00-PROCESS]**cmpe -/- C:\WINDOWS\system32\cmpe.exe
[00-PROCESS]**cvpnd -/- C:\Arquivos de programas\Cisco Systems\VPN Client\cvpnd.exe
[00-PROCESS]**Dot1XCfg -/- C:\Arquivos de programas\Intel\Wireless\Bin\Dot1XCfg.exe
[00-PROCESS]**EvtEng -/- C:\Arquivos de programas\Intel\Wireless\Bin\EvtEng.exe
[00-PROCESS]**fbguard -/- C:\Arquivos de programas\FirebirdDBMS\bin\fbguard.exe
[00-PROCESS]**fbserver -/- C:\Arquivos de programas\FirebirdDBMS\bin\fbserver.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GbpSv -/- C:\Arquivos de programas\GbPlugin\GbpSv.exe
[00-PROCESS]**GCSServer -/- C:\Arquivos de programas\Nokia\GCS\GCSServer.exe
[00-PROCESS]**gcssync -/- C:\Arquivos de programas\Nokia\GCS\gcssync.exe
[00-PROCESS]**GoogleUpdate -/- C:\Arquivos de programas\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GSMCliEjector -/- C:\Arquivos de programas\OI\Oi3G\GSMCliEjector.exe
[00-PROCESS]**GSMSrvEjector -/- C:\WINDOWS\system32\GSMSrvEjector.exe
[00-PROCESS]**HidFind -/- C:\Arquivos de programas\DellTPad\HidFind.exe
[00-PROCESS]**hkcmd -/- C:\WINDOWS\system32\hkcmd.exe
[00-PROCESS]**Iap -/- C:\Arquivos de programas\Dell\OpenManage\Client\Iap.exe
[00-PROCESS]**IDriverT -/- C:\Arquivos de programas\Arquivos comuns\InstallShield\Driver\1150\Intel 32\IDriverT.exe
[00-PROCESS]**IEXPLORE -/- C:\Arquivos de programas\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**ifrmewrk -/- C:\Arquivos de programas\Intel\Wireless\Bin\ifrmewrk.exe
[00-PROCESS]**igfxtray -/- C:\WINDOWS\system32\igfxtray.exe
[00-PROCESS]**jqs -/- C:\Arquivos de programas\Java\jre7\bin\jqs.exe
[00-PROCESS]**jucheck -/- C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
[00-PROCESS]**LUCOMS~1 -/- C:\Arquivos de programas\Symantec\LiveUpdate\LUCOMS~1.EXE
[00-PROCESS]**MDM -/- C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
[00-PROCESS]**Microinformatica -/- C:\Documents and Settings\Administrator\Microinformatica.exe
[00-PROCESS]**NASvc -/- C:\Arquivos de programas\Nero\Update\NASvc.exe
[00-PROCESS]**NMSAccessU -/- C:\Arquivos de programas\CDBurnerXP\NMSAccessU.exe
[00-PROCESS]**OIcontroller -/- C:\WINDOWS\system32\Oi Controller\OIcontroller.exe
[00-PROCESS]**OSE -/- C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**Q1DBService -/- C:\Arquivos de programas\Nokia\GCS\Q1DBService.exe
[00-PROCESS]**RegSrvc -/- C:\Arquivos de programas\Intel\Wireless\Bin\RegSrvc.exe
[00-PROCESS]**Rtvscan -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[00-PROCESS]**S24EvMon -/- C:\Arquivos de programas\Intel\Wireless\Bin\S24EvMon.exe
[00-PROCESS]**ServiceLayer -/- C:\Arquivos de programas\PC Connectivity Solution\ServiceLayer.exe
[00-PROCESS]**Smc -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\Smc.exe
[00-PROCESS]**SmcGui -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\SmcGui.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**SNAC -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\SNAC.EXE
[00-PROCESS]**sqladhlp -/- C:\Arquivos de programas\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
[00-PROCESS]**sqlservr -/- C:\MyInstanceFolderMSSQL$INSTANCENAME\Binn\sqlservr.exe
[00-PROCESS]**StartManSvc -/- C:\Arquivos de programas\Arquivos comuns\PC Tools\sMonitor\StartManSvc.exe
[00-PROCESS]**TosBtSrv -/- C:\Arquivos de programas\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
[00-PROCESS]**TSManager -/- C:\WINDOWS\system32\CCM\TSManager.exe
[00-PROCESS]**Uninstall -/- C:\Arquivos de programas\Automatos\Software Uninstaller\Uninstall.exe
[00-PROCESS]**WLKeeper -/- C:\Arquivos de programas\Intel\Wireless\Bin\WLKeeper.exe
[00-PROCESS]**WMPNetwk -/- C:\Arquivos de programas\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**ZCfgSvc -/- C:\Arquivos de programas\Intel\Wireless\bin\ZCfgSvc.exe
[01-HKCUREG]**Apoint -/- C:\Arquivos de programas\DellTPad\Apoint.exe
[01-HKCUREG]**autodetect -/- C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
[01-HKCUREG]**ccApp -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccApp.exe
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**GSMEjector -/- C:\Arquivos de programas\OI\Oi3G\GSMCliEjector.exe
[01-HKCUREG]**HelpDesk Oi -/- C:\Documents and Settings\Administrator\Microinformatica.exe
[01-HKCUREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[01-HKCUREG]**IntelWireless -/- C:\Arquivos de programas\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
[01-HKCUREG]**IntelZeroConfig -/- C:\Arquivos de programas\Intel\Wireless\bin\ZCfgSvc.exe
[01-HKCUREG]**Kernel and Hardware Abstraction Layer -/- KHALMNPR.EXE
[01-HKCUREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
[02-HKLMREG]**Apoint -/- C:\Arquivos de programas\DellTPad\Apoint.exe
[02-HKLMREG]**autodetect -/- C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
[02-HKLMREG]**ccApp -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccApp.exe
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**GSMEjector -/- C:\Arquivos de programas\OI\Oi3G\GSMCliEjector.exe
[02-HKLMREG]**HelpDesk Oi -/- C:\Documents and Settings\Administrator\Microinformatica.exe
[02-HKLMREG]**HotKeysCmds -/- C:\WINDOWS\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\WINDOWS\system32\igfxtray.exe
[02-HKLMREG]**IntelWireless -/- C:\Arquivos de programas\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
[02-HKLMREG]**IntelZeroConfig -/- C:\Arquivos de programas\Intel\Wireless\bin\ZCfgSvc.exe
[02-HKLMREG]**Kernel and Hardware Abstraction Layer -/- KHALMNPR.EXE
[02-HKLMREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
[03-BHOCLSD]**Ask Search Assistant BHO -/- C:\Arquivos de programas\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL -/- {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}
[03-BHOCLSD]**Ask Toolbar BHO -/- C:\Arquivos de programas\AskSBar\bar\1.bin\ASKSBAR.DLL -/- {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}
[03-BHOCLSD]**CescrtHlpr Object -/- C:\Arquivos de programas\facemoods.com\facemoods\1.4.17.11\bh\facemoods.dll -/- {64182481-4F71-486b-A045-B233BD0DA8FC}
[03-BHOCLSD]**DriveLetterAccess -/- C:\WINDOWS\System32\DLA\DLASHX_W.DLL -/- {5CA3D70E-1895-11CF-8E15-001234567890}
[03-BHOCLSD]**Facilitador de Leitor de Link Adobe PDF -/- C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll -/- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
[03-BHOCLSD]**GbIehObj Class -/- C:\ARQUIVOS DE PROGRAMAS\GBPLUGIN\gbieh.dll -/- {C41A1C0E-EA6C-11D4-B1B8-444553540000}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Arquivos de programas\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Arquivos de programas\Java\jre7\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[04-TOOLBAR]**Ask Toolbar -/- C:\Arquivos de programas\AskSBar\bar\1.bin\ASKSBAR.DLL -/- {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA}
[04-TOOLBAR]**facemoods Toolbar -/- C:\Arquivos de programas\facemoods.com\facemoods\1.4.17.11\facemoodsTlbr.dll -/- {DB4E9724-F518-4dfd-9C7C-78B52103CAB9}
[05-SERVICE]**aauService -/- Automatos Auto Update -/- C:\Arquivos de programas\Automatos\Auto Update\aau.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ASFIPmon -/- Broadcom ASF IP and SMBIOS Mailbox Monitor -/- C:\Arquivos de programas\Broadcom\ASFIPMon\AsfIpMon.exe -service
[05-SERVICE]**asrcs -/- Automatos Secure Remote Control Server -/- C:\Arquivos de programas\Automatos\Secure Remote Control\Server\asrcse.exe -service
[05-SERVICE]**AutomatosDesktopAgent -/- Automatos Desktop Agent -/- C:\Arquivos de programas\Automatos\Desktop Agent\aengine.exe
[05-SERVICE]**BandLuxe_Service -/- BandLuxe Service -/- C:\Arquivos de programas\BandRich\BandLuxe HSDPA utility R11\BRService.exe -e
[05-SERVICE]**ccEvtMgr -/- Symantec Event Manager -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**CcmExec -/- SMS Agent Host -/- C:\WINDOWS\system32\CCM\CcmExec.exe
[05-SERVICE]**ccSetMgr -/- Symantec Settings Manager -/- C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccSvcHst.exe
[05-SERVICE]**cmpe -/- Context Manager Process Extension -/- C:\WINDOWS\system32\cmpe.exe
[05-SERVICE]**CVPND -/- Cisco Systems Inc. VPN Service -/- C:\Arquivos de programas\Cisco Systems\VPN Client\cvpnd.exe
[05-SERVICE]**EvtEng -/- Intel(R) PROSet/Wireless Event Log -/- C:\Arquivos de programas\Intel\Wireless\Bin\EvtEng.exe
[05-SERVICE]**FirebirdGuardianDefaultInstance -/- Firebird Guardian - DefaultInstance -/- C:\Arquivos de programas\FirebirdDBMS\bin\fbguard.exe -s DefaultInstance
[05-SERVICE]**FirebirdServerDefaultInstance -/- Firebird Server - DefaultInstance -/- C:\Arquivos de programas\FirebirdDBMS\bin\fbserver.exe -s DefaultInstance
[05-SERVICE]**GbpSv -/- Gbp Service -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
[05-SERVICE]**GCSR4 -/- Nokia GCS -/- C:\Arquivos de programas\Nokia\GCS\GCSServer.exe
[05-SERVICE]**GCSSync -/- Nokia GCS Sync -/- C:\Arquivos de programas\Nokia\GCS\gcssync.exe
[05-SERVICE]**Gerenciador -/- Oi Controller -/- C:\WINDOWS\system32\Oi Controller\OIcontroller.exe
[05-SERVICE]**GSMEjector -/- GSM Ejector Service -/- C:\WINDOWS\system32\GSMSrvEjector.exe
[05-SERVICE]**gupdate -/- Serviço do Google Update (gupdate) -/- C:\Arquivos de programas\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Serviço do Google Update (gupdatem) -/- C:\Arquivos de programas\Google\Update\GoogleUpdate.exe
[05-SERVICE]**Iap -/- Iap -/- C:\Arquivos de programas\Dell\OpenManage\Client\Iap.exe
[05-SERVICE]**IDriverT -/- InstallDriver Table Manager -/- C:\Arquivos de programas\Arquivos comuns\InstallShield\Driver\1150\Intel 32\IDriverT.exe
[05-SERVICE]**JavaQuickStarterService -/- Java Quick Starter -/- C:\Arquivos de programas\Java\jre7\bin\jqs.exe -service -config C:\Arquivos de programas\Java\jre7\lib\deploy\jqs\jqs.conf
[05-SERVICE]**LiveUpdate -/- LiveUpdate -/- C:\ARQUIV~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
[05-SERVICE]**MDM -/- Machine Debug Manager -/- C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
[05-SERVICE]**MSSQL$INSTANCENAME -/- MSSQL$INSTANCENAME -/- C:\MyInstanceFolderMSSQL$INSTANCENAME\Binn\sqlservr.exe -sINSTANCENAME
[05-SERVICE]**MSSQLServerADHelper -/- MSSQLServerADHelper -/- C:\Arquivos de programas\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
[05-SERVICE]**napagent -/- Agente de Proteção de Acesso à Rede -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NAUpdate -/- @C:\Arquivos de programas\Nero\Update\NASvc.exe-200 -/- C:\Arquivos de programas\Nero\Update\NASvc.exe
[05-SERVICE]**Net Driver HPZ12 -/- Net Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZinw12.dll
[05-SERVICE]**NMSAccessU -/- NMSAccessU -/- C:\Arquivos de programas\CDBurnerXP\NMSAccessU.exe
[05-SERVICE]**NWCWorkstation -/- Serviço de cliente para NetWare -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\nwwks.dll
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PCToolsSSDMonitorSvc -/- PC Tools Startup and Shutdown Monitor service -/- C:\Arquivos de programas\Arquivos comuns\PC Tools\sMonitor\StartManSvc.exe
[05-SERVICE]**Pml Driver HPZ12 -/- Pml Driver HPZ12 -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\system32\HPZipm12.dll
[05-SERVICE]**Q1DBService -/- Nokia GCS Q1DB -/- C:\Arquivos de programas\Nokia\GCS\Q1DBService.exe
[05-SERVICE]**RegSrvc -/- Intel(R) PROSet/Wireless Registry Service -/- C:\Arquivos de programas\Intel\Wireless\Bin\RegSrvc.exe
[05-SERVICE]**rpcapd -/- Remote Packet Capture Protocol v.0 (experimental) -/- C:\Arquivos de programas\WinPcap\rpcapd.exe -d -f C:\Arquivos de programas\WinPcap\rpcapd.ini
[05-SERVICE]**S24EventMonitor -/- Intel(R) PROSet/Wireless Service -/- C:\Arquivos de programas\Intel\Wireless\Bin\S24EvMon.exe
[05-SERVICE]**ServiceLayer -/- ServiceLayer -/- C:\Arquivos de programas\PC Connectivity Solution\ServiceLayer.exe
[05-SERVICE]**SmcService -/- Symantec Management Client -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\Smc.exe
[05-SERVICE]**smstsmgr -/- SMS Task Sequence Agent -/- C:\WINDOWS\system32\CCM\TSManager.exe
[05-SERVICE]**SNAC -/- Symantec Network Access Control -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\SNAC.EXE
[05-SERVICE]**SQLAgent$INSTANCENAME -/- SQLAgent$INSTANCENAME -/- C:\MyInstanceFolderMSSQL$INSTANCENAME\Binn\sqlagent.EXE -i INSTANCENAME
[05-SERVICE]**Symantec AntiVirus -/- Symantec Endpoint Protection -/- C:\Arquivos de programas\Symantec\Symantec Endpoint Protection\Rtvscan.exe
[05-SERVICE]**Symantec Protection CyberS -/- Symantec Protection CyberS -/- C:\WINDOWS\system32\Symantec Protection CyberS.exe -s
[05-SERVICE]**TOSHIBA Bluetooth Service -/- TOSHIBA Bluetooth Service -/- C:\Arquivos de programas\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
[05-SERVICE]**Uninstall -/- Automatos (R) Uninstall -/- C:\Arquivos de programas\Automatos\Software Uninstaller\Uninstall.exe
[05-SERVICE]**WLANKEEPER -/- Intel(R) PROSet/Wireless SSO Service -/- C:\Arquivos de programas\Intel\Wireless\Bin\WLKeeper.exe
[05-SERVICE]**WMPNetworkSvc -/- Serviço de Compartilhamento de Rede do Windows Media Player -/- C:\Arquivos de programas\Windows Media Player\WMPNetwk.exe