프로그램분석

Code : wrtAF7+MVBHkBicLofdmEqpbzVGnSGol5auWR70tiaYtxPulpk/Ujg==

프로세스 천국 2013. 7. 6. 17:33

[00-PROCESS]**AdMatching -/- C:\Program Files\AdMatching\AdMatching.exe
[00-PROCESS]**admsys -/- C:\Program Files\AdMatching\admsys.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**cmd -/- C:\Windows\system32\cmd.exe
[00-PROCESS]**e_signkey -/- C:\Users\Administrator\AppData\Local\signkey\e_signkey.exe
[00-PROCESS]**entering-se -/- C:\Windows\system32\entering-se.exe
[00-PROCESS]**enumerate_jg_mon -/- C:\Program Files\enumerate_jg\enumerate_jg_mon.exe
[00-PROCESS]**enumerate_jg_uc -/- C:\Program Files\enumerate_jg\enumerate_jg_uc.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**gomhelpersvc -/- C:\Program Files\GRETECH\GomHelper\gomhelpersvc.exe
[00-PROCESS]**hkcmd -/- C:\Windows\system32\hkcmd.exe
[00-PROCESS]**hkcmd -/- C:\Windows\System32\hkcmd.exe
[00-PROCESS]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**igfxpers -/- C:\Windows\system32\igfxpers.exe
[00-PROCESS]**igfxpers -/- C:\Windows\System32\igfxpers.exe
[00-PROCESS]**igfxtray -/- C:\Windows\system32\igfxtray.exe
[00-PROCESS]**igfxtray -/- C:\Windows\System32\igfxtray.exe
[00-PROCESS]**ImageSAFERStart_X64 -/- C:\Windows\system32\ImageSAFERStart_X64.exe
[00-PROCESS]**ImageSAFERStart_X86 -/- C:\Windows\system32\ImageSAFERStart_X86.exe
[00-PROCESS]**ImageSAFERSvc -/- C:\Windows\ImageSAFERSvc.exe
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\microsoft shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**infoconditionalreset -/- C:\Windows\infoconditionalreset.exe
[00-PROCESS]**isap -/- C:\Users\Administrator\AppData\Roaming\wingmsftmvp\isap.exe
[00-PROCESS]**Kies -/- C:\Program Files\Samsung\Kies\Kies.exe
[00-PROCESS]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[00-PROCESS]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**msftmvp -/- C:\Users\Administrator\AppData\Roaming\wingmsftmvp\msftmvp.exe
[00-PROCESS]**msftmvps -/- C:\Users\Administrator\AppData\Roaming\wingmsftmvp\msftmvps.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[00-PROCESS]**netipviewer_mon -/- C:\Program Files\NetIPViewer\netipviewer_mon.exe
[00-PROCESS]**netipviewer_uc -/- C:\Program Files\NetIPViewer\netipviewer_uc.exe
[00-PROCESS]**NMBgMonitor -/- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[00-PROCESS]**NMIndexStoreSvr -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**pcsystemse -/- C:\Program Files\pcsystem\pcsystemse.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**Reader_sl -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[00-PROCESS]**sc_uc -/- C:\Users\Administrator\AppData\Local\shopconnect\sc_uc.exe
[00-PROCESS]**ServiceFilter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[00-PROCESS]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**systemview-se -/- C:\Program Files\systemview\systemview-se.exe
[00-PROCESS]**tabsyncu -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsyncu.exe
[00-PROCESS]**tooltip_mon -/- C:\Program Files\tooltip\tooltip_mon.exe
[00-PROCESS]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe
[00-PROCESS]**vaccineclassu -/- C:\Program Files\vaccineclass\vaccineclassu.exe
[00-PROCESS]**VDeck -/- C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
[00-PROCESS]**viakaraokesrv -/- C:\Windows\system32\viakaraokesrv.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**windowstab_mon -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
[00-PROCESS]**windowstab_uc -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe
[00-PROCESS]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[00-PROCESS]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**204 -/- C:\Windows\d57BJSail5.exe
[01-HKCUREG]**AdMatching -/- C:\Program Files\AdMatching\AdMatching.exe
[01-HKCUREG]**AdMatching -/- C:\Program Files\AdMatching\AdMatching.exe /byboot
[01-HKCUREG]**admsys -/- C:\Program Files\AdMatching\admsys.exe
[01-HKCUREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
[01-HKCUREG]**clickpang.exe -/- C:\Program Files\clickpang\clickpang.exe
[01-HKCUREG]**enumerate_jg -/- C:\Program Files\enumerate_jg\enumerate_jg_uc.exe /run
[01-HKCUREG]**HDAudDeck -/- C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
[01-HKCUREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
[01-HKCUREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[01-HKCUREG]**infocover main -/- C:\Program Files\infocover\infocoveru.exe
[01-HKCUREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[01-HKCUREG]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[01-HKCUREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[01-HKCUREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[01-HKCUREG]**netipviewer -/- C:\Program Files\NetIPViewer\netipviewer_uc.exe /run
[01-HKCUREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[01-HKCUREG]**sc -/- C:\Users\Administrator\AppData\Local\shopconnect\sc_uc.exe /run
[01-HKCUREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[01-HKCUREG]**Super-Charger -/- C:\Program Files\MSI\Super-Charger\StartSuperCharger.exe
[01-HKCUREG]**systemvaccine main -/- C:\Program Files\systemvaccine\systemvaccineu.exe /8L
[01-HKCUREG]**tabsync -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsyncu.exe UPDATE
[01-HKCUREG]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[01-HKCUREG]**vaccineclass main -/- C:\Program Files\vaccineclass\vaccineclassu.exe /8L
[01-HKCUREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[01-HKCUREG]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[01-HKCUREG]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[02-HKLMREG]**204 -/- C:\Windows\d57BJSail5.exe
[02-HKLMREG]**AdMatching -/- C:\Program Files\AdMatching\AdMatching.exe
[02-HKLMREG]**AdMatching -/- C:\Program Files\AdMatching\AdMatching.exe /byboot
[02-HKLMREG]**admsys -/- C:\Program Files\AdMatching\admsys.exe
[02-HKLMREG]**Adobe Reader Speed Launcher -/- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
[02-HKLMREG]**clickpang.exe -/- C:\Program Files\clickpang\clickpang.exe
[02-HKLMREG]**enumerate_jg -/- C:\Program Files\enumerate_jg\enumerate_jg_uc.exe /run
[02-HKLMREG]**HDAudDeck -/- C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
[02-HKLMREG]**HncUpdate -/- C:\Program Files\Common Files\Hnc\HncUtils\HncUpdate.exe /A
[02-HKLMREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[02-HKLMREG]**infocover main -/- C:\Program Files\infocover\infocoveru.exe
[02-HKLMREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[02-HKLMREG]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[02-HKLMREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[02-HKLMREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**netipviewer -/- C:\Program Files\NetIPViewer\netipviewer_uc.exe /run
[02-HKLMREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[02-HKLMREG]**sc -/- C:\Users\Administrator\AppData\Local\shopconnect\sc_uc.exe /run
[02-HKLMREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[02-HKLMREG]**Super-Charger -/- C:\Program Files\MSI\Super-Charger\StartSuperCharger.exe
[02-HKLMREG]**systemvaccine main -/- C:\Program Files\systemvaccine\systemvaccineu.exe /8L
[02-HKLMREG]**tabsync -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsyncu.exe UPDATE
[02-HKLMREG]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[02-HKLMREG]**vaccineclass main -/- C:\Program Files\vaccineclass\vaccineclassu.exe /8L
[02-HKLMREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[02-HKLMREG]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[02-HKLMREG]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[03-BHOCLSD]**Enumerate Tap Search -/- C:\Program Files\enumerate_jg\enumerate_jg.dll -/- {A1D91943-5386-4884-8A80-F9904A4CC8B9}
[03-BHOCLSD]**TabSync -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsynchelper.dll -/- {1AB2CFE4-D6CC-4588-A4EF-EE98B8249883}
[03-BHOCLSD]**확장검색서비스 -/- C:\Program Files\GRETECH\GomHelper\gomhelper.dll -/- {A14EAA16-CA35-4666-845A-DC084DCDF356}
[04-TOOLBAR]**N.A -/- N.A -/- {D09CFF09-A42A-4EDC-9804-E61224F59CA1}
[04-TOOLBAR]**TabSync -/- C:\Users\Administrator\AppData\Roaming\TabSync\tabsynchelper.dll -/- {5402F30A-DE34-4240-A594-132217F7D52D}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**enteringservice -/- Entering Service -/- C:\Windows\system32\entering-se.exe
[05-SERVICE]**FontCache -/- Windows Font Cache Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**GomHelper Update Services -/- GomHelper Update Services -/- C:\Program Files\GRETECH\GomHelper\gomhelpersvc.exe
[05-SERVICE]**Image Protection -/- Image Protect Service -/- C:\Windows\ImageSAFERSvc.exe
[05-SERVICE]**internetserviceservice -/- Internetservice Service -/- C:\Program Files\internetservice\internetservice-se.exe
[05-SERVICE]**liveupdaterservice -/- liveupdater service -/- C:\Program Files\liveupdater\liveupdater-se.exe
[05-SERVICE]**msftmvp -/- Microsoft AD WS -/- C:\Users\Administrator\AppData\Roaming\wingmsftmvp\msftmvps.exe
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NBService -/- NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NMIndexingService -/- NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**pcsystem Update Service -/- pcsystem Support Service -/- C:\Windows\infoconditionalreset.exe
[05-SERVICE]**pcsystemService -/- pcsystem Service -/- C:\Program Files\pcsystem\pcsystemse.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**service_filter -/- ActiveX Filter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[05-SERVICE]**systemvaccine Update Service -/- systemvaccine Support Service -/- C:\Windows\usercontrolinfoset.exe up
[05-SERVICE]**systemviewservice -/- systemview service -/- C:\Program Files\systemview\systemview-se.exe
[05-SERVICE]**vaccineclass Update Service -/- vaccineclass Support Service -/- C:\Windows\wininfocontrol.exe up
[05-SERVICE]**VIAKaraokeService -/- VIA Karaoke digital mixer Service -/- C:\Windows\system32\viakaraokesrv.exe
[05-SERVICE]**windowstab_mon -/- Windows Tab Manager -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
[05-SERVICE]**wqyqrejg -/- Enumerate Update Manager -/- C:\Program Files\enumerate_jg/enumerate_jg_mon.exe
[05-SERVICE]**wqyqrip -/- NetIPViewer Manager -/- C:\Program Files\NetIPViewer/netipviewer_mon.exe
[05-SERVICE]**wqyqrpop -/- Tooltip Manager -/- C:\Program Files\tooltip\tooltip_mon.exe