프로그램분석

Code : Q/ekIx8yyHUdpuaCH0gVXznmm4qiV8wRLa2R4N6sm58=

프로세스 천국 2013. 7. 9. 13:34

[00-PROCESS]**34049_WindowmodusSetup_k10000 -/- C:\Windows\34049_WindowmodusSetup_k10000.exe
[00-PROCESS]**ActivexDel -/- C:\Program Files\CineRak\CineRakCoupon\ActivexDel.exe
[00-PROCESS]**CCLEANER -/- C:\Users\Administrator\Documents\CCLEANER[1]\CCLEANER.exe
[00-PROCESS]**CineRakCouponUpdater -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe
[00-PROCESS]**Cleaner -/- C:\Program Files\UtilZone\Cleaner.exe
[00-PROCESS]**clgsve -/- C:\Program Files\Windows CloudGet v1.4\clgsve.exe
[00-PROCESS]**clgsvp -/- C:\Program Files\Windows CloudGet v1.4\clgsvp.exe
[00-PROCESS]**clgsvr -/- C:\Program Files\Windows CloudGet v1.4\clgsvr.exe
[00-PROCESS]**DownProcessor_yesfile -/- C:\Program Files\Yesfile\DownProcessor_yesfile.exe
[00-PROCESS]**enumerate_gtu -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe
[00-PROCESS]**enumst -/- C:\Program Files\enumerate\gt\enumst.exe
[00-PROCESS]**eztoon -/- C:\Program Files\eztoon\eztoon.exe
[00-PROCESS]**eztoonUp -/- C:\Program Files\eztoon\eztoonUp.exe
[00-PROCESS]**FavoritesURLChanger -/- C:\Program Files\LinkDirect\FavoritesURLChanger.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**gongoo -/- C:\Windows\gongoo.exe
[00-PROCESS]**goodadmgr -/- C:\Program Files\goodad\goodadmgr.exe
[00-PROCESS]**goodadsvc -/- C:\Program Files\goodad\goodadsvc.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[00-PROCESS]**ismctrl -/- C:\Program Files\insafeclient v1.1\ismctrl.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient v1.1\ismsvc.exe
[00-PROCESS]**ismsvp -/- C:\Program Files\insafeclient v1.1\ismsvp.exe
[00-PROCESS]**istartmanagersvc -/- C:\Program Files\Internet Start Manager\istartmanagersvc.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneSetup_66_hide -/- C:\Windows\ISZoneSetup_66_hide.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**kinglotto -/- C:\Program Files\kinglotto\kinglotto.exe
[00-PROCESS]**kinglottoUp -/- C:\Program Files\kinglotto\kinglottoUp.exe
[00-PROCESS]**linkdirectT -/- C:\Program Files\LinkDirect\linkdirectT.exe
[00-PROCESS]**LogicalLock -/- C:\Program Files\logicallock\LogicalLock.exe
[00-PROCESS]**LogicalLock_Agent -/- C:\Program Files\logicallock\LogicalLock_Agent.exe
[00-PROCESS]**LogicalLock_KeyWizard -/- C:\Program Files\logicallock\LogicalLock_KeyWizard.exe
[00-PROCESS]**LogicalLockLauncher -/- C:\Program Files\logicallock\LogicalLockLauncher.exe
[00-PROCESS]**LogicalLockUp -/- C:\Program Files\logicallock\LogicalLockUp.exe
[00-PROCESS]**maxboan -/- C:\Program Files\maxboan\maxboan.exe
[00-PROCESS]**maxboancnt -/- C:\Users\Administrator\AppData\Roaming\maxboan\maxboancnt.exe
[00-PROCESS]**maxboanmon -/- C:\Program Files\maxboan\maxboanmon.exe
[00-PROCESS]**maxboansvc -/- C:\Program Files\maxboan\maxboansvc.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**opensearchgt -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgt.exe
[00-PROCESS]**opensearchgtu -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgtu.exe
[00-PROCESS]**PatchUpInit -/- C:\Program Files\PatchUp_Plus\PatchUpInit.exe
[00-PROCESS]**PatchUpPlus -/- C:\Program Files\PatchUp_Plus\PatchUpPlus.exe
[00-PROCESS]**PCAutoUpdate -/- C:\Program Files\PC-Care\PCAutoUpdate.exe
[00-PROCESS]**PCCare -/- C:\Program Files\PC-Care\PCCare.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RaclSetup_tjco001 -/- C:\Windows\RaclSetup_tjco001.exe
[00-PROCESS]**RaclSvc -/- C:\Program Files\Racl\RaclSvc.exe
[00-PROCESS]**RaclUninst -/- C:\Program Files\Racl\RaclUninst.exe
[00-PROCESS]**realfaster -/- C:\Program Files\realfaster\realfaster.exe
[00-PROCESS]**realfastercnt -/- C:\Users\Administrator\AppData\Roaming\realfaster\realfastercnt.exe
[00-PROCESS]**realfastersvc -/- C:\Program Files\realfaster\realfastersvc.exe
[00-PROCESS]**RemoveTAM -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\RemoveTAM.exe
[00-PROCESS]**RollingPop_E -/- C:\Users\Administrator\AppData\Roaming\RollingPop\RollingPop_E.exe
[00-PROCESS]**RollingPop_R -/- C:\Users\Administrator\AppData\Roaming\RollingPop\RollingPop_R.exe
[00-PROCESS]**RollingPop_S -/- C:\Users\Administrator\AppData\Roaming\RollingPop\RollingPop_S.exe
[00-PROCESS]**RollingPop_U -/- C:\Users\Administrator\AppData\Roaming\RollingPop\RollingPop_U.exe
[00-PROCESS]**SafeIP -/- C:\Program Files\SafeIP\SafeIP.exe
[00-PROCESS]**SafeIPs -/- C:\Program Files\SafeIP\SafeIPs.exe
[00-PROCESS]**SafeIPS -/- C:\Program Files\SafeIP\SafeIPS.exe
[00-PROCESS]**SafeReg -/- C:\Program Files\SafeIP\SafeReg.exe
[00-PROCESS]**SafeReg64 -/- C:\Program Files\SafeIP\SafeReg64.exe
[00-PROCESS]**SeStPacnt -/- C:\Program Files\SeStPage\SeStPacnt.exe
[00-PROCESS]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[00-PROCESS]**setup_nid006_silent -/- C:\Windows\setup_nid006_silent.exe
[00-PROCESS]**speedlite -/- C:\Program Files\speedlite\speedlite.exe
[00-PROCESS]**speedlitese -/- C:\Program Files\speedlite\speedlitese.exe
[00-PROCESS]**speedlitesetup_fastrealm -/- C:\Windows\speedlitesetup_fastrealm.exe
[00-PROCESS]**speedliteU -/- C:\Program Files\speedlite\speedliteU.exe
[00-PROCESS]**StarPDF -/- C:\Program Files\STARtools\StarPDF\StarPDF.exe
[00-PROCESS]**starpdfup -/- C:\Program Files\STARtools\StarPDF\starpdfup.exe
[00-PROCESS]**StarSee -/- C:\Program Files\STARtools\StarSee\StarSee.exe
[00-PROCESS]**starseeextchg -/- C:\Program Files\STARtools\StarSee\starseeextchg.exe
[00-PROCESS]**StarSeeLauncher -/- C:\Program Files\STARtools\StarSee\StarSeeLauncher.exe
[00-PROCESS]**starseeup -/- C:\Program Files\STARtools\StarSee\starseeup.exe
[00-PROCESS]**startools_addpdf -/- C:\Program Files\STARtools\StarPDF\startools_addpdf.exe
[00-PROCESS]**StartoolsLauncher -/- C:\Program Files\STARtools\StarZip\StartoolsLauncher.exe
[00-PROCESS]**STARUpdate -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe
[00-PROCESS]**StarZip -/- C:\Program Files\STARtools\StarZip\StarZip.exe
[00-PROCESS]**starzipextchg -/- C:\Program Files\STARtools\StarZip\starzipextchg.exe
[00-PROCESS]**starzipup -/- C:\Program Files\STARtools\StarZip\starzipup.exe
[00-PROCESS]**Stooli -/- C:\Program Files\STooli\Stooli.exe
[00-PROCESS]**svc_setup -/- C:\Program Files\Yesfile\svc_setup.exe
[00-PROCESS]**svImgFind -/- C:\Program Files\STARtools\StarSee\svImgFind.exe
[00-PROCESS]**szVCDMod -/- C:\Program Files\STARtools\StarZip\szVCDMod.exe
[00-PROCESS]**tamguard -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\tamguard.exe
[00-PROCESS]**TAMGuard -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TAMGuard.exe
[00-PROCESS]**TAMUpdate -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TAMUpdate.exe
[00-PROCESS]**TheAm -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TheAm.exe
[00-PROCESS]**TheAM -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TheAM.exe
[00-PROCESS]**TPAutoConnSvc -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[00-PROCESS]**TPVCGateway -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[00-PROCESS]**updatePlus -/- C:\Program Files\PatchUp_Plus\updatePlus.exe
[00-PROCESS]**UpdatePlus -/- C:\Program Files\PatchUp_Plus\UpdatePlus.exe
[00-PROCESS]**upsvc -/- C:\Program Files\NAT Service\upsvc.exe
[00-PROCESS]**userinfoconditionset -/- C:\Windows\userinfoconditionset.exe
[00-PROCESS]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[00-PROCESS]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp.exe
[00-PROCESS]**VAAutoUpdate -/- C:\Program Files\Vaccine365\VAAutoUpdate.exe
[00-PROCESS]**Vaccine365 -/- C:\Program Files\Vaccine365\Vaccine365.exe
[00-PROCESS]**VAMon -/- C:\Program Files\Vaccine365\etc\VAMon.exe
[00-PROCESS]**VAReg -/- C:\Program Files\Vaccine365\etc\VAReg.exe
[00-PROCESS]**vmtoolsd -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[00-PROCESS]**WEUninstall_s2dwm -/- C:\Program Files\WinExpand_s2dwm\WEUninstall_s2dwm.EXE
[00-PROCESS]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[00-PROCESS]**WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[00-PROCESS]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[00-PROCESS]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[00-PROCESS]**WinExpandSetup_downrealm -/- C:\Windows\WinExpandSetup_downrealm.exe
[00-PROCESS]**winspep -/- C:\Program Files\Windows Winerspop 2.0\winspep.exe
[00-PROCESS]**winspop -/- C:\Program Files\Windows Winerspop 2.0\winspop.exe
[00-PROCESS]**winspsp -/- C:\Program Files\Windows Winerspop 2.0\winspsp.exe
[00-PROCESS]**winspst -/- C:\Program Files\Windows Winerspop 2.0\winspst.exe
[00-PROCESS]**winspstu -/- C:\Program Files\Windows Winerspop 2.0\winspstu.exe
[00-PROCESS]**winspsu -/- C:\Program Files\Windows Winerspop 2.0\winspsu.exe
[00-PROCESS]**winspsv -/- C:\Program Files\Windows Winerspop 2.0\winspsv.exe
[00-PROCESS]**WinSuggestions -/- C:\Program Files\Windows Suggestions\WinSuggestions.exe
[00-PROCESS]**WinSuggestionsU -/- C:\Program Files\Windows Suggestions\WinSuggestionsU.exe
[00-PROCESS]**WinxpendUP_s2dwm -/- C:\Program Files\WinExpand_s2dwm\WinxpendUP_s2dwm.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**YesfileDown -/- C:\Program Files\Yesfile\YesfileDown.exe
[00-PROCESS]**YesfileUp -/- C:\Program Files\Yesfile\YesfileUp.exe
[01-HKCUREG]**CineRakCoupon -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe /start
[01-HKCUREG]**Enumerate_gt -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe subcmd
[01-HKCUREG]**guardtam -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\tamguard.exe
[01-HKCUREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[01-HKCUREG]**linkdirectmain -/- C:\Program Files\LinkDirect\linkdirectT.exe -o
[01-HKCUREG]**PatchUp_Plus -/- C:\Program Files\PatchUp_Plus\UpdatePlus.exe -r
[01-HKCUREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[01-HKCUREG]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[01-HKCUREG]**startoolsup -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe -o
[01-HKCUREG]**STooli -/- C:\Program Files\STooli\Stooli.exe
[01-HKCUREG]**tamgrd -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TheAm.exe
[01-HKCUREG]**TheAM -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TAMUpdate.exe
[01-HKCUREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[01-HKCUREG]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp /start
[01-HKCUREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[01-HKCUREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[01-HKCUREG]**Windowns Suggestions -/- C:\Program Files\Windows Suggestions\WinSuggestionsU.exe
[01-HKCUREG]**Windowsopensearch -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgt.exe Runcmd
[01-HKCUREG]**Windowsopensearchupdate -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgtu.exe
[01-HKCUREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[01-HKCUREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[01-HKCUREG]**windvieweropt -/- C:\Program Files\windviewer\windopt.exe
[01-HKCUREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[01-HKCUREG]**WinProUp -/- C:\Program Files\WinPro\WinProUp.exe /start
[02-HKLMREG]**CineRakCoupon -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe /start
[02-HKLMREG]**Enumerate_gt -/- C:\Program Files\enumerate\gt\enumerate_gtu.exe subcmd
[02-HKLMREG]**guardtam -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\tamguard.exe
[02-HKLMREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[02-HKLMREG]**linkdirectmain -/- C:\Program Files\LinkDirect\linkdirectT.exe -o
[02-HKLMREG]**PatchUp_Plus -/- C:\Program Files\PatchUp_Plus\UpdatePlus.exe -r
[02-HKLMREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[02-HKLMREG]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[02-HKLMREG]**startoolsup -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe -o
[02-HKLMREG]**STooli -/- C:\Program Files\STooli\Stooli.exe
[02-HKLMREG]**tamgrd -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TheAm.exe
[02-HKLMREG]**TheAM -/- C:\Users\Administrator\AppData\Roaming\theam\common\bin\TAMUpdate.exe
[02-HKLMREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[02-HKLMREG]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp /start
[02-HKLMREG]**VMware User Process -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe -n vmusr
[02-HKLMREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[02-HKLMREG]**Windowns Suggestions -/- C:\Program Files\Windows Suggestions\WinSuggestionsU.exe
[02-HKLMREG]**Windowsopensearch -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgt.exe Runcmd
[02-HKLMREG]**Windowsopensearchupdate -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgtu.exe
[02-HKLMREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[02-HKLMREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[02-HKLMREG]**windvieweropt -/- C:\Program Files\windviewer\windopt.exe
[02-HKLMREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[02-HKLMREG]**WinProUp -/- C:\Program Files\WinPro\WinProUp.exe /start
[03-BHOCLSD]**Enumerate Top Search - GT -/- C:\Program Files\enumerate\gt\enumerate_gt.dll -/- {C0B117CC-31B9-431C-90B0-6E05EF7398FF}
[03-BHOCLSD]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.dll -/- {0B3B9D03-5E08-4E48-BF77-FC88443F3DC2}
[03-BHOCLSD]**OpenSearchGT SubTap -/- C:\Users\Administrator\AppData\Roaming\opensearchGT\opensearchgt.dll -/- {F48F659E-88A3-4EFA-804E-833609E15AD6}
[03-BHOCLSD]**STooliHelper -/- C:\Program Files\STooli\STooli.dll -/- {2DCB3994-4990-4AD6-852F-AADA158FAD04}
[03-BHOCLSD]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.dll -/- {1C5099DD-7923-45e8-9680-5F285DC61213}
[03-BHOCLSD]**windviewer Class -/- C:\Program Files\windviewer\windviewer.dll -/- {CC34B3C3-3904-4D0E-8035-536715B28BBA}
[03-BHOCLSD]**WinExpandB Class -/- C:\Program Files\WinExpand_s2dwm\WinExpand_s2dwm.dll -/- {00000A52-5AC6-4CD4-85A1-20DE8B013366}
[04-TOOLBAR]**N.A -/- N.A -/- {9CA634EF-ECF0-4DD1-B7E2-B9CCFF40BCAF}
[04-TOOLBAR]**잠김영역복사 -/- C:\Program Files\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**clgsvr32 -/- Windows CloudGet Service -/- C:\Program Files\Windows CloudGet v1.4\clgsvr.exe
[05-SERVICE]**goodadsvc -/- goodad -/- C:\Program Files\goodad\goodadsvc.exe
[05-SERVICE]**ismsvc32 -/- INSAFE Client 1.0 -/- C:\Program Files\insafeclient v1.1\ismsvc.exe
[05-SERVICE]**istartmanagersvc -/- Internet Start Manager -/- C:\Program Files\Internet Start Manager\istartmanagersvc.exe
[05-SERVICE]**maxboan -/- maxboan svc -/- C:\Program Files\maxboan\maxboansvc.exe
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**realfaster -/- realfaster svc -/- C:\Program Files\realfaster\realfastersvc.exe
[05-SERVICE]**RollingPop_Service -/- RollingPop_Service -/- C:\Users\Administrator\AppData\Roaming\RollingPop\RollingPop_S.exe ROLL01
[05-SERVICE]**SafeIPS -/- SafeIPS -/- C:\Program Files\SafeIP\SafeIPs.exe
[05-SERVICE]**speedlite Update Service -/- speedlite Support Service -/- C:\Windows\userinfoconditionset.exe
[05-SERVICE]**speedliteService -/- speedlite Service -/- C:\Program Files\speedlite\speedlitese.exe
[05-SERVICE]**TPAutoConnSvc -/- TP AutoConnect Service -/- C:\Program Files\VMware\VMware Tools\TPAutoConnSvc.exe
[05-SERVICE]**TPVCGateway -/- TP VC Gateway Service -/- C:\Program Files\VMware\VMware Tools\TPVCGateway.exe
[05-SERVICE]**VMTools -/- VMware Tools -/- C:\Program Files\VMware\VMware Tools\vmtoolsd.exe
[05-SERVICE]**vmvss -/- VMware Snapshot Provider -/- C:\Windows\system32\dllhost.exe
[05-SERVICE]**WindowmodusUpdateService -/- WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[05-SERVICE]**winspsv32 -/- Windows Winerspop Service -/- C:\Program Files\Windows Winerspop 2.0\winspsv.exe