프로그램분석

Code : dIkcBBuV68rFtPETvm3GyfyZS+1sMPV8DdhL4Z5TVtHHOWJywYHXyQ==

프로세스 천국 2013. 7. 13. 19:49

[00-PROCESS]**26 -/- C:\Documents and Settings\Administrator\Application Data\26.exe
[00-PROCESS]**agrsmsvc -/- C:\Program Files\LSI SoftModem\agrsmsvc.exe
[00-PROCESS]**AssistantServices -/- C:\Program Files\Join Air\AssistantServices.exe
[00-PROCESS]**browsemngr -/- C:\Documents and Settings\Administrator\Application Data\Browser Manager\2.6.1339.144\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe
[00-PROCESS]**C+WEject -/- C:\Program Files\esia max-d MC400\C+WEject.exe
[00-PROCESS]**dco -/- C:\Documents and Settings\Administrator\Application Data\dco.exe
[00-PROCESS]**DCService -/- C:\Documents and Settings\Administrator\Application Data\DatacardService\DCService.exe
[00-PROCESS]**FacebookUpdate -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe
[00-PROCESS]**firefox -/- C:\Program Files\Mozilla Firefox\firefox.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GrooveAuditService -/- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
[00-PROCESS]**maintenanceservice -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[00-PROCESS]**McCHSvc -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[00-PROCESS]**minerd -/- C:\Documents and Settings\Administrator\Local Settings\Temp\minerd.exe
[00-PROCESS]**NclRSSrv -/- C:\Program Files\Nokia\PC Connectivity Solution\Transports\NclRSSrv.exe
[00-PROCESS]**NclUSBSrv -/- C:\Program Files\Nokia\PC Connectivity Solution\Transports\NclUSBSrv.exe
[00-PROCESS]**NokiaMServer -/- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
[00-PROCESS]**NokiaMusic -/- C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe
[00-PROCESS]**NPCIA -/- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**Pwueut -/- C:\Documents and Settings\Administrator\Application Data\Pwueut.exe
[00-PROCESS]**regsrv34 -/- C:\Documents and Settings\Administrator\Application Data\regsrv34.exe
[00-PROCESS]**RTHDCPL -/- C:\WINDOWS\RTHDCPL.EXE
[00-PROCESS]**rundll32 -/- C:\WINDOWS\system32\rundll32.exe
[00-PROCESS]**ServiceLayer -/- C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
[00-PROCESS]**sistray -/- C:\WINDOWS\system32\sistray.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**SMΔRTP -/- C:\Program Files\Smadav\SMΔRTP.exe
[00-PROCESS]**SSScheduler -/- C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe
[00-PROCESS]**TRUUpdater -/- C:\Program Files\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe
[00-PROCESS]**UIExec -/- C:\Program Files\Join Air\UIExec.exe
[00-PROCESS]**VdqSdUoZS -/- C:\WINDOWS\VdqSdUoZS.exe
[00-PROCESS]**WaHelper -/- C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**WmsUpdate -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**0x000101 -/- C:\Documents and Settings\Administrator\Application Data\26.exe
[01-HKCUREG]**afƐakanfjccfdkie -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**AT&T Communication Manager -/- C:\Program Files\AT&T\Communication Manager\ATTCM.exe -a
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**emflaiƔacjoƔlili -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**Facebook Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[01-HKCUREG]**Google Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**iidecacbnainlnnc -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**jcdjiƔkangiknfaa -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**jfflƔjƔaecllebmi -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[01-HKCUREG]**Kernel and Hardware Abstraction Layer -/- KHALMNPR.EXE
[01-HKCUREG]**Microsoft DLL Registrations -/- C:\Documents and Settings\Administrator\Application Data\regsrv34.exe
[01-HKCUREG]**Nokia FastStart -/- C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe /command:faststart
[01-HKCUREG]**NokiaMServer -/- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles
[01-HKCUREG]**NokiaPCInternetAccess -/- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe /b
[01-HKCUREG]**Pwueut -/- C:\Documents and Settings\Administrator\Application Data\Pwueut.exe
[01-HKCUREG]**RTHDCPL -/- RTHDCPL.EXE
[01-HKCUREG]**SiSPower -/- Rundll32.exe SiSPower.dllModeAgent
[01-HKCUREG]**SMΔRT-Protection -/- C:\Program Files\Smadav\SMΔRTP.exe rtp
[01-HKCUREG]**TRUUpdater -/- C:\Program Files\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe /bkground
[01-HKCUREG]**UIExec -/- C:\Program Files\Join Air\UIExec.exe
[01-HKCUREG]**VdqSdUoZS -/- C:\WINDOWS\VdqSdUoZS
[01-HKCUREG]**WatcherHelper -/- C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe
[02-HKLMREG]**0x000101 -/- C:\Documents and Settings\Administrator\Application Data\26.exe
[02-HKLMREG]**afƐakanfjccfdkie -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[02-HKLMREG]**AT&T Communication Manager -/- C:\Program Files\AT&T\Communication Manager\ATTCM.exe -a
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**emflaiƔacjoƔlili -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[02-HKLMREG]**Facebook Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[02-HKLMREG]**Google Update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**iidecacbnainlnnc -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[02-HKLMREG]**jcdjiƔkangiknfaa -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[02-HKLMREG]**jfflƔjƔaecllebmi -/- C:\Documents and Settings\Administrator\Local Settings\Temp\WmsUpdate.exe
[02-HKLMREG]**Kernel and Hardware Abstraction Layer -/- KHALMNPR.EXE
[02-HKLMREG]**Microsoft DLL Registrations -/- C:\Documents and Settings\Administrator\Application Data\regsrv34.exe
[02-HKLMREG]**Nokia FastStart -/- C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe /command:faststart
[02-HKLMREG]**NokiaMServer -/- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles
[02-HKLMREG]**NokiaPCInternetAccess -/- C:\Program Files\Nokia\PC Internet Access\NPCIA.exe /b
[02-HKLMREG]**Pwueut -/- C:\Documents and Settings\Administrator\Application Data\Pwueut.exe
[02-HKLMREG]**RTHDCPL -/- RTHDCPL.EXE
[02-HKLMREG]**SiSPower -/- Rundll32.exe SiSPower.dllModeAgent
[02-HKLMREG]**SMΔRT-Protection -/- C:\Program Files\Smadav\SMΔRTP.exe rtp
[02-HKLMREG]**TRUUpdater -/- C:\Program Files\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe /bkground
[02-HKLMREG]**UIExec -/- C:\Program Files\Join Air\UIExec.exe
[02-HKLMREG]**VdqSdUoZS -/- C:\WINDOWS\VdqSdUoZS
[02-HKLMREG]**WatcherHelper -/- C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe
[03-BHOCLSD]**&Yahoo! Toolbar Helper -/- C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll -/- {02478D38-C3F9-4efb-9B51-7695ECA05670}
[03-BHOCLSD]**Adobe PDF Reader Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll -/- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~1\Microsoft Office\Office12\GrooveShellExtensions.dll -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[04-TOOLBAR]**Yahoo! Toolbar -/- C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll -/- {EF99BD32-C1FB-11D2-892F-0090271D4F88}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**AgereModemAudio -/- Agere Modem Call Progress Audio -/- C:\Program Files\LSI SoftModem\agrsmsvc.exe
[05-SERVICE]**ATTRcAppSvc -/- AT&T RcAppSvc -/- C:\Program Files\AT&T\Communication Manager\RcAppSvc.exe
[05-SERVICE]**Browser Manager -/- Browser Manager -/- C:\Documents and Settings\Administrator\Application Data\Browser Manager\2.6.1339.144\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe
[05-SERVICE]**CDROM_Eject_W -/- CDROM_Eject_W -/- C:\Program Files\esia max-d MC400\C+WEject.exe
[05-SERVICE]**DCService.exe -/- DCService.exe -/- C:\Documents and Settings\Administrator\Application Data\DatacardService\DCService.exe
[05-SERVICE]**McComponentHostService -/- McAfee Security Scan Component Host Service -/- C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
[05-SERVICE]**Microsoft Office Groove Audit Service -/- Microsoft Office Groove Audit Service -/- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
[05-SERVICE]**MozillaMaintenance -/- Mozilla Maintenance Service -/- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**ServiceLayer -/- ServiceLayer -/- C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
[05-SERVICE]**UI Assistant Service -/- UI Assistant Service -/- C:\Program Files\Join Air\AssistantServices.exe