프로그램분석

Code : fnoskIm5cjMY/90sv2kaFxZiP6Hd8/daDjUcpIBY/rI=

프로세스 천국 2013. 7. 14. 14:08

[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**ALZip -/- C:\Program Files\ESTsoft\ALZip\ALZip.exe
[00-PROCESS]**appis -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**btwdins -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[00-PROCESS]**chrome -/- C:\Program Files\Google\Chrome\Application\chrome.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**ICNotify -/- C:\Program Files\SoftRun\Inciter2006\ICNotify.exe
[00-PROCESS]**IEXPLORE -/- C:\Program Files\Internet Explorer\IEXPLORE.EXE
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient v1.1\ismsvc.exe
[00-PROCESS]**istartmanagersvc -/- C:\Program Files\Internet Start Manager\istartmanagersvc.exe
[00-PROCESS]**mouserelease -/- C:\Program Files\mouserelease\mouserelease.exe
[00-PROCESS]**mouserelease_sch -/- C:\Program Files\mouserelease\mouserelease_sch.exe
[00-PROCESS]**mouserelease_uc -/- C:\Program Files\mouserelease\mouserelease_uc.exe
[00-PROCESS]**mrmonwqyqrsp -/- C:\WINDOWS\mrmonwqyqrsp.exe
[00-PROCESS]**msfeedssync -/- C:\WINDOWS\system32\msfeedssync.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\FileJo\NetAccelerator.exe
[00-PROCESS]**NewVersion -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[00-PROCESS]**nospell_sch -/- C:\Program Files\nospell\nospell_sch.exe
[00-PROCESS]**nospell_uc -/- C:\Program Files\nospell\nospell_uc.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**rundll32 -/- C:\WINDOWS\system32\rundll32.exe
[00-PROCESS]**ServiceFilter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[00-PROCESS]**spmonwqyqrsp -/- C:\WINDOWS\spmonwqyqrsp.exe
[00-PROCESS]**SRSPremiumSound_XP -/- C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSound_XP.exe
[00-PROCESS]**tamguard -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[00-PROCESS]**TAMUpdate -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[00-PROCESS]**TCSearch -/- C:\Program Files\AdvTopC\TCSearch.exe
[00-PROCESS]**TheAm -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[00-PROCESS]**TsService -/- C:\WINDOWS\system32\TsService.exe
[00-PROCESS]**update -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\update.exe
[00-PROCESS]**winapp -/- C:\Documents and Settings\Administrator\Application Data\winapp\Winapp for Windows\winapp.exe
[00-PROCESS]**windowstab -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab.exe
[00-PROCESS]**windowstab_mon -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_mon.exe
[00-PROCESS]**windowstab_uc -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe
[00-PROCESS]**windowviewcon -/- C:\Documents and Settings\Administrator\Application Data\windowviewcon\windowviewcon.exe
[00-PROCESS]**windowviewconup -/- C:\Documents and Settings\Administrator\Application Data\windowviewcon\windowviewconup.exe
[00-PROCESS]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[00-PROCESS]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**wscntfy -/- C:\WINDOWS\system32\wscntfy.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**Adv_TopC -/- C:\Program Files\AdvTopC\TCSearch.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**appis.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[01-HKCUREG]**appll -/- C:\Documents and Settings\Administrator\Application Data\winapp\Winapp for Windows\winapp.exe update
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**guardtam -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[01-HKCUREG]**IETab -/- C:\Program Files\IETab\IETab.exe
[01-HKCUREG]**Inciter2006 UI -/- C:\Program Files\SoftRun\Inciter2006\ICNotify.exe -reboot
[01-HKCUREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[01-HKCUREG]**MOUSERELEASE_UC -/- C:\Program Files\mouserelease\mouserelease_uc.exe /run
[01-HKCUREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[01-HKCUREG]**tamgrd -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[01-HKCUREG]**TheAM -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[01-HKCUREG]**update.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\update.exe
[01-HKCUREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[01-HKCUREG]**Windowsopensearch -/- C:\Documents and Settings\Administrator\Application Data\opensearchGT\opensearchgt.exe Runcmd
[01-HKCUREG]**Windowsopensearchupdate -/- C:\Documents and Settings\Administrator\Application Data\opensearchGT\opensearchgtu.exe
[01-HKCUREG]**WINDOWSTAB_UC -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe /run
[01-HKCUREG]**windowviewcon -/- C:\Documents and Settings\Administrator\Application Data\windowviewcon\windowviewconup.exe
[01-HKCUREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[01-HKCUREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[01-HKCUREG]**wsupd -/- C:\Program Files\windiscover\wsupd.exe
[01-HKCUREG]**zcnew -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**Adv_TopC -/- C:\Program Files\AdvTopC\TCSearch.exe
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**appis.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[02-HKLMREG]**appll -/- C:\Documents and Settings\Administrator\Application Data\winapp\Winapp for Windows\winapp.exe update
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**guardtam -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\tamguard.exe
[02-HKLMREG]**IETab -/- C:\Program Files\IETab\IETab.exe
[02-HKLMREG]**Inciter2006 UI -/- C:\Program Files\SoftRun\Inciter2006\ICNotify.exe -reboot
[02-HKLMREG]**KernelFaultCheck -/- C:\WINDOWS\system32\dumprep 0 -k
[02-HKLMREG]**MOUSERELEASE_UC -/- C:\Program Files\mouserelease\mouserelease_uc.exe /run
[02-HKLMREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[02-HKLMREG]**tamgrd -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TheAm.exe
[02-HKLMREG]**TheAM -/- C:\Documents and Settings\Administrator\Application Data\theam\common\bin\TAMUpdate.exe
[02-HKLMREG]**update.exe -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\update.exe
[02-HKLMREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[02-HKLMREG]**Windowsopensearch -/- C:\Documents and Settings\Administrator\Application Data\opensearchGT\opensearchgt.exe Runcmd
[02-HKLMREG]**Windowsopensearchupdate -/- C:\Documents and Settings\Administrator\Application Data\opensearchGT\opensearchgtu.exe
[02-HKLMREG]**WINDOWSTAB_UC -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe /run
[02-HKLMREG]**windowviewcon -/- C:\Documents and Settings\Administrator\Application Data\windowviewcon\windowviewconup.exe
[02-HKLMREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[02-HKLMREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[02-HKLMREG]**wsupd -/- C:\Program Files\windiscover\wsupd.exe
[02-HKLMREG]**zcnew -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[03-BHOCLSD]**IETab -/- C:\Program Files\IETab\IETab.dll -/- {B60FE1D2-2F84-42a7-AE04-03284738CC24}
[03-BHOCLSD]**N.A -/- N.A -/- {32D75746-5A7C-486C-938A-67260B2E3982}
[03-BHOCLSD]**NateSearchSafeBHO Class -/- C:\Program Files\NATEON\BIN\NateSearchSafe.dll -/- {39AA03A6-B5D9-4F47-99DF-1666A7B8D8E8}
[03-BHOCLSD]**windviewer Class -/- C:\Program Files\windviewer\windviewer.dll -/- {CC34B3C3-3904-4D0E-8035-536715B28BBA}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**btwdins -/- Bluetooth Service -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[05-SERVICE]**gupdate -/- Google 업데이트 서비스 (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google 업데이트 서비스 (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**ICService -/- Inciter Agent Control Service -/- C:\WINDOWS\InciterInstaller\ICService.exe -r
[05-SERVICE]**ismsvc32 -/- INSAFE Client 1.0 -/- C:\Program Files\insafeclient v1.1\ismsvc.exe
[05-SERVICE]**istartmanagersvc -/- Internet Start Manager -/- C:\Program Files\Internet Start Manager\istartmanagersvc.exe
[05-SERVICE]**maxboan -/- maxboan svc -/- C:\Program Files\maxboan\maxboansvc.exe
[05-SERVICE]**mrmonwqyqrsp -/- MouseRelease -/- C:\WINDOWS\mrmonwqyqrsp.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NetAccelerator -/- NetAccelerator_Service -/- C:\Program Files\FileJo\NetAccelerator.exe
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**service_filter -/- ActiveX Filter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[05-SERVICE]**spmonwqyqrsp -/- Nospell -/- C:\WINDOWS\spmonwqyqrsp.exe
[05-SERVICE]**TsService -/- TsService -/- C:\WINDOWS\system32\TsService.exe
[05-SERVICE]**WindowsDriver -/- WindowsDriver -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\system32\WindowsDriver.dll
[05-SERVICE]**windowstab_mon -/- Windows Tab Manager -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_mon.exe