프로그램분석

Code : yLULPa2gF53SlYK4Zvm/iwRJp6MYrC/va5QXdepyIStiDyod0VE9Ww==

프로세스 천국 2013. 7. 22. 18:51

[00-PROCESS]**1079 -/- C:\Users\Administrator\AppData\Roaming\1079.exe
[00-PROCESS]**10E5 -/- C:\Users\Administrator\AppData\Roaming\10E5.exe
[00-PROCESS]**118B -/- C:\Users\Administrator\AppData\Roaming\118B.exe
[00-PROCESS]**11CC -/- C:\Users\Administrator\AppData\Roaming\11CC.exe
[00-PROCESS]**1228 -/- C:\Users\Administrator\AppData\Roaming\1228.exe
[00-PROCESS]**131D -/- C:\Users\Administrator\AppData\Roaming\131D.exe
[00-PROCESS]**14D9 -/- C:\Users\Administrator\AppData\Roaming\14D9.exe
[00-PROCESS]**1679 -/- C:\Users\Administrator\AppData\Roaming\1679.exe
[00-PROCESS]**1761 -/- C:\Users\Administrator\AppData\Roaming\1761.exe
[00-PROCESS]**17CD -/- C:\Users\Administrator\AppData\Roaming\17CD.exe
[00-PROCESS]**1805 -/- C:\Users\Administrator\AppData\Roaming\1805.exe
[00-PROCESS]**1836 -/- C:\Users\Administrator\AppData\Roaming\1836.exe
[00-PROCESS]**194D -/- C:\Users\Administrator\AppData\Roaming\194D.exe
[00-PROCESS]**1A55 -/- C:\Users\Administrator\AppData\Roaming\1A55.exe
[00-PROCESS]**1AA8 -/- C:\Users\Administrator\AppData\Roaming\1AA8.exe
[00-PROCESS]**1AC9 -/- C:\Users\Administrator\AppData\Roaming\1AC9.exe
[00-PROCESS]**1AF0 -/- C:\Users\Administrator\AppData\Roaming\1AF0.exe
[00-PROCESS]**1B72 -/- C:\Users\Administrator\AppData\Roaming\1B72.exe
[00-PROCESS]**1B93 -/- C:\Users\Administrator\AppData\Roaming\1B93.exe
[00-PROCESS]**1B96 -/- C:\Users\Administrator\AppData\Roaming\1B96.exe
[00-PROCESS]**1BAC -/- C:\Users\Administrator\AppData\Roaming\1BAC.exe
[00-PROCESS]**1C6 -/- C:\Users\Administrator\AppData\Roaming\1C6.exe
[00-PROCESS]**1D98 -/- C:\Users\Administrator\AppData\Roaming\1D98.exe
[00-PROCESS]**1DB1 -/- C:\Users\Administrator\AppData\Roaming\1DB1.exe
[00-PROCESS]**20FC -/- C:\Users\Administrator\AppData\Roaming\20FC.exe
[00-PROCESS]**21BE -/- C:\Users\Administrator\AppData\Roaming\21BE.exe
[00-PROCESS]**220 -/- C:\Users\Administrator\AppData\Roaming\220.exe
[00-PROCESS]**230 -/- C:\Users\Administrator\AppData\Roaming\230.exe
[00-PROCESS]**230D -/- C:\Users\Administrator\AppData\Roaming\230D.exe
[00-PROCESS]**2382 -/- C:\Users\Administrator\AppData\Roaming\2382.exe
[00-PROCESS]**23B8 -/- C:\Users\Administrator\AppData\Roaming\23B8.exe
[00-PROCESS]**2410 -/- C:\Users\Administrator\AppData\Roaming\2410.exe
[00-PROCESS]**242E -/- C:\Users\Administrator\AppData\Roaming\242E.exe
[00-PROCESS]**2494 -/- C:\Users\Administrator\AppData\Roaming\2494.exe
[00-PROCESS]**24naq -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[00-PROCESS]**2552 -/- C:\Users\Administrator\AppData\Roaming\2552.exe
[00-PROCESS]**25ED -/- C:\Users\Administrator\AppData\Roaming\25ED.exe
[00-PROCESS]**2612 -/- C:\Users\Administrator\AppData\Roaming\2612.exe
[00-PROCESS]**261B -/- C:\Users\Administrator\AppData\Roaming\261B.exe
[00-PROCESS]**265E -/- C:\Users\Administrator\AppData\Roaming\265E.exe
[00-PROCESS]**271F -/- C:\Users\Administrator\AppData\Roaming\271F.exe
[00-PROCESS]**27EE -/- C:\Users\Administrator\AppData\Roaming\27EE.exe
[00-PROCESS]**29A4 -/- C:\Users\Administrator\AppData\Roaming\29A4.exe
[00-PROCESS]**2AEB -/- C:\Users\Administrator\AppData\Roaming\2AEB.exe
[00-PROCESS]**2B7F -/- C:\Users\Administrator\AppData\Roaming\2B7F.exe
[00-PROCESS]**2BB5 -/- C:\Users\Administrator\AppData\Roaming\2BB5.exe
[00-PROCESS]**2BC -/- C:\Users\Administrator\AppData\Roaming\2BC.exe
[00-PROCESS]**2DF7 -/- C:\Users\Administrator\AppData\Roaming\2DF7.exe
[00-PROCESS]**2E17 -/- C:\Users\Administrator\AppData\Roaming\2E17.exe
[00-PROCESS]**2EC3 -/- C:\Users\Administrator\AppData\Roaming\2EC3.exe
[00-PROCESS]**2F32 -/- C:\Users\Administrator\AppData\Roaming\2F32.exe
[00-PROCESS]**2F67 -/- C:\Users\Administrator\AppData\Roaming\2F67.exe
[00-PROCESS]**3050 -/- C:\Users\Administrator\AppData\Roaming\3050.exe
[00-PROCESS]**3157 -/- C:\Users\Administrator\AppData\Roaming\3157.exe
[00-PROCESS]**3327 -/- C:\Users\Administrator\AppData\Roaming\3327.exe
[00-PROCESS]**33E1 -/- C:\Users\Administrator\AppData\Roaming\33E1.exe
[00-PROCESS]**343 -/- C:\Users\Administrator\AppData\Roaming\343.exe
[00-PROCESS]**34BF -/- C:\Users\Administrator\AppData\Roaming\34BF.exe
[00-PROCESS]**35D3 -/- C:\Users\Administrator\AppData\Roaming\35D3.exe
[00-PROCESS]**3632 -/- C:\Users\Administrator\AppData\Roaming\3632.exe
[00-PROCESS]**37E8 -/- C:\Users\Administrator\AppData\Roaming\37E8.exe
[00-PROCESS]**3877 -/- C:\Users\Administrator\AppData\Roaming\3877.exe
[00-PROCESS]**38C2 -/- C:\Users\Administrator\AppData\Roaming\38C2.exe
[00-PROCESS]**3911 -/- C:\Users\Administrator\AppData\Roaming\3911.exe
[00-PROCESS]**39E3 -/- C:\Users\Administrator\AppData\Roaming\39E3.exe
[00-PROCESS]**3A50 -/- C:\Users\Administrator\AppData\Roaming\3A50.exe
[00-PROCESS]**3C3C -/- C:\Users\Administrator\AppData\Roaming\3C3C.exe
[00-PROCESS]**3CB1 -/- C:\Users\Administrator\AppData\Roaming\3CB1.exe
[00-PROCESS]**3E63 -/- C:\Users\Administrator\AppData\Roaming\3E63.exe
[00-PROCESS]**3E92 -/- C:\Users\Administrator\AppData\Roaming\3E92.exe
[00-PROCESS]**3ECE -/- C:\Users\Administrator\AppData\Roaming\3ECE.exe
[00-PROCESS]**3F18 -/- C:\Users\Administrator\AppData\Roaming\3F18.exe
[00-PROCESS]**406 -/- C:\Users\Administrator\AppData\Roaming\406.exe
[00-PROCESS]**40C4 -/- C:\Users\Administrator\AppData\Roaming\40C4.exe
[00-PROCESS]**40F6 -/- C:\Users\Administrator\AppData\Roaming\40F6.exe
[00-PROCESS]**4144 -/- C:\Users\Administrator\AppData\Roaming\4144.exe
[00-PROCESS]**4152 -/- C:\Users\Administrator\AppData\Roaming\4152.exe
[00-PROCESS]**4284 -/- C:\Users\Administrator\AppData\Roaming\4284.exe
[00-PROCESS]**42B4 -/- C:\Users\Administrator\AppData\Roaming\42B4.exe
[00-PROCESS]**42BA -/- C:\Users\Administrator\AppData\Roaming\42BA.exe
[00-PROCESS]**432B -/- C:\Users\Administrator\AppData\Roaming\432B.exe
[00-PROCESS]**443 -/- C:\Users\Administrator\AppData\Roaming\443.exe
[00-PROCESS]**450D -/- C:\Users\Administrator\AppData\Roaming\450D.exe
[00-PROCESS]**45E6 -/- C:\Users\Administrator\AppData\Roaming\45E6.exe
[00-PROCESS]**464B -/- C:\Users\Administrator\AppData\Roaming\464B.exe
[00-PROCESS]**467A -/- C:\Users\Administrator\AppData\Roaming\467A.exe
[00-PROCESS]**46BA -/- C:\Users\Administrator\AppData\Roaming\46BA.exe
[00-PROCESS]**470D -/- C:\Users\Administrator\AppData\Roaming\470D.exe
[00-PROCESS]**47FF -/- C:\Users\Administrator\AppData\Roaming\47FF.exe
[00-PROCESS]**4873 -/- C:\Users\Administrator\AppData\Roaming\4873.exe
[00-PROCESS]**48BD -/- C:\Users\Administrator\AppData\Roaming\48BD.exe
[00-PROCESS]**48C0 -/- C:\Users\Administrator\AppData\Roaming\48C0.exe
[00-PROCESS]**48E7 -/- C:\Users\Administrator\AppData\Roaming\48E7.exe
[00-PROCESS]**48F4 -/- C:\Users\Administrator\AppData\Roaming\48F4.exe
[00-PROCESS]**49CB -/- C:\Users\Administrator\AppData\Roaming\49CB.exe
[00-PROCESS]**4C45 -/- C:\Users\Administrator\AppData\Roaming\4C45.exe
[00-PROCESS]**4C6B -/- C:\Users\Administrator\AppData\Roaming\4C6B.exe
[00-PROCESS]**4D77 -/- C:\Users\Administrator\AppData\Roaming\4D77.exe
[00-PROCESS]**4D79 -/- C:\Users\Administrator\AppData\Roaming\4D79.exe
[00-PROCESS]**4DB5 -/- C:\Users\Administrator\AppData\Roaming\4DB5.exe
[00-PROCESS]**4E67 -/- C:\Users\Administrator\AppData\Roaming\4E67.exe
[00-PROCESS]**4E8C -/- C:\Users\Administrator\AppData\Roaming\4E8C.exe
[00-PROCESS]**4F04 -/- C:\Users\Administrator\AppData\Roaming\4F04.exe
[00-PROCESS]**4FDA -/- C:\Users\Administrator\AppData\Roaming\4FDA.exe
[00-PROCESS]**501E -/- C:\Users\Administrator\AppData\Roaming\501E.exe
[00-PROCESS]**507 -/- C:\Users\Administrator\AppData\Roaming\507.exe
[00-PROCESS]**50A4 -/- C:\Users\Administrator\AppData\Roaming\50A4.exe
[00-PROCESS]**5106 -/- C:\Users\Administrator\AppData\Roaming\5106.exe
[00-PROCESS]**5191 -/- C:\Users\Administrator\AppData\Roaming\5191.exe
[00-PROCESS]**51E2 -/- C:\Users\Administrator\AppData\Roaming\51E2.exe
[00-PROCESS]**536B -/- C:\Users\Administrator\AppData\Roaming\536B.exe
[00-PROCESS]**5428 -/- C:\Users\Administrator\AppData\Roaming\5428.exe
[00-PROCESS]**544 -/- C:\Users\Administrator\AppData\Roaming\544.exe
[00-PROCESS]**5464 -/- C:\Users\Administrator\AppData\Roaming\5464.exe
[00-PROCESS]**5477 -/- C:\Users\Administrator\AppData\Roaming\5477.exe
[00-PROCESS]**5537 -/- C:\Users\Administrator\AppData\Roaming\5537.exe
[00-PROCESS]**5571 -/- C:\Users\Administrator\AppData\Roaming\5571.exe
[00-PROCESS]**55AE -/- C:\Users\Administrator\AppData\Roaming\55AE.exe
[00-PROCESS]**55F2 -/- C:\Users\Administrator\AppData\Roaming\55F2.exe
[00-PROCESS]**56DA -/- C:\Users\Administrator\AppData\Roaming\56DA.exe
[00-PROCESS]**57DE -/- C:\Users\Administrator\AppData\Roaming\57DE.exe
[00-PROCESS]**5882 -/- C:\Users\Administrator\AppData\Roaming\5882.exe
[00-PROCESS]**5947 -/- C:\Users\Administrator\AppData\Roaming\5947.exe
[00-PROCESS]**59BA -/- C:\Users\Administrator\AppData\Roaming\59BA.exe
[00-PROCESS]**59EC -/- C:\Users\Administrator\AppData\Roaming\59EC.exe
[00-PROCESS]**5A0E -/- C:\Users\Administrator\AppData\Roaming\5A0E.exe
[00-PROCESS]**5A2E -/- C:\Users\Administrator\AppData\Roaming\5A2E.exe
[00-PROCESS]**5CB2 -/- C:\Users\Administrator\AppData\Roaming\5CB2.exe
[00-PROCESS]**5D19 -/- C:\Users\Administrator\AppData\Roaming\5D19.exe
[00-PROCESS]**5D43 -/- C:\Users\Administrator\AppData\Roaming\5D43.exe
[00-PROCESS]**5D5B -/- C:\Users\Administrator\AppData\Roaming\5D5B.exe
[00-PROCESS]**5E0F -/- C:\Users\Administrator\AppData\Roaming\5E0F.exe
[00-PROCESS]**5E38 -/- C:\Users\Administrator\AppData\Roaming\5E38.exe
[00-PROCESS]**5ED9 -/- C:\Users\Administrator\AppData\Roaming\5ED9.exe
[00-PROCESS]**5EF5 -/- C:\Users\Administrator\AppData\Roaming\5EF5.exe
[00-PROCESS]**5F4B -/- C:\Users\Administrator\AppData\Roaming\5F4B.exe
[00-PROCESS]**5FB2 -/- C:\Users\Administrator\AppData\Roaming\5FB2.exe
[00-PROCESS]**6057 -/- C:\Users\Administrator\AppData\Roaming\6057.exe
[00-PROCESS]**6094 -/- C:\Users\Administrator\AppData\Roaming\6094.exe
[00-PROCESS]**6288 -/- C:\Users\Administrator\AppData\Roaming\6288.exe
[00-PROCESS]**6292 -/- C:\Users\Administrator\AppData\Roaming\6292.exe
[00-PROCESS]**629B -/- C:\Users\Administrator\AppData\Roaming\629B.exe
[00-PROCESS]**6332 -/- C:\Users\Administrator\AppData\Roaming\6332.exe
[00-PROCESS]**6333 -/- C:\Users\Administrator\AppData\Roaming\6333.exe
[00-PROCESS]**63B9 -/- C:\Users\Administrator\AppData\Roaming\63B9.exe
[00-PROCESS]**643A -/- C:\Users\Administrator\AppData\Roaming\643A.exe
[00-PROCESS]**6448 -/- C:\Users\Administrator\AppData\Roaming\6448.exe
[00-PROCESS]**65A -/- C:\Users\Administrator\AppData\Roaming\65A.exe
[00-PROCESS]**65E5 -/- C:\Users\Administrator\AppData\Roaming\65E5.exe
[00-PROCESS]**6614 -/- C:\Users\Administrator\AppData\Roaming\6614.exe
[00-PROCESS]**66B2 -/- C:\Users\Administrator\AppData\Roaming\66B2.exe
[00-PROCESS]**66C4 -/- C:\Users\Administrator\AppData\Roaming\66C4.exe
[00-PROCESS]**6735 -/- C:\Users\Administrator\AppData\Roaming\6735.exe
[00-PROCESS]**6761 -/- C:\Users\Administrator\AppData\Roaming\6761.exe
[00-PROCESS]**677A -/- C:\Users\Administrator\AppData\Roaming\677A.exe
[00-PROCESS]**69A2 -/- C:\Users\Administrator\AppData\Roaming\69A2.exe
[00-PROCESS]**6ABE -/- C:\Users\Administrator\AppData\Roaming\6ABE.exe
[00-PROCESS]**6AD6 -/- C:\Users\Administrator\AppData\Roaming\6AD6.exe
[00-PROCESS]**6B31 -/- C:\Users\Administrator\AppData\Roaming\6B31.exe
[00-PROCESS]**6B48 -/- C:\Users\Administrator\AppData\Roaming\6B48.exe
[00-PROCESS]**6B64 -/- C:\Users\Administrator\AppData\Roaming\6B64.exe
[00-PROCESS]**6D01 -/- C:\Users\Administrator\AppData\Roaming\6D01.exe
[00-PROCESS]**6EFB -/- C:\Users\Administrator\AppData\Roaming\6EFB.exe
[00-PROCESS]**6F23 -/- C:\Users\Administrator\AppData\Roaming\6F23.exe
[00-PROCESS]**6F92 -/- C:\Users\Administrator\AppData\Roaming\6F92.exe
[00-PROCESS]**6FC7 -/- C:\Users\Administrator\AppData\Roaming\6FC7.exe
[00-PROCESS]**6FFA -/- C:\Users\Administrator\AppData\Roaming\6FFA.exe
[00-PROCESS]**7009 -/- C:\Users\Administrator\AppData\Roaming\7009.exe
[00-PROCESS]**70F4 -/- C:\Users\Administrator\AppData\Roaming\70F4.exe
[00-PROCESS]**72CC -/- C:\Users\Administrator\AppData\Roaming\72CC.exe
[00-PROCESS]**7354 -/- C:\Users\Administrator\AppData\Roaming\7354.exe
[00-PROCESS]**7355 -/- C:\Users\Administrator\AppData\Roaming\7355.exe
[00-PROCESS]**739F -/- C:\Users\Administrator\AppData\Roaming\739F.exe
[00-PROCESS]**73A0 -/- C:\Users\Administrator\AppData\Roaming\73A0.exe
[00-PROCESS]**73CA -/- C:\Users\Administrator\AppData\Roaming\73CA.exe
[00-PROCESS]**741F -/- C:\Users\Administrator\AppData\Roaming\741F.exe
[00-PROCESS]**74A3 -/- C:\Users\Administrator\AppData\Roaming\74A3.exe
[00-PROCESS]**74A4 -/- C:\Users\Administrator\AppData\Roaming\74A4.exe
[00-PROCESS]**74FC -/- C:\Users\Administrator\AppData\Roaming\74FC.exe
[00-PROCESS]**750 -/- C:\Users\Administrator\AppData\Roaming\750.exe
[00-PROCESS]**750B -/- C:\Users\Administrator\AppData\Roaming\750B.exe
[00-PROCESS]**754C -/- C:\Users\Administrator\AppData\Roaming\754C.exe
[00-PROCESS]**7569 -/- C:\Users\Administrator\AppData\Roaming\7569.exe
[00-PROCESS]**75B4 -/- C:\Users\Administrator\AppData\Roaming\75B4.exe
[00-PROCESS]**76EA -/- C:\Users\Administrator\AppData\Roaming\76EA.exe
[00-PROCESS]**76EB -/- C:\Users\Administrator\AppData\Roaming\76EB.exe
[00-PROCESS]**76F2 -/- C:\Users\Administrator\AppData\Roaming\76F2.exe
[00-PROCESS]**782D -/- C:\Users\Administrator\AppData\Roaming\782D.exe
[00-PROCESS]**78A2 -/- C:\Users\Administrator\AppData\Roaming\78A2.exe
[00-PROCESS]**791F -/- C:\Users\Administrator\AppData\Roaming\791F.exe
[00-PROCESS]**794F -/- C:\Users\Administrator\AppData\Roaming\794F.exe
[00-PROCESS]**7A72 -/- C:\Users\Administrator\AppData\Roaming\7A72.exe
[00-PROCESS]**7A88 -/- C:\Users\Administrator\AppData\Roaming\7A88.exe
[00-PROCESS]**7A8B -/- C:\Users\Administrator\AppData\Roaming\7A8B.exe
[00-PROCESS]**7C24 -/- C:\Users\Administrator\AppData\Roaming\7C24.exe
[00-PROCESS]**7D25 -/- C:\Users\Administrator\AppData\Roaming\7D25.exe
[00-PROCESS]**7D4C -/- C:\Users\Administrator\AppData\Roaming\7D4C.exe
[00-PROCESS]**7DA1 -/- C:\Users\Administrator\AppData\Roaming\7DA1.exe
[00-PROCESS]**7E99 -/- C:\Users\Administrator\AppData\Roaming\7E99.exe
[00-PROCESS]**7EB1 -/- C:\Users\Administrator\AppData\Roaming\7EB1.exe
[00-PROCESS]**7FAE -/- C:\Users\Administrator\AppData\Roaming\7FAE.exe
[00-PROCESS]**7FF9 -/- C:\Users\Administrator\AppData\Roaming\7FF9.exe
[00-PROCESS]**8035 -/- C:\Users\Administrator\AppData\Roaming\8035.exe
[00-PROCESS]**8122 -/- C:\Users\Administrator\AppData\Roaming\8122.exe
[00-PROCESS]**81D0 -/- C:\Users\Administrator\AppData\Roaming\81D0.exe
[00-PROCESS]**81D9 -/- C:\Users\Administrator\AppData\Roaming\81D9.exe
[00-PROCESS]**8224 -/- C:\Users\Administrator\AppData\Roaming\8224.exe
[00-PROCESS]**82B3 -/- C:\Users\Administrator\AppData\Roaming\82B3.exe
[00-PROCESS]**82B9 -/- C:\Users\Administrator\AppData\Roaming\82B9.exe
[00-PROCESS]**8315 -/- C:\Users\Administrator\AppData\Roaming\8315.exe
[00-PROCESS]**8412 -/- C:\Users\Administrator\AppData\Roaming\8412.exe
[00-PROCESS]**842A -/- C:\Users\Administrator\AppData\Roaming\842A.exe
[00-PROCESS]**8501 -/- C:\Users\Administrator\AppData\Roaming\8501.exe
[00-PROCESS]**868F -/- C:\Users\Administrator\AppData\Roaming\868F.exe
[00-PROCESS]**87D7 -/- C:\Users\Administrator\AppData\Roaming\87D7.exe
[00-PROCESS]**8A68 -/- C:\Users\Administrator\AppData\Roaming\8A68.exe
[00-PROCESS]**8AC5 -/- C:\Users\Administrator\AppData\Roaming\8AC5.exe
[00-PROCESS]**8B2A -/- C:\Users\Administrator\AppData\Roaming\8B2A.exe
[00-PROCESS]**8D6 -/- C:\Users\Administrator\AppData\Roaming\8D6.exe
[00-PROCESS]**90A0 -/- C:\Users\Administrator\AppData\Roaming\90A0.exe
[00-PROCESS]**937E -/- C:\Users\Administrator\AppData\Roaming\937E.exe
[00-PROCESS]**93D4 -/- C:\Users\Administrator\AppData\Roaming\93D4.exe
[00-PROCESS]**9440 -/- C:\Users\Administrator\AppData\Roaming\9440.exe
[00-PROCESS]**947E -/- C:\Users\Administrator\AppData\Roaming\947E.exe
[00-PROCESS]**954B -/- C:\Users\Administrator\AppData\Roaming\954B.exe
[00-PROCESS]**966E -/- C:\Users\Administrator\AppData\Roaming\966E.exe
[00-PROCESS]**9CAC -/- C:\Users\Administrator\AppData\Roaming\9CAC.exe
[00-PROCESS]**9D26 -/- C:\Users\Administrator\AppData\Roaming\9D26.exe
[00-PROCESS]**9D40 -/- C:\Users\Administrator\AppData\Roaming\9D40.exe
[00-PROCESS]**9E7A -/- C:\Users\Administrator\AppData\Roaming\9E7A.exe
[00-PROCESS]**9E7D -/- C:\Users\Administrator\AppData\Roaming\9E7D.exe
[00-PROCESS]**9EB0 -/- C:\Users\Administrator\AppData\Roaming\9EB0.exe
[00-PROCESS]**9EBE -/- C:\Users\Administrator\AppData\Roaming\9EBE.exe
[00-PROCESS]**A0D7 -/- C:\Users\Administrator\AppData\Roaming\A0D7.exe
[00-PROCESS]**A49A -/- C:\Users\Administrator\AppData\Roaming\A49A.exe
[00-PROCESS]**A5F7 -/- C:\Users\Administrator\AppData\Roaming\A5F7.exe
[00-PROCESS]**A64B -/- C:\Users\Administrator\AppData\Roaming\A64B.exe
[00-PROCESS]**A73A -/- C:\Users\Administrator\AppData\Roaming\A73A.exe
[00-PROCESS]**AC42 -/- C:\Users\Administrator\AppData\Roaming\AC42.exe
[00-PROCESS]**AC78 -/- C:\Users\Administrator\AppData\Roaming\AC78.exe
[00-PROCESS]**AD38 -/- C:\Users\Administrator\AppData\Roaming\AD38.exe
[00-PROCESS]**AE56 -/- C:\Users\Administrator\AppData\Roaming\AE56.exe
[00-PROCESS]**AF61 -/- C:\Users\Administrator\AppData\Roaming\AF61.exe
[00-PROCESS]**AFB4 -/- C:\Users\Administrator\AppData\Roaming\AFB4.exe
[00-PROCESS]**aspnet_state -/- C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
[00-PROCESS]**B2F4 -/- C:\Users\Administrator\AppData\Roaming\B2F4.exe
[00-PROCESS]**B30 -/- C:\Users\Administrator\AppData\Roaming\B30.exe
[00-PROCESS]**B495 -/- C:\Users\Administrator\AppData\Roaming\B495.exe
[00-PROCESS]**B4AD -/- C:\Users\Administrator\AppData\Roaming\B4AD.exe
[00-PROCESS]**B6D0 -/- C:\Users\Administrator\AppData\Roaming\B6D0.exe
[00-PROCESS]**B70B -/- C:\Users\Administrator\AppData\Roaming\B70B.exe
[00-PROCESS]**B7F0 -/- C:\Users\Administrator\AppData\Roaming\B7F0.exe
[00-PROCESS]**B886 -/- C:\Users\Administrator\AppData\Roaming\B886.exe
[00-PROCESS]**B9D7 -/- C:\Users\Administrator\AppData\Roaming\B9D7.exe
[00-PROCESS]**BB2D -/- C:\Users\Administrator\AppData\Roaming\BB2D.exe
[00-PROCESS]**BCD1 -/- C:\Users\Administrator\AppData\Roaming\BCD1.exe
[00-PROCESS]**BD18 -/- C:\Users\Administrator\AppData\Roaming\BD18.exe
[00-PROCESS]**BEFC -/- C:\Users\Administrator\AppData\Roaming\BEFC.exe
[00-PROCESS]**C02C -/- C:\Users\Administrator\AppData\Roaming\C02C.exe
[00-PROCESS]**C03E -/- C:\Users\Administrator\AppData\Roaming\C03E.exe
[00-PROCESS]**C13D -/- C:\Users\Administrator\AppData\Roaming\C13D.exe
[00-PROCESS]**c2gbsf9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-95590\c2gbsf9.exe
[00-PROCESS]**C443 -/- C:\Users\Administrator\AppData\Roaming\C443.exe
[00-PROCESS]**C4EE -/- C:\Users\Administrator\AppData\Roaming\C4EE.exe
[00-PROCESS]**C5 -/- C:\Users\Administrator\AppData\Roaming\C5.exe
[00-PROCESS]**C5D1 -/- C:\Users\Administrator\AppData\Roaming\C5D1.exe
[00-PROCESS]**C796 -/- C:\Users\Administrator\AppData\Roaming\C796.exe
[00-PROCESS]**C7CE -/- C:\Users\Administrator\AppData\Roaming\C7CE.exe
[00-PROCESS]**C8A7 -/- C:\Users\Administrator\AppData\Roaming\C8A7.exe
[00-PROCESS]**cafef9 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[00-PROCESS]**CD0B -/- C:\Users\Administrator\AppData\Roaming\CD0B.exe
[00-PROCESS]**CD77 -/- C:\Users\Administrator\AppData\Roaming\CD77.exe
[00-PROCESS]**CE93 -/- C:\Users\Administrator\AppData\Roaming\CE93.exe
[00-PROCESS]**CF9F -/- C:\Users\Administrator\AppData\Roaming\CF9F.exe
[00-PROCESS]**cltmng -/- C:\Users\Administrator\AppData\Roaming\SearchProtect\bin\cltmng.exe
[00-PROCESS]**D04E -/- C:\Users\Administrator\AppData\Roaming\D04E.exe
[00-PROCESS]**D095 -/- C:\Users\Administrator\AppData\Roaming\D095.exe
[00-PROCESS]**D168 -/- C:\Users\Administrator\AppData\Roaming\D168.exe
[00-PROCESS]**D1DE -/- C:\Users\Administrator\AppData\Roaming\D1DE.exe
[00-PROCESS]**D5E3 -/- C:\Users\Administrator\AppData\Roaming\D5E3.exe
[00-PROCESS]**D600 -/- C:\Users\Administrator\AppData\Roaming\D600.exe
[00-PROCESS]**D838 -/- C:\Users\Administrator\AppData\Roaming\D838.exe
[00-PROCESS]**D883 -/- C:\Users\Administrator\AppData\Roaming\D883.exe
[00-PROCESS]**D945 -/- C:\Users\Administrator\AppData\Roaming\D945.exe
[00-PROCESS]**D9CB -/- C:\Users\Administrator\AppData\Roaming\D9CB.exe
[00-PROCESS]**DB97 -/- C:\Users\Administrator\AppData\Roaming\DB97.exe
[00-PROCESS]**DD84 -/- C:\Users\Administrator\AppData\Roaming\DD84.exe
[00-PROCESS]**DE6D -/- C:\Users\Administrator\AppData\Roaming\DE6D.exe
[00-PROCESS]**DE7 -/- C:\Users\Administrator\AppData\Roaming\DE7.exe
[00-PROCESS]**DEB8 -/- C:\Users\Administrator\AppData\Roaming\DEB8.exe
[00-PROCESS]**E09F -/- C:\Users\Administrator\AppData\Roaming\E09F.exe
[00-PROCESS]**E0D -/- C:\Users\Administrator\AppData\Roaming\E0D.exe
[00-PROCESS]**E18C -/- C:\Users\Administrator\AppData\Roaming\E18C.exe
[00-PROCESS]**E29A -/- C:\Users\Administrator\AppData\Roaming\E29A.exe
[00-PROCESS]**E2AE -/- C:\Users\Administrator\AppData\Roaming\E2AE.exe
[00-PROCESS]**E633 -/- C:\Users\Administrator\AppData\Roaming\E633.exe
[00-PROCESS]**E66A -/- C:\Users\Administrator\AppData\Roaming\E66A.exe
[00-PROCESS]**E6EB -/- C:\Users\Administrator\AppData\Roaming\E6EB.exe
[00-PROCESS]**EA15 -/- C:\Users\Administrator\AppData\Roaming\EA15.exe
[00-PROCESS]**EBA9 -/- C:\Users\Administrator\AppData\Roaming\EBA9.exe
[00-PROCESS]**EC12 -/- C:\Users\Administrator\AppData\Roaming\EC12.exe
[00-PROCESS]**ED84 -/- C:\Users\Administrator\AppData\Roaming\ED84.exe
[00-PROCESS]**EEA6 -/- C:\Users\Administrator\AppData\Roaming\EEA6.exe
[00-PROCESS]**explorer -/- C:\windows\explorer.exe
[00-PROCESS]**F1BA -/- C:\Users\Administrator\AppData\Roaming\F1BA.exe
[00-PROCESS]**F3B7 -/- C:\Users\Administrator\AppData\Roaming\F3B7.exe
[00-PROCESS]**F527 -/- C:\Users\Administrator\AppData\Roaming\F527.exe
[00-PROCESS]**F7D3 -/- C:\Users\Administrator\AppData\Roaming\F7D3.exe
[00-PROCESS]**FacebookUpdate -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe
[00-PROCESS]**FC4F -/- C:\Users\Administrator\AppData\Roaming\FC4F.exe
[00-PROCESS]**FCB4 -/- C:\Users\Administrator\AppData\Roaming\FCB4.exe
[00-PROCESS]**GoogleUpdate -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe
[00-PROCESS]**ibsvc -/- C:\ProgramData\IBUpdaterService\ibsvc.exe
[00-PROCESS]**infocard -/- C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**mscorsvw -/- C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**PresentationFontCache -/- C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**proxzy109 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-10259\proxzy109.exe
[00-PROCESS]**proxzy12 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17251\proxzy12.exe
[00-PROCESS]**proxzy13 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17253\proxzy13.exe
[00-PROCESS]**proxzy14 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17254\proxzy14.exe
[00-PROCESS]**proxzy15 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17255\proxzy15.exe
[00-PROCESS]**proxzy16 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17256\proxzy16.exe
[00-PROCESS]**proxzy17 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17257\proxzy17.exe
[00-PROCESS]**proxzy18 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17258\proxzy18.exe
[00-PROCESS]**proxzy19 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17259\proxzy19.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[00-PROCESS]**TrustedInstaller -/- C:\windows\servicing\TrustedInstaller.exe
[00-PROCESS]**YontooDesktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[01-HKCUREG]**2gbs29dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-95590\c2gbsf9.exe
[01-HKCUREG]**3ca19949e489926be70aff0451e68868 -/- C:\Users\Administrator\AppData\Local\Temp\Win8RT.scr ..
[01-HKCUREG]**ca40229dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[01-HKCUREG]**f404allinonez -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[01-HKCUREG]**f404allinonezQU -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[01-HKCUREG]**f404thzoHSYms -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[01-HKCUREG]**f40hgd1mc -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[01-HKCUREG]**f40hgd1mcX -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[01-HKCUREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[01-HKCUREG]**Ggauaa -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ggauaa.exe
[01-HKCUREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**Ohauai -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ohauai.exe
[01-HKCUREG]**proxzy0209 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-10259\proxzy109.exe
[01-HKCUREG]**proxzy022 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17251\proxzy12.exe
[01-HKCUREG]**proxzy023 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17253\proxzy13.exe
[01-HKCUREG]**proxzy024 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17254\proxzy14.exe
[01-HKCUREG]**proxzy025 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17255\proxzy15.exe
[01-HKCUREG]**proxzy026 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17256\proxzy16.exe
[01-HKCUREG]**proxzy027 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17257\proxzy17.exe
[01-HKCUREG]**proxzy028 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17258\proxzy18.exe
[01-HKCUREG]**proxzy029 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17259\proxzy19.exe
[01-HKCUREG]**s300thzoHSYms -/- C:\Users\Administrator\AppData\Roaming\IEbrowse.scr
[01-HKCUREG]**s30allinonez -/- C:\Users\Administrator\AppData\Roaming\IEbrowse.scr
[01-HKCUREG]**Screen Saver Pro 3.1 -/- C:\Users\Administrator\AppData\Roaming\ScreenSaverPro.scr
[01-HKCUREG]**SearchProtect -/- C:\Users\Administrator\AppData\Roaming\SearchProtect\bin\cltmng.exe
[01-HKCUREG]**t4q -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[01-HKCUREG]**Tgauan -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Tgauan.exe
[01-HKCUREG]**uTorrent -/- C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe  /MINIMIZED
[01-HKCUREG]**Yahoo Messsenger -/- C:\Users\Administrator\AppData\Roaming\support\svchost.exe
[01-HKCUREG]**Yontoo Desktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[02-HKLMREG]**2gbs29dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-95590\c2gbsf9.exe
[02-HKLMREG]**3ca19949e489926be70aff0451e68868 -/- C:\Users\Administrator\AppData\Local\Temp\Win8RT.scr ..
[02-HKLMREG]**ca40229dd -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-15555590\cafef9.exe
[02-HKLMREG]**f404allinonez -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[02-HKLMREG]**f404allinonezQU -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[02-HKLMREG]**f404thzoHSYms -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[02-HKLMREG]**f40hgd1mc -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[02-HKLMREG]**f40hgd1mcX -/- C:\Users\Administrator\AppData\Roaming\IEupdate.scr
[02-HKLMREG]**Facebook Update -/- C:\Users\Administrator\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
[02-HKLMREG]**Ggauaa -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ggauaa.exe
[02-HKLMREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**Ohauai -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Ohauai.exe
[02-HKLMREG]**proxzy0209 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-10259\proxzy109.exe
[02-HKLMREG]**proxzy022 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17251\proxzy12.exe
[02-HKLMREG]**proxzy023 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17253\proxzy13.exe
[02-HKLMREG]**proxzy024 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17254\proxzy14.exe
[02-HKLMREG]**proxzy025 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17255\proxzy15.exe
[02-HKLMREG]**proxzy026 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17256\proxzy16.exe
[02-HKLMREG]**proxzy027 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17257\proxzy17.exe
[02-HKLMREG]**proxzy028 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17258\proxzy18.exe
[02-HKLMREG]**proxzy029 -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-17259\proxzy19.exe
[02-HKLMREG]**s300thzoHSYms -/- C:\Users\Administrator\AppData\Roaming\IEbrowse.scr
[02-HKLMREG]**s30allinonez -/- C:\Users\Administrator\AppData\Roaming\IEbrowse.scr
[02-HKLMREG]**Screen Saver Pro 3.1 -/- C:\Users\Administrator\AppData\Roaming\ScreenSaverPro.scr
[02-HKLMREG]**SearchProtect -/- C:\Users\Administrator\AppData\Roaming\SearchProtect\bin\cltmng.exe
[02-HKLMREG]**t4q -/- C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe
[02-HKLMREG]**Tgauan -/- C:\Users\Administrator\AppData\Roaming\Microsoft\Tgauan.exe
[02-HKLMREG]**uTorrent -/- C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe  /MINIMIZED
[02-HKLMREG]**Yahoo Messsenger -/- C:\Users\Administrator\AppData\Roaming\support\svchost.exe
[02-HKLMREG]**Yontoo Desktop -/- C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**Avira SearchFree Toolbar plus Web Protection -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[03-BHOCLSD]**BBRowsE2savve -/- C:\ProgramData\BBRowsE2savve\51795e8c4ccad.dll -/- {E022782D-7AA6-8F96-55F5-4F0E7895DC97}
[03-BHOCLSD]**BirowwsyE2savee -/- C:\ProgramData\BirowwsyE2savee\5152de33274de.dll -/- {1BEBBB7A-D4EC-5EBB-CF85-BFE0768C4508}
[03-BHOCLSD]**caOntuinueattousavve -/- C:\ProgramData\caOntuinueattousavve\51a19c967b46d.dll -/- {73D6B2A3-0494-70F4-6FC6-E77144E09A7A}
[03-BHOCLSD]**coontInuueatosAivee -/- C:\ProgramData\coontInuueatosAivee\51a1a15fe56c0.dll -/- {5F187143-736A-304B-ADAB-EC47CC975555}
[03-BHOCLSD]**coontInuueatosAivee -/- C:\ProgramData\coontInuueatosAivee\51a1a5c835274.dll -/- {BA06F121-E45C-9DAD-7C71-9DE6CF2A6701}
[03-BHOCLSD]**Expat Shield Class -/- C:\Program Files\Expat Shield\HssIE\ExpatIE.dll -/- {3706EE7C-3CAD-445D-8A43-03EBC3B75908}
[03-BHOCLSD]**Expat Shield Class -/- C:\Program Files\Expat Shield\HssIE\ExpatIE_64.dll -/- {3706EE7C-3CAD-445D-8A43-03EBC3B75908}
[03-BHOCLSD]**express-files Toolbar -/- C:\Program Files\express-files\prxtbexpr.dll -/- {88ac3cb6-596b-4217-964c-b6757ef9602d}
[03-BHOCLSD]**FilterBHO Class -/- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll -/- {E33CF602-D945-461A-83F0-819F76A199F8}
[03-BHOCLSD]**FilterBHO Class -/- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll -/- {E33CF602-D945-461A-83F0-819F76A199F8}
[03-BHOCLSD]**Görsel favoriler -/- C:\Program Files\Yandex\FastDial\fastdial.dll -/- {D5FEC983-01DB-414a-9456-AF95AC9ED7B5}
[03-BHOCLSD]**hosts -/- C:\Program Files\hosts\hosts-bho.dll -/- {11111111-1111-1111-1111-110311531182}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**IDM integration (IDMIEHlprObj Class) -/- C:\Program Files\Internet Download Manager\IDMIECC64.dll -/- {0055C089-8582-441B-A0BF-17B458C2A3A8}
[03-BHOCLSD]**IEVkbdBHO Class -/- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll -/- {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}
[03-BHOCLSD]**IEVkbdBHO Class -/- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll -/- {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Octh Class -/- C:\Program Files\Orbitdownloader\orbitcth.dll -/- {000123B4-9B42-4900-B3F7-F4B073EFC214}
[03-BHOCLSD]**safE syavve -/- C:\ProgramData\safE syavve\51c70db22654a.dll -/- {5B394305-A840-2F7E-84D9-BA21F47DBBB6}
[03-BHOCLSD]**scriptproxy -/- C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130717181242.dll -/- {7DB2D5A0-7241-4E79-B68D-6309F01C5231}
[03-BHOCLSD]**SEarch-NeuWTaab -/- C:\ProgramData\SEarch-NeuWTaab\51a1a61f6f336.dll -/- {80A33469-485E-872F-7C17-F06328CC3BDD}
[03-BHOCLSD]**SearchNewTab -/- C:\ProgramData\SearchNewTab\51795eb079c89.dll -/- {CAEA1C0E-70D2-99D6-204F-8007088127C3}
[03-BHOCLSD]**SearchNewTab -/- C:\ProgramData\SearchNewTab\51795fe464889.dll -/- {B846CBE1-3AA6-ECBE-1FEC-3A9670CB07D4}
[03-BHOCLSD]**Shopping Assistant Plugin -/- C:\Program Files\PriceGong\2.6.4\PriceGongIE.dll -/- {1631550F-191D-4826-B069-D9439253D926}
[03-BHOCLSD]**Siearcch-NNewTab -/- C:\ProgramData\Siearcch-NNewTab\51c7190597d0d.dll -/- {BD77DD37-A6DA-5C1E-D025-024EA226DD84}
[03-BHOCLSD]**Skype add-on for Internet Explorer -/- C:\Program Files\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll -/- {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
[03-BHOCLSD]**Skype Browser Helper -/- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll -/- {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
[03-BHOCLSD]**Smiley Bar for Facebook -/- C:\Program Files\Smiley Bar for Facebook\ScriptHost.dll -/- {4723AAA8-B2F9-4CC1-9E60-190976DB1FA4}
[03-BHOCLSD]**Speed Analysis 2 -/- C:\Program Files\Speed Analysis 2\ScriptHost.dll -/- {18DBB6CE-3148-4FEC-B481-103CB3290427}
[03-BHOCLSD]**Speed Analysis Plus -/- C:\Program Files\Speed Analysis Plus\ScriptHost.dll -/- {8582B176-B96B-4EA3-AD69-8F51C8EB514C}
[03-BHOCLSD]**Windows Live ID Oturum Açma Yardım Aracı -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[03-BHOCLSD]**Windows Live ID Sign-in Helper -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[03-BHOCLSD]**Yontoo -/- C:\Program Files\Yontoo\YontooIEClient.dll -/- {FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
[04-TOOLBAR]**Avira SearchFree Toolbar plus Web Protection -/- C:\Program Files\Ask.com\GenericAskToolbar.dll -/- {D4027C7F-154A-4066-A1AD-4243D8127440}
[04-TOOLBAR]**express-files Toolbar -/- C:\Program Files\express-files\prxtbexpr.dll -/- {88ac3cb6-596b-4217-964c-b6757ef9602d}
[04-TOOLBAR]**Grab Pro -/- C:\Program Files\Orbitdownloader\GrabPro.dll -/- {C55BBCD6-41AD-48AD-9953-3609C48EACC7}
[04-TOOLBAR]**My Toolbar -/- C:\Program Files\My Toolbar\ATBPToolbar.1.0.dll -/- {EA582743-9076-4178-9AA6-7393FDF4D5CE}
[04-TOOLBAR]**Yandex Elements -/- C:\Program Files\Yandex\Elements\bartab.dll -/- {91397D20-1446-11D4-8AF4-0040CA1127B6}
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AMPPALR3 -/- Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service -/- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
[05-SERVICE]**AntiVirSchedulerService -/- Avira Scheduler -/- C:\Program Files\Avira\AntiVir Desktop\sched.exe
[05-SERVICE]**AntiVirWebService -/- Avira Web Protection -/- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
[05-SERVICE]**AVP -/- Kaspersky Koruma Hizmeti -/- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe -r
[05-SERVICE]**Bluetooth Device Monitor -/- Bluetooth Device Monitor -/- C:\Program Files\Intel\Bluetooth\devmonsrv.exe
[05-SERVICE]**Bluetooth Media Service -/- Bluetooth Media Service -/- C:\Program Files\Intel\Bluetooth\mediasrv.exe
[05-SERVICE]**Bluetooth OBEX Service -/- Bluetooth OBEX Service -/- C:\Program Files\Intel\Bluetooth\obexsrv.exe
[05-SERVICE]**BTHSSecurityMgr -/- Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service -/- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
[05-SERVICE]**CltMngSvc -/- Search Protect by Conduit Updater -/- C:\Program Files\SearchProtect\bin\CltMngSvc.exe
[05-SERVICE]**EvtEng -/- Intel(R) PROSet/Wireless Event Log -/- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
[05-SERVICE]**ExpatShieldService -/- Expat Shield Service -/- C:\Program Files\Expat Shield\bin\openvpnas.exe
[05-SERVICE]**ExpatSrv -/- Expat Shield Routing Service -/- C:\Program Files\Expat Shield\HssWPR\hsssrv.exe
[05-SERVICE]**ExpatTrayService -/- Expat Shield Tray Service -/- C:\Program Files\Expat Shield\bin\ExpatTrayService.EXE
[05-SERVICE]**ExpatWd -/- Expat Shield Monitoring Service -/- C:\Program Files\Expat Shield\bin\hsswd.exe -product Expat
[05-SERVICE]**gupdate -/- Google Güncelleme Hizmeti (gupdate) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- Google Güncelleme Hizmeti (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**IAStorDataMgrSvc -/- Intel(R) Rapid Storage Technology -/- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
[05-SERVICE]**IBUpdaterService -/- Updater Service -/- C:\ProgramData\IBUpdaterService\ibsvc.exe
[05-SERVICE]**IDriverT -/- InstallDriver Table Manager -/- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
[05-SERVICE]**lmhosts -/- TCP/IP NetBIOS Yardımcısı -/- C:\windows\system32\svchost.exe -/- C:\windows\System32\lltdsvc.dll
[05-SERVICE]**LMS -/- Intel(R) Management and Security Application Local Management Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**McAWFwk -/- McAfee Activation Service -/- c:\PROGRA~1\mcafee\msc\mcawfwk.exe
[05-SERVICE]**McMPFSvc -/- McAfee Personal Firewall Service -/- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
[05-SERVICE]**mcmscsvc -/- McAfee Services -/- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
[05-SERVICE]**McNASvc -/- McAfee Network Agent -/- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
[05-SERVICE]**McOobeSv -/- McAfee OOBE Service -/- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
[05-SERVICE]**McProxy -/- McAfee Proxy Service -/- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
[05-SERVICE]**McShield -/- McAfee McShield -/- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
[05-SERVICE]**mfefire -/- McAfee Firewall Core Service -/- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
[05-SERVICE]**mfevtp -/- McAfee Validation Trust Protection Service -/- C:\Windows\system32\mfevtps.exe
[05-SERVICE]**MSK80Service -/- McAfee Anti-Spam Service -/- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
[05-SERVICE]**MyWiFiDHCPDNS -/- Wireless PAN DHCP Server -/- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
[05-SERVICE]**NetMsmqActivator -/- Net.Msmq Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe -NetMsmqActivator
[05-SERVICE]**NetPipeActivator -/- Net.Pipe Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpActivator -/- Net.Tcp Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**NlaSvc -/- Ağ Konumu Tanıma -/- C:\windows\System32\svchost.exe
[05-SERVICE]**nsi -/- Ağ Depo Arabirimi Hizmeti -/- C:\windows\system32\svchost.exe
[05-SERVICE]**NVSvc -/- NVIDIA Driver Helper Service -/- C:\windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- NVIDIA Update Service Daemon -/- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**PCToolsSSDMonitorSvc -/- PC Tools Startup and Shutdown Monitor service -/- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
[05-SERVICE]**PerfHost -/- Performans Sayacı DLLsi Ana Bilgisayarı -/- C:\windows\system32\perfhost.exe
[05-SERVICE]**RegSrvc -/- Intel(R) PROSet/Wireless Registry Service -/- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
[05-SERVICE]**RoxMediaDB12OEM -/- RoxMediaDB12OEM -/- c:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe
[05-SERVICE]**RoxWatch12 -/- Roxio Hard Drive Watcher 12 -/- c:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe
[05-SERVICE]**SftService -/- SoftThinks Agent Service -/- C:\Program Files\Dell DataSafe Local Backup\sftservice.EXE
[05-SERVICE]**Skype C2C Service -/- Skype C2C Service -/- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
[05-SERVICE]**SkypeUpdate -/- Skype Updater -/- C:\Program Files\Skype\Updater\Updater.exe
[05-SERVICE]**Sony PC Companion -/- Sony PC Companion -/- C:\Program Files\Sony\Sony PC Companion\PCCService.exe
[05-SERVICE]**Steam Client Service -/- Steam Client Service -/- C:\Program Files\Common Files\Steam\SteamService.exe
[05-SERVICE]**Stereo Service -/- NVIDIA Stereoscopic 3D Driver Service -/- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
[05-SERVICE]**stllssvr -/- stllssvr -/- c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
[05-SERVICE]**TurboBoost -/- Intel(R) Turbo Boost Technology Monitor 2.0 -/- C:\Program Files\Intel\TurboBoost\TurboBoost.exe
[05-SERVICE]**UNS -/- Intel(R) Management and Security Application User Notification Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[05-SERVICE]**wlcrasvc -/- Windows Live Mesh remote connections service -/- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
[05-SERVICE]**wlidsvc -/- Windows Live ID Sign-in Assistant -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[05-SERVICE]**WTGService -/- WTGService -/- C:\Program Files\BarcelonaCM\WTGService.exe
[05-SERVICE]**Yontoo Desktop Updater -/- Yontoo Desktop Updater -/- C:\Program Files\Yontoo\Y2Desktop.Updater.exe C:\Users\Administrator\AppData\Roaming\Yontoo\YontooDesktop.exe