프로그램분석

Code : fYvMxqHxvG7Q29W2ccmdYMfCOg8RTBIarAyUYTxb5faMHQhCc9UZVA==

프로세스 천국 2013. 7. 30. 13:37

[00-PROCESS]**AccuDown -/- C:\Program Files\Accuzone\AccuMeetV2\AccuDown.exe
[00-PROCESS]**AccuMeet -/- C:\Program Files\Accuzone\AccuMeetV2\AccuMeet.exe
[00-PROCESS]**alg -/- C:\WINDOWS\System32\alg.exe
[00-PROCESS]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
[00-PROCESS]**BatteryManager -/- C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
[00-PROCESS]**bcmwltry -/- C:\WINDOWS\System32\bcmwltry.exe
[00-PROCESS]**BTSTAC~1 -/- C:\Program Files\WIDCOMM\Bluetooth Software\BTSTAC~1.EXE
[00-PROCESS]**BTTray -/- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[00-PROCESS]**btwdins -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[00-PROCESS]**cisvc -/- C:\WINDOWS\system32\cisvc.exe
[00-PROCESS]**clipsrv -/- C:\WINDOWS\system32\clipsrv.exe
[00-PROCESS]**ctfmon -/- C:\WINDOWS\system32\ctfmon.exe
[00-PROCESS]**dllhost -/- C:\WINDOWS\system32\dllhost.exe
[00-PROCESS]**dmadmin -/- C:\WINDOWS\System32\dmadmin.exe
[00-PROCESS]**Explorer -/- C:\WINDOWS\Explorer.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**imapi -/- C:\WINDOWS\system32\imapi.exe
[00-PROCESS]**IMJPMIG -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE
[00-PROCESS]**IMKRMIG -/- C:\Program Files\Common Files\Microsoft Shared\IME12\IMEKR\IMKRMIG.EXE
[00-PROCESS]**infocard -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**InstallFilterService -/- C:\Program Files\STMicroelectronics\Accelerometer\InstallFilterService.exe
[00-PROCESS]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[00-PROCESS]**locator -/- C:\WINDOWS\system32\locator.exe
[00-PROCESS]**lsass -/- C:\WINDOWS\system32\lsass.exe
[00-PROCESS]**mnmsrvc -/- C:\WINDOWS\system32\mnmsrvc.exe
[00-PROCESS]**mscorsvw -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\WINDOWS\system32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\WINDOWS\system32\msiexec.exe
[00-PROCESS]**NDriveSVC -/- C:\Program Files\Naver\NaverNDrive\NDriveSVC.exe
[00-PROCESS]**netdde -/- C:\WINDOWS\system32\netdde.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[00-PROCESS]**nsCatCom -/- C:\Program Files\Kyocera\FileUtility\nsCatCom.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PaPd -/- C:\Program Files\AhnLab\APC2\Policy Agent\PaPd.exe
[00-PROCESS]**pasvc -/- C:\Program Files\AhnLab\APC2\Policy Agent\pasvc.exe
[00-PROCESS]**paTray -/- C:\Program Files\AhnLab\APC2\Policy Agent\paTray.exe
[00-PROCESS]**Pranczo -/- C:\Documents and Settings\Administrator\Application Data\Pranczo\Pranczo.exe
[00-PROCESS]**PranczoSvr -/- C:\Documents and Settings\Administrator\Application Data\Pranczo\PranczoSvr.exe
[00-PROCESS]**PresentationFontCache -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**rpcnet -/- C:\WINDOWS\system32\rpcnet.exe
[00-PROCESS]**rsvp -/- C:\WINDOWS\system32\rsvp.exe
[00-PROCESS]**SCardSvr -/- C:\WINDOWS\System32\SCardSvr.exe
[00-PROCESS]**services -/- C:\WINDOWS\system32\services.exe
[00-PROCESS]**sessmgr -/- C:\WINDOWS\system32\sessmgr.exe
[00-PROCESS]**SFUSVC -/- C:\Program Files\Kyocera\FileUtility\SFUSVC.exe
[00-PROCESS]**smlogsvc -/- C:\WINDOWS\system32\smlogsvc.exe
[00-PROCESS]**smss -/- C:\WINDOWS\System32\smss.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**spoolsv -/- C:\WINDOWS\system32\spoolsv.exe
[00-PROCESS]**svchost -/- C:\WINDOWS\system32\svchost.exe
[00-PROCESS]**TINTSETP -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
[00-PROCESS]**tlntsvr -/- C:\WINDOWS\system32\tlntsvr.exe
[00-PROCESS]**UNS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[00-PROCESS]**ups -/- C:\WINDOWS\System32\ups.exe
[00-PROCESS]**V3SP -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[00-PROCESS]**V3Svc -/- C:\Program Files\AhnLab\V3IS80\V3Svc.exe
[00-PROCESS]**vssvc -/- C:\WINDOWS\System32\vssvc.exe
[00-PROCESS]**winlogon -/- C:\WINDOWS\system32\winlogon.exe
[00-PROCESS]**WLTRYSVC -/- C:\WINDOWS\System32\WLTRYSVC.EXE
[00-PROCESS]**wmiapsrv -/- C:\WINDOWS\system32\wbem\wmiapsrv.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[01-HKCUREG]**AccuMeetV2 -/- C:\Program Files\Accuzone\AccuMeetV2\AccuDown.exe bRunByWeb=0szCompName=AccuzoneszProdName=AccuMeetV2szRunType=Down
[01-HKCUREG]**BatteryManager -/- C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[01-HKCUREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[01-HKCUREG]**PC_Clean_Optimizer -/- C:\Documents and Settings\Administrator\Application Data\Pranczo\Pranczo.exe
[01-HKCUREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[01-HKCUREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[01-HKCUREG]**V3 Session Process -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[02-HKLMREG]**AccuMeetV2 -/- C:\Program Files\Accuzone\AccuMeetV2\AccuDown.exe bRunByWeb=0szCompName=AccuzoneszProdName=AccuMeetV2szRunType=Down
[02-HKLMREG]**BatteryManager -/- C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**IMJPMIG8.1 -/- C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
[02-HKLMREG]**Korean IME Migration -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMEKR\IMKRMIG.EXE
[02-HKLMREG]**PC_Clean_Optimizer -/- C:\Documents and Settings\Administrator\Application Data\Pranczo\Pranczo.exe
[02-HKLMREG]**PHIME2002A -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
[02-HKLMREG]**PHIME2002ASync -/- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
[02-HKLMREG]**V3 Session Process -/- C:\Program Files\AhnLab\V3IS80\V3SP.exe
[04-TOOLBAR]**Adobe PDF -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll -/- {47833539-D0C5-4125-9FA8-0819E2EAAC93}
[04-TOOLBAR]**잠김영역복사 -/- C:\Program Files\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**btwdins -/- Bluetooth Service -/- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
[05-SERVICE]**ezHelpRemoteServer -/- ezHelp Remote Server Service -/- C:\WINDOWS\system32\ezHelpServer.exe -service
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**InstallFilterService -/- FF Install Filter Service -/- C:\Program Files\STMicroelectronics\Accelerometer\InstallFilterService.exe
[05-SERVICE]**LMS -/- Intel(R) Management and Security Application Local Management Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NDrive Service -/- NDrive Service -/- C:\Program Files\Naver\NaverNDrive\NDriveSVC.exe
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\WINDOWS\system32\npkfxsvc.exe
[05-SERVICE]**NWCWorkstation -/- Client Service for NetWare -/- C:\WINDOWS\system32\svchost.exe -/- C:\WINDOWS\System32\nwwks.dll
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**paSvc -/- Policy Agent Service -/- C:\Program Files\AhnLab\APC2\Policy Agent\pasvc.exe
[05-SERVICE]**Policy Agent PD Service -/- Policy Agent PD Service -/- C:\Program Files\AhnLab\APC2\Policy Agent\PaPd.exe
[05-SERVICE]**PranczoSvr -/- SubShop -/- C:\Documents and Settings\Administrator\Application Data\Pranczo\PranczoSvr.exe
[05-SERVICE]**rpcnet -/- Remote Procedure Call (RPC) Net -/- C:\WINDOWS\system32\rpcnet.exe
[05-SERVICE]**SFUSVC -/- SFUSVC -/- C:\Program Files\Kyocera\FileUtility\SFUSVC.exe
[05-SERVICE]**UNS -/- Intel(R) Management and Security Application User Notification Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[05-SERVICE]**V3 Service -/- V3 Service -/- C:\Program Files\AhnLab\V3IS80\V3Svc.exe
[05-SERVICE]**wltrysvc -/- Broadcom Wireless LAN Tray Service -/- C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\System32\bcmwltry.exe