Code : 00SOWEnWMZTReLcO7Q1y4nLJQQuAojkyYF9q5cEhte75frQS3fGHUA==
[00-PROCESS]**alg -/- C:\WINDOWS\System32\alg.exe
[00-PROCESS]**appis -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\AppIs\appis.exe
[00-PROCESS]**aspnet_state -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**cisvc -/- C:\WINDOWS\system32\cisvc.exe
[00-PROCESS]**clipsrv -/- C:\WINDOWS\system32\clipsrv.exe
[00-PROCESS]**conime -/- C:\WINDOWS\system32\conime.exe
[00-PROCESS]**ctfmon -/- C:\WINDOWS\system32\ctfmon.exe
[00-PROCESS]**dllhost -/- C:\WINDOWS\system32\dllhost.exe
[00-PROCESS]**dmadmin -/- C:\WINDOWS\System32\dmadmin.exe
[00-PROCESS]**DownLoadGetSvc -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetSvc.exe
[00-PROCESS]**DownLoadGetUpgrade -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetUpgrade.exe
[00-PROCESS]**DownLoadGetuphp -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetuphp.exe
[00-PROCESS]**EveryToolBarapp -/- C:\Program Files\EveryToolBar\EveryToolBarapp.exe
[00-PROCESS]**everytoolbaropen -/- C:\Program Files\everytoolbar\everytoolbaropen.exe
[00-PROCESS]**Explorer -/- C:\WINDOWS\Explorer.EXE
[00-PROCESS]**FDUp -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDUp.exe
[00-PROCESS]**FDUpSvc -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDUpSvc.exe
[00-PROCESS]**FreeListenManager -/- C:\Program Files\FreeListen\FreeListenManager.exe
[00-PROCESS]**FreeListenUpdate -/- C:\Program Files\FreeListen\FreeListenUpdate.exe
[00-PROCESS]**gcodecopen -/- C:\Program Files\GCodec\gcodecopen.exe
[00-PROCESS]**Gcodecsvc -/- C:\Program Files\GCodec\Gcodecsvc.exe
[00-PROCESS]**gomhelpersvc -/- C:\Program Files\GRETECH\GomHelper\gomhelpersvc.exe
[00-PROCESS]**GROOVE -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[00-PROCESS]**howcodecopen -/- C:\Program Files\howcodec\howcodecopen.exe
[00-PROCESS]**Howcodecsvc -/- C:\Program Files\howcodec\Howcodecsvc.exe
[00-PROCESS]**HubGate -/- C:\Documents and Settings\Administrator\Application Data\HubGate\HubGate.exe
[00-PROCESS]**Hwp -/- C:\HNC\Hwp70\Hwp.exe
[00-PROCESS]**IKeeper -/- C:\Program Files\IKeeper\IKeeper.exe
[00-PROCESS]**IKeeperM -/- C:\Program Files\IKeeper\IKeeperM.exe
[00-PROCESS]**IKeeperOpen -/- C:\Program Files\IKeeper\IKeeperOpen.exe
[00-PROCESS]**IKeeperSvc -/- C:\Program Files\IKeeper\IKeeperSvc.exe
[00-PROCESS]**ImageSAFERSvc -/- C:\WINDOWS\ImageSAFERSvc.exe
[00-PROCESS]**imapi -/- C:\WINDOWS\system32\imapi.exe
[00-PROCESS]**IMEDICTUPDATE -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[00-PROCESS]**infocard -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**locator -/- C:\WINDOWS\system32\locator.exe
[00-PROCESS]**lsass -/- C:\WINDOWS\system32\lsass.exe
[00-PROCESS]**mnmsrvc -/- C:\WINDOWS\system32\mnmsrvc.exe
[00-PROCESS]**mscorsvw -/- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\WINDOWS\system32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\WINDOWS\system32\msiexec.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NCleanService -/- C:\Program Files\Naver\NaverCleaner\NCleanService.exe
[00-PROCESS]**netdde -/- C:\WINDOWS\system32\netdde.exe
[00-PROCESS]**NewVersion -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[00-PROCESS]**NKUpdate -/- C:\Program Files\NKeeper\NKUpdate.exe
[00-PROCESS]**npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**PresentationFontCache -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**rsvp -/- C:\WINDOWS\system32\rsvp.exe
[00-PROCESS]**SCardSvr -/- C:\WINDOWS\System32\SCardSvr.exe
[00-PROCESS]**services -/- C:\WINDOWS\system32\services.exe
[00-PROCESS]**sessmgr -/- C:\WINDOWS\system32\sessmgr.exe
[00-PROCESS]**smlogsvc -/- C:\WINDOWS\system32\smlogsvc.exe
[00-PROCESS]**smss -/- C:\WINDOWS\System32\smss.exe
[00-PROCESS]**SMSvcHost -/- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**spoolsv -/- C:\WINDOWS\system32\spoolsv.exe
[00-PROCESS]**SsDdosSvc -/- C:\WINDOWS\SoftSecurity\TouchEn\Safe\AntiDDOSPro\SsDdosSvc.exe
[00-PROCESS]**STacSV -/- c:\program files\idt\v114_ecs_d_6207.2v7_6099.8xp_g2.0v_rc_sdc\wdm\STacSV.exe
[00-PROCESS]**svchost -/- C:\WINDOWS\system32\svchost.exe
[00-PROCESS]**TCCheckAgent -/- C:\Program Files\AdvTopC\TCCheckAgent.exe
[00-PROCESS]**tlntsvr -/- C:\WINDOWS\system32\tlntsvr.exe
[00-PROCESS]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[00-PROCESS]**Umbrella -/- C:\Program Files\Common Files\Umbrella\Umbrella.exe
[00-PROCESS]**uphclean -/- C:\Program Files\UPHClean\uphclean.exe
[00-PROCESS]**ups -/- C:\WINDOWS\System32\ups.exe
[00-PROCESS]**vssvc -/- C:\WINDOWS\System32\vssvc.exe
[00-PROCESS]**windowstab_mon -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_mon.exe
[00-PROCESS]**windowstab_uc -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe
[00-PROCESS]**winlogon -/- C:\WINDOWS\system32\winlogon.exe
[00-PROCESS]**winuserdata -/- C:\WINDOWS\winuserdata.exe
[00-PROCESS]**WinxpendUP_nwgn -/- C:\Program Files\WinExpand_nwgn\WinxpendUP_nwgn.exe
[00-PROCESS]**wmiapsrv -/- C:\WINDOWS\system32\wbem\wmiapsrv.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WPFFontCache_v0400 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[01-HKCUREG]**DgStart -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetUpgrade.exe
[01-HKCUREG]**Dgup2Start -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetuphp.exe
[01-HKCUREG]**everytoolbar -/- C:\Program Files\EveryToolBar\EveryToolBarapp.exe
[01-HKCUREG]**FDStart -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDUp.exe /startup
[01-HKCUREG]**FreeListen -/- C:\Program Files\FreeListen\FreeListenUpdate.exe
[01-HKCUREG]**NKeeper -/- C:\Program Files\NKeeper\NKUpdate.exe
[01-HKCUREG]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[01-HKCUREG]**WINDOWSTAB_UC -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe /run
[01-HKCUREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[01-HKCUREG]**zcnew -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**ctfmon.exe -/- C:\WINDOWS\system32\ctfmon.exe
[02-HKLMREG]**DgStart -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetUpgrade.exe
[02-HKLMREG]**Dgup2Start -/- C:\Documents and Settings\Administrator\Application Data\DownLoadGet\DownLoadGetuphp.exe
[02-HKLMREG]**everytoolbar -/- C:\Program Files\EveryToolBar\EveryToolBarapp.exe
[02-HKLMREG]**FDStart -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDUp.exe /startup
[02-HKLMREG]**FreeListen -/- C:\Program Files\FreeListen\FreeListenUpdate.exe
[02-HKLMREG]**NKeeper -/- C:\Program Files\NKeeper\NKUpdate.exe
[02-HKLMREG]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[02-HKLMREG]**WINDOWSTAB_UC -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_uc.exe /run
[02-HKLMREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[02-HKLMREG]**zcnew -/- C:\Program Files\Zcodec\ZUpdate\NewVersion.exe
[03-BHOCLSD]**FGDownloadUIBHO Class -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDDownloadUI.dll -/- {70171C86-7A8A-4fe9-BC5F-CEEEA5E989BC}
[03-BHOCLSD]**gcodecband -/- C:\Program Files\GCodec\gcodecband.dll -/- {D51B53A3-FFAD-4F50-98AC-E30085EBD987}
[03-BHOCLSD]**howcodecband -/- C:\Program Files\howcodec\howcodecband.dll -/- {5D19999A-E977-46A5-BD6A-6E816262F399}
[03-BHOCLSD]**ikeeper -/- C:\Program Files\IKeeper\IKeeper.dll -/- {E2D71B19-CCD4-4c9e-92FC-449699215330}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**에브리툴바 -/- C:\Program Files\EveryToolBar\everytoolbar.dll -/- {1DD969CD-3842-4EAD-A912-1429DCC1638D}
[03-BHOCLSD]**확장검색서비스 -/- C:\Program Files\GRETECH\GomHelper\gomhelper.dll -/- {A14EAA16-CA35-4666-845A-DC084DCDF356}
[04-TOOLBAR]**N.A -/- N.A -/- {9CA634EF-ECF0-4DD1-B7E2-B9CCFF40BCAF}
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**DLRunS -/- DownLoadGet Service -/- C:\Documents and Settings\Administrator\APPLIC~1\DOWNLO~1\DownLoadGetSvc.exe
[05-SERVICE]**everyclear Update Service -/- everyclear Support Service -/- C:\WINDOWS\resetuserconfig.exe
[05-SERVICE]**ezHelpRemoteServer -/- ezHelp Remote Server Service -/- C:\WINDOWS\system32\ezHelpServer.exe -service
[05-SERVICE]**FileDown Services -/- FileDown Services -/- C:\Documents and Settings\Administrator\Application Data\filedown_new\FDUpSvc.exe
[05-SERVICE]**GCRunS -/- GCodec Service -/- C:\PROGRA~1\GCodec\Gcodecsvc.exe
[05-SERVICE]**GomHelper Update Services -/- GomHelper Update Services -/- C:\Program Files\GRETECH\GomHelper\gomhelpersvc.exe
[05-SERVICE]**HwRunS -/- HowCodec Service -/- C:\PROGRA~1\howcodec\Howcodecsvc.exe
[05-SERVICE]**IKeeper Update Services -/- IKeeper Update Services -/- C:\Program Files\IKeeper\IKeeperSvc.exe
[05-SERVICE]**Image Protection -/- Image Protect Service -/- C:\WINDOWS\ImageSAFERSvc.exe
[05-SERVICE]**ImeDictUpdateService -/- Microsoft IME Dictionary Update -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[05-SERVICE]**Microsoft SharePoint Workspace Audit Service -/- Microsoft SharePoint Workspace Audit Service -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[05-SERVICE]**napagent -/- Network Access Protection Agent -/- C:\WINDOWS\System32\svchost.exe -/- C:\WINDOWS\System32\qagentrt.dll
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**NCleanService -/- Naver Cleaner Admin Service -/- C:\Program Files\Naver\NaverCleaner\NCleanService.exe
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\WINDOWS\system32\npkcmsvc.exe
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**premiumpc Update Service -/- premiumpc Support Service -/- C:\WINDOWS\winuserdata.exe
[05-SERVICE]**quicksvc -/- Quicker Service -/- C:\Program Files\Quicker\quicksvc.exe
[05-SERVICE]**SProtection -/- SProtection -/- C:\Program Files\Common Files\Umbrella\Umbrella.exe
[05-SERVICE]**STacSV -/- Audio Service -/- c:\program files\idt\v114_ecs_d_6207.2v7_6099.8xp_g2.0v_rc_sdc\wdm\STacSV.exe
[05-SERVICE]**TCCheckAgent -/- TCCheckAgent -/- C:\Program Files\AdvTopC\TCCheckAgent.exe
[05-SERVICE]**TouchEnSvc -/- TouchEnSvc -/- C:\WINDOWS\SoftSecurity\TouchEn\Safe\AntiDDOSPro\SsDdosSvc.exe
[05-SERVICE]**UPHClean -/- User Profile Hive Cleanup -/- C:\Program Files\UPHClean\uphclean.exe
[05-SERVICE]**windowstab_mon -/- Windows Tab Manager -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\windowstab\windowstab_mon.exe
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe