프로그램분석

Code : bmfJxRiScBKa0EtkohWEPGztNWtBy6r10B6smKljDss=

프로세스 천국 2013. 11. 9. 19:39

[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**appis -/- C:\Users\Administrator\AppData\Local\AppIs\appis.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**Explorer -/- C:\Windows\Explorer.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**fxssvc -/- C:\Windows\system32\fxssvc.exe
[00-PROCESS]**GomHelperSvc -/- C:\Program Files\GRETECH\GomHelper\GomHelperSvc.exe
[00-PROCESS]**HeciServer -/- C:\Program Files\Intel\iCLS Client\HeciServer.exe
[00-PROCESS]**hkcmd -/- C:\Windows\system32\hkcmd.exe
[00-PROCESS]**ICCProxy -/- C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
[00-PROCESS]**ieresearch -/- C:\Program Files\Internet Research Support\ieresearch.exe
[00-PROCESS]**ieresearchs -/- C:\Program Files\Internet Research Support\ieresearchs.exe
[00-PROCESS]**ieresearchu -/- C:\Program Files\Internet Research Support\ieresearchu.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**igfxpers -/- C:\Windows\system32\igfxpers.exe
[00-PROCESS]**igfxsrvc -/- C:\Windows\system32\igfxsrvc.exe
[00-PROCESS]**igfxtray -/- C:\Windows\system32\igfxtray.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[00-PROCESS]**IntelCpHeciSvc -/- C:\Windows\system32\IntelCpHeciSvc.exe
[00-PROCESS]**irmrinmums -/- C:\Windows\irmrinmums.exe
[00-PROCESS]**irsmumnir -/- C:\Windows\irsmumnir.exe
[00-PROCESS]**iSCTAgent -/- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
[00-PROCESS]**iSCTsysTray8 -/- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
[00-PROCESS]**ISZone -/- C:\Program Files\ISZone\ISZone.exe
[00-PROCESS]**ISZoneUpdate -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[00-PROCESS]**jhi_service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
[00-PROCESS]**keypang -/- C:\Program Files\KeyPang\keypang.exe
[00-PROCESS]**kwsis -/- C:\Users\Administrator\AppData\Roaming\kwsis\kwsis.exe
[00-PROCESS]**kwsisv -/- C:\Users\Administrator\AppData\Roaming\kwsis\kwsisv.exe
[00-PROCESS]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\Windows\system32\msiexec.exe
[00-PROCESS]**ncleaner -/- C:\Program Files\Naver\NaverCleaner\ncleaner.exe
[00-PROCESS]**NCleanService -/- C:\Program Files\Naver\NaverCleaner\NCleanService.exe
[00-PROCESS]**nmgnat -/- C:\Program Files\MG Internet Platform\nmgnat.exe
[00-PROCESS]**nmgse -/- C:\Program Files\MG Internet Platform\nmgse.exe
[00-PROCESS]**nmgsrv -/- C:\Program Files\MG Internet Platform\nmgsrv.exe
[00-PROCESS]**nmgsync -/- C:\Program Files\MG Internet Platform\nmgsync.exe
[00-PROCESS]**nmgth -/- C:\Program Files\MG Internet Platform\nmgth.exe
[00-PROCESS]**nospell_sch -/- C:\Program Files\nospell\nospell_sch.exe
[00-PROCESS]**nospell_uc -/- C:\Program Files\nospell\nospell_uc.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**SocketHeciServer -/- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
[00-PROCESS]**spmonwqyqrsp -/- C:\Windows\spmonwqyqrsp.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**sppsvc -/- C:\Windows\system32\sppsvc.exe
[00-PROCESS]**SSI -/- C:\Users\Administrator\AppData\Local\SSI\SSI.exe
[00-PROCESS]**SSIagent -/- C:\Users\Administrator\AppData\Local\SSI\SSIagent.exe
[00-PROCESS]**STool -/- C:\Program Files\STool\STool.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**update -/- C:\Users\Administrator\AppData\Local\AppIs\update.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**wbengine -/- C:\Windows\system32\wbengine.exe
[00-PROCESS]**windataresetinfo -/- C:\Windows\windataresetinfo.exe
[00-PROCESS]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[00-PROCESS]**WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[00-PROCESS]**windowpurchase -/- C:\Users\Administrator\AppData\Local\windowpurchase\windowpurchase.exe
[00-PROCESS]**windowpurchase_uc -/- C:\Users\Administrator\AppData\Local\windowpurchase\windowpurchase_uc.exe
[00-PROCESS]**windowstab -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab.exe
[00-PROCESS]**windowstab_mon -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
[00-PROCESS]**windowstab_uc -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe
[00-PROCESS]**windowviewcon -/- C:\Users\Administrator\AppData\Local\windowviewcon\windowviewcon.exe
[00-PROCESS]**windowviewcon_uc -/- C:\Users\Administrator\AppData\Local\windowviewcon\windowviewcon_uc.exe
[00-PROCESS]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[00-PROCESS]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[00-PROCESS]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**appis.exe -/- C:\Users\Administrator\AppData\Local\AppIs\appis.exe
[01-HKCUREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[01-HKCUREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[01-HKCUREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[01-HKCUREG]**KeyPang -/- C:\Program Files\KeyPang\keypang.exe
[01-HKCUREG]**MG Internet Platform(License Version 2.0) -/- C:\Program Files\MG Internet Platform\nmgse.exe
[01-HKCUREG]**NCleaner -/- C:\Program Files\Naver\NaverCleaner\ncleaner.exe /reboot
[01-HKCUREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[01-HKCUREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[01-HKCUREG]**RESEARCHINFO -/- C:\Program Files\Internet Research Support\ieresearchu.exe /run
[01-HKCUREG]**RTHDVCPL -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[01-HKCUREG]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[01-HKCUREG]**SSI -/- C:\Users\Administrator\AppData\Local\SSI\SSI.exe /byboot
[01-HKCUREG]**SSIagent -/- C:\Users\Administrator\AppData\Local\SSI\SSIagent.exe
[01-HKCUREG]**STool -/- C:\Program Files\STool\STool.exe
[01-HKCUREG]**update.exe -/- C:\Users\Administrator\AppData\Local\AppIs\update.exe
[01-HKCUREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[01-HKCUREG]**WINDOWPURCHASE_UC -/- C:\Users\Administrator\AppData\Local\windowpurchase\windowpurchase_uc.exe /run
[01-HKCUREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[01-HKCUREG]**WINDOWVIEWCON_UC -/- C:\Users\Administrator\AppData\Local\windowviewcon\windowviewcon_uc.exe /run
[01-HKCUREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[01-HKCUREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[01-HKCUREG]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[01-HKCUREG]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**appis.exe -/- C:\Users\Administrator\AppData\Local\AppIs\appis.exe
[02-HKLMREG]**HotKeysCmds -/- C:\Windows\system32\hkcmd.exe
[02-HKLMREG]**IgfxTray -/- C:\Windows\system32\igfxtray.exe
[02-HKLMREG]**InsideTool -/- C:\Program Files\InsideTool\InsideTool.exe
[02-HKLMREG]**KeyPang -/- C:\Program Files\KeyPang\keypang.exe
[02-HKLMREG]**MG Internet Platform(License Version 2.0) -/- C:\Program Files\MG Internet Platform\nmgse.exe
[02-HKLMREG]**NCleaner -/- C:\Program Files\Naver\NaverCleaner\ncleaner.exe /reboot
[02-HKLMREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[02-HKLMREG]**Persistence -/- C:\Windows\system32\igfxpers.exe
[02-HKLMREG]**RESEARCHINFO -/- C:\Program Files\Internet Research Support\ieresearchu.exe /run
[02-HKLMREG]**RTHDVCPL -/- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[02-HKLMREG]**SeStPage -/- C:\Program Files\SeStPage\SeStPage.exe
[02-HKLMREG]**SSI -/- C:\Users\Administrator\AppData\Local\SSI\SSI.exe /byboot
[02-HKLMREG]**SSIagent -/- C:\Users\Administrator\AppData\Local\SSI\SSIagent.exe
[02-HKLMREG]**STool -/- C:\Program Files\STool\STool.exe
[02-HKLMREG]**update.exe -/- C:\Users\Administrator\AppData\Local\AppIs\update.exe
[02-HKLMREG]**Window modus -/- C:\ProgramData\Window modus\Window modus.exe
[02-HKLMREG]**WINDOWPURCHASE_UC -/- C:\Users\Administrator\AppData\Local\windowpurchase\windowpurchase_uc.exe /run
[02-HKLMREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[02-HKLMREG]**WINDOWVIEWCON_UC -/- C:\Users\Administrator\AppData\Local\windowviewcon\windowviewcon_uc.exe /run
[02-HKLMREG]**windviewer -/- C:\Program Files\windviewer\windviewer.exe
[02-HKLMREG]**windvieweragent -/- C:\Program Files\windviewer\windvieweragent.exe
[02-HKLMREG]**WinKeyword -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword.exe
[02-HKLMREG]**WinKeyword_Up -/- C:\Users\Administrator\AppData\Local\KoreanKeyword\WinKeyword_Up.exe
[03-BHOCLSD]**windviewer Class -/- C:\Program Files\windviewer\windviewer.dll -/- {CC34B3C3-3904-4D0E-8035-536715B28BBA}
[03-BHOCLSD]**확장검색서비스 -/- C:\Program Files\GRETECH\GomHelper\GomHelper.dll -/- {A14EAA16-CA35-4666-845A-DC084DCDF356}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**cphs -/- Intel(R) Content Protection HECI Service -/- C:\Windows\system32\IntelCpHeciSvc.exe
[05-SERVICE]**GomHelper Update Services -/- GomHelper Update Services -/- C:\Program Files\GRETECH\GomHelper\GomHelperSvc.exe
[05-SERVICE]**ICCS -/- Intel(R) Integrated Clock Controller Service - Intel(R) ICCS -/- C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
[05-SERVICE]**Intel(R) Capability Licensing Service Interface -/- Intel(R) Capability Licensing Service Interface -/- C:\Program Files\Intel\iCLS Client\HeciServer.exe
[05-SERVICE]**Intel(R) Capability Licensing Service TCP IP Interface -/- Intel(R) Capability Licensing Service TCP IP Interface -/- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
[05-SERVICE]**irmrinmums -/- Internet Research Client -/- C:\Windows\irmrinmums.exe
[05-SERVICE]**irsmumnir -/- Windows Fix Errors -/- C:\Windows\irsmumnir.exe
[05-SERVICE]**ISCTAgent -/- Intel(R) Smart Connect Technology Agent -/- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
[05-SERVICE]**jhi_service -/- Intel(R) Dynamic Application Loader Host Interface Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
[05-SERVICE]**kwsisv -/- SubShop -/- C:\Users\Administrator\AppData\Roaming\kwsis\kwsisv.exe
[05-SERVICE]**LMS -/- Intel(R) Management and Security Application Local Management Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**MG Internet Platform(License Version 2.0) -/- MG Internet Platform -/- C:\Program Files\MG Internet Platform\nmgsrv.exe
[05-SERVICE]**NCleanService -/- Naver Cleaner Admin Service -/- C:\Program Files\Naver\NaverCleaner\NCleanService.exe
[05-SERVICE]**spmonwqyqrsp -/- Nospell -/- C:\Windows\spmonwqyqrsp.exe
[05-SERVICE]**WindowmodusUpdateService -/- WindowmodusUpdateService -/- C:\ProgramData\Window modus\WindowmodusUpdateService.exe
[05-SERVICE]**windowstab_mon -/- Windows Tab Manager -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
[05-SERVICE]**winfaster Update Service -/- winfaster Support Service -/- C:\Windows\windataresetinfo.exe
[06-TASKLST]**Adobe Flash Player Updater -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[06-TASKLST]**irssmumnir -/- C:\Program Files\Internet Research Support\ieresearchs.exe
[06-TASKLST]**ISZone -/- C:\Program Files\ISZone\ISZoneUpdate.exe
[06-TASKLST]**nmgth -/- C:\Program Files\MG Internet Platform\nmgth.exe
[06-TASKLST]**spschwqyqrsp -/- C:\Program Files\nospell\nospell_sch.exe