프로그램분석

Code : dklblIujuPbDJT5zMAfilaAW1IowCVRjlFz1vY+ROOU=

프로세스 천국 2013. 11. 14. 19:28

[00-PROCESS]**alecook -/- C:\Users\Administrator\AppData\Roaming\wingalecook\alecook.exe
[00-PROCESS]**alecooks -/- C:\Users\Administrator\AppData\Roaming\wingalecook\alecooks.exe
[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**AppleMobileDeviceService -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[00-PROCESS]**AWDService -/- C:\Windows\system32\AWDService.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe
[00-PROCESS]**DaumCleanerService -/- C:\Program Files\Daum\Cleaner\DaumCleanerService.exe
[00-PROCESS]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[00-PROCESS]**DaumStationService -/- C:\Program Files\Daum\DaumStation\DaumStationService.exe
[00-PROCESS]**DFSR -/- C:\Windows\system32\DFSR.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**Explorer -/- C:\Windows\Explorer.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**iPodService -/- C:\Program Files\iPod\bin\iPodService.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**MemeoBackgroundService -/- C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe
[00-PROCESS]**mobsync -/- C:\Windows\System32\mobsync.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**rundll32 -/- C:\Windows\system32\rundll32.exe
[00-PROCESS]**SeagateDashboardService -/- C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**ServiceFilter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**sgsvc -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[00-PROCESS]**SLsvc -/- C:\Windows\system32\SLsvc.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**system-update-se -/- C:\Program Files\system-update\system-update-se.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**V3LTray -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WPFFontCache_v0400 -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
[00-PROCESS]**WUDFHost -/- C:\Windows\System32\WUDFHost.exe
[01-HKCUREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[01-HKCUREG]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe /T
[01-HKCUREG]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[02-HKLMREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[02-HKLMREG]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe /T
[02-HKLMREG]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[03-BHOCLSD]**SGAgentObj Class -/- C:\Program Files\AhnLab\SiteGuard2\SGAgenti.dll -/- {19217B99-F935-4A39-B857-A68A68D5BEBB}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**alecook -/- Microsoft AD WS -/- C:\Users\Administrator\AppData\Roaming\wingalecook\alecooks.exe
[05-SERVICE]**Apple Mobile Device -/- Apple Mobile Device -/- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
[05-SERVICE]**AWDSvc -/- ATI WDM Driver Service -/- C:\Windows\system32\AWDService.exe
[05-SERVICE]**DaumCleanerService -/- DaumCleanerService -/- C:\Program Files\Daum\Cleaner\DaumCleanerService.exe
[05-SERVICE]**DaumStationService -/- DaumStationService -/- C:\Program Files\Daum\DaumStation\DaumStationService.exe
[05-SERVICE]**DFSR -/- DFS Replication -/- C:\Windows\system32\DFSR.exe
[05-SERVICE]**Dhcp -/- DHCP Client -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\dhcpcsvc.dll
[05-SERVICE]**ehstart -/- Windows Media Center Service Launcher -/- C:\Windows\system32\svchost.exe -/- C:\Windows\ehome\ehstart.dll
[05-SERVICE]**EMDMgmt -/- ReadyBoost -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\emdmgmt.dll
[05-SERVICE]**FDResPub -/- Function Discovery Resource Publication -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\fdrespub.dll
[05-SERVICE]**gpsvc -/- Group Policy Client -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\gpsvc.dll
[05-SERVICE]**gupdatem -/- Google 업데이트 서비스 (gupdatem) -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**iPod Service -/- iPod 서비스 -/- C:\Program Files\iPod\bin\iPodService.exe
[05-SERVICE]**ISU -/- ISU -/- C:\Program Files\isu\isus.exe
[05-SERVICE]**KtmRm -/- KtmRm for Distributed Transaction Coordinator -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\msdtckrm.dll
[05-SERVICE]**LanmanWorkstation -/- Workstation -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\wkssvc.dll
[05-SERVICE]**Mcx2Svc -/- Windows Media Center Extender Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\Mcx2Svc.dll
[05-SERVICE]**MemeoBackgroundService -/- MemeoBackgroundService -/- C:\Program Files\Memeo\AutoBackup\MemeoBackgroundService.exe
[05-SERVICE]**msiserver -/- Windows Installer -/- C:\Windows\system32\msiexec
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\Windows\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nvsvc -/- NVIDIA Display Driver Service -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**p2pimsvc -/- Peer Networking Identity Manager -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\p2psvc.dll
[05-SERVICE]**p2psvc -/- Peer Networking Grouping -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\p2psvc.dll
[05-SERVICE]**PNRPAutoReg -/- PNRP Machine Name Publication Service -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\p2psvc.dll
[05-SERVICE]**PNRPsvc -/- Peer Name Resolution Protocol -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\p2psvc.dll
[05-SERVICE]**QWAVE -/- Quality Windows Audio Video Experience -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\qwave.dll
[05-SERVICE]**SCardSvr -/- Smart Card -/- C:\Windows\system32\svchost.exe -/- C:\Windows\System32\SCardSvr.dll
[05-SERVICE]**SeagateDashboardService -/- Seagate Dashboard Service -/- C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe
[05-SERVICE]**service_filter -/- ActiveX Filter -/- C:\Program Files\AquaPlayer\ServiceFilter.exe
[05-SERVICE]**SGsvc -/- AhnLab SiteGuard Service -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[05-SERVICE]**slsvc -/- Software Licensing -/- C:\Windows\system32\SLsvc.exe
[05-SERVICE]**SLUINotify -/- SL UI Notification Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\SLUINotify.dll
[05-SERVICE]**speedcleanerService -/- speedcleaner Service -/- C:\Program Files\speedcleaner\speedcleanerse.exe
[05-SERVICE]**system-updateservice -/- system-update service -/- C:\Program Files\system-update\system-update-se.exe
[05-SERVICE]**TBS -/- TPM Base Services -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\tbssvc.dll
[05-SERVICE]**V3 Lite Service -/- V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[05-SERVICE]**wcncsvc -/- Windows Connect Now - Config Registrar -/- C:\Windows\System32\svchost.exe -/- C:\Windows\System32\wcncsvc.dll
[05-SERVICE]**WdiServiceHost -/- Diagnostic Service Host -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\wdi.dll
[05-SERVICE]**WPFFontCache_v0400 -/- Windows Presentation Foundation Font Cache 4.0.0.0 -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
[05-SERVICE]**xsherlock -/- xsherlock -/- C:\Windows\system32\xsherlock.xem