Code : nxewry5avnwi+ESUnaBQ0lUFJJqnDmeHCyda1rEc0ms=
[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**AllatKeyIn -/- C:\Windows\AllatKeyIn.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**AtbHelper -/- C:\Program Files\ESTsoft\ALToolBar\AtbHelper.exe
[00-PROCESS]**AUDIODG -/- C:\Windows\system32\AUDIODG.EXE
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**CertKey -/- C:\Windows\system32\config\systemprofile\AppData\Roaming\CertKey\CertKey.exe
[00-PROCESS]**CertKeySvc -/- C:\Windows\system32\config\systemprofile\AppData\Roaming\CertKey\CertKeySvc.exe
[00-PROCESS]**conhost -/- C:\Windows\system32\conhost.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**DotNetInstaller -/- C:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe
[00-PROCESS]**downhelper_se -/- C:\Windows\system32\downhelper_se.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**explorer -/- C:\Windows\explorer.exe
[00-PROCESS]**flashlinker-se -/- C:\Windows\system32\flashlinker-se.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FNPLicensingService -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[00-PROCESS]**fxssvc -/- C:\Windows\system32\fxssvc.exe
[00-PROCESS]**GRAPH -/- C:\Program Files\Microsoft Office\Office14\GRAPH.EXE
[00-PROCESS]**GROOVE -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[00-PROCESS]**GuardConvert -/- C:\Users\Administrator\AppData\Roaming\GuardSupport\GuardConvert.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**IMEDICTUPDATE -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\microsoft shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**ip-checker-se -/- C:\Program Files\ip-checker\ip-checker-se.exe
[00-PROCESS]**ISBEW64 -/- C:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ISBEW64.exe
[00-PROCESS]**jucheck -/- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe
[00-PROCESS]**KMService -/- C:\Windows\KMService.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**mDNSResponder -/- C:\Program Files\Bonjour\mDNSResponder.exe
[00-PROCESS]**MicroProCon -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProCon.exe
[00-PROCESS]**MicroProProc -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProProc.exe
[00-PROCESS]**MSACCESS -/- C:\Program Files\Microsoft Office\Office14\MSACCESS.EXE
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\Windows\system32\msiexec.exe
[00-PROCESS]**MSQRY32 -/- C:\Program Files\Microsoft Office\Office14\MSQRY32.EXE
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[00-PROCESS]**NTC_1_0_0_11 -/- C:\Program Files\naver\NaverToolbar\NTC_1_0_0_11.exe
[00-PROCESS]**NToolsUpdaterLauncher -/- C:\Program Files\Naver\NaverToolsUpdater\NToolsUpdaterLauncher.exe
[00-PROCESS]**nvcjet -/- C:\Program Files\Windows Now Pack Drivers\nvcjet.exe
[00-PROCESS]**nvjsvc -/- C:\Program Files\Windows Now Pack Drivers\nvjsvc.exe
[00-PROCESS]**nvtsjet -/- C:\Program Files\Windows Now Pack Drivers\nvtsjet.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**nvxdsync -/- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**perfhost -/- C:\Windows\system32\perfhost.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**RAVCpl64 -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
[00-PROCESS]**rundll32 -/- C:\Windows\system32\rundll32.exe
[00-PROCESS]**rundll32 -/- C:\Windows\System32\rundll32.exe
[00-PROCESS]**ScriptHelper -/- C:\Program Files\Common Files\AVG Secure Search\ScriptHelperInstaller\15.2.0\ScriptHelper.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[00-PROCESS]**smart-info-se -/- C:\Program Files\smart-info\smart-info-se.exe
[00-PROCESS]**smart-update-se -/- C:\Program Files\smart-update\smart-update-se.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**sppsvc -/- C:\Windows\system32\sppsvc.exe
[00-PROCESS]**srvany -/- C:\Windows\system32\srvany.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**taskeng -/- C:\Windows\system32\taskeng.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**ToolbarUpdater -/- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**UnSCSK -/- C:\Windows\system32\UnSCSK.exe
[00-PROCESS]**UnSCWCS -/- C:\Windows\UnSCWCS.exe
[00-PROCESS]**vaccinehomectrl -/- C:\Program Files\vaccinehome\vaccinehomectrl.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**vystoropskiy -/- C:\Users\Administrator\AppData\Roaming\vystoropskiy\vystoropskiy.exe
[00-PROCESS]**vystoropskiys -/- C:\Users\Administrator\AppData\Roaming\vystoropskiy\vystoropskiys.exe
[00-PROCESS]**wbengine -/- C:\Windows\system32\wbengine.exe
[00-PROCESS]**windowresetinfoupdate -/- C:\Windows\windowresetinfoupdate.exe
[00-PROCESS]**wingg -/- C:\Users\Administrator\AppData\Roaming\vystoropskiy\wingg.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**winresetconfig -/- C:\Windows\winresetconfig.exe
[00-PROCESS]**wlcrasvc -/- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
[00-PROCESS]**WLIDSVC -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[00-PROCESS]**WLIDSvcM -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WUDFHost -/- C:\Windows\system32\WUDFHost.exe
[01-HKCUREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\AtbHelper.exe -boot
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**GuardSupport -/- C:\Users\Administrator\AppData\Roaming\GuardSupport\GuardConvert.exe -sMDtHSA
[01-HKCUREG]**IME14 KOR Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[01-HKCUREG]**IME14 KOR Setup -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[01-HKCUREG]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe -bystartup
[01-HKCUREG]**MicroProCon -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProCon.exe -sMDtHSA
[01-HKCUREG]**MicroProProc -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProProc.exe -sMDtHSA
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[01-HKCUREG]**NtoolsUpdater -/- C:\Program Files\Naver\NaverToolsUpdater\NToolsUpdaterLauncher.exe /M /autorun
[01-HKCUREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[01-HKCUREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**v3configure -/- rundll32.exe C:\Users\Administrator\AppData\Local\Temp\98768515.txt,A
[01-HKCUREG]**vaccinehome -/- C:\Program Files\vaccinehome\vaccinehomectrl.exe /autostart
[01-HKCUREG]**vaccinehomeusb -/- C:\Program Files\vaccinehome\vaccinehomeusb.exe
[02-HKLMREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\AtbHelper.exe -boot
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**GuardSupport -/- C:\Users\Administrator\AppData\Roaming\GuardSupport\GuardConvert.exe -sMDtHSA
[02-HKLMREG]**IME14 KOR Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[02-HKLMREG]**IME14 KOR Setup -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[02-HKLMREG]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe -bystartup
[02-HKLMREG]**MicroProCon -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProCon.exe -sMDtHSA
[02-HKLMREG]**MicroProProc -/- C:\Users\Administrator\AppData\Roaming\MicroLab\MyEngin\Common\MicroProProc.exe -sMDtHSA
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**NtoolsUpdater -/- C:\Program Files\Naver\NaverToolsUpdater\NToolsUpdaterLauncher.exe /M /autorun
[02-HKLMREG]**RtHDVCpl -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[02-HKLMREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**v3configure -/- rundll32.exe C:\Users\Administrator\AppData\Local\Temp\98768515.txt,A
[02-HKLMREG]**vaccinehome -/- C:\Program Files\vaccinehome\vaccinehomectrl.exe /autostart
[02-HKLMREG]**vaccinehomeusb -/- C:\Program Files\vaccinehome\vaccinehomeusb.exe
[03-BHOCLSD]**Adobe PDF Link Helper -/- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll -/- {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
[03-BHOCLSD]**ALToolbarBho -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3310.dll -/- {7F1A79F9-78D1-4186-9F60-EE0B63DF042A}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre6\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**N.A -/- N.A -/- {2346286A-64F0-41FC-A8D0-13D94C99F736}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**TestBho Class -/- C:\Windows\TEMP\WinSocketW.dll -/- {E3C2200E-C290-4F51-A0F4-D945A27746EA}
[03-BHOCLSD]**uTorrentBar_KR Toolbar -/- C:\Program Files\uTorrentBar_KR\prxtbuTo0.dll -/- {03ea5b10-2efa-4311-ac10-04427b02d663}
[03-BHOCLSD]**Vaccinetop -/- C:\Program Files\vaccinetop\vaccinetop.dll -/- {F65B0DDD-8022-471a-A6F8-BAB1A4D8DF1C}
[03-BHOCLSD]**Windows Live ID Sign-in Helper -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll -/- {9030D464-4C02-4ABF-8ECC-5164760863C6}
[03-BHOCLSD]**네이버 세이프가드 -/- C:\Program Files\naver\navertoolbar\naversafeguard\nsafeguard_2013_6_10_1.dll -/- {000011A1-74C9-4c7e-9B4E-59B5765CF409}
[03-BHOCLSD]**네이버 툴바 도우미 -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_23_268.dll -/- {67C41E9E-2EBF-4F2B-AF74-314F0D793172}
[04-TOOLBAR]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolBar\ALToolBar_3310.dll -/- {38FBE93D-4CA1-4414-AF6A-94920C5BD8DA}
[04-TOOLBAR]**N.A -/- N.A -/- {41ED1FD7-8C37-4806-AF9E-D5238A30E56F}
[04-TOOLBAR]**N.A -/- N.A -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[04-TOOLBAR]**uTorrentBar_KR Toolbar -/- C:\Program Files\uTorrentBar_KR\prxtbuTo0.dll -/- {03ea5b10-2efa-4311-ac10-04427b02d663}
[04-TOOLBAR]**Vaccinetop -/- C:\Program Files\vaccinetop\vaccinetop.dll -/- {F65B0DDD-8022-471a-A6F8-BAB1A4D8DF1C}
[04-TOOLBAR]**네이버 툴바 -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_23_268.dll -/- {D09CFF09-A42A-4EDC-9804-E61224F59CA1}
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**Bonjour Service -/- ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## -/- C:\Program Files\Bonjour\mDNSResponder.exe
[05-SERVICE]**CertKey -/- CertKey -/- C:\Windows\system32\config\systemprofile\AppData\Roaming\CertKey\CertKeySvc.exe ROLL13
[05-SERVICE]**cyberboan Update Service -/- cyberboan Support Service -/- C:\Windows\winresetconfig.exe
[05-SERVICE]**downhelper Update Service -/- downhelper Support Service -/- C:\Windows\system32\downhelper_se.exe
[05-SERVICE]**flashlinkerservice -/- Flashlinker Service -/- C:\Windows\system32\flashlinker-se.exe
[05-SERVICE]**FLEXnet Licensing Service -/- FLEXnet Licensing Service -/- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
[05-SERVICE]**ImeDictUpdateService -/- Microsoft IME Dictionary Update -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[05-SERVICE]**ip-checkerservice -/- ip-checker service -/- C:\Program Files\ip-checker\ip-checker-se.exe
[05-SERVICE]**KMService -/- KMService -/- C:\Windows\system32\srvany.exe
[05-SERVICE]**Microsoft SharePoint Workspace Audit Service -/- Microsoft SharePoint Workspace Audit Service -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\Windows\system32\GameMon.des -service
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nvjsvc32 -/- Windows Now Pack Drivers Manager -/- C:\Program Files\Windows Now Pack Drivers\nvjsvc.exe
[05-SERVICE]**nvsvc -/- NVIDIA Display Driver Service -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**smart-infoservice -/- smart-info service -/- C:\Program Files\smart-info\smart-info-se.exe
[05-SERVICE]**smart-updateservice -/- smart-update service -/- C:\Program Files\smart-update\smart-update-se.exe
[05-SERVICE]**vaccinehome Update Service -/- vaccinehome Support Service -/- C:\Windows\windowresetinfoupdate.exe
[05-SERVICE]**vToolbarUpdater15.2.0 -/- vToolbarUpdater15.2.0 -/- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.2.0\ToolbarUpdater.exe
[05-SERVICE]**vystoropskiys -/- TabStation -/- C:\Users\Administrator\AppData\Roaming\vystoropskiy\vystoropskiys.exe
[05-SERVICE]**wlcrasvc -/- Windows Live Mesh remote connections service -/- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
[05-SERVICE]**wlidsvc -/- Windows Live ID Sign-in Assistant -/- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
[06-TASKLST]**Adobe Flash Player Updater -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[06-TASKLST]**AppIs -/- C:\Users\Administrator\AppData\Local\AppIs\appis.exe
[06-TASKLST]**At1 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At10 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At11 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At12 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At13 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At14 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At15 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At16 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At17 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At18 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At19 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At2 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At20 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At21 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At22 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At23 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At24 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At3 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At337 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At338 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At339 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At340 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At341 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At342 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At343 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At344 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At345 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At346 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At347 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At348 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At349 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At350 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At351 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At352 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At353 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At354 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At355 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At356 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At357 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At358 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At359 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At360 -/- C:\Windows\1D038733\svchsot.exe
[06-TASKLST]**At361 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At362 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At363 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At364 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At365 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At366 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At367 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At368 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At369 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At370 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At371 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At372 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At373 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At374 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At375 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At376 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At377 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At378 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At379 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At380 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At381 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At382 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At383 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At384 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At385 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At386 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At387 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At388 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At389 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At390 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At391 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At392 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At393 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At394 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At395 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At396 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At397 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At398 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At399 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At4 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At400 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At401 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At402 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At403 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At404 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At405 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At406 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At407 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At408 -/- C:\Windows\svchsot.exe
[06-TASKLST]**At5 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At590 -/- C:\Windows\ED1C65FB\svchsot.exe
[06-TASKLST]**At593 -/- C:\Windows\ED1C65FB\svchsot.exe
[06-TASKLST]**At597 -/- C:\Windows\ED1C65FB\svchsot.exe
[06-TASKLST]**At6 -/- C:\Windows\C51649F9\svchsot.exe
[06-TASKLST]**At601 -/- C:\Windows\ED1C65FB\svchsot.exe
[06-TASKLST]**At605 -/- C:\Windows\ED1C65FB\svchsot.exe