애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Microsoft Windows XP Service Pack 3(5.1.2600.196608)
Intel(R) Core(TM) i3 CPU       M 380  @ 2.53GHz / 767.48 MB
x86 Family 6 Model 37 Stepping 5
Date : 2011-08-11
----------------------------------------------------------------------
DF000 C:\Documents and Settings\Administrator\Local Settings\Application Data\hantiat6\hantiat6.dll
DF001 C:\Documents and Settings\Administrator\Local Settings\Application Data\hantiat6\hantiat6.exe
DF002 C:\Documents and Settings\Administrator\Local Settings\Application Data\hantiat6\uninstall.exe
DF003 C:\Program Files\EasyFavo\EasyFavo.exe
DF004 C:\Program Files\EasyFavo\EasyFavoUninst.exe
DF005 C:\Program Files\F2Day\f2dalimi.exe
DF006 C:\Program Files\F2Day\f2ddel.exe
DF007 C:\Program Files\F2Day\f2ddll.dll
DF008 C:\Program Files\F2Day\f2dmain.exe
DF009 C:\Program Files\F2Day\f2dupdater.exe
DF010 C:\Program Files\F2Day\f2dux.exe
DF011 C:\Program Files\GuideOn\GuideOn.dll
DF012 C:\Program Files\GuideOn\GuideOn.exe
DF013 C:\Program Files\GuideOn\uninstall.exe
DF014 C:\Program Files\KeyPang\keypang.exe
DF015 C:\Program Files\KeyPang\rkp.exe
DF016 C:\Program Files\KeyPang\unins000.exe
DF017 C:\Program Files\KinPle\KINPle.exe
DF018 C:\Program Files\KinPle\KinPleStart.exe
DF019 C:\Program Files\KinPle\KinPleStart2.exe
DF020 C:\Program Files\KinPle\KPUpdate.exe
DF021 C:\Program Files\KinPle\KPUpdate2.exe
DF022 C:\Program Files\kpupdate\kpupdate.exe
DF023 C:\Program Files\kpupdate\ukp.exe
DF024 C:\Program Files\kpupdate\unins000.exe
DF025 C:\Program Files\MicroLab\MicroLabCon.exe
DF026 C:\Program Files\MicroLab\MicroLabProc.exe
DF027 C:\Program Files\MicroLab\Uninstall.exe
DF028 C:\Program Files\onBar\onbar.dll
DF029 C:\Program Files\onBar\onuninstall.exe
DF030 C:\Program Files\onBar\onupdate.exe
DF031 C:\Program Files\oplsvc\OpenShopper.exe
DF032 C:\Program Files\oplsvc\OpenShopperC.exe
DF033 C:\Program Files\oplsvc\OPLauncher.exe
DF034 C:\Program Files\oplsvc\SQLiteEncrypt.dll
DF035 C:\Program Files\oplsvc\Uninstall.exe
DF036 C:\Program Files\PcGkimi\PcGkimi.exe
DF037 C:\Program Files\PcGkimi\PcGkimicfg.exe
DF038 C:\Program Files\PcGkimi\PcGkimiMon.exe
DF039 C:\Program Files\PcGkimi\uninst.exe
DF040 C:\Program Files\PostTip\PostTip.dll
DF041 C:\Program Files\PostTip\PostTip.exe
DF042 C:\Program Files\PostTip\uninstall.exe
DF043 C:\Program Files\SearchLite\SearchLite.dll
DF044 C:\Program Files\SearchLite\SearchLite.exe
DF045 C:\Program Files\SearchLite\SLHelper.dll
DF046 C:\Program Files\SearchLite\uninstall.exe
DF047 C:\Program Files\sponsorkeyword\sponsorkeyword.exe
DF048 C:\Program Files\sponsorkeyword\sponsorkeyword_uninstall.exe
DF049 C:\Program Files\TRSearch\TRSearch.dll
DF050 C:\Program Files\TRSearch\TRSearchC.exe
DF051 C:\Program Files\TRSearch\TRSearchR.exe
DF052 C:\Program Files\TRSearch\TRSearchU.exe
DF053 C:\Program Files\Windows Safe Search AX30\Uninstall.exe
DF054 C:\Program Files\Windows Safe Search AX30\winsscore.dll
DF055 C:\Program Files\Windows Safe Search AX30\winssearch.exe
DF056 C:\Program Files\Windows Safe Search AX30\winssupt.exe
DF057 C:\Program Files\winsearchshop\boninst.exe
DF058 C:\Program Files\winsearchshop\icleserviced.dll
DF059 C:\Program Files\winsearchshop\icleservicedhp.exe
DF060 C:\Program Files\winsearchshop\Uninstall.exe
DF061 C:\skeypang.exe
DF062 C:\skpupdate.exe
DF063 C:\WINDOWS\atbfsh.exe
DF064 C:\WINDOWS\bcmate.exe
DF065 C:\WINDOWS\cpsinstall62.exe
DF066 C:\WINDOWS\delf2ddll.exe
DF067 C:\WINDOWS\EasyFavoSetup.exe
DF068 C:\WINDOWS\f2dinstall.exe
DF069 C:\WINDOWS\GuideOn__GO45.exe
DF070 C:\WINDOWS\ikeypang.exe
DF071 C:\WINDOWS\KinpleSetup_p058.exe
DF072 C:\WINDOWS\lmrecome.exe
DF073 C:\WINDOWS\oninstall.exe
DF074 C:\WINDOWS\OPSetup.exe
DF075 C:\WINDOWS\PcGkimi_cold_rs.exe
DF076 C:\WINDOWS\PlusTab__PT06.exe
DF077 C:\WINDOWS\PostTip__IP70.exe
DF078 C:\WINDOWS\SearchLite__SL25.exe
DF079 C:\WINDOWS\setup_id002_s.exe
DF080 C:\WINDOWS\Setup_webcompass.exe
DF081 C:\WINDOWS\Supportbar_jay.exe
DF082 C:\WINDOWS\system32\badevsvc.exe
DF083 C:\WINDOWS\system32\icleserviceinst.exe
DF084 C:\WINDOWS\system32\INETKO.DLL
DF085 C:\WINDOWS\system32\KPDelete.exe
DF086 C:\WINDOWS\system32\MSCOMCTL.OCX
DF087 C:\WINDOWS\system32\MSINET.OCX
DF088 C:\WINDOWS\system32\sethanti62.exe
DF089 C:\WINDOWS\system32\xProgressBar.ocx
DF090 C:\WINDOWS\Translation.exe
DF091 C:\WINDOWS\TRSearchInstall(110).exe
DF092 C:\WINDOWS\utlkorea09_s.exe
----------------------------------------------------------------------
SC093 BlueDevSvc -/- Bluetooth Apple Device Service -/- - -/-  -/- C:\WINDOWS\system32\badevsvc.exe
----------------------------------------------------------------------
UN094 EasyFavo -/- - -/- EasyFavo -/- - -/- -
UN095 Feel 2 Day -/- feel2day, Inc. -/- F2Day -/- -/- -
UN096 GuideOn -/- - -/- GuideOn -/- - -/- -
UN097 Win Search forhantiat6 -/- - -/- hantiat6 -/- - -/- -
UN098 Windows Music KinplePlay -/- KINPLE -/- Kinple -/- - -/-
UN099 Micronames Multi Language Convert Service -/- - -/- Micronames Multi Language Convert Service -/- - -/- -
UN100 onBar -/- - -/- onBar -/- - -/- -
UN101 피씨지키미 -/- - -/- PcGkimi -/- - -/- -
UN102 PostTip -/- - -/- PostTip -/- - -/- -
UN103 SearchLite -/- - -/- SearchLite -/- - -/- -
UN104 sponsorkeyword Uninstall -/- (주)인터넷마케팅연구소 -/- sponsorkeyword -/- - -
UN105 최근검색 -/- - -/- TRSearch -/- - -/- -
UN106 Windows Safe Search AX30 -/- - -/- Windows Safe Search AX30 -/- - -/- -
UN107 winsearchshop 1.00 -/- - -/- winsearchshop 1.00 -/- - -/- -
UN108 kpupdate version 1.0 -/- AD79 co.,ldt -/- {31F483AD-CF01-4B40-909C-99B714C3B38B}_is1 -/-
UN109 KeyPang version 1.0 -/- ad79 -/- {B9EB0882-79F8-4680-988C-D2317BA669F9}_is1 -/-
UN110 오픈쇼퍼(OpenShopper) -/- TGSM -/- 오픈쇼퍼(OpenShopper) -/--/- -
----------------------------------------------------------------------
US111 oplu -/- C:\Program Files\oplsvc\OpenShopperC.exe /RUN
US112 hantiat6 -/- C:\Documents and Settings\Administrator\Local Settings\Application Data\hantiat6\hantiat6.exe
US113 sponsorkeyword -/- C:\Program Files\sponsorkeyword\sponsorkeyword.exe
US114 MicroLabCon -/- C:\Program Files\MicroLab\MicroLabCon.exe
LS115 SearchLite -/- C:\Program Files\SearchLite\SearchLite.exe
LS116 onBar -/- C:\Program Files\onBar\onupdate.exe
LS117 EasyFavo -/- C:\Program Files\EasyFavo\EasyFavo.exe /update
LS118 PostTip -/- C:\Program Files\PostTip\PostTip.exe
LS119 GuideOn -/- C:\Program Files\GuideOn\GuideOn.exe
LS120 Kp -/- C:\Program Files\kpupdate\kpupdate.exe
LS121 TRSearch -/- C:\Program Files\TRSearch\TRSearchU.exe
LS122 PcGkimi -/- C:\Program Files\PcGkimi\PcGkimi.exe /run1
LS123 ntasvr -/- C:\Program Files\Windows Safe Search AX30\winssearch.exe
LS124 F2Day -/- C:\Program Files\F2Day\f2dupdater.exe
LS125 KINPle Update Check -/- C:\Program Files\KinPle\\KinPleStart.exe
----------------------------------------------------------------------
BH126 &TRSearch Helper Object -/- C:\PROGRA~1\TRSearch\TRSearch.dll -/- {094CBB23-DF20-45E8-B32A-C6D346FB2F46}
BH127  -/- C:\PROGRA~1\onBar\onbar.dll -/- {0C8AF4E4-03FF-42F0-B130-C5174E799A09}
BH128 GuideHelper Class -/- C:\Program Files\GuideOn\GuideOn.dll -/- {6704E2EA-6213-4d17-BB3D-4AE9E3609536}
BH129 icleserviceprg.icleserviced -/- C:\Program Files\winsearchshop\icleserviced.dll -/- {8D2B6841-00E9-4A55-BC5D-C75BFA4AFEDA}
BH130 IECtrl Class -/- C:\PROGRA~1\F2Day\f2ddll.dll -/- {91C1AE56-D2C9-4017-8BF1-75EA182CEB38}
BH131 SLHelperCtl Class -/- C:\Program Files\SearchLite\SLHelper.dll -/- {ACB8FE57-01FF-4E61-A2E2-4FB54C77A0E7}
BH132 PostTip -/- C:\Program Files\PostTip\PostTip.dll -/- {C4BF6897-41A2-454b-AC3B-437F30BEA671}
BH133 O -/- C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\hantiat6\hantiat6.dll -/- {F9662E52-E299-4954-8960-1DF6F834FF95}
BH134 WinSS Search Class -/- C:\Program Files\Windows Safe Search AX30\winsscore.dll -/- {FFDE727F-3330-45EB-B9F9-C1668E6E08B2}
----------------------------------------------------------------------
----------------------------------------------------------------------
TB135 최근검색(&R) -/- C:\PROGRA~1\TRSearch\TRSearch.dll -/- {09C08DFE-1B01-4FB6-B75B-7B19BB05E2D2}
----------------------------------------------------------------------
NA000 114.200.199.251/keypang/liveins.php?mac=FE-B1-EB-F3-DD-95&ip=19**.***
NA001 114.200.199.251/keypang/statins.php?mac=FE-B1-EB-F3-DD-95&compa**.***
NA002 114.200.199.251/keypang/toschk.php?pid*.***
NA003 114.200.199.251/keypang/upliveins.php?mac=FE-B1-EB-F3-DD-95&ip=**.***
NA004 114.200.199.251/keypang/upstatins.php?mac=FE-B1-EB-F3-DD-95&com**.***
NA005 114.200.199.251/keypang/version_sms*.***
NA006 211.218.126.196/~paran/down/sethanti62*.***
NA007 211.218.126.196/~paran/execute.php?m_origin=BYC&usr_id=one&mac=**.***
NA008 220.73.162.13/Config/FileNameDataMicro*.***
NA009 220.73.162.13/Config/FormCheckTimeMicro*.***
NA010 220.73.162.13/Config/ProgramUpdateLab.asp?version=*.***
NA011 220.73.162.17/Config/FileNameDataMicro*.***
NA012 220.73.162.17/Config/FormCheckTimeMicro*.***
NA013 220.73.162.17/Config/ProgramUpdateLab.asp?version=*.***
NA014 220.73.162.18/Config/FileNameDataMicro*.***
NA015 220.73.162.18/Config/FormCheckTimeMicro*.***
NA016 220.73.162.18/Config/FormLocation*.***
NA017 220.73.162.18/Config/TransSiteString.asp?nation=K*.***
NA018 220.73.162.18/Config/UserConfig_LastMicroLab.asp?user_no=*.***
NA019 222.122.197.7222.122.197.7/media/sendup/cpsinstall62.exe**.***
NA020 58.180.70.177/Config/FileNameDataMicro*.***
NA021 58.180.70.177/Config/FormCheckTimeMicro*.***
NA022 58.180.70.177/Config/FormLocation*.***
NA023 58.180.70.177/Config/ipget.asp?kind=every&u_id=3&SubName=MAIN&v**.***
NA024 58.180.70.177/config/keyword_platinum.asp?user_no=3&SubName=MAI**.***
NA025 58.180.70.177/Config/TransSiteString.asp?nation=K*.***
NA026 58.180.70.177/Config/UserConfig_LastMicroLab.asp?user_*.***
NA027 ad.kinple.com/File/*.***
NA028 ad.kinple.com/File/ver*.***
NA029 ad.kinple.com/installkey.php?pid=p058&key=4643A6348D54B0|2D3D6A**.***
NA030 ad79.co.kr/keypang/sms/skeypang*.***
NA031 ad79.co.kr/keypang/sms/skpupdate*.***
NA032 ad79.co.krad79.co.kr/keypang/sms/ikeypang*.***
NA033 api.sponsorkeyword.co.kr/api_install.php?pid=id002&mac_addr=FEB**.***
NA034 api.sponsorkeyword.co.krapi.sponsorkeyword.co.kr/api_exe**.***
NA035 domainserver.co.kr/Config/ServerList.asp?uno=2542&gub*.***
NA036 down.easyfavo.com/app/hidfavo*.***
NA037 down.easyfavo.com/app/replacefavo*.***
NA038 down.easyfavo.com/app/rtreeview_load*.***
NA039 down.easyfavo.com/app/treeview_load.php?userid=&catn*.***
NA040 down.easyfavo.com/easyfavo*.***
NA041 down.easyfavo.com/install.php?serial=110811093953101020&appver=**.***
NA042 down.easyfavo.com/version*.***
NA043 down.easyfavo.comdown.easyfavo.com/EasyFavoSetup*.***
NA044 down.feel2day.com/agree/agreement_feel2day.*.***
NA045 down.feel2day.com/agree/agreement_feel2day_gr.*.***
NA046 down.feel2day.com/ap_cnt/bcc.php?madd=FE-B1-EB-F3-DD-95&ptn=swd**.***
NA047 down.feel2day.com/ap_cnt/icc.php?madd=FE-B1-EB-F3-DD-95&ptn=swd**.***
NA048 down.feel2day.com/ap_web/etc/bn*.***
NA049 down.feel2day.com/f2dpk*.***
NA050 down.feel2day.com/main/swday02/ControlNotifier/insagree*.***
NA051 down.feel2day.com/main/swday02/ControlNotifier/newagree*.***
NA052 down.feel2day.com/main/swday02/delf2ddll*.***
NA053 down.feel2day.com/main/swday02/f2dalimi*.***
NA054 down.feel2day.com/main/swday02/f2ddat*.***
NA055 down.feel2day.com/main/swday02/f2ddel*.***
NA056 down.feel2day.com/main/swday02/f2ddll*.***
NA057 down.feel2day.com/main/swday02/f2dico*.***
NA058 down.feel2day.com/main/swday02/f2dmain*.***
NA059 down.feel2day.com/main/swday02/f2dupdater*.***
NA060 down.feel2day.com/main/swday02/f2dux*.***
NA061 down.feel2day.com/main/swday02/sublist*.***
NA062 down.feel2day.com/main/swday02/upsetting*.***
NA063 down.feel2day.com/pars_click*.***
NA064 down.pcgkimi.comdown.pcgkimi.com/install/partner/PcGkimi**.***
NA065 down.sponsorkeyword.co.krdown.sponsorkeyword.co.kr/setup**.***
NA066 download.keysearch.co.kr/setup/app_wss/wdnew/a/Setup_WSSax*.***
NA067 download.kinple.com/KINPle*.***
NA068 download.kinple.com/KinPleStart*.***
NA069 download.kinple.com/KPDelete*.***
NA070 download.kinple.com/KPUpdate*.***
NA071 download.pcoptimizer.co.krdownload.pcoptimizer.co.kr/par**.***
NA072 duzip.com/Config/ServerList.asp?uno=2542&gub*.***
NA073 duzip.com/Config/ServerList.asp?uno=3&gub*.***
NA074 dw.supportbar.co.kr/etc/yak*.***
NA075 dw.supportbar.co.kr/Setup/toolbar_being_*.***
NA076 dw.supportbar.co.krdw.supportbar.co.kr/Setup/setupa/Supp**.***
NA077 enjoy-find.com/comparison/comparison*.***
NA078 favoclick.com/bcmate/bcmate*.***
NA079 favoclick.com/bcmate/UrlSet*.***
NA080 favoclick.com/MateDisk/Cnt/inc.php?madd=FE-B1-EB-F3-DD-95&ptn=d**.***
NA081 favoclick.comfavoclick.com/bcmate/bcmate*.***
NA082 file.plustab.co.kr/dst/PlusTab_PT06*.***
NA083 file.sidegreen.com/dst/GuideOn_GO45*.***
NA084 file.sidetab.co.kr/dst/PostTip_IP70*.***
NA085 guideon.sidegreen.com/install.asp?version=1.0.0.1&id=GO45&mac=F**.***
NA086 guideon.sidegreen.com/update/GO45/GuideOn*.***
NA087 in.sponsorkeyword.co.kr/in_install.php?pid=id002&mac=FEB1EBF3DD**.***
NA088 in.sponsorkeyword.co.krin.sponsorkeyword.co.kr/in_exe.ph**.***
NA089 iring4u.co.kr/keypang/install.php?mac=FE-B1-EB-F3-D*.***
NA090 iring4u.co.kr/keypang/update_sms*.***
NA091 kgo3.com/acc*.***
NA092 kinple.com/File/runcheck*.***
NA093 kinple.com/File/show*.***
NA094 kinple.com/File/ver*.***
NA095 log.goodjoy.co.kr/app/inlog.php?mac=&hdd=&ver=2011080201&ie=7%2**.***
NA096 log.goodjoy.co.kr/app/lvlog.php?mac=&hdd=&ver=2011080201&ie=7%2**.***
NA097 micronames.co.kr/Download/MicroLabDownCon*.***
NA098 micronames.co.kr/Download/MicroLabDownProc*.***
NA099 micronames.co.kr/Download/Uninstall_MicroLab*.***
NA100 naver.*.***
NA101 openshopper.co.kr/hybrid/conf4.php?b=OpenSho*.***
NA102 openshopper.co.kr/hybrid/dayma*.***
NA103 pcgkimi.com/app/count.php?kind=install&pid=*.***
NA104 pops.go-diva.co.kr/hantiat6/data/hantiat6*.***
NA105 pops.go-diva.co.kr/hantiat6/data/install*.***
NA106 pops.go-diva.co.kr/hantiat6/data/update*.***
NA107 pops.go-diva.co.kr/hantiat62/data/badevsvc*.***
NA108 postip.sidetab.co.kr/install.asp?version=1.0.0.7&id=IP70&mac=FE**.***
NA109 postip.sidetab.co.kr/update/IP70/PostTip*.***
NA110 searchlite.co.kr/files/SearchLite_SL25*.***
NA111 searchlite.co.kr/install.asp?version=1.0.0.2&id=SL25&mac=FEB1EB**.***
NA112 searchlite.co.kr/update/SL25/SearchLite*.***
NA113 sub.openshopper.co.kr/data*.***
NA114 sub.openshopper.co.kr/opapp/cz_f2day/OPUpdate*.***
NA115 sub.openshopper.co.kr/opapp/cz_f2day/ROS*.***
NA116 TGXL.itplayshop.com/APP/ck_setup.php?m=FE:B1:EB:F3:DD:95&d=supp**.***
NA117 TGXL.itplayshop.com/APP/dbk*.***
NA118 TGXL.itplayshop.com/APP/mbk.php?a*.***
NA119 u.goodjoy.co.kr/TRSearch/TAgree.*.***
NA120 u.goodjoy.co.kru.goodjoy.co.kr/TRSearch/TRSearchInstall(**.***
NA121 u15.goodjoy.co.kr/TRSearch/110iRSearc*.***
NA122 u15.goodjoy.co.kr/TRSearch/BaroKeywor*.***
NA123 u15.goodjoy.co.kr/TRSearch/ck*.***
NA124 u15.goodjoy.co.kr/TRSearch/dnRSearc*.***
NA125 u15.goodjoy.co.kr/TRSearch/DWor*.***
NA126 u15.goodjoy.co.kr/TRSearch/Guid*.***
NA127 u15.goodjoy.co.kr/TRSearch/iRSearc*.***
NA128 u15.goodjoy.co.kr/TRSearch/k*.***
NA129 u15.goodjoy.co.kr/TRSearch/nk*.***
NA130 u15.goodjoy.co.kr/TRSearch/Quer*.***
NA131 u15.goodjoy.co.kr/TRSearch/ShoppingKeywor*.***
NA132 u15.goodjoy.co.kr/TRSearch/TRSearch*.***
NA133 u15.goodjoy.co.kr/TRSearch/TRSearchC*.***
NA134 u15.goodjoy.co.kr/TRSearch/TRSearchR*.***
NA135 u15.goodjoy.co.kr/TRSearch/TRSearchU*.***
NA136 up1.popgame.co.kr/etcApp/agreement/agreement_ad79.*.***
NA137 up1.popgame.co.kr/etcApp/agreement/agreement_bcmate.*.***
NA138 up1.popgame.co.kr/etcApp/agreement/agreement_easyfavo.*.***
NA139 up1.popgame.co.kr/etcApp/agreement/agreement_enjoyfind.*.***
NA140 up1.popgame.co.kr/etcApp/agreement/agreement_guideon.*.***
NA141 up1.popgame.co.kr/etcApp/agreement/agreement_icleservice.*.***
NA142 up1.popgame.co.kr/etcApp/agreement/agreement_onbar.*.***
NA143 up1.popgame.co.kr/etcApp/agreement/agreement_openshopper.*.***
NA144 up1.popgame.co.kr/etcApp/agreement/agreement_pcgkimi.*.***
NA145 up1.popgame.co.kr/etcApp/agreement/agreement_posttip.*.***
NA146 up1.popgame.co.kr/etcApp/agreement/agreement_sponsorkeyword.htm**.***
NA147 up1.popgame.co.kr/etcApp/agreement/agreement_supportbar.*.***
NA148 up1.popgame.co.krup1.popgame.co.kr/etcApp/guideon/GuideO**.***
NA149 up1.popgame.co.krup1.popgame.co.kr/etcApp/openshopper/OP**.***
NA150 up1.popgame.co.krup1.popgame.co.kr/etcApp/posttip/PostTi**.***
NA151 update.keysearch.co.kr/app_upt/app_upt.php?p=wdnew1&l=ax&v=1004**.***
NA152 update1.lottomeca.com/LottoCube/agreement/agreement_lottomeca.h**.***
NA153 update1.lottomeca.com/LottoCube/agreement/agreement_webcompass.**.***
NA154 update1.lottomeca.com/Recom/lottomeca*.***
NA155 update1.lottomeca.comupdate1.lottomeca.com/Recom/lmrecom**.***
NA156 ww*.enjoy-find.com/count/insert.php?pid=maxclicks9&ki*.***
NA157 ww*.enjoy-find.comww*.enjoy-find.com/download/clickstory**.***
NA158 ww*.keysearch.co.kr/div/wdnew.*.***
NA159 ww*.keysearch.co.kr/log/app_run_log.php?pid=wdnew1&upnam*.***
NA160 ww*.koreaserver.kr/Config/ServerList.asp?uno=2542&gub*.***
NA161 ww*.naver.*.***
NA162 ww*.onbar.co.kr/update/install.php?serial=110811093948110705&ap**.***
NA163 ww*.onbar.co.kr/update/Public/onbar001/onbar*.***
NA164 ww*.onbar.co.kr/update/Public/onbar001/version*.***
NA165 ww*.onbar.co.krww*.onbar.co.kr/update/Public/onbar001/on**.***
NA166 ww*.selfhelp.kr/data/bcl*.***
----------------------------------------------------------------------
Deleted Files : 93
Remove Service : 1
Remove Uninstall Entry : 17
Remove Startup Entry : 15
Remove Browser Helper Object : 9
Remove Toolbar : 1
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
[01-HKCUREG]**oplu
[01-HKCUREG]**hantiat6
[01-HKCUREG]**sponsorkeyword
[01-HKCUREG]**MicroLabCon
[02-HKLMREG]**SearchLite
[02-HKLMREG]**onBar
[02-HKLMREG]**EasyFavo
[02-HKLMREG]**PostTip
[02-HKLMREG]**GuideOn
[02-HKLMREG]**Kp
[02-HKLMREG]**TRSearch
[02-HKLMREG]**PcGkimi
[02-HKLMREG]**ntasvr
[02-HKLMREG]**F2Day
[02-HKLMREG]**KINPle Update Check
[03-BHOCLSD]**{094CBB23-DF20-45E8-B32A-C6D346FB2F46}
[03-BHOCLSD]**{0C8AF4E4-03FF-42F0-B130-C5174E799A09}
[03-BHOCLSD]**{6704E2EA-6213-4d17-BB3D-4AE9E3609536}
[03-BHOCLSD]**{8D2B6841-00E9-4A55-BC5D-C75BFA4AFEDA}
[03-BHOCLSD]**{91C1AE56-D2C9-4017-8BF1-75EA182CEB38}
[03-BHOCLSD]**{ACB8FE57-01FF-4E61-A2E2-4FB54C77A0E7}
[03-BHOCLSD]**{C4BF6897-41A2-454b-AC3B-437F30BEA671}
[03-BHOCLSD]**{F9662E52-E299-4954-8960-1DF6F834FF95}
[03-BHOCLSD]**{FFDE727F-3330-45EB-B9F9-C1668E6E08B2}
[04-TOOLBAR]**{09C08DFE-1B01-4FB6-B75B-7B19BB05E2D2}
[05-SERVICE]**BlueDevSvc
----------------------------------------------------------------------
Total Processing Time : 236ms
----------------------------------------------------------------------

신고



요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2011.08.12 01:48 ] Posted by windowexe.com , 프로그램분석

댓글을 달아 주세요

  1. windowexe.com - 2012.02.10 18:25 신고 댓글주소 수정/삭제 댓글쓰기



    ======================================================================
    ======================================================================

    echo Start
    echo windowexe.com & tskill "addensb" & echo windowdel.com
    echo windowexe.com & tskill "addsbu" & echo windowdel.com
    echo windowexe.com & tskill "barosearch" & echo windowdel.com
    echo windowexe.com & tskill "bcgrsvc" & echo windowdel.com
    echo windowexe.com & tskill "ButtonGuideD" & echo windowdel.com
    echo windowexe.com & tskill "ButtonGuideS" & echo windowdel.com
    echo windowexe.com & tskill "Casting" & echo windowdel.com
    echo windowexe.com & tskill "dbvxkg2" & echo windowdel.com
    echo windowexe.com & tskill "dm_dn" & echo windowdel.com
    echo windowexe.com & tskill "Favml" & echo windowdel.com
    echo windowexe.com & tskill "FirstClickUpdater" & echo windowdel.com
    echo windowexe.com & tskill "GDownService" & echo windowdel.com
    echo windowexe.com & tskill "infotab_up" & echo windowdel.com
    echo windowexe.com & tskill "kesinfoi" & echo windowdel.com
    echo windowexe.com & tskill "keywordtabhper" & echo windowdel.com
    echo windowexe.com & tskill "keywordtabopen" & echo windowdel.com
    echo windowexe.com & tskill "keywordtabup" & echo windowdel.com
    echo windowexe.com & tskill "liveagent" & echo windowdel.com
    echo windowexe.com & tskill "meshagent" & echo windowdel.com
    echo windowexe.com & tskill "MicroPCRecordHelper" & echo windowdel.com
    echo windowexe.com & tskill "Microsolution_se" & echo windowdel.com
    echo windowexe.com & tskill "MicrowindowSearch" & echo windowdel.com
    echo windowexe.com & tskill "natsvc" & echo windowdel.com
    echo windowexe.com & tskill "one-stepe" & echo windowdel.com
    echo windowexe.com & tskill "pinomate" & echo windowdel.com
    echo windowexe.com & tskill "popupguide" & echo windowdel.com
    echo windowexe.com & tskill "qdownagent" & echo windowdel.com
    echo windowexe.com & tskill "qdownservice" & echo windowdel.com
    echo windowexe.com & tskill "qdownupdate" & echo windowdel.com
    echo windowexe.com & tskill "SBoxSearchBarU" & echo windowdel.com
    echo windowexe.com & tskill "searchstar" & echo windowdel.com
    echo windowexe.com & tskill "ShareBoxC" & echo windowdel.com
    echo windowexe.com & tskill "SideOh" & echo windowdel.com
    echo windowexe.com & tskill "svc_agent" & echo windowdel.com
    echo windowexe.com & tskill "sysnonclose" & echo windowdel.com
    echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
    echo windowexe.com & tskill "TopGuide" & echo windowdel.com
    echo windowexe.com & tskill "truepods" & echo windowdel.com
    echo windowexe.com & tskill "WiseLook" & echo windowdel.com
    echo windowexe.com & tskill "ynpng" & echo windowdel.com
    echo windowexe.com & tskill "zoomy" & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SmartSupporter-privacylock" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SmartSupporter-privacylock" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Extend-Supporter-totalvaccine" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Extend-Supporter-totalvaccine" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "UmileEncoder" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "UmileEncoder" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "AnCamera" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "AnCamera" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DV-MacChange12-Update" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DV-MacChange12-Update" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "thoracicaorta" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "thoracicaorta" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SBoxSearchBar" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SBoxSearchBar" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "rectangleline" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "rectangleline" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SmartSupporter-doublevaccine" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SmartSupporter-doublevaccine" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Casting" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Casting" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BaroSearch" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BaroSearch" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "LiveAgent" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "LiveAgent" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MeshAgent" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MeshAgent" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "kesinfoi" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "kesinfoi" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "popupguide" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "popupguide" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "one-step" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "one-step" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "truepodv3" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "truepodv3" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordtabopen" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordtabopen" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordtabhper" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordtabhper" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordtab" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordtab" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Find Supporter" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Find Supporter" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "infoupdate" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "infoupdate" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WiseLook Application" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WiseLook Application" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Dual Matching" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Dual Matching" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "smartb" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "smartb" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "searchstar.exe" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "searchstar.exe" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "tabtoolbar" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "tabtoolbar" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ynpng" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ynpng" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FindLock" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FindLock" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "winpnpv3" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "winpnpv3" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "addendum" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "addendum" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ShareBox" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ShareBox" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "sysnonclose" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "sysnonclose" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroPCRecord" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroPCRecord" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FirstClickUpdater" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FirstClickUpdater" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "privacyg" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "privacyg" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "lifewisdom" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "lifewisdom" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "utlcu" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "utlcu" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Downmanager" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Downmanager" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "coombi" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "coombi" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "crmdev2011" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "crmdev2011" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "addensb" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "addensb" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SideOh" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SideOh" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "denisebon" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "denisebon" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopGuide" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopGuide" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "giinsong" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "giinsong" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "infoupdate" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "infoupdate" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "moayadmal" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "moayadmal" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "bxodgod" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "bxodgod" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "v2ijet" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "v2ijet" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "addndo" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "addndo" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "akcbls7jxjd" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "akcbls7jxjd" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ckobxomej" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ckobxomej" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "zoomy" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "zoomy" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "bbpobbxuhew" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "bbpobbxuhew" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "cndh2qjhjsa" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "cndh2qjhjsa" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "cbxpoducct" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "cbxpoducct" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "cbls8hnsxbn" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "cbls8hnsxbn" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "fvvxiyqo" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "fvvxiyqo" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "dvif82hjsgyu" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "dvif82hjsgyu" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "dbvxkg2" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "dbvxkg2" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0083A0CA-62B0-4636-A88D-AD83379D8AE0}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0083A0CA-62B0-4636-A88D-AD83379D8AE0}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0083A0CA-62B0-4636-A88D-AD83379D8AE0}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{0083A0CA-62B0-4636-A88D-AD83379D8AE0}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03FC17FC-7A74-48F7-8B49-AF3486D4031E}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03FC17FC-7A74-48F7-8B49-AF3486D4031E}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03FC17FC-7A74-48F7-8B49-AF3486D4031E}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{03FC17FC-7A74-48F7-8B49-AF3486D4031E}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0583A0CA-62B0-4636-A88D-AD83379D8AEA}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0583A0CA-62B0-4636-A88D-AD83379D8AEA}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0583A0CA-62B0-4636-A88D-AD83379D8AEA}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{0583A0CA-62B0-4636-A88D-AD83379D8AEA}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1ED65C88-1259-484B-A9FA-6731E0D15743}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1ED65C88-1259-484B-A9FA-6731E0D15743}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1ED65C88-1259-484B-A9FA-6731E0D15743}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{1ED65C88-1259-484B-A9FA-6731E0D15743}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{397CFDD8-762F-44D4-9517-E3969F89639E}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{397CFDD8-762F-44D4-9517-E3969F89639E}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{397CFDD8-762F-44D4-9517-E3969F89639E}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{397CFDD8-762F-44D4-9517-E3969F89639E}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3ADCD904-2FCC-4D2D-9E2F-1A434E0F4BAC}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3ADCD904-2FCC-4D2D-9E2F-1A434E0F4BAC}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3ADCD904-2FCC-4D2D-9E2F-1A434E0F4BAC}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3ADCD904-2FCC-4D2D-9E2F-1A434E0F4BAC}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E0E81E7-3264-4CD7-ABDF-D765E8F98C27}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E0E81E7-3264-4CD7-ABDF-D765E8F98C27}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E0E81E7-3264-4CD7-ABDF-D765E8F98C27}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E0E81E7-3264-4CD7-ABDF-D765E8F98C27}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{502C791B-9EE4-415A-BA6C-66CC68E01A81}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{502C791B-9EE4-415A-BA6C-66CC68E01A81}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{502C791B-9EE4-415A-BA6C-66CC68E01A81}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{502C791B-9EE4-415A-BA6C-66CC68E01A81}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{513AA41F-F5B4-4c8c-A746-76F8800BC450}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{513AA41F-F5B4-4c8c-A746-76F8800BC450}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{513AA41F-F5B4-4c8c-A746-76F8800BC450}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{513AA41F-F5B4-4c8c-A746-76F8800BC450}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{514FE04D-4442-415c-8AFE-C6B7BFB2DA33}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{514FE04D-4442-415c-8AFE-C6B7BFB2DA33}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{514FE04D-4442-415c-8AFE-C6B7BFB2DA33}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{514FE04D-4442-415c-8AFE-C6B7BFB2DA33}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65FFD869-C9D8-41AC-BEBC-2EE7E2AA2EA3}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{65FFD869-C9D8-41AC-BEBC-2EE7E2AA2EA3}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{65FFD869-C9D8-41AC-BEBC-2EE7E2AA2EA3}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{65FFD869-C9D8-41AC-BEBC-2EE7E2AA2EA3}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F2BD1DC-B030-4656-8847-E75037CA9C13}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F2BD1DC-B030-4656-8847-E75037CA9C13}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F2BD1DC-B030-4656-8847-E75037CA9C13}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{6F2BD1DC-B030-4656-8847-E75037CA9C13}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{884913F7-E771-4031-B13B-AA25D8EFC587}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{884913F7-E771-4031-B13B-AA25D8EFC587}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{884913F7-E771-4031-B13B-AA25D8EFC587}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{884913F7-E771-4031-B13B-AA25D8EFC587}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{894B3EDB-B53D-40CF-8B17-106B8547A84A}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{894B3EDB-B53D-40CF-8B17-106B8547A84A}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{894B3EDB-B53D-40CF-8B17-106B8547A84A}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{894B3EDB-B53D-40CF-8B17-106B8547A84A}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{98D68C3C-CF16-4CA8-BBDB-11E0EDB62E36}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9F04E945-84A4-4D23-97EB-6E4FBAB759DE}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9F04E945-84A4-4D23-97EB-6E4FBAB759DE}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9F04E945-84A4-4D23-97EB-6E4FBAB759DE}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{9F04E945-84A4-4D23-97EB-6E4FBAB759DE}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FD0D694-6A99-4980-B2FF-35460705F2B1}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9FD0D694-6A99-4980-B2FF-35460705F2B1}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9FD0D694-6A99-4980-B2FF-35460705F2B1}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{9FD0D694-6A99-4980-B2FF-35460705F2B1}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C4BF6897-41A2-454b-AC3B-437F30BEA671}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C4BF6897-41A2-454b-AC3B-437F30BEA671}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C4BF6897-41A2-454b-AC3B-437F30BEA671}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C4BF6897-41A2-454b-AC3B-437F30BEA671}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4DE8937-9F0F-48B9-9201-489BFD758CD9}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4DE8937-9F0F-48B9-9201-489BFD758CD9}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4DE8937-9F0F-48B9-9201-489BFD758CD9}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{D4DE8937-9F0F-48B9-9201-489BFD758CD9}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E95403EF-34E6-4CC6-926D-57DE94994EC3}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E95403EF-34E6-4CC6-926D-57DE94994EC3}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E95403EF-34E6-4CC6-926D-57DE94994EC3}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{E95403EF-34E6-4CC6-926D-57DE94994EC3}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EBD2ECEE-29AD-4B2C-9CC9-6BCBB7A52032}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EBD2ECEE-29AD-4B2C-9CC9-6BCBB7A52032}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EBD2ECEE-29AD-4B2C-9CC9-6BCBB7A52032}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{EBD2ECEE-29AD-4B2C-9CC9-6BCBB7A52032}" /f
    echo Created by Windowexe.com
    sc stop "agent manager"
    echo Service Disable & sc config "agent manager" start= disabled & echo Windowexe.com
    sc stop "GDownService"
    echo Service Disable & sc config "GDownService" start= disabled & echo Windowexe.com
    sc stop "htBCSvc"
    echo Service Disable & sc config "htBCSvc" start= disabled & echo Windowexe.com
    sc stop "micro manager"
    echo Service Disable & sc config "micro manager" start= disabled & echo Windowexe.com
    sc stop "micros manager"
    echo Service Disable & sc config "micros manager" start= disabled & echo Windowexe.com
    sc stop "Microsolution Update Service"
    echo Service Disable & sc config "Microsolution Update Service" start= disabled & echo Windowexe.com
    sc stop "NATService"
    echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
    sc stop "omegagirl"
    echo Service Disable & sc config "omegagirl" start= disabled & echo Windowexe.com
    sc stop "pavelcelba"
    echo Service Disable & sc config "pavelcelba" start= disabled & echo Windowexe.com
    sc stop "permesmgSvc"
    echo Service Disable & sc config "permesmgSvc" start= disabled & echo Windowexe.com
    sc stop "PusStream9Sv"
    echo Service Disable & sc config "PusStream9Sv" start= disabled & echo Windowexe.com
    sc stop "pwoucvsd"
    echo Service Disable & sc config "pwoucvsd" start= disabled & echo Windowexe.com
    sc stop "qjcgsuhg"
    echo Service Disable & sc config "qjcgsuhg" start= disabled & echo Windowexe.com
    sc stop "QuickDownload Agent"
    echo Service Disable & sc config "QuickDownload Agent" start= disabled & echo Windowexe.com
    sc stop "QuickDownload Service"
    echo Service Disable & sc config "QuickDownload Service" start= disabled & echo Windowexe.com
    sc stop "QuickDownload Update"
    echo Service Disable & sc config "QuickDownload Update" start= disabled & echo Windowexe.com
    sc stop "rbxcjnne7t2"
    echo Service Disable & sc config "rbxcjnne7t2" start= disabled & echo Windowexe.com
    sc stop "rpnxxSvc"
    echo Service Disable & sc config "rpnxxSvc" start= disabled & echo Windowexe.com
    sc stop "SCAIISvc"
    echo Service Disable & sc config "SCAIISvc" start= disabled & echo Windowexe.com
    sc stop "tmrInfoSvc"
    echo Service Disable & sc config "tmrInfoSvc" start= disabled & echo Windowexe.com
    sc stop "UsbArb32Svc"
    echo Service Disable & sc config "UsbArb32Svc" start= disabled & echo Windowexe.com
    sc stop "vxvdf2quj"
    echo Service Disable & sc config "vxvdf2quj" start= disabled & echo Windowexe.com
    sc stop "win manager"
    echo Service Disable & sc config "win manager" start= disabled & echo Windowexe.com
    sc stop "Window back Manager"
    echo Service Disable & sc config "Window back Manager" start= disabled & echo Windowexe.com
    sc stop "zakbrechbill"
    echo Service Disable & sc config "zakbrechbill" start= disabled & echo Windowexe.com
    sc stop "oxvweoj2hhs"
    echo Service Disable & sc config "oxvweoj2hhs" start= disabled & echo Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{0CF8A954-4C3B-41a4-B549-9BF574D7DEE8}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{0CF8A954-4C3B-41a4-B549-9BF574D7DEE8}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1456C17A-1F8A-4890-A73A-4E83A4679D77}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{1456C17A-1F8A-4890-A73A-4E83A4679D77}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{57D1CDEE-1880-484f-8361-55D7626D2679}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{57D1CDEE-1880-484f-8361-55D7626D2679}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{664290A3-9ADB-4e0d-9762-EF088688AD41}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{664290A3-9ADB-4e0d-9762-EF088688AD41}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D51609DD-8FD8-4eb1-9714-CA093C12A0B8}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D51609DD-8FD8-4eb1-9714-CA093C12A0B8}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "BTNSTART" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "ez2pluscfg" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "ezlinkpluscfg" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "IPlusUpdate_B" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "IPlusUpdate_BU" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "ToolOnUpdateKF" /f
    echo Created by Windowexe.com
    echo schtasks Delete & schtasks /delete /tn "ToolOnUpdateNY" /f
    echo Created by Windowexe.com
    echo 000 & reg.exe delete "HKCR\CLSID\{8B07C135-7367-416C-A8B9-508C0345E446}" /f & echo windowdel.com
    echo Created by Windowexe.com

    echo End

    ======================================================================
    ======================================================================



  2. gallucci - 2012.12.04 16:02 신고 댓글주소 수정/삭제 댓글쓰기