애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.



====================================================
000. Created by Windowexe.com / do not delete this label.
====================================================
001. context LastPass Täida vormid -/- file://C:\Program Files\LastPass\context.html?cmd=fillforms -/-  -/-  -/-
002. service EasyConnectService -/- EasyConnectService -/- Manual/Running -/-  -/- C:\Program Files\EasyConnect\EasyConnectService.exe
003. service EasyConnectMonitor -/- EasyConnectMonitor -/- Auto/Running -/-  -/- C:\Program Files\EasyConnect\EasyConnectMonitor.exe
004. service EasyConnectAudioService -/- EasyConnectAudioService -/- Manual/Stopped -/-  -/- C:\Program Files\EasyConnect\EasyConnectAudio.exe
005. startup DynAdvance Notifier -/-  -/-  -/-  -/- C:\Program Files\DynAdvance\DynAdvance Notifier\MailNotifier.Exe
====================================================
006. Created by Windowexe.com / do not delete this label.
====================================================
신고



요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2011.10.20 11:19 ] Posted by windowexe.com , 윈도우

댓글을 달아 주세요

  1. windowexe.com - 2011.10.20 11:20 신고 댓글주소 수정/삭제 댓글쓰기

    해당 파일의 md5를 보면 정상적인데요(바이러스 토탈 리포트)

    xp 설치시디의 원본파일에서 ping.exe 파일을 복사해보세요.

    설치시디가 없으면 디엘엘 자료천국에서 다운받으세요. xp pro sp2 파일인데 md5는 다르더군요.

    아마도 Ujxesm Vehnyowi Hxuexsvb Cwpf 이 서비스가 문제같긴합니다.
    네이트온 쪽지로 발송되는 해킹프로그램 보이네요.

    파일명 : C:\Program Files\Bchg\Ddcbyytyp.jpg
    서비스 : C:\WINDOWS\System32\svchost.exe -k sougou

    서비스 삭제
    sc stop “Hntarp Snexsclk Qgb”
    sc delete “Hntarp Snexsclk Qgb”

  2. windowexe.com - 2011.10.20 11:20 신고 댓글주소 수정/삭제 댓글쓰기

    메일 정상적으로 잘 보내졌는데요.

    여기에 댓글로 달께요.
    아래의 내용을 모두 복사하여 명령프롬프트창에서 우클릭하여 붙여넣기 하세요.



    echo Start
    echo windowexe.com & taskkill /im "hdupdater.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "skplus.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "skplus.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "skplus" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "skplus" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3DE538FA-DDB6-40BB-ABFD-FE66CF579654}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3DE538FA-DDB6-40BB-ABFD-FE66CF579654}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3DE538FA-DDB6-40BB-ABFD-FE66CF579654}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3DE538FA-DDB6-40BB-ABFD-FE66CF579654}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7EA8BA7-19EC-4FAF-BF20-237D5E696538}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7EA8BA7-19EC-4FAF-BF20-237D5E696538}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D7EA8BA7-19EC-4FAF-BF20-237D5E696538}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{D7EA8BA7-19EC-4FAF-BF20-237D5E696538}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Uninstall Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mini-Search" /f
    echo HKEY_CURRENT_USER Uninstall Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Mini-Search" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Uninstall Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\skplus" /f
    echo HKEY_CURRENT_USER Uninstall Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\skplus" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{44A83441-CC11-4A08-807A-A9985A90316B}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{44A83441-CC11-4A08-807A-A9985A90316B}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Tasks list Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\comprotect.exe" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Tasks list Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PlusLineUpdateUP" /f
    echo Created by Windowexe.com
    echo End

  3. windowexe.com - 2011.10.21 10:04 신고 댓글주소 수정/삭제 댓글쓰기

    시작 - 프로그램 - 보조프로그램 - 명령프롬프트를 실행하세요.
    (Windows Vista/7 운영체제에서는 마우스 우클릭하여 관리자모드로 실행하세요)

    아래 적색으로 표시된 명령줄을 모두 복사하여 명령프롬프트창에서 우클릭하여 붙여넣기 하세요.




    ----------------------------------------------------------------------
    echo Start
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00E38DE2-1293-4637-9182-1B302BD73E89}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00E38DE2-1293-4637-9182-1B302BD73E89}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00E38DE2-1293-4637-9182-1B302BD73E89}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{00E38DE2-1293-4637-9182-1B302BD73E89}" /f
    echo Created by Windowexe.com
    sc delete "brim4brim"
    sc delete "efinderservice"
    sc delete "hackthanh"
    sc delete "kesavaneeli"
    sc delete "Launcher Agent Service"
    sc delete "Microsolution Update Service"
    sc delete "oneconfusedperson"
    sc delete "philatrenishaw"
    sc delete "prashantgupta"
    sc delete "rizwanjavaid"
    sc delete "sorenjorgensen"
    sc delete "stijnvereecke"
    sc delete "tadthetroll"
    sc delete "thevitruviananalogy"
    sc delete "yazeedhamdan"
    sc delete "zerovertical"
    echo End
    ----------------------------------------------------------------------

  4. windowexe.com - 2011.10.21 10:51 신고 댓글주소 수정/삭제 댓글쓰기

    서비스에 알 수 없는 항목이 있는데 이건 뭔지 모르겠네요.
    며칠 전부터 눈에 띄는 항목이긴 한데 이 서비스는 잘 모르겠네요.

    마벨 랜카드와 관련이 있는 프로그램이 있는지 확인해보세요.
    Marvell Yukon Service / C:\Windows\System32\ykx32mpcoinst.dll

  5. windowexe.com - 2011.10.21 23:33 신고 댓글주소 수정/삭제 댓글쓰기

    아마 파폭에서 애드인 프로그램으로 작동하고 있을겁니다.

    파폭 - 도구나 옵션에서 확장플러그인, 애드인관리로 들어가서 그런 항목이 있는지 확인해보세요.
    어딘가 붙어있으니 나오겠죠.

    전송된 로그에는 QuickStoresToolbar 항목이 하나도 없습니다.

  6. windowexe.com - 2011.10.24 11:49 신고 댓글주소 수정/삭제 댓글쓰기

    sale tong, utilmon update guide 삭제

  7. windowexe.com - 2011.10.27 21:50 신고 댓글주소 수정/삭제 댓글쓰기

    PT.USENET에서 배포하는 프로그램은 서비스삭제가 안됩니다.
    서비스에 특수문자가 포함되어 있어서 배치파일로는 삭제가 안됩니다.

    -------------------------
    echo start
    echo kill & taskkill /im "mdruuksvc.exe" /f
    echo file rename & rename "C:\Program Files\ModernRu\mdruuksvc.exe" "_mdruuksvc.exe"
    echo Created by Windowexe.com
    echo End
    -------------------------

  8. windowexe.com - 2011.10.29 01:05 신고 댓글주소 수정/삭제 댓글쓰기

    이상하네요. 로그파일에는 그런 항목이 없는데요.

    아래명령줄을 복사해서 붙여넣기 하세요.

    ------------------------------------------------------------------------------------------------------------
    echo Start
    echo Kill Process & taskkill /im explorer.exe /f & echo wait
    echo Kill Process & taskkill /im IEXPLORE.EXE /f & echo wait
    echo 명령줄 수정금지(무단으로 수정하여 배포하면 아이피 통으로 차단됩니다.)
    echo Created by http://www.windowdel.com/bbs/board.php?bo_table=remove&wr_id=1013
    echo ################# 제작 : 프로세스 자료천국 http://www.windowexe.com #################
    echo wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 000 & taskkill /im "privacypc.exe" /f & echo windowdel.com
    echo 000 taskkill wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 000 & del /q "%PROGRAMFILES%\PrivacyPC\privacypc.exe" & echo windowdll.com
    echo 000 & del /q "%PROGRAMFILES(x86)%\PrivacyPC\privacypc.exe" & echo windowdll.com
    echo 001 & taskkill /im "privacypcBK.exe" /f & echo windowdel.com
    echo 001 taskkill wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 001 & del /q "%PROGRAMFILES%\PrivacyPC\privacypcBK.exe" & echo windowdrv.com
    echo 001 & del /q "%PROGRAMFILES(x86)%\PrivacyPC\privacypcBK.exe" & echo windowdrv.com
    echo 001 Created by www.windowdel.com
    echo 002 & taskkill /im "privacypcdm.exe" /f & echo windowdel.com
    echo 002 taskkill wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 002 & del /q "%PROGRAMFILES%\PrivacyPC\privacypcdm.exe" & echo windowexe.com
    echo 002 & del /q "%PROGRAMFILES(x86)%\PrivacyPC\privacypcdm.exe" & echo windowexe.com
    echo 003 & taskkill /im "privacypcU.exe" /f & echo windowdel.com
    echo 003 taskkill wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 003 & del /q "%PROGRAMFILES%\PrivacyPC\privacypcU.exe" & echo windowdll.com
    echo 003 & del /q "%PROGRAMFILES(x86)%\PrivacyPC\privacypcU.exe" & echo windowdll.com
    echo 003 Dll 파일 다운로드 www.windowdll.com
    echo 004 & taskkill /im "uninst_privacypc.exe" /f & echo windowdel.com
    echo 004 taskkill wait & ping 127.0.0.1 -n 1 > pingwait.txt
    echo 004 & del /q "%WINDIR%\system32\uninst_privacypc.exe" & echo windowdel.com
    echo Current time 2011-10-10 15:11:31
    echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "privacypcS" /f & echo created by windowdel.com
    echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "privacypcS" /f & echo created by windowexe.com
    echo 000 & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PrivacyPC" /f & echo 000 Uninstall Key
    echo created by windowdel.com
    echo 001 & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\PrivacyPC" /f & echo 001 Uninstall Key
    echo 000 Folder and Subfolder All delete Start
    echo 000 & rmdir /s /q "%PROGRAMFILES%\PrivacyPC"
    echo 001 & rmdir /s /q "%PROGRAMFILES(x86)%\PrivacyPC"
    echo Created by windowdel.com
    echo ################# 배포 : 프로그램삭제 자료천국 http://www.windowdel.com ###############
    echo 명령줄 수정금지(현재페이지 주소를 링크하세요.)
    echo 명령줄을 무단으로 수정하여 배포하는 경우가 확인되면 명령줄이 더 복잡하게 구성됩니다.
    echo 출처 : http://www.windowdel.com/bbs/board.php?bo_table=remove&wr_id=1013
    echo del pingwait.txt & del /q pingwait.txt
    echo 000 & explorer.exe & echo explorer start
    echo End
    ------------------------------------------------------------------------------------------------------------

  9. windowexe.com - 2011.10.29 01:16 신고 댓글주소 수정/삭제 댓글쓰기

    진단이름 Win-Adware/Rogue.Privacypc.611296
    파일 경로 C:\Program Files\PrivacuyPC\

  10. windowexe.com - 2011.10.29 22:15 신고 댓글주소 수정/삭제 댓글쓰기

    MicroLab SearchEngin LanguageConvert
    http://www.windowdel.com/bbs/board.php?bo_table=remove&wr_id=347

    microWebAD
    http://www.windowdel.com/bbs/board.php?bo_table=remove&wr_id=1001

  11. windowexe.com - 2011.11.03 01:02 신고 댓글주소 수정/삭제 댓글쓰기

    로그에는 프로세스, BHO, 툴바, 서비스에 ilivid와 관련이 있는 항목은 하나도 없는데요?

    다시 받은 로그도 별차이 없구요.

    프로그램 추가/제거 목록 얘기하는 건가요?
    echo Start
    echo HKEY_LOCAL_MACHINE Uninstall Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchCore for Browsers" /f
    echo HKEY_CURRENT_USER Uninstall Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchCore for Browsers" /f
    echo Created by Windowexe.com
    echo End

  12. windowexe.com - 2011.11.07 14:33 신고 댓글주소 수정/삭제 댓글쓰기

    서비스이름 : Rapid Disk IO Core Library
    파일명 : C:\Program Files\Free Software Foundation\rdskiolib.dll

    사용중인 프로그램인지 확인해보고 사용하지 않는 것이면 사용안함으로 설정하세요.

  13. windowexe.com - 2011.11.08 19:20 신고 댓글주소 수정/삭제 댓글쓰기

    다운매니저(Downmanager) 삭제 링크입니다.
    http://www.windowdel.com/bbs/board.php?bo_table=remove&wr_id=175

  14. windowexe.com - 2011.11.10 10:03 신고 댓글주소 수정/삭제 댓글쓰기

    시작 - 프로그램 - 보조프로그램 - 명령프롬프트를 실행해서 아래명령줄을 복사하여 붙여넣기 하세요.

    echo Start
    echo windowexe.com & taskkill /im "DownsCK.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "ShareBoxC.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Downs" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Downs" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ShareBox" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ShareBox" /f
    echo End

  15. windowexe.com - 2011.11.17 17:39 신고 댓글주소 수정/삭제 댓글쓰기

    시작 - 프로그램 - 보조프로그램 - 명령프롬프트를 실행하세요.
    (Windows Vista/7 운영체제에서는 마우스 우클릭하여 관리자모드로 실행하세요)

    아래 적색으로 표시된 명령줄을 모두 복사하여 명령프롬프트창에서 우클릭하여 붙여넣기 하세요.



    ----------------------------------------------------------------------
    echo Start
    echo windowexe.com & taskkill /im "AnyUCC.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "SCChkUpd.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "badakcodecpack.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "scchk" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "scchk" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ANYUCC" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ANYUCC" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IgfxTray" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IgfxTray" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "HotKeysCmds" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "HotKeysCmds" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Persistence" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Persistence" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "badakcodecpack" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "badakcodecpack" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adobe Reader Speed Launcher" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adobe Reader Speed Launcher" /f
    sc stop "BNDownService"
    echo Service Disable & sc config "BNDownService" start= disabled & echo Windowexe.com
    sc stop "oneconfusedperson"
    echo Service Disable & sc config "oneconfusedperson" start= disabled & echo Windowexe.com
    sc stop "philatrenishaw"
    echo Service Disable & sc config "philatrenishaw" start= disabled & echo Windowexe.com
    sc stop "rizwanjavaid"
    echo Service Disable & sc config "rizwanjavaid" start= disabled & echo Windowexe.com
    echo End
    ----------------------------------------------------------------------

  16. windowexe.com - 2011.11.27 23:23 신고 댓글주소 수정/삭제 댓글쓰기

    메일주소가 어떻게 되나요? sky****@naver.com인가요?

    아이피보고 맞는거 같아서 여기에 댓글로 달께요.


    시작 - 프로그램 - 보조프로그램에서 [명령프롬프트]를 실행하세요.
    Windows Vista/7 운영체제에서는 [명령프롬프트]를 마우스 우클릭하여 [관리자권한으로 실행]을 선택하세요.

    아래 표시된 명령줄을 모두 복사하여 명령프롬프트창에서 마우스 우클릭하여 붙여넣기 하세요.






    ======================================================================
    ======================================================================

    echo Start
    echo windowexe.com & taskkill /im "FineTop.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "SearchNQ.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "Pado.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "sevenlink.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "winfusvc.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FineTop" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FineTop" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SearchNQ" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SearchNQ" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "paulkimmel" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "paulkimmel" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "sevenlink" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "sevenlink" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BaroSearch" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BaroSearch" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{CBF53489-AD8D-4637-965A-413861EEC7CF}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{37276448-831B-4b61-8DC0-B63BA97251FA}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{37276448-831B-4b61-8DC0-B63BA97251FA}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{37276448-831B-4b61-8DC0-B63BA97251FA}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{37276448-831B-4b61-8DC0-B63BA97251FA}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{23C7E613-D0B3-422D-884C-2B6173435214}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{23C7E613-D0B3-422D-884C-2B6173435214}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{23C7E613-D0B3-422D-884C-2B6173435214}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{23C7E613-D0B3-422D-884C-2B6173435214}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}" /f
    echo Created by Windowexe.com
    sc stop "Windows MineService Diagnostics Service"
    echo Service Disable & sc config "Windows MineService Diagnostics Service" start= disabled & echo Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D51609DD-8FD8-4eb1-9714-CA093C12A0B8}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D51609DD-8FD8-4eb1-9714-CA093C12A0B8}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{664290A3-9ADB-4e0d-9762-EF088688AD41}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{664290A3-9ADB-4e0d-9762-EF088688AD41}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{57D1CDEE-1880-484f-8361-55D7626D2679}" /f
    echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{57D1CDEE-1880-484f-8361-55D7626D2679}" /f
    echo Created by Windowexe.com
    echo kill & taskkill /im "mifuumsvc.exe" /f
    echo file rename & rename "C:\Program Files (x86)\MineFuture\mifuumsvc.exe" "Renamed_by_Windowexe.com_mifuumsvc.exe"
    echo Created by Windowexe.com
    echo End

    ======================================================================
    ======================================================================


  17. windowexe.com - 2011.12.05 00:03 신고 댓글주소 수정/삭제 댓글쓰기

    /f 뒤에서 줄바꿈이 되어야 되는데 일부 메일에서 그런현상이 있는거 같네요.

    줄바꿈이 안되니 명령줄이 모두 다닥다닥붙어서 한번에 입력되는 현상인데요.

    아래에 있는 명령줄로 다시 해보세요.



    ======================================================================
    ======================================================================

    echo Start
    echo windowexe.com & taskkill /im "smartmode_se.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "MPopService.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "MicroCloudEngine.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "downmanager_se.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "CloudManager.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "IPlusUpdate.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "EasyOn.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "pzr.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "ozpluss.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "secretkeys.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "Micropop.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "IPlusUpdate" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "IPlusUpdate" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "xMarkTrans" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "xMarkTrans" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "EasyOn" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "EasyOn" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "xpeadup7" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "xpeadup7" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "pczero" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "pczero" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "livefloatv3" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "livefloatv3" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "addmsidebarAgent" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "addmsidebarAgent" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "ozplusv3" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "ozplusv3" /f
    echo HKCU Startup Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionRun" /v "secretkeyv3" /f
    echo HKLM Startup Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun" /v "secretkeyv3" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{CC01FC6C-1F83-4320-9636-45C62383782F}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{CC01FC6C-1F83-4320-9636-45C62383782F}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{CC01FC6C-1F83-4320-9636-45C62383782F}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{CC01FC6C-1F83-4320-9636-45C62383782F}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{B0261E36-9F52-457D-9397-887420905E2A}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{B0261E36-9F52-457D-9397-887420905E2A}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{B0261E36-9F52-457D-9397-887420905E2A}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{B0261E36-9F52-457D-9397-887420905E2A}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{884EAA16-CA35-4666-845A-DC084DCDF356}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{7CCA4EA6-CA02-4789-9419-34E85C7AC2DC}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{7CCA4EA6-CA02-4789-9419-34E85C7AC2DC}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{7CCA4EA6-CA02-4789-9419-34E85C7AC2DC}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{7CCA4EA6-CA02-4789-9419-34E85C7AC2DC}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{7929D6C5-77C2-4A94-8ABE-A84F5979A46B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{7929D6C5-77C2-4A94-8ABE-A84F5979A46B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{7929D6C5-77C2-4A94-8ABE-A84F5979A46B}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{7929D6C5-77C2-4A94-8ABE-A84F5979A46B}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{4CA6DE8F-8AD8-44A6-BC8C-2B39175CDD12}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{4CA6DE8F-8AD8-44A6-BC8C-2B39175CDD12}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{4CA6DE8F-8AD8-44A6-BC8C-2B39175CDD12}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{4CA6DE8F-8AD8-44A6-BC8C-2B39175CDD12}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{30CA4BED-6F5E-4E80-AEE3-05C13FA54759}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{30CA4BED-6F5E-4E80-AEE3-05C13FA54759}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{30CA4BED-6F5E-4E80-AEE3-05C13FA54759}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{30CA4BED-6F5E-4E80-AEE3-05C13FA54759}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{269E78C8-ADC4-468D-8C66-DE2E07D8AB58}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{269E78C8-ADC4-468D-8C66-DE2E07D8AB58}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{269E78C8-ADC4-468D-8C66-DE2E07D8AB58}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{269E78C8-ADC4-468D-8C66-DE2E07D8AB58}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{1CE681DC-1190-40EF-85A9-ADE47098CF51}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{1CE681DC-1190-40EF-85A9-ADE47098CF51}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{1CE681DC-1190-40EF-85A9-ADE47098CF51}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{1CE681DC-1190-40EF-85A9-ADE47098CF51}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{0BAB0BFA-D4FA-4965-94E2-5269BB66CB6B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{0BAB0BFA-D4FA-4965-94E2-5269BB66CB6B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{0BAB0BFA-D4FA-4965-94E2-5269BB66CB6B}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCRCLSID{0BAB0BFA-D4FA-4965-94E2-5269BB66CB6B}" /f
    echo Created by Windowexe.com
    echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLMSOFTWAREMicrosoftInternet ExplorerToolbar" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftInternet ExplorerToolbarWebBrowser" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo HKCU Search Hook Delete & reg.exe delete "HKCUSoftwareMicrosoftInternet ExplorerURLSearchHooks" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCRCLSID{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
    echo Created by Windowexe.com
    sc stop "xMarkTransSvcman"
    echo Service Disable & sc config "xMarkTransSvcman" start= disabled & echo Windowexe.com
    sc stop "SmartMode Update Service"
    echo Service Disable & sc config "SmartMode Update Service" start= disabled & echo Windowexe.com
    sc stop "pbsv"
    echo Service Disable & sc config "pbsv" start= disabled & echo Windowexe.com
    sc stop "MPopService"
    echo Service Disable & sc config "MPopService" start= disabled & echo Windowexe.com
    sc stop "MicroCloudEngine"
    echo Service Disable & sc config "MicroCloudEngine" start= disabled & echo Windowexe.com
    sc stop "mgsv"
    echo Service Disable & sc config "mgsv" start= disabled & echo Windowexe.com
    sc stop "DownManager Update Service"
    echo Service Disable & sc config "DownManager Update Service" start= disabled & echo Windowexe.com
    sc stop "CloudManager"
    echo Service Disable & sc config "CloudManager" start= disabled & echo Windowexe.com
    echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLMSOFTWAREMicrosoftInternet ExplorerExtensions{FF5CBC30-F3C4-4f82-B398-F01FC9A4830C}" /f
    echo HKCU EB Delete & reg.exe delete "HKCUSoftwareMicrosoftInternet ExplorerExtensions{FF5CBC30-F3C4-4f82-B398-F01FC9A4830C}" /f
    echo Created by Windowexe.com
    echo Tasklist Delete & del /q "C:WINDOWSTasksWebCompassUpdate.job"
    echo Created by Windowexe.com
    echo End

    ======================================================================
    ======================================================================




  18. windowexe.com - 2011.12.07 23:18 신고 댓글주소 수정/삭제 댓글쓰기

    아래의 명령줄을 복사하여 붙여넣기 하세요.
    명령프롬프트를 마우스 우클릭하여 관리자모드로 실행하세요.

    붙여넣기를 두어번 하고 로그를 다시 보내주세요. 정상적으로 삭제되었는지 확인해보죠.

    ======================================================================
    ======================================================================

    echo Start
    echo windowexe.com & taskkill /im "Updater.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "TopFind.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "SafeGuide.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "OpenCPTSvcMan.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "OpenCPTSvc.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "ntasvr.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "mdroouosvc.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "wcmgr.exe" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "wcmgr.exe" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "uspace" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "uspace" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "miskimer" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "miskimer" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "geemer" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "geemer" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "complus" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "complus" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "OpenCap" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "OpenCap" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DragSearch" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DragSearch" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo Created by Windowexe.com
    sc stop "Windows MineService Diagnostics Service"
    echo Service Disable & sc config "Windows MineService Diagnostics Service" start= disabled & echo Windowexe.com
    sc stop "wcsv"
    echo Service Disable & sc config "wcsv" start= disabled & echo Windowexe.com
    sc stop "OpenCapSvcman"
    echo Service Disable & sc config "OpenCapSvcman" start= disabled & echo Windowexe.com
    sc stop "NTAService"
    echo Service Disable & sc config "NTAService" start= disabled & echo Windowexe.com
    echo kill & taskkill /im "mdroouosvc.exe" /f
    echo file rename & rename "C:\Program Files (x86)\ModenRoo\mdroouosvc.exe" "Renamed_by_Windowexe.com_mdroouosvc.exe"
    echo Created by Windowexe.com
    echo End

    ======================================================================
    ======================================================================

  19. windowexe.com - 2011.12.08 13:39 신고 댓글주소 수정/삭제 댓글쓰기



    ======================================================================
    ======================================================================

    echo Start
    echo windowexe.com & taskkill /im "OpenCPTSvcMan.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "ntasvr.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "OpenCPTSvc.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "Updater.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "TopFind.exe" /f & echo windowdel.com
    echo windowexe.com & taskkill /im "SafeGuide.exe" /f & echo windowdel.com
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "wcmgr.exe" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "wcmgr.exe" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "uspace" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "uspace" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "miskimer" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "miskimer" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "geemer" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "geemer" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "complus" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "complus" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "OpenCap" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "OpenCap" /f
    echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DragSearch" /f
    echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DragSearch" /f
    echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3962B3B6-6DF5-4349-AFFD-12594BC7938B}" /f
    echo Created by Windowexe.com
    sc stop "Windows MineService Diagnostics Service"
    echo Service Disable & sc config "Windows MineService Diagnostics Service" start= disabled & echo Windowexe.com
    sc stop "wcsv"
    echo Service Disable & sc config "wcsv" start= disabled & echo Windowexe.com
    sc stop "OpenCapSvcman"
    echo Service Disable & sc config "OpenCapSvcman" start= disabled & echo Windowexe.com
    sc stop "NTAService"
    echo Service Disable & sc config "NTAService" start= disabled & echo Windowexe.com
    echo End

    ======================================================================
    ======================================================================




티스토리 툴바