프로그램분석

Code : 5poMOTcPb03qaDlBSjgnZTxX8uW7Tyfo

프로세스 천국 2013. 3. 17. 17:08

System Analyzer Report 2013, 03, 17

NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "userinforesetupdate" & echo windowdel.com
NA006 echo windowexe.com & tskill "wdrwsmsvc" & echo windowdel.com
NA007 echo windowexe.com & tskill "svcwsmwin" & echo windowdel.com
NA008 echo windowexe.com & tskill "winggou" & echo windowdel.com
NA009 echo windowexe.com & tskill "FBDSvcMan" & echo windowdel.com
NA010 echo windowexe.com & tskill "FBDManager" & echo windowdel.com
NA011 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA012 echo windowexe.com & tskill "update" & echo windowdel.com
NA013 echo windowexe.com & tskill "appis" & echo windowdel.com
NA014 echo windowexe.com & tskill "windowviewconup" & echo windowdel.com
NA015 echo windowexe.com & tskill "windowstabup" & echo windowdel.com
NA016 echo windowexe.com & tskill "windowsphup" & echo windowdel.com
NA017 echo windowexe.com & tskill "windowfasterse" & echo windowdel.com
NA018 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA019 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA020 echo windowexe.com & tskill "keywordpop" & echo windowdel.com
NA021 echo windowexe.com & tskill "HSSearch" & echo windowdel.com
NA022 echo windowexe.com & tskill "barosvc" & echo windowdel.com
NA023 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA024 echo windowexe.com & tskill "update" & echo windowdel.com
NA025 echo windowexe.com & tskill "appis" & echo windowdel.com
NA026 echo windowexe.com & tskill "userinforesetupdate" & echo windowdel.com
NA027 echo windowexe.com & tskill "wdrwsmsvc" & echo windowdel.com
NA028 echo windowexe.com & tskill "svcwsmwin" & echo windowdel.com
NA029 echo windowexe.com & tskill "winggou" & echo windowdel.com
NA030 echo windowexe.com & tskill "winggom" & echo windowdel.com
NA031 echo windowexe.com & tskill "SpeedGet" & echo windowdel.com
NA032 echo windowexe.com & tskill "FBDSvcMan" & echo windowdel.com
NA033 echo windowexe.com & tskill "FBDManager" & echo windowdel.com
NA034 echo windowexe.com & tskill "fbdchk" & echo windowdel.com
NA035 echo windowexe.com & tskill "skun" & echo windowdel.com
NA036 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA037 echo windowexe.com & tskill "iesignkey" & echo windowdel.com
NA038 echo windowexe.com & tskill "update" & echo windowdel.com
NA039 echo windowexe.com & tskill "appis" & echo windowdel.com
NA040 echo windowexe.com & tskill "windowviewconup" & echo windowdel.com
NA041 echo windowexe.com & tskill "windowviewcon" & echo windowdel.com
NA042 echo windowexe.com & tskill "windowstabup" & echo windowdel.com
NA043 echo windowexe.com & tskill "windowstab" & echo windowdel.com
NA044 echo windowexe.com & tskill "windowsphup" & echo windowdel.com
NA045 echo windowexe.com & tskill "windowsph" & echo windowdel.com
NA046 echo windowexe.com & tskill "winsmex" & echo windowdel.com
NA047 echo windowexe.com & tskill "windowfasterU" & echo windowdel.com
NA048 echo windowexe.com & tskill "windowfasterse" & echo windowdel.com
NA049 echo windowexe.com & tskill "windowfasterEngine" & echo windowdel.com
NA050 echo windowexe.com & tskill "windowfaster" & echo windowdel.com
NA051 echo windowexe.com & tskill "winAPUMUpdate" & echo windowdel.com
NA052 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA053 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA054 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA055 echo windowexe.com & tskill "TopFindUpdate" & echo windowdel.com
NA056 echo windowexe.com & tskill "TopFind" & echo windowdel.com
NA057 echo windowexe.com & tskill "SmartWS" & echo windowdel.com
NA058 echo windowexe.com & tskill "SmartWD" & echo windowdel.com
NA059 echo windowexe.com & tskill "SmartWC" & echo windowdel.com
NA060 echo windowexe.com & tskill "keywordpop" & echo windowdel.com
NA061 echo windowexe.com & tskill "HSSvcApp" & echo windowdel.com
NA062 echo windowexe.com & tskill "HSSearch" & echo windowdel.com
NA063 echo windowexe.com & tskill "barosvc" & echo windowdel.com
NA064 echo windowexe.com & tskill "barocn" & echo windowdel.com
NA065 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA066 echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
NA067 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA068 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA069 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA070 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA071 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA072 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA073 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrive main" /f
NA074 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrive main" /f
NA075 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "rpga" /f
NA076 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "rpga" /f
NA077 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SpeedDownload" /f
NA078 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SpeedDownload" /f
NA079 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
NA080 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
NA081 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windowviewcon" /f
NA082 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windowviewcon" /f
NA083 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WindowsPurchaseHelper" /f
NA084 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WindowsPurchaseHelper" /f
NA085 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "HiSch" /f
NA086 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "HiSch" /f
NA087 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WingGo" /f
NA088 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WingGo" /f
NA089 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA090 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA091 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA092 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA093 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WindowsTab" /f
NA094 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WindowsTab" /f
NA095 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "metablogagent" /f
NA096 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "metablogagent" /f
NA097 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MetablogNewIssues" /f
NA098 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MetablogNewIssues" /f
NA099 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA100 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA101 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA102 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA103 echo Created by Windowexe.com
NA104 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA105 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA106 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA107 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA108 echo Created by Windowexe.com
NA109 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA110 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA111 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA112 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA113 echo Created by Windowexe.com
NA114 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA115 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA116 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA117 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA118 echo Created by Windowexe.com
NA119 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA120 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA121 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA122 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA123 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA124 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA125 echo Created by Windowexe.com
NA126 sc stop "vaccinedrive Update Service"
NA127 echo Service Disable & sc config "vaccinedrive Update Service" start= disabled & echo Windowexe.com
NA128 sc stop "Windows WinsManager Diagnostics Service"
NA129 echo Service Disable & sc config "Windows WinsManager Diagnostics Service" start= disabled & echo Windowexe.com
NA130 sc stop "WinsManager Service"
NA131 echo Service Disable & sc config "WinsManager Service" start= disabled & echo Windowexe.com
NA132 sc stop "barocn"
NA133 echo Service Disable & sc config "barocn" start= disabled & echo Windowexe.com
NA134 sc stop "windowfasterService"
NA135 echo Service Disable & sc config "windowfasterService" start= disabled & echo Windowexe.com
NA136 sc stop "windowfaster Update Service"
NA137 echo Service Disable & sc config "windowfaster Update Service" start= disabled & echo Windowexe.com
NA138 sc stop "FBDSvcman"
NA139 echo Service Disable & sc config "FBDSvcman" start= disabled & echo Windowexe.com
NA140 echo schtasks Delete & schtasks /delete /tn "TopFind" /f
NA141 echo Created by Windowexe.com
NA142 echo schtasks Delete & schtasks /delete /tn "SWSTART" /f
NA143 echo Created by Windowexe.com
NA144 echo schtasks Delete & schtasks /delete /tn "Internet Explorer Searcher Keywordpop" /f
NA145 echo Created by Windowexe.com
NA146 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA147 echo Created by Windowexe.com
NA148 echo schtasks Delete & schtasks /delete /tn "AppIs" /f
NA149 echo Created by Windowexe.com
NA150 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA151 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA152 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\신전 온라인.url"
NA153 echo file Delete & del /q "C:\Users\Administrator\Desktop\신전 온라인.url"
NA154 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\★오디스크 - 최신자료무료다운★.url"
NA155 echo file Delete & del /q "C:\Users\Administrator\Desktop\★오디스크 - 최신자료무료다운★.url"
NA156 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.url"
NA157 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.url"
NA158 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.url"
NA159 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.url"
NA160 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\10원경매 럭키타임.url"
NA161 echo file Delete & del /q "C:\Users\Administrator\Desktop\10원경매 럭키타임.url"
NA162 echo 000 & reg.exe delete "HKCR\CLSID\{5121BCAB-14D5-40AD-A469-4437CC51F7AA}" /f & echo windowdel.com
NA163 echo Created by Windowexe.com
NA164 echo 000 & reg.exe delete "HKCR\CLSID\{A832F633-668F-4F8A-9EA1-A6375D1C1418}" /f & echo windowdel.com
NA165 echo Created by Windowexe.com
NA166 echo change dir for x64
NA167 cd %windir%
NA168 cd syswow64
NA169 echo windowexe.com & tskill "userinforesetupdate" & echo windowdel.com
NA170 echo windowexe.com & tskill "wdrwsmsvc" & echo windowdel.com
NA171 echo windowexe.com & tskill "svcwsmwin" & echo windowdel.com
NA172 echo windowexe.com & tskill "winggou" & echo windowdel.com
NA173 echo windowexe.com & tskill "FBDSvcMan" & echo windowdel.com
NA174 echo windowexe.com & tskill "FBDManager" & echo windowdel.com
NA175 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA176 echo windowexe.com & tskill "update" & echo windowdel.com
NA177 echo windowexe.com & tskill "appis" & echo windowdel.com
NA178 echo windowexe.com & tskill "windowviewconup" & echo windowdel.com
NA179 echo windowexe.com & tskill "windowstabup" & echo windowdel.com
NA180 echo windowexe.com & tskill "windowsphup" & echo windowdel.com
NA181 echo windowexe.com & tskill "windowfasterse" & echo windowdel.com
NA182 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA183 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA184 echo windowexe.com & tskill "keywordpop" & echo windowdel.com
NA185 echo windowexe.com & tskill "HSSearch" & echo windowdel.com
NA186 echo windowexe.com & tskill "barosvc" & echo windowdel.com
NA187 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA188 echo windowexe.com & tskill "update" & echo windowdel.com
NA189 echo windowexe.com & tskill "appis" & echo windowdel.com
NA190 echo windowexe.com & tskill "userinforesetupdate" & echo windowdel.com
NA191 echo windowexe.com & tskill "wdrwsmsvc" & echo windowdel.com
NA192 echo windowexe.com & tskill "svcwsmwin" & echo windowdel.com
NA193 echo windowexe.com & tskill "winggou" & echo windowdel.com
NA194 echo windowexe.com & tskill "winggom" & echo windowdel.com
NA195 echo windowexe.com & tskill "SpeedGet" & echo windowdel.com
NA196 echo windowexe.com & tskill "FBDSvcMan" & echo windowdel.com
NA197 echo windowexe.com & tskill "FBDManager" & echo windowdel.com
NA198 echo windowexe.com & tskill "fbdchk" & echo windowdel.com
NA199 echo windowexe.com & tskill "skun" & echo windowdel.com
NA200 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA201 echo windowexe.com & tskill "iesignkey" & echo windowdel.com
NA202 echo windowexe.com & tskill "update" & echo windowdel.com
NA203 echo windowexe.com & tskill "appis" & echo windowdel.com
NA204 echo windowexe.com & tskill "windowviewconup" & echo windowdel.com
NA205 echo windowexe.com & tskill "windowviewcon" & echo windowdel.com
NA206 echo windowexe.com & tskill "windowstabup" & echo windowdel.com
NA207 echo windowexe.com & tskill "windowstab" & echo windowdel.com
NA208 echo windowexe.com & tskill "windowsphup" & echo windowdel.com
NA209 echo windowexe.com & tskill "windowsph" & echo windowdel.com
NA210 echo windowexe.com & tskill "winsmex" & echo windowdel.com
NA211 echo windowexe.com & tskill "windowfasterU" & echo windowdel.com
NA212 echo windowexe.com & tskill "windowfasterse" & echo windowdel.com
NA213 echo windowexe.com & tskill "windowfasterEngine" & echo windowdel.com
NA214 echo windowexe.com & tskill "windowfaster" & echo windowdel.com
NA215 echo windowexe.com & tskill "winAPUMUpdate" & echo windowdel.com
NA216 echo windowexe.com & tskill "vaccinedriveu" & echo windowdel.com
NA217 echo windowexe.com & tskill "vaccinedrivestart" & echo windowdel.com
NA218 echo windowexe.com & tskill "vaccinedrive" & echo windowdel.com
NA219 echo windowexe.com & tskill "TopFindUpdate" & echo windowdel.com
NA220 echo windowexe.com & tskill "TopFind" & echo windowdel.com
NA221 echo windowexe.com & tskill "SmartWS" & echo windowdel.com
NA222 echo windowexe.com & tskill "SmartWD" & echo windowdel.com
NA223 echo windowexe.com & tskill "SmartWC" & echo windowdel.com
NA224 echo windowexe.com & tskill "keywordpop" & echo windowdel.com
NA225 echo windowexe.com & tskill "HSSvcApp" & echo windowdel.com
NA226 echo windowexe.com & tskill "HSSearch" & echo windowdel.com
NA227 echo windowexe.com & tskill "barosvc" & echo windowdel.com
NA228 echo windowexe.com & tskill "barocn" & echo windowdel.com
NA229 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA230 echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
NA231 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA232 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA233 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA234 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA235 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA236 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrivestart.exe" /f
NA237 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrive main" /f
NA238 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinedrive main" /f
NA239 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "rpga" /f
NA240 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "rpga" /f
NA241 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SpeedDownload" /f
NA242 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SpeedDownload" /f
NA243 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
NA244 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
NA245 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windowviewcon" /f
NA246 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windowviewcon" /f
NA247 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WindowsPurchaseHelper" /f
NA248 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WindowsPurchaseHelper" /f
NA249 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "HiSch" /f
NA250 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "HiSch" /f
NA251 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WingGo" /f
NA252 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WingGo" /f
NA253 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA254 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA255 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA256 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA257 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WindowsTab" /f
NA258 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WindowsTab" /f
NA259 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "metablogagent" /f
NA260 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "metablogagent" /f
NA261 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MetablogNewIssues" /f
NA262 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MetablogNewIssues" /f
NA263 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA264 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA265 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA266 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{A433374B-2F44-402B-AB7E-E58B4A09DF8A}" /f
NA267 echo Created by Windowexe.com
NA268 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA269 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA270 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA271 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{48B6053A-F6EC-4A30-AF7D-1F174DE8ABE1}" /f
NA272 echo Created by Windowexe.com
NA273 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA274 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA275 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA276 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA277 echo Created by Windowexe.com
NA278 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA279 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA280 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA281 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{002B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA282 echo Created by Windowexe.com
NA283 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA284 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA285 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA286 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA287 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA288 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{003B9765-AB24-47E6-8DB6-6A1A0CE11BC9}" /f
NA289 echo Created by Windowexe.com
NA290 sc stop "vaccinedrive Update Service"
NA291 echo Service Disable & sc config "vaccinedrive Update Service" start= disabled & echo Windowexe.com
NA292 sc stop "Windows WinsManager Diagnostics Service"
NA293 echo Service Disable & sc config "Windows WinsManager Diagnostics Service" start= disabled & echo Windowexe.com
NA294 sc stop "WinsManager Service"
NA295 echo Service Disable & sc config "WinsManager Service" start= disabled & echo Windowexe.com
NA296 sc stop "barocn"
NA297 echo Service Disable & sc config "barocn" start= disabled & echo Windowexe.com
NA298 sc stop "windowfasterService"
NA299 echo Service Disable & sc config "windowfasterService" start= disabled & echo Windowexe.com
NA300 sc stop "windowfaster Update Service"
NA301 echo Service Disable & sc config "windowfaster Update Service" start= disabled & echo Windowexe.com
NA302 sc stop "FBDSvcman"
NA303 echo Service Disable & sc config "FBDSvcman" start= disabled & echo Windowexe.com
NA304 echo schtasks Delete & schtasks /delete /tn "TopFind" /f
NA305 echo Created by Windowexe.com
NA306 echo schtasks Delete & schtasks /delete /tn "SWSTART" /f
NA307 echo Created by Windowexe.com
NA308 echo schtasks Delete & schtasks /delete /tn "Internet Explorer Searcher Keywordpop" /f
NA309 echo Created by Windowexe.com
NA310 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA311 echo Created by Windowexe.com
NA312 echo schtasks Delete & schtasks /delete /tn "AppIs" /f
NA313 echo Created by Windowexe.com
NA314 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA315 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA316 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\신전 온라인.url"
NA317 echo file Delete & del /q "C:\Users\Administrator\Desktop\신전 온라인.url"
NA318 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\★오디스크 - 최신자료무료다운★.url"
NA319 echo file Delete & del /q "C:\Users\Administrator\Desktop\★오디스크 - 최신자료무료다운★.url"
NA320 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.url"
NA321 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.url"
NA322 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.url"
NA323 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.url"
NA324 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\10원경매 럭키타임.url"
NA325 echo file Delete & del /q "C:\Users\Administrator\Desktop\10원경매 럭키타임.url"
NA326 echo 000 & reg.exe delete "HKCR\CLSID\{5121BCAB-14D5-40AD-A469-4437CC51F7AA}" /f & echo windowdel.com
NA327 echo Created by Windowexe.com
NA328 echo 000 & reg.exe delete "HKCR\CLSID\{A832F633-668F-4F8A-9EA1-A6375D1C1418}" /f & echo windowdel.com
NA329 echo Created by Windowexe.com
NA330 echo End
NA331 ======================================================================
NA332 echo Created by Windowexe.com / do not delete this label.
NA333 ======================================================================