애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


System Analyzer Report 2013, 03, 03

NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "MicroProProc" & echo windowdel.com
NA006 echo windowexe.com & tskill "MicroProCon" & echo windowdel.com
NA007 echo windowexe.com & tskill "windvieweragent" & echo windowdel.com
NA008 echo windowexe.com & tskill "windviewer" & echo windowdel.com
NA009 echo windowexe.com & tskill "windopt" & echo windowdel.com
NA010 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA011 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA012 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA013 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA014 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA015 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA016 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA017 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA018 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA019 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA020 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windvieweropt" /f
NA021 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windvieweropt" /f
NA022 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windvieweragent" /f
NA023 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windvieweragent" /f
NA024 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windviewer" /f
NA025 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windviewer" /f
NA026 sc stop "tnkljfkzboz"
NA027 echo Service Disable & sc config "tnkljfkzboz" start= disabled & echo Windowexe.com
NA028 sc stop "TCCheckAgent"
NA029 echo Service Disable & sc config "TCCheckAgent" start= disabled & echo Windowexe.com
NA030 sc stop "svclcaskkkz"
NA031 echo Service Disable & sc config "svclcaskkkz" start= disabled & echo Windowexe.com
NA032 sc stop "SearchN"
NA033 echo Service Disable & sc config "SearchN" start= disabled & echo Windowexe.com
NA034 sc stop "RPGSvcman"
NA035 echo Service Disable & sc config "RPGSvcman" start= disabled & echo Windowexe.com
NA036 sc stop "rhplinfqs"
NA037 echo Service Disable & sc config "rhplinfqs" start= disabled & echo Windowexe.com
NA038 sc stop "ncighstd"
NA039 echo Service Disable & sc config "ncighstd" start= disabled & echo Windowexe.com
NA040 sc stop "fmzwrbz"
NA041 echo Service Disable & sc config "fmzwrbz" start= disabled & echo Windowexe.com
NA042 sc stop "dogrwsmkj"
NA043 echo Service Disable & sc config "dogrwsmkj" start= disabled & echo Windowexe.com
NA044 sc stop "crzflgqdg"
NA045 echo Service Disable & sc config "crzflgqdg" start= disabled & echo Windowexe.com
NA046 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
NA047 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
NA048 echo Created by Windowexe.com
NA049 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
NA050 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
NA051 echo Created by Windowexe.com
NA052 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
NA053 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
NA054 echo Created by Windowexe.com
NA055 echo schtasks Delete & schtasks /delete /tn "xvidShare uninstall" /f
NA056 echo Created by Windowexe.com
NA057 echo schtasks Delete & schtasks /delete /tn "Windows Visual ad php" /f
NA058 echo Created by Windowexe.com
NA059 echo schtasks Delete & schtasks /delete /tn "Windows prime ad-pop" /f
NA060 echo Created by Windowexe.com
NA061 echo schtasks Delete & schtasks /delete /tn "Windows hitlink ad-System [hitlink]" /f
NA062 echo Created by Windowexe.com
NA063 echo schtasks Delete & schtasks /delete /tn "windows cloudpop Manager_" /f
NA064 echo Created by Windowexe.com
NA065 echo schtasks Delete & schtasks /delete /tn "windows cloudpop Manager" /f
NA066 echo Created by Windowexe.com
NA067 echo schtasks Delete & schtasks /delete /tn "Window Fortune 업데이트 실행" /f
NA068 echo Created by Windowexe.com
NA069 echo schtasks Delete & schtasks /delete /tn "Window FindKey Controller" /f
NA070 echo Created by Windowexe.com
NA071 echo schtasks Delete & schtasks /delete /tn "Window Alarm 업데이트 실행" /f
NA072 echo Created by Windowexe.com
NA073 echo schtasks Delete & schtasks /delete /tn "SWSTART" /f
NA074 echo Created by Windowexe.com
NA075 echo schtasks Delete & schtasks /delete /tn "MedianVaccine 실행" /f
NA076 echo Created by Windowexe.com
NA077 echo schtasks Delete & schtasks /delete /tn "Internet Explorer Searcher Keywordpop" /f
NA078 echo Created by Windowexe.com
NA079 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA080 echo Created by Windowexe.com
NA081 echo schtasks Delete & schtasks /delete /tn "AnCamCorder 실행" /f
NA082 echo Created by Windowexe.com
NA083 echo change dir for x64
NA084 cd %windir%
NA085 cd syswow64
NA086 echo windowexe.com & tskill "MicroProProc" & echo windowdel.com
NA087 echo windowexe.com & tskill "MicroProCon" & echo windowdel.com
NA088 echo windowexe.com & tskill "windvieweragent" & echo windowdel.com
NA089 echo windowexe.com & tskill "windviewer" & echo windowdel.com
NA090 echo windowexe.com & tskill "windopt" & echo windowdel.com
NA091 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA092 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA093 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA094 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA095 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA096 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA097 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA098 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA099 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA100 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA101 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windvieweropt" /f
NA102 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windvieweropt" /f
NA103 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windvieweragent" /f
NA104 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windvieweragent" /f
NA105 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windviewer" /f
NA106 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windviewer" /f
NA107 sc stop "tnkljfkzboz"
NA108 echo Service Disable & sc config "tnkljfkzboz" start= disabled & echo Windowexe.com
NA109 sc stop "TCCheckAgent"
NA110 echo Service Disable & sc config "TCCheckAgent" start= disabled & echo Windowexe.com
NA111 sc stop "svclcaskkkz"
NA112 echo Service Disable & sc config "svclcaskkkz" start= disabled & echo Windowexe.com
NA113 sc stop "SearchN"
NA114 echo Service Disable & sc config "SearchN" start= disabled & echo Windowexe.com
NA115 sc stop "RPGSvcman"
NA116 echo Service Disable & sc config "RPGSvcman" start= disabled & echo Windowexe.com
NA117 sc stop "rhplinfqs"
NA118 echo Service Disable & sc config "rhplinfqs" start= disabled & echo Windowexe.com
NA119 sc stop "ncighstd"
NA120 echo Service Disable & sc config "ncighstd" start= disabled & echo Windowexe.com
NA121 sc stop "fmzwrbz"
NA122 echo Service Disable & sc config "fmzwrbz" start= disabled & echo Windowexe.com
NA123 sc stop "dogrwsmkj"
NA124 echo Service Disable & sc config "dogrwsmkj" start= disabled & echo Windowexe.com
NA125 sc stop "crzflgqdg"
NA126 echo Service Disable & sc config "crzflgqdg" start= disabled & echo Windowexe.com
NA127 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
NA128 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
NA129 echo Created by Windowexe.com
NA130 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
NA131 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
NA132 echo Created by Windowexe.com
NA133 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
NA134 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
NA135 echo Created by Windowexe.com
NA136 echo schtasks Delete & schtasks /delete /tn "xvidShare uninstall" /f
NA137 echo Created by Windowexe.com
NA138 echo schtasks Delete & schtasks /delete /tn "Windows Visual ad php" /f
NA139 echo Created by Windowexe.com
NA140 echo schtasks Delete & schtasks /delete /tn "Windows prime ad-pop" /f
NA141 echo Created by Windowexe.com
NA142 echo schtasks Delete & schtasks /delete /tn "Windows hitlink ad-System [hitlink]" /f
NA143 echo Created by Windowexe.com
NA144 echo schtasks Delete & schtasks /delete /tn "windows cloudpop Manager_" /f
NA145 echo Created by Windowexe.com
NA146 echo schtasks Delete & schtasks /delete /tn "windows cloudpop Manager" /f
NA147 echo Created by Windowexe.com
NA148 echo schtasks Delete & schtasks /delete /tn "Window Fortune 업데이트 실행" /f
NA149 echo Created by Windowexe.com
NA150 echo schtasks Delete & schtasks /delete /tn "Window FindKey Controller" /f
NA151 echo Created by Windowexe.com
NA152 echo schtasks Delete & schtasks /delete /tn "Window Alarm 업데이트 실행" /f
NA153 echo Created by Windowexe.com
NA154 echo schtasks Delete & schtasks /delete /tn "SWSTART" /f
NA155 echo Created by Windowexe.com
NA156 echo schtasks Delete & schtasks /delete /tn "MedianVaccine 실행" /f
NA157 echo Created by Windowexe.com
NA158 echo schtasks Delete & schtasks /delete /tn "Internet Explorer Searcher Keywordpop" /f
NA159 echo Created by Windowexe.com
NA160 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA161 echo Created by Windowexe.com
NA162 echo schtasks Delete & schtasks /delete /tn "AnCamCorder 실행" /f
NA163 echo Created by Windowexe.com
NA164 echo End
NA165 ======================================================================
NA166 echo Created by Windowexe.com / do not delete this label.
NA167 ======================================================================




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 3. 3. 21:00 ] Posted by 프로세스 천국 , 프로그램분석
,