애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


System Analyzer Report 2013, 03, 12

NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "svcspwin" & echo windowdel.com
NA006 echo windowexe.com & tskill "infocontroluser" & echo windowdel.com
NA007 echo windowexe.com & tskill "update" & echo windowdel.com
NA008 echo windowexe.com & tskill "appis" & echo windowdel.com
NA009 echo windowexe.com & tskill "vaccinewebu" & echo windowdel.com
NA010 echo windowexe.com & tskill "vaccinewebstart" & echo windowdel.com
NA011 echo windowexe.com & tskill "micropoweroff_uc" & echo windowdel.com
NA012 echo windowexe.com & tskill "micropoweroff_mon" & echo windowdel.com
NA013 echo windowexe.com & tskill "lpupdate" & echo windowdel.com
NA014 echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
NA015 echo windowexe.com & tskill "파일함탐색기" & echo windowdel.com
NA016 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA017 echo windowexe.com & tskill "update" & echo windowdel.com
NA018 echo windowexe.com & tskill "appis" & echo windowdel.com
NA019 echo windowexe.com & tskill "svcspwin" & echo windowdel.com
NA020 echo windowexe.com & tskill "infocontroluser" & echo windowdel.com
NA021 echo windowexe.com & tskill "update" & echo windowdel.com
NA022 echo windowexe.com & tskill "appis" & echo windowdel.com
NA023 echo windowexe.com & tskill "winspex" & echo windowdel.com
NA024 echo windowexe.com & tskill "vaccinewebu" & echo windowdel.com
NA025 echo windowexe.com & tskill "vaccinewebstart" & echo windowdel.com
NA026 echo windowexe.com & tskill "vaccineweb" & echo windowdel.com
NA027 echo windowexe.com & tskill "micropoweroff_uc" & echo windowdel.com
NA028 echo windowexe.com & tskill "micropoweroff_mon" & echo windowdel.com
NA029 echo windowexe.com & tskill "lpupdate" & echo windowdel.com
NA030 echo windowexe.com & tskill "Update" & echo windowdel.com
NA031 echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
NA032 echo windowexe.com & tskill "FileHamUpdater" & echo windowdel.com
NA033 echo windowexe.com & tskill "파일함탐색기" & echo windowdel.com
NA034 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA035 echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
NA036 echo windowexe.com & tskill "micropoweroff" & echo windowdel.com
NA037 echo windowexe.com & tskill "LiteWindowU" & echo windowdel.com
NA038 echo windowexe.com & tskill "LiteWindow" & echo windowdel.com
NA039 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinewebstart.exe" /f
NA040 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinewebstart.exe" /f
NA041 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccineweb main" /f
NA042 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccineweb main" /f
NA043 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA044 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA045 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA046 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA047 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "liveplus" /f
NA048 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "liveplus" /f
NA049 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
NA050 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
NA051 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FileHamBrowser" /f
NA052 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FileHamBrowser" /f
NA053 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA054 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA055 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "poweroff/counter.php" /f
NA056 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "poweroff/counter.php" /f
NA057 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA058 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA059 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA060 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA061 echo Created by Windowexe.com
NA062 sc stop "Windows WinsPop Diagnostics Service"
NA063 echo Service Disable & sc config "Windows WinsPop Diagnostics Service" start= disabled & echo Windowexe.com
NA064 sc stop "vaccineweb Update Service"
NA065 echo Service Disable & sc config "vaccineweb Update Service" start= disabled & echo Windowexe.com
NA066 sc stop "WinsPop Service"
NA067 echo Service Disable & sc config "WinsPop Service" start= disabled & echo Windowexe.com
NA068 sc stop "trttmpo"
NA069 echo Service Disable & sc config "trttmpo" start= disabled & echo Windowexe.com
NA070 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
NA071 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
NA072 echo Created by Windowexe.com
NA073 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
NA074 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
NA075 echo Created by Windowexe.com
NA076 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
NA077 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
NA078 echo Created by Windowexe.com
NA079 echo schtasks Delete & schtasks /delete /tn "LiteWindow_uninst" /f
NA080 echo Created by Windowexe.com
NA081 echo schtasks Delete & schtasks /delete /tn "LiteWindow" /f
NA082 echo Created by Windowexe.com
NA083 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA084 echo Created by Windowexe.com
NA085 echo schtasks Delete & schtasks /delete /tn "AppIs" /f
NA086 echo Created by Windowexe.com
NA087 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\위메프.url"
NA088 echo file Delete & del /q "C:\Users\Administrator\Desktop\위메프.url"
NA089 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\웹하드 중복쿠폰 모음.url"
NA090 echo file Delete & del /q "C:\Users\Administrator\Desktop\웹하드 중복쿠폰 모음.url"
NA091 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA092 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA093 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.url"
NA094 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.url"
NA095 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.url"
NA096 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.url"
NA097 echo change dir for x64
NA098 cd %windir%
NA099 cd syswow64
NA100 echo windowexe.com & tskill "svcspwin" & echo windowdel.com
NA101 echo windowexe.com & tskill "infocontroluser" & echo windowdel.com
NA102 echo windowexe.com & tskill "update" & echo windowdel.com
NA103 echo windowexe.com & tskill "appis" & echo windowdel.com
NA104 echo windowexe.com & tskill "vaccinewebu" & echo windowdel.com
NA105 echo windowexe.com & tskill "vaccinewebstart" & echo windowdel.com
NA106 echo windowexe.com & tskill "micropoweroff_uc" & echo windowdel.com
NA107 echo windowexe.com & tskill "micropoweroff_mon" & echo windowdel.com
NA108 echo windowexe.com & tskill "lpupdate" & echo windowdel.com
NA109 echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
NA110 echo windowexe.com & tskill "파일함탐색기" & echo windowdel.com
NA111 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA112 echo windowexe.com & tskill "update" & echo windowdel.com
NA113 echo windowexe.com & tskill "appis" & echo windowdel.com
NA114 echo windowexe.com & tskill "svcspwin" & echo windowdel.com
NA115 echo windowexe.com & tskill "infocontroluser" & echo windowdel.com
NA116 echo windowexe.com & tskill "update" & echo windowdel.com
NA117 echo windowexe.com & tskill "appis" & echo windowdel.com
NA118 echo windowexe.com & tskill "winspex" & echo windowdel.com
NA119 echo windowexe.com & tskill "vaccinewebu" & echo windowdel.com
NA120 echo windowexe.com & tskill "vaccinewebstart" & echo windowdel.com
NA121 echo windowexe.com & tskill "vaccineweb" & echo windowdel.com
NA122 echo windowexe.com & tskill "micropoweroff_uc" & echo windowdel.com
NA123 echo windowexe.com & tskill "micropoweroff_mon" & echo windowdel.com
NA124 echo windowexe.com & tskill "lpupdate" & echo windowdel.com
NA125 echo windowexe.com & tskill "Update" & echo windowdel.com
NA126 echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
NA127 echo windowexe.com & tskill "FileHamUpdater" & echo windowdel.com
NA128 echo windowexe.com & tskill "파일함탐색기" & echo windowdel.com
NA129 echo windowexe.com & tskill "TCSearch" & echo windowdel.com
NA130 echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
NA131 echo windowexe.com & tskill "micropoweroff" & echo windowdel.com
NA132 echo windowexe.com & tskill "LiteWindowU" & echo windowdel.com
NA133 echo windowexe.com & tskill "LiteWindow" & echo windowdel.com
NA134 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccinewebstart.exe" /f
NA135 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccinewebstart.exe" /f
NA136 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccineweb main" /f
NA137 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccineweb main" /f
NA138 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA139 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "appis.exe" /f
NA140 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA141 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "update.exe" /f
NA142 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "liveplus" /f
NA143 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "liveplus" /f
NA144 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
NA145 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
NA146 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FileHamBrowser" /f
NA147 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FileHamBrowser" /f
NA148 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA149 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA150 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "poweroff/counter.php" /f
NA151 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "poweroff/counter.php" /f
NA152 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA153 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA154 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA155 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
NA156 echo Created by Windowexe.com
NA157 sc stop "Windows WinsPop Diagnostics Service"
NA158 echo Service Disable & sc config "Windows WinsPop Diagnostics Service" start= disabled & echo Windowexe.com
NA159 sc stop "vaccineweb Update Service"
NA160 echo Service Disable & sc config "vaccineweb Update Service" start= disabled & echo Windowexe.com
NA161 sc stop "WinsPop Service"
NA162 echo Service Disable & sc config "WinsPop Service" start= disabled & echo Windowexe.com
NA163 sc stop "trttmpo"
NA164 echo Service Disable & sc config "trttmpo" start= disabled & echo Windowexe.com
NA165 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
NA166 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
NA167 echo Created by Windowexe.com
NA168 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
NA169 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
NA170 echo Created by Windowexe.com
NA171 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
NA172 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
NA173 echo Created by Windowexe.com
NA174 echo schtasks Delete & schtasks /delete /tn "LiteWindow_uninst" /f
NA175 echo Created by Windowexe.com
NA176 echo schtasks Delete & schtasks /delete /tn "LiteWindow" /f
NA177 echo Created by Windowexe.com
NA178 echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
NA179 echo Created by Windowexe.com
NA180 echo schtasks Delete & schtasks /delete /tn "AppIs" /f
NA181 echo Created by Windowexe.com
NA182 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\위메프.url"
NA183 echo file Delete & del /q "C:\Users\Administrator\Desktop\위메프.url"
NA184 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\웹하드 중복쿠폰 모음.url"
NA185 echo file Delete & del /q "C:\Users\Administrator\Desktop\웹하드 중복쿠폰 모음.url"
NA186 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA187 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA188 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.url"
NA189 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.url"
NA190 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.url"
NA191 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.url"
NA192 echo End
NA193 ======================================================================
NA194 echo Created by Windowexe.com / do not delete this label.
NA195 ======================================================================




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 3. 12. 20:54 ] Posted by 프로세스 천국 , 프로그램분석
,