애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.
System Analyzer Report 2013, 03, 16
NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "MultiAddress" & echo windowdel.com
NA006 echo windowexe.com & tskill "BigfileSearch" & echo windowdel.com
NA007 echo windowexe.com & tskill "miconsoft_s" & echo windowdel.com
NA008 echo windowexe.com & tskill "natsvc" & echo windowdel.com
NA009 echo windowexe.com & tskill "ntasvr" & echo windowdel.com
NA010 echo windowexe.com & tskill "nsearchx" & echo windowdel.com
NA011 echo windowexe.com & tskill "nxsub" & echo windowdel.com
NA012 echo windowexe.com & tskill "WinKey" & echo windowdel.com
NA013 echo windowexe.com & tskill "pinomate" & echo windowdel.com
NA014 echo windowexe.com & tskill "GuardConvert" & echo windowdel.com
NA015 echo windowexe.com & tskill "MicroProCon" & echo windowdel.com
NA016 echo windowexe.com & tskill "MicroProProc" & echo windowdel.com
NA017 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WHelp\"" /f
NA018 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WHelp\"" /f
NA019 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Starcraft-wLauncher" /f
NA020 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Starcraft-wLauncher" /f
NA021 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
NA022 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
NA023 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA024 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA025 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SupporterLink" /f
NA026 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SupporterLink" /f
NA027 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QdownUP2.exe" /f
NA028 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QdownUP2.exe" /f
NA029 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QAutoUP.exe" /f
NA030 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QAutoUP.exe" /f
NA031 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "VG" /f
NA032 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "VG" /f
NA033 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Miconsoft" /f
NA034 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Miconsoft" /f
NA035 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinKey" /f
NA036 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinKey" /f
NA037 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
NA038 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
NA039 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MultiAddress.exe" /f
NA040 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MultiAddress.exe" /f
NA041 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WHelp" /f
NA042 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WHelp" /f
NA043 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA044 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA045 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA046 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA047 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA048 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA049 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA050 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA051 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA052 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA053 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA054 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA055 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA056 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA057 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA058 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA059 echo Created by Windowexe.com
NA060 sc stop "autokwds"
NA061 echo Service Disable & sc config "autokwds" start= disabled & echo Windowexe.com
NA062 sc stop "ctwopop"
NA063 echo Service Disable & sc config "ctwopop" start= disabled & echo Windowexe.com
NA064 sc stop "Miconsoft_s"
NA065 echo Service Disable & sc config "Miconsoft_s" start= disabled & echo Windowexe.com
NA066 sc stop "nsearchx"
NA067 echo Service Disable & sc config "nsearchx" start= disabled & echo Windowexe.com
NA068 sc stop "NTAService"
NA069 echo Service Disable & sc config "NTAService" start= disabled & echo Windowexe.com
NA070 sc stop "SmartSwitch"
NA071 echo Service Disable & sc config "SmartSwitch" start= disabled & echo Windowexe.com
NA072 sc stop "WindowsDriver"
NA073 echo Service Disable & sc config "WindowsDriver" start= disabled & echo Windowexe.com
NA074 sc stop "NATService"
NA075 echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
NA076 sc stop "AlYacEventDcom"
NA077 echo Service Disable & sc config "AlYacEventDcom" start= disabled & echo Windowexe.com
NA078 sc stop "npkDcomCopy"
NA079 echo Service Disable & sc config "npkDcomCopy" start= disabled & echo Windowexe.com
NA080 sc stop "WmdmPmSNLog"
NA081 echo Service Disable & sc config "WmdmPmSNLog" start= disabled & echo Windowexe.com
NA082 echo schtasks Delete & schtasks /delete /tn "mcmst_me.exe" /f
NA083 echo Created by Windowexe.com
NA084 echo schtasks Delete & schtasks /delete /tn "Uninstall Windows Address Search Package" /f
NA085 echo Created by Windowexe.com
NA086 echo schtasks Delete & schtasks /delete /tn "windows adsup package" /f
NA087 echo Created by Windowexe.com
NA088 echo schtasks Delete & schtasks /delete /tn "Windows sxguide navigation" /f
NA089 echo Created by Windowexe.com
NA090 echo change dir for x64
NA091 cd %windir%
NA092 cd syswow64
NA093 echo windowexe.com & tskill "MultiAddress" & echo windowdel.com
NA094 echo windowexe.com & tskill "BigfileSearch" & echo windowdel.com
NA095 echo windowexe.com & tskill "miconsoft_s" & echo windowdel.com
NA096 echo windowexe.com & tskill "natsvc" & echo windowdel.com
NA097 echo windowexe.com & tskill "ntasvr" & echo windowdel.com
NA098 echo windowexe.com & tskill "nsearchx" & echo windowdel.com
NA099 echo windowexe.com & tskill "nxsub" & echo windowdel.com
NA100 echo windowexe.com & tskill "WinKey" & echo windowdel.com
NA101 echo windowexe.com & tskill "pinomate" & echo windowdel.com
NA102 echo windowexe.com & tskill "GuardConvert" & echo windowdel.com
NA103 echo windowexe.com & tskill "MicroProCon" & echo windowdel.com
NA104 echo windowexe.com & tskill "MicroProProc" & echo windowdel.com
NA105 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WHelp\"" /f
NA106 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WHelp\"" /f
NA107 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Starcraft-wLauncher" /f
NA108 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Starcraft-wLauncher" /f
NA109 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
NA110 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "pinomate" /f
NA111 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA112 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Adv_TopC" /f
NA113 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SupporterLink" /f
NA114 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SupporterLink" /f
NA115 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QdownUP2.exe" /f
NA116 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QdownUP2.exe" /f
NA117 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QAutoUP.exe" /f
NA118 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QAutoUP.exe" /f
NA119 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "VG" /f
NA120 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "VG" /f
NA121 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Miconsoft" /f
NA122 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Miconsoft" /f
NA123 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinKey" /f
NA124 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinKey" /f
NA125 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
NA126 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
NA127 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MultiAddress.exe" /f
NA128 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MultiAddress.exe" /f
NA129 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WHelp" /f
NA130 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WHelp" /f
NA131 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA132 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA133 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA134 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabCon" /f
NA135 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA136 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "GuardSupport" /f
NA137 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA138 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProCon" /f
NA139 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA140 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroLabProc" /f
NA141 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA142 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicroProProc" /f
NA143 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA144 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA145 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA146 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{AB705622-B25B-491B-A6BF-4A46FDDBC88E}" /f
NA147 echo Created by Windowexe.com
NA148 sc stop "autokwds"
NA149 echo Service Disable & sc config "autokwds" start= disabled & echo Windowexe.com
NA150 sc stop "ctwopop"
NA151 echo Service Disable & sc config "ctwopop" start= disabled & echo Windowexe.com
NA152 sc stop "Miconsoft_s"
NA153 echo Service Disable & sc config "Miconsoft_s" start= disabled & echo Windowexe.com
NA154 sc stop "nsearchx"
NA155 echo Service Disable & sc config "nsearchx" start= disabled & echo Windowexe.com
NA156 sc stop "NTAService"
NA157 echo Service Disable & sc config "NTAService" start= disabled & echo Windowexe.com
NA158 sc stop "SmartSwitch"
NA159 echo Service Disable & sc config "SmartSwitch" start= disabled & echo Windowexe.com
NA160 sc stop "WindowsDriver"
NA161 echo Service Disable & sc config "WindowsDriver" start= disabled & echo Windowexe.com
NA162 sc stop "NATService"
NA163 echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
NA164 sc stop "AlYacEventDcom"
NA165 echo Service Disable & sc config "AlYacEventDcom" start= disabled & echo Windowexe.com
NA166 sc stop "npkDcomCopy"
NA167 echo Service Disable & sc config "npkDcomCopy" start= disabled & echo Windowexe.com
NA168 sc stop "WmdmPmSNLog"
NA169 echo Service Disable & sc config "WmdmPmSNLog" start= disabled & echo Windowexe.com
NA170 echo schtasks Delete & schtasks /delete /tn "mcmst_me.exe" /f
NA171 echo Created by Windowexe.com
NA172 echo schtasks Delete & schtasks /delete /tn "Uninstall Windows Address Search Package" /f
NA173 echo Created by Windowexe.com
NA174 echo schtasks Delete & schtasks /delete /tn "windows adsup package" /f
NA175 echo Created by Windowexe.com
NA176 echo schtasks Delete & schtasks /delete /tn "Windows sxguide navigation" /f
NA177 echo Created by Windowexe.com
NA178 echo End
NA179 ======================================================================
NA180 echo Created by Windowexe.com / do not delete this label.
NA181 ======================================================================
요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.
인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)
*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.

