애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.


Code : RurXY6pzXRbt636qLfquJ4TiMMoEkOX3

NA001 echo Start
NA002 echo schtasks Delete & schtasks /delete /tn "C:\WINDOWS\Tasks\spschwqyqrsp.job" /f
NA003 echo Created by Windowexe.com
NA004 echo schtasks Delete & schtasks /delete /tn "C:\Program Files\nospell\nospell_sch.exe /sch" /f
NA005 echo Created by Windowexe.com
NA006 echo windowexe.com & tskill "svcspwin" & echo windowdel.com
NA007 echo windowexe.com & tskill "wdrwspsvc" & echo windowdel.com
NA008 echo windowexe.com & tskill "spmonwqyqrsp" & echo windowdel.com
NA009 echo windowexe.com & tskill "userinforesetupdate" & echo windowdel.com
NA010 echo windowexe.com & tskill "wininfouser" & echo windowdel.com
NA011 echo windowexe.com & tskill "winuserdata" & echo windowdel.com
NA012 echo windowexe.com & tskill "winspex" & echo windowdel.com
NA013 echo windowexe.com & tskill "windowfasterse" & echo windowdel.com
NA014 echo windowexe.com & tskill "tooltip" & echo windowdel.com
NA015 echo windowexe.com & tskill "tooltip_mon" & echo windowdel.com
NA016 echo windowexe.com & tskill "tooltip_uc" & echo windowdel.com
NA017 echo windowexe.com & tskill "system-update-se" & echo windowdel.com
NA018 echo windowexe.com & tskill "smart-update-se" & echo windowdel.com
NA019 echo windowexe.com & tskill "powertime_mon" & echo windowdel.com
NA020 echo windowexe.com & tskill "powertime_uc" & echo windowdel.com
NA021 echo windowexe.com & tskill "nospell_uc" & echo windowdel.com
NA022 echo windowexe.com & tskill "richp124s" & echo windowdel.com
NA023 echo windowexe.com & tskill "richp124" & echo windowdel.com
NA024 echo file Delete & attrib -r "C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\nospell_uc.lnk"
NA025 echo file Delete & del /q "C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\nospell_uc.lnk"
NA026 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "powertime" /f
NA027 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "powertime" /f
NA028 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "powertime" /f
NA029 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TOOLTIP_UC" /f
NA030 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TOOLTIP_UC" /f
NA031 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "TOOLTIP_UC" /f
NA032 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "NOSPELL_UC" /f
NA033 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "NOSPELL_UC" /f
NA034 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "NOSPELL_UC" /f
NA035 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B3EE007-55F8-41D2-AEC8-C59A8F4546F6}" /f
NA036 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3EE007-55F8-41D2-AEC8-C59A8F4546F6}" /f
NA037 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3EE007-55F8-41D2-AEC8-C59A8F4546F6}" /f
NA038 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{4B3EE007-55F8-41D2-AEC8-C59A8F4546F6}" /f
NA039 echo Created by Windowexe.com
NA040 echo Service Disable & sc config "wqyqrpt" start= disabled & echo Windowexe.com
NA041 echo Service Disable & sc config "wqyqrpop" start= disabled & echo Windowexe.com
NA042 echo Service Disable & sc config "WinsPop Service" start= disabled & echo Windowexe.com
NA043 echo Service Disable & sc config "Windows WinsPop Diagnostics Service" start= disabled & echo Windowexe.com
NA044 echo Service Disable & sc config "windowfasterService" start= disabled & echo Windowexe.com
NA045 echo Service Disable & sc config "windowfaster Update Service" start= disabled & echo Windowexe.com
NA046 echo Service Disable & sc config "system-updateservice" start= disabled & echo Windowexe.com
NA047 echo Service Disable & sc config "spmonwqyqrsp" start= disabled & echo Windowexe.com
NA048 echo Service Disable & sc config "smart-updateservice" start= disabled & echo Windowexe.com
NA049 echo Service Disable & sc config "richp124" start= disabled & echo Windowexe.com
NA050 echo Service Disable & sc config "premiumpc Update Service" start= disabled & echo Windowexe.com
NA051 echo Service Disable & sc config "carepc Update Service" start= disabled & echo Windowexe.com
NA052 echo Service Disable & sc config "allpopup" start= disabled & echo Windowexe.com
NA053 echo schtasks Delete & schtasks /delete /tn "spschwqyqrsp" /f
NA054 echo Created by Windowexe.com
NA055 echo End
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**Hwp -/- C:\HNC\Hwp70\Hwp.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[00-PROCESS]**nospell_uc -/- C:\Program Files\nospell\nospell_uc.exe
[00-PROCESS]**npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[00-PROCESS]**npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**ODSERV -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**powertime_mon -/- C:\Program Files\powertime\powertime_mon.exe
[00-PROCESS]**powertime_uc -/- C:\Program Files\powertime\powertime_uc.exe
[00-PROCESS]**ProcService -/- C:\Users\Administrator\Documents\ProcessClean\ProcService.exe
[00-PROCESS]**richp124 -/- C:\Users\Administrator\AppData\Roaming\wingrichp124\richp124.exe
[00-PROCESS]**richp124s -/- C:\Users\Administrator\AppData\Roaming\wingrichp124\richp124s.exe
[00-PROCESS]**smart-update-se -/- C:\Program Files\smart-update\smart-update-se.exe
[00-PROCESS]**spmonwqyqrsp -/- C:\Windows\spmonwqyqrsp.exe
[00-PROCESS]**svcspwin -/- C:\Windows\System32\svcspwin.exe
[00-PROCESS]**system-update-se -/- C:\Program Files\system-update\system-update-se.exe
[00-PROCESS]**tooltip -/- C:\Program Files\tooltip\tooltip.exe
[00-PROCESS]**tooltip_mon -/- C:\Program Files\tooltip\tooltip_mon.exe
[00-PROCESS]**tooltip_uc -/- C:\Program Files\tooltip\tooltip_uc.exe
[00-PROCESS]**userinforesetupdate -/- C:\Windows\userinforesetupdate.exe
[00-PROCESS]**wdrwspsvc -/- C:\Windows\System32\wdrwspsvc.exe
[00-PROCESS]**windowfasterse -/- C:\Program Files\windowfaster\windowfasterse.exe
[00-PROCESS]**wininfouser -/- C:\Windows\wininfouser.exe
[00-PROCESS]**winspex -/- C:\Program Files\WinsPop\winspex.exe
[00-PROCESS]**winuserdata -/- C:\Windows\winuserdata.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[01-HKCUREG]**powertime -/- C:\Program Files\powertime\powertime_uc.exe /run
[01-HKCUREG]**TOOLTIP_UC -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**NOSPELL_UC -/- C:\Program Files\nospell\nospell_uc.exe /run
[02-HKLMREG]**powertime -/- C:\Program Files\powertime\powertime_uc.exe /run
[02-HKLMREG]**TOOLTIP_UC -/- C:\Program Files\tooltip\tooltip_uc.exe /run
[03-BHOCLSD]**Enumerate Top Search - GT -/- C:\Program Files\enumerate\gt\enumerate_gt.dll -/- {4B3EE007-55F8-41D2-AEC8-C59A8F4546F6}
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**allpopup -/- allpopup svc -/- C:\Program Files\allpopup\allpopsvi.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**carepc Update Service -/- carepc Support Service -/- C:\Windows\wininfouser.exe
[05-SERVICE]**HPSLPSVC -/- HP Network Devices Support -/- C:\Windows\system32\svchost.exe -/- C:\Users\Administrator\AppData\Local\Temp\7zS52F6\hpslpsvc32.dll
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NBService -/- NBService -/- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
[05-SERVICE]**NMIndexingService -/- NMIndexingService -/- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nvsvc -/- NVIDIA Display Driver Service -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**odserv -/- Microsoft Office Diagnostics Service -/- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
[05-SERVICE]**ose -/- Office Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**premiumpc Update Service -/- premiumpc Support Service -/- C:\Windows\winuserdata.exe
[05-SERVICE]**Process Clean Service -/- Process Clean Service -/- C:\Users\Administrator\Documents\ProcessClean\ProcService.exe
[05-SERVICE]**richp124 -/- Microsoft AD WS -/- C:\Users\Administrator\AppData\Roaming\wingrichp124\richp124s.exe
[05-SERVICE]**smart-updateservice -/- smart-update service -/- C:\Program Files\smart-update\smart-update-se.exe
[05-SERVICE]**spmonwqyqrsp -/- Nospell -/- C:\Windows\spmonwqyqrsp.exe
[05-SERVICE]**system-updateservice -/- system-update service -/- C:\Program Files\system-update\system-update-se.exe
[05-SERVICE]**windowfaster Update Service -/- windowfaster Support Service -/- C:\Windows\userinforesetupdate.exe
[05-SERVICE]**windowfasterService -/- windowfaster Service -/- C:\Program Files\windowfaster\windowfasterse.exe
[05-SERVICE]**Windows WinsPop Diagnostics Service -/- Windows WinsPop Diagnostics Service -/- C:\Windows\System32\wdrwspsvc.exe
[05-SERVICE]**WinsPop Service -/- WinsPop Service -/- C:\Windows\System32\svcspwin.exe
[05-SERVICE]**wqyqrpop -/- Tooltip Manager -/- C:\Program Files\tooltip\tooltip_mon.exe
[05-SERVICE]**wqyqrpt -/- PowerTime Manager -/- C:\Program Files\powertime\powertime_mon.exe

 




요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.

인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)

*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.
[ 2013. 7. 16. 17:25 ] Posted by 프로세스 천국 , 프로그램분석
,