애드웨어, 허위백신, 팝업광고, 쇼핑몰 바로가기, 악성툴바, 각종 개쓰레기 프로그램 삭제 요청하기
이용약관을 안내하며 컴퓨터에 설치하는 개쓰레기 프로그램들은 백신으로 백날 돌려봐야 검색이 안됩니다.
개쓰레기 프로그램들은 아주 지능적이라서 전문가가 아니고서는 찾아내기가 어렵습니다.
[00-PROCESS]**ADAutoUpdate -/- C:\Program Files\AutoDefend\ADAutoUpdate.exe
[00-PROCESS]**adMon -/- C:\Program Files\AutoDefend\etc\adMon.exe
[00-PROCESS]**adReg -/- C:\Program Files\AutoDefend\etc\adReg.exe
[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**AutoDefend -/- C:\Program Files\AutoDefend\AutoDefend.exe
[00-PROCESS]**Cleaner -/- C:\Program Files\TopTool\Cleaner.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**e_signkey -/- C:\Users\Administrator\AppData\Local\signkey\e_signkey.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**Explorer -/- C:\Windows\Explorer.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**FreeListen -/- C:\Program Files\FreeListen\FreeListen.exe
[00-PROCESS]**FreeListen_Setup_120 -/- C:\Users\Administrator\AppData\Local\Temp\FreeListen_Setup_120.exe
[00-PROCESS]**FreeListenDownLoader -/- C:\Windows\FreeListenDownLoader.exe
[00-PROCESS]**FreeListenManager -/- C:\Program Files\FreeListen\FreeListenManager.exe
[00-PROCESS]**FreeListenUninstall -/- C:\Program Files\FreeListen\FreeListenUninstall.exe
[00-PROCESS]**FreeListenUpdate -/- C:\Program Files\FreeListen\FreeListenUpdate.exe
[00-PROCESS]**fxssvc -/- C:\Windows\system32\fxssvc.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**INIWebCleaner -/- C:\ProgramData\iniweblink\INIWebCleaner.exe
[00-PROCESS]**IProtect -/- C:\Program Files\IProtect\IProtect.exe
[00-PROCESS]**IProtectUpdate -/- C:\Program Files\IProtect\IProtectUpdate.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\Windows\system32\msiexec.exe
[00-PROCESS]**multispeed -/- C:\Program Files\multispeed\multispeed.exe
[00-PROCESS]**multispeedse -/- C:\Program Files\multispeed\multispeedse.exe
[00-PROCESS]**multispeedU -/- C:\Program Files\multispeed\multispeedU.exe
[00-PROCESS]**perfhost -/- C:\Windows\system32\perfhost.exe
[00-PROCESS]**powersearch -/- C:\Users\Administrator\AppData\Roaming\powersearch\powersearch.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[00-PROCESS]**skun -/- C:\Users\Administrator\AppData\Local\signkey\skun.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**sppsvc -/- C:\Windows\system32\sppsvc.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**taskeng -/- C:\Windows\system32\taskeng.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**wbengine -/- C:\Windows\system32\wbengine.exe
[00-PROCESS]**weblink -/- C:\ProgramData\iniweblink\weblink.exe
[00-PROCESS]**weblinkup -/- C:\ProgramData\iniweblink\weblinkup.exe
[00-PROCESS]**windoguide -/- C:\Program Files\windoguide\windoguide.exe
[00-PROCESS]**windoguideagent -/- C:\Program Files\windoguide\windoguideagent.exe
[00-PROCESS]**windowconfigreset -/- C:\Windows\windowconfigreset.exe
[00-PROCESS]**WindowNetworkManager -/- C:\Program Files\Window Network Manager\WindowNetworkManager.exe
[00-PROCESS]**WindowNetworkManagerUninstall -/- C:\Program Files\Window Network Manager\WindowNetworkManagerUninstall.exe
[00-PROCESS]**windowstab -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab.exe
[00-PROCESS]**windowstab_mon -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
[00-PROCESS]**windowstab_uc -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe
[00-PROCESS]**windowstab_unins -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_unins.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**wuu -/- C:\Program Files\Windows Utility Update\wuu.exe
[01-HKCUREG]**iniweblink -/- C:\ProgramData\iniweblink\weblinkup.exe
[01-HKCUREG]**powersearch -/- C:\Users\Administrator\AppData\Roaming\powersearch\powersearch.exe update
[01-HKCUREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[01-HKCUREG]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[01-HKCUREG]**windoguide -/- C:\Program Files\windoguide\windoguide.exe
[01-HKCUREG]**windoguideagent -/- C:\Program Files\windoguide\windoguideagent.exe
[01-HKCUREG]**windoguideopt -/- C:\Program Files\windoguide\windopt.exe
[01-HKCUREG]**Window Network Manager -/- C:\Program Files\Window Network Manager\WindowNetworkManager.exe
[01-HKCUREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[01-HKCUREG]**wuu -/- C:\Program Files\Windows Utility Update\wuu.exe
[02-HKLMREG]**iniweblink -/- C:\ProgramData\iniweblink\weblinkup.exe
[02-HKLMREG]**powersearch -/- C:\Users\Administrator\AppData\Roaming\powersearch\powersearch.exe update
[02-HKLMREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[02-HKLMREG]**TopTool -/- C:\Program Files\TopTool\TopTool.exe
[02-HKLMREG]**windoguide -/- C:\Program Files\windoguide\windoguide.exe
[02-HKLMREG]**windoguideagent -/- C:\Program Files\windoguide\windoguideagent.exe
[02-HKLMREG]**windoguideopt -/- C:\Program Files\windoguide\windopt.exe
[02-HKLMREG]**Window Network Manager -/- C:\Program Files\Window Network Manager\WindowNetworkManager.exe
[02-HKLMREG]**WINDOWSTAB_UC -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_uc.exe /run
[02-HKLMREG]**wuu -/- C:\Program Files\Windows Utility Update\wuu.exe
[03-BHOCLSD]**&powersearch Helper Object -/- C:\Users\Administrator\AppData\Roaming\powersearch\psearch.dll -/- {0F9D3470-ACE8-4A8E-8A2F-988576341613}
[03-BHOCLSD]**TopTool -/- C:\Program Files\TopTool\TopTool.dll -/- {B33159A7-9261-48D8-9AC4-ED62A28BBBFA}
[03-BHOCLSD]**windoguide Class -/- C:\Program Files\windoguide\wgbho.dll -/- {46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**multispeed Update Service -/- multispeed Support Service -/- C:\Windows\windowconfigreset.exe
[05-SERVICE]**multispeedService -/- multispeed Service -/- C:\Program Files\multispeed\multispeedse.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**vmvss -/- VMware Snapshot Provider -/- C:\Windows\system32\dllhost.exe
[05-SERVICE]**windowstab_mon -/- Windows Tab Manager -/- C:\Users\Administrator\AppData\Local\windowstab\windowstab_mon.exe
Code : 5poMOTcPb03qaDlBSjgnZTqWPN6mtlja
NA001 echo Start
NA002 echo windowexe.com & tskill "windowconfigreset" & echo windowdel.com
NA003 echo windowexe.com & tskill "powersearch" & echo windowdel.com
NA004 echo windowexe.com & tskill "windowstab_uc" & echo windowdel.com
NA005 echo windowexe.com & tskill "windowstab_mon" & echo windowdel.com
NA006 echo windowexe.com & tskill "windowstab" & echo windowdel.com
NA007 echo windowexe.com & tskill "skun" & echo windowdel.com
NA008 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA009 echo windowexe.com & tskill "e_signkey" & echo windowdel.com
NA010 echo windowexe.com & tskill "weblinkup" & echo windowdel.com
NA011 echo windowexe.com & tskill "weblink" & echo windowdel.com
NA012 echo windowexe.com & tskill "INIWebCleaner" & echo windowdel.com
NA013 echo windowexe.com & tskill "wuu" & echo windowdel.com
NA014 echo windowexe.com & tskill "WindowNetworkManager" & echo windowdel.com
NA015 echo windowexe.com & tskill "windoguideagent" & echo windowdel.com
NA016 echo windowexe.com & tskill "windoguide" & echo windowdel.com
NA017 echo windowexe.com & tskill "TopTool" & echo windowdel.com
NA018 echo windowexe.com & tskill "multispeedU" & echo windowdel.com
NA019 echo windowexe.com & tskill "multispeedse" & echo windowdel.com
NA020 echo windowexe.com & tskill "multispeed" & echo windowdel.com
NA021 echo windowexe.com & tskill "IProtectUpdate" & echo windowdel.com
NA022 echo windowexe.com & tskill "IProtect" & echo windowdel.com
NA023 echo windowexe.com & tskill "FreeListenUpdate" & echo windowdel.com
NA024 echo windowexe.com & tskill "FreeListenManager" & echo windowdel.com
NA025 echo windowexe.com & tskill "FreeListen" & echo windowdel.com
NA026 echo windowexe.com & tskill "adReg" & echo windowdel.com
NA027 echo windowexe.com & tskill "adMon" & echo windowdel.com
NA028 echo windowexe.com & tskill "AutoDefend" & echo windowdel.com
NA029 echo windowexe.com & tskill "ADAutoUpdate" & echo windowdel.com
NA030 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windowstab_uc.lnk"
NA031 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windowstab_uc.lnk"
NA032 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA033 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA034 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "WINDOWSTAB_UC" /f
NA035 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Window Network Manager" /f
NA036 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Window Network Manager" /f
NA037 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "Window Network Manager" /f
NA038 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopTool" /f
NA039 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopTool" /f
NA040 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "TopTool" /f
NA041 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguideopt" /f
NA042 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguideopt" /f
NA043 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguideopt" /f
NA044 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguideagent" /f
NA045 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguideagent" /f
NA046 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguideagent" /f
NA047 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguide" /f
NA048 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguide" /f
NA049 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguide" /f
NA050 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "powersearch" /f
NA051 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "powersearch" /f
NA052 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "powersearch" /f
NA053 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "wuu" /f
NA054 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "wuu" /f
NA055 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "wuu" /f
NA056 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA057 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA058 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "WINDOWSTAB_UC" /f
NA059 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "iniweblink" /f
NA060 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "iniweblink" /f
NA061 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "iniweblink" /f
NA062 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA063 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA064 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "signkey" /f
NA065 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA066 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA067 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA068 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA069 echo Created by Windowexe.com
NA070 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA071 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA072 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA073 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA074 echo Created by Windowexe.com
NA075 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA076 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA077 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA078 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA079 echo Created by Windowexe.com
NA080 echo Service Disable & sc config "windowstab_mon" start= disabled & echo Windowexe.com
NA081 echo Service Disable & sc config "multispeedService" start= disabled & echo Windowexe.com
NA082 echo Service Disable & sc config "multispeed Update Service" start= disabled & echo Windowexe.com
NA083 echo schtasks Delete & schtasks /delete /tn "오토디펜드 실행" /f
NA084 echo Created by Windowexe.com
NA085 echo schtasks Delete & schtasks /delete /tn "IProtect" /f
NA086 echo Created by Windowexe.com
NA087 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\옥션.lnk"
NA088 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\옥션.lnk"
NA089 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\G마켓.lnk"
NA090 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\G마켓.lnk"
NA091 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\11번가.lnk"
NA092 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\11번가.lnk"
NA093 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\최신자료 무료 감상실.url"
NA094 echo file Delete & del /q "C:\Users\Administrator\Desktop\최신자료 무료 감상실.url"
NA095 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무료다운 인기영화 자료실.url"
NA096 echo file Delete & del /q "C:\Users\Administrator\Desktop\무료다운 인기영화 자료실.url"
NA097 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무료 문자 300건 받기 문자함.url"
NA098 echo file Delete & del /q "C:\Users\Administrator\Desktop\무료 문자 300건 받기 문자함.url"
NA099 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\로또 번호 30억의 비밀.url"
NA100 echo file Delete & del /q "C:\Users\Administrator\Desktop\로또 번호 30억의 비밀.url"
NA101 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\국내 최저가 PC 쇼핑몰 에스다컴퓨터.url"
NA102 echo file Delete & del /q "C:\Users\Administrator\Desktop\국내 최저가 PC 쇼핑몰 에스다컴퓨터.url"
NA103 echo change dir for x64 & cd %windir% & cd syswow64
NA104 echo windowexe.com & tskill "windowconfigreset" & echo windowdel.com
NA105 echo windowexe.com & tskill "powersearch" & echo windowdel.com
NA106 echo windowexe.com & tskill "windowstab_uc" & echo windowdel.com
NA107 echo windowexe.com & tskill "windowstab_mon" & echo windowdel.com
NA108 echo windowexe.com & tskill "windowstab" & echo windowdel.com
NA109 echo windowexe.com & tskill "skun" & echo windowdel.com
NA110 echo windowexe.com & tskill "signkey" & echo windowdel.com
NA111 echo windowexe.com & tskill "e_signkey" & echo windowdel.com
NA112 echo windowexe.com & tskill "weblinkup" & echo windowdel.com
NA113 echo windowexe.com & tskill "weblink" & echo windowdel.com
NA114 echo windowexe.com & tskill "INIWebCleaner" & echo windowdel.com
NA115 echo windowexe.com & tskill "wuu" & echo windowdel.com
NA116 echo windowexe.com & tskill "WindowNetworkManager" & echo windowdel.com
NA117 echo windowexe.com & tskill "windoguideagent" & echo windowdel.com
NA118 echo windowexe.com & tskill "windoguide" & echo windowdel.com
NA119 echo windowexe.com & tskill "TopTool" & echo windowdel.com
NA120 echo windowexe.com & tskill "multispeedU" & echo windowdel.com
NA121 echo windowexe.com & tskill "multispeedse" & echo windowdel.com
NA122 echo windowexe.com & tskill "multispeed" & echo windowdel.com
NA123 echo windowexe.com & tskill "IProtectUpdate" & echo windowdel.com
NA124 echo windowexe.com & tskill "IProtect" & echo windowdel.com
NA125 echo windowexe.com & tskill "FreeListenUpdate" & echo windowdel.com
NA126 echo windowexe.com & tskill "FreeListenManager" & echo windowdel.com
NA127 echo windowexe.com & tskill "FreeListen" & echo windowdel.com
NA128 echo windowexe.com & tskill "adReg" & echo windowdel.com
NA129 echo windowexe.com & tskill "adMon" & echo windowdel.com
NA130 echo windowexe.com & tskill "AutoDefend" & echo windowdel.com
NA131 echo windowexe.com & tskill "ADAutoUpdate" & echo windowdel.com
NA132 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windowstab_uc.lnk"
NA133 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windowstab_uc.lnk"
NA134 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA135 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA136 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "WINDOWSTAB_UC" /f
NA137 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Window Network Manager" /f
NA138 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Window Network Manager" /f
NA139 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "Window Network Manager" /f
NA140 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopTool" /f
NA141 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopTool" /f
NA142 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "TopTool" /f
NA143 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguideopt" /f
NA144 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguideopt" /f
NA145 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguideopt" /f
NA146 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguideagent" /f
NA147 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguideagent" /f
NA148 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguideagent" /f
NA149 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "windoguide" /f
NA150 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "windoguide" /f
NA151 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "windoguide" /f
NA152 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "powersearch" /f
NA153 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "powersearch" /f
NA154 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "powersearch" /f
NA155 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "wuu" /f
NA156 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "wuu" /f
NA157 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "wuu" /f
NA158 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA159 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WINDOWSTAB_UC" /f
NA160 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "WINDOWSTAB_UC" /f
NA161 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "iniweblink" /f
NA162 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "iniweblink" /f
NA163 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "iniweblink" /f
NA164 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA165 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "signkey" /f
NA166 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "signkey" /f
NA167 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA168 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA169 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA170 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B33159A7-9261-48D8-9AC4-ED62A28BBBFA}" /f
NA171 echo Created by Windowexe.com
NA172 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA173 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA174 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA175 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{46E54E77-A5AE-4AB0-B27F-22DA3F95FAD6}" /f
NA176 echo Created by Windowexe.com
NA177 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA178 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA179 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA180 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{0F9D3470-ACE8-4A8E-8A2F-988576341613}" /f
NA181 echo Created by Windowexe.com
NA182 echo Service Disable & sc config "windowstab_mon" start= disabled & echo Windowexe.com
NA183 echo Service Disable & sc config "multispeedService" start= disabled & echo Windowexe.com
NA184 echo Service Disable & sc config "multispeed Update Service" start= disabled & echo Windowexe.com
NA185 echo schtasks Delete & schtasks /delete /tn "오토디펜드 실행" /f
NA186 echo Created by Windowexe.com
NA187 echo schtasks Delete & schtasks /delete /tn "IProtect" /f
NA188 echo Created by Windowexe.com
NA189 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\옥션.lnk"
NA190 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\옥션.lnk"
NA191 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\G마켓.lnk"
NA192 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\G마켓.lnk"
NA193 echo file Delete & attrib -r "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\11번가.lnk"
NA194 echo file Delete & del /q "C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\11번가.lnk"
NA195 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\최신자료 무료 감상실.url"
NA196 echo file Delete & del /q "C:\Users\Administrator\Desktop\최신자료 무료 감상실.url"
NA197 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무료다운 인기영화 자료실.url"
NA198 echo file Delete & del /q "C:\Users\Administrator\Desktop\무료다운 인기영화 자료실.url"
NA199 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무료 문자 300건 받기 문자함.url"
NA200 echo file Delete & del /q "C:\Users\Administrator\Desktop\무료 문자 300건 받기 문자함.url"
NA201 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\로또 번호 30억의 비밀.url"
NA202 echo file Delete & del /q "C:\Users\Administrator\Desktop\로또 번호 30억의 비밀.url"
NA203 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\국내 최저가 PC 쇼핑몰 에스다컴퓨터.url"
NA204 echo file Delete & del /q "C:\Users\Administrator\Desktop\국내 최저가 PC 쇼핑몰 에스다컴퓨터.url"
NA205 echo End
NA001 ad.topclick.kr/ad/dblinkpr_xml*.***
NA002 api.windoguide.com/11st*.***
NA003 api.windoguide.com/auction*.***
NA004 api.windoguide.com/gmarket*.***
NA005 api.windoguide.com/version*.***
NA006 api.windoguide.combacon*.***
NA007 down.autodefend.co.kr/Update_db/adsub*.***
NA008 filter.winapp.kr/appdownload/appvup/ver2/HNa*.***
NA009 filter.winapp.kr/appdownload/appvup/ver2/powersearch*.***
NA010 filter.winapp.kr/appdownload/appvup/ver2/psearch*.***
NA011 filter.winapp.kr/dbdownload/sit*.***
NA012 filter.winapp.kr/ndbdownload/nsit*.***
NA013 filter.winapp.kr/static_toast*.***
NA014 multispeed.co.kr/settle.php?strID=post&strPC=00:0C:29:61:CE:E7&**.***
NA015 multispeed.co.kr/value.php?strMode=run&strID=post&strPC=00:0C:2**.***
NA016 qcounter.co.kr/LogReceiver/LR.log?kind=0&ist_yn=0&ptn_name=196&**.***
NA017 report.windoguide.comreport.windoguide.com/report_exe.ph**.***
NA018 report.windoguide.comreport.windoguide.com/report_exe_ag**.***
NA019 t.openpotservice.com/AppTag/OptionCnt*.***
NA020 toptool.utilz.net/update/TT26/TopTool*.***
NA021 update.autodefend.co.kr/Update_ini/AutoDefend/autoupdate*.***
NA022 update.multispeed.co.kr*.***
NA023 update.searchpop.co.kr/?medi*.***
NA024 update.ucfdb.co.kr/version/except/excp*.***
NA025 werpingad.com/partner/a*.***
NA026 werpingad.com/partner/c.php?m=b&mac=000C2961CEE7&p=codene*.***
NA027 werpingad.com/partner/dl*.***
NA028 werpingad.com/partner/pgm/WindowNetworkManager*.***
NA029 werpingad.com/partner/s*.***
NA030 werpingad.com/partner/x*.***
NA031 withblogger.net/updateserver/wnm/%5Csetting*.***
NA032 wuu.co.kr/request_update/request.php?action=execute&mac=00:0c:2**.***
NA033 wuu.co.kr/request_update/version*.***
NA034 ww*.funad.co.kr/snqup/patch*.***
NA035 ww*.funad.co.kr/snqup/update*.***
NA036 ww*.msftncsi.com/ncsi*.***
NA037 ww*.muuk.co.kr/app/windowstab/windowstab.php?kind=service&pt=ut**.***
NA038 ww*.muuk.co.kr/app/windowstab/windowstab.php?kind=tab&pt=utilto**.***
NA039 ww*.muuk.co.kr/app/windowstab/windowstab.php?kind=update&pt=uti**.***
NA040 ww*.targetkeyword.co.kr/app/info/info_001*.***
NA041 ww*.targetkeyword.co.kr/app/iniweblink/info/info.php?u=P022&o=6**.***
NA042 ww*.utilz.net/setting*.***
NA043 ww*.winapp.kr/appcontrol/ZTopappConfig.php?controlid=wincon&sit**.***
요즘 휴대폰 소액결제(월정액 자동결제)를 이용한 사기사이트 및 사기프로그램이 판을 치고 있습니다.
무료백신 프로그램, 무료개인정보삭제 프로그램, 무료 유해사이트차단 프로그램, 무료파일다운, 무료문자, 무료운세, 무료로또, 무료게임, 무료MP3등의 사이트에서 휴대폰 및 일반전화로 절대 인증 하지마세요.
인증하는 즉시 결제되며, 서비스를 해지하지 않는 이상 매월 자동결제됩니다. (인증번호 = 결제번호)
업체마다 결제되는 기간은 다르지만 짧게는 2년, 길게는 20년, 최대 50년짜리도 있습니다.
서비스 업체의 이용약관 및 결제내용에 대해 확실히 알고 인증/사용하시기 바랍니다.
안드로이드계열 스마트폰에서 출처가 없는 설치파일도 다운받지말고 실행하지도 마세요.
해당 통신사에 전화해서 소액결제 안되게끔 차단시키세요. (스마트폰에 무지한 아이들/노인분들 주의)
*악덕업체의 요청으로 인하여 블로그의 게시글이 이유없이 삭제되는 경우 구글 블로그에 재게시 합니다.

