Code : LwvY1Cl/FiFm6oh/cG3VSYoFxII19yOygBCPiSdOOC7T1c7uwahwHQ==
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**alg -/- C:\Windows\System32\alg.exe
[00-PROCESS]**AllShare Play -/- C:\Program Files\Samsung\AllShare Play\AllShare Play.exe
[00-PROCESS]**AllShare Play Launcher -/- C:\Program Files\Samsung\AllShare Play\utils\AllShare Play Launcher.exe
[00-PROCESS]**AllShare Play Service -/- C:\Program Files\Samsung\AllShare Play\AllShare Play Service.exe
[00-PROCESS]**AllShareFrameworkDMS -/- C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkDMS.exe
[00-PROCESS]**AllShareFrameworkManagerDMS -/- C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe
[00-PROCESS]**armsvc -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[00-PROCESS]**atbhelper -/- C:\Program Files\ESTsoft\ALToolbar\atbhelper.exe
[00-PROCESS]**AUDIODG -/- C:\Windows\system32\AUDIODG.EXE
[00-PROCESS]**AYLaunch -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe
[00-PROCESS]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
[00-PROCESS]**BigfileSearch -/- C:\Program Files\BigfileSearch\BigfileSearch.exe
[00-PROCESS]**CKAgent -/- C:\Windows\system32\CKAgent.exe
[00-PROCESS]**ClientSM -/- C:\Program Files\SoftForum\XecureWeb\ActiveX\ClientSM.exe
[00-PROCESS]**conhost -/- C:\Windows\system32\conhost.exe
[00-PROCESS]**csrss -/- C:\Windows\system32\csrss.exe
[00-PROCESS]**daemonu -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[00-PROCESS]**dllhost -/- C:\Windows\system32\dllhost.exe
[00-PROCESS]**Dwm -/- C:\Windows\system32\Dwm.exe
[00-PROCESS]**ehRecvr -/- C:\Windows\ehome\ehRecvr.exe
[00-PROCESS]**ehsched -/- C:\Windows\ehome\ehsched.exe
[00-PROCESS]**Explorer -/- C:\Windows\Explorer.EXE
[00-PROCESS]**FlashPlayerUpdateService -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**fxssvc -/- C:\Windows\system32\fxssvc.exe
[00-PROCESS]**GoogleUpdate -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GROOVE -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[00-PROCESS]**HD-LogRotatorService -/- C:\Program Files\BlueStacks\HD-LogRotatorService.exe
[00-PROCESS]**HeciServer -/- C:\Program Files\Intel\iCLS Client\HeciServer.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**ImageSAFERStart_X64 -/- C:\Windows\system32\ImageSAFERStart_X64.exe
[00-PROCESS]**ImageSAFERStart_X86 -/- C:\Windows\system32\ImageSAFERStart_X86.exe
[00-PROCESS]**ImageSAFERSvc -/- C:\Windows\ImageSAFERSvc.exe
[00-PROCESS]**IMEDICTUPDATE -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\microsoft shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**IMEKLMG -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**jhi_service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
[00-PROCESS]**JJangQC -/- C:\Program Files\JJangQ\JJangQC.exe
[00-PROCESS]**jucheck -/- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
[00-PROCESS]**jusched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[00-PROCESS]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe
[00-PROCESS]**Kies -/- C:\Program Files\Samsung\Kies\Kies.exe
[00-PROCESS]**KiesPDLR -/- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
[00-PROCESS]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[00-PROCESS]**KMService -/- C:\Windows\KMService.exe
[00-PROCESS]**LMS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[00-PROCESS]**locator -/- C:\Windows\system32\locator.exe
[00-PROCESS]**lsass -/- C:\Windows\system32\lsass.exe
[00-PROCESS]**lsm -/- C:\Windows\system32\lsm.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
[00-PROCESS]**mscorsvw -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
[00-PROCESS]**msdtc -/- C:\Windows\System32\msdtc.exe
[00-PROCESS]**msiexec -/- C:\Windows\system32\msiexec.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NaverAdminAPISvc -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[00-PROCESS]**NBKeyScan -/- C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
[00-PROCESS]**NBService -/- C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
[00-PROCESS]**NDrive -/- C:\Program Files\Naver\NaverNDrive\NDrive.exe
[00-PROCESS]**NDriveSVC -/- C:\Program Files\Naver\NaverNDrive\NDriveSVC.exe
[00-PROCESS]**NDriveUpgrader -/- C:\Program Files\Naver\NaverNDrive\NDriveUpgrader.exe
[00-PROCESS]**NDSync -/- C:\Program Files\Naver\NaverNDrive\NDSync.exe
[00-PROCESS]**NMBgMonitor -/- C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
[00-PROCESS]**NMIndexingService -/- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
[00-PROCESS]**NMIndexStoreSvr -/- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
[00-PROCESS]**npesvc -/- C:\Program Files\nProtect\nProtect Online Security\npesvc.exe
[00-PROCESS]**nvSCPAPISvr -/- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
[00-PROCESS]**nvtray -/- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
[00-PROCESS]**nvvsvc -/- C:\Windows\system32\nvvsvc.exe
[00-PROCESS]**nvxdsync -/- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
[00-PROCESS]**OSE -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[00-PROCESS]**OSPPSVC -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[00-PROCESS]**perfhost -/- C:\Windows\system32\perfhost.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**qdownagent -/- C:\Program Files\QuickDownloadService\qdownagent.exe
[00-PROCESS]**qdownservice -/- C:\Program Files\QuickDownloadService\qdownservice.exe
[00-PROCESS]**qznewver -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\qznewver.exe
[00-PROCESS]**QZUpdate -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\QZUpdate.exe
[00-PROCESS]**RAVCpl64 -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
[00-PROCESS]**SearchFilterHost -/- C:\Windows\system32\SearchFilterHost.exe
[00-PROCESS]**SearchIndexer -/- C:\Windows\system32\SearchIndexer.exe
[00-PROCESS]**SearchProtocolHost -/- C:\Windows\system32\SearchProtocolHost.exe
[00-PROCESS]**services -/- C:\Windows\system32\services.exe
[00-PROCESS]**SMSvcHost -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**snmptrap -/- C:\Windows\System32\snmptrap.exe
[00-PROCESS]**spoolsv -/- C:\Windows\System32\spoolsv.exe
[00-PROCESS]**sppsvc -/- C:\Windows\system32\sppsvc.exe
[00-PROCESS]**srvany -/- C:\Windows\system32\srvany.exe
[00-PROCESS]**svchost -/- C:\Windows\system32\svchost.exe
[00-PROCESS]**taskhost -/- C:\Windows\system32\taskhost.exe
[00-PROCESS]**TopSpaceHelper -/- C:\Program Files\TopSpace\bin\TopSpaceHelper.exe
[00-PROCESS]**TopSpaceService -/- C:\Program Files\TopSpace\bin\TopSpaceService.exe
[00-PROCESS]**TrustedInstaller -/- C:\Windows\servicing\TrustedInstaller.exe
[00-PROCESS]**UI0Detect -/- C:\Windows\system32\UI0Detect.exe
[00-PROCESS]**UNS -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[00-PROCESS]**vds -/- C:\Windows\System32\vds.exe
[00-PROCESS]**vssvc -/- C:\Windows\system32\vssvc.exe
[00-PROCESS]**WatAdminSvc -/- C:\Windows\system32\Wat\WatAdminSvc.exe
[00-PROCESS]**wbengine -/- C:\Windows\system32\wbengine.exe
[00-PROCESS]**wininit -/- C:\Windows\system32\wininit.exe
[00-PROCESS]**winlogon -/- C:\Windows\system32\winlogon.exe
[00-PROCESS]**WmiApSrv -/- C:\Windows\system32\wbem\WmiApSrv.exe
[00-PROCESS]**wmiprvse -/- C:\Windows\system32\wbem\wmiprvse.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WPHookAdSrv -/- C:\Windows\WPHookAdSrv.exe
[00-PROCESS]**xwISPLife -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[01-HKCUREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[01-HKCUREG]**AhnLab V3Lite Update Process -/- C:\Users\Administrator\AppData\Local\Temp\SMSvcHost.exe
[01-HKCUREG]**AhnLab V3Lite Update Process -/- C:\Windows\system32\nusb3mon.exe
[01-HKCUREG]**AllShare Play -/- C:\Program Files\Samsung\AllShare Play\utils\AllShare Play Launcher.exe
[01-HKCUREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolbar\atbhelper.exe -boot
[01-HKCUREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[01-HKCUREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[01-HKCUREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
[01-HKCUREG]**BigfileSearch -/- C:\Program Files\BigfileSearch\BigfileSearch.exe
[01-HKCUREG]**Configuring -/- rundll32.exe C:\Users\Administrator\AppData\Local\Temp\82883.txtM
[01-HKCUREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[01-HKCUREG]**IME14 KOR Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[01-HKCUREG]**IME14 KOR Setup -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[01-HKCUREG]**ISP Life -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[01-HKCUREG]**JJangQ -/- C:\Program Files\JJangQ\JJangQC.exe /RUN
[01-HKCUREG]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe
[01-HKCUREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[01-HKCUREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[01-HKCUREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[01-HKCUREG]**NaverNDrive -/- C:\Program Files\Naver\NaverNDrive\NDriveUpgrader.exe
[01-HKCUREG]**NBKeyScan -/- C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
[01-HKCUREG]**QuickZoneUD -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\QZUpdate.exe
[01-HKCUREG]**QZNewVer -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\qznewver.exe
[01-HKCUREG]**RTHDVCPL -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[01-HKCUREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[01-HKCUREG]**TopSpace -/- C:\Program Files\TopSpace\bin\TopSpaceHelper.exe UPDATE
[02-HKLMREG]**Adobe ARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[02-HKLMREG]**AhnLab V3Lite Update Process -/- C:\Users\Administrator\AppData\Local\Temp\SMSvcHost.exe
[02-HKLMREG]**AhnLab V3Lite Update Process -/- C:\Windows\system32\nusb3mon.exe
[02-HKLMREG]**AllShare Play -/- C:\Program Files\Samsung\AllShare Play\utils\AllShare Play Launcher.exe
[02-HKLMREG]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolbar\atbhelper.exe -boot
[02-HKLMREG]**ALYac -/- C:\Program Files\ESTsoft\ALYac\AYLaunch.exe /run
[02-HKLMREG]**BCSSync -/- C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices
[02-HKLMREG]**BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} -/- C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
[02-HKLMREG]**BigfileSearch -/- C:\Program Files\BigfileSearch\BigfileSearch.exe
[02-HKLMREG]**Configuring -/- rundll32.exe C:\Users\Administrator\AppData\Local\Temp\82883.txtM
[02-HKLMREG]**Google Update -/- C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe /c
[02-HKLMREG]**IME14 KOR Setup -/- C:\PROGRA~1\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[02-HKLMREG]**IME14 KOR Setup -/- C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /KOR /Log
[02-HKLMREG]**ISP Life -/- C:\Program Files\VP\ISP Life\xwISPLife.exe
[02-HKLMREG]**JJangQ -/- C:\Program Files\JJangQ\JJangQC.exe /RUN
[02-HKLMREG]**KakaoTalk -/- C:\Program Files\Kakao\KakaoTalk\KakaoTalk.exe
[02-HKLMREG]**KiesAirMessage -/- C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
[02-HKLMREG]**KiesPreload -/- C:\Program Files\Samsung\Kies\Kies.exe /preload
[02-HKLMREG]**KiesTrayAgent -/- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
[02-HKLMREG]**NaverNDrive -/- C:\Program Files\Naver\NaverNDrive\NDriveUpgrader.exe
[02-HKLMREG]**NBKeyScan -/- C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
[02-HKLMREG]**QuickZoneUD -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\QZUpdate.exe
[02-HKLMREG]**QZNewVer -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\qznewver.exe
[02-HKLMREG]**RTHDVCPL -/- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
[02-HKLMREG]**SunJavaUpdateSched -/- C:\Program Files\Common Files\Java\Java Update\jusched.exe
[02-HKLMREG]**TopSpace -/- C:\Program Files\TopSpace\bin\TopSpaceHelper.exe UPDATE
[03-BHOCLSD]**ALToolbarBho -/- C:\Program Files\ESTsoft\ALToolbar\ALToolBar_3200.dll -/- {7F1A79F9-78D1-4186-9F60-EE0B63DF042A}
[03-BHOCLSD]**BigfileHelper Class -/- C:\Program Files\BigfileSearch\BigfileSearch.dll -/- {8D98E3CA-8CBE-40D8-8FB2-738407C87834}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**Groove GFS Browser Helper -/- C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL -/- {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
[03-BHOCLSD]**IEQZoneCtrl Class -/- C:\Users\Administrator\AppData\Roaming\QuickZone2\IEQZone.dll -/- {BEA50D29-A4D4-49CD-81DE-A506F57363DC}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre6\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In 2 SSV Helper -/- C:\Program Files\Java\jre7\bin\jp2ssv.dll -/- {DBC80044-A445-435b-BC74-9C25C1C588A9}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre6\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**Java(tm) Plug-In SSV Helper -/- C:\Program Files\Java\jre7\bin\ssv.dll -/- {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[03-BHOCLSD]**N.A -/- N.A -/- {C1C92372-4705-4020-998B-D1E5E95716C3}
[03-BHOCLSD]**N.A -/- N.A -/- AutorunsDisabled
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**Office Document Cache Handler -/- C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL -/- {B4F3A835-0E21-4959-BA22-42B3008E02FF}
[03-BHOCLSD]**TopSpaceHelper Class -/- C:\Program Files\TopSpace\bin\TopSpaceHelper.dll -/- {C8625893-2C0F-4484-8C18-52B00D5A8BB9}
[04-TOOLBAR]**ALToolBar -/- C:\Program Files\ESTsoft\ALToolbar\ALToolBar_3200.dll -/- {38FBE93D-4CA1-4414-AF6A-94920C5BD8DA}
[04-TOOLBAR]**잠김영역복사 -/- C:\Program Files\Racl\RaclTB.dll -/- {BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}
[05-SERVICE]**AdobeARMservice -/- Adobe Acrobat Update Service -/- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- Adobe Flash Player Update Service -/- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**AllShare Framework DMS -/- AllShare Framework DMS -/- C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe
[05-SERVICE]**AllShare Play Service -/- AllShare Play Service -/- C:\Program Files\Samsung\AllShare Play\AllShare Play Service.exe
[05-SERVICE]**ALYac_RTSrv -/- ALYac RealTime Service -/- C:\Program Files\ESTsoft\ALYac\AYRTSrv.aye
[05-SERVICE]**ALYac_UpdSrv -/- ALYac Update Service -/- C:\Program Files\ESTsoft\ALYac\AYUpdSrv.aye
[05-SERVICE]**BstHdAndroidSvc -/- BlueStacks Android Service -/- C:\Program Files\BlueStacks\HD-Service.exe BstHdAndroidSvc Android
[05-SERVICE]**BstHdLogRotatorSvc -/- BlueStacks Log Rotator Service -/- C:\Program Files\BlueStacks\HD-LogRotatorService.exe
[05-SERVICE]**FontCache -/- Windows Font Cache Service -/- C:\Windows\system32\svchost.exe -/- C:\Windows\system32\FntCache.dll
[05-SERVICE]**FreeWebToon -/- 무료만화(FreeWebToon) -/- C:\Program Files\FreeWebToon\FWTChkSvc.exe
[05-SERVICE]**Image Protection -/- Image Protect Service -/- C:\Windows\ImageSAFERSvc.exe
[05-SERVICE]**ImeDictUpdateService -/- Microsoft IME Dictionary Update -/- C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEDICTUPDATE.EXE
[05-SERVICE]**Innosvc -/- Innosvc -/- C:\Windows\system32\innosvc.exe
[05-SERVICE]**Intel(R) Capability Licensing Service Interface -/- Intel(R) Capability Licensing Service Interface -/- C:\Program Files\Intel\iCLS Client\HeciServer.exe
[05-SERVICE]**jhi_service -/- Intel(R) Dynamic Application Loader Host Interface Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
[05-SERVICE]**KMService -/- KMService -/- C:\Windows\system32\srvany.exe
[05-SERVICE]**LMS -/- Intel(R) Management and Security Application Local Management Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
[05-SERVICE]**Microsoft SharePoint Workspace Audit Service -/- Microsoft SharePoint Workspace Audit Service -/- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
[05-SERVICE]**NATService -/- NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**Naver Updater -/- Naver Updater -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**Naver Updater_x64 -/- Naver Updater_x64 -/- C:\Program Files\Naver\NaverCommon\NaverAdminAPISvc.exe
[05-SERVICE]**NDrive Service -/- NDrive Service -/- C:\Program Files\Naver\NaverNDrive\NDriveSVC.exe
[05-SERVICE]**Nero BackItUp Scheduler 3 -/- Nero BackItUp Scheduler 3 -/- C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
[05-SERVICE]**NetMsmqActivator -/- Net.Msmq Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe -NetMsmqActivator
[05-SERVICE]**NetPipeActivator -/- Net.Pipe Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NetTcpActivator -/- Net.Tcp Listener Adapter -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
[05-SERVICE]**NMIndexingService -/- NMIndexingService -/- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
[05-SERVICE]**npggsvc -/- nProtect GameGuard Service -/- C:\Windows\system32\GameMon.des -service
[05-SERVICE]**npkcmsvc -/- npkcmsvc -/- C:\Windows\system32\npkcmsvc.exe
[05-SERVICE]**npkfxsvc -/- npkfxsvc -/- C:\Windows\system32\npkfxsvc.exe
[05-SERVICE]**nProtect Online Security Service -/- nProtect Online Security Service -/- C:\Program Files\nProtect\nProtect Online Security\npesvc.exe
[05-SERVICE]**nvsvc -/- NVIDIA Display Driver Service -/- C:\Windows\system32\nvvsvc.exe
[05-SERVICE]**nvUpdatusService -/- NVIDIA Update Service Daemon -/- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
[05-SERVICE]**ose64 -/- Office 64 Source Engine -/- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
[05-SERVICE]**osppsvc -/- Office Software Protection Platform -/- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**QuickDownload Agent -/- QuickDownload Agent -/- C:\Program Files\QuickDownloadService\qdownagent.exe
[05-SERVICE]**QuickDownload Service -/- QuickDownload Service -/- C:\Program Files\QuickDownloadService\qdownservice.exe
[05-SERVICE]**rqrtsjouoi -/- rqrtsjouoi -/- C:\Windows\System32\svchost.exe -/- C:\Program Files\rqrtsjouoi\rqrtsjouoi.dll
[05-SERVICE]**Stereo Service -/- NVIDIA Stereoscopic 3D Driver Service -/- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
[05-SERVICE]**StorSvc -/- Storage Service -/- C:\Windows\System32\svchost.exe -/- C:\Windows\system32\storsvc.dll
[05-SERVICE]**UNS -/- Intel(R) Management and Security Application User Notification Service -/- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
[05-SERVICE]**xsherlock -/- xsherlock -/- C:\Windows\system32\xsherlock.xem
Code : QoTYoTMZvJiSKEesJDIkOQyLu60ij+cHa8SMU5MXGyg=
NA001 echo Start
NA002 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Configuring" /f
NA003 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Configuring" /f
NA004 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "Configuring" /f
NA005 echo windowexe.com & tskill "QZUpdate" & echo windowdel.com
NA006 echo windowexe.com & tskill "qznewver" & echo windowdel.com
NA007 echo windowexe.com & tskill "TopSpaceService" & echo windowdel.com
NA008 echo windowexe.com & tskill "TopSpaceHelper" & echo windowdel.com
NA009 echo windowexe.com & tskill "qdownservice" & echo windowdel.com
NA010 echo windowexe.com & tskill "qdownagent" & echo windowdel.com
NA011 echo windowexe.com & tskill "natsvc" & echo windowdel.com
NA012 echo windowexe.com & tskill "BigfileSearch" & echo windowdel.com
NA013 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA014 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA015 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "BigfileSearch" /f
NA016 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopSpace" /f
NA017 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopSpace" /f
NA018 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "TopSpace" /f
NA019 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QZNewVer" /f
NA020 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QZNewVer" /f
NA021 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "QZNewVer" /f
NA022 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QuickZoneUD" /f
NA023 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QuickZoneUD" /f
NA024 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "QuickZoneUD" /f
NA025 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "JJangQ" /f
NA026 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "JJangQ" /f
NA027 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "JJangQ" /f
NA028 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "AhnLab V3Lite Update Process" /f
NA029 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "AhnLab V3Lite Update Process" /f
NA030 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "AhnLab V3Lite Update Process" /f
NA031 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA032 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA033 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA034 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA035 echo Created by Windowexe.com
NA036 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA037 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA038 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA039 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA040 echo Created by Windowexe.com
NA041 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA042 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA043 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA044 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA045 echo Created by Windowexe.com
NA046 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA047 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA048 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA049 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA050 echo Created by Windowexe.com
NA051 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA052 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA053 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA054 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA055 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA056 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA057 echo Created by Windowexe.com
NA058 echo Service Disable & sc config "rqrtsjouoi" start= disabled & echo Windowexe.com
NA059 echo Service Disable & sc config "QuickDownload Service" start= disabled & echo Windowexe.com
NA060 echo Service Disable & sc config "QuickDownload Agent" start= disabled & echo Windowexe.com
NA061 echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
NA062 echo Service Disable & sc config "FreeWebToon" start= disabled & echo Windowexe.com
NA063 echo schtasks Delete & schtasks /delete /tn "바닥인코더 실행" /f
NA064 echo Created by Windowexe.com
NA065 echo schtasks Delete & schtasks /delete /tn "MedianVaccine 실행" /f
NA066 echo Created by Windowexe.com
NA067 echo change dir for x64 & cd %windir% & cd syswow64
NA068 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Configuring" /f
NA069 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Configuring" /f
NA070 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "Configuring" /f
NA071 echo windowexe.com & tskill "QZUpdate" & echo windowdel.com
NA072 echo windowexe.com & tskill "qznewver" & echo windowdel.com
NA073 echo windowexe.com & tskill "TopSpaceService" & echo windowdel.com
NA074 echo windowexe.com & tskill "TopSpaceHelper" & echo windowdel.com
NA075 echo windowexe.com & tskill "qdownservice" & echo windowdel.com
NA076 echo windowexe.com & tskill "qdownagent" & echo windowdel.com
NA077 echo windowexe.com & tskill "natsvc" & echo windowdel.com
NA078 echo windowexe.com & tskill "BigfileSearch" & echo windowdel.com
NA079 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA080 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "BigfileSearch" /f
NA081 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "BigfileSearch" /f
NA082 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopSpace" /f
NA083 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopSpace" /f
NA084 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "TopSpace" /f
NA085 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QZNewVer" /f
NA086 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QZNewVer" /f
NA087 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "QZNewVer" /f
NA088 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "QuickZoneUD" /f
NA089 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "QuickZoneUD" /f
NA090 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "QuickZoneUD" /f
NA091 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "JJangQ" /f
NA092 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "JJangQ" /f
NA093 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "JJangQ" /f
NA094 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "AhnLab V3Lite Update Process" /f
NA095 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "AhnLab V3Lite Update Process" /f
NA096 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /v "AhnLab V3Lite Update Process" /f
NA097 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA098 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA099 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA100 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C8625893-2C0F-4484-8C18-52B00D5A8BB9}" /f
NA101 echo Created by Windowexe.com
NA102 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA103 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA104 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA105 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C1C92372-4705-4020-998B-D1E5E95716C3}" /f
NA106 echo Created by Windowexe.com
NA107 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA108 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA109 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA110 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{BEA50D29-A4D4-49CD-81DE-A506F57363DC}" /f
NA111 echo Created by Windowexe.com
NA112 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA113 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA114 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA115 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{8D98E3CA-8CBE-40D8-8FB2-738407C87834}" /f
NA116 echo Created by Windowexe.com
NA117 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA118 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA119 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA120 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA121 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA122 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA123 echo Created by Windowexe.com
NA124 echo Service Disable & sc config "rqrtsjouoi" start= disabled & echo Windowexe.com
NA125 echo Service Disable & sc config "QuickDownload Service" start= disabled & echo Windowexe.com
NA126 echo Service Disable & sc config "QuickDownload Agent" start= disabled & echo Windowexe.com
NA127 echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
NA128 echo Service Disable & sc config "FreeWebToon" start= disabled & echo Windowexe.com
NA129 echo schtasks Delete & schtasks /delete /tn "바닥인코더 실행" /f
NA130 echo Created by Windowexe.com
NA131 echo schtasks Delete & schtasks /delete /tn "MedianVaccine 실행" /f
NA132 echo Created by Windowexe.com
NA133 echo End