프로그램분석

System Analyzer Report 2012, 03, 18

프로세스 천국 2012. 3. 18. 00:47


======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================

echo Start
echo windowexe.com & tskill "UtilZone" & echo windowdel.com
echo windowexe.com & tskill "sponsormatch" & echo windowdel.com
echo windowexe.com & tskill "sponsormatchagent" & echo windowdel.com
echo windowexe.com & tskill "agnrz" & echo windowdel.com
echo windowexe.com & tskill "updnrz" & echo windowdel.com
echo windowexe.com & tskill "FirstClickUpdater" & echo windowdel.com
echo windowexe.com & tskill "cbtup" & echo windowdel.com
echo windowexe.com & tskill "addenbaragent" & echo windowdel.com
echo windowexe.com & tskill "dm_dn" & echo windowdel.com
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "nurungziUpdate" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "nurungziUpdate" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "nurungzi" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "nurungzi" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "cobato" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "cobato" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "UtilZone" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "UtilZone" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Dual Matching" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Dual Matching" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FirstClickUpdater" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FirstClickUpdater" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "addenbaragent" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "addenbaragent" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "sponsormatchagent" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "sponsormatchagent" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "sponsormatch" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "sponsormatch" /f
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB37C411-AA9A-44A8-8147-343AB83A4DD6}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FB37C411-AA9A-44A8-8147-343AB83A4DD6}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FB37C411-AA9A-44A8-8147-343AB83A4DD6}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{FB37C411-AA9A-44A8-8147-343AB83A4DD6}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC01FC6C-DCA0-4F39-B902-DF736EF8E5E9}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC01FC6C-DCA0-4F39-B902-DF736EF8E5E9}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC01FC6C-DCA0-4F39-B902-DF736EF8E5E9}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{CC01FC6C-DCA0-4F39-B902-DF736EF8E5E9}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CBCBB24B-72D0-48F3-B03D-C9237C019606}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CBCBB24B-72D0-48F3-B03D-C9237C019606}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CBCBB24B-72D0-48F3-B03D-C9237C019606}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{CBCBB24B-72D0-48F3-B03D-C9237C019606}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{70C4C00B-DF92-4670-B691-8A7089F7151D}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F8DA4FC-BFEC-47E8-88D2-D88C4B6D0EDC}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F8DA4FC-BFEC-47E8-88D2-D88C4B6D0EDC}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F8DA4FC-BFEC-47E8-88D2-D88C4B6D0EDC}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{6F8DA4FC-BFEC-47E8-88D2-D88C4B6D0EDC}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{1E905554-CF1D-4C5B-9085-A74F8E76A042}" /f
echo Created by Windowexe.com
sc stop "cool-pcService"
echo Service Disable & sc config "cool-pcService" start= disabled & echo Windowexe.com
echo End

======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================

Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-03-17
[01-HKCUREG]**sponsormatch
[01-HKCUREG]**sponsormatchagent
[01-HKCUREG]**addenbaragent
[01-HKCUREG]**FirstClickUpdater
[01-HKCUREG]**Dual Matching
[02-HKLMREG]**UtilZone
[02-HKLMREG]**cobato
[02-HKLMREG]**nurungzi
[02-HKLMREG]**nurungziUpdate
[03-BHOCLSD]**{1E905554-CF1D-4C5B-9085-A74F8E76A042}
[03-BHOCLSD]**{6F8DA4FC-BFEC-47E8-88D2-D88C4B6D0EDC}
[03-BHOCLSD]**{70C4C00B-DF92-4670-B691-8A7089F7151D}
[03-BHOCLSD]**{9A3D68DC-5557-46E0-BD7B-BF64B561BD96}
[03-BHOCLSD]**{CBCBB24B-72D0-48F3-B03D-C9237C019606}
[03-BHOCLSD]**{CC01FC6C-DCA0-4F39-B902-DF736EF8E5E9}
[03-BHOCLSD]**{FB37C411-AA9A-44A8-8147-343AB83A4DD6}
[05-SERVICE]**cool-pcService
----------------------------------------------------------------------
Total Processing Time : 320ms
----------------------------------------------------------------------