프로그램분석

System Analyzer Report 2012, 09, 17

프로세스 천국 2012. 9. 17. 20:28

======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================

echo Start
echo windowexe.com & tskill "tabbrowsernuphper" & echo windowdel.com
echo windowexe.com & tskill "tabbrowsernapp" & echo windowdel.com
echo windowexe.com & tskill "qdownupdate" & echo windowdel.com
echo windowexe.com & tskill "qdownupdate" & echo windowdel.com
echo windowexe.com & tskill "qdownservice" & echo windowdel.com
echo windowexe.com & tskill "qdownservice" & echo windowdel.com
echo windowexe.com & tskill "qdownagent" & echo windowdel.com
echo windowexe.com & tskill "qdownagent" & echo windowdel.com
echo windowexe.com & tskill "OpenShopperSvc" & echo windowdel.com
echo windowexe.com & tskill "OpenShopperD" & echo windowdel.com
echo windowexe.com & tskill "OpenShopperC" & echo windowdel.com
echo windowexe.com & tskill "natsvc" & echo windowdel.com
echo windowexe.com & tskill "natsvc" & echo windowdel.com
echo windowexe.com & tskill "MicroCloudEngine" & echo windowdel.com
echo windowexe.com & tskill "MicroCloudEngine" & echo windowdel.com
echo windowexe.com & tskill "IPlusUpdate_ze" & echo windowdel.com
echo windowexe.com & tskill "CloudManager" & echo windowdel.com
echo windowexe.com & tskill "CloudManager" & echo windowdel.com
echo windowexe.com & tskill "ButtonGuideC" & echo windowdel.com
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IPlusUpdate_ze" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IPlusUpdate_ze" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "tabbrowserhper" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "tabbrowserhper" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "tabbrowser" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "tabbrowser" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "larudainfo2" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "larudainfo2" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "larudainfo3" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "larudainfo3" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "oplu" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "oplu" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ButtonGuide" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ButtonGuide" /f
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E829E58C-0558-4092-AEF5-F96A3F21D682}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E829E58C-0558-4092-AEF5-F96A3F21D682}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E829E58C-0558-4092-AEF5-F96A3F21D682}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{E829E58C-0558-4092-AEF5-F96A3F21D682}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AEB636D6-CE03-4C89-9677-964A63322E2D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AEB636D6-CE03-4C89-9677-964A63322E2D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AEB636D6-CE03-4C89-9677-964A63322E2D}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{AEB636D6-CE03-4C89-9677-964A63322E2D}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64D2E3AD-C248-496E-BB11-9EB182512E1F}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64D2E3AD-C248-496E-BB11-9EB182512E1F}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64D2E3AD-C248-496E-BB11-9EB182512E1F}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{64D2E3AD-C248-496E-BB11-9EB182512E1F}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{111CAA23-6F4F-42AC-8555-B48C1D87BBAB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{111CAA23-6F4F-42AC-8555-B48C1D87BBAB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{111CAA23-6F4F-42AC-8555-B48C1D87BBAB}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{111CAA23-6F4F-42AC-8555-B48C1D87BBAB}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000BFA-D4FA-4965-94E2-5269BB66CB6C}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000BFA-D4FA-4965-94E2-5269BB66CB6C}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00000BFA-D4FA-4965-94E2-5269BB66CB6C}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{00000BFA-D4FA-4965-94E2-5269BB66CB6C}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{AB074412-BE80-47EB-BDFA-DC90C9F298A0}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{C7928CF3-9532-44C0-B8CC-98E2C11ECC9F}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{7A3AC86B-89ED-4B45-BBAC-6E0213EAA768}" /f
echo Created by Windowexe.com
sc stop "QuickDownload Update"
echo Service Disable & sc config "QuickDownload Update" start= disabled & echo Windowexe.com
sc stop "QuickDownload Service"
echo Service Disable & sc config "QuickDownload Service" start= disabled & echo Windowexe.com
sc stop "QuickDownload Agent"
echo Service Disable & sc config "QuickDownload Agent" start= disabled & echo Windowexe.com
sc stop "NATService"
echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
sc stop "MicroCloudEngine"
echo Service Disable & sc config "MicroCloudEngine" start= disabled & echo Windowexe.com
sc stop "CloudManager"
echo Service Disable & sc config "CloudManager" start= disabled & echo Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{945D8B13-529C-43e8-B4ED-E7535CCDD2F7}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{945D8B13-529C-43e8-B4ED-E7535CCDD2F7}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{84BADA55-2BC1-4319-9BD3-1A5EE01EE1D8}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{84BADA55-2BC1-4319-9BD3-1A5EE01EE1D8}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{7781A959-A6BF-4dcc-928B-E5AF9ED668D7}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{7781A959-A6BF-4dcc-928B-E5AF9ED668D7}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{600A635A-7003-4347-BAC1-254A8F935B1A}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{600A635A-7003-4347-BAC1-254A8F935B1A}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{3AD6477B-6AB0-4770-9808-C3245346BD45}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{3AD6477B-6AB0-4770-9808-C3245346BD45}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{33297377-1A0F-4cfd-A866-EFDA4866A194}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{33297377-1A0F-4cfd-A866-EFDA4866A194}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{2C2B0F57-51F2-4d1d-9A90-B3249BA0CEE4}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{2C2B0F57-51F2-4d1d-9A90-B3249BA0CEE4}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{289B55CF-913A-4857-8F71-6D17B09267E6}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{289B55CF-913A-4857-8F71-6D17B09267E6}" /f
echo Created by Windowexe.com
echo End

======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================