System Analyzer Report 2012, 09, 25
System Analyzer Report 2012, 09, 25
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================
echo Start
echo windowexe.com & tskill "datamodify" & echo windowdel.com
echo windowexe.com & tskill "conditionalupdate" & echo windowdel.com
echo windowexe.com & tskill "WinxpendUP_nshe" & echo windowdel.com
echo windowexe.com & tskill "smartmode_se" & echo windowdel.com
echo windowexe.com & tskill "GDownService" & echo windowdel.com
echo windowexe.com & tskill "qdownservice" & echo windowdel.com
echo windowexe.com & tskill "qdownagent" & echo windowdel.com
echo windowexe.com & tskill "natsvc" & echo windowdel.com
echo windowexe.com & tskill "microsolution_se" & echo windowdel.com
echo windowexe.com & tskill "WkipUpdate" & echo windowdel.com
echo windowexe.com & tskill "WKip" & echo windowdel.com
echo windowexe.com & tskill "ToolbarRestore" & echo windowdel.com
echo windowexe.com & tskill "TCCheckAgent" & echo windowdel.com
echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
echo windowexe.com & tskill "sadnbu" & echo windowdel.com
echo windowexe.com & tskill "sadnbmgr" & echo windowdel.com
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DualMatching" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DualMatching" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "addenagent" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "addenagent" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "KeywordInfo" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "KeywordInfo" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "vaccineonstart.exe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "vaccineonstart.exe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinxpendUP_nshe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinxpendUP_nshe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "ToolbarRestore" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "UtilZone" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "UtilZone" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "TopUtilService" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "TopUtilService" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "sadnb" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "sadnb" /f
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000AD3-8FFC-4F5E-A9AA-CBEAC3C7DB3D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000AD3-8FFC-4F5E-A9AA-CBEAC3C7DB3D}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00000AD3-8FFC-4F5E-A9AA-CBEAC3C7DB3D}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{00000AD3-8FFC-4F5E-A9AA-CBEAC3C7DB3D}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{09A1A7FF-47CF-4b75-9449-AC292F4CCAF7}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{09A1A7FF-47CF-4b75-9449-AC292F4CCAF7}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{09A1A7FF-47CF-4b75-9449-AC292F4CCAF7}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{09A1A7FF-47CF-4b75-9449-AC292F4CCAF7}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F810C3E-B96E-400d-A8CB-B822620AC3BE}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F810C3E-B96E-400d-A8CB-B822620AC3BE}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1F810C3E-B96E-400d-A8CB-B822620AC3BE}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{1F810C3E-B96E-400d-A8CB-B822620AC3BE}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{26ABCC55-0790-466A-8F3F-8C176D6C9CA1}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{26ABCC55-0790-466A-8F3F-8C176D6C9CA1}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{26ABCC55-0790-466A-8F3F-8C176D6C9CA1}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{26ABCC55-0790-466A-8F3F-8C176D6C9CA1}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F3AD018-FA40-45FD-8902-33E056CB32CF}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2F3AD018-FA40-45FD-8902-33E056CB32CF}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2F3AD018-FA40-45FD-8902-33E056CB32CF}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{2F3AD018-FA40-45FD-8902-33E056CB32CF}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{375A6AB2-FEEC-445D-B853-2139FB561F80}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{375A6AB2-FEEC-445D-B853-2139FB561F80}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{375A6AB2-FEEC-445D-B853-2139FB561F80}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{375A6AB2-FEEC-445D-B853-2139FB561F80}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ACEEA248-18C8-4B0D-9148-907255BEE27C}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ACEEA248-18C8-4B0D-9148-907255BEE27C}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ACEEA248-18C8-4B0D-9148-907255BEE27C}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{ACEEA248-18C8-4B0D-9148-907255BEE27C}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D51B53A3-FFAD-4F50-98AC-E30085EBD987}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D51B53A3-FFAD-4F50-98AC-E30085EBD987}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D51B53A3-FFAD-4F50-98AC-E30085EBD987}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{D51B53A3-FFAD-4F50-98AC-E30085EBD987}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E9176D00-F8EB-4E40-B09C-04FD140CA277}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E9176D00-F8EB-4E40-B09C-04FD140CA277}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E9176D00-F8EB-4E40-B09C-04FD140CA277}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{E9176D00-F8EB-4E40-B09C-04FD140CA277}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{C369A98F-263F-4F76-9757-9FC320F63E26}" /f
echo Created by Windowexe.com
sc stop "ez-Plus"
echo Service Disable & sc config "ez-Plus" start= disabled & echo Windowexe.com
sc stop "GDownService"
echo Service Disable & sc config "GDownService" start= disabled & echo Windowexe.com
sc stop "InternetDownload Update Service"
echo Service Disable & sc config "InternetDownload Update Service" start= disabled & echo Windowexe.com
sc stop "liveupdater Update Service"
echo Service Disable & sc config "liveupdater Update Service" start= disabled & echo Windowexe.com
sc stop "microsolution Update Service"
echo Service Disable & sc config "microsolution Update Service" start= disabled & echo Windowexe.com
sc stop "NATService"
echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
sc stop "QuickDownload Agent"
echo Service Disable & sc config "QuickDownload Agent" start= disabled & echo Windowexe.com
sc stop "QuickDownload Service"
echo Service Disable & sc config "QuickDownload Service" start= disabled & echo Windowexe.com
sc stop "realcleaner Update Service"
echo Service Disable & sc config "realcleaner Update Service" start= disabled & echo Windowexe.com
sc stop "RKSvc"
echo Service Disable & sc config "RKSvc" start= disabled & echo Windowexe.com
sc stop "SmartMode Update Service"
echo Service Disable & sc config "SmartMode Update Service" start= disabled & echo Windowexe.com
sc stop "TCCheckAgent"
echo Service Disable & sc config "TCCheckAgent" start= disabled & echo Windowexe.com
sc stop "vaccinesafer Update Service"
echo Service Disable & sc config "vaccinesafer Update Service" start= disabled & echo Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{013BCEA5-8309-448b-8604-85F23D7861A5}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{013BCEA5-8309-448b-8604-85F23D7861A5}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{44A83441-CC11-4A08-807A-A9985A90316B}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{44A83441-CC11-4A08-807A-A9985A90316B}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{4FF9A494-ED8E-4A13-A675-88983140B3CB}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{4FF9A494-ED8E-4A13-A675-88983140B3CB}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FF5CBC30-F3C4-4f82-B398-F01FC9A4830C}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FF5CBC30-F3C4-4f82-B398-F01FC9A4830C}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000000-5499-47ed-A234-304F5258E596}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000001-5499-47ed-A234-304F5258E596}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{00000002-5499-47ed-A234-304F5258E596}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{8605E9B4-68C1-4ED9-B282-74C1AA3C312E}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D64A7743-7E62-4002-90EA-80E0671F9902}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FA214B13-1A9F-480B-B749-94A566FC59D9}" /f
echo Created by Windowexe.com
echo 000 & reg.exe add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows" /v "AppInit_DLLs" /d "" /f & echo windowdel.com
echo Created by Windowexe.com
echo file Delete & attrib -r "C:\Documents and Settings\Owner\바탕 화면\11번가 바로가기.LNK"
echo file Delete & del /q "C:\Documents and Settings\Owner\바탕 화면\11번가 바로가기.LNK"
echo file Delete & attrib -r "C:\Documents and Settings\Owner\바탕 화면\11번가.url"
echo file Delete & del /q "C:\Documents and Settings\Owner\바탕 화면\11번가.url"
echo file Delete & attrib -r "C:\Documents and Settings\Owner\바탕 화면\G마켓.url"
echo file Delete & del /q "C:\Documents and Settings\Owner\바탕 화면\G마켓.url"
echo file Delete & attrib -r "C:\Documents and Settings\Owner\바탕 화면\옥션.url"
echo file Delete & del /q "C:\Documents and Settings\Owner\바탕 화면\옥션.url"
echo file Delete & attrib -r "C:\Documents and Settings\Owner\바탕 화면\위메프.url"
echo file Delete & del /q "C:\Documents and Settings\Owner\바탕 화면\위메프.url"
echo End
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================