System Analyzer Report 2012, 11, 01
Code : mKH7tm9ZBtETmfj9CiGzKHK1PA1f7G2x
System Analyzer Report 2012, 11, 01
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================
echo Start
echo windowexe.com & tskill "WindowServiceNT" & echo windowdel.com
echo windowexe.com & tskill "MicrowindowSearch" & echo windowdel.com
echo windowexe.com & tskill "speedsetse" & echo windowdel.com
echo windowexe.com & tskill "speedset" & echo windowdel.com
echo windowexe.com & tskill "SearchNQ" & echo windowdel.com
echo windowexe.com & tskill "PandoraService" & echo windowdel.com
echo windowexe.com & tskill "NateFinderUpt" & echo windowdel.com
echo windowexe.com & tskill "natsvc" & echo windowdel.com
echo windowexe.com & tskill "infoaux" & echo windowdel.com
echo windowexe.com & tskill "FWTChkSvc" & echo windowdel.com
echo windowexe.com & tskill "adsup" & echo windowdel.com
echo windowexe.com & tskill "SNQTip" & echo windowdel.com
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "premiumad.exe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "premiumad.exe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "NateFinder" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "NateFinder" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "FileNolja" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FileNolja" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "adsup.exe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "office" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "office" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SNQTip" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SNQTip" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SearchNQ" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SearchNQ" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "infoaux" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "infoaux" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "office" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "office" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MicrowindowSearch" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Windows yesdown" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Windows yesdown" /f
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9133CA1-662F-4237-80E3-B623C4D6E461}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C9133CA1-662F-4237-80E3-B623C4D6E461}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C9133CA1-662F-4237-80E3-B623C4D6E461}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{C9133CA1-662F-4237-80E3-B623C4D6E461}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BAA8D838-B973-44CF-A6EA-C7D5176CAA24}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BAA8D838-B973-44CF-A6EA-C7D5176CAA24}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BAA8D838-B973-44CF-A6EA-C7D5176CAA24}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{BAA8D838-B973-44CF-A6EA-C7D5176CAA24}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AAED77EA-6F21-4539-B8D9-9276A2E1B666}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AAED77EA-6F21-4539-B8D9-9276A2E1B666}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AAED77EA-6F21-4539-B8D9-9276A2E1B666}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{AAED77EA-6F21-4539-B8D9-9276A2E1B666}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9764F9EC-2226-45FB-9598-7A918ADBAAA0}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9764F9EC-2226-45FB-9598-7A918ADBAAA0}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9764F9EC-2226-45FB-9598-7A918ADBAAA0}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{9764F9EC-2226-45FB-9598-7A918ADBAAA0}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E751BFD-0B25-4FA4-9EFE-04B96BA8B8B9}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E751BFD-0B25-4FA4-9EFE-04B96BA8B8B9}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E751BFD-0B25-4FA4-9EFE-04B96BA8B8B9}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{6E751BFD-0B25-4FA4-9EFE-04B96BA8B8B9}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{29DC2B12-2E97-488B-95C1-9589ED25C7EB}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21FFEC32-59FF-4A1F-BB42-7A315637617F}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FFEC32-59FF-4A1F-BB42-7A315637617F}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{21FFEC32-59FF-4A1F-BB42-7A315637617F}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{21FFEC32-59FF-4A1F-BB42-7A315637617F}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
echo Created by Windowexe.com
sc stop "wrdplay"
echo Service Disable & sc config "wrdplay" start= disabled & echo Windowexe.com
sc stop "WindowSearch Service Manager"
echo Service Disable & sc config "WindowSearch Service Manager" start= disabled & echo Windowexe.com
sc stop "WindowsBoosterMonitor"
echo Service Disable & sc config "WindowsBoosterMonitor" start= disabled & echo Windowexe.com
sc stop "TCCheckAgent"
echo Service Disable & sc config "TCCheckAgent" start= disabled & echo Windowexe.com
sc stop "SvcModulWeb_DownloadWEB"
echo Service Disable & sc config "SvcModulWeb_DownloadWEB" start= disabled & echo Windowexe.com
sc stop "speedsetService"
echo Service Disable & sc config "speedsetService" start= disabled & echo Windowexe.com
sc stop "smatsvc"
echo Service Disable & sc config "smatsvc" start= disabled & echo Windowexe.com
sc stop "PanService"
echo Service Disable & sc config "PanService" start= disabled & echo Windowexe.com
sc stop "NATService"
echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
sc stop "FreeWebToon"
echo Service Disable & sc config "FreeWebToon" start= disabled & echo Windowexe.com
sc stop "ApplicationSpecialManagement"
echo Service Disable & sc config "ApplicationSpecialManagement" start= disabled & echo Windowexe.com
sc stop "ApplicationOffice"
echo Service Disable & sc config "ApplicationOffice" start= disabled & echo Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{000000A3-57A6-49EA-B96B-1428070E5924}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{000000A3-57A6-49EA-B96B-1428070E5924}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{000000A2-F93E-4C0B-87D5-490AEF45ADD3}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{000000A2-F93E-4C0B-87D5-490AEF45ADD3}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{000000A1-CA93-46BB-9D4A-DBD498CB8944}" /f
echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{000000A1-CA93-46BB-9D4A-DBD498CB8944}" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "바닥인코더 실행" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "windows premiumad package" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "Visual effect underpop System" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "KeyCast" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "HubGateUpdate.exe" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "HubGate" /f
echo Created by Windowexe.com
echo schtasks Delete & schtasks /delete /tn "AppIsUpdate" /f
echo Created by Windowexe.com
echo Tasklist Delete & del /q "C:\WINDOWS\Tasks\HubGate.job"
echo Created by Windowexe.com
echo 000 & reg.exe add "HKCU\Control Panel\Desktop" /v "SCRNSAVE.EXE" /d "" /f & echo windowdel.com
echo Created by Windowexe.com
echo End
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================