System Analyzer Report 2012, 11, 09
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================
echo Start
echo windowexe.com & tskill "WinExpandUpdate" & echo windowdel.com
echo windowexe.com & tskill "SpellerSvc" & echo windowdel.com
echo windowexe.com & tskill "AutoUpdater" & echo windowdel.com
echo windowexe.com & tskill "natsvc" & echo windowdel.com
echo windowexe.com & tskill "MPopService" & echo windowdel.com
echo windowexe.com & tskill "MicroCloudEngine" & echo windowdel.com
echo windowexe.com & tskill "KGAUpdate" & echo windowdel.com
echo windowexe.com & tskill "KGAChkSvc" & echo windowdel.com
echo windowexe.com & tskill "KGAAlert" & echo windowdel.com
echo windowexe.com & tskill "keywordpop" & echo windowdel.com
echo windowexe.com & tskill "WkipUpdate" & echo windowdel.com
echo windowexe.com & tskill "WKip" & echo windowdel.com
echo windowexe.com & tskill "keycast" & echo windowdel.com
echo windowexe.com & tskill "downmanager_se" & echo windowdel.com
echo windowexe.com & tskill "CloudManager" & echo windowdel.com
echo windowexe.com & tskill "TCCheckAgent" & echo windowdel.com
echo windowexe.com & tskill "AdvTCApp" & echo windowdel.com
echo windowexe.com & tskill "DirectKeyword2" & echo windowdel.com
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinExpandUpdate" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinExpandUpdate" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Speller" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Speller" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keywordpop.exe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "keycast.exe" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "keycast.exe" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "kgaalert" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "kgaalert" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "KongGa" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "KongGa" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "KeywordInfo" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "KeywordInfo" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "AutoUpdater" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "AutoUpdater" /f
echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DirectKeyword2" /f
echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DirectKeyword2" /f
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432339F4-9FDC-43BA-99C2-FEE0D9EA7C74}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{432339F4-9FDC-43BA-99C2-FEE0D9EA7C74}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{432339F4-9FDC-43BA-99C2-FEE0D9EA7C74}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{432339F4-9FDC-43BA-99C2-FEE0D9EA7C74}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000EF7-D20B-49ac-A364-06138CC09001}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000EF7-D20B-49ac-A364-06138CC09001}" /f
echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00000EF7-D20B-49ac-A364-06138CC09001}" /f
echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{00000EF7-D20B-49ac-A364-06138CC09001}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{41ED1FD7-8C37-4806-AF9E-D5238A30E56F}" /f
echo Created by Windowexe.com
echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{03ea5b10-2efa-4311-ac10-04427b02d663}" /f
echo Created by Windowexe.com
sc stop "xMarkTransSvcman"
echo Service Disable & sc config "xMarkTransSvcman" start= disabled & echo Windowexe.com
sc stop "TCCheckAgent"
echo Service Disable & sc config "TCCheckAgent" start= disabled & echo Windowexe.com
sc stop "pbsv"
echo Service Disable & sc config "pbsv" start= disabled & echo Windowexe.com
sc stop "NATService"
echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
sc stop "MPopService"
echo Service Disable & sc config "MPopService" start= disabled & echo Windowexe.com
sc stop "MicroCloudEngine"
echo Service Disable & sc config "MicroCloudEngine" start= disabled & echo Windowexe.com
sc stop "mgsv"
echo Service Disable & sc config "mgsv" start= disabled & echo Windowexe.com
sc stop "KongGa"
echo Service Disable & sc config "KongGa" start= disabled & echo Windowexe.com
sc stop "DownManager Update Service"
echo Service Disable & sc config "DownManager Update Service" start= disabled & echo Windowexe.com
sc stop "CloudManager"
echo Service Disable & sc config "CloudManager" start= disabled & echo Windowexe.com
echo 000 & reg.exe delete "HKCR\CLSID\{8B07C135-7367-416C-A8B9-508C0345E446}" /f & echo windowdel.com
echo Created by Windowexe.com
echo End
======================================================================
echo Created by Windowexe.com / do not delete this label.
======================================================================
jumi1.bat