System Analyzer Report 2012, 12, 14
NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "MolldiveUpdater" & echo windowdel.com
NA006 echo windowexe.com & tskill "MolldiveUpdater" & echo windowdel.com
NA007 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinTool" /f
NA008 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinTool" /f
NA009 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MolldiveUpdater" /f
NA010 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MolldiveUpdater" /f
NA011 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SiteBacon" /f
NA012 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SiteBacon" /f
NA013 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "EzPrivacy" /f
NA014 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "EzPrivacy" /f
NA015 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA016 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA017 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA018 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA019 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA020 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA021 echo Created by Windowexe.com
NA022 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FE73F97D-0794-4e2f-89FD-EFF814BD88FA}" /f
NA023 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FE73F97D-0794-4e2f-89FD-EFF814BD88FA}" /f
NA024 echo Created by Windowexe.com
NA025 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F695DB89-206E-4c80-9B03-58C4BA28401A}" /f
NA026 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{F695DB89-206E-4c80-9B03-58C4BA28401A}" /f
NA027 echo Created by Windowexe.com
NA028 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E86E7F55-F621-49cb-962D-417FBD82FE6B}" /f
NA029 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{E86E7F55-F621-49cb-962D-417FBD82FE6B}" /f
NA030 echo Created by Windowexe.com
NA031 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D6B25369-293B-4a1d-BFF5-CD5833D6BE33}" /f
NA032 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D6B25369-293B-4a1d-BFF5-CD5833D6BE33}" /f
NA033 echo Created by Windowexe.com
NA034 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{039FB434-0B76-4a47-A02D-904C99608E76}" /f
NA035 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{039FB434-0B76-4a47-A02D-904C99608E76}" /f
NA036 echo Created by Windowexe.com
NA037 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\지마켓.url"
NA038 echo file Delete & del /q "C:\Users\Administrator\Desktop\지마켓.url"
NA039 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA040 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA041 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무제한다운로드.url"
NA042 echo file Delete & del /q "C:\Users\Administrator\Desktop\무제한다운로드.url"
NA043 echo change dir for x64
NA044 cd %windir%
NA045 cd syswow64
NA046 echo windowexe.com & tskill "MolldiveUpdater" & echo windowdel.com
NA047 echo windowexe.com & tskill "MolldiveUpdater" & echo windowdel.com
NA048 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinTool" /f
NA049 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinTool" /f
NA050 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "MolldiveUpdater" /f
NA051 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "MolldiveUpdater" /f
NA052 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "SiteBacon" /f
NA053 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "SiteBacon" /f
NA054 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "EzPrivacy" /f
NA055 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "EzPrivacy" /f
NA056 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA057 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA058 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA059 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA060 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA061 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{4E218C96-E0B4-4199-B435-3F0D31039321}" /f
NA062 echo Created by Windowexe.com
NA063 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FE73F97D-0794-4e2f-89FD-EFF814BD88FA}" /f
NA064 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{FE73F97D-0794-4e2f-89FD-EFF814BD88FA}" /f
NA065 echo Created by Windowexe.com
NA066 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F695DB89-206E-4c80-9B03-58C4BA28401A}" /f
NA067 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{F695DB89-206E-4c80-9B03-58C4BA28401A}" /f
NA068 echo Created by Windowexe.com
NA069 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E86E7F55-F621-49cb-962D-417FBD82FE6B}" /f
NA070 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{E86E7F55-F621-49cb-962D-417FBD82FE6B}" /f
NA071 echo Created by Windowexe.com
NA072 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D6B25369-293B-4a1d-BFF5-CD5833D6BE33}" /f
NA073 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{D6B25369-293B-4a1d-BFF5-CD5833D6BE33}" /f
NA074 echo Created by Windowexe.com
NA075 echo HKEY_LOCAL_MACHINE EB Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{039FB434-0B76-4a47-A02D-904C99608E76}" /f
NA076 echo HKCU EB Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{039FB434-0B76-4a47-A02D-904C99608E76}" /f
NA077 echo Created by Windowexe.com
NA078 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\지마켓.url"
NA079 echo file Delete & del /q "C:\Users\Administrator\Desktop\지마켓.url"
NA080 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.url"
NA081 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.url"
NA082 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\무제한다운로드.url"
NA083 echo file Delete & del /q "C:\Users\Administrator\Desktop\무제한다운로드.url"
NA084 echo End
NA085 ======================================================================
NA086 echo Created by Windowexe.com / do not delete this label.
NA087 ======================================================================