Code : xOn92dHK/gSrom6zEHV0y/0MLd0vFCXwPbAzhtQjIsw=
System Analyzer Report 2013, 02, 07
NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "RaclSvc" & echo windowdel.com
NA006 echo windowexe.com & tskill "natsvc" & echo windowdel.com
NA007 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "Racl" /f
NA008 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "Racl" /f
NA009 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DaumCleaner" /f
NA010 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DaumCleaner" /f
NA011 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "DaumStation" /f
NA012 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "DaumStation" /f
NA013 echo HKEY_LOCAL_MACHINE Toolbar Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA014 echo HKEY_CURRENT_USER Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA015 echo HKCU Search Hook Delete & reg.exe delete "HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks" /v "{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA016 echo HKEY_LOCAL_MACHINE Ext PreApproved Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA017 echo HKEY_CURRENT_USER Ext Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA018 echo HKEY_CLASSES_ROOT CLSID Delete & reg.exe delete "HKCR\CLSID\{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD}" /f
NA019 echo Created by Windowexe.com
NA020 sc stop "NetAccelerator"
NA021 echo Service Disable & sc config "NetAccelerator" start= disabled & echo Windowexe.com
NA022 sc stop "NATService"
NA023 echo Service Disable & sc config "NATService" start= disabled & echo Windowexe.com
NA024 sc stop "IGImageCodec Service"
NA025 echo Service Disable & sc config "IGImageCodec Service" start= disabled & echo Windowexe.com
NA026 sc stop "DistPeerSvc"
NA027 echo Service Disable & sc config "DistPeerSvc" start= disabled & echo Windowexe.com
NA028 sc stop "defencevaccine Update Service"
NA029 echo Service Disable & sc config "defencevaccine Update Service" start= disabled & echo Windowexe.com
NA030 sc stop "DaumStationService"
NA031 echo Service Disable & sc config "DaumStationService" start= disabled & echo Windowexe.com
NA032 echo End
NA033 ======================================================================
NA034 echo Created by Windowexe.com / do not delete this label.
NA035 ======================================================================
[00-PROCESS]**AcroRd32 -/- C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe
[00-PROCESS]**AdobeARM -/- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[00-PROCESS]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe
[00-PROCESS]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[00-PROCESS]**DaumStationService -/- C:\Program Files\Daum\DaumStation\DaumStationService.exe
[00-PROCESS]**FlashPlayerUpdateService -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[00-PROCESS]**GoogleUpdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[00-PROCESS]**GoogleUpdaterService -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[00-PROCESS]**iexplore -/- C:\Program Files\Internet Explorer\iexplore.exe
[00-PROCESS]**mdm -/- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
[00-PROCESS]**natsvc -/- C:\Program Files\NAT Service\natsvc.exe
[00-PROCESS]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe
[00-PROCESS]**NetAccelerator -/- C:\Program Files\FileDok\NetAccelerator.exe
[00-PROCESS]**npkcmsvc -/- C:\windows\system32\npkcmsvc.exe
[00-PROCESS]**NTC_1_0_0_9 -/- C:\Program Files\naver\NaverToolbar\NTC_1_0_0_9.exe
[00-PROCESS]**nvsvc32 -/- C:\windows\system32\nvsvc32.exe
[00-PROCESS]**RaclSvc -/- C:\Program Files\Racl\RaclSvc.exe
[00-PROCESS]**RtWLan -/- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
[00-PROCESS]**SGDnldr -/- C:\Program Files\AhnLab\SiteGuard2\SGDnldr.exe
[00-PROCESS]**sgsvc -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[00-PROCESS]**SMSvcHost -/- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
[00-PROCESS]**svcigimg -/- C:\windows\System32\svcigimg.exe
[00-PROCESS]**userconfigdata -/- C:\windows\userconfigdata.exe
[00-PROCESS]**V3LSvc -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe
[00-PROCESS]**V3LTray -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe
[00-PROCESS]**WMPNetwk -/- C:\Program Files\Windows Media Player\WMPNetwk.exe
[00-PROCESS]**wscntfy -/- C:\windows\system32\wscntfy.exe
[01-HKCUREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[01-HKCUREG]**ctfmon.exe -/- C:\windows\system32\ctfmon.exe
[01-HKCUREG]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe /T
[01-HKCUREG]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[01-HKCUREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[01-HKCUREG]**NvCplDaemon -/- RUNDLL32.EXE C:\windows\system32\NvCpl.dllNvStartup
[01-HKCUREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[02-HKLMREG]**AhnLab V3Lite Tray Process -/- C:\Program Files\AhnLab\V3Lite\V3LTray.exe /logon
[02-HKLMREG]**ctfmon.exe -/- C:\windows\system32\ctfmon.exe
[02-HKLMREG]**DaumCleaner -/- C:\Program Files\Daum\Cleaner\DaumCleaner.exe /T
[02-HKLMREG]**DaumStation -/- C:\Program Files\Daum\DaumStation\DaumStation.exe
[02-HKLMREG]**NaverAgent -/- C:\Program Files\naver\NaverAgent\NaverAgent.exe /autorun
[02-HKLMREG]**NvCplDaemon -/- RUNDLL32.EXE C:\windows\system32\NvCpl.dllNvStartup
[02-HKLMREG]**Racl -/- C:\Program Files\Racl\RaclSvc.exe
[03-BHOCLSD]**{19217B99-F935-4A39-B857-A68A68D5BEBB} -/- C:\Program Files\AhnLab\SiteGuard2\SGAgenti.dll
[04-TOOLBAR]**{2318C2B1-4965-11d4-9B18-009027A5CD4F} -/- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
[04-TOOLBAR]**{BCE04A5B-2B7D-4F4B-BB8E-2A59611733DD} -/- C:\Program Files\Racl\RaclTB.dll
[04-TOOLBAR]**{D09CFF09-A42A-4EDC-9804-E61224F59CA1} -/- C:\Program Files\naver\NaverToolbar\NaverTB_4_0_14_224.dll
[05-SERVICE]**AdobeFlashPlayerUpdateSvc -/- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[05-SERVICE]**DaumStationService -/- C:\Program Files\Daum\DaumStation\DaumStationService.exe
[05-SERVICE]**defencevaccine Update Service -/- C:\windows\userconfigdata.exe
[05-SERVICE]**DistPeerSvc -/- C:\windows\system32\distpsvc.exe -service
[05-SERVICE]**gupdate -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gupdatem -/- C:\Program Files\Google\Update\GoogleUpdate.exe
[05-SERVICE]**gusvc -/- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
[05-SERVICE]**IGImageCodec Service -/- C:\windows\System32\svcigimg.exe
[05-SERVICE]**MDM -/- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
[05-SERVICE]**napagent -/- C:\windows\System32\svchost.exe -/- C:\windows\System32\qagentrt.dll
[05-SERVICE]**NATService -/- C:\Program Files\NAT Service\natsvc.exe
[05-SERVICE]**Net Driver HPZ12 -/- C:\windows\System32\svchost.exe -/- C:\windows\system32\HPZinw12.dll
[05-SERVICE]**NetAccelerator -/- C:\Program Files\FileDok\NetAccelerator.exe
[05-SERVICE]**npkcmsvc -/- C:\windows\system32\npkcmsvc.exe
[05-SERVICE]**NVSvc -/- C:\windows\system32\nvsvc32.exe
[05-SERVICE]**Pml Driver HPZ12 -/- C:\windows\System32\svchost.exe -/- C:\WINDOWS\system32\HPZipm12.dll
[05-SERVICE]**sgsvc -/- C:\Program Files\AhnLab\SiteGuard2\sgsvc.exe
[05-SERVICE]**V3 Lite Service -/- C:\Program Files\AhnLab\V3Lite\V3LSvc.exe