Korea (한국어) -
Global (English) -
Brazil (Português) -
Japan (日本語) -
Russia (русский) -
[Chinese(简体中文) 即将推出]
WindowexeAllkiller Download : Free Download
WindowexeAllkiller is a free software which can remove unwanted software from your computer at once. WindowexeAllkiller is able to easily remove all Startup, Browser Helper Object, Toolbar, Service, Task Scheduler, malware, trojan, ad-popup and so on.
Easy to use, Very simple, Very Powerful.
No Viruses, No Spyware, No Adware, It's free!
System Requirements : .Net framework 2.0 , Windows xp, vista, 7, 8, 10 32/64bit
Como remover [Trojan-GameThief. R3zxc.exe snowgay.dll] usando o prompt de comando
Você é suposto começar com todos os programas fechados, porque um Explorer e Taskbar tudo terminar
Executar um prompt de comando. [Iniciar] - [Programas] - [Acessórios] - [Prompt de comando]
* importante : Windows Vista/7/8, você é aconselhado para selecionar [Executar como administrador] clicando em [comandos] com o botão direito do mouse.
Quando o prompt de comando é executado, surge uma tela preta como abaixo eo cursor começa a piscar.
As letras ou de forma que aparecem na tela pode ser ligeiramente diferente, mas não se preocupe. Vai dar tudo certo para você apenas para obter uma tela semelhante como abaixo.
|
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corpation. All right reserved.
C:\Users\Administrator>
|
Quando jejuardes, clique no botão do mouse por três vezes consecutivas na linha vermelha (linha de comando), abaixo, você pode selecionar tudo.
A, clique do mouse a zona seleccionada e copiá-lo. (Ctrl + c ou Selecione um [cópia] no botão direito do mouse no menu de contexto.)
No caso de todas as zonas não são selecionados automaticamente, você vai ter que copiá-lo, arrastando toda a linha vermelha usando o mouse.
---------------------------------------------------------------------------------------------------------------
echo Start
echo #
echo ##################### Default System32 directory for x86 x64 #####################
echo #
echo 000 change to the default system directory & cd %WINDIR% & cd system32
echo Kill Process & taskkill /im explorer.exe /f & echo wait
echo Kill Process & tskill explorer & echo wait
echo Kill Process & taskkill /im IEXPLORE.EXE /f & echo wait
echo Kill Process & tskill IEXPLORE & echo wait
echo wait & ping 127.0.0.1 -n 1 > %WINDIR%\pingwait.txt
echo Created by http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll
echo ################# Created by windowdel.com http://www.windowdel.com #################
echo do not modify any label echo 000 & taskkill /im "rundll32.exe" /f & echo wait echo 000 & tskill "rundll32" & echo wait echo 001 & attrib -r -h -s "%WINDIR%\system32\R3zxc.exe
" & echo windowdel.com echo 001 & del /q "%WINDIR%\system32\R3zxc.exe
" & echo windowdel.com echo 002 & attrib -r -h -s "%WINDIR%\system32\R3szxc10.dll
" & echo windowdel.com echo 002 & del /q "%WINDIR%\system32\R3szxc10.dll
" & echo windowdel.com echo 001 created by windowdel.com echo 003 & attrib -r -h -s "%WINDIR%\system32\R3szxc11.dll
" & echo windowexeallkiller.com echo 003 & del /q "%WINDIR%\system32\R3szxc11.dll
" & echo windowexeallkiller.com echo 004 & attrib -r -h -s "%WINDIR%\system32\R3szxc20.dll
" & echo windowdel.com echo 004 & del /q "%WINDIR%\system32\R3szxc20.dll
" & echo windowdel.com echo 005 & attrib -r -h -s "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowdel.com echo 005 & del /q "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowdel.com echo 006 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 007 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D3DBA9D1-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 008 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D3DBA9D8-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 009 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj
" /f & echo windowdel.com echo 010 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj.1
" /f & echo windowdel.com echo 011 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}" /f & echo windowdel.com echo 012 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowdel.com echo 012 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowexe.com echo 013 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowdel.com echo 013 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowexe.com echo 014 your ip is 3.145.57.254 do not delete this label. echo http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll echo do not modify any label echo do not stop here for x86, you have to start explorer process. echo # echo ##################### Change directory SysWOW64 for x64 OS ##################### echo # echo Remove x86 Application's registry for x64 OS & ping 127.0.0.1 -n 1 > %WINDIR%\pingwait.txt echo change to the syswow64 directory & cd %WINDIR% & cd syswow64 echo 000 & taskkill /im "rundll32.exe" /f & echo wait echo 000 & tskill "rundll32" & echo wait echo 015 & attrib -r -h -s "%WINDIR%\system32\R3zxc.exe
" & echo windowexeallkiller.com echo 015 & del /q "%WINDIR%\system32\R3zxc.exe
" & echo windowexeallkiller.com echo 016 & attrib -r -h -s "%WINDIR%\system32\R3szxc10.dll
" & echo windowexeallkiller.com echo 016 & del /q "%WINDIR%\system32\R3szxc10.dll
" & echo windowexeallkiller.com echo 001 created by windowdel.com echo 017 & attrib -r -h -s "%WINDIR%\system32\R3szxc11.dll
" & echo windowexeallkiller.com echo 017 & del /q "%WINDIR%\system32\R3szxc11.dll
" & echo windowexeallkiller.com echo 018 & attrib -r -h -s "%WINDIR%\system32\R3szxc20.dll
" & echo windowexeallkiller.com echo 018 & del /q "%WINDIR%\system32\R3szxc20.dll
" & echo windowexeallkiller.com echo 019 & attrib -r -h -s "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowexeallkiller.com echo 019 & del /q "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowexeallkiller.com echo 020 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 021 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D3DBA9D1-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 022 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D3DBA9D8-4657-44BC-B9FF-485C026FA281}
" /f & echo windowdel.com echo 023 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj
" /f & echo windowdel.com echo 024 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj.1
" /f & echo windowdel.com echo 025 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}" /f & echo windowdel.com echo 026 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowdel.com echo 026 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowexe.com echo 027 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowdel.com echo 027 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowexe.com echo 028 your ip is 3.145.57.254 do not delete this label. echo http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll
echo 029 rechange dir to system32 & cd %WINDIR% & cd system32
echo ################# Created by windowdel.com http://www.windowdel.com ###############
echo do not modify any label
echo del pingwait.txt & del /q %WINDIR%\pingwait.txt
echo 030 & explorer.exe & echo explorer start
echo End
---------------------------------------------------------------------------------------------------------------
Todos os arquivos são apagados quando [Paste] é selecionado clicando com o mouse com o botão direito no meio da tela do prompt de comando após a cópia.
|
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corpation. All right reserved.
C:\Users\Administrator>
Mark |
Copy |
Paste |
Select All |
Scroll |
Find.. |
|
Não pode acontecer um caso em que os arquivos não são excluídos devido à seguinte linha de comando (supressão) começa muito rapidamente, enquanto que encerra o processo.
assim é aconselhável fazer mais uma [colar] na janela do prompt depois de todas as linhas de comando são executados.
Uma vez que as linhas de comando são todos executados, você pode fechar a janela do prompt de comando.
WindowexeAllkiller is a free software which can remove unwanted software from your computer at once. WindowexeAllkiller is able to easily remove all Startup, Browser Helper Object, Toolbar, Service, Task Scheduler, malware, trojan, ad-popup and so on.
WindowexeAllkiller
Easy to Use, Very Simple, Very Powerful, No Viruses, No Spyware, No Adware, It's free!
Guia de Remoção de Software parecidos
00986 - 11STshoppingIcon 00978 - 365web v2 00975 - AlterGeo Magic Scanner 00985 - BrotherSoft_Extreme 00988 - CatchCode 00972 - completebartb 00973 - ComplitlyEngine 00984 - IncrediMail 00970 - Kimspn 00983 - livefloat 00974 - Mail.Ru 00981 - MClearPC 00980 - navinow 00987 - privacyi 00982 - secretkey 00971 - SmartPop 00976 - StarMemo 00977 - windowsliveprotect
System Environment (X = System Drive)
Environment variable | Windows xp | Windows vista / 7 / 8 |
%ALLUSERSPROFILE% | X:\Documents and Settings\All Users | X:\ProgramData |
%APPDATA% | X:\Documents and Settings\{User}\Application Data | X:\Users\{User}\AppData\Roaming |
%USERPROFILE% | X:\Documents and Settings\{User} | X:\Users\{User} |
%PROGRAMFILES% | X:\Program Files | X:\Program Files |
%PROGRAMFILES(x86)% | X:\Program Files(x86) | X:\Program Files(x86) |
%COMMONPROGRAMFILES% | X:\Program Files\Common Files | X:\Program Files\Common Files |
%COMMONPROGRAMFILES(x86)% | X:\Program Files(x86)\Common Files | X:\Program Files(x86)\Common Files |
%WINDIR% | X:\Windows | X:\Windows |
%HOMEDRIVE% | X: | X: |
|