Windowdel.com
Software Removal Guide

Trojan-GameThief. R3zxc.exe snowgay.dll

Korea (한국어) - Global (English) - Brazil (Português) - Japan (日本語) - Russia (русский) - [Chinese(简体中文) 即将推出]

WindowexeAllkiller Download : Free Download
WindowexeAllkiller is a free software which can remove unwanted software from your computer at once. WindowexeAllkiller is able to easily remove all Startup, Browser Helper Object, Toolbar, Service, Task Scheduler, malware, trojan, ad-popup and so on.
Easy to use, Very simple, Very Powerful.
No Viruses, No Spyware, No Adware, It's free!
System Requirements : .Net framework 2.0 , Windows xp, vista, 7, 8, 10 32/64bit

Como remover [Trojan-GameThief. R3zxc.exe snowgay.dll] usando o prompt de comando


Você é suposto começar com todos os programas fechados, porque um Explorer e Taskbar tudo terminar
Executar um prompt de comando. [Iniciar] - [Programas] - [Acessórios] - [Prompt de comando]
* importante : Windows Vista/7/8, você é aconselhado para selecionar [Executar como administrador] clicando em [comandos] com o botão direito do mouse.




Quando o prompt de comando é executado, surge uma tela preta como abaixo eo cursor começa a piscar.
As letras ou de forma que aparecem na tela pode ser ligeiramente diferente, mas não se preocupe. Vai dar tudo certo para você apenas para obter uma tela semelhante como abaixo.

Administrator: cmd _ O X
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corpation. All right reserved.

C:\Users\Administrator>

Quando jejuardes, clique no botão do mouse por três vezes consecutivas na linha vermelha (linha de comando), abaixo, você pode selecionar tudo.
A, clique do mouse a zona seleccionada e copiá-lo. (Ctrl + c ou Selecione um [cópia] no botão direito do mouse no menu de contexto.)
No caso de todas as zonas não são selecionados automaticamente, você vai ter que copiá-lo, arrastando toda a linha vermelha usando o mouse.

---------------------------------------------------------------------------------------------------------------
echo Start
echo #
echo ##################### Default System32 directory for x86 x64 #####################
echo #
echo 000 change to the default system directory & cd %WINDIR% & cd system32
echo Kill Process & taskkill /im explorer.exe /f & echo wait
echo Kill Process & tskill explorer & echo wait
echo Kill Process & taskkill /im IEXPLORE.EXE /f & echo wait
echo Kill Process & tskill IEXPLORE & echo wait
echo wait & ping 127.0.0.1 -n 1 > %WINDIR%\pingwait.txt
echo Created by http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll
echo ################# Created by windowdel.com http://www.windowdel.com #################
echo do not modify any label
echo 000 & taskkill /im "rundll32.exe" /f & echo wait
echo 000 & tskill "rundll32" & echo wait
echo 001 & attrib -r -h -s "%WINDIR%\system32\R3zxc.exe " & echo windowdel.com
echo 001 & del /q "%WINDIR%\system32\R3zxc.exe " & echo windowdel.com
echo 002 & attrib -r -h -s "%WINDIR%\system32\R3szxc10.dll " & echo windowdel.com
echo 002 & del /q "%WINDIR%\system32\R3szxc10.dll " & echo windowdel.com
echo 001 created by windowdel.com
echo 003 & attrib -r -h -s "%WINDIR%\system32\R3szxc11.dll " & echo windowexeallkiller.com
echo 003 & del /q "%WINDIR%\system32\R3szxc11.dll " & echo windowexeallkiller.com
echo 004 & attrib -r -h -s "%WINDIR%\system32\R3szxc20.dll " & echo windowdel.com
echo 004 & del /q "%WINDIR%\system32\R3szxc20.dll " & echo windowdel.com
echo 005 & attrib -r -h -s "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowdel.com
echo 005 & del /q "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowdel.com
echo 006 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3DBA9D2-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 007 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D3DBA9D1-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 008 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D3DBA9D8-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 009 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj " /f & echo windowdel.com
echo 010 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj.1 " /f & echo windowdel.com
echo 011 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}" /f & echo windowdel.com
echo 012 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowdel.com
echo 012 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowexe.com
echo 013 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowdel.com
echo 013 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowexe.com
echo 014 your ip is 3.145.57.254 do not delete this label.
echo http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll
echo do not modify any label
echo do not stop here for x86, you have to start explorer process.
echo #
echo ##################### Change directory SysWOW64 for x64 OS #####################
echo #
echo Remove x86 Application's registry for x64 OS & ping 127.0.0.1 -n 1 > %WINDIR%\pingwait.txt
echo change to the syswow64 directory & cd %WINDIR% & cd syswow64
echo 000 & taskkill /im "rundll32.exe" /f & echo wait
echo 000 & tskill "rundll32" & echo wait
echo 015 & attrib -r -h -s "%WINDIR%\system32\R3zxc.exe " & echo windowexeallkiller.com
echo 015 & del /q "%WINDIR%\system32\R3zxc.exe " & echo windowexeallkiller.com
echo 016 & attrib -r -h -s "%WINDIR%\system32\R3szxc10.dll " & echo windowexeallkiller.com
echo 016 & del /q "%WINDIR%\system32\R3szxc10.dll " & echo windowexeallkiller.com
echo 001 created by windowdel.com
echo 017 & attrib -r -h -s "%WINDIR%\system32\R3szxc11.dll " & echo windowexeallkiller.com
echo 017 & del /q "%WINDIR%\system32\R3szxc11.dll " & echo windowexeallkiller.com
echo 018 & attrib -r -h -s "%WINDIR%\system32\R3szxc20.dll " & echo windowexeallkiller.com
echo 018 & del /q "%WINDIR%\system32\R3szxc20.dll " & echo windowexeallkiller.com
echo 019 & attrib -r -h -s "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowexeallkiller.com
echo 019 & del /q "%USERPROFILE%\Microsoft\snowgay.dll" & echo windowexeallkiller.com
echo 020 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3DBA9D2-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 021 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D3DBA9D1-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 022 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D3DBA9D8-4657-44BC-B9FF-485C026FA281} " /f & echo windowdel.com
echo 023 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj " /f & echo windowdel.com
echo 024 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHlprObj.IEHlprObj.1 " /f & echo windowdel.com
echo 025 & reg.exe delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3DBA9D2-4657-44BC-B9FF-485C026FA281}" /f & echo windowdel.com
echo 026 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowdel.com
echo 026 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "snowgay" /f & echo created by windowexe.com
echo 027 & echo HKEY_CURRENT_USER Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowdel.com
echo 027 & echo HKEY_LOCAL_MACHINE Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "R3sos" /f & echo created by windowexe.com
echo 028 your ip is 3.145.57.254 do not delete this label.
echo http://windowdel.com/br.php?w=110818-trojan-gamethief-r3zxc-exe-snowgay-dll
echo 029 rechange dir to system32 & cd %WINDIR% & cd system32
echo ################# Created by windowdel.com http://www.windowdel.com ###############
echo do not modify any label
echo del pingwait.txt & del /q %WINDIR%\pingwait.txt
echo 030 & explorer.exe & echo explorer start
echo End
---------------------------------------------------------------------------------------------------------------

Todos os arquivos são apagados quando [Paste] é selecionado clicando com o mouse com o botão direito no meio da tela do prompt de comando após a cópia.

Administrator: cmd _ O X
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corpation. All right reserved.

C:\Users\Administrator>



  Mark
  Copy
  Paste
  Select All
  Scroll
  Find..

Não pode acontecer um caso em que os arquivos não são excluídos devido à seguinte linha de comando (supressão) começa muito rapidamente, enquanto que encerra o processo.
assim é aconselhável fazer mais uma [colar] na janela do prompt depois de todas as linhas de comando são executados.
Uma vez que as linhas de comando são todos executados, você pode fechar a janela do prompt de comando.





WindowexeAllkiller is a free software which can remove unwanted software from your computer at once. WindowexeAllkiller is able to easily remove all Startup, Browser Helper Object, Toolbar, Service, Task Scheduler, malware, trojan, ad-popup and so on.
WindowexeAllkiller
Easy to Use, Very Simple, Very Powerful, No Viruses, No Spyware, No Adware, It's free!

Guia de Remoção de Software parecidos
00986 - 11STshoppingIcon
00978 - 365web v2
00975 - AlterGeo Magic Scanner
00985 - BrotherSoft_Extreme
00988 - CatchCode
00972 - completebartb
00973 - ComplitlyEngine
00984 - IncrediMail
00970 - Kimspn
00983 - livefloat
00974 - Mail.Ru
00981 - MClearPC
00980 - navinow
00987 - privacyi
00982 - secretkey
00971 - SmartPop
00976 - StarMemo
00977 - windowsliveprotect

System Environment (X = System Drive)
Environment variableWindows xpWindows vista / 7 / 8
%ALLUSERSPROFILE%X:\Documents and Settings\All UsersX:\ProgramData
%APPDATA%X:\Documents and Settings\{User}\Application DataX:\Users\{User}\AppData\Roaming
%USERPROFILE%X:\Documents and Settings\{User}X:\Users\{User}
%PROGRAMFILES%X:\Program FilesX:\Program Files
%PROGRAMFILES(x86)%X:\Program Files(x86)X:\Program Files(x86)
%COMMONPROGRAMFILES%X:\Program Files\Common FilesX:\Program Files\Common Files
%COMMONPROGRAMFILES(x86)%X:\Program Files(x86)\Common FilesX:\Program Files(x86)\Common Files
%WINDIR%X:\WindowsX:\Windows
%HOMEDRIVE%X:X:

Copyright (c) Windowdel.com. All rights reserved. | Software Removal Guide Website.