# For use with Merijn's Brute Force Uninstaller # available from http://www.merijn.org/ # # Script Name: MBS.BFU # Author: Pieter Arntz aka Metallica # Original idea: John McKenna OptionUseRecycleBin OptionStatusOn OptionSetStatus Stopping processes ProcessKill %SYSDIR%\mbssm32.exe|1 ProcessKill %SYSDIR%\mbsrm32.exe|1 ProcessKill %SYSDIR%\mbsmon32.exe|1 ProcessKill %SYSDIR%\mbsreg.exe|1 ProcessKill %SYSDIR%\mbsreg32.exe|1 ProcessKill %SYSDIR%\rmvalid.exe|1 ProcessKill %SYSDIR%\smvalid.exe|1 ProcessKill %SYSDIR%\winregmon32.exe|1 ProcessKill %SYSDIR%\winsysmon32.exe|1 ProcessKill %SYSDIR%\vsm.exe|1 ProcessKill %SYSDIR%\vrm.exe|1 ProcessKill %SYSDIR%\spzsu.exe|1 OptionSetStatus Cleaning registry RegDelValue HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|mbssm32 RegDelValue HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|mbsmon32 RegDelValue HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|winsys32mon RegDeleteKey HKCR\UBSauthenticateAXC.UBSauthenticate RegDeleteKey HKCR\UBSInstallerProj1.UBSInstaller RegDeleteKey HKCR\CLSID\{03BEED0D-08D3-4F8A-B1FC-1125FD9CA2CA} RegDeleteKey HKCR\CLSID\{0AC31BDF-3BEF-40FD-B465-706C97AF54CC} RegDeleteKey HKCR\CLSID\{32C57299-0969-44EB-9430-B9581A2EBC78} RegDeleteKey HKCR\CLSID\{D2FAC024-92C0-42E5-A75B-7B4E3915CC50} RegDeleteKey HKCR\Interface\{03A1C2D7-7C55-4249-AE94-6A1D0BF30916} RegDeleteKey HKCR\Interface\{128C578A-5E8D-4C8E-900B-235E490D3FA9} RegDeleteKey HKCR\Interface\{48C41D21-723A-4B41-A869-6C84326E219C} RegDeleteKey HKCR\Interface\{B3F57865-9034-483D-92D3-6DA16E0670E6} RegDeleteKey HKCR\TypeLib\{66DC2223-B839-4E7B-A11D-62D7770FABCE} RegDeleteKey HKCR\TypeLib\{C554BC41-3CBC-4074-AC8B-B2C0E4C04C06} RegDeleteKey HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{0AC31BDF-3BEF-40FD-B465-706C97AF54CC} RegSetDwordValue HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{0AC31BDF-3BEF-40FD-B465-706C97AF54CC}|Compatibility Flags|1024 OptionSetStatus Deleting files FileDelete %SYSDIR%\mbssm32.exe FileDelete %SYSDIR%\mbsrm32.exe FileDelete %SYSDIR%\mbsmon32.exe FileDelete %SYSDIR%\mbsreg.exe FileDelete %SYSDIR%\mbsreg32.exe FileDelete %SYSDIR%\rmvalid.exe FileDelete %SYSDIR%\smvalid.exe FileDelete %SYSDIR%\winregmon32.exe FileDelete %SYSDIR%\winsysmon32.exe FileDelete %SYSDIR%\vsm.exe FileDelete %SYSDIR%\vrm.exe FileDelete %SYSDIR%\u2g.f FileDelete %SYSDIR%\UBSauthenticateAXC.ocx FileDelete %SYSDIR%\UBSauthenticateAXC1.ocx FileDelete %SYSDIR%\winiconmon.ico FileDelete %SYSDIR%\winiconmon.ico.bak0 FileDelete %SYSDIR%\winiconmon.ico.bak1 FileDelete %SYSDIR%\winiconmon.ico.bak2 FileDelete %SYSDIR%\icon_mb014.ico FileDelete %SYSDIR%\icon_mb014.ico.bak0 FileDelete %SYSDIR%\Sexxxpassport*.ico FileDelete %SYSDIR%\Sexxxpassport.ico FileDelete %SYSDIR%\axaccessctr.ocx FileDelete %SYSDIR%\spzax.ocx FileDelete %SYSDIR%\spzsu.exe FileDelete %SYSDIR%\Show Pink Zone.ico FileDelete %SYSDIR%\spzico.ico FileDelete %DESKTOP%\Sexxxpassport.lnk FileDelete %DESKTOP%\SexxxPassport Members.lnk FileDelete %DESKTOP%\MBS Account Manager.lnk FileDelete %DESKTOP%\Show Pink Zone.lnk SystemEmptyInternetCache SystemEmptyTempFolder