今天不小心中了个U盘病毒,比较顽固,花了我几个小时才搞定,网上虽然有一些现成的批处理文件来删除病毒文件,但是一运行注册表,病毒又会死灰复燃,我现在写的这个脚本不会出现这种情况! 把一下内容保存文bat文件运行就可以了,不过前提是要结束掉病毒进程,可以用360同时结束掉 相互保护的多个病毒进程,然后运行下面的批处理就可以了
- attrib-h-s-r%systemroot%\cursors\boom.vbs
- attrib-h-s-r%systemroot%\system\keyboard.exe
- attrib-h-s-r%systemroot%\system32\dllcache\default.exe
- attrib-h-s-r%systemroot%\fonts\fonts.exe
- attrib-h-s-r%systemroot%\system32\drivers\drivers.cab.exe
- attrib-h-s-r%systemroot%\system32\regedit
- attrib-h-s-r%systemroot%\fonts\fonts.exe
- attrib-h-s-r%systemroot%\media\rndll32.pif
- attrib-h-s-r%systemroot%\pchealth\helpctr\binaries\helphost.com
- attrib-h-s-r%systemroot%\fonts\tskmgr.exe
- attrib-h-s-r%systemroot%\pchealth\Global.exe
- attrib-h-s-r%systemroot%\system32\dllcache\autorun.inf
- attrib-h-s-r%systemroot%\system32\dllcache\system.exe
- attrib-h-s-r%systemroot%\system32\dllcache\svchost.exe
- attrib-h-s-r%systemroot%\system32\dllcache\Global.exe
- attrib-h-s-r%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\system.exe
- attrib-h-s-r%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\svchost.exe
- attrib-h-s-r%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\Global.exe
- attrib-h-s-rC:autorun.inf
- attrib-h-s-rC:MS-DOS.com
- attrib-h-s-rd:autorun.inf
- attrib-h-s-rd:MS-DOS.com
- attrib-h-s-re:autorun.inf
- attrib-h-s-re:MS-DOS.com
- attrib-h-s-rf:autorun.inf
- attrib-h-s-rf:MS-DOS.com
- attrib-h-s-rg:autorun.inf
- attrib-h-s-rg:MS-DOS.com
- attrib-h-s-rh:autorun.inf
- attrib-h-s-rh:MS-DOS.com
- attrib-h-s-ri:autorun.inf
- attrib-h-s-ri:MS-DOS.com
- attrib-h-s-rj:autorun.inf
- attrib-h-s-rj:MS-DOS.com
- attrib-h-s-rk:autorun.inf
- attrib-h-s-rk:MS-DOS.com
- del%systemroot%\cursors\boom.vbs
- del%systemroot%\system\keyboard.exe
- del%systemroot%\system32\dllcache\default.exe
- del%systemroot%\fonts\fonts.exe
- del%systemroot%\system32\drivers\drivers.cab.exe
- del%systemroot%\system32\regedit
- del%systemroot%\fonts\fonts.exe
- del%systemroot%\media\rndll32.pif
- del%systemroot%\pchealth\helpctr\binaries\helphost.com
- del%systemroot%\fonts\tskmgr.exe
- del%systemroot%\pchealth\Global.exe
- del%systemroot%\system32\dllcache\autorun.inf
- del%systemroot%\system32\dllcache\system.exe
- del%systemroot%\system32\dllcache\svchost.exe
- del%systemroot%\system32\dllcache\Global.exe
- del%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\system.exe
- del%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\svchost.exe
- del%systemroot%\system32\dllcache\recycler.{645ff040-5081-101b-9f08-00aa002f954e}\Global.exe
- delC:autorun.inf
- delC:MS-DOS.com
- deld:autorun.inf
- deld:MS-DOS.com
- dele:autorun.inf
- dele:MS-DOS.com
- delf:autorun.inf
- delf:MS-DOS.com
- delg:autorun.inf
- delg:MS-DOS.com
- delh:autorun.inf
- delh:MS-DOS.com
- deli:autorun.inf
- deli:MS-DOS.com
- delj:autorun.inf
- delj:MS-DOS.com
- delk:autorun.inf
- delk:MS-DOS.com