查看: 2173|回复: 19
收起左侧

一个可以免疫大部分病毒的批处理

[复制链接]
z900215j
发表于 2010-5-28 19:01:13 | 显示全部楼层 |阅读模式
@echo off
color 0a
echo ******************************************************************************
echo * *
echo * 现在进行机器狗免疫 *
echo * *
echo ******************************************************************************
md C:\WINDOWS\system32\wxptdi.sys 2>nul
md C:\WINDOWS\system32\wxptdi.sys\1..\ 2>nul
md C:\WINDOWS\system32\fat32.sys 2>nul
md C:\WINDOWS\system32\fat32.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\ati32srv.sys 2>nul
md C:\WINDOWS\system32\drivers\ati32srv.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\pcibus.sys 2>nul
md C:\WINDOWS\system32\drivers\pcibus.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\pcidisk.sys 2>nul
md C:\WINDOWS\system32\drivers\pcidisk.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\pcihdd.sys 2>nul
md C:\WINDOWS\system32\drivers\pcihdd.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\phy.sys 2>nul
md C:\WINDOWS\system32\drivers\phy.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\pop.sys 2>nul
md C:\WINDOWS\system32\drivers\pop.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\puid.sys 2>nul
md C:\WINDOWS\system32\drivers\puid.sys\1..\ 2>nul
md C:\WINDOWS\system32\drivers\usb32k.sys 2>nul
md C:\WINDOWS\system32\drivers\usb32k.sys\1..\ 2>nul
md C:\WINDOWS\system32\2dogkiller.sys 2>nul
md C:\WINDOWS\system32\2dogkiller.sys\1..\ 2>nul
attrib C:\WINDOWS\system32\wxptdi.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\fat32.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\ati32srv.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\ati32srv.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\pcidisk.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\pcihdd.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\phy.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\pop.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\puid.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\puid.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\usb32k.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\2dogkiller.sys +s +h +r +a 2>nul
attrib C:\WINDOWS\system32\drivers\pcibus.sys +s +h +r +a 2>nul
echo y|cacls C:\WINDOWS\system32\2dogkiller.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\usb32k.sys /d everyone2 >nul
echo y|cacls C:\WINDOWS\system32\drivers\puid.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\pop.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\phy.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\pcihdd.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\pcidisk.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\pcibus.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\drivers\ati32srv.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\fat32.sys /d everyone 2>nul
echo y|cacls C:\WINDOWS\system32\wxptdi.sys /d everyone 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *********************************************************************************
echo * *
echo * 现在进行机器狗小马免疫 *
echo * *
echo *********************************************************************************
md c:\windows\system32\bqtldzlu.exe 2>nul
md c:\windows\system32\diynpis.exe 2>nul
md c:\windows\system32\dndsioc.exe 2>nul
md c:\windows\sytem32\fewqickd.exe 2>nul
md c:\windows\sytem32\fmschif.exe 2>nul
md c:\windows\sytem32\fmsjhif.exe 2>nul
md c:\windows\sytem32\hefcndy.exe 2>nul
md c:\windows\sytem32\hgeazpkc.exe 2>nul
md c:\windows\sytem32\anistio.exe 2>nul
md c:\windows\sytem32\anittio.exe 2>nul
md c:\windows\sytem32\isndctio.exe 2>nul
md c:\windows\sytem32\juejwcx.exe 2>nul
md c:\windows\sytem32\nbnwewd.exe 2>nul
md c:\windows\sytem32\ptshell.exe 2>nul
md c:\windows\sytem32\uiwcaqws.exe 2>nul
md c:\windows\sytem32\wipxcdec.exe 2>nul
md c:\windows\sytem32\wrew2ds.exe 2>nul
md c:\windows\system32\ytewcxzsw.exe 2>nul
attrib c:\windows\system32\bqtldzlu.exe +s +r +h +a 2>nul
attrib c:\windows\system32\diynpis.exe +s +r +h +a 2>nul
attrib c:\windows\system32\dndsioc.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\fewqickd.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\fmschif.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\fmsjhif.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\hefcndy.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\hgeazpkc.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\anistio.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\anittio.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\isndctio.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\juejwcx.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\nbnwewd.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\ptshell.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\uiwcaqws.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\wipxcdec.exe +s +r +h +a 2>nul
attrib c:\windows\sytem32\wrew2ds.exe +s +r +h +a 2>nul
attrib c:\windows\system32\ytewcxzsw.exe +s +r +h +a 2>nul
echo y|cacls c:\windows\system32\bqtldzlu.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\diynpis.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\dndsioc.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\fewqickd.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\fmschif.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\fmsjhif.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\hefcndy.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\hgeazpkc.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\anistio.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\anittio.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\isndctio.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\juejwcx.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\nbnwewd.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\ptshell.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\uiwcaqws.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\wipxcdec.exe /d everyone 2>nul
echo y|cacls c:\windows\sytem32\wrew2ds.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\ytewcxzsw.exe /d everyone 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *********************************************************************************
echo * *
echo * 进行Auto免疫 *
echo * *
echo *********************************************************************************
for %%a in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%a:\auto.exe >nul 2>nul
for %%h in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%h:\auto.exe\1..\ >nul 2>nul
for %%b in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%b:\autorun.inf >nul 2>nul
for %%g in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%g:\autorun.inf\1..\ >nul 2>nul
for %%c in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do attrib %%c:\auto.exe +s +h +r +a >nul 2>nul
for %%d in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do attrib %%d:\autorun.inf +s +h +r +a >nul 2>nul
for %%e in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do echo y|cacls %%e:\auto.exe /d everyone >nul 2>nul
for %%f in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do echo Y|cacls %%f:\autorun.inf /d everyone >nul 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *******************************************************************************
echo * *
echo * 现在进行IGM免役 *
echo * *
echo *******************************************************************************
md c:\windows\IGW.exe 2>nul
md c:\windows\AVPSrv.exe 2>nul
md c:\windows\DiskMan32.exe 2>nul
md c:\windows\IGM.exe 2>nul
md c:\windows\Kvsc3.exe 2>nul
md c:\windows\lqvytv.exe 2>nul
md c:\windows\MsIMMs32.exe 2>nul
md c:\windows\system32\3CEBCAF.exe 2>nul
md c:\windows\system32\racvsvc.exe 2>nul
md c:\windows\nvdispdrv.exe 2>nul
md c:\windows\dbghlp32.exe 2>nul
md c:\windows\system32\drivers\svchost.exe 2>nul
md c:\windows\system32\a.exe 2>nul
md c:\windows\upxdnd.exe 2>nul
md c:\windows\WinForm.exe 2>nul
md c:\windows\system32\rsjzbpm.dll 2>nul
md c:\windows\system32\cmdbcs.dll 2>nul
md c:\windows\system32\upxdnd.dll 2>nul
md c:\windows\system32\yfmtdiouaf.dll 2>nul
md c:\windows\nvdispdrv.exe 2>nul
md c:\windows\49400MM.DLL 2>nul
md c:\windows\338448WO.dll 2>nul
md c:\windows\235780MM.dll 2>nul
md c:\windows\235780WO.DLL 2>nul
attrib c:\windows\IGW.exe +s +r +h +a 2>nul
attrib c:\windows\AVPSrv.exe +s +r +h +a 2>nul
attrib c:\windows\DiskMan32.exe +s +r +h +a 2>nul
attrib c:\windows\IGM.exe +s +r +h +a 2>nul
attrib c:\windows\Kvsc3.exe +s +r +h +a 2>nul
attrib c:\windows\lqvytv.exe +s +r +h +a 2>nul
attrib c:\windows\MsIMMs32.exe +s +r +h +a 2>nul
attrib c:\windows\system32\3CEBCAF.exe +s +r +h +a 2>nul
attrib c:\windows\system32\racvsvc.exe +s +r +h +a 2>nul
attrib c:\windows\nvdispdrv.exe +s +r +h +a 2>nul
attrib c:\windows\dbghlp32.exe +s +r +h +a 2>nul
attrib c:\windows\system32\drivers\svchost.exe +s +r +h +a 2>nul
attrib c:\windows\system32\a.exe +s +r +h +a 2>nul
attrib c:\windows\upxdnd.exe +s +r +h +a 2>nul
attrib c:\windows\WinForm.exe +s +r +h +a 2>nul
attrib c:\windows\system32\rsjzbpm.dll +s +r +h +a 2>nul
attrib c:\windows\system32\cmdbcs.dll +s +r +h +a 2>nul
attrib c:\windows\system32\upxdnd.dll +s +r +h +a 2>nul
attrib c:\windows\system32\yfmtdiouaf.dll +s +r +h +a 2>nul
attrib c:\windows\nvdispdrv.exe +s +r +h +a 2>nul
attrib c:\windows\49400MM.DLL +s +r +h +a 2>nul
attrib c:\windows\338448WO.dll +s +r +h +a 2>nul
attrib c:\windows\235780WO.DLL +s +r +h +a 2>nul
attrib c:\windows\235780MM.dll +s +r +h +a 2>nul
echo y|cacls c:\windows\235780MM.dll /d everyone 2>nul
echo y|cacls c:\windows\235780WO.DLL /d everyone 2>nul
echo y|cacls c:\windows\338448WO.dll /d everyone 2>nul
echo y|cacls c:\windows\49400MM.DLL /d everyone 2>nul
echo y|cacls c:\windows\nvdispdrv.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\yfmtdiouaf.dll /d everyone 2>nul
echo y|cacls c:\windows\system32\upxdnd.dll /d everyone 2>nul
echo y|cacls c:\windows\WinForm.exe /d everyone
echo y|cacls c:\windows\system32\cmdbcs.dll /d everyone 2>nul
echo y|cacls c:\windows\system32\rsjzbpm.dll /d everyone 2>nul
echo y|cacls c:\windows\upxdnd.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\a.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\drivers\svchost.exe /d everyone 2>nul
echo y|cacls c:\windows\dbghlp32.exe /d everyone 2>nul
echo y|cacls c:\windows\nvdispdrv.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\racvsvc.exe /d everyone 2>nul
echo y|cacls c:\windows\system32\3CEBCAF.exe /d everyone 2>nul
echo y|cacls c:\windows\lqvytv.exe /d everyone 2>nul
echo y|cacls c:\windows\MsIMMs32.exe /d everyone 2>nul
echo y|cacls c:\windows\Kvsc3.exe /d everyone 2>nul
echo y|cacls c:\windows\IGM.exe /d everyone 2>nul
echo y|cacls c:\windows\DiskMan32.exe /d everyone 2>nul
echo y|cacls c:\windows\AVPSrv.exe /d everyone 2>nul
echo y|cacls c:\windows\IGW.exe /d everyone 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *********************************************************************************
echo * *
echo * 现在进行AV免疫 *
echo * *
echo *********************************************************************************
for %%x in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%x:\hfhludy.exe >nul 2>nul
for %%y in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do md %%y:\hfhludy.exe\1..\ >nul 2>nul
for %%r in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do attrib %%r:\hfhludy.exe +s +h +r +a >nul 2>nul
for %%u in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do echo y|cacls %%u:\hfhludy.exe /d everyone >nul 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *********************************************************************************
echo * *
echo * 现在进行病毒下载器免疫 *
echo * *
echo *********************************************************************************
md c:\windows\system32\conime.exe.tmp2 2>nul
attrib c:\windows\system32\conime.exe.tmp2 +s +h +r +a 2>nul
echo y|cacls c:\windows\system32\conime.exe.tmp2 /d everyone 2>nul
echo *********************************************************************************
echo * *
echo * 免疫完成 *
echo * *
echo *********************************************************************************
echo *********************************************************************************
echo * *
echo * *
echo * *
echo * *
echo * *
echo * *
echo * z900215j收集 *
echo * QQ:896689464 *
echo * *
echo * *
echo * *
echo * *
echo * *
echo * *
echo *********************************************************************************
pause

复制以上红色字体粘贴到TXT文本文档里,保存后更改扩展名为 BAT就可以了!!!
jgsabc
发表于 2010-5-28 19:48:33 | 显示全部楼层
LZ想重装了
单身熟男 该用户已被删除
发表于 2010-5-28 19:49:49 | 显示全部楼层
为什么总有人相信这些东西。。病毒要能免疫,那杀软公司就该关门了
风之幻想
发表于 2010-5-28 19:50:56 | 显示全部楼层
楼主,你的电脑该重装了
jackrtu
发表于 2010-5-28 19:51:24 | 显示全部楼层
辅助区好象有,..但是这个不怎么管用地
wangxiaojun
发表于 2010-5-28 19:56:02 | 显示全部楼层
啥时的老帖又翻出来了?这个当时就指出了很有局限性,病毒名称可是随机的,如果全都不在里面,咋办?这个bat基本没有多大用处。
wangxiaojun
发表于 2010-5-28 19:57:09 | 显示全部楼层
回复 5# jackrtu
基本没有用,bat如果能对付得了,就不用编写安全软件了。。。
veimo
发表于 2010-5-28 19:58:53 | 显示全部楼层
如此神奇的东西,要能适应这不断变化的形式,杀软都该下岗了
Lgwu
头像被屏蔽
发表于 2010-5-28 20:16:07 | 显示全部楼层
只是针对特定病毒做免疫文件夹。即使起点作用,也只能针对少量病毒。
传来传去,又不知道要误导到谁了。
白羊座
发表于 2010-5-28 20:18:22 | 显示全部楼层
病毒加一行代码,删除后创建,批处理byebye
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-12 21:08 , Processed in 0.142041 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表