3个文件:virus.txt ; host.txt ; Immunity.bat. 1)virus.txt: weiai.exe 08223B03.dll 122B901E.cfg 43ACDCC5.dll 4FBFD5A4.dll 58FF3024.dll 66AFCB56.dll 755D0ED0.cfg 755D0ED0.dll 9F684DE8.dll BA7EDF54.dll c39e8db.drv c39e8db.sys C8FFD223.cfg C8FFD223.dll CatRoot2\tmp.edb chmhp.dll csrss.dll DA63E650.dll dllcache\verclsid.exe.new drivers\HBKernel32.sys E4814792.dll f35ee9e.drv f35ee9e.sys h01013.dll HBDNF.dll HBJTLQ.dll HBQQXX.dll HBTL.dll HBWD.dll HBWOW.dll MFC71.DLL r01013.exe r03003.exe r05004.exe r18017.exe r21012.exe r23007.exe SET9.tmp sh01013.add sh03003.add sh03003.dll sh05004.add sh05004.dll sh18017.add sh18017.dll sh21012.add sh21012.dll sh21012.exe sh23007.add sh23007.dll System.exe a.exe 2)hosts.txt: 61.164.118.209 61.164.118.211 61.160.210.41 61.160.210.42 61.160.210.43 61.160.210.44 61.160.210.46 59.34.216.255 121.14.156.59 121.10.104.147 121.12.104.85 219.129.239.209 3)Immunity.bat: @echo of echo =============================================================================>NoImmunity.txt for /f %%a in (virus.txt) do @del /f /q %SystemRoot%\system32\%%a for /f %%a in (virus.txt) do (@md %SystemRoot%\system32\%%a\..........\ && @attrib +s +a +r +h %SystemRoot%\system32\%%a && @echo y| cacls %SystemRoot%\system32\%%a /d administrators) for /f %%a in (virus.txt) do if exist %SystemRoot%\system32\%%a\..........\ (echo %%a.............免疫成功) else (echo %%a-----------------------------没有免疫成功>>NoImmunity.txt.txt) md C:\PROGRA~1\INTERN~1\53u1ttMe.2ys\........\ && echo y| cacls C:\PROGRA~1\INTERN~1\53u1ttMe.2ys /d administrators md C:\PROGRA~1\INTERN~1\UnnxeMe.Jmp\.........\ && echo y| cacls C:\PROGRA~1\INTERN~1\UnnxeMe.Jmp /d administrators md c:\autorun.inf\.........\ && attrib +s +a +r +h c:\autorun.inf && echo y| cacls C:\autorun.inf /d administrators if not exist C:\PROGRA~1\INTERN~1\53u1ttMe.2ys\........\ echo 53u1ttMe.2ys\........\-----------------------------没有免疫成功>>NoImmunity.txt if not exist C:\PROGRA~1\INTERN~1\UnnxeMe.Jmp\.........\ echo UnnxeMe.Jmp\.........\-----------------------------没有免疫成功>>NoImmunity.txt if not exist c:\autorun.inf\.........\ echo autorun.inf\.........\-----------------------------没有免疫成功>>NoImmunity.txt if exist NoImmunity.txt start NoImmunity.txt echo =============================================================================>>NoImmunity.txt FOR /F "usebackq delims==" %%i IN (host.txt) DO @echo 127.0.0.1 %%i>>%SystemRoot%\system32\drivers\etc\hosts 这几个病毒杀毒后,都会出现系统不正常: 开始菜单不显示,最小化窗口看不到,没有任务栏,只能复制不能粘贴,也不能使用快捷键,服务不能启动也不能显示其属性,网络不能开启,打印机无法使用…… 1、修复注册表:[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost] 2、修复system32下的rpcss.dll文件 这两个文件都可以从系统正常的电脑上拷过来 3、修复任务栏网上搜下也能找到 |
|小黑屋|最新主题|手机版|微赢网络技术论坛 ( 苏ICP备08020429号 )
GMT+8, 2024-10-1 01:17 , Processed in 0.205124 second(s), 12 queries , Gzip On, MemCache On.
Powered by Discuz! X3.5
© 2001-2023 Discuz! Team.