关于手动删除U盘文件夹病毒的解决方法
手动删除U盘文件夹病毒
最近好多电脑中了U盘病毒,把U盘上所有正常文件夹隐藏,然后用病毒自己的程序充当文件夹,引起电脑运行缓慢,不能用注册表、任务管理器,感兴趣的朋友可以尝试一下这个批处理方法...
将以下内容另存文.bat批处理文档。运行试一下!
@REM -------------------------------------------------------------------------------------------------
@ECHO OFF
@REM VIRUS MAIN PROGRAM FILE'S NAME IS "RUNOUCE.EXE"
ECHO KILLING VIRUS MAIN PROGRAM IN MEMORY...
SET VIRUSPROG=RUNOUCE.EXE
SET VIRUSFILE=%SYSTEMROOT%SYSTEM32\%VIRUSPROG%
TASKLIST | FIND /I "%VIRUSPROG%"
IF %ERRORLEVEL% GEQ 1 (GOTO NOVIRUS)
:FINDVIRUS
TASKKILL /F /IM "%VIRUSPROG%" /T
TASKLIST | FIND /I "%VIRUSPROG%"
IF %ERRORLEVEL% EQU 0 ( GOTO FINDVIRUS ) ELSE ( GOTO KILLEDVIRUS )
:KILLEDVIRUS
ECHO VIRUS IN MEMORY KILLED!
ECHO NOW DELETING THE VIRUS FILES:
GOTO DELETEFILE
:NOVIRUS
ECHO THERE'S NO VIRUS IN YOUR MACHINE!
GOTO END
:DELETEFILE
ECHO DELETING VIRUS MAIN PROGRAM FILE AND EMAILS CREATED BY VIRUS...
@REM DELETE MAIN VIRUS PROGRAM FILE
ATTRIB -R -S -H %VIRUSFILE%
DEL %VIRUSFILE%
@REM DELETE EMAIL FILE.
SET FILENAME=%PROGRAMFILES%COMMON FILESMICROSOFT SHAREDSTATIONERYREADME.EML
IF EXIST %FILENAME% DEL %FILENAME%
SET FILENAME=%PROGRAMFILES%COMMON FILESSYSTEMADOREADME.EML
IF EXIST %FILENAME% DEL %FILENAME%
SET FILENAME=%PROGRAMFILES%NETMEETINGREADME.EML
IF EXIST %FILENAME% DEL %FILENAME%
ECHO REPAIRE REGISTRY:
ECHO ENABLING SYSTEM TASK MANAGER...
REG DELETE HKCUSoftwareMicrosoftWindowsCurrentVersionPoliciessystem /V DisableTaskMgr /F
ECHO ENABLING SYSTEM REGISTRY TOOLS...
REG DELETE HKCUSoftwareMicrosoftWindowsCurrentVersionPoliciessystem /V DisableRegistryTools /F
ECHO DELETE VIRUS REGISTRY ...
REG DELETE HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun /V Runonce /F
ECHO "DONE!"
:END
PAUSE
注意:该批处理只删除在系统盘WindowsSystem32下的.病毒主程序,和几个附加的email,不能删除优盘上的病毒。
【手动删除U盘文件夹病毒的解决方法】相关文章:
如何让电脑远离U盘病毒08-09
U盘病毒的认识及防范措施08-09
u盘无法识解决方法11-11
关于U盘病毒的介绍与预防措施05-10
U盘为Raw类型的解决方法11-09
快速固定U盘盘符的解决方法10-20
u盘不显示的解决方法参考03-28
打不开新的u盘解决方法02-17
加快U盘传输速度的解决方法01-29