>nul 不显示命令执行的信息(应该是成功的信息)
1>nul 不显示命令执行成功的信息 同>nul
2>nul 不显示命令执行失败的信息
不显示所有输出 1>2>nul或1>nul 2>nul
md 创建目录
attrib +s +h +r 设置属性,依次为系统文件,隐藏文件,只读.
arp -s 192.168.0.1 00-d0-f8-a5-15-ac 绑定网关与路由mac.防止arp欺骗导致掉线.
cacls.exe /d everyone设置文件拒绝任何用户访问
regedit /s 导入注册表,不提示确认框.
echo 显示,后面的"|"是通道命令,把前面的y发送到下一命令.因为下面的cacls一定要输入y确认,所以如此省事点.
md c:\_desktop.ini
md c:\autorun.inf
md c:\command.com
md c:\desktop_.ini
attrib +s +r +h +a c:\_desktop.ini
attrib +s +r +h +a c:\autorun.inf
attrib +s +r +h +a c:\command.com
attrib +s +r +h +a c:\windows\system32\cmdbcs.dll
attrib +s +r +h +a c:\windows\system32\winform.dll
attrib +s +r +h +a c:\windows\system32\msccrt.dll
cacls c:\_desktop.ini /e /t /d everyone
cacls c:\setup.exe /e /t /d everyone
cacls c:\windows\mppds.exe /e /t /d everyone
cacls c:\windows\Logo1_.exe /e /t /d everyone
cacls c:\windows\RichDll.dll /e /t /d everyone
cacls c:\windows\winform.exe /e /t /d everyone
arp -d
arp -s 192.168.0.1 00-d0-f8-a5-15-ac
regedit /s \\servergame\qjw\DisallowRun.reg
md c:\WINDOWS\AVPSrv.exe >nul 2>nul
md c:\WINDOWS\DiskMan32.exe >nul 2>nul
md c:\WINDOWS\system32\racvsvc.exe >nul 2>nul
md c:\WINDOWS\cmdbcs.exe >nul 2>nul
echo y|cacls.exe c:\WINDOWS\AVPSrv.exe /d everyone >nul 1>nul
echo y|cacls.exe %windir%\system32\drivers\svchost.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\DiskMan32.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\Kvsc3.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\lqvytv.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\MsIMMs32.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\3CEBCAF.EXE /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\a.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\upxdnd.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\WinForm.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\rsjzbpm.dll /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\racvsvc.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\cmdbcs.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\dbghlp32.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\nvdispdrv.exe /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\cmdbcs.dll /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\dbghlp32.dll /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\upxdnd.dll /d everyone >nul 1>nul
echo y|cacls.exe c:\WINDOWS\system32\yfmtdiouaf.dll /d everyone >nul 1>nul
echo reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image
FileExecutionOptions\IGM.EXE" /v debugger /t reg_sz /d debugfile.exe /f
echo gpupdate
exit
@echo off
if exist c:\windows\yxwl.txt goto aabb
taskkill /im explorer.exe /f
attrib C:\WINDOWS\explorer.exe +a +h +r
start explorer.exe
md c:\windows\fonts\kaqhmaz.exe\机器狗作者死全家......\
md c:\windows\fonts\avwlkst.exe\机器狗作者死全家......\
md c:\windows\fonts\jsqxczc.exe\机器狗作者死全家......\
md c:\windows\fonts\kvdxsois.exe\机器狗作者死全家......\
md c:\windows\fonts\avzxnst.exe\机器狗作者死全家......\
md c:\windows\fonts\arqjmtl.exe\机器狗作者死全家......\
md c:\windows\system32\drivers\pcihdd.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\pcihdd.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\puid.sys /d Everyone >nul 1>nul
md c:\windows\system32\drivers\usb32k.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\usb32k.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\usb32k.sys /d Everyone >nul 1>nul
md c:\windows\system32\drivers\pcidisk.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\pcidisk.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\pcidisk.sys /d Everyone >nul 1>nul
md c:\windows\system32\drivers\pcibus.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\pcibus.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\pcibus.sys /d Everyone >nul 1>nul
md c:\windows\system32\drivers\puid.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\puid.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\phy.sys /d everyone >nul 1>nul
md c:\windows\system32\drivers\wxptdi.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\wxptdi.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\wxptdi.sys /d everyone >nul 1>nul
md C:\WINDOWS\System32\drivers\msacpe.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\msacpe.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\msacpe.sys /d everyone >nul 1>nul
md C:\WINDOWS\System32\drivers\phy.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\phy.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\phy.sys /d everyone >nul 1>nul
md C:\WINDOWS\System32\drivers\phy.sys\机器狗作者死全家......\
attrib c:\windows\system32\drivers\phy.sys +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\drivers\phy.sys /d everyone >nul 1>nul
Del /f /s /q C:\WINDOWS\system32\dllcache\explorer.exe
md C:\WINDOWS\system32\dllcache\explorer.exe\机器狗作者死全家......\
attrib C:\WINDOWS\system32\dllcache\explorer.exe +h +r +s +a
echo y|cacls.exe C:\WINDOWS\system32\dllcache\explorer.exe /d everyone >nul 1>nul
@Echo Off
Echo 正在帮您清除系统垃圾文件,请稍等......
Del /f /s /q %systemdrive%\*.tmp
Del /f /s /q %systemdrive%\*._mp
Del /f /s /q %systemdrive%\*.log
Del /f /s /q %systemdrive%\*.gid
Del /f /s /q %systemdrive%\*.chk
Del /f /s /q %systemdrive%\*.old
Del /f /s /q %systemdrive%\recycled\*.*
Del /f /s /q %windir%\*.bak
Del /f /s /q %windir%\prefetch\*.*
rd /s /q %windir%\temp & md %windir%\temp
Del /f /q %userprofile%\cookies\*.*
Del /f /q %userprofile%\recent\*.*
Del /f /s /q "%userprofile%\Local Settings\Temporary Internet Files\*.*"
Del /f /s /q "%userprofile%\Local Settings\Temp\*.*"
Del /f /s /q "%userprofile%\recent\*.*"
echo 网吧网络 >c:\windows\xywl.txt
:aabb
exit