Remove Panda Burning Incense Virus Batch Script XP version reprint _ Virus killing

Source: Internet
Author: User
Tags rar
Copy the following to Notepad, save as Pandakiller.bat, and then double-click Pandakiller.bat. This script not only has the effect of purging, but also prevents the virus from creating its associated programs again.
Also note that in order to take care of the vast majority of users, this script has been removed from the general htm,html,asp,aspx,jsp,php file, which will not cause the loss of the pages in your favorites (because it's just a shortcut), but it will cause you to lose the pages you store on your hard disk. If you have this information, it is recommended to back up before the operation of anti-virus. I will not be responsible for any legal and moral obligations! ;)
Clear before you download the following two dongdong, they will make your hard drive on the infected Exe,rar file recovery, clean up immediately run Jinshan and Jiangmin kill, you can completely farewell to most versions of the panda incense. In addition, if you do not remove, please send me a point of your virus, my mailbox zdtd_qd@163.com, I will be targeted to improve the script.
Jinshan Panda Kill:
Http://down.www.kingsoft.com/db/download/othertools/DuBaTool_WhBoy.BAT
Jiangmin Panda Kill:
Http://ec.jiangmin.com/test/PandaKiller.rar
Copy Code code as follows:

cd\
echo Antivirus before you do a backup work to avoid important data loss. & Pause
@echo off
taskkill/f/im Fuckjacks.exe
taskkill/f/im Sovh0st.exe
taskkill/f/im Rose.exe
taskkill/f/im Sxs.exe
taskkill/f/im Spoclsv.exe
taskkill/f/im Nvscv32.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im Iexpl0re.exe
taskkill/f/im ZAQ5.exe
taskkill/f/im Expl0rer.exe
taskkill/f/im Wuauclt.exe
taskkill/f/im Zaq2.exe
taskkill/f/im Zaq4.exe
taskkill/f/im Zaq10.exe
taskkill/f/im Zaq2.exe
taskkill/f/im Zaq4.exe
taskkill/f/im Zaq10.exe
taskkill/f/im ZAQ5.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq3.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq9.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
taskkill/f/im Zaq8.exe
Reg delete hklm\software\microsoft\windows\currentversion\run/v "synchronization Manager"/F
Reg delete Hklm\software\microsoft\windows\currentversion\run/v fuckjacks/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v wlzs/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v mhs2/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v load/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zts2/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v svohost/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v iexpl0re/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq5/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v wuauclt/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v wsvbs/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v synu/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v msccr/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v nopnewhelp/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v wsvbs/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v synu/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v msccr/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v nopnewhelp/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq2/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq4/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq5/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq10/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq3/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq8/f
Reg delete Hklm\software\microsoft\windows\currentversion\run/v zaq9/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq4/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq5/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq10/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq3/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq8/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v zaq9/f
Reg delete Hkcu\software\microsoft\windows\currentversion\run/v svcshare/f
del/f/s/q/a%windir%\system32\fuckjacks.exe
MD%windir%\system\fuckjacks.exe
del/f/s/q/a%system%\drivers\spoclsv.exe
MD%system%\drivers\spoclsv.exe
del/f/s/q/a C:\iexpl0re.bat
del/f/s/q/a%windir%\uninstall\rundl132.exe
MD%windir%\uninstall\rundl132.exe
del/f/s/q/a c:\iexpl0re.*
del/f/s/q/a C:\Program files\internet Explorer\plugins\system64.sys
del/f/s/q/a%windir%\525181m.bmp
del/f/s/q/a%windir%\210531.bmp
Del c:\docume~1\admini~1\locals~1\temp\*.exe/f/s/q/a
Del c:\docume~1\admini~1\locals~1\temp\*.bat/f/s/q/a
Del c:\docume~1\admini~1\locals~1\temp\*.cmd/f/s/q/a
del/f/s/q/a%system%\sxs.exe
MD%system%\sxs.exe
del/f/s/q/a%system%\sovhost.exe
MD%system%\svhost.exe
del/f/s/q/a C:\nvscv32.exe
Attrib-a-s-r-H C:\sxs.exe
Del c:\sxs.exe/q/F
Attrib-a-s-r-H C:\autorun.inf
Del c:\autorun.inf/q/F
MD C:\autorun.inf
Attrib-a-s-r-H D:\sxs.exe
Del d:\sxs.exe/q/F
Attrib-a-s-r-H D:\autorun.inf
Del d:\autorun.inf/q/F
MD D:\autorun.inf
Attrib-a-s-r-H E:\sxs.exe
Del e:\sxs.exe/q/F
Attrib-a-s-r-H E:\autorun.inf
Del e:\autorun.inf/q/F
MD E:\autorun.inf
Attrib-a-s-r-H F:\sxs.exe
Del f:\sxs.exe/q/F
Attrib-a-s-r-H F:\autorun.inf
Del f:\autorun.inf/q/F
MD F:\autorun.inf
Attrib-a-s-r-H G:\sxs.exe
Del g:\sxs.exe/q/F
Attrib-a-s-r-H G:\autorun.inf
Del g:\autorun.inf/q/F
MD G:\autorun.inf
Attrib-a-s-r-H H:\sxs.exe
Del h:\sxs.exe/q/F
Attrib-a-s-r-H H:\autorun.inf
Del h:\autorun.inf/q/F
MD H:\autorun.inf
Attrib-a-s-r-H I:\sxs.exe
Del i:\sxs.exe/q/F
Attrib-a-s-r-H I:\autorun.inf
Del i:\autorun.inf/q/F
MD I:\autorun.inf
del/f/s/q/a C:\zaq5.exe
del/f/s/q/a C:\expl0rer.exe
del/f/s/q/a C:\wuauclt.exe
del/f/s/q/a%windir%\wuauclt.exe
MD%windir%\wuauclt.exe
del/f/s/q/a%windir%\bbyb.exe
MD%windir%\bbyb.exe
del/f/s/q/a%windir%\bbybs.exe
MD%windir%\bbybs.exe
del/f/s/q/a%windir%\bbyb.dll
MD%windir%\bbyb.dll
del/f/s/q/a%windir%\ies.dll
MD%windir%\ies.dll
del/f/s/q/a C:\zaq2.exe
del/f/s/q/a C:\zaq4.exe
del/f/s/q/a C:\zaq5.exe
del/f/s/q/a C:\zaq10.exe
MD%windir%\zaq2.exe
MD%windir%\zaq4.exe
MD%windir%\zaq5.exe
MD%windir%\zaq10.exe
del/f/s/q/a%system%\expl0rer. Exe
MD%system%\expl0rer.exe
del/f/s/q/a%system%\system32.dll
del/f/s/q/a%system%\system64.dll
del/f/s/q/a%system%\aelupsvc32.dll
MD%system%\aelupsvc32.dll
del/f/s/q/a C:\zaq3.exe
del/f/s/q/a C:\zaq8.exe
del/f/s/q/a C:\zaq9.exe

Del c:\*.htm/f/s/q/a
Del c:\*.html/f/s/q/a
Del c:\*.asp/f/s/q/a
Del c:\*.php/f/s/q/a
Del c:\*.aspx/f/s/q/a
Del c:\*.jsp/f/s/q/a
Del d:\*.htm/f/s/q/a
Del d:\*.html/f/s/q/a
Del d:\*.asp/f/s/q/a
Del d:\*.php/f/s/q/a
Del d:\*.aspx/f/s/q/a
Del d:\*.jsp/f/s/q/a
Del e:\*.htm/f/s/q/a
Del e:\*.html/f/s/q/a
Del e:\*.asp/f/s/q/a
Del e:\*.php/f/s/q/a
Del e:\*.aspx/f/s/q/a
Del e:\*.jsp/f/s/q/a
Del f:\*.htm/f/s/q/a
Del f:\*.html/f/s/q/a
Del f:\*.asp/f/s/q/a
Del f:\*.php/f/s/q/a
Del f:\*.aspx/f/s/q/a
Del f:\*.jsp/f/s/q/a
Del g:\*.htm/f/s/q/a
Del g:\*.html/f/s/q/a
Del g:\*.asp/f/s/q/a
Del g:\*.php/f/s/q/a
Del g:\*.aspx/f/s/q/a
Del g:\*.jsp/f/s/q/a
Del h:\*.htm/f/s/q/a
Del h:\*.html/f/s/q/a
Del h:\*.asp/f/s/q/a
Del h:\*.php/f/s/q/a
Del h:\*.aspx/f/s/q/a
Del h:\*.jsp/f/s/q/a
Del i:\*.htm/f/s/q/a
Del i:\*.html/f/s/q/a
Del i:\*.asp/f/s/q/a
Del i:\*.php/f/s/q/a
Del i:\*.aspx/f/s/q/a
Del i:\*.jsp/f/s/q/a
Del C:\System Volume information\*.*/f/s/q/a
Del D:\System Volume information\*.*/f/s/q/a
Del E:\System Volume information\*.*/f/s/q/a
Del F:\System Volume information\*.*/f/s/q/a
Del G:\System Volume information\*.*/f/s/q/a
Del H:\System Volume information\*.*/f/s/q/a
Del I:\System Volume information\*.*/f/s/q/a
echo Antivirus complete! ~ ~ If you have any questions, please consult QQ77456852:)
Pause

Supplemental Keywords:
"Panda incense" virus prevention patches came out to kill panda Wuhan Male and the panda to prevent Panda incense Panda Incense Patch
How to prevent panda burning incense Panda special Kill the zoo Jinshan special kill the Super Patrol Panda Pandas burn incense The latest varieties completely remove panda incense


Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.