reg delete HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run /v {9D0351F9-8E49-4ed1-BBCE-0795F5B9F240} /f
reg delete "HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows" /v load /f
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run /v {9D0351F9-8E49-4ed1-BBCE-0795F5B9F240} /f
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability /v ShutdownStateSnapshot /f
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v zt /f
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v ms /f
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v fzg /f
reg delete HKEY_USERS\S-1-5-21-2605889240-4013433242-1396700885-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run /v {9D0351F9-8E49-4ed1-BBCE-0795F5B9F240} /f
reg delete "HKEY_USERS\S-1-5-21-2605889240-4013433242-1396700885-500\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows" /v load /f
md %systemroot%\1.com
attrib +h +r +s %systemroot%\1.com
md %systemroot%\sws32.dll
attrib +h +r +s %systemroot%\sws32.dll
md %systemroot%\kill.exe
attrib +h +r +s %systemroot%\kill.exe
md %systemroot%\EXP10RER.com
attrib +h +r +s %systemroot%\EXP10RER.com
md %systemroot%\finders.com
attrib +h +r +s %systemroot%\finders.com
md %systemroot%\Shell.sys
attrib +h +r +s %systemroot%\Shell.sys
md %systemroot%\Logo_.exe
attrib +h +r +s %systemroot%\Logo_.exe
md %systemroot%\0Sy.exe
attrib +h +r +s %systemroot%\0Sy.exe
md %systemroot%\1Sy.exe
attrib +h +r +s %systemroot%\1Sy.exe
md %systemroot%\2Sy.exe
attrib +h +r +s %systemroot%\2Sy.exe
md %systemroot%\3Sy.exe
attrib +h +r +s %systemroot%\3Sy.exe
md %systemroot%\4Sy.exe
attrib +h +r +s %systemroot%\4Sy.exe
md %systemroot%\5Sy.exe
attrib +h +r +s %systemroot%\5Sy.exe
md %systemroot%\6Sy.exe
attrib +h +r +s %systemroot%\6Sy.exe
md %systemroot%\7Sy.exe
attrib +h +r +s %systemroot%\7Sy.exe
md %systemroot%\8Sy.exe
attrib +h +r +s %systemroot%\8Sy.exe
md %systemroot%\9Sy.exe
attrib +h +r +s %systemroot%\9Sy.exe
md %systemroot%\exerouter.exe
attrib +h +r +s %systemroot%\exerouter.exe
md %systemroot%\Logo1_.exe
attrib +h +r +s %systemroot%\Logo1_.exe
md %systemroot%\rundl132.exe
attrib +h +r +s %systemroot%\rundl132.exe
md %systemroot%\rundll32.exe
attrib +h +r +s %systemroot%\rundll32.exe
md %systemroot%\smss.exe
attrib +h +r +s %systemroot%\smss.exe
md %systemroot%\vDll.dll
attrib +h +r +s %systemroot%\vDll.dll
md %systemroot%\Dll.dll
attrib +h +r +s %systemroot%\Dll.dll
md "C:\Program Files\svhost32.exe"
attrib +h +r +s "C:\Program Files\svhost32.exe"
md "C:\Program Files\Intel\rundll32.exe"
attrib +h +r +s "C:\Program Files\Intel\rundll32.exe"
md "C:\Program Files\Intel\svhost32.exe"
attrib +h +r +s "C:\Program Files\Intel\svhost32.exe"
md "C:\Program Files\Microsoft\svhost32.exe"
attrib +h +r +s "C:\Program Files\Microsoft\svhost32.exe"
md %systemroot%\system32\richnotify.exe
attrib +h +r +s %systemroot%\system32\richnotify.exe
md %systemroot%\system32\reshtm.dll
attrib +h +r +s %systemroot%\system32\reshtm.dll
md %systemroot%\system32\resPro.dll
attrib +h +r +s %systemroot%\system32\resPro.dll
md %systemroot%\stdie.dll
attrib +h +r +s %systemroot%\stdie.dll
del c:\_desktop.ini /f/s/q/a
del d:\_desktop.ini /f/s/q/a
del e:\_desktop.ini /f/s/q/a
del f:\_desktop.ini /f/s/q/a
del g:\_desktop.ini /f/s/q/a
del h:\_desktop.ini /f/s/q/a
del i:\_desktop.ini /f/s/q/a
把以上代码保存为.bat;文件即可..
它会在系统目录里生成一些文件..以后不喜欢对昭着删除就是
注意,没有什么是100%安全的,只有保持良好的电脑使用习惯和上网习惯可使你最大限度远离病毒!