U盘是小巧便携的工具,但是在使用过程也会存在中病毒的可能。recycler病毒可以在U盘、磁盘中任意复制,如果U盘中了recycler病毒该怎么办?针对这个问题,下面我们一起来看看解决方法吧。
解决方法:制作BAT专杀工具
1、复制下面的代码到记事本中
- @echo off
- taskkill /im explorer.exe /f
- for /d %%i in (c,d,e,f,g,h,i,j,k,l,m,n,o,p,q,r,s,t,u,v,w,x,y,z) do if exist "%%i:/RECYCLER" (
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\desktop.ini -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\desktop.ini
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\INFO2 -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\INFO2
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500 -s -h -r
- rd /q/s %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500
- attrib %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500\desktop.ini -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500\desktop.ini
- attrib %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500\INFO2 -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500\INFO2
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe
- attrib %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500 -s -h -r
- rd /q/s %%i:\RECYCLER\S-1-5-21-1960408961-1450960922-682003330-500
- attrib %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500\desktop.ini -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500\desktop.ini
- attrib %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500\INFO2 -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500\INFO2
- attrib %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe -s -h -r
- @del /q/s/f %%i:\RECYCLER\S-1-5-21-151679604-1924401545-338918334-500\UcHelp.exe
- attrib %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500 -s -h -r
- rd /q/s %%i:\RECYCLER\S-1-5-21-2516078899-3036549676-3356972236-500
- rd /q/s %%i:\RECYCLER
- )
- echo Windows Registry Editor Version 5.00>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] >>C:\seesaw.reg
- echo "DisableRegistryTools"=dword:00000000 >>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] >>C:\seesaw.reg
- echo "NoFolderOptions"=dword:00000000 >>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] >>C:\seesaw.reg
- echo "DisableTaskMgr"=dword:00000000 >>C:\seesaw.reg
- echo [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] >>C:\seesaw.reg
- echo "CheckedValue"=dword:00000001 >>C:\seesaw.reg
- echo [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\HideFileExt] >>C:\seesaw.reg
- echo "UncheckedValue"=dword:00000000 >>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache] >>C:\seesaw.reg
- echo "@shell32.dll,-30500"="显示所有文件和文件夹" >>C:\seesaw.reg
- echo "@shell32.dll,-30501"="不显示隐藏的文件和文件夹" >>C:\seesaw.reg
- echo [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] >>C:\seesaw.reg
- echo "Shell"="Explorer.exe" >>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] >>C:\seesaw.reg
- echo "NoDriveAutoRun"=hex:ff,ff,ff,03 >>C:\seesaw.reg
- echo "NoSetTaskbar"=dword:00000000 >>C:\seesaw.reg
- echo "NoDriveTypeAutoRun"=dword:000000ff >>C:\seesaw.reg
- echo [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] >>C:\seesaw.reg
- echo [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer] >>C:\seesaw.reg
- echo "NoDriveTypeAutoRun"=dword:000000ff >>C:\seesaw.reg
- echo [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run] >>C:\seesaw.reg
- @reg import C:\seesaw.reg
- @del /q C:\seesaw.reg
- start explorer.exe
- echo 清理RECYCLER病毒文件完成!
- @Pause 按任意键继续……
- exit
2、然后另存为BAT文件,运行之后效果如下
杀毒工具运行完一遍就可以清除recycler病毒了,不过还是建议大家使用杀毒软件对电脑全面查杀一次哦,也有可能中了其它关联的病毒。