【3.A.S.T】网络安全爱好者's Archiver

黑客学习

aqiu666 发表于 2008-8-16 13:37

批处理打造一键修复被恶意修改的IE

批处理打造一键修复被恶意修改的IE
网上的一些破网页总会恶意修改我们的IE 达到给他们增加流量的目的 菜菜们遇到问题就会去网上找文章 我把文章里的一些东西写成了一段批处理 以后就不用到处找文章了

我这个只能对付一般的恶意修改 对付难一点的就不行了.....惭愧啊 技术不到家.....

大家看代码

@echo off
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Internet" "Explorer\Main /v Default_Page_URL /t REG_SZ /d [url=http://www.microsoft.com/windows/ie_intl/cn/start/]www.microsoft.com/windows/ie_intl/cn/start/[/url] /f
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Internet" "Explorer\Main /v Start" "Page /t REG_SZ /d about:blank /f
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Internet" "Explorer\Main /v Start" "Page /t REG_SZ /d about:blank /f
REG ADD HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet" "Explorer\Control" "Panel /v HomePage /t REG_DWORD /d 00000000 /f
REG ADD HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet" "Explorer\Control" "Panel /v Links /t REG_DWORD /d 00000000 /f
REG ADD HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet" "Explorer\Control" "Panel /v SecAddSites /t REG_DWORD /d 00000000 /f

REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Internet" "Explorer\Search /v SearchAssistant /t REG_SZ /d ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm /f
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Internet" "Explorer\Search /v CustomizeSearch /t REG_SZ /d ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm /f
REG ADD HKEY_CURRENT_USER\Software\Microsoft\Internet" "Explorer\Main /v Window" "Title /t REG_SZ /d Microsoft" "Internet" "Explorer /f
REG ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Internet" "Explorer\Main /v Window" "Title /t REG_SZ /d Microsoft" "Internet" "Explorer /f
REG ADD HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet" "Explorer\Restrictions /v NoBrowserContextMenu /t REG_DWORD /d 00000000 /f
REG ADD HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet" "Explorer\Restrictions /v NoViewSource /t REG_DWORD /d 00000000 /f
REG ADD HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet" "Explorer\Restrictions /v NoViewSource /t REG_DWORD /d 00000000 /f
REG DELETE HKEY_LOCAL_MACHINE\Software\Microsoft\Windows" "NT\CurrentVersion\Winlogon /v LegalNoticeCaption /f
REG DELETE HKEY_LOCAL_MACHINE\Software\Microsoft\Windows" "NT\CurrentVersion\Winlogon /v LegalNoticeText /f
net stop Messenger

保存为bat文件运行 就可以将主页和一些设置改回来了
[url=http://wpa.qq.com/msgrd?V=1&Uin=229189138&Site=Yes黑客联盟论坛&Menu=yes][img]

页: [1]

Powered by Discuz! Archiver 7.2  © 2001-2009 Comsenz Inc.