求office2013{90110804-6000-ap11d3f-8CFE-0150048383C9}文件不小心删了

查看: 3111|回复: 7
裸奔了好久,终于中毒了,却开不开机了,求救
本帖最后由 岁寒. 于
18:01 编辑
由于是本,并且以前也用过挺多杀软的,后来为了电脑的流畅性,干脆不用杀软了,下了个杀毒比较快的金山猎豹,并且开机不启动,想着如果中毒了再打开杀杀就好了。裸奔了一年,- -终于中毒了。直接就是开不开机了。
由于我的电脑双系统,win7+win8,win7进不去了,但是发现win8内置的admin能进去(别的账号好像进不去,显示密码错误,我应该没记错,当然不排除这种可能),于是果断进了win8,用js扫描引擎2代,扫了下win7系统盘,发现172个病毒,当然,纵然这个启发引擎误报很高,但是以前我扫过一次,好像没这么多啊,求高手帮鉴别啊!!系统进不去了,实在不想重做系统。日志如下:
系统运行环境:
正在初始化引擎
D:\Program Files\Autodesk\Composite 2011\program\python.exe& && && &&&js.02.gen
D:\Program Files\Autodesk\Composite 2011\program\pythonw.exe& && && &&&js.02.gen
D:\Program Files\BumpTop\bumptop_patch.exe& && && &&&js.02.gen
D:\Program Files\Chinatelecom C+W\189DriveSetup.exe& && && &&&js.02.gen
D:\Program Files\ChinaTelecom DialManager\bindview.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\卸载清除\木马端口封杀.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\硬件检测\AIDA64(Everest).exe& && && &&&js.02.gen
D:\Program Files\Freesoft\系统设置\GHOST一键备份还原.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\系统设置\OEM-DIY品牌自己做.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\系统设置\SP3 TCPIP并发连接数修改.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\系统设置\输入法设置工具.exe& && && &&&js.02.gen
D:\Program Files\Freesoft\系统设置\黑屏时用键盘降低分辨率(Ctrl+Alt+F7).exe& && && &&&js.02.gen
D:\Program Files\Freesoft\网络设置\自动填IP地址\IP快速设置工具.exe& && && &&&js.02.gen
D:\Program Files\PANDORA.TV\PanService\killp.exe& && && &&&js.02.gen
D:\Program Files\PANDORA.TV\PanService\UnistAX.exe& && && &&&js.02.gen
D:\Program Files\VFree\VFTray.exe& && && &&&js.02.gen
D:\Program Files\VFree\VFUpdate.exe& && && &&&js.02.gen
D:\Program Files\VFree\VFUpload.exe& && && &&&js.02.gen
D:\Program Files\Windows Media C
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{1FA3941F-F736-4B78-B482-9C8085BAF117}\NewShortcut311_93A2B1A8AFC.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{1FA3941F-F736-4B78-B482-9C8085BAF117}\NewShortcut31_01EE73ABAA5E09C63BEE63.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnfnbeppfinmnjnjhedifcfllpcfgeea\1.0.0.1_0\plugin\IETabMulti_core.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\CT_ZTEMT_USB\AMD64UpdateDriver.exe& && && &&&js.00.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\CT_ZTEMT_USB\anzhuang.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\CT_ZTEMT_USB\MonServiceUDisk.exe& && && &&&js.00.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\CT_ZTEMT_USB\MonServiceUDisk64.exe& && && &&&js.00.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\CT_ZTEMT_U
D:\Windows\System32\RMActivate_isv.exe& && && &&&js.00.gen
D:\Windows\System32\sbunattend.exe& && && &&&js.00.gen
D:\Windows\System32\schtasks.exe& && && &&&js.00.gen
D:\Windows\System32\secinit.exe& && && &&&js.00.gen
D:\Windows\System32\systeminfo.exe& && && &&&js.00.gen
D:\Windows\Installer\{029A-4E4F-AEC3-D}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{C3-4A25-ADFF-DD47}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{7E5CDECB-726B-4581-BA8C-5B}\NewShortcut2.D609B006_1D1B_A12B5B75F3.exe& && && &&&js.01.gen
D:\Windows\Installer\{7E5CDECB-726B-4581-BA8C-5B}\NewShortcut5.D609B006_1D1B_A12B5B75F3.exe& && && &&&js.01.gen
D:\Windows\Installer\{7E5CDECB-726B-4581-BA8C-5B}\NewShortcut6_1.D609B006_1D1B_A12B5B75F3.exe& && && &&&js.01.gen
D:\Windows\Installer\{7E5CDECB-726B-4581-BA8C-5B}\NewShortcut7.D609B006_1D1B_A12B5B75F3.exe& && && &&&js.01.gen
D:\Windows\Installer\{7E5CDECB-726B-4581-BA8C-5B}\NewShortcut8_1.D609B006_1D1B_A12B5B75F3.exe& && && &&&js.01.gen
D:\Windows\Installer\{0-11D3-8CFE-C9}\cagicon.exe& && && &&&js.01.gen
D:\Windows\Installer\{0-11D3-8CFE-C9}\oisicon.exe& && && &&&js.01.gen
D:\Windows\Installer\{-14D0-49AF-A630-F6}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{AD23-48ED-BE83-FB3ED7D30442}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{AA902C31-B49D-4608-BCCF-D}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{B0125BEB-6731-43FA-88DA-B64D7BD3AD2D}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{B87FAC24-973D-4A4F-AFC4-555FB95B32DB}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{C8-45CE-AE15-772D}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{C6017EEA-9E51-4129-84BA-EFA}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{CC4C7E9B-4B26-4D8D-8A9FA4}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{CD1E078C-A6B9-47DA-B035-2}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{D07F85DE-22F1-4FB4-B3D1-402FD22C4870}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{D68897FC-7E8D-6B2489713C}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{D8D9BCF5-0F5F-4D3F-2F93BE}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\Installer\{FC5C9A87-211A-4ABC-90BF-1BBB1F7B01AC}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Windows\System32\aitagent.exe& && && &&&js.00.gen
D:\Windows\System32\audiodg.exe& && && &&&js.00.gen
D:\Windows\System32\BdeUISrv.exe& && && &&&js.00.gen
D:\Windows\System32\CertEnrollCtrl.exe& && && &&&js.00.gen
D:\Windows\System32\DevicePairingWizard.exe& && && &&&js.01.gen
D:\Windows\System32\driverquery.exe& && && &&&js.00.gen
D:\Windows\System32\dvdplay.exe& && && &&&js.01.gen
D:\Windows\System32\eventcreate.exe& && && &&&js.00.gen
D:\Windows\System32\expand.exe& && && &&&js.00.gen
D:\Windows\System32\gpresult.exe& && && &&&js.00.gen
D:\Windows\System32\mfpmp.exe& && && &&&js.00.gen
D:\Windows\System32\nbtstat.exe& && && &&&js.00.gen
D:\Windows\System32\nltest.exe& && && &&&js.00.gen
D:\Windows\System32\openfiles.exe& && && &&&js.00.gen
D:\Windows\System32\pcalua.exe& && && &&&js.00.gen
D:\Windows\System32\pcaui.exe& && && &&&js.00.gen
D:\Windows\System32\wermgr.exe& && && &&&js.00.gen
D:\Windows\System32\WFS.exe& && && &&&js.01.gen
D:\Windows\System32\wimserv.exe& && && &&&js.00.gen
D:\Windows\System32\winload.exe& && && &&&js.00.gen
D:\Windows\System32\pcawrk.exe& && && &&&js.00.gen
D:\Windows\System32\PushPrinterConnections.exe& && && &&&js.00.gen
D:\Windows\System32\rasautou.exe& && && &&&js.00.gen
D:\Windows\System32\rdpsign.exe& && && &&&js.00.gen
D:\Windows\aapt.exe& && && &&&js.00.gen
D:\Windows\write.exe& && && &&&js.01.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\8add9d2f06b7e41d8b846c563c4d00ed\ComSvcConfig.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\dfsvc\973fb7cea4adaac9ce880d10\dfsvc.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\ehExtHost\eddeb940bd3\ehExtHost.ni.exe& && && &&&js.00.gen
D:\Windows\System32\winrshost.exe& && && &&&js.00.gen
D:\Windows\System32\wlrmdr.exe& && && &&&js.01.gen
D:\Windows\System32\write.exe& && && &&&js.01.gen
D:\Windows\System32\TSTheme.exe& && && &&&js.00.gen
D:\Windows\System32\ucsvc.exe& && && &&&js.00.gen
D:\Windows\System32\upnpcont.exe& && && &&&js.00.gen
D:\Windows\System32\w32tm.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\4a7feaaeede8acb\IAStorDataMgrSvc.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\LoadMxf\ed904a6c2cde3a2cb4a7dc\LoadMxf.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\mcupdate\3d7edd96b110a3977658\mcupdate.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\MSBuild\87bb057d02ef59dad0bf07a\MSBuild.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\Narrator\3e3eb182fa\Narrator.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\8d4aea49abb824c98d5dc8fb3efd0b28\PresentationFontCache.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\12a14ddcb1ec\SMSvcHost.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\198b4eec87bd814fb1f8f4\WsatConfig.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\ComSvcConfig\2b3bb967d405eb9e0c95b184f7ae8979\ComSvcConfig.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\dfsvc\bfeaf99cbc4\dfsvc.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Workflow.#\5df356fbe\piler.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\MSBuild\ee3b74e8fa3c2ce\MSBuild.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\048beedacedb2\SMSvcHost.ni.exe& && && &&&js.00.gen
D:\Windows\assembly\NativeImages_v4.0.30319_32\WsatConfig\d44eabf48932\WsatConfig.ni.exe& && && &&&js.00.gen
D:\Windows\ehome\mcspad.exe& && && &&&js.00.genSB\xiezai.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}\NewShortcut1_EDD4ABB1C1B34A9D84CE33FBFB5D3639.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}\NewShortcut2_EAFCB2EE5C.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}\NewShortcut311_FA4AB2BC21B7DCEC95892A.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}\NewShortcut31_2FF3A708467.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{1FA3941F-F736-4B78-B482-9C8085BAF117}\ARPPRODUCTICON.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{1FA3941F-F736-4B78-B482-9C8085BAF117}\NewShortcut1_3FFA888EA4EF616A140227.exe& && && &&&js.01.gen
D:\Users\Administrator.ZGC-CIL\AppData\Roaming\Microsoft\Installer\{1FA3941F-F736-4B78-B482-9C8085BAF117}\NewShortcut2_EAFCB2EE5C.exe& && && &&&js.01.genomponents\Encoder\settmp.exe& && && &&&js.02.gen
D:\Windows\System32\spool\tools\PrintBrmEngine.exe& && && &&&js.00.gen
D:\Windows\System32\wbem\scrcons.exe& && && &&&js.00.gen
D:\Windows\System32\wbem\unsecapp.exe& && && &&&js.00.gen
D:\Windows\System32\wbem\WMIADAP.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-a..-experience-apphelp_31bf_6.1._none_81d82fe9c216eb89\pcaui.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-a..atibility-assistant_31bf_6.1._none_339cdcb\pcalua.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-a..atibility-assistant_31bf_6.1._none_339cdcb\pcawrk.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-a..ion-telemetry-agent_31bf_6.1._none_d473bbc8c4e38fd5\aitagent.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-audio-audiocore_31bf_6.1._none_78a72ee5\audiodg.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-b..vironment-os-loader_31bf_6.1._none_5d2e241dcae8f953\winload.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-basic-misc-tools_31bf_6.1._none_bf24e8\expand.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-devicepairingapp_31bf_6.1._none_6f74b7d\DevicePairingWizard.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-directshow-dvdplay_31bf_6.1._none_b5db540\dvdplay.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-driverquery_31bf_6.1._none_95fd\driverquery.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-ehome-mcspad_31bf_6.1._none_616de84\mcspad.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-errorreportingcore_31bf_6.1._none_227e1c\wermgr.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-eventcreate_31bf_6.1._none_de7716d\eventcreate.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-f..client-applications_31bf_6.1._none_7bdec\WFS.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-f..client-applications_31bf_6.1._none_7adad\WFS.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-f..client-applications_31bf_6.1._none_7bc2d\WFS.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-g..policy-cmdlinetools_31bf_6.1._none_3b3ff2\gpresult.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-m..odeupdate-servicing_31bf_6.1._none_a35e5bea\ucsvc.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-mediafoundation_31bf_6.1._none_9ec38e\mfpmp.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-nbtstat_31bf_6.1._none_9de6da957fb287cb\nbtstat.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-openfiles_31bf_6.1._none_e6fcbd244bb7bf74\openfiles.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-p..erandprintui-pmcppc_31bf_6.1._none_0d6fabd7def3be93\PushPrinterConnections.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-p..ting-tools-printbrm_31bf_6.1._none_83cacd5\PrintBrmEngine.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-rasautodial_31bf_6.1._none_0fb054d9c6a6b4d4\rasautou.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-rascmak.resources_31bf_6.1._en-us_3d4e2d1c8ad17f8a\cmbins.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-rascmak.resources_31bf_6.1._zh-cn_9cd9c\cmbins.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-s..estartup-fverecover_31bf_6.1._none_4ee6bb\BdeUnlockWizard.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-s..native-whitebox-isv_31bf_6.1._none_eb5947ea4debcf36\RMActivate_isv.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-sctasks_31bf_6.1._none_8c46e17f1398738b\schtasks.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-secinit_31bf_6.1._none_878e469b2e51ce80\secinit.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-securestartup-service_31bf_6.1._none_647c0a\BdeUISrv.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-security-secedit_31bf_6.1._none_aebd843e\SecEdit.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-security-tools-nltest_31bf_6.1._none_9c668f785a9add58\nltest.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-sidebar_31bf_6.1._none_d0e415a884ea33e1\sbunattend.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-snmp-evntcmd_31bf_6.1._none_b8db1dc\evntcmd.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-soundrecorder_31bf_6.1._none_a110af8e912572ca\SoundRecorder.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-sysinfo_31bf_6.1._none_ef2b073e59e262f6\systeminfo.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-t..acyinkingcomponents_31bf_6.1._none_41c821eeeae8dea2\pipanel.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-t..lishing-wmiprovider_31bf_6.1._none_373fc283f1cb38ca\rdpsign.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-telnet-client_31bf_6.1._none_b807e788865dfff7\telnet.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-telnet-server_31bf_6.1._none_92de\tlntadmn.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-terminalservices-theme_31bf_6.1._none_d5bc65ffdc22ec35\TSTheme.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-time-tool_31bf_6.1._none_ef311\w32tm.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-upnpdevicehost_31bf_6.1._none_c1be8a\upnpcont.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-wimgapi_31bf_6.1._none_8b030cc1\wimserv.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-winlogon-tools_31bf_6.1._none_9449cff8ee4f6cca\wlrmdr.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-winrsplugins_31bf_6.1._none_160ccc8a92fae520\winrshost.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-wmi-consumers_31bf_6.1._none_4aa87d8bba34f636\scrcons.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-wmi-core_31bf_6.1._none_bb5b6d007ddab8fe\unsecapp.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-wmi-core_31bf_6.1._none_bb5b6d007ddab8fe\WMIADAP.exe& && && &&&js.00.gen
D:\Windows\winsxs\x86_microsoft-windows-writewin_31bf_6.1._none_db699b3f\write.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-write_31bf_6.1._none_5fb72c0\write.exe& && && &&&js.01.gen
D:\Windows\winsxs\x86_microsoft-windows-x..rtificateenrollment_31bf_6.1._none_f59e20ddece8f922\CertEnrollCtrl.exe& && && &&&js.00.gen
D:\杀毒软件安装程序\微点注册机.exe& && && &&&js.01.gen
=============扫描结束===============
帮帮忙啊-~~各位大大
帮我看看是不是病毒的原因,不是的话就可能是系统文件损坏了,系统引导应该没问题。。。
不一定是中毒。你用了无毒空间?会不会是软件出了问题或者软件干涉?进不了系统,靠外部杀毒不一定能解决问题。
把有用文件转出,重做系统是捷径
陈识宇 发表于
不一定是中毒。你用了无毒空间?会不会是软件出了问题或者软件干涉?进不了系统,靠外部杀毒不一定能解决问 ...
对啊对啊,就是安装完无毒空间重启就进不去了,肿么回事?
本帖最后由 陈识宇 于
17:58 编辑
岁寒. 发表于
对啊对啊,就是安装完无毒空间重启就进不去了,肿么回事?
你就是删除了那个文件,也不一定能进入系统。这些我都是做过的——第二系统进入删除
我遇到过这种情况!
我恰恰是笔记本(戴尔)可以正常使用无毒空间。而惠普台式机使用无毒空间出了和你一样的问题——不能启动进入系统,重做系统解决的!!
所以,你应该得到了问题的正解
感谢解答: )
陈识宇 发表于
你就是删除了那个文件,也不一定能进入系统。这些我都是做过的——第二系统进入删除
我遇到过这种情况 ...
好吧好吧,谢谢了
早知道就不安什么无毒空间了
岁寒. 发表于
好吧好吧,谢谢了
早知道就不安什么无毒空间了
这个是谁也算不到的——我就没有算到
我也是双系统Windows XP+Windows 7
楼主,你的机子既然能装上Windows7+8装个杀毒软件,应该不成问题!郁闷的你将毒霸设为不开机启动??那要有什么用啊?!任何杀毒软件HIPS实时监控不开,等于瞎子聋子!而那个个人版的无毒空间,我还真没试过!——你将杀软当绿色扫描版,你把杀毒软件当系统垃圾清理工具来用啦?!
Copyright & KaFan & All Rights Reserved.
Powered by Discuz! X3.1( 苏ICP备号 ) GMT+8,[已解决]批处理如何去除文件名中的指定字符? - BAT求助&讨论 -
批处理之家 批处理_BAT_CMD_DOS_VBS_Perl_Python_PowerShell - Powered by Discuz!
帖子161&积分453&技术1 &捐助0 &注册时间&
[已解决]批处理如何去除文件名中的指定字符?
最近经常把*.reg文件转换成*.inf文件,生成的新文件名是*.reg.inf,过去是手工去掉.inf前面的.reg,现在希望能用批处理的办法解决
如:“禁止运行.reg.inf”,用批处理删除其中的“.reg”,最后变成“禁止运行.inf”
从网上搜了好几天了,一直没找到解决方案,特来此请教(不要用第三方软件,也不要用vbs)
[ 本帖最后由 temp 于
23:27 编辑 ]
感谢给帖子标题标注[已解决]字样PB + 2
帖子8226&积分36926&技术178 &捐助510 &注册时间&
你是用哪个工具把reg转换成inf的?那个工具里面不能设置新文件名?
【批处理在线视频分享】
【论坛捐助】
【论坛官方QQ群】BAT群:& &VBS群:
帖子161&积分453&技术1 &捐助0 &注册时间&
原帖由 Batcher 于
13:24 发表
你是用哪个工具把reg转换成inf的?那个工具里面不能设置新文件名?
我用的是,用批处理调用,这几天改进了调用代码,不用输入文件名了 @echo off
title=& &测试,去处文件名中的特定字符
%~d1
cd %~p1
set &file=%~nx1%&
set &hole=%~x1%&
if 0%hole% equ 0.reg goto run
:run
&%~& &%file%&&nul复制代码
帖子8226&积分36926&技术178 &捐助510 &注册时间&
@echo off
for %%a in (*.reg.inf) do (
& & for %%h in (&%%~na&) do (
& && &&&ren &%%a& &%%~nh.inf&
& & )
)复制代码
【批处理在线视频分享】
【论坛捐助】
【论坛官方QQ群】BAT群:& &VBS群:
帖子161&积分453&技术1 &捐助0 &注册时间&
原帖由 Batcher 于
19:07 发表
for %%a in (*.reg.inf) do (
& & for %%h in (&%%~na&) do (
& && &&&ren &%%a& &%%~nh.inf&
太感谢了,谢谢!
经测试达到了要求,更名成功!
待改日在我个人的系统中测试成功后再标注已解决字样
帖子161&积分453&技术1 &捐助0 &注册时间&
原帖由 Batcher 于
19:07 发表
for %%a in (*.reg.inf) do (
& & for %%h in (&%%~na&) do (
& && &&&ren &%%a& &%%~nh.inf&
在xp sp3 和2k3 sp2 环境下测试成功
帖子1745&积分4957&技术255 &捐助0 &注册时间&
@echo off&setlocal enabledelayedexpansion
for %%a in (*.reg.inf) do (
& && &&&set a=%%a
& && &&&ren &%%a& &!a:~0,-7!inf&
)复制代码
[ 本帖最后由 hanyeguxing 于
00:55 编辑 ]
乐于助人技术 + 1
寒夜孤星:在没有说明的情况下,本人所有代码均运行在 XP SP3 下 (有问题请发贴,QQ临时会话已关闭)
帖子161&积分453&技术1 &捐助0 &注册时间&
原帖由 hanyeguxing 于
00:52 发表
@echo off&setlocal enabledelayedexpansion
for %%a in (*.reg.inf) do (
& && &&&set a=%%a
& && &&&ren &%%a& &!a:~0,-7!inf&
改名成功~~~
帖子10&积分24&技术0 &捐助0 &注册时间&
请出个清晰地教程
各位老师,一帖又一帖,么意思啊?讲明白点...
帖子161&积分453&技术1 &捐助0 &注册时间&
原帖由 vigiles 于
18:28 发表
一帖又一帖,么意思啊?讲明白点...
举个转移&我的文档&到非系统盘的例子,注册表文件如下(已经改为d盘),导入到注册表后需要重启系统才能生效:
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders]
&Personal&=hex(2):64,00,3a,00,5c,00,44,00,6f,00,63,00,75,00,6d,00,65,00,6e,00,\
&&74,00,73,00,20,00,61,00,6e,00,64,00,20,00,53,00,65,00,74,00,74,00,69,00,6e,\
&&00,67,00,73,00,5c,00,41,00,64,00,6d,00,69,00,6e,00,69,00,73,00,74,00,72,00,\
&&61,00,74,00,6f,00,72,00,5c,00,4d,00,79,00,20,00,44,00,6f,00,63,00,75,00,6d,\
&&00,65,00,6e,00,74,00,73,00,00,00复制代码
把reg文件转换成inf类型的文件后,内容如下,简单明了
: [Version]
Signature = &$Windows NT$&
[DefaultInstall_Modift]
AddReg=_AddReg
[_AddReg]
HKCU,&%Modift%&,&Personal&,0x20000,&d:\Documents and Settings\%USERNAME%\My Documents&
[Strings]
Modift=Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders复制代码
inf最大的用途是做绿色软件,以下是office2003绿色版绿化的inf文件(不运行它系统无法识别)
[Version]
Signature=&$CHICAGO$&
[DefaultInstall]
; DelReg=_DelReg
AddReg=_AddReg
[_DelReg]
[_AddReg]
;===================取消工具栏延迟==============================
HKCU,&Software\Microsoft\Office\11.0\Common\Toolbars&,&AdaptiveMenus&,0x,00,00
;=========================================================================
HKCU,&Software\Microsoft\Office\11.0\PowerPoint\Options&,&StartupDialog&,0x,00,00
HKCU,&Software\Microsoft\Office\11.0\PowerPoint\First Run&,&FirstRun&,0x,00,00
HKCU,&Software\Microsoft\Office\11.0\Word\Options&,&FirstRun&,0x,00,00
HKCU,&Software\Microsoft\Office\11.0\Word\Options&,&StartupDialog&,0x,00,00
HKCU,&Software\Microsoft\Office\11.0\Excel\Options&,&FirstRun&,0x,00,00
HKCU,&Software\Microsoft\Office\11.0\Excel\Options&,&StartupDialog&,0x,00,00
HKLM,&SOFTWARE\Microsoft\Office\11.0\Common\InstallRoot&,&InstallCount&,0x,00,00
HKLM,&SOFTWARE\Microsoft\Office\11.0\Common\InstallRoot&,&Path&,,&%01%\&
HKLM,&SOFTWARE\Microsoft\Office\11.0\Common\FilesPaths&,&mso.dll&,,&%01%\MSO.DLL&
HKLM,&SOFTWARE\Microsoft\Office\11.0\Registration\{0-11D3-8CFE-C9}&,&DigitalProductID&,0x1,a4,00,00,00,03,00,00,00,37,33,39,34,31,2d,36,34,30,2d,\
&&30,30,30,30,31,30,36,2d,35,37,39,39,35,00,72,00,00,00,31,32,33,2d,31,32,33,\
&&34,35,00,00,00,00,00,00,00,00,35,4e,11,05,b8,18,0a,8a,53,ae,4c,0c,2e,01,00,\
&&00,00,00,00,bb,5d,71,45,41,46,0d,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
&&00,00,00,00,00,00,00,00,00,00,00,32,34,38,30,30,00,00,00,00,00,00,00,00,00,\
&&00,00,ec,11,16,44,00,02,00,00,fa,17,00,00,00,00,00,00,00,00,00,00,00,00,00,\
&&00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,de,8f,3a,91
&&
;===================word================================================
HKCU,&Software\Microsoft\Office\11.0\Common\Licensing&,&1EBDE4BC9A2561FA45CCC5&,0x1,01,00,00,00,27,00,00,00,7b,39,30,31,31,\
&&30,38,30,34,2d,36,30,30,30,2d,31,31,44,33,2d,38,43,46,45,2d,30,31,35,30,30,\
&&34,38,33,38,33,43,39,7d,00,56,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,\
&&6f,00,66,00,74,00,20,00,4f,00,66,00,66,00,69,00,63,00,65,00,20,00,50,00,72,\
&&00,6f,00,66,00,65,00,73,00,73,00,69,00,6f,00,6e,00,61,00,6c,00,20,00,45,00,\
&&64,00,69,00,74,00,69,00,6f,00,6e,00,20,00,32,00,30,00,30,00,33,00,00,00
;=========================================================================
;===================excel================================================
HKCU,&Software\Microsoft\Office\11.0\Common\Licensing&,&A2B280D420FBC09FBCE10A&,0x1,01,00,00,00,27,00,00,00,7b,39,30,31,31,\
&&30,38,30,34,2d,36,30,30,30,2d,31,31,44,33,2d,38,43,46,45,2d,30,31,35,30,30,\
&&34,38,33,38,33,43,39,7d,00,56,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,\
&&6f,00,66,00,74,00,20,00,4f,00,66,00,66,00,69,00,63,00,65,00,20,00,50,00,72,\
&&00,6f,00,66,00,65,00,73,00,73,00,69,00,6f,00,6e,00,61,00,6c,00,20,00,45,00,\
&&64,00,69,00,74,00,69,00,6f,00,6e,00,20,00,32,00,30,00,30,00,33,00,00,00
;=========================================================================
;===================powerpoint=============================================
HKCU,&Software\Microsoft\Office\11.0\Common\Licensing&,&C86C0BF97&,0x1,01,00,00,00,27,00,00,00,7b,39,30,31,31,\
&&30,38,30,34,2d,36,30,30,30,2d,31,31,44,33,2d,38,43,46,45,2d,30,31,35,30,30,\
&&34,38,33,38,33,43,39,7d,00,56,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,\
&&6f,00,66,00,74,00,20,00,4f,00,66,00,66,00,69,00,63,00,65,00,20,00,50,00,72,\
&&00,6f,00,66,00,65,00,73,00,73,00,69,00,6f,00,6e,00,61,00,6c,00,20,00,45,00,\
&&64,00,69,00,74,00,69,00,6f,00,6e,00,20,00,32,00,30,00,30,00,33,00,00,00
;=========================================================================
;====================== 注册 word 文件关联 =======================
HKLM,&SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Winword.exe&,&Path&,,&%01%\&
HKLM,&SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Winword.exe&,&useURL&,,&1&
HKLM,&SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Winword.exe&,,,&%01%\WinWord.exe&
HKCU,&Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc&,&Application&,,&WinWord.exe&
HKCU,&Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList&,&b&,,&WORDPAD.EXE&
HKCU,&Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList&,&MRUList&,,&ab&
HKCU,&Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.doc\OpenWithList&,&a&,,&WinWord.exe&
HKCR,&Applications\WINWORD.EXE\shell&,,,&open&
HKCR,&Applications\WINWORD.EXE\shell&,&FriendlyCacheCTime&,0x1,00,B9,DD,34,87,8D,BE,01
HKCR,&Applications\WINWORD.EXE\shell&,&FriendlyCache&,,&Microsoft Word for Windows&
HKCR,&Applications\WINWORD.EXE\shell\open\command&,,,&%01%\WinWord.exe &&%%1&&&
HKCR,&Applications\WINWORD.EXE\DefaultIcon&,,,&%01%\WinWord.exe,1&
HKCR,&CLSID\{0-}&,,,&Microsoft Word 文档&
HKCR,&CLSID\{0-}\DefaultExtension&,,,&.doc,Word Document (.doc)&
HKCR,&CLSID\{0-}\DefaultIcon&,,,&%01%\WinWord.exe,1&
HKCR,&CLSID\{0-}\ProgID&,,,&Word.Document.8&
HKCR,&CLSID\{0-}\Version&,,,&9&
HKCR,&CLSID\{0-}\VersionIndependentProgID&,,,&Word.Document&
HKCR,&CLSID\{0-}\LocalServer32&,,,&%01%\WinWord.exe&
HKCU,&Software\Netscape\Netscape Navigator\Suffixes&,&application/rtf&,,&RTF&
HKCU,&Software\Netscape\Netscape Navigator\Suffixes&,&application/msword&,,&DOC&
HKCU,&Software\Netscape\Netscape Navigator\Viewers&,&TYPE4&,,&application/msword&
HKCU,&Software\Netscape\Netscape Navigator\Viewers&,&TYPE5&,,&application/rtf&
HKCU,&Software\Netscape\Netscape Navigator\Viewers&,&application/rtf&,,&%01%\WinWord.exe&
HKCU,&Software\Netscape\Netscape Navigator\Viewers&,&application/msword&,,&%01%\WinWord.exe&
HKLM,&SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Accepted Documents&,&*&,,&application/msword&
HKCR,&MIME\Database\Content Type\application/msword&,&Extension&,,&.doc&
HKCR,&.rtf&,,,&Word.RTF.8&
HKCR,&.rtf&,&Content Type&,,&application/msword&
HKCR,&Word.RTF.8&,&EditFlags&,0x1,00,00,01,00
HKCR,&Word.RTF.8&,,,&RTF 格式&
HKCR,&Word.RTF.8\shell&,,,&Open&
HKCR,&Word.RTF.8\shell\Open&,,,&打开(&O)&
HKCR,&Word.RTF.8\shell\Open\command&,,,&&&%01%\WinWord.exe&& &&%%1&&&
HKCR,&Word.RTF.8\DefaultIcon&,,,&%01%\WinWord.exe,1&
HKCR,&Word.RTF.8\CLSID&,,,&{0-}&
HKCR,&.doc&,,,&Word.Document.8&
HKCR,&.doc&,&Content Type&,,&application/msword&
HKCR,&.doc\Word.Document.8\ShellNew&,&FileName&,,&winword8.doc&
HKCR,&Word.Document&,,,&Microsoft Word 文档&
HKCR,&Word.Document\CurVer&,,,&Word.Document.8&
HKCR,&Word.Document\CLSID&,,,&{0-}&
HKCR,&Word.Document.8&,&EditFlags&,0x1,00,00,01,00
HKCR,&Word.Document.8&,,,&Microsoft Word 文档&
HKCR,&Word.Document.8\shell&,,,&Open&
HKCR,&Word.Document.8\shell\Open&,,,&打开(&O)&
HKCR,&Word.Document.8\shell\Open\command&,,,&&&%01%\WinWord.exe&& &&%%1&&&
HKCR,&Word.Document.8\protocol\StdFileEditing\server&,,,&%01%\WinWord.exe&
HKCR,&Word.Document.8\DefaultIcon&,,,&%01%\WinWord.exe,1&
HKCR,&Word.Document.8\CLSID&,,,&{0-}&
HKCR,&Word.Document\CurVer&,,,&Word.Document.8&
HKCR,&.dot&,,,&Word.Template.8&
HKCR,&.dot&,&Content Type&,,&application/msword&
HKCR,&Word.Template.8&,&EditFlags&,0x1,00,00,01,00
HKCR,&Word.Template.8&,,,&Microsoft Word 模板&
HKCR,&Word.Template.8\shell&,,,&Open&
HKCR,&Word.Template.8\shell\Open&,,,&打开(&O)&
HKCR,&Word.Template.8\shell\Open\command&,,,&&&%01%\WinWord.exe&& &&%%1&&&
HKCR,&Word.Template.8\DefaultIcon&,,,&%01%\WinWord.exe,2&
HKCR,&Word.Template.8\CLSID&,,,&{0-}&
;=========================================================================
;====================== 注册 excel 文件关联 =======================
HKCR,&Applications\Excel.exe\shell&,,,&open&
HKCR,&Applications\Excel.exe\shell&,&FriendlyCacheCTime&,0x1,00,13,1B,B5,B5,8D,BE,01
HKCR,&Applications\Excel.exe\shell&,&FriendlyCache&,,&Microsoft Excel for Windows&
HKCR,&Applications\Excel.exe\shell\open\command&,,,&%01%\Excel.exe &&%%1&&&
HKCR,&Applications\Excel.exe\DefaultIcon&,,,&%01%\Excel.exe,1&
HKCR,&.xls&,,,&Excel.Chart.8&
HKCR,&.xls&,&Content Type&,,&application/vnd.ms-excel&
HKCR,&Excel.Chart.8&,&EditFlags&,0x1,00,00,01,00
HKCR,&Excel.Chart.8&,,,&Microsoft Excel 工作簿&
HKCR,&Excel.Chart.8\shell&,,,&Open&
HKCR,&Excel.Chart.8\shell\Open&,,,&打开(&O)&
HKCR,&Excel.Chart.8\shell\Open\command&,,,&&&%01%\Excel.exe&& &&%%1&&&
HKCR,&Excel.Chart.8\DefaultIcon&,,,&%01%\Excel.exe,1&
;=====================================================================
;====================== 注册 PowerPoint 文件关联 =======================
HKCR,&Applications\PowerPnt.exe\shell&,,,&open&
HKCR,&Applications\PowerPnt.exe\shell&,&FriendlyCacheCTime&,0x1,00,13,1B,B5,B5,8D,BE,01
HKCR,&Applications\PowerPnt.exe\shell&,&FriendlyCache&,,&Microsoft PowerPoint for Windows&
HKCR,&Applications\PowerPnt.exe\shell\open\command&,,,&%01%\PowerPnt.exe &&%%1&&&
HKCR,&Applications\PowerPnt.exe\DefaultIcon&,,,&%01%\PowerPnt.exe,1&
HKCR,&.ppt&,,,&PowerPoint.Show.8&
HKCR,&.ppt&,&Content Type&,,&application/vnd.ms-powerpoint&
HKCR,&PowerPoint.Show.8&,&EditFlags&,0x1,00,00,01,00
HKCR,&PowerPoint.Show.8&,,,&Microsoft PowerPoint 演示文稿&
HKCR,&PowerPoint.Show.8\shell&,,,&Open&
HKCR,&PowerPoint.Show.8\shell\Open&,,,&打开(&O)&
HKCR,&PowerPoint.Show.8\shell\Open\command&,,,&&&%01%\PowerPnt.exe&& &&%%1&&&
HKCR,&PowerPoint.Show.8\shell\Show&,,,&放映(&H)&
HKCR,&PowerPoint.Show.8\shell\Show\command&,,,&&&%01%\PowerPnt.exe&& /s &&%%1&&&
HKCR,&PowerPoint.Show.8\DefaultIcon&,,,&%01%\PowerPnt.exe,1&
;=====================================================================
[Strings]复制代码
帖子161&积分453&技术1 &捐助0 &注册时间&
回复 9楼 的帖子
我用的转换文件是dos版的reg2inf,经改造代码后只需要输入完整的文件名,含扩展名(必须在同一目录中,代码如下:@echo off
title=& &&*.reg&转换&*.inf&
Set Var0=%0
Set OP=
for /f &delims=& %%I in (&%Var0%&) do Set OP=%%~dpI
cd /d &%OP%&
:start
cls
color 1f
echo& && &&&=========================================
echo& && &&&请输入&*.reg&文件路径和文件名,然后按回车
echo& && &&&────────────────────
echo.
Set Choice=
rem set /p Choice=请输入&*.reg&文件路径和文件名:
set /p Choice=& && &&&输入:
if not exist &%Choice%& goto error
goto run
:error
echo.
echo& &&&输入的路径或文件名不存在!
echo& &&&任意键返回重新输入……
pause&nul
goto start
:run
cls
color 1f
&%& &%Choice%&&nul
::&.\& &%Choice%&&nul
echo.
echo 		转换完成!!!
echo.
echo 请到reg源文件目录中查看同名的inf文件!
echo 任意键退出……
exit复制代码最近又改良了一下,只需把注册表文件拖上来即可:@echo off
title=		注册表文件自动为转换&*.inf&
%~d1
cd %~p1
set &file=%~nx1%&
set &hole=%~x1%&
rem 后缀名前面加0 防止后缀名为空的情况。也可以加其他的
if 0%hole% equ 0.reg goto run
:run
&%~& &%file%&&nul复制代码不用输入文件名是简单了,但它们都存在一个同样的问题,生成的文件名中都包含注册表的扩展名,本贴就是为简化而发
本贴问题解决了,又想更上一层楼,精简生成文件中包含的无用代码,于是一个问题解决了又提出另一个问题,直至所有问题全部解决了,又想写出更简单的批(如果把解决每一个问题的代码全写进去,代码臃肿,重复,效率太差),于是趁热打铁,又发了一个终极贴
感谢hanyeguxing帮忙给写了一个短小精悍的帖子,至此该贴的所有问题终结了~
[通过 QQ、MSN 分享给朋友]

我要回帖

更多关于 akb0048第一季 的文章

 

随机推荐