Description: Iexplorer专杀程序 能够较好的杀死和清除Iexplorer 病毒及其相关自动运行文件,能够识别它的多个变种.-Iexplorer the scrapping process can be used to kill and remove the virus and Iexplorer Automatic operation of the relevant documents, to be able to identify its variants. Platform: |
Size: 15360 |
Author:孙先声 |
Hits:
Description: 清除原理
结束病毒进程
结束wmimgr.exe与comime.exe进程
删除病毒文件
del "%SYSTEMROOT%\System32\slserv.exe"
-end principle to remove the virus wmimgr.exe end of the process and the process of deletion comime.exe In addition to documents virus del "% SYSTEMROOT% \ System32 \ slserv.ex e " Platform: |
Size: 477184 |
Author:解放 |
Hits:
Description: 本程序能删除或者移动正在被使用的文件.
只是一个演示例子
您可以修改以后做为删除病毒感染文件用处.-This procedure can delete or move the files are being used. Is only a demonstration of examples you can modify to remove the virus after infection as a useful document. Platform: |
Size: 8192 |
Author:Jasen |
Hits:
Description: 增加代码xor解密功能,以逃过杀毒软件.
生成MiNI下载者,则需要自己做一个工具了.读懂代码,把相应的部份加密即可.
参考delphi版本的下载者源代码,编出来有16K左右。压缩也有10K多,
于是写了VC的代码。按以下的设置,编译出来2K左右。
还可以可以再设置一下编译开关,以减小体积。
Ps:原代码中4处没有对\转义,以下代码编译通过
编译出来16K,去掉4行注释,编译后3K(编译环境:Win2003+VC6.0)-Add code xor decryption functions, in order to escape the anti-virus software. Generate MiNI downloaders, you need to own a tool. Readable code, the corresponding part of the encryption can be. Refer delphi version who download the source code, compiled out there 16K or so. Compression also has more than 10K, then wrote VC. According to the following settings, compiled about 2K. You can also compile switch can then set about to reduce the volume. Ps: the original code 4 no \ escaping, the following code compile compiled 16K, remove the four-line comments, compiled 3K (compiler environment: Win2003+VC6.0) Platform: |
Size: 2048 |
Author:spp |
Hits: