r5209520 发表于 2008-1-19 04:18:10

恶意网页木马免疫99.9999%

<p>如果你需要用到vbs的话用下面的批处理 <br/>@rem 恶意网页木马完全免疫<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88D969EA-F192-11D4-A65F-0040963251E5}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F935DC22-1CF0-11D0-ADB9-00C04FD58A0B}" /f<br/><br/>如果你不需要用到vbs就用下面的批处理</p><p>@rem 恶意网页木马完全免疫<br/>::恶意网页木马免疫——删除以下组件:<br/>::恶意执行程序组件 WScript.Shell<br/>::木马生成组件 FileSystemObject<br/>::木马下载组件 XMLHTTP<br/>::木马上传组件 ADOB.Stream<br/>::木马执行组件 Shell.Application<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D43FE01-F093-11CF-8940-00A0C9054228}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C24DD5-D70A-438B-8A42-98424B88AFB8}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{88D969EA-F192-11D4-A65F-0040963251E5}" /f<br/>reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F935DC22-1CF0-11D0-ADB9-00C04FD58A0B}" /f<br/><br/>另存为批处理运行<br/><br/>只适用xp , 2000没有做测试<br/><br/>删除2个DLL文件缺可以防止部分ARP不敢说全部<br/>C:\WINDOWS\system32\dllcache\npptools.dll(系统的备份的DLL)<br/>c:\windows\system32\npptools.dll<br/><br/>自己特意做的网马现在被封了 但是d7se.com偶尔会挂木马...........前几天<a href="http://www.txwb.com/" target="_blank"><font color="#000000">www.txwb.com</font></a>被人挂马了......<br/>用了这可以防网页上挂的ARP病毒 syn病毒 熊猫烧香 威金变种的 这样才算是真真的从源头是杜绝了病毒 装什么杀毒软件都是远落后于病毒<br/>如果是有人特定捣乱的话就需要查看流量了..........<br/><img title="dvubb" alt="图片点击可在新窗口打开查看" src="http://bbs.szwblm.com/skins/default/fgdown.gif" border="0"/><a href="http://bbs.szwblm.com/dispbbs.asp?boardID=2&amp;ID=1154&amp;page=1#" target="_blank" fg="Flashget://W0ZMQVNIR0VUXWh0dHA6Ly9iYnMuc3p3YmxtLmNvbS9VcGxvYWRGaWxlLzIwMDctNS8yMDA3NTIzMTYxNjE4NTU5NjUuanBnW0ZMQVNIR0VUXQ==&amp;2187"><font color="#004f97">[快车下载]</font></a>:<br/><a href="http://bbs.szwblm.com/UploadFile/2007-5/200752316161855965.jpg" target="_blank"><img title="dvubb" alt="图片点击可在新窗口打开查看" src="http://bbs.szwblm.com/UploadFile/2007-5/200752316161855965.jpg" border="0" style="WIDTH: 500px;"/></a><br/>下面是我测试熊貓烧香的效果图<br/><img title="dvubb" alt="图片点击可在新窗口打开查看" src="http://bbs.szwblm.com/skins/default/fgdown.gif" border="0"/><a href="http://bbs.szwblm.com/dispbbs.asp?boardID=2&amp;ID=1154&amp;page=1#" target="_blank" fg="Flashget://W0ZMQVNIR0VUXWh0dHA6Ly9iYnMuc3p3YmxtLmNvbS9VcGxvYWRGaWxlLzIwMDctNS8yMDA3NTIzMTYxNjE4NTU5NjUuanBnW0ZMQVNIR0VUXQ==&amp;2187"><font color="#004f97">[快车下载]</font></a>:<br/><a href="http://bbs.szwblm.com/UploadFile/2007-5/200752316165044649.jpg" target="_blank"><img title="dvubb" alt="图片点击可在新窗口打开查看" src="http://bbs.szwblm.com/UploadFile/2007-5/200752316165044649.jpg" border="0" style="WIDTH: 500px;"/></a></p><hr noshade="noshade" size="1"/>
页: [1]
查看完整版本: 恶意网页木马免疫99.9999%