Hot Search : Source embeded web remote control p2p game More...
Location : Home Search - all function in open
Search - all function in open - List
一个使用svchost.exe去启动,平时不开端口,可以进行反连接的后门程序(和小榕的BITS是同一类型的后门).这里先要对bingle致万二分感谢,没有他开放的svchostdll的代码,就不会有这个后门的出现,后门中有三分一代码是bingle的代码,所以banner只会显示PortLess BackDoor这样字眼.除了有上面的特点外,还加入了相当部分的功能在这后门,加入的功能分别是:V1.1的功能1.检测克隆帐户2.清日志3.克隆帐户4.删除系统帐户(内建用户Guest,Administrator都能删除)5.枚举系统帐户6.http下载7.安装终端8.查看系统所有IP9.注销系统10.关系统电源11.重启12.关闭系统13.查看系统信息14.查看或修改终端端口V1.2增加功能15.端口到程序关联(fport)16.查进程(pslist)17.杀进程(pskill)18.查看服务信息19.停止服务20.启动服务21.配置服务启动值22.删除服务23.从正向连接的Shell中可以返回到[Syrinx]#状态继续使用后门提供的以上命令 -By default to the use of an activated normally not open ports can be connected to the anti-backdoor (and small Banyan BITS is the same type of back door). Bingle right here first to express my heartfelt gratitude, he did not open svchostdll code, there will be the emergence of this back door, the back door a third of a bingle code is the code, the banner will show PortLess BackDoor such wording. in addition to the above features, but also by adding a considerable part of the function of the back door, by adding the function are : 1 V1.1 function. Detection of two cloned account. three-log. Cloning account 4. removal system account (built-in user Guest, Administrator can delete) 5. Enumeration System account 6.http download 7. installing Terminal 8. View all IP9 system. cancellation System
Date : 2008-10-13 Size : 78.83kb User : 叶文

这个就是在小熊论坛上下的收尸者 v1.1.1 作者不知道是谁,整个框架和某开源的远控非常相似, api基本都是动态调用,函数 过程等。。。。既然不全,开了不知道是什么意思?????? 为什么MINIRat还有人更新?可能是代码比较全一点吧。。。个人觉得。 因为快过年,也没时间继续改了,1.1.9加了文件管理模块,上传和下载还没完成,工作实在很忙了。。。。 请有能力的哥们帮忙完成。感谢中。。。。 去掉了其他没用的模块。什么进程,服务管理,注册表这类东西,有几次能用的着? 反正我用的很少,所以del之。 这个版本准备加个屏幕,最终就是文件加屏幕加插件,这三个东西了,够用了吧? 木马也就是后门,提供方便的,搞太多功能也没啥意思,有个文件管理足也。。。。 主要在启动和隐藏方面下点功夫,本人菜鸟一个,希望有人把这个收尸者进行下去,看看到底能改到什么版本。 大家改的好的话也希望拿出来晒晒,就算展示自己的才能吧。如果没人进行修改下去,年后我还继续。 祝大家玩得愉快! by locks 2010 1 27 v1.2 今天有了点空就继续更新完成了文件模块,文件配置等。下次加上屏幕。服务端代码优化等等。。。 client 有时间重新画一个好看点的。-The Bear Forum is up and down the corpses who do not know who the author v1.1.1, the open source framework and remote control of a very similar api are basically dynamic invocation, the function processes. . . . Since incomplete, opened do not know what it means? ? ? ? ? ? Why MINIRat also updated? Code may be a little more all right. . . Personally feel. Because the New Year approached, there is no time to change, and 1.1.9 added a document management module, upload and download is not yet complete, work is very busy. . . . Please have the ability to help the man complete. Thanks in. . . . Removed other useless modules. What process, service management, registry of such things, there are few usable again? Anyway, I use very little, so del it. This version is ready to add a screen, the final screen is the file plus additional plug-ins, these three things, good enough for you? Backdoor Trojan that is, to provide convenient, engaging in too many features mean noth
Date : 2026-01-17 Size : 720kb User : 董先生
CodeBus is one of the largest source code repositories on the Internet!
Contact us :
1999-2046 CodeBus All Rights Reserved.