惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
V
Vulnerabilities – Threatpost
C
CERT Recently Published Vulnerability Notes
Google DeepMind News
Google DeepMind News
GbyAI
GbyAI
Y
Y Combinator Blog
T
Threatpost
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
Project Zero
Project Zero
Engineering at Meta
Engineering at Meta
MongoDB | Blog
MongoDB | Blog
MyScale Blog
MyScale Blog
Security Latest
Security Latest
T
Threat Research - Cisco Blogs
量子位
I
Intezer
Simon Willison's Weblog
Simon Willison's Weblog
C
Cybersecurity and Infrastructure Security Agency CISA
L
Lohrmann on Cybersecurity
L
LINUX DO - 最新话题
The Register - Security
The Register - Security
T
Tailwind CSS Blog
爱范儿
爱范儿
Google DeepMind News
Google DeepMind News
T
Troy Hunt's Blog
Stack Overflow Blog
Stack Overflow Blog
Cloudbric
Cloudbric
S
Secure Thoughts
The GitHub Blog
The GitHub Blog
T
The Blog of Author Tim Ferriss
L
LangChain Blog
Recorded Future
Recorded Future
小众软件
小众软件
www.infosecurity-magazine.com
www.infosecurity-magazine.com
T
Tor Project blog
人人都是产品经理
人人都是产品经理
F
Full Disclosure
O
OpenAI News
Webroot Blog
Webroot Blog
A
Arctic Wolf
TaoSecurity Blog
TaoSecurity Blog
P
Privacy & Cybersecurity Law Blog
Jina AI
Jina AI
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
雷峰网
雷峰网
Microsoft Security Blog
Microsoft Security Blog
H
Heimdal Security Blog
B
Blog RSS Feed
Vercel News
Vercel News

博客园 - popcode

读取客户端收藏夹资料的问题 .net2.0 web site中的cs文件怎么编译为dll jsp与javascript delphi中的DBGrid无法刷新数据 Crystal Report的奇怪问题 ms的题目,无聊不妨看看 查询datatime类型 com组件的调用 团队开发中使用什么开发工具 关于博客园Post的性质 [转]项目失败的经验 项目测试有感 安全警告 - MS04-009 CSDN专家分意义何存 道歉 什么是Blog 把Excel文件中的数据读入到DataGrid中 节日快乐 Microsoft IIS6.0实现WAP应用
由传奇木马引起的遐想
popcode · 2004-03-21 · via 博客园 - popcode

前几天,朋友打个电话过来,说他的机器中了传奇木马,传奇的ID被盗了,叫我找个时间过去帮他清除掉。记得有的木马用杀毒软件查不出来,只有看启动项才看得出来。后来有一想法,如果锁定注册表,是否还会中招呢?一直没去测试,而且对于这个东西不太了解,不知各位朋友有没有对这个木马有研究的,以前看过一篇木马程序的分析,http://www.aspcool.com/lanmu/browse1.asp?ID=966&bbsuser=csharp,这是一种方法,但大多数方法是把木马捆绑在图片,打开图片同时中招的,或者打开网页同时写入客户端。
以前,有一个网友发了一封盗取来的传奇ID记录给我看,里面记录得很详细,游戏ID、密码、角色名、游戏职业、游戏等级有记录下来。