|
yu0099+-->引用:yu0099 <font face="Helvetica"><font color="#666666"><font color="magenta">近来有位兄弟企图有所不规,下次就要公布他的IP了 ! <font face="Helvetica"><font color="#666666">Spy Sender (0.65 beta) <font face="Arial,Helvetica"><font size="-1"> Server name: Spy Sender <font face="Arial,Helvetica"><font size="-1"> Version: 0.65 beta <font face="Arial,Helvetica"><font size="-1"> Different versions: NA <font face="Arial,Helvetica"><font size="-1"> Tested: Yes, on Windows 95 and Windows NT <font face="Arial,Helvetica"><font size="-1"> Server size: 486K <font face="Arial,Helvetica"><font size="-1"> Server files: client.exe <font face="Arial,Helvetica"><font size="-1">Server icon: <img src="http://www.dark-e.com/archive/trojans/spysender/065b/spysend.gif" border="0" onclick="javascript:window.open(this.src);" alt= style="CURSOR: pointer" onload="javascript:if(this.width>screen.width-500)this.style.width=screen.width-500;" /> <font face="Arial,Helvetica"><font size="-1"> Infects: Windows 95/98/ME <font face="Arial,Helvetica"><font size="-1"> Autoloads: Registry: <font color="#993366">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run <i>Key: </i><font color="#993366">RunDll95 <font face="Arial,Helvetica"><font size="-1"> Default port: 1807 TCP <font face="Arial,Helvetica"><font size="-1"> Can port be changed: No 我想也未必是有意的,现在木马横行,有可能是他的机器染上了木马,他自己还不知道呢,你无妨把他的IP的前3位,公布一下,提醒提醒他,否则还可能有别的朋友会被攻击。 |
|