[新手上路]批处理新手入门导读[视频教程]批处理基础视频教程[视频教程]VBS基础视频教程[批处理精品]批处理版照片整理器
[批处理精品]纯批处理备份&还原驱动[批处理精品]CMD命令50条不能说的秘密[在线下载]第三方命令行工具[在线帮助]VBScript / JScript 在线参考
返回列表 发帖
本帖最后由 codegay 于 2016-8-28 16:54 编辑

编码后再解码,比如用base64编码。是更简单通用的玩法吧?
x64的系统已经不带debug了
去学去写去用才有进步。安装python3代码存为xx.py 双击运行或右键用IDLE打开按F5运行

TOP

回复 5# wskwfkbdn


    我又不玩VBS。
不过道理上相通。
base64的编码方法在很多语言里都有标准库。

#以下python3 代码是把wget.exe 的二进制流经过base64编码,然后再把base64编码的字符串还原成xxx.exe,测试还能运行。
  1. """
  2. python base64 模块学习
  3. #2016年8月28日 13:50:30 codegay
  4. """
  5. import base64
  6. with open("wget.exe","rb") as f:
  7.     txt=base64.encodebytes(f.read())
  8. with open("xxx.exe","wb") as f:
  9.     f.write(base64.standard_b64decode(txt.decode()))
复制代码
去学去写去用才有进步。安装python3代码存为xx.py 双击运行或右键用IDLE打开按F5运行

TOP

python3

我把sleep.exe 编码成了字符串。
sleep.exe 是一个第三方命令行工具,用来延迟的。

运行以下python代码可以还原得到resleep.exe
  1. import base64
  2. ss = """TVqQAAMAAAAEAAAA//8AALgAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  3. AAAA4AAAAA4fug4AtAnNIbgBTM0hVGhpcyBwcm9ncmFtIGNhbm5vdCBiZSBydW4gaW4gRE9TIG1v
  4. ZGUuDQ0KJAAAAAAAAAD+ls8EuvehV7r3oVe696FXOf+uV7v3oVe696BXrvehVzn//Fe/96FXNP/+
  5. V7T3oVc5//9Xu/ehVzn/+1e796FXUmljaLr3oVcAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABQRQAA
  6. TAEDAAmhoD4AAAAAAAAAAOAADwELAQcKAAgAAAAIAAAAAAAA7hIAAAAQAAAAIAAAAAAAAQAQAAAA
  7. AgAABQACAAUAAgAEAAAAAAAAAABAAAAABAAAq6UAAAMAAIAAAAQAACAAAAAAEAAAEAAAAAAAABAA
  8. AAAAAAAAAAAAAPAUAAA8AAAAADAAAAgEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABgEAAAHAAA
  9. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACgRAABAAAAAAAAAAAAAAAAAEAAAUAAAAAAAAAAAAAAA
  10. AAAAAAAAAAAAAAAAAAAAAC50ZXh0AAAAjgYAAAAQAAAACAAAAAQAAAAAAAAAAAAAAAAAACAAAGAu
  11. ZGF0YQAAACQAAAAAIAAAAAIAAAAMAAAAAAAAAAAAAAAAAABAAADALnJzcmMAAAAIBAAAADAAAAAG
  12. AAAADgAAAAAAAAAAAAAAAAAAQAAAQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  13. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  14. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  15. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  16. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  17. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  18. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  19. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGIW
  20. AABqFgAAAAAAAJgVAACmFQAAsBUAALgVAADEFQAA1BUAAOAVAACQFQAABBYAABQWAAAiFgAANBYA
  21. AFQWAACGFQAA9BUAAHwVAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAJoaA+AAAAAAIAAAAaAAAA
  22. cBEAAHAFAAAgICAgICAgICVzIFstY10gY29tbWl0ZWQtbWVtb3J5IHJhdGlvICgxJSUtMTAwJSUp
  23. CgAAICAgICAgICAlcyBbLW1dIHRpbWUtdG8tc2xlZXAtaW4tbWlsbGlzZWNvbmRzCgAAVXNhZ2U6
  24. ICAlcyAgICAgIHRpbWUtdG8tc2xlZXAtaW4tc2Vjb25kcwoAAAAtYwAALW0AAAAAAAD/////OhQA
  25. AU4UAAEAAAAASAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  26. AAAAAAAAAAAAAAAABCAAAcARAAEBAAAATkIxMAAAAAAJoaA+AQAAAHNsZWVwLnBkYgAAAAAAAAAA
  27. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAADkFAAAVos1SBAA
  28. AVeLfCQMV2jgEAAB/9ZXaLAQAAH/1ldofBAAAf/Wg8QYX17CBACLVCQEM8DrFYD5MHwYgPk5fxMP
  29. vsmNBICNREHQQooKhMl15esDg8j/wgQAVYvsg+wsg030/4NN/P+DfQgCU4tdDFbHRfjoAwAAdQ3/
  30. cwTorf///4lF/OtZagNZOU0IdVeLcwRXvxARAAEzwPOmdRL/cwjoif///4lF/MdF+AEAAACLcwRq
  31. A1m/DBEAATPA86ZfdR7/cwjoZf///4P4ZIlF9H8Ox0X8CgAAAMdF+AEAAACDffz/dQz/M+gW////
  32. M8BA6zeLdfSD/v90H41F1FD/FQQQAAE5ddh8HotF+A+vRfxQ/xUAEAAB6+GLRfgPr0X8UP8VABAA
  33. ATPAXlvJw2ooaBgRAAHongEAAGaBPQAAAAFNWnUooTwAAAGBuAAAAAFQRQAAdRcPt4gYAAABgfkL
  34. AQAAdCGB+QsCAAB0BoNl5ADrKoO4hAAAAQ528TPJOYj4AAAB6xGDuHQAAAEOdt4zyTmI6AAAAQ+V
  35. wYlN5INl/ABqAf8VNBAAAVmDDRggAAH/gw0cIAAB//8VMBAAAYsNFCAAAYkI/xUsEAABiw0QIAAB
  36. iQihRBAAAYsAoyAgAAHo7QAAAIM9ACAAAQB1DGiSFAAB/xUkEAABWejBAAAAaFwQAAFoWBAAAeis
  37. AAAAoQwgAAGJRdyNRdxQ/zUIIAABjUXgUI1F2FCNRdRQ/xUcEAABiUXMaFQQAAFoUBAAAeh2AAAA
  38. i0Xgiw0YEAABiQH/deD/ddj/ddTo/v3//4PEMIvwiXXIg33kAHUHVv8VFBAAAf8VEBAAAesti0Xs
  39. iwiLCYlN0FBR6CkAAABZWcOLZeiLddCDfeQAdQdW/xUoEAAB/xVAEAABg038/4vG6GEAAADDzP8l
  40. DBAAAf8lIBAAAWgAAAMAaAAAAQDoWwAAAFlZwzPAw8zMzGjkFAABZKEAAAAAUItEJBCJbCQQjWwk
  41. ECvgU1ZXi0X4iWXoUItF/MdF/P////+JRfiNRfBkowAAAADDi03wZIkNAAAAAFlfXlvJUcP/JTgQ
  42. AAH/JTwQAAE4FQAAAAAAAAAAAABIFgAADBAAACwVAAAAAAAAAAAAAIAWAAAAEAAAAAAAAAAAAAAA
  43. AAAAAAAAAAAAAABiFgAAahYAAAAAAACYFQAAphUAALAVAAC4FQAAxBUAANQVAADgFQAAkBUAAAQW
  44. AAAUFgAAIhYAADQWAABUFgAAhhUAAPQVAAB8FQAAAAAAAO8CcHJpbnRmAADKAF9jX2V4aXQA+wBf
  45. ZXhpdABOAF9YY3B0RmlsdGVyAM0AX2NleGl0AACaAmV4aXQAAHEAX19pbml0ZW52AHAAX19nZXRt
  46. YWluYXJncwBAAV9pbml0dGVybQCeAF9fc2V0dXNlcm1hdGhlcnIAALsAX2FkanVzdF9mZGl2AACD
  47. AF9fcF9fY29tbW9kZQAAiABfX3BfX2Ztb2RlAACcAF9fc2V0X2FwcF90eXBlAADyAF9leGNlcHRf
  48. aGFuZGxlcjMAAG1zdmNydC5kbGwAANsAX2NvbnRyb2xmcAAASQNTbGVlcAD6AUdsb2JhbE1lbW9y
  49. eVN0YXR1cwAAS0VSTkVMMzIuZGxsAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  50. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  51. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  52. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  53. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  54. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  55. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAQAAAE7m
  56. QLsAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  57. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  58. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  59. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  60. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  61. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  62. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  63. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  64. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  65. AAAAAAAAAAEAEAAAABgAAIAAAAAAAAAAAAAAAAAAAAEAAQAAADAAAIAAAAAAAAAAAAAAAAAAAAEA
  66. CQQAAEgAAABgMAAApAMAAAAAAAAAAAAAAAAAAAAAAACkAzQAAABWAFMAXwBWAEUAUgBTAEkATwBO
  67. AF8ASQBOAEYATwAAAAAAvQTv/gAAAQACAAUAAADODgIABQAAAM4OPwAAAAgAAAAEAAQAAQAAAAAA
  68. AAAAAAAAAAAAAAIDAAABAFMAdAByAGkAbgBnAEYAaQBsAGUASQBuAGYAbwAAAN4CAAABADAANAAw
  69. ADkAMAA0AEIAMAAAAEwAFgABAEMAbwBtAHAAYQBuAHkATgBhAG0AZQAAAAAATQBpAGMAcgBvAHMA
  70. bwBmAHQAIABDAG8AcgBwAG8AcgBhAHQAaQBvAG4AAAA8AAoAAQBGAGkAbABlAEQAZQBzAGMAcgBp
  71. AHAAdABpAG8AbgAAAAAASQBEAFcAIAB0AG8AbwBsAHMAAABwACgAAQBGAGkAbABlAFYAZQByAHMA
  72. aQBvAG4AAAAAADUALgAyAC4AMwA3ADkAMAAuADAAIABiAHUAaQBsAHQAIABiAHkAOgAgAGQAbgBz
  73. AHIAdgBfAGQAZQB2ACgAdgAtAHMAbQBnAHUAbQApAAAATgAXAAEASQBuAHQAZQByAG4AYQBsAE4A
  74. YQBtAGUAAABTAGwAZQBlAHAALgBFAHgAZQAgAGEAbgBkACAAQgBlAGUAcAAuAEUAeABlAAAAAACA
  75. AC4AAQBMAGUAZwBhAGwAQwBvAHAAeQByAGkAZwBoAHQAAACpACAATQBpAGMAcgBvAHMAbwBmAHQA
  76. IABDAG8AcgBwAG8AcgBhAHQAaQBvAG4ALgAgAEEAbABsACAAcgBpAGcAaAB0AHMAIAByAGUAcwBl
  77. AHIAdgBlAGQALgAAAFYAFwABAE8AcgBpAGcAaQBuAGEAbABGAGkAbABlAG4AYQBtAGUAAABTAGwA
  78. ZQBlAHAALgBFAHgAZQAgAGEAbgBkACAAQgBlAGUAcAAuAEUAeABlAAAAAABqACUAAQBQAHIAbwBk
  79. AHUAYwB0AE4AYQBtAGUAAAAAAE0AaQBjAHIAbwBzAG8AZgB0AK4AIABXAGkAbgBkAG8AdwBzAK4A
  80. IABPAHAAZQByAGEAdABpAG4AZwAgAFMAeQBzAHQAZQBtAAAAAAA6AAsAAQBQAHIAbwBkAHUAYwB0
  81. AFYAZQByAHMAaQBvAG4AAAA1AC4AMgAuADMANwA5ADAALgAwAAAAAABEAAAAAQBWAGEAcgBGAGkA
  82. bABlAEkAbgBmAG8AAAAAACQABAAAAFQAcgBhAG4AcwBsAGEAdABpAG8AbgAAAAAACQSwBAAAAAAA
  83. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  84. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  85. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  86. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  87. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  88. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  89. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  90. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
  91. AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA="""
  92. with open("resleep.exe","wb") as f:
  93.     f.write(base64.standard_b64decode(ss))
复制代码
去学去写去用才有进步。安装python3代码存为xx.py 双击运行或右键用IDLE打开按F5运行

TOP

PowerShell 脚本中嵌入二进制文件
http://www.pstips.net/powershell ... in-your-script.html
去学去写去用才有进步。安装python3代码存为xx.py 双击运行或右键用IDLE打开按F5运行

TOP

回复 9# B魔方大人


   光给出一个“最NB的”解决方向,但是没有可行性或者很难实现,是没用的。

类似“坐直升机上班快”这种建议对大家真的一点用的都没有。因为都造不出直升机也买不起。
去学去写去用才有进步。安装python3代码存为xx.py 双击运行或右键用IDLE打开按F5运行

TOP

返回列表