摘要: Beijing Huorong Network Technology Co., Ltd. Beijing Kingsoft Security Software Co., Ltd. Beijing Qihu Technology Co., Ltd. HuoRongBoRui (Beijing) Tec 阅读全文
posted @ 2023-05-18 17:48 摔不死的笨鸟 阅读(60) 评论(0) 推荐(0)
摘要: ASAP(as soon as possible 尽快) BID(break it down 细分明细) BTW(by the way 顺带一提) COB(close of business 下班时) EOB(end of business 下班时) EOD(end of day 今天内) DOE( 阅读全文
posted @ 2022-06-01 14:37 摔不死的笨鸟 阅读(387) 评论(0) 推荐(0)
摘要: historic DNS resolutions decoy document pseudocode implementation 阅读全文
posted @ 2022-06-01 14:37 摔不死的笨鸟 阅读(44) 评论(0) 推荐(0)
摘要: 一、注册表 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce HKEY_LOCAL 阅读全文
posted @ 2022-01-17 11:26 摔不死的笨鸟 阅读(299) 评论(0) 推荐(0)
摘要: 易成功利用DLL劫持的DLL: profapi.dll CRYPTSP.dll CRYPTBASE.dll SspiCli.dll MSASN1.dll Wlanapi.dll WindowsCodecs.dll TSandbox.dll TIjtdrvd32.dll DtsFrame32.dll 阅读全文
posted @ 2022-01-06 17:27 摔不死的笨鸟 阅读(892) 评论(0) 推荐(0)
摘要: @echo off set DSP_NAME="ScreenSaver Management Service" sc stop scrnsvc > nul echo %~dp0 | findstr /i "system32" > nul if %ERRORLEVEL% equ 0 (goto INS 阅读全文
posted @ 2022-01-04 15:31 摔不死的笨鸟 阅读(168) 评论(0) 推荐(0)
摘要: Word Office白域名 office15client.microsoft.com odc.officeapps.live.com www.download.windowsupdate.com support.content.office.microsoft.com templateservic 阅读全文
posted @ 2021-10-28 14:42 摔不死的笨鸟 阅读(115) 评论(0) 推荐(0)
摘要: wmi Select * from Win32_OperatingSystem wmi Select * from Win32_LogicalDisk wmi Select * from Win32_ComputerSystem wmi Select * from Win32_Process wmi 阅读全文
posted @ 2021-10-11 11:42 摔不死的笨鸟 阅读(329) 评论(0) 推荐(0)
摘要: vmmouse.sys vmx_svga.sys vmusbmouse.sys vmscsi.sys vmci.sys vmhgfs.sys vmxnet.sys vmacthlp.exe vmtoolsd.exe vmmemctl.sys vmtoolsd.exe vmwaretray.exe v 阅读全文
posted @ 2021-08-20 09:07 摔不死的笨鸟 阅读(142) 评论(0) 推荐(0)
摘要: 下面列出的是所有的杀毒软件和对应的进程名称 “a2guard.exe”: “a-squared杀毒”, “ad-watch.exe”: “Lavasoft杀毒”, “cleaner8.exe”: “The Cleaner杀毒”, “vba32lder.exe”: “vb32杀毒”, “Mongoos 阅读全文
posted @ 2021-08-17 11:03 摔不死的笨鸟 阅读(1902) 评论(0) 推荐(0)