to help you export your iphone, ipod, IPad music, movies, and playlists directly to your MAC and itunes.Iexplorer can preview export photos, text messages, voicemail, contacts, and even call logs, providing a user experience that uses an Apple device like a removable hard drive.The photo app is Photos located in the directory below:
Camera Roll (Photos, albums |
Photo Stream (Album | My photo Stream)
Recorded Videos (Photo album | video)
The "Export" button menu of the bo
System conditions:
Dual-system, usually using WinXP, without anti-virus software installed. Go to the ME system one or two times a month, upgrade the trend PC-Cillin anti-virus and perform full-host anti-virus.
At the end of the last week, I found my computer slowed down. After entering ME, I upgraded my website to anti-virus and went to the machine for anti-virus. And then use XP in the same way as normal.
Sunday, it seems to be a little slow, use it, ignore it.
My cousin came to my house to pl
powershell Security Execution policy
The configuration file cannot be executed. This is not illustrated here. you can experiment on your own.
The following describes how to modify the powershell Security Execution policy.
1) Open the powershell Prompt window as an administrator
2) enter the following command:
Set-executionpolicy remotesigned
3) Start powershell again as the administrator. Then you can see that the PS prompt is programmed in a custom form.
Or you can run the $ prof
processes and services, whether hidden or not, the IEXPLORER process and the lente service are hidden at a Glance (see figure 1 and figure 2), so the lente service is disabled. (If there is no icesword, there is no problem. Go to security mode and search _ hook in the system32 folder. dll, found a dirty en_hook.dll, apparently the gray pigeon, search for Shen en in the registry, found the associated service name lente), disable all the third-party bo
The system time is modified to use the xibgptd.exe, netdde32.exe, and so on.
EndurerOriginal1Version
(Continued log)
O9-IE Toolbar extension button HKLM: Chinese Internet-{B012491E-8FA4-4851-AA9B-22E33784FBAD}-C:/program files/ocins/config.exeO9-ie tool menu extension item HKLM: Chinese Internet-{B012491E-8FA4-4851-AA9B-22E33784FBAD}-C:/program files/ocins/config.exe
O20-appinit_dlls: jzupli. dll
O23-service: aea6eaec (aea6eaec)-C:/Windows/system32/2dd519ed. exe-p | MICROSOFT (r) Windows (r) Ope
following figure shows the effect after installation. This step is relatively simple. After installation, restart SpringBoard.
2. Import libReveal. dylib
This step is also a key step.Reveal LoaderCheck whether there are/Library/RHRevealLoaderAnd check whether the folder containsLibReveal. dylibIf this file exists, skip this step. If not, let's take a look.
(1) tools required to operate jailbreak Device Files
Of course, this part needs to operate on the file system of the jailbreak device and
reader can experiment on his own.Here's a quick introduction to how to modify the security execution policy for PowerShell.1) Open the PowerShell prompt window as an administrator2) Enter the following command:
set-executionpolicy remotesigned
3) then re-start the PowerShell as a management member, and then you can see that the PS prompt is programmed in a custom form.Or you can not quit PS, but do $profile User Configuration script once.3, 5 custom command aliasesBy
1, the Uninstall method is very simple, operation steps, in the above window to find "View installed programs" or at the beginning-Enter the Appwiz.cpl command can be the following figure
2, Find, Windows Internet Explorer program, if not clicked "View installed Updates" as shown below
3, to find the installation package related to IE, Windows Internet iexplorer program as shown below
4, right click to select "Uninstall", and t
Terminator, we didn't kill the Trojan that the AV terminator downloaded. We've all noticed the red iexplorer process in Figure 3, This is the AV terminator download down the gray pigeon Trojan process. IceSword can discover hidden processes and are represented in red, which is not visible under Windows Task Manager. In general, this red process is not a good bird ~
The article begins by saying that there are many types of AV terminators, not all of w
GetTempFileName(path=C:\users\jaime\Temp\, prefix=0, unique=0,buf=12fca4) = 245D Path = C:\users\jaime\Temp\245d.tmp InternetOpenA() InternetOpenUrlA(http://4.59.XX.XX/common/update.exe) CreateFileA(C:\users\jaime\Temp\245d.tmp) = 4 InternetReadFile(1, buf: 12fbe8, size:64) InternetCloseHandle(1) = 1 InternetCloseHandle(1) = 1 CloseHandle(4)
The payload used in this attack is a well-known remote control program PlugX RAT. I mentioned it several times in my previous blog
:0px; "title=" image " Border= "0" alt= "image" Src= "http://s3.51cto.com/wyfs02/M01/54/06/wKioL1R11OTDKi8aAAEbyiv7Ado391.jpg" height= "358" />Open the Grab Kit Wsockexpert (: http://down.51cto.com/data/1904134), click the Open button in the toolbar and select the browser process to grab the package in the select process to Monitor interface. Iexplorer. EXE ", select the" Select File "Action, and then click" Open ":650) this.width=650; "style=" border
source code of this dynamic library is open-source on github (Github address). You need to get dumpdecrypted. the dynamic library dylib only needs to download the code from github and compile it to generate dumpdecrypted. dylib. The following describes how to use the make command to compile the source code of dumpdecrypted.
Go to the dumpdecrypted folder and run the make command.
After compilation, there will be an additional dumpdecrypted. dylib dynamic library in the dumpdecrypted folder.
internetexplorer. Application object. The direct effect is to start an iexplorer process, but the window is invisible until IE. Visible = 1 is set. Then, use the document. Write method to write the HTML statement to the IE window. For complex interfaces, you can save the HTML code as an HTML file and open it with IE. navigate (filename. Finally, the input in the response window. This is basically a Knowledge Area of DHTML.
The biggest difference fr
virus writing to the Registry. right-click to delete the two. the following shows "files not found", because we have deleted these two files in Icesword.5.Then click the Image hijacking and delete all the items except the last Your Image File Name Here without a path c: \ windows \ system32 \ ntsd.exe. Tired, so many .... this should be the case after deletion, 6.By now, the avterminator virus has been cleared. but .... well, once you hear it, you know it's not over yet. because we only cleared
The problem was finally solved. I found it on the Internet and shared it with you. I hope it will be helpful to people who have encountered this problem like me.
Step 1: Open the Registry Editor (run --> Regedit)Step 2: locate hkey_classes_root/. htm and ensure that its default value is htmlfile.Step 3: locate hkey_classes_root/. html to ensure that its default value is htmlfile.Step 4: locate hkey_classes_root/htmlfile/shellex/iconhandler to ensure its default value is {42042206-2d85-11d3-8cff
dynamic library is open source on GitHub (GitHub address ), to get the dumpdecrypted.dylib dynamic Library, just download the code from GitHub, then compile, You can generate Dumpdecrypted.dylib. Below is the use make command to compile the dumpdecrypted source code.Go to the Dumpdecrypted folder and run the Make command. Once the compilation is complete, there will be one more dumpdecrypted.dylib dynamic library in the Dumpdecrypted folder, which is the tool we use to break the shell later.
process, should be used, such as static analysis to obtain the basic information of the app and data storage structure, and then through the dynamic analysis of the method further into the inside of the app, study the specific implementation and principles, and greatly provide analysis efficiency.Third, reverse analysis tools工欲善其事 its prerequisite, after mastering the method, but also learn to use a variety of tools to analyze the different functions of the app. These tools mainly include the f
Tools/raw Materials
WIN7 IE Browser
Deactivate IE browser (not full uninstall)
1 Find the Start menu-then find the Control Panel, open,
2 Open the Control Panel menu and find "program",
3 Click Uninstall Program-turn Windows features on or off to find Internet explore9
4 Remove the hook in front of Internet Explorer9 Browser, click OK. Just shut down IE Browser service.
Uninstall IE browser
The above method is only temporarily shut down IE browser, if necessary, o
FCKeditor Editor is not compatible with IE11, in IE11 this editor does not display, so that the Zblog and dedecms to use this editor of the building system first, how should we solve this problem? This article will share my solution.
Different from the online changes in the file code of the complex approach, I only set up IE11 two places can easily solve this problem.
1. Compatibility View Settings
Open the Compatibility View settings, and then add your site domain name. Th
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.