Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

为什么发给别人会在exe加.1 #10

Open
xiaokul opened this issue Nov 20, 2024 · 12 comments
Open

为什么发给别人会在exe加.1 #10

xiaokul opened this issue Nov 20, 2024 · 12 comments

Comments

@xiaokul
Copy link

xiaokul commented Nov 20, 2024

mmexport1732115152996

@xiaokul
Copy link
Author

xiaokul commented Nov 20, 2024

P20241120-234419
微信发送文件报这个

@xiaokul
Copy link
Author

xiaokul commented Nov 20, 2024

mmexport1732119975751
报qvm202.0.7f7d

@baigae
Copy link
Owner

baigae commented Nov 21, 2024

mmexport1732119975751报qvm202.0.7f7d

全部方法都报qvm202.0.7f7d?微信发送exe,不是木马也会报毒

@xiaokul
Copy link
Author

xiaokul commented Nov 21, 2024

是的,报qvm202.0.7f7d,全部方法都是这样,有点不明白为什么从微信发送免杀过木马exe会在.exe后面加.1

@baigae
Copy link
Owner

baigae commented Nov 21, 2024

是的,报qvm202.0.7f7d,全部方法都是这样,有点不明白为什么从微信发送免杀过木马exe会在.exe后面加.1

你本地测试也是吗?还是发送微信过去就报qvm?

@baigae
Copy link
Owner

baigae commented Nov 21, 2024

是的,报qvm202.0.7f7d,全部方法都是这样,有点不明白为什么从微信发送免杀过木马exe会在.exe后面加.1

可以尝试替换tools目录中的favicon.ico文件,绕过qvm

@xiaokul
Copy link
Author

xiaokul commented Nov 21, 2024

已替换过favicon.ico爆QVM,然后微信直接发过去他会在.exe后面加.1

@baigae
Copy link
Owner

baigae commented Nov 21, 2024

已替换过favicon.ico爆QVM,然后微信直接发过去他会在.exe后面加.1

可以再替换别的favicon.ico,然后再加点资源,我这里本地没有爆QVM,微信这个问题是微信的原因

@xiaokul
Copy link
Author

xiaokul commented Nov 21, 2024

好的,多谢兄弟,到时候我再加个签名试试

@baigae
Copy link
Owner

baigae commented Nov 21, 2024

好的,多谢兄弟,到时候我再加个签名试试
不是报木马,还可以改改资源。后续会继续更新

@xiaokul
Copy link
Author

xiaokul commented Nov 23, 2024

好的,多谢兄弟,到时候我再加个签名试试
不是报木马,还可以改改资源。后续会继续更新

兄弟,大概多久更新一次

@baigae
Copy link
Owner

baigae commented Nov 23, 2024

好的,多谢兄弟,到时候我再加个签名试试
不是报木马,还可以改改资源。后续会继续更新

兄弟,大概多久更新一次

下一个版本下周

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants