作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (9): 146-148.

• 安全技术 • 上一篇    下一篇

Huigezi.2004 的清除及新一代木马的介绍

朱建军 1,2,李家春1,张凌 1,施洪华3   

  1. 1. 华南理工大学计算机科学与工程学院广东省计算机网络重点实验室,广州 510640;2. 解放军73181 部队;3. 上海财经大学成人教育学院,上海 200083
  • 出版日期:2006-05-05 发布日期:2006-05-05

Elimination of Huigezi.2004 and Introduction of New GenerationTrojan Horse

ZHU Jianjun1,2, LI Jiachun1, ZHANG Ling1, SHI Honghua3   

  1. 1. Guangdong Key Laboratory of Computer Network, School of Computer Science and Engineering, South China University of Technology,Guangzhou 510640; 2. 73181 Troops, PLA; 3. School of Adult Education, Shanghai University of Finance and Economics, Shanghai 200083
  • Online:2006-05-05 Published:2006-05-05

摘要: 特洛伊木马是具备强大远程控制功能的一种黑客工具,其对网络中计算机的危害是显而易见的。结合Huigezi.2004 木马清除的全过程,介绍了新一代木马的特征和其所采用的主要技术,包括DLL 链接库技术、端口反弹技术和组装合成技术,并给出了清除Huigezi.2004木马的具体步骤,最后对木马未来的发展趋势作了展望。

关键词: Huigezi.2004;木马技术;清除

Abstract: Trojan horse is a kind of hacker’s tool, which has strong function of remote control and makes obvious damage to computer in a network. Combined with the whole elimination procedure of Huigezi.2004 Trojan horse, this paper introduces the character of new generation Trojan horse and its chief applying technique, including the technology of DLL linking library, port recall, and assembly and synthesis. And then, the particular steps of the elimination procedure of Huigezi.2004 are put forward. Finally, the future department trend of Trojan horse is analyzed

Key words: Huigezi.2004; Trojan horse technique; Elimination