There are many basic shellcodes that can be emulated from the beginning from the end providing IOC like where is connecting and so on. But what can we do when the emulation get stuck at some point?
The console has many tools to interact with the emulator like it was a debugger but the shellcode really is not being executed so is safer than a debugger.
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -vv
In some shellcodes the emulator emulates millions of instructions without problem, but in this case at instruction number 176 there is a crash, the [esp + 30h] contain an unexpected 0xffffffff.
There are two ways to trace the memory, tracing all memory operations with -m or inspecting specific place with -i which allow to use registers to express the memory location:
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -i 'dword ptr [esp + 0x30]'
Now we know that in position 174 the value 0xffffffff is set.
But we have more control if we set the console at first instruction with -c 1 and set a memory breakpoint on write.
This "dec" instruction changes the zero for the 0xffffffff, and the instruction 90 is what actually is changing the stack value.
Lets trace the eax register to see if its a kind of counter or what is doing.
Read more
- Pentest Tools Review
- Hacking Tools Online
- Pentest Tools Windows
- Hacking Tools
- Hackers Toolbox
- Pentest Recon Tools
- Hacker Tools Github
- Hacker Tools Free Download
- Hacking Tools 2020
- Pentest Tools Bluekeep
- What Is Hacking Tools
- Hacking Tools For Pc
- Hacking Tools Software
- Pentest Tools Subdomain
- Hacking Tools Download
- Hacking Tools Hardware
- Hacking Tools Kit
- Pentest Tools
- Pentest Tools Apk
- Hacker Tools 2019
- Hack Tool Apk No Root
- Android Hack Tools Github
- Pentest Tools For Ubuntu
- Hacker Tools
- Hack Tools Mac
- Nsa Hack Tools Download
- Hacking Tools For Kali Linux
- Hack Tool Apk No Root
- Hacking Tools For Windows
- Pentest Tools Website Vulnerability
- Hacking Tools Download
- Hacker Tools 2020
- Pentest Tools
- Hackers Toolbox
- Hacker Security Tools
- Kik Hack Tools
- Kik Hack Tools
- Nsa Hacker Tools
- Pentest Reporting Tools
- Hacking Tools For Mac
- Tools For Hacker
- How To Install Pentest Tools In Ubuntu
- Hacking Tools For Windows Free Download
- Hacking Tools Pc
- Hacker Tools 2020
- Hacking Tools For Pc
- Pentest Tools For Windows
- Hacker Tools 2019
- New Hacker Tools
- Hacking Tools Kit
- Tools Used For Hacking
Aucun commentaire:
Publier un commentaire