There are many basic shellcodes that can be emulated from the beginning from the end providing IOC like where is connecting and so on. But what can we do when the emulation get stuck at some point?
The console has many tools to interact with the emulator like it was a debugger but the shellcode really is not being executed so is safer than a debugger.
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -vv
In some shellcodes the emulator emulates millions of instructions without problem, but in this case at instruction number 176 there is a crash, the [esp + 30h] contain an unexpected 0xffffffff.
There are two ways to trace the memory, tracing all memory operations with -m or inspecting specific place with -i which allow to use registers to express the memory location:
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -i 'dword ptr [esp + 0x30]'
Now we know that in position 174 the value 0xffffffff is set.
But we have more control if we set the console at first instruction with -c 1 and set a memory breakpoint on write.
This "dec" instruction changes the zero for the 0xffffffff, and the instruction 90 is what actually is changing the stack value.
Lets trace the eax register to see if its a kind of counter or what is doing.
More info
- New Hacker Tools
- Pentest Tools Bluekeep
- Pentest Tools Nmap
- Pentest Tools Open Source
- Hacking App
- Hacking Tools Windows
- Hacker Tools Software
- Pentest Automation Tools
- Hacking Tools For Games
- Game Hacking
- Kik Hack Tools
- Hacking Tools Software
- Free Pentest Tools For Windows
- Hack Tools For Pc
- Hack Tools
- Free Pentest Tools For Windows
- Hack App
- How To Hack
- Hacker Hardware Tools
- Pentest Recon Tools
- Underground Hacker Sites
- Easy Hack Tools
- Hack Tools For Ubuntu
- Pentest Tools Port Scanner
- Pentest Tools For Mac
- Hacking Tools Kit
- Hacking Tools Name
- Android Hack Tools Github
- Pentest Tools Bluekeep
- Blackhat Hacker Tools
- Pentest Tools Alternative
- New Hacker Tools
- Pentest Tools Windows
- How To Hack
- New Hacker Tools
- Hacker Search Tools
- Pentest Tools
- Pentest Tools Alternative
- Underground Hacker Sites
- Hacker Tools Free
- Hacking Tools For Pc
- Hacking Tools For Windows Free Download
- Hacking Tools Pc
- Wifi Hacker Tools For Windows
- Hack And Tools
- Hacking Apps
- Easy Hack Tools
- Pentest Tools Subdomain
- Hacker Tools For Ios
- Pentest Tools For Android
- Nsa Hack Tools
- Hack Tools For Ubuntu
- Pentest Tools Port Scanner
- Hack Rom Tools
- Hack Tools Github
- Pentest Tools List
- Pentest Tools Online
- Hacking Tools Online
- Pentest Tools For Ubuntu
- Pentest Tools Download
- Hackers Toolbox
- Nsa Hack Tools Download
- Pentest Recon Tools
- Hacker Tools For Ios
- Nsa Hacker Tools
- Hacking Tools Windows
- Hacker Security Tools
- Hacks And Tools
- Game Hacking
- Usb Pentest Tools
- Pentest Tools Online
- How To Make Hacking Tools
- Pentest Tools Free
- Game Hacking
- World No 1 Hacker Software
- Hack App
- Hacker Tools For Mac
- Hack Tools
- Pentest Tools Linux
- Hack Tools Mac
- Hacking Tools And Software
- Hacker Techniques Tools And Incident Handling
- Hacking Tools For Windows Free Download
- Hack Tools For Mac
- Easy Hack Tools
- Hack Tools Mac
- Pentest Reporting Tools
- Hack And Tools
- Hacker Hardware Tools
- Pentest Tools Apk
- Hacking Tools Usb
- Pentest Tools Alternative
- Hacker Tools List
- Pentest Recon Tools
- Hacking Tools For Windows 7
- Computer Hacker
- Hacking Tools
- Hacker Tools Linux
- Hacking Tools Name
- Pentest Tools For Ubuntu
- Hacking Tools For Pc
- Pentest Tools Website
- Growth Hacker Tools
- Tools For Hacker
- Hacking Tools Hardware
- Hacking Tools Windows
- Tools 4 Hack
No comments:
Post a Comment