首页
社区
课程
招聘
[求助]shellcode中存有\x00 !!
发表于: 2010-3-28 23:28 5733

[求助]shellcode中存有\x00 !!

2010-3-28 23:28
5733
【求助】shellcode中存有\x00 !!
如何令老不存在\x00
有沒有工具?  或如何寫加密程序? 令shellcode中不存有00??

[注意]传递专业知识、拓宽行业人脉——看雪讲师团队等你加入!

收藏
免费 0
支持
分享
最新回复 (2)
雪    币: 203
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
2
msf > banner

。。。。。。

       =[ metasploit v3.3.4-dev [core:3.3 api:1.0]
+ -- --=[ 536 exploits - 256 auxiliary
+ -- --=[ 198 payloads - 23 encoders - 8 nops
       =[ svn r8950 updated today (2010.03.28)

msf > msfencode -h

。。。。。。

OPTIONS:

    -a <opt>  The architecture to encode as
    -b <opt>  The list of characters to avoid: '\x00\xff'
    -c <opt>  The number of times to encode the data
    -e <opt>  The encoder to use
    -h        Help banner
    -i <opt>  Encode the contents of the supplied file path
    -k        Keep template working; run payload in new thread (use with -x)
    -l        List available encoders
    -m <opt>  Specifies an additional module search path
    -n        Dump encoder information
    -o <opt>  The output file
    -p <opt>  The platform to encode for
    -s <opt>  The maximum size of the encoded data
    -t <opt>  The format to display the encoded buffer with (c, elf, exe, java, js_le, js_be, perl, raw, ruby, vba, vbs, loop-vbs, asp, war)
    -x <opt>  Specify an alternate win32 executable template

msf > msfencode -l

。。。。。。

Framework Encoders
==================

    Name                    Rank       Description
    ----                    ----       -----------
    cmd/generic_sh          good       Generic Shell Variable Substitution Command Encoder
    cmd/ifs                 low        Generic ${IFS} Substitution Command Encoder
    generic/none            normal     The "none" Encoder
    mipsbe/longxor          normal     XOR Encoder
    mipsle/longxor          normal     XOR Encoder
    php/base64              normal     PHP Base64 encoder
    ppc/longxor             normal     PPC LongXOR Encoder
    ppc/longxor_tag         normal     PPC LongXOR Encoder
    sparc/longxor_tag       normal     SPARC DWORD XOR Encoder
    x64/xor                 normal     XOR Encoder
    x86/alpha_mixed         low        Alpha2 Alphanumeric Mixedcase Encoder
    x86/alpha_upper         low        Alpha2 Alphanumeric Uppercase Encoder
    x86/avoid_utf8_tolower  manual     Avoid UTF8/tolower
    x86/call4_dword_xor     normal     Call+4 Dword XOR Encoder
    x86/countdown           normal     Single-byte XOR Countdown Encoder
    x86/fnstenv_mov         normal     Variable-length Fnstenv/mov Dword XOR Encoder
    x86/jmp_call_additive   normal     Jump/Call XOR Additive Feedback Encoder
    x86/nonalpha            low        Non-Alpha Encoder
    x86/nonupper            low        Non-Upper Encoder
    x86/shikata_ga_nai      excellent  Polymorphic XOR Additive Feedback Encoder
    x86/single_static_bit   manual     Single Static Bit
    x86/unicode_mixed       manual     Alpha2 Alphanumeric Unicode Mixedcase Encoder
    x86/unicode_upper       manual     Alpha2 Alphanumeric Unicode Uppercase Encoder
2010-3-29 12:39
0
雪    币: 160
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
3
OH  謝謝你的回答 thz

我的Metasploit

000 != 0x69A40000
27870660 [unknown (0x1224)] ruby 2900 fork: child 1028 - died waiting for dll loading, errno 11
28978667 [main] ruby 3276 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
28980527 [unknown (0x1224)] ruby 2900 fork: child 3276 - died waiting for dll loading, errno 11
30087948 [main] ruby 664 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
30089760 [unknown (0x1224)] ruby 2900 fork: child 664 - died waiting for dll loading, errno 11
31198576 [main] ruby 5428 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
31200395 [unknown (0x1224)] ruby 2900 fork: child 5428 - died waiting for dll loading, errno 11
32307074 [main] ruby 4664 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
32308884 [unknown (0x1224)] ruby 2900 fork: child 4664 - died waiting for dll loading, errno 11
33415998 [main] ruby 4792 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
33417840 [unknown (0x1224)] ruby 2900 fork: child 4792 - died waiting for dll loading, errno 11
34526034 [main] ruby 4320 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
34527855 [unknown (0x1224)] ruby 2900 fork: child 4320 - died waiting for dll loading, errno 11
35638514 [main] ruby 2700 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
35640330 [unknown (0x1224)] ruby 2900 fork: child 2700 - died waiting for dll loading, errno 11
36747824 [main] ruby 3404 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
36749666 [unknown (0x1224)] ruby 2900 fork: child 3404 - died waiting for dll loading, errno 11
37854893 [main] ruby 5976 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
37856731 [unknown (0x1224)] ruby 2900 fork: child 5976 - died waiting for dll loading, errno 11
38963114 [main] ruby 1772 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
38964963 [unknown (0x1224)] ruby 2900 fork: child 1772 - died waiting for dll loading, errno 11
40073914 [main] ruby 644 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
40075778 [unknown (0x1224)] ruby 2900 fork: child 644 - died waiting for dll loading, errno 11
41182110 [main] ruby 4208 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
41183911 [unknown (0x1224)] ruby 2900 fork: child 4208 - died waiting for dll loading, errno 11
42291254 [main] ruby 5160 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
42293077 [unknown (0x1224)] ruby 2900 fork: child 5160 - died waiting for dll loading, errno 11
43400854 [main] ruby 4864 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
43402678 [unknown (0x1224)] ruby 2900 fork: child 4864 - died waiting for dll loading, errno 11
44509944 [main] ruby 4936 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
44511772 [unknown (0x1224)] ruby 2900 fork: child 4936 - died waiting for dll loading, errno 11
45619472 [main] ruby 2072 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
45621326 [unknown (0x1224)] ruby 2900 fork: child 2072 - died waiting for dll loading, errno 11
46730102 [main] ruby 4508 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
46731921 [unknown (0x1224)] ruby 2900 fork: child 4508 - died waiting for dll loading, errno 11
47839372 [main] ruby 3068 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
47841183 [unknown (0x1224)] ruby 2900 fork: child 3068 - died waiting for dll loading, errno 11
48949146 [main] ruby 5324 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
48950897 [unknown (0x1224)] ruby 2900 fork: child 5324 - died waiting for dll loading, errno 11
50058020 [main] ruby 4020 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
50060262 [unknown (0x1224)] ruby 2900 fork: child 4020 - died waiting for dll loading, errno 11
51166362 [main] ruby 3072 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
51168144 [unknown (0x1224)] ruby 2900 fork: child 3072 - died waiting for dll loading, errno 11
52275166 [main] ruby 3976 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
52276945 [unknown (0x1224)] ruby 2900 fork: child 3976 - died waiting for dll loading, errno 11
53384993 [main] ruby 5668 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
53386824 [unknown (0x1224)] ruby 2900 fork: child 5668 - died waiting for dll loading, errno 11
54493678 [main] ruby 2976 F:\Program Files\Metasploit\Framework3\bin\ruby.exe: *** fatal error - unable to remap \\?\F:\Program Files\Metasploit\Framework3\lib\ruby\1.9.1\i386-cygwin\strscan.so to same address as parent: 0xEF0000 != 0x69A40000
54495462 [unknown (0x1224)] ruby 2900 fork: child 2976 - died waiting for dll loading, errno 11

有這一些error??
2010-3-29 14:47
0
游客
登录 | 注册 方可回帖
返回
//