There are many basic shellcodes that can be emulated from the beginning from the end providing IOC like where is connecting and so on. But what can we do when the emulation get stuck at some point?
The console has many tools to interact with the emulator like it was a debugger but the shellcode really is not being executed so is safer than a debugger.
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -vv
In some shellcodes the emulator emulates millions of instructions without problem, but in this case at instruction number 176 there is a crash, the [esp + 30h] contain an unexpected 0xffffffff.
There are two ways to trace the memory, tracing all memory operations with -m or inspecting specific place with -i which allow to use registers to express the memory location:
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -i 'dword ptr [esp + 0x30]'
Now we know that in position 174 the value 0xffffffff is set.
But we have more control if we set the console at first instruction with -c 1 and set a memory breakpoint on write.
This "dec" instruction changes the zero for the 0xffffffff, and the instruction 90 is what actually is changing the stack value.
Lets trace the eax register to see if its a kind of counter or what is doing.
Related posts
- Hacking Tools Windows
- Pentest Tools Linux
- Hacking Tools Hardware
- Hack Tools
- Pentest Tools Online
- Pentest Tools
- Hacking Tools Github
- Pentest Tools For Mac
- Hacking Tools Pc
- Hack Tools For Ubuntu
- Hacker Tool Kit
- Black Hat Hacker Tools
- Hacking Tools For Windows Free Download
- Pentest Tools Website Vulnerability
- Hack Tool Apk
- Physical Pentest Tools
- Hacking Tools For Windows
- Hacking Tools Mac
- Hacker Tools For Pc
- Hacking Tools For Mac
- Hack And Tools
- Blackhat Hacker Tools
- Pentest Tools Download
- Wifi Hacker Tools For Windows
- Hack Tools For Windows
- Computer Hacker
- Pentest Automation Tools
- How To Make Hacking Tools
- Hacker Hardware Tools
- Hacker Tools For Mac
- Pentest Box Tools Download
- Hacker Tools 2020
- Ethical Hacker Tools
- Pentest Reporting Tools
- Hack Tools For Ubuntu
- Hacker Hardware Tools
- Termux Hacking Tools 2019
- Hacker Tools Linux
- Pentest Tools List
- Usb Pentest Tools
- Hacking Tools Windows
- Pentest Tools Framework
- Easy Hack Tools
- Hacker Security Tools
- Hacking Tools Kit
- Hacker Techniques Tools And Incident Handling
- Hacking Tools Windows
- Hacker Tool Kit
- Hacking Tools Hardware
- Pentest Tools Tcp Port Scanner
- Hacker Tool Kit
- Hacker Tools Online
- Hacking Tools For Games
- Hacking Tools Kit
- Hacker Tools Github
- Hacker Tools For Windows
- Easy Hack Tools
- Hack Tool Apk
- Pentest Tools For Windows
- Pentest Tools Subdomain
- Hacker Tools Software
- Pentest Tools Find Subdomains
- Hacking Tools For Pc
- Hacker Tools 2019
- Pentest Tools Port Scanner
- Pentest Tools Url Fuzzer
- Beginner Hacker Tools
- Hacker Tools Online
- Hack Tools
- Hack Tools Download
- Pentest Tools Tcp Port Scanner
- Hacking Tools Mac
- Hacking Tools Usb
- Hack Tool Apk No Root
- Hacker Tools For Pc
- Pentest Tools Website Vulnerability
- Wifi Hacker Tools For Windows
- Android Hack Tools Github
- Hackrf Tools
- Pentest Tools Kali Linux
- Hack Tools For Games
- Pentest Recon Tools
- Hacker Tools For Windows
- Pentest Tools Alternative
- Hacker Techniques Tools And Incident Handling
- Pentest Tools Framework
- Android Hack Tools Github
- Underground Hacker Sites
- Hacker Security Tools
- Pentest Tools Find Subdomains
- Hacker Tools Windows
- Pentest Tools Subdomain
- Hack Tools Download
- Wifi Hacker Tools For Windows
- Pentest Tools Alternative
- Hacking Tools Online
- Free Pentest Tools For Windows
- Hack Tools Download
- Hacker Techniques Tools And Incident Handling
- Pentest Tools Tcp Port Scanner
- Hacking Tools 2020
- Hack Tools
- Hacking Tools Windows
- Hacker Tools
- What Is Hacking Tools
- Hack Tools For Mac
- Pentest Tools Android
- Github Hacking Tools
- Underground Hacker Sites
- Easy Hack Tools
- Hack Tools Download
- Pentest Tools Nmap
- Pentest Tools Bluekeep
- Hack Website Online Tool
- Hacker Security Tools
- Top Pentest Tools
- Pentest Tools Download
- Pentest Tools Port Scanner