There are many basic shellcodes that can be emulated from the beginning from the end providing IOC like where is connecting and so on. But what can we do when the emulation get stuck at some point?
The console has many tools to interact with the emulator like it was a debugger but the shellcode really is not being executed so is safer than a debugger.
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -vv
In some shellcodes the emulator emulates millions of instructions without problem, but in this case at instruction number 176 there is a crash, the [esp + 30h] contain an unexpected 0xffffffff.
There are two ways to trace the memory, tracing all memory operations with -m or inspecting specific place with -i which allow to use registers to express the memory location:
target/release/scemu -f ~/Downloads/shellcodes_matched/drv_shellcode.bin -i 'dword ptr [esp + 0x30]'
Now we know that in position 174 the value 0xffffffff is set.
But we have more control if we set the console at first instruction with -c 1 and set a memory breakpoint on write.
This "dec" instruction changes the zero for the 0xffffffff, and the instruction 90 is what actually is changing the stack value.
Lets trace the eax register to see if its a kind of counter or what is doing.
More info
- Hacker Tools For Ios
- Hacker Tools Github
- Hacking Tools Kit
- Hack Tools For Windows
- Pentest Tools Port Scanner
- Nsa Hack Tools Download
- New Hacker Tools
- Hacker Tools Apk
- Growth Hacker Tools
- Pentest Tools Review
- How To Hack
- Hack Tools Mac
- Blackhat Hacker Tools
- Hack Website Online Tool
- Pentest Reporting Tools
- Hacking Tools Mac
- Hack Tools
- Nsa Hack Tools
- Hack Website Online Tool
- Best Pentesting Tools 2018
- Hack Tools For Mac
- Pentest Tools Download
- Hacking App
- Hacking Tools For Kali Linux
- Hack Tools Mac
- Hacking Tools For Kali Linux
- Nsa Hack Tools
- Pentest Tools For Mac
- Hacking Tools 2020
- Hacking Tools Download
- Computer Hacker
- Hacker Tools Github
- Usb Pentest Tools
- Pentest Tools Linux
- Hacking Tools Windows
- Hack Tool Apk
- Hack Tools Online
- Tools Used For Hacking
- Hacking Tools For Mac
- Growth Hacker Tools
- Hacking Tools And Software
- Hack Tools Mac
- Hacking Tools 2019
- Nsa Hack Tools Download
- New Hacker Tools
- Hacking Apps
- Hacker Tools List
- Pentest Tools Website
- Hacker Tools Mac
- New Hack Tools
- Hacking Tools Github
- Hacks And Tools
- Android Hack Tools Github
- Hacker Tools For Windows
- What Is Hacking Tools
- Hack Tool Apk No Root
- Hack Tool Apk
- Nsa Hack Tools Download
- Pentest Tools Bluekeep
- Blackhat Hacker Tools
- Pentest Tools Online
- Install Pentest Tools Ubuntu
- Physical Pentest Tools
- Hacker Tools 2019
- Hack Apps
- Hack Tool Apk
- Hacking Tools Windows
- Hacker Tools List
- Hacker Tools Software
- Hacker Tools 2020
- Ethical Hacker Tools
- Pentest Tools Online
- Growth Hacker Tools