일 | 월 | 화 | 수 | 목 | 금 | 토 |
---|---|---|---|---|---|---|
1 | 2 | 3 | 4 | |||
5 | 6 | 7 | 8 | 9 | 10 | 11 |
12 | 13 | 14 | 15 | 16 | 17 | 18 |
19 | 20 | 21 | 22 | 23 | 24 | 25 |
26 | 27 | 28 | 29 | 30 | 31 |
- 악성코드
- Python Win32 API
- Hover Action
- hex2bin
- TCP Socket
- Python LoadLibrary
- 파이썬
- anti vm
- 파워쉘
- c# xml 파싱
- VMware
- c# 디렉토리 파일 조회
- c# 프로그램 종료
- PPT Malware
- Python GetProcAddress
- c# 외부 프로그램 실행
- 한글 악성코드
- FTP Server/Client
- pdf 악성코드
- UDP Server/Client
- Mouse Over
- TCP Server/Client
- c# 파일 읽기쓰기
- 파이썬 외부프로그램 실행
- vbscript
- PowerShell
- c# 파일명 변경
- c# 파일 IO
- Universal ShellCode
- 최순실 악성코드
- Today
- Total
목록Dev. (21)
그냥저냥
123456789101112131415161718#!/usr/bin/pythonimport os, sysimport re if os.path.isfile(sys.argv[1]): sc = open(sys.argv[1]).read()else: sc = sys.argv[1] bin_sc = re.sub('%u(..)(..)',lambda x: chr(int(x.group(2),16))+chr(int(x.group(1),16)),sc) try: FILE = open(sys.argv[2],"wb") FILE.write(bin_sc) FILE.close() except Exception, e: print 'Cannot save binary to disk %s' % eColored by Color Scriptercs
12345import subprocessp = subprocess.Popen( ["실행시킬 프로그램 경로", "파라미터1", "파라미터2", ...], stdout = subprocess.PIPE)Colored by Color Scriptercs [사용 결과]
[Telnet Server Code]12345678910111213141516171819202122232425262728293031323334353637383940#include #include #include #include #include #include int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2),&wsdata); SOCKET servSock = socket(AF_INET,SOCK_STREAM,0); SOCKADDR_IN servAddr; ZeroMemory(&servAddr, sizeof(servAddr)); servAddr.sin_family = AF_INET; servAddr.sin_addr.s_addr = htonl(INADDR_ANY); s..
[FTP Server Code]1234567891011121314151617181920212223242526272829303132333435363738394041#include #include #include #include #include int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2),&wsdata); SOCKET servSock = socket(AF_INET,SOCK_STREAM,0); SOCKADDR_IN servAddr; ZeroMemory(&servAddr, sizeof(servAddr)); servAddr.sin_family = AF_INET; servAddr.sin_addr.s_addr = htonl(INADDR_ANY); servAddr.si..
[Broadcast Send]123456789101112131415161718192021222324252627#include #include #include int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2), &wsdata); SOCKET sock = socket(AF_INET, SOCK_DGRAM, 0); int bcastOpt = 1; char buf[30]; ZeroMemory(buf, sizeof(buf)); strcpy(buf, "브로드캐스트 테스트~\n"); SOCKADDR_IN addr; ZeroMemory(&addr, sizeof(addr)); addr.sin_family = AF_INET; addr.sin_addr.s_addr = inet_ad..
123456789101112131415161718192021222324252627282930313233343536373839404142#include #include void first();void run(); int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2), &wsdata); first(); while(1) run(); WSACleanup(); return 0;}void first(){ HOSTENT *host; host = gethostbyname("kns.kornet.net"); printf("기본 서버: %s\n", host->h_name); printf("Address: %s\n\n", inet_ntoa(*(IN_ADDR*)host->h_addr_l..
[UDP Server Code]12345678910111213141516171819202122232425262728#include #include int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2), &wsdata); SOCKET sock = socket(AF_INET, SOCK_DGRAM, 0); SOCKADDR_IN addr; ZeroMemory(&addr, sizeof(addr)); addr.sin_family = AF_INET; addr.sin_addr.s_addr = htonl(INADDR_ANY); addr.sin_port = htons(12345); bind(sock, (SOCKADDR*)&addr, sizeof(addr)); char msg[30]..
[TCP Server Code] 1234567891011121314151617181920212223242526272829303132#include #include int main(){ WSADATA wsdata; WSAStartup(MAKEWORD(2,2), &wsdata); SOCKET servSock = socket(AF_INET, SOCK_STREAM, 0); SOCKADDR_IN addr; ZeroMemory(&addr, sizeof(addr)); addr.sin_family = AF_INET; //addr.sin_addr.s_addr = htonl(INADDR_ANY); addr.sin_addr.s_addr = inet_addr("127.0.0.1"); addr.sin_port = htons(9..
123456789import sysfrom ctypes import *import ctypes dll_name = sys.argv[1]function_name = sys.argv[2]dll = windll.LoadLibrary(dll_name)function = dll.GetProcAddress(dll._handle, function_name)print "API Address [%s] # %s : 0x%08x" % (dll_name, function_name, function)cs # 사용법 getprocaddr.py kernel32.dll WinExec
123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119using System;using System.Collections.Generic;using System.ComponentModel;using System.Data;using System.Drawing;using System.Linq;using System.Text;..