Section: .. / shellcode /
| /// File Name: |
iptablesf.txt |
Description:
|
84 bytes of shellcode for Linux/AMD64 that executes /sbin/iptables -F.
| | Author: | gat3way | | File Size: | 2084 | | Last Modified: | Nov 28 20:34:05 2008 |
| MD5 Checksum: | 08efa129c949932ef5667f768230c019 |
|
| /// File Name: |
390execve.c |
Description:
|
Setuid/setgid 0 execve s390 shellcode.
| | Homepage: | http://www.thc.org | | File Size: | 2080 | | Last Modified: | Dec 24 11:16:45 2002 |
| MD5 Checksum: | 707d6b6af82a86eaf60c1c0a07e21f83 |
|
| /// File Name: |
black-dl-exec-SOLARIS.c |
Description:
|
278 byte shellcode for Solaris that downloads a binary named evil-dl from a host and saves it to /tmp/ff and then executes it.
| | Author: | Russell Sanford | | File Size: | 2080 | | Last Modified: | Nov 28 21:36:03 2006 |
| MD5 Checksum: | fe45bd90775da60f68eb7c6551223c73 |
|
| /// File Name: |
execMacOSX.txt |
Description:
|
execve("/bin/sh",{"/bin/sh",NULL},NULL) shellcode for Mac OSX on both the PPC and x86 platforms.
| | Author: | nemo | | File Size: | 2079 | | Last Modified: | Nov 15 01:51:18 2005 |
| MD5 Checksum: | 72e47e8ad4ab92ef14a550392be4c21c |
|
| /// File Name: |
stdinreopen.txt |
Description:
|
Local shellcode for stdin re-open and /bin/sh exec. It closes stdin descriptor and re-opens /dev/tty, then does an execve() of /bin/sh. Useful to exploit some gets() buffer overflows in an elegant way.
| | Author: | Marco Ivaldi | | File Size: | 2078 | | Last Modified: | Jul 26 02:35:30 2006 |
| MD5 Checksum: | 8daecb38244b0718f9acb1eb01ea18f3 |
|
| /// File Name: |
gencmd.asm |
Description:
|
Simple Windows XP shellcode for command execution.
| | Author: | Peter Winter-Smith | | File Size: | 1999 | | Last Modified: | Jul 20 13:56:06 2003 |
| MD5 Checksum: | c375738c4d8210e69ce3746a28eef369 |
|
| /// File Name: |
IRIX-p_sh-asm.c |
Description:
|
IRIX MIPS processor shellcode. Tested on R12000 process with system IRIX64 6.5.26m.
| | Author: | Adam Zabrocki | | File Size: | 1909 | | Last Modified: | Jun 14 01:16:30 2007 |
| MD5 Checksum: | bd4058565fd6b72d4fcd8fb1644dcb55 |
|
| /// File Name: |
x86-linux-connect-back.c |
Description:
|
90 byte connect back shellcode for Linux on x86.
| | Author: | Russell Sanford | | File Size: | 1895 | | Last Modified: | Dec 31 04:08:22 2005 |
| MD5 Checksum: | 3f388c9b9fc348dcf58035b92d558405 |
|
| /// File Name: |
IOS_Bindshell_v.1.0.txt |
Description:
|
Cisco IOS Bind shellcode that creates a new tty, allocates a password, and then sets the privilege level 15.
| | Author: | Varun Uppal | | Homepage: | http://www.irmplc.com/ | | File Size: | 1871 | | Last Modified: | Aug 13 19:22:47 2008 |
| MD5 Checksum: | b9ce656698ebbdfbd6035588ce0b899d |
|
| /// File Name: |
execve3.c |
Description:
|
Linux x86 shellcode, 41 bytes. Does a setresuid(0,0,0); execve /bin/sh; exit;.
| | Author: | Sacrine | | Homepage: | http://netric.org | | File Size: | 1804 | | Last Modified: | Feb 25 04:16:08 2003 |
| MD5 Checksum: | 89acd2e404df45e7ccd0471e953e9ebe |
|
| /// File Name: |
asciiart-julia.txt |
Description:
|
ASCII Art / shellcode hybrid called "Julia". This shellcode was created using Ars Ex Machina Coda. The shellcode will only work when it is run in writable and executable memory and if ECX points to the base address of the shellcode.
| | Author: | SkyLined | | File Size: | 1760 | | Last Modified: | Aug 4 17:56:45 2008 |
| MD5 Checksum: | fff6a982f7a170694d94be43ed1d897b |
|
| /// File Name: |
bind.cpp |
Description:
|
Simple multi-threaded code that spawns a command prompt on win32.
| | Author: | anonymous | | File Size: | 1760 | | Last Modified: | Nov 10 15:47:48 2008 |
| MD5 Checksum: | 834c980dbe58b2f1f4ebf599534b38bb |
|
| /// File Name: |
fm-dmpsc.c |
Description:
|
Small application written to make life easier. It dumps C style opcodes between two provided offsets.
| | Author: | nemo | | File Size: | 1727 | | Last Modified: | Jan 25 03:00:33 2005 |
| MD5 Checksum: | 584510f1d459b53ee3499e97718aa6ea |
|
| /// File Name: |
morpheus.c |
Description:
|
Shellcode that print What is The M4Tr1X ?! and then exits.
| | Author: | Shashank Pandey | | File Size: | 1718 | | Last Modified: | Jun 16 20:05:57 2003 |
| MD5 Checksum: | 2127e83d8d02e7e2db75b924c9c3b216 |
|
| /// File Name: |
irix-bin-sh.c |
Description:
|
68 byte MIPS/Irix PIC execve shellcode (source included)
| | Author: | Scut | | Homepage: | http://www.team-teso.net | | File Size: | 1586 | | Last Modified: | May 22 02:46:28 2002 |
| MD5 Checksum: | 2e7c77853c3a790ed0426eb837f63440 |
|
| /// File Name: |
cisco-shellcode.txt |
Description:
|
A follow up regarding the shellcode used in the Cisco IOS FTP exploit detailing everything used.
| | Author: | Andy Davis | | Related Exploit: | cisco-sa-20070509-iosftp.c | | File Size: | 1571 | | Last Modified: | Jul 30 23:48:53 2008 |
| MD5 Checksum: | 249d63b6a705019f0fa0679b1972c587 |
|
| /// File Name: |
bsd-sh.c |
Description:
|
BSD x86 shellcode which does a seteuid(0,0); execve /bin/sh; exit.
| | Author: | eSDee | | Homepage: | http://www.netric.org | | File Size: | 1549 | | Last Modified: | Sep 6 01:41:16 2002 |
| MD5 Checksum: | e5f676c96a4469e6f6d0dba0777ccfe2 |
|
| /// File Name: |
rts.c |
Description:
|
rts.c is reverse telnet shell code. Useful for systems behind firewalls which restrict incoming connections.
| | Author: | hts | | File Size: | 1518 | | Last Modified: | Mar 5 19:19:11 2001 |
| MD5 Checksum: | cc3809634d6380b1e6ee988e843a0d10 |
|
| /// File Name: |
smallnonulls-exec.txt |
Description:
|
27 bytes small GNU/Linux x86 setuid(0) && execve("/bin/sh",0,0) shellcode without NULLs.
| | Author: | Chema Garcia | | Homepage: | http://opensec.es/ | | File Size: | 1517 | | Last Modified: | Nov 13 19:44:52 2008 |
| MD5 Checksum: | fbe997136460672e07de13d11aba57fc |
|
| /// File Name: |
flush.c |
Description:
|
Linux x86 shell code that flushes iptables.
| | Author: | eSDee | | Homepage: | http://www.netric.org/ | | File Size: | 1494 | | Last Modified: | Mar 7 03:49:23 2003 |
| MD5 Checksum: | a52b45284027448529a7cea9fca049b0 |
|
| /// File Name: |
linux-set.txt |
Description:
|
79 byte linux/x86 (Fedora 8) shellcode that performs setuid(0) + setgid(0) + execve("echo 0 > / proc/sys/kernel/randomize_va_space").
| | Author: | LiquidWorm | | Homepage: | http://www.zeroscience.org/ | | File Size: | 1477 | | Last Modified: | Aug 18 19:17:59 2008 |
| MD5 Checksum: | c49be7c5c211fc98e2f50d0ca004b778 |
|
|
|
|
|