- 博客(4)
- 资源 (10)
- 收藏
- 关注
原创 PEB结构
PEB进程环境快,下面是其一些结构//===============================================================================================//typedef struct _UNICODE_STR{ USHORT Length; USHORT MaximumLength; PWSTR pB
2015-01-25 23:43:14 6157
原创 _ReturnAddress 使用
msdn:The _ReturnAddress intrinsic provides the address of the instruction in the calling function that will be executed after control returns to the caller._ReturnAddress 返回当前调用函数返回的地址,即函数吓一跳指
2015-01-24 22:12:21 7470
转载 Evade antivirus convert shellcode to c
Evade antivirus convert shellcode to cPosted: February 4, 2013 in general, securityTags: antivirus, bypass, evade, meterpreter stager, shellcode12So another way to have a meterpreter
2015-01-20 23:46:55 1273
原创 windbg kp kb 命令测试
为了熟悉windbg kb,kp命令,写一段简单的程序调试观察,程序如下:#include #include void printstr(char *str, int b){ printf("xxx b is :%d\n",b);}int kbtest(int a){ char str[] = "xxxxxxxxxx"; printstr(str, a); return
2015-01-10 01:22:38 6687 1
空空如也
TA创建的收藏夹 TA关注的收藏夹
TA关注的人