win_x86 下的一些跳转指令

#include <windows.h>
#include <stdio.h>
#include <tchar.h>
int main()
{

    /*UCHAR ShellCode[] ={0xB8,0xAD,0x23,0x86,0x7C,0x6A,0x01,0x90,0x68,0x56,
        0x23,0x00,0x00,0xFF,0xD0,0xEB,0x0A,0x90,0x90,0x90,0x90,0x90,0x90,0x90,0x90,0x90,0x90,0x90,0xC2,0x00,0x00};*/

    /*
    UCHAR ShellCode[] = {0x8b,0xff,0x55,0x8b,0xec,0x5d,0xeb,0x05};
    0099FC5C 8B FF                mov         edi,edi  
    0099FC5E 55                   push        ebp  
    0099FC5F 8B EC                mov         ebp,esp  
    0099FC61 5D                   pop         ebp  
    0099FC62 EB 05                jmp         0099FC69  
    */
    /*
    UCHAR ShellCode[] = {0xCC,0xCC,0xCC,0xCC,0xCC,0xeb,0x02,0x05};
             CC                   int         3  
    006FF7DD CC                   int         3  
    006FF7DE CC                   int         3  
    006FF7DF CC                   int         3  
    006FF7E0 CC                   int         3  
    006FF7E1 EB 02                jmp         006FF7E5  
    */

    /*
    UCHAR ShellCode[] = {0x8b,0xff,0x68,0,0x68,0,0x68,0};
    008FFD20 8B FF                mov         edi,edi  
    008FFD22 68 00 68 00 68       push        68006800h  
    */

    /*
        UCHAR ShellCode[] = {0xe9,0x12,0x34,0x56,0x78};
    00FFF8F0 E9 12 34 56 78       jmp         79562D07  = 00FFF8F0 + 5 + 0x 78 56 34 12
    */

    /*
    UCHAR ShellCode[] = {0xe8,0x12,0x34,0x56,0x78};
    0115FD6C E8 12 34 56 78       call        796C3183 =  0115FD6C + 5 + 0x 78 56 34 12
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x80,0x12,0x34,0x56,0x78};
    004FFBD8 0F 80 12 34 56 78    jo          78A62FF0 = 004FFBD8 + 6 + 0x 78 56 34 12
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x81,0x12,0x34,0x56,0x78};
    00EFFDF0 0F 81 12 34 56 78    jno         79463208  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x82,0x12,0x34,0x56,0x78};
    008FFA60 0F 82 12 34 56 78    jb          78E62E78  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x83,0x12,0x34,0x56,0x78};
    0095F79C 0F 83 12 34 56 78    jae         78EC2BB4   
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x84,0x12,0x34,0x56,0x78};
    00CFFD2C 0F 84 12 34 56 78    je          79263144   
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x85,0x12,0x34,0x56,0x78};
    00AFF924 0F 85 12 34 56 78    jne         79062D3C  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x86,0x12,0x34,0x56,0x78};
    00AFFB90 0F 86 12 34 56 78    jbe         79062FA8 
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x87,0x12,0x34,0x56,0x78};
    0055FBD4 0F 87 12 34 56 78    ja          78AC2FEC  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x88,0x12,0x34,0x56,0x78};
    005CF810 0F 88 12 34 56 78    js          78B32C28  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x89,0x12,0x34,0x56,0x78};
    009BFCB0 0F 89 12 34 56 78    jns         78F230C8  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8a,0x12,0x34,0x56,0x78};
    00B7F790 0F 8A 12 34 56 78    jp          790E2BA8  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8b,0x12,0x34,0x56,0x78};
    006FFB88 0F 8B 12 34 56 78    jnp         78C62FA0  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8c,0x12,0x34,0x56,0x78};
    004FFED4 0F 8C 12 34 56 78    jl          78A632EC  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8d,0x12,0x34,0x56,0x78};
    00F3FA60 0F 8D 12 34 56 78    jge         794A2E78  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8e,0x12,0x34,0x56,0x78};
    004FF8AC 0F 8E 12 34 56 78    jle         78A62CC4  
    */

    /*
    UCHAR ShellCode[] = {0x0f,0x8f,0x12,0x34,0x56,0x78};
    00B5F8F4 0F 8F 12 34 56 78    jg          790C2D0C  
    */


    /*
    UCHAR ShellCode[] = {0x0f,0x90,0x12,0x34,0x56,0x78};
    00BAF860 0F 90 12             seto        byte ptr [edx]  
    00BAF863 34 56                xor         al,56h  
    00BAF865 78 CC                js          00BAF833  
    */


    /*
    UCHAR ShellCode[] = {0xeb,0x12,0x34,0x56,0x78};
    006FF944 EB 12                jmp         006FF958 = 006FF944 + (byte)ox12 + 2
    */

    /*
    UCHAR ShellCode[] = {0xeb,0x12,0x34,0x56,0x78};
    0076FDFC EB FF                jmp         0076FDFD = 0076FDFC + (byte)0xff(-1) + 2
    */

    /*
    UCHAR ShellCode[] = {0x70,0x12,0x34,0x56,0x78};
    010FF730 70 12                jo          010FF744  地址计算同上
    */


    /*
    UCHAR ShellCode[] = {0x71,0x12,0x34,0x56,0x78};
    001AF860 71 12                jno         001AF874  
    */


    /*
    UCHAR ShellCode[] = {0x72,0x12,0x34,0x56,0x78};
    006FFDB8 72 12                jb          006FFDCC  
    */

    /*
    UCHAR ShellCode[] = {0x73,0x12,0x34,0x56,0x78};
    010FF998 73 12                jae         010FF9AC  
    */

    /*
    UCHAR ShellCode[] = {0x74,0x12,0x34,0x56,0x78};
    005AFA58 74 12                je          005AFA6C  
    */

    /*
    UCHAR ShellCode[] = {0x75,0x12,0x34,0x56,0x78};
    006FF758 75 12                jne         006FF76C  
    */


    /*
    UCHAR ShellCode[] = {0x76,0x12,0x34,0x56,0x78};
    004FF8B0 76 12                jbe         004FF8C4  
    */

    /*
    UCHAR ShellCode[] = {0x77,0x12,0x34,0x56,0x78};
    0135F840 77 12                ja          0135F854  
    */

    /*
    UCHAR ShellCode[] = {0x78,0x12,0x34,0x56,0x78};
    0093FE18 78 12                js          0093FE2C  
    */

    /*
    UCHAR ShellCode[] = {0x79,0x12,0x34,0x56,0x78};
    0082FCC8 79 12                jns         0082FCDC  
    */

    /*
    UCHAR ShellCode[] = {0x7a,0x12,0x34,0x56,0x78};
    003FFAF4 7A 12                jp          003FFB08  
    */

    /*
    UCHAR ShellCode[] = {0x7b,0x12,0x34,0x56,0x78};
    006FFBCC 7B 12                jnp         006FFBE0  
    */

    /*
    UCHAR ShellCode[] = {0x7c,0x12,0x34,0x56,0x78};
    012FFC40 7C 12                jl          012FFC54  
    */

    /*
    UCHAR ShellCode[] = {0x7d,0x12,0x34,0x56,0x78};
    00B8FDFC 7D 12                jge         00B8FE10  
    */

    /*
    UCHAR ShellCode[] = {0x7e,0x12,0x34,0x56,0x78};
    00CFFCC8 7E 12                jle         00CFFCDC  
    */

    /*
    UCHAR ShellCode[] = {0x7f,0x12,0x34,0x56,0x78};
    00EFFD20 7F 12                jg          00EFFD34 
    */

    /*
    UCHAR ShellCode[] = {0xb8,0x12,0x34,0x56,0x78};
    00EFFE8C B8 12 34 56 78       mov         eax,78563412h  
    */

    /*
    UCHAR ShellCode[] = {0xff,0x25,0x10,0x20,0x80,0x00};
    00EFF8D0 FF 25 10 20 80 00    jmp         dword ptr ds:[802010h]  
    */


    /*
    UCHAR ShellCode[] = {0x90,0x90,0xe9,0x12,0x34,0x56,0x78};
    012FF7A4 90                   nop  
    012FF7A5 90                   nop  
    012FF7A6 E9 12 34 56 78       jmp         79862BBD  
    */

    /*
    UCHAR ShellCode[] = {0xc3,0x12,0x34,0x56,0x78};
    00EFFD9C C3                   ret  
    */  
    UCHAR ShellCode[] = {0xc2,0x12,0x34,0x56,0x78};
    /*
    UCHAR ShellCode[] = {0xc2,0x12,0x34,0x56,0x78};
    004FF86C C2 12 34             ret         3412h  
    */
    DWORD   dwOld;
    VirtualProtect(ShellCode,sizeof(ShellCode),PAGE_EXECUTE_READWRITE,&dwOld);
    typedef VOID (* pfn) ();
    pfn func = (pfn)&ShellCode[0];
/*  memset((unsigned char*)ShellCode + 0x11,0,0x0A);
    memcpy ((unsigned char*)ShellCode + 0x11,
        "C:\\1.exe",strlen("C:\\1.exe")); 

    ULONG* data_addr = (ULONG*)((char*)ShellCode+0x9); 
    *data_addr = (ULONG)(((char*)ShellCode)+0x11);
    */
    func();
    VirtualProtect(ShellCode,sizeof(ShellCode),dwOld,&dwOld);
    return 0;
}
  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
MPx_WIN_x86_64是指适用于Windows操作系统的MPx软件的版本。"x86_64"表示软件适用于64位的x86架构处理器。 要使用MPx_WIN_x86_64版本,您可以按照以下步骤进行操作: 1. 下载:在您选择的下载站点或官方网站上找到MPx软件的WIN_x86_64版本下载链接。单击链接下载软件安装程序。 2. 安装:运行安装程序,按照提示完成软件的安装过程。通常,您需要选择安装位置、同意许可协议并完成其他设置选项。 3. 启动软件:安装完成后,在桌面或开始菜单中找到MPx软件的图标。双击图标以启动软件。 4. 添加媒体文件:通过单击菜单中的“文件”选项或使用快捷键(通常是Ctrl + O)打开媒体文件浏览窗口。然后选择要播放的音频或视频文件,并点击“打开”按钮。 5. 播放媒体文件:一旦您添加了媒体文件,MPx软件会自动开始播放。您可以使用软件界面上的播放控制按钮(如播放、暂停、停止、快进、快退等)来控制媒体的播放。 6. 调整设置:MPx软件提供了一些设置选项,以满足个人偏好和需求。您可以通过菜单中的“设置”选项或使用快捷键(通常是Ctrl + P)来访问设置菜单。在设置菜单中,您可以调整音量、视频显示选项、字幕设置等。 请注意,以上步骤仅适用于MPx软件的一般用法。具体的界面和操作可能会因软件版本而有所不同,您可以参考软件的帮助文档或官方网站获取更详细的信息和指导。
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值