I have developed a fast emulator for modern shellcodes, that perform huge loops of millions of instructions emulated for resolving API or for other stuff.
The emulator is in Rust and all the few dependencies as well, so the rust safety is good for emulating malware.
There are shellcodes that can be emulated from the beginning to the end, but when this is not possible the tool has many features that can be used like a console, a memory tracing, register tracing, and so on.
https://github.com/sha0coder/scemu
In less than two seconds we have emulated 7 millions of instructions arriving to the recv.
At this point we have some IOC like the ip:port where it's connecting and other details.
Lets see what happens after the recv() spawning a console at position: 7,012,204
target/release/scemu -f shellcodes/shikata.bin -vv -c 7012204
The "ret" instruction is going to jump to the buffer read with recv() so is a kind of stager.
The option "-e" or "--endpoint" is not ready for now, but it will allow to proxy the calls to get the next stage automatically, but for now we have the details to get the stage.
SCEMU also identify all the Linux syscalls for 32bits shellcodes:
The encoder used in shellgen is also supported https://github.com/MarioVilas/shellgen
Let's check with cobalt-strike:
In verbose mode we could do several greps to see the calls and correlate with ghidra/ida/radare or for example grep the branches to study the emulation flow.
target/release/scemu -f shellcodes/rshell_sgn.bin -vv | grep j
target/release/scemu -f shellcodes/rshell_sgn.bin -vv -c 44000 -l
- Hacker Tools Hardware
- Nsa Hacker Tools
- Hack Tools Github
- Hack Rom Tools
- Nsa Hack Tools
- Pentest Tools List
- Hacker Tools Free
- Hacking Tools Kit
- Hack Tools Mac
- Pentest Tools Website
- Tools Used For Hacking
- Pentest Tools Apk
- Game Hacking
- Pentest Tools For Android
- Growth Hacker Tools
- Hacker Tools Linux
- Hak5 Tools
- Ethical Hacker Tools
- Pentest Tools Review
- Hacking Tools Software
- Pentest Tools Website
- Nsa Hacker Tools
- Best Hacking Tools 2020
- Pentest Tools Tcp Port Scanner
- How To Install Pentest Tools In Ubuntu
- Hacking Tools 2020
- Hacking Tools Windows 10
- Pentest Tools For Windows
- Pentest Tools Framework
- What Is Hacking Tools
- Hacking Tools For Windows 7
- Hack And Tools
- Pentest Tools Nmap
- Hacking Tools For Games
- Nsa Hack Tools Download
- Hacking Tools For Mac
- Hacker Tools For Windows
- Hacking Tools For Windows Free Download
- Hacking Tools Online
- Hack Tools Github
- Hacker Tools For Mac
- Hacker
- Hacking Tools 2020
- Hacker Tools For Pc
- Hacking Tools For Mac
- Hacking App
- Hack Tools For Windows
- Hacker Tools Apk Download
- How To Make Hacking Tools
- Hacking Tools For Windows 7
- Hacker Tools For Windows
- Hack Tool Apk No Root
- Underground Hacker Sites
- Hack Tools Download
- Best Pentesting Tools 2018
- Hacking Tools 2019
- Hack Tools
- Pentest Tools Tcp Port Scanner
- Hack Tools For Pc
- Pentest Tools For Android
- Blackhat Hacker Tools
- Hack Tools
- Hacking Tools Github
- Hacking Tools For Windows Free Download
- Bluetooth Hacking Tools Kali
- Hack Tool Apk
- Hack Tools Pc
- Pentest Tools Subdomain
- How To Make Hacking Tools
- Hacking Tools For Games
- Hacking Tools Hardware
- Tools 4 Hack
- Hacking Tools Kit
- Hack Tools For Ubuntu
- Hacker Techniques Tools And Incident Handling
- Hacking Tools For Windows
- What Is Hacking Tools
- Pentest Tools For Mac
- Hack Tools Github
- Pentest Tools List
- Pentest Reporting Tools
- Hacking Apps
- Pentest Tools Url Fuzzer
- Nsa Hack Tools
- Hacker Tools For Pc
- Hackers Toolbox
- Hack Tools Github
- Black Hat Hacker Tools
- Hacking Apps
- Pentest Tools Online
- Pentest Tools Free
- Hacker Tools Apk
- Hacker Tools Free
- Hack Tool Apk No Root
- Hacking Tools 2020
- Hacking Tools For Windows 7
- Pentest Tools List
- Hacking Tools For Beginners
- Hacker Tools 2020
- Hack Tools For Pc
- Hacking Tools Kit
- Hack Tools For Games
- Free Pentest Tools For Windows
- Pentest Tools Free
- Nsa Hack Tools
- Android Hack Tools Github
- Hacking Tools For Windows 7
- Hacking Tools Online
- Hacker Tools For Ios
- Hacker Security Tools
- Github Hacking Tools
- Hacking Tools 2020
- Pentest Tools Windows
- Hacker Tools Hardware
- Hacker Security Tools
- Pentest Tools Website Vulnerability
- Hack App
- Hack Tools Github
- Pentest Tools Website Vulnerability
- Hacker Tools 2020
- Hacking Tools Usb
- Hack Tools For Ubuntu
- Pentest Tools Find Subdomains
- Tools Used For Hacking
- Hacking Tools Github
- Pentest Tools Online
- Pentest Tools Review
- Blackhat Hacker Tools
- Hack Tool Apk
- Hacker Tools Apk Download
- Pentest Tools Nmap
- Pentest Tools Subdomain
- World No 1 Hacker Software
- Tools 4 Hack
- Hacking Tools And Software
- Best Hacking Tools 2020
- Hacking App
- Tools Used For Hacking
- Hack Tools For Mac
- Free Pentest Tools For Windows
- Tools For Hacker
- Pentest Tools
- Hack Apps
- Hack Tools Download
- Hacker Tools For Ios
- Hack Tools For Games
- Pentest Tools For Mac
- Hack And Tools
- World No 1 Hacker Software
- Hackrf Tools
- Hacks And Tools
- Best Pentesting Tools 2018
- Underground Hacker Sites
- Game Hacking
- Pentest Tools Framework
- Hacking Tools Software
- Hacking Tools Kit
- Hacker Tools For Mac
- Hacking Tools For Windows
- Best Hacking Tools 2019
- Android Hack Tools Github
- Easy Hack Tools
- Hacking Tools For Windows 7
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου