I have developed a fast emulator for modern shellcodes, that perform huge loops of millions of instructions emulated for resolving API or for other stuff.
The emulator is in Rust and all the few dependencies as well, so the rust safety is good for emulating malware.
There are shellcodes that can be emulated from the beginning to the end, but when this is not possible the tool has many features that can be used like a console, a memory tracing, register tracing, and so on.
https://github.com/sha0coder/scemu
In less than two seconds we have emulated 7 millions of instructions arriving to the recv.
At this point we have some IOC like the ip:port where it's connecting and other details.
Lets see what happens after the recv() spawning a console at position: 7,012,204
target/release/scemu -f shellcodes/shikata.bin -vv -c 7012204
The "ret" instruction is going to jump to the buffer read with recv() so is a kind of stager.
The option "-e" or "--endpoint" is not ready for now, but it will allow to proxy the calls to get the next stage automatically, but for now we have the details to get the stage.
SCEMU also identify all the Linux syscalls for 32bits shellcodes:
The encoder used in shellgen is also supported https://github.com/MarioVilas/shellgen
Let's check with cobalt-strike:
In verbose mode we could do several greps to see the calls and correlate with ghidra/ida/radare or for example grep the branches to study the emulation flow.
target/release/scemu -f shellcodes/rshell_sgn.bin -vv | grep j
target/release/scemu -f shellcodes/rshell_sgn.bin -vv -c 44000 -l
Related articles
- Hack Website Online Tool
- Pentest Tools Linux
- Pentest Tools Free
- Pentest Tools Framework
- Android Hack Tools Github
- Hacker Tool Kit
- Hacker Tools 2020
- Hacking Tools For Windows Free Download
- Pentest Tools Linux
- Hack App
- Hacker Tools Github
- Pentest Tools Nmap
- Hack App
- Pentest Tools Bluekeep
- Hacking App
- Hacking App
- Pentest Tools For Windows
- Tools 4 Hack
- Beginner Hacker Tools
- Hack Rom Tools
- Pentest Tools Open Source
- Pentest Tools Alternative
- Hacking Tools 2019
- Pentest Tools Framework
- Hacker Tools Software
- Hacking Tools Windows 10
- Hack Rom Tools
- Hacking Tools 2020
- Hacker Tools 2020
- Pentest Tools Free
- Hackers Toolbox
- Black Hat Hacker Tools
- Computer Hacker
- Hacker Tools Linux
- Pentest Tools For Android
- Pentest Tools Website Vulnerability
- Pentest Tools Tcp Port Scanner
- Hack Website Online Tool
- Hacker Tools 2019
- Underground Hacker Sites
- Hack Tools Download
- Hacker Tools Github
- Hacking Tools For Kali Linux
- Hacking Tools Software
- Tools For Hacker
- New Hack Tools
- Hacking App
- Hack Tool Apk
- Hacking Tools 2019
- Hacking Tools For Windows Free Download
- Pentest Tools For Ubuntu
- Pentest Tools Port Scanner
- Hacking Tools Name
- Hacker Tools Github
- Hacker Tools For Ios
- Hack Tools
- Hacking Tools Download
- Hack Tool Apk No Root
- Hak5 Tools
- Usb Pentest Tools
- Hacker Tools Linux
- Hacking Tools 2020
- Hacker Tools Hardware
- Hacking Tools For Windows 7
- Pentest Tools Website
- Hacker Tools Free
- How To Make Hacking Tools
- Black Hat Hacker Tools
- Hack Tools For Pc
- Hack Tools Download
- Pentest Tools Linux
- Nsa Hacker Tools
- Pentest Tools
- Hacker Tools Free
- Pentest Tools Review
- Hacker Tools Online
- Pentest Tools
- Github Hacking Tools
- Pentest Tools Linux
- Hack Tools
- Hacker Tools Mac
- Hack Apps
- How To Make Hacking Tools
- How To Make Hacking Tools
- Hacking Tools 2019
- Hack Tool Apk
- Wifi Hacker Tools For Windows
- Hacking Tools Pc
- How To Hack
- Hack Tools Online
- New Hack Tools
- Hacker Tools
- Pentest Tools Open Source
- World No 1 Hacker Software
- Pentest Tools Url Fuzzer
- Pentest Tools For Mac
- Hacking Tools Hardware
- Pentest Tools Nmap
- Hacking Tools Mac
- Pentest Tools Port Scanner
- Nsa Hack Tools Download
- Pentest Tools Review
- New Hack Tools
- Hack Tools 2019
- Hacking Tools Hardware
- Pentest Tools Android
- Hacker Hardware Tools
- Pentest Tools Windows
- Hacking Tools For Pc
- Pentest Automation Tools
- Hacker
- Tools 4 Hack
- Hack Tool Apk No Root
- Pentest Tools Android
- Hacker Tools Hardware
- Hacker Tools List
- Hacking Tools Windows 10
- Pentest Tools Android
- Hack Tool Apk
- Pentest Tools Apk
- Hacking Tools For Windows 7
- Hacker Tools Apk Download
- Hacker Tool Kit
- Pentest Tools Apk
- Hacking Tools For Beginners
- Hacker Tools Mac
- Termux Hacking Tools 2019
- Hack Tools
- Hacking Tools For Pc
- Hacking Tools Github
- Hacking Tools Usb
- Hack Tools Pc
- Hack Rom Tools
- Pentest Tools Kali Linux
- Tools 4 Hack
- Hacker Tools For Mac
- Free Pentest Tools For Windows
- Hack Tool Apk
- Termux Hacking Tools 2019
- Pentest Tools Framework
- Best Pentesting Tools 2018
- Hack Tools Mac
- Pentest Tools For Mac
- Usb Pentest Tools
- Pentest Tools Review
- Hacker Tools 2019
- Hacker Tools For Mac
- How To Install Pentest Tools In Ubuntu
- Hack App
- New Hacker Tools
- Pentest Tools Port Scanner
- Growth Hacker Tools
- Nsa Hack Tools
- Hacks And Tools
- Hacker Search Tools
- Hacking Tools Software
No comments:
Post a Comment