I have developed a fast emulator for modern shellcodes, that perform huge loops of millions of instructions emulated for resolving API or for other stuff.
The emulator is in Rust and all the few dependencies as well, so the rust safety is good for emulating malware.
There are shellcodes that can be emulated from the beginning to the end, but when this is not possible the tool has many features that can be used like a console, a memory tracing, register tracing, and so on.
https://github.com/sha0coder/scemu
In less than two seconds we have emulated 7 millions of instructions arriving to the recv.
At this point we have some IOC like the ip:port where it's connecting and other details.
Lets see what happens after the recv() spawning a console at position: 7,012,204
target/release/scemu -f shellcodes/shikata.bin -vv -c 7012204
The "ret" instruction is going to jump to the buffer read with recv() so is a kind of stager.
The option "-e" or "--endpoint" is not ready for now, but it will allow to proxy the calls to get the next stage automatically, but for now we have the details to get the stage.
SCEMU also identify all the Linux syscalls for 32bits shellcodes:
The encoder used in shellgen is also supported https://github.com/MarioVilas/shellgen
Let's check with cobalt-strike:
In verbose mode we could do several greps to see the calls and correlate with ghidra/ida/radare or for example grep the branches to study the emulation flow.
target/release/scemu -f shellcodes/rshell_sgn.bin -vv | grep j
target/release/scemu -f shellcodes/rshell_sgn.bin -vv -c 44000 -l
- Termux Hacking Tools 2019
- Free Pentest Tools For Windows
- Pentest Tools Review
- Hacker Tool Kit
- Pentest Tools Online
- Nsa Hacker Tools
- Underground Hacker Sites
- Hacking Tools Windows
- Hak5 Tools
- Kik Hack Tools
- Hacker Tools Github
- Hack Tools Download
- Hack And Tools
- Hack Tools For Games
- Install Pentest Tools Ubuntu
- World No 1 Hacker Software
- Hacker Tools 2020
- Pentest Tools Kali Linux
- Hacker
- Pentest Recon Tools
- Pentest Tools For Windows
- Hack And Tools
- Hack And Tools
- Hacker Tools Online
- Github Hacking Tools
- Hacker Hardware Tools
- Pentest Tools For Mac
- Hack App
- Underground Hacker Sites
- Hacks And Tools
- Hacking Tools For Windows Free Download
- Hacker Tools Free
- Pentest Tools Apk
- Hacking Tools Windows
- Pentest Tools For Mac
- Hacker Tools List
- Hacker Tools Windows
- Hacker Tools Apk Download
- Hacker Tools
- Hacking App
- Hack Tools Download
- Hacking Tools Github
- Pentest Tools List
- Hacker Tools Free
- Wifi Hacker Tools For Windows
- Hack App
- Hacker Search Tools
- Black Hat Hacker Tools
- Usb Pentest Tools
- Hacker Tools For Mac
- Hack Tools For Pc
- Ethical Hacker Tools
- Hack Tool Apk No Root
- Pentest Tools Port Scanner
- Pentest Tools Open Source
- Beginner Hacker Tools
- Pentest Tools Online
- Hacking Tools Pc
- Hacking Tools For Mac
- Hacking Tools
- Hack Tools Github
- Hacker Tools Windows
- Pentest Tools Review
- Pentest Tools Alternative
- Hack Tool Apk
- Nsa Hack Tools
- Hacking Tools For Pc
- Android Hack Tools Github
- Pentest Tools Find Subdomains
- Growth Hacker Tools
- Hacking Tools For Kali Linux
- Pentest Tools Website Vulnerability
- Hack Tools For Pc
- Nsa Hack Tools
- Hacking Tools Pc
- Hacker Tools Apk Download
- Hack Tools For Pc
- How To Install Pentest Tools In Ubuntu
- Pentest Tools Tcp Port Scanner
- New Hacker Tools
- Hacker Tools Free
- Hacker Tools For Ios
- Best Hacking Tools 2020
- Hacking Tools Online
- Android Hack Tools Github
- Pentest Tools Linux
- Hacking Tools Mac
- Underground Hacker Sites
- Hacking Tools
- Computer Hacker
- World No 1 Hacker Software
- Hacker Tools List
- Hacking Tools Mac
- World No 1 Hacker Software
- Pentest Tools Online
- Hacker Tools Software
- Pentest Tools Kali Linux
- Hack Tools Online
- Hack Apps
- Pentest Tools Url Fuzzer
- Hacker
- Hacker Tool Kit
- Nsa Hacker Tools
- Pentest Tools
- Hack Tools Download
- Pentest Tools Tcp Port Scanner
- Black Hat Hacker Tools
- Hacker Tools Mac
- Hacking Tools 2019
- New Hacker Tools
- New Hack Tools
- How To Install Pentest Tools In Ubuntu
- Pentest Tools Port Scanner
- Hacking Tools Free Download
- Pentest Box Tools Download
- Hack Tools 2019
- Hacker Tools Windows
- Hack Tools
- How To Hack
- Pentest Tools Open Source
- Github Hacking Tools
- Hack Tools Download
- Hacking Tools Windows 10
- Pentest Tools List
- Hack Tools Github
- Hacker Tools For Ios
- Pentest Box Tools Download
- Pentest Tools Tcp Port Scanner
- Best Pentesting Tools 2018
- Hack Tool Apk No Root
- Hack Tools For Pc
- Hacking Tools For Kali Linux
- Hacking Tools 2020
- Hacker Tools Github
- Hacker Tools List
- Hacker Tools
- Hacker Tools Software
- Hacks And Tools
- Hacker Tools Hardware
- Android Hack Tools Github
- Hack Tools For Windows
- Hack Tools 2019
- Pentest Tools Website Vulnerability
- Pentest Automation Tools
- Hacking Tools For Windows Free Download
- Hacking Tools Kit
- Pentest Tools For Ubuntu
- Hackers Toolbox
No comments:
Post a Comment