⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 serv-u "mdtm"命令远程溢出分析.mht

📁 精华BBS贴子
💻 MHT
📖 第 1 页 / 共 5 页
字号:
                        =
=B6=D4=CA=B1=BC=E4=C7=F8=D3=F2=BD=F8=D0=D0=B4=A6=C0=ED=BC=EC=B2=E2<BR><BR=
>.text:0041FBB6 loc_41FBB6:&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;; CODE XREF:=20
                        sub_41FAE8+9B=18j<BR>.text:0041FBB6&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        20h<BR>.text:0041FBB8&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;lea&nbsp;=20
                        &nbsp;&nbsp;&nbsp;edx, [ebp+var_9FC]&nbsp;=20
                        =
&nbsp;//ebp-9fc=D6=D0=B4=E6=B7=C5=C8=AB=B2=BF=C3=FC=C1=EE<BR>.text:0041FB=
BE&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        edx<BR>.text:0041FBBF&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;call&nbsp;=20
                        &nbsp; sub_59BEB1&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        =
&nbsp;&nbsp;&nbsp;//=D5=D2=C3=FC=C1=EE=D6=D0=B5=C4=BF=D5=B8=F1=D5=D2=B5=BD=
=BA=F3=B0=D1=BF=D5=B8=F1=BA=F3<BR>&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;=20
                        =
&nbsp;&nbsp;&nbsp;//=B5=C4=B5=D8=D6=B7=B7=C5=D4=DAebp-78=D6=D0=A3=AC=D2=B2=
=BE=CD=CA=C7=D5=D2=CE=C4=BC=FE=C3=FB<BR>.text:0041FBC4&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;add&nbsp; =
&nbsp;&nbsp;&nbsp;esp,=20
                        8<BR>.text:0041FBC7&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;mov&nbsp;=20
                        &nbsp;&nbsp;&nbsp;[ebp+var_78],=20
                        eax<BR>.text:0041FBCA&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;test&nbsp;=20
                        &nbsp; eax, eax<BR>.text:0041FBCC&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;jz&nbsp; &nbsp;&nbsp;=20
                        &nbsp;loc_41FE6D&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =

                        =
&nbsp;&nbsp;&nbsp;//=C3=BB=D3=D0=D5=D2=B5=BD=CE=C4=BC=FE=C3=FB=CC=F8=A3=AC=
=CC=F8=B9=FD=C8=A5=BD=AB=B4=A6=C0=ED<BR>&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp;&nbsp;//mdtm=20
                        =
autoexec.bat=D5=E2=C0=E0=BF=B4=CE=C4=BC=FE=CA=B1=BC=E4=B5=C4=C3=FC=C1=EE<=
BR>.text:0041FBD2&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;lea&nbsp; =
&nbsp;&nbsp;&nbsp;edx,=20
                        [ebp+var_9FC]<BR>.text:0041FBD8&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        edx<BR>.text:0041FBD9&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;call&nbsp;=20
                        &nbsp; sub_59BDA4&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        =
&nbsp;&nbsp;&nbsp;//=B5=C3=B5=BD=C3=FC=C1=EE=B3=A4=B6=C8<BR>.text:0041FBD=
E&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;pop&nbsp;=20
                        &nbsp;&nbsp;&nbsp;ecx<BR>.text:0041FBDF&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;cmp&nbsp; =
&nbsp;&nbsp;&nbsp;eax,=20
                        10h&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;=20
                        =
//=C3=FC=C1=EE=B3=A4=B6=C8=D0=A1=D3=DA16=CC=F8<BR>.text:0041FBE2&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;jb&nbsp; &nbsp;&nbsp;=20
                        &nbsp;loc_41FE6D<BR>.text:0041FBE8&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;lea&nbsp; =
&nbsp;&nbsp;&nbsp;ecx,=20
                        [ebp+var_9FC]<BR>.text:0041FBEE&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;mov&nbsp; =
&nbsp;&nbsp;&nbsp;eax,=20
                        [ebp+var_78]<BR>.text:0041FBF1&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;sub&nbsp; =
&nbsp;&nbsp;&nbsp;eax,=20
                        ecx&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;=20
                        =
//=B5=C3=CA=B1=BC=E4=C7=F8=D3=F2=B3=A4=B6=C8=B2=BB=D2=AA=BD=F4=D5=C5=D5=E2=
=B6=F9=C3=BB=B6=B4=B6=B4<BR>.text:0041FBF3&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;cmp&nbsp; =
&nbsp;&nbsp;&nbsp;eax,=20
                        0Eh<BR>.text:0041FBF6&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;jl&nbsp;=20
                        &nbsp;&nbsp; &nbsp;loc_41FE6D&nbsp; &nbsp;&nbsp; =

                        &nbsp;&nbsp;=20
                        =
&nbsp;&nbsp;&nbsp;//=B1=D8=D0=EB=CA=C7=B4=F3=D3=DA=B5=C8=D3=DA14=D7=D6=BD=
=DA<BR>.text:0041FBFC&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;mov&nbsp;=20
                        &nbsp;&nbsp;&nbsp;[ebp+var_88],=20
                        1<BR>.text:0041FC06&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;xor&nbsp;=20
                        &nbsp;&nbsp;&nbsp;edi, =
edi<BR>.text:0041FC08&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;lea&nbsp; =
&nbsp;&nbsp;&nbsp;esi,=20
                        [ebp+var_9FC]<BR>.text:0041FC0E =
<BR>.text:0041FC0E=20
                        loc_41FC0E:&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp;&nbsp;; CODE XREF:=20
                        sub_41FAE8+141=19j<BR>.text:0041FC0E&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;movsx&nbsp; &nbsp;eax, byte =
ptr=20
                        [esi]<BR>.text:0041FC11&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;push&nbsp;=20
                        &nbsp; eax<BR>.text:0041FC12&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;call&nbsp; &nbsp;=20
                        sub_5A1304<BR>.text:0041FC17&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;pop&nbsp;=20
                        &nbsp;&nbsp;&nbsp;ecx<BR>.text:0041FC18&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;test&nbsp; &nbsp; eax,=20
                        eax<BR>.text:0041FC1A&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;jnz&nbsp;=20
                        &nbsp;&nbsp;&nbsp;short=20
                        loc_41FC24<BR>.text:0041FC1C&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;xor&nbsp; =
&nbsp;&nbsp;&nbsp;edx,=20
                        edx<BR>.text:0041FC1E&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;mov&nbsp;=20
                        &nbsp;&nbsp;&nbsp;[ebp+var_88], =
edx<BR>.text:0041FC24=20
                        <BR>.text:0041FC24 loc_41FC24:&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;; CODE XREF:=20
                        sub_41FAE8+132=18j<BR>.text:0041FC24&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;inc&nbsp;=20
                        &nbsp;&nbsp;&nbsp;edi<BR>.text:0041FC25&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;inc&nbsp;=20
                        &nbsp;&nbsp;&nbsp;esi<BR>.text:0041FC26&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;cmp&nbsp; =
&nbsp;&nbsp;&nbsp;edi,=20
                        0Eh<BR>.text:0041FC29&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;jl&nbsp;=20
                        &nbsp;&nbsp; &nbsp;short=20
                        loc_41FC0E<BR>.text:0041FC2B&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;cmp&nbsp;=20
                        &nbsp;&nbsp;&nbsp;[ebp+var_88],=20
                        0<BR>.text:0041FC32&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;jz&nbsp;=20
                        &nbsp;&nbsp; &nbsp;loc_41FD99&nbsp; &nbsp;&nbsp; =

                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;=20
                        =
//=C5=D0=B6=CF=CA=B1=BC=E4=C7=F8=D3=F2=B5=C4=C7=B014=B8=F6=D7=D6=C4=B8<BR=
>&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;=20
                        =
&nbsp;&nbsp;&nbsp;//=C8=E7=B9=FB=B2=BB=CA=C7=CA=FD=D7=D6=CC=F8=B5=BD41fd9=
9<BR><BR><BR>//-----------------------<BR>.text:0041FC38&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        4<BR>.text:0041FC3A&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;lea&nbsp;=20
                        &nbsp;&nbsp;&nbsp;ecx,=20
                        [ebp+var_9FC]<BR>.text:0041FC40&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        ecx<BR>.text:0041FC41&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;lea&nbsp;=20
                        &nbsp;&nbsp;&nbsp;eax,=20
                        [ebp+var_84]<BR>.text:0041FC47&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;push&nbsp; &nbsp;=20
                        eax<BR>.text:0041FC48&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;call&nbsp;=20
                        &nbsp; sub_59BFB8<BR>.text:0041FC4D&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;add&nbsp; =
&nbsp;&nbsp;&nbsp;esp,=20
                        0Ch<BR>.text:0041FC50&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;lea&nbsp;=20
                        &nbsp;&nbsp;&nbsp;edx,=20
                        [ebp+var_84]<BR>.text:0041FC56&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;mov&nbsp;=20
                        &nbsp;&nbsp;&nbsp;[ebp+var_80],=20
                        0<BR>.text:0041FC5A&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;push&nbsp;=20
                        &nbsp; edx<BR>.text:0041FC5B&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp; &nbsp;&nbsp; &nbsp;&nbsp;=20
                        &nbsp;&nbsp;&nbsp;call&nbsp; &nbsp;=20
                        sub_5A4008<BR>.text:0041FC60&nbsp; &nbsp;&nbsp;=20
                        &

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -