Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Backdoor.Win32.Minilash.10.b Denial Of Service
https://1.bp.blogspot.com/-gLNlUWq63_8/WWlvGRw0eoI/AAAAAAAAILQ/4OYXBaTeiPkRlDYcEes6gWLLrvO9LjoiQCLcBGAs/s1600/h138.png
Backdoor.Win32.Minilash.10.b malware suffers from a denial of service vulnerability.
MD5 |
Download
Discovery / credits: Malvuln - malvuln.com (c) 2021
Original source: https://malvuln.com/advisory/3c407448a00b2d53b2418f53b66d5b6b.txt
Contact: malvuln13@gmail.com
Media: twitter.com/malvuln
Threat: Backdoor.Win32.Minilash.10.b
Vulnerability: Remote Denial of Service (UDP Datagram)
Description: The Minilash malware listens on TCP 6711 and UDP port 60000. Third-party attackers who can reach infected systems can send a specially crafted junk payload to UDP port 60000 that results in access violation and crash.
Type: PE32
MD5: 3c407448a00b2d53b2418f53b66d5b6b
Vuln ID: MVID-2021-0344
Disclosure: 09/20/2021
Memory Dump:
(1518.115c): Access violation - code c0000005 (first/second chance not available)
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp
0:000> .ecxr
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp
0:000> !analyze -v
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************
FAULTING_IP:
KERNELBASE!RaiseException+62
762d08f2 8b4c2454 mov ecx,dword ptr [esp+54h]
EXCEPTION_RECORD: 0019f780 -- (.exr 0x19f780)
ExceptionAddress: 762d08f2 (KERNELBASE!RaiseException+0x00000062)
ExceptionCode: 0eedfade
ExceptionFlags: 00000003
NumberParameters: 7
Parameter[0]: 004104b3
Parameter[1]: 0420c5a4
Parameter[2]: ffffffff
Parameter[3]: 0040d310
Parameter[4]: 041e77e8
Parameter[5]: 0019fd0c
Parameter[6]: 0019fcc0
PROCESS_NAME: Backdoor.Win32.Minilash.10.b.3c407448a00b2d53b2418f53b66d5b6b..exe
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 000a0ffc
WRITE_ADDRESS: 000a0ffc
FOLLOWUP_IP:
KERNELBASE!RaiseException+0
762d0890 8bff mov edi,edi
MOD_LIST: [...]
___________________________
@hacking_Attack
@Hacking_Video
Backdoor.Win32.Minilash.10.b Denial Of Service
https://1.bp.blogspot.com/-gLNlUWq63_8/WWlvGRw0eoI/AAAAAAAAILQ/4OYXBaTeiPkRlDYcEes6gWLLrvO9LjoiQCLcBGAs/s1600/h138.png
Backdoor.Win32.Minilash.10.b malware suffers from a denial of service vulnerability.
MD5 |
5ce0fce6095f07ba5a9c932f87ac7cedDownload
Discovery / credits: Malvuln - malvuln.com (c) 2021
Original source: https://malvuln.com/advisory/3c407448a00b2d53b2418f53b66d5b6b.txt
Contact: malvuln13@gmail.com
Media: twitter.com/malvuln
Threat: Backdoor.Win32.Minilash.10.b
Vulnerability: Remote Denial of Service (UDP Datagram)
Description: The Minilash malware listens on TCP 6711 and UDP port 60000. Third-party attackers who can reach infected systems can send a specially crafted junk payload to UDP port 60000 that results in access violation and crash.
Type: PE32
MD5: 3c407448a00b2d53b2418f53b66d5b6b
Vuln ID: MVID-2021-0344
Disclosure: 09/20/2021
Memory Dump:
(1518.115c): Access violation - code c0000005 (first/second chance not available)
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp
0:000> .ecxr
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp
0:000> !analyze -v
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************
FAULTING_IP:
KERNELBASE!RaiseException+62
762d08f2 8b4c2454 mov ecx,dword ptr [esp+54h]
EXCEPTION_RECORD: 0019f780 -- (.exr 0x19f780)
ExceptionAddress: 762d08f2 (KERNELBASE!RaiseException+0x00000062)
ExceptionCode: 0eedfade
ExceptionFlags: 00000003
NumberParameters: 7
Parameter[0]: 004104b3
Parameter[1]: 0420c5a4
Parameter[2]: ffffffff
Parameter[3]: 0040d310
Parameter[4]: 041e77e8
Parameter[5]: 0019fd0c
Parameter[6]: 0019fcc0
PROCESS_NAME: Backdoor.Win32.Minilash.10.b.3c407448a00b2d53b2418f53b66d5b6b..exe
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
EXCEPTION_PARAMETER1: 00000001
EXCEPTION_PARAMETER2: 000a0ffc
WRITE_ADDRESS: 000a0ffc
FOLLOWUP_IP:
KERNELBASE!RaiseException+0
762d0890 8bff mov edi,edi
MOD_LIST: [...]
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Backdoor.Win32.Minilash.10.b Denial Of Service
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How Cryptocurrency Will Change The World
https://external-preview.redd.it/8wC334yx1YFO6uNX5ZBwfEyzCNlBK-uBWNexL-IX5d8.jpg?width=320&crop=smart&auto=webp&s=16557204a671099d0414768e0f818c172e21a5e2 submitted by /u/Fuck_Ethereum
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How Cryptocurrency Will Change The World
https://external-preview.redd.it/8wC334yx1YFO6uNX5ZBwfEyzCNlBK-uBWNexL-IX5d8.jpg?width=320&crop=smart&auto=webp&s=16557204a671099d0414768e0f818c172e21a5e2 submitted by /u/Fuck_Ethereum
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How Cryptocurrency Will Change The World
Posted in r/hacking by u/Fuck_Ethereum • 0 points and 1 comment
hacking: security in practice
I don t know the email or number or anything how i reset it
Well a while ago my father gave my sister (she s 6) an laptop who transforms into a graphics tablet and i really really want to learn to draw on it.
I can t ask my dad from who or where he has it cuz my parents are divorced.
I know it s not a place to ask for help but i did not have a computer or anything like that since i was 5 now i m 17 and i want to be more productive and my mom can t afford a computer cuz she has 3 childs on her on. And i like drawing and i want to learn how to use an computer cuz i m close to failing at informatics every year
I am very sorry if this is not the place to ask it but i tried to give it to someone who know and he said he can t help me.
And also my bf want to play games with me and he said to buy something doesn t mater if it s an laptop or computer and i m ashamed to say i can t afford one
submitted by /u/Mysterious-Collar651
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
I don t know the email or number or anything how i reset it
Well a while ago my father gave my sister (she s 6) an laptop who transforms into a graphics tablet and i really really want to learn to draw on it.
I can t ask my dad from who or where he has it cuz my parents are divorced.
I know it s not a place to ask for help but i did not have a computer or anything like that since i was 5 now i m 17 and i want to be more productive and my mom can t afford a computer cuz she has 3 childs on her on. And i like drawing and i want to learn how to use an computer cuz i m close to failing at informatics every year
I am very sorry if this is not the place to ask it but i tried to give it to someone who know and he said he can t help me.
And also my bf want to play games with me and he said to buy something doesn t mater if it s an laptop or computer and i m ashamed to say i can t afford one
submitted by /u/Mysterious-Collar651
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
I don t know the email or number or anything how i reset it
Well a while ago my father gave my sister (she s 6) an laptop who transforms into a graphics tablet and i really really want to learn to draw on...
hacking: security in practice
change hardware id
i have a surface laptop 3, and i was wondering if there is any way to change the hardware id by flashing the bios.
submitted by /u/Vexaros_
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
change hardware id
i have a surface laptop 3, and i was wondering if there is any way to change the hardware id by flashing the bios.
submitted by /u/Vexaros_
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
change hardware id
i have a surface laptop 3, and i was wondering if there is any way to change the hardware id by flashing the bios.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Top 5 Best Wireshark Courses on Udemy in 2021
You are looking for Best Wireshark Courses on Udemy to Enhance your Skills.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Top 5 Best Wireshark Courses on Udemy in 2021
You are looking for Best Wireshark Courses on Udemy to Enhance your Skills.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Top 5 Best Wireshark Courses on Udemy in 2021
You are looking for Best Wireshark Courses on Udemy to Enhance your Skills.
Hacking Articles Tips Tricks Videos Tutorials
PyHook_1_Demo-754513.gif
KitPloit - PenTest Tools!PyHook - An Offensive API Hooking Tool Written In Python Designed To Catch Various Credentials Within The API Call
PyHook is the python implementation of my SharpHook project, It uses various API hooks in order to give us the desired credentials.
PyHook Uses frida to inject it's dependencies into the target process
Supported Processes
Process API Call Description Progress mstsc
Link my blog post covering this topic: https://ilankalendarov.github.io/posts/offensive-hooking
Download PyHook
___________________________
@hacking_Attack
@Hacking_Video
PyHook is the python implementation of my SharpHook project, It uses various API hooks in order to give us the desired credentials.
PyHook Uses frida to inject it's dependencies into the target process
Supported Processes
Process API Call Description Progress mstsc
CredUnPackAuthenticationBufferWThis will hook into mstsc and should give you Username and Password DONE runas CreateProcessWithLogonWThis will hook into runas and should give you Username, Password and the domain name DONE cmd RtlInitUnicodeStringExThis should hook into cmd and then would be able to filter keywords like: PsExec,password etc.. DONE MobaXterm CharUpperBuffAThis will hook into MobaXterm and should give you credentials for SSH and RDP logins DONE explorer (UAC Prompt) CredUnPackAuthenticationBufferWThis will hook into explorer and should give you Username, Password and the Domain name from the UAC Prompt DONE Link my blog post covering this topic: https://ilankalendarov.github.io/posts/offensive-hooking
Download PyHook
___________________________
@hacking_Attack
@Hacking_Video
Ilan Kalendarov
Offensive API Hooking
Introduction
How I was able to Hack Adhaar Card Official Website ?
https://parshwa-fabaf.medium.com/how-i-was-able-to-hack-adhaar-card-official-website-d66cb8899dbe?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://parshwa-fabaf.medium.com/how-i-was-able-to-hack-adhaar-card-official-website-d66cb8899dbe?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I was able to Hack Adhaar Card Official Website ?
Hello Amazing people out there ,
Hello Amazing people out there ,Continue reading on Medium » (https://parshwa-fabaf.medium.com/how-i-was-able-to-hack-adhaar-card-official-website-d66cb8899dbe?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
How I was able to Hack Adhaar Card Official Website ?
Hello Amazing people out there ,