Active Members Fi8sVrs Posted May 29, 2012 Active Members Report Posted May 29, 2012 (edited) This is a usefull tut I found, all credits go to Cuddle:This tutorial will show you how to make your .exe (or .com/.scr) files look like .jpeg/.mp3 or any other filetype! By normally changing the extension to e.g .mp3, will corrupt your file, but with this exploit your file will still be executable!1. I have my server.exe, but I want it to look like a mp3 file, so people would run it. In this case, you should change the .exe to .scr to make it look more legit in the end.Now, rename your server.scr (which is still executable) to "songname uploaded by .SCR" (notice the space).2. Now it's time to use the exploit! Open up the Character Map: Scroll down and find the "U+202E: Right-To-Left Override" character:Click "Select" and then "Copy".3. Now choose to rename your file, and paste the copied character right before the ".SCR" (press ctrl+v to paste)Then type "3pm" (without the " ") and press Enter. Now it should look like this:Done! Obviously you might want to change the icon to look like an mp3 before doing this..A short video can be found here:- [MediaFire]- [MultiUpload]- [ ] (Watch in HD + Fullscreen)Most browsers have patched this, but it can be used on IM's like MSN or Yahoo Messenger. To upload the file to a filehost, you need to make a .rar file with your server inside.Now go ahead and mix around with .exe/.scr/.com and the fake-extensions to find some other legit-looking combinations!If you have any questions, feel free to ask! : blackhat: Also, here's a .pdf explaining the exploit: http://dl.packetstormsecurity.net/papers/general/righttoleften-override.pdfThose who can't find the character in the default CharMap in windows, do this: (not sure if it works but worth a try)1. Download BabelMap and run it.2. Open this picture:- Make sure "Single Font" is ticked and "Arial Unicode MS" is chosen as Font.- Search for OVERRIDE and click on the RTLO character (row 2020, column E)- Click on the Select-button- Click on the Copy buttonAlso, those who have problems with WinXP and non-english OS versions, take a look at this.article from r00tw0rm Edited July 17, 2013 by Fi8sVrs Quote
AndreyNiku Posted May 30, 2012 Report Posted May 30, 2012 Probat pe windows 7 64 bit , merge 100%! Quote
highestdcm Posted May 31, 2012 Report Posted May 31, 2012 Same here. OS 7, x64 si merge!multumim! Quote
D-S Posted May 31, 2012 Report Posted May 31, 2012 si pe un format anume merge si download and execute direct:) tare Quote
highestdcm Posted June 7, 2012 Report Posted June 7, 2012 si pe un format anume merge si download and execute direct:) tarecare anume format? Quote