07 August, 2011

FILE EXTENSION EXPLOIT! Make .exe look like a jpeg, mp3 or whatever you like

This tutorial will show you how to make your .exe (or .com/.scr) files look like .jpeg/.mp3 or any other filetype! By normally changing the extension to e.g .mp3, will corrupt your file, but with this exploit your file will still be executable!

__

1. I have my server.exe, but I want it to look like a mp3 file, so people would run it. In this case, you should change the .exe to .scr to make it look more legit in the end.

Now, rename your server.scr (which is still executable) to "songname uploaded by .SCR" (notice the space).


2. Now it's time to use the exploit! Open up the Character Map:
Scroll down and find the "U+202E: Right-To-Left Override" character:

Click "Select" and then "Copy".


3. Now choose to rename your file, and paste the copied character right before the ".SCR" (press ctrl+v to paste)

Then type "3pm" (without the " ") and press Enter. Now it should look like this:

[Image: 39c227c69b6910e0ca6aacffc30cc78d.png]


Done! Obviously you might want to change the icon to look like an mp3 before doing this..


A short video can be found here:
- [Youtube]
(Watch in HD + Fullscreen)

__

Most browsers have patched this, but it can be used on IM's like MSN or Yahoo Messenger. To upload the file to a filehost, you need to make a .rar file with your server inside.


Now go ahead and mix around with .exe/.scr/.com and the fake-extensions to find some other legit-looking combinations!

If you have any questions, feel free to ask! Black Hat

Also, here's a .pdf explaining the exploit: http://dl.packetstormsecurity.net/papers...erride.pdf

And PLEASE say 'Thanks!' if you find this tutorial useful!

__

Those who can't find the character in the default CharMap in windows, do this: (not sure if it works but worth a try)

1. Download BabelMap and run it.

2. Open this picture:

- Make sure "Single Font" is ticked and "Arial Unicode MS" is chosen as Font.
- Search for OVERRIDE and click on the RTLO character (row 2020, column E)
- Click on the Select-button
- Click on the Copy button


Also, those who have problems with WinXP and non-english OS versions, take a look at this.

Labels:

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home