Search
Search titles only
By:
Search titles only
By:
Log in
Register
Search
Search titles only
By:
Search titles only
By:
Menu
Install the app
Install
Forums
New posts
All threads
Latest threads
New posts
Trending threads
Trending
Search forums
What's new
New posts
New ads
New profile posts
Latest activity
Free Ads
Latest reviews
Search ads
Members
Current visitors
New profile posts
Search profile posts
Contact us
Latest ads
Premium Land with House for Sale
anil1961
Updated:
Yesterday at 10:15 AM
AWS Certified Solutions Architect-Associate + AWS Certified Cloud Practitioner
Sanjeewani95
Updated:
Wednesday at 8:16 PM
🚀 එක පැකේජ් එකයි - මාසෙටම Unlimited Internet! 🌐
sayuru bandara
Updated:
Tuesday at 10:57 AM
🎬 CapCut Pro 1 Month Access! LKR 600
sayuru bandara
Updated:
Tuesday at 10:55 AM
🚀 Google One AI PRO Plan (Gemini Pro Activation) – 18 Months Access! LKR 2200
sayuru bandara
Updated:
Tuesday at 10:53 AM
Electronics
Vehicles
Property
Search
Reply to thread
Forums
General
Education
බේසික්ම බේසික් Calculator එකක් Batch වලින්
Get the App
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="BLACKLIST_MEMBER" data-source="post: 28295962" data-attributes="member: 79414"><p>Step1:</p><p>Enable Microsoft windows sandbox (Windows comes with a built-in sandbox these days, you just have to enable it)</p><p></p><p>Step2:</p><p>Copy the bat file into the sandbox and delete it from the host machine (just in case you accidentally execute the malicious code on your real computer.</p><p></p><p>Step3:</p><ul> <li data-xf-list-type="ul">Try to read the code, enable/disable and some commands and see what happens</li> <li data-xf-list-type="ul">Modify</li> <li data-xf-list-type="ul">Re-execute</li> <li data-xf-list-type="ul">Repeat.</li> </ul><p></p><p>I see you try to obfuscate the code using that for loop variables, be that as it may, we still can see that the interpreter has to reach this [ICODE]Goto:Eof[/ICODE] line in order to run that obfuscated code.</p><p>So, the first thing I'd do is go ahead and add a "pause" before that line. It allows me to see the output before the cmd window disappears.</p><p></p><p>The next place where my attention goes is the "do" line because we know "for loops" have to have a "do", and that's where the next part starts in that code block. And I'd just go ahead and add an "echo" next to that do, and it reveals your secret malicious code as opposed to getting executed.</p><p></p><p>as we can see, here is your malicious code</p><p><img src="https://i.imgur.com/aBEZdSx.jpeg" alt="" class="fr-fic fr-dii fr-draggable " style="" /></p><p>[ICODE]shutdown /s /t 20 /c Thota Meka Therenawada Utto[/ICODE]</p><p>Boom! checkmate </p><p></p><p>I use Arch btw <img src="/styles/default/xenforo/smilies/default/P.gif" class="smilie" loading="lazy" alt=":P" title=":P :P" data-shortname=":P" /></p></blockquote><p></p>
[QUOTE="BLACKLIST_MEMBER, post: 28295962, member: 79414"] Step1: Enable Microsoft windows sandbox (Windows comes with a built-in sandbox these days, you just have to enable it) Step2: Copy the bat file into the sandbox and delete it from the host machine (just in case you accidentally execute the malicious code on your real computer. Step3: [LIST] [*]Try to read the code, enable/disable and some commands and see what happens [*]Modify [*]Re-execute [*]Repeat. [/LIST] I see you try to obfuscate the code using that for loop variables, be that as it may, we still can see that the interpreter has to reach this [ICODE]Goto:Eof[/ICODE] line in order to run that obfuscated code. So, the first thing I'd do is go ahead and add a "pause" before that line. It allows me to see the output before the cmd window disappears. The next place where my attention goes is the "do" line because we know "for loops" have to have a "do", and that's where the next part starts in that code block. And I'd just go ahead and add an "echo" next to that do, and it reveals your secret malicious code as opposed to getting executed. as we can see, here is your malicious code [IMG]https://i.imgur.com/aBEZdSx.jpeg[/IMG] [ICODE]shutdown /s /t 20 /c Thota Meka Therenawada Utto[/ICODE] Boom! checkmate I use Arch btw :P [/QUOTE]
Insert quotes…
Verification
Nawa warak dahaya keeyada? (Namaya wadi kireema dahaya)
Post reply
Top
Bottom