Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
SharpZipRunner — 从加密ZIP执行位置无关的shellcode | Kitploit
工具/GitHubGitHub/jfmaes/sharpziprunner
Payload生成漏洞利用Shellcode后渗透利用渗透测试Payload 开发
GitHubjfmaes/sharpziprunner

SharpZipRunner

从加密ZIP执行位置无关的shellcode

查看仓库
30335115年前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

SharpZipRunner

从加密的zip中执行位置无关的shellcode 通过donut、metasploit或cobaltstrike的RAW格式获取你的汇编PIC代码。

将.bin文件压缩并加密,该程序集在内存中解密zip条目并使用D/Invokes注入API执行。

能够注入到正在运行的进程中,或先创建一个新进程再注入到新创建的进程中。 理论上自我注入可行,但会导致崩溃。因为自我注入并非我的主要目标,所以没有真正尝试修复该问题。

通过将加密的zip放在磁盘上进行测试,但可能经过一些修改后也能完全在内存中工作。 仅支持PIC载荷,曾尝试创建runPE变体但失败得很惨 :)

 ___  _                   ____ _       ___
/ __>| |_  ___  _ _  ___ |_  /<_> ___ | . \ _ _ ._ _ ._ _  ___  _ _
\__ \| . |<_> || '_>| . \ / / | || . \|   /| | || ' || ' |/ ._>| '_>
<___/|_|_|<___||_|  |  _//___||_||  _/|_\_\`___||_|_||_|_|\___.|_|
                    |_|          |_|


An Encrypted zip on your computer? what could possibly go wrong?

 Usage:
  -z, --zip-file=VALUE       The path on disk to the encrypted zip

  -e, --entry=VALUE          The specific zip entry to put in mem (optional),
                               if not provided assumes only one zip entry is
                               present

  -p, --password=VALUE       The password of the encrypted zip

  -i, --process=VALUE        The process to inject into (if not used will
                               inject into self (not recommended)

  -c, --create               Create a new process, and injects into that
                               process (requires the process argument)

  -h, --help                 shows this menu

下载工具