Ws2help. dll 0-day elevation and repair

Source: Internet
Author: User

Methods: miao)

Source: Eighth programming www.debugc.com

There is a way to raise the right, that is, when there is no progress, you can replace a program in the service and get a permission when the server is restarted .)

This has a limitation, that is, there are not many targets to replace, not all programs can replace. Some self-check programs and some running processes cannot be modified.

I will share a similar method:

The program calls system resources many times during execution.

However, the program compilation process does not specify a clear system resource path.

For example, when a networked program starts, it needs to load ws2help. dll in the system directory.

However, when the program is loaded, it does not know the location of the dll,
The startup sequence is to first search for the local directory and then search for the system directory,

Finally, find ws2help. dll in the system directory.
: You only need to compile a dll for the function you need and change it to ws2help. dll and put it in the program root directory for the network application,

When the administrator or another service starts the program, it will load.
I have mentioned in an article that the replacement of sogou's Automatic Upgrade Strategy for program running is similar to this!

Usage: Put the file in the program root directory of the network application. The file will be loaded when the program starts, and the wlozz password of the system administrator user is automatically created.

Modify the user password and load the file into c32. Search for the string wlozz and modify it by yourself.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.