Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check if we are running within 32-bit python prior execution. #22

Merged
merged 1 commit into from Jan 8, 2022

Conversation

tahadraidia
Copy link
Contributor

In case of a misconfigured working environment, executing the script using Python 64-bit will raise OSError: exception: access violation writing when invoking RtlMoveMemory() API.

...
[+] Debugging shellcode ...
Traceback (most recent call last):
  File "C:\Users\tahai\code\osed-scripts\shellcoder.py", line 670, in <module>
    main(args)
  File "C:\Users\tahai\code\osed-scripts\shellcoder.py", line 597, in main
    ctypes.windll.kernel32.RtlMoveMemory(
OSError: exception: access violation writing 0x00000000E3030000

As a quick workaround we can add a check if test_shellcode parameter is set.

@epi052
Copy link
Owner

epi052 commented Jan 8, 2022

Thanks for the PR! No issues for me here, merging.

@epi052 epi052 merged commit 7c45bd4 into epi052:main Jan 8, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants