Jump to content

Dibya

Member
  • Posts

    2,134
  • Joined

  • Last visited

  • Days Won

    7
  • Donations

    0.00 USD 
  • Country

    India

Everything posted by Dibya

  1. I coulnt find codes of PrintDemon in XP . That very true as it seems . Do you remember wannacry BSODed XP?
  2. Don't use Export table tester to add export .it will cause certain tables to break . Never add a section after resources table in NT system files Use Petools to move Table to new section before .reloc then add anything you like. If you are not using vanilla file , then wildbill/bwc shall have enough space . Use the blank space inside .TXT , no need to add another section for code
  3. Well guys I can't get printdemon to work under XP . https://github.com/BC-SECURITY/Invoke-PrintDemon Is XP already Exorcises this demon? Need some confirmation . Some one run and see this powershell script.
  4. I am still in process of figuring out repacking , Hopefully i will fix it soon
  5. use https://neosmart.net/EasyBCD/ to add back boot loader. its a yearly ritual for me .
  6. Well it is not a port of newer jscript , it patches out vulnerability in windows XP IE8 file . i never said as such to FranceBB i think its a miss understanding JScript of vista will require expansion of kernel with new api , which i am not willing to do since it may break old XP only programs implementation of patch is unique as it prevent any such vulnerability . CVE2020-0674(0 Day) is variant of CVE2019-1429(0 Day)
  7. @Sampei.Nihira Here you go https://ibb.co/KstRbMp
  8. Let me fix the uninstaller first . @win32 pointed it out. Then if theirs a bug anyone can uninstall it . Well anyone have any idea how much dangerous CVE-2020-1048 is . https://windows-internals.com/printdemon-cve-2020-1048/ In Their blog , https://blog.0patch.com/2020/05/micropatching-printdemon-vulnerability.html 0patch Fix mentions LcmCreatePortEntry but nowhere IDA Pro , Relyze & PEExplorer find such reference .
  9. @Dave-H & @jaclaz thanks .'' Anyone know how to fix uninstaller issue in my hotfix repack.
  10. CVE2020-0674(0 Day),CVE2019-1429(0 day) are variant of each other . Microsoft did some quick fix but bad guys can easily work around it so i made a own patch to harden it. I have carefully studied work of 0patch but their patch is kill switch for JScript. So I made my own work around to fix it . https://blog.0patch.com/2020/01/micropatching-workaround-for-cve-2020.html My patch in action https://i.ibb.co/jhpqgrN/Vulnerability-Fixed.png It prevents both JSEncode & JSCompat vulnerability (Thanks to 0patch to find out JSCompat too can be used) Edit: I had no intention to share this patch but shared it as my friends asked me to . Some people likes to judge on basis of your age not your skill . Mastering x86 Assembly takes time . People are using my patch in wrong way then blaming me , Like using nlite addon without nlite despite knowing SFC can replace back original files from SP3.cab Many russian and chinese devs copied my RAM patch without my consent . one of my friends sent me ''I tried this too before. Don't expect too much from it as it was made by some teenage indian dude lol" Sounded racist to me . First they are dump to use nlite addon in wrong way and blame me without disabling SFC. In future , I will keep my patches to me . Why shall i bother ? WHat is the use of sharing and caring philosophy ? why shall i waste my bandwidth which i could use to watch anime ?
  11. kb3124624-v2: Fixes: CVE-2020-1035, CVE-2020-1058, CVE-2020-1060, CVE-2020-1093,CVE2020-0674(0 Day),CVE2019-1429(0 Day) kb4056941v2: Fixes: CVE-2020-0938(0day), CVE-2020-1020(0day) https://ryanvm.net/forum/viewtopic.php?f=25&t=22749
  12. StructuredQuery.dll doesnt exists in XP how 0patch fix CVE-2020-0729 when it doesnt exists in XP. anyone know hotfix repacking ?
  13. You need to code cave some implementations. It's a complex process so hard to explain.
  14. You didn't add any code with hex editor. That's the reason. I am comparing dlls with sp3 , I am looking out for changes made if any fix needed. Just wait I will do it for you .
  15. I think you might have corrupted some code. Their may be some other changes like dx9 upgrade . Anyway does already compatible software show same ?
  16. Kinda actually , Biostar re released H61 chipset motherboard. link You can grab i5 3570 for $20 from eBay .So a new xp compatible computer under $150 is very much possible.
  17. You can use Petools by wildbill to add a section before .rsc & .reloc and move export table their . Then use pemaker for everything else .
  18. ARM processor? XP clone ? Are they kidding? Who gonna use it .
  19. You need to add another section and move your export table there <3 If you don't mind, pm me your ntdll & kernel32 I will do it for you . I personally too like Windows XP sp1 over sp2.
  20. CVE-2020-0668: Disable Windows Service Tracing CVE-2019-1089: Disable RPC CVE-2020-0645 : Disable IIS CVE-2020-0772,CVE-2019-1315, CVE-2019-1339,CVE-2019-1319: Disable Windows Error Reporting CVE-2020-0787 : Disable Bits CVE-2019-0887,CVE-2019-1108,CVE-2019-1089,CVE-2019-1177,CVE-2019-1333,CVE-2019-1326 : Disable RDP CVE-2020-0770: Disable Windows ActiveX Installer CVE-2020-0822 : Disable Windows Language pack installer CVE-2020-0781, CVE-2020-0783 , CVE-2019-1405 : Disable Universal Plug & Play CVE-2020-0625, CVE-2020-0626, CVE-2020-0627, CVE-2020-0628, CVE-2020-0629, CVE-2020-0630, CVE-2020-0631, CVE-2020-0632 : Disable Windows Search Indexing
  21. Atmfd vulnerability fix is already made by me . I am trying to find someone willing to test it .
×
×
  • Create New...