Skip to content
kaspersky beta
  • Register

  • Login

  • Categories
  • KForum
  • KClub
  • kaspersky
  1. Home
  2. Kaspersky Beta Testing – English User Community
  3. Kaspersky Home Products
  4. Kaspersky
  5. Archive
  6. 2020
  7. [2020] GUI/Help
  8. Peach fuzzing with avpui.exe

Peach fuzzing with avpui.exe

Scheduled Pinned Locked Moved [2020] GUI/Help
4 Posts 2 Posters 4.9k Views 3 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • H Offline
    H Offline
    Helios_07
    wrote on last edited by Jarvis
    #1

    Real system:

    Windows 10 64-bit, Version 1803

    KIS 20.0.0.454 de app + drv verifier enabled

    Reproduction steps:

    Important is that Traces are enabled or it wont work!

    When i hand a fuzzed dll file to avpui.exe with Peach Fuzzer ,with the start a process option, Peach logs an Illegal Instruction Violation starting at avpuimain!SoundPlayW+0x00000000000a013b.

    KIS isnt effected because an extra process is started.

    It works with any fuzzed dll and some other filetypes.

    I attached the peach logs.


    PC:
    Windows 10 64-bit Version 20H2
    Build 19042.985
    Intel Core i10-10900K @ 3,7GHZ
    32,0 GB-RAM
    NVIDIA Geforce RTX 2080 TI 11GB
    KIS 21.4.8.292
    KPM 9.0.2.15298(o)
    Forum Signature from 25.May.2021

    1 Reply Last reply
    0
    • D Offline
      D Offline
      Dmitriy.Pisarets
      Kaspersky Lab
      wrote on last edited by
      #2

      @helios_07 hello! Can you  create application dump and OS dump also? 

      H 1 Reply Last reply
      0
      • D Dmitriy.Pisarets

        @helios_07 hello! Can you  create application dump and OS dump also? 

        H Offline
        H Offline
        Helios_07
        wrote on last edited by
        #3

        @dmitriy-pisarets

        Hi dmitriy,

        I dont think i cant create a dump, i just use the graphical interface of peach to do that and the avpui process runs for about 2 sec only.

        Thats the Peach Version i use :https://cloud.qainfo.ru/s/8mnuwKBQxiv4J8p

        The gui PeachFuzzBang.exe

        Under general, template file any dll, fuzzed file name fuzzed.dll, under debugger start a proces command line the path to avpui.exe fuzzed.dll.

        Then start fuzzing, if everything works peach logs the violation as described aboth.

        I hope those steps help to reproduce it at your end.

        PC:
        Windows 10 64-bit Version 20H2
        Build 19042.985
        Intel Core i10-10900K @ 3,7GHZ
        32,0 GB-RAM
        NVIDIA Geforce RTX 2080 TI 11GB
        KIS 21.4.8.292
        KPM 9.0.2.15298(o)
        Forum Signature from 25.May.2021

        1 Reply Last reply
        0
        • H Offline
          H Offline
          Helios_07
          wrote on last edited by Helios_07
          #4

          KIS dump as requested: https://cloud.qainfo.ru/s/2eGOkCyCrlbJe6D

          OS dump: https://cloud.qainfo.ru/s/5WvyeVjRYsqs4OQ

          PC:
          Windows 10 64-bit Version 20H2
          Build 19042.985
          Intel Core i10-10900K @ 3,7GHZ
          32,0 GB-RAM
          NVIDIA Geforce RTX 2080 TI 11GB
          KIS 21.4.8.292
          KPM 9.0.2.15298(o)
          Forum Signature from 25.May.2021

          1 Reply Last reply
          0

          Hello! It looks like you're interested in this conversation, but you don't have an account yet.

          Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

          With your input, this post could be even better 💗

          Register Login
          Reply
          • Reply as topic
          Log in to reply
          • Oldest to Newest
          • Newest to Oldest
          • Most Votes


          © 2026 АО «Лаборатория Касперского»

          • First post
            Last post
          0
          • Categories
          • KForum
          • KClub
          • kaspersky