From d68f808e1f792b5f225aa225e274582cbd26d97e Mon Sep 17 00:00:00 2001 From: ty <751300962@qq.com> Date: Fri, 23 Jul 2021 13:26:06 +0800 Subject: [PATCH 1/2] Update README.md MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit 修复write_meterpreter和read_meterpreter接口中的错误 --- README.md | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/README.md b/README.md index a095ab7..b7c6f1b 100644 --- a/README.md +++ b/README.md @@ -636,7 +636,7 @@ class Client(object): :return: """ str(ses_id) - res = self.send_command(["session.meterperter_write",self.token,ses_id,data]) + res = self.send_command(["session.meterpreter_write",self.token,ses_id,data]) return res def read_meterpreter(self,ses_id): @@ -646,7 +646,7 @@ class Client(object): :return: """ str(ses_id) - res = self.send_command(["session.meterperter_read",self.token,ses_id]) + res = self.send_command(["session.meterpreter_read",self.token,ses_id]) return res def run_module(self,_type,name,HOST,PORT,payload=False): @@ -761,7 +761,9 @@ def convert(data): ``` -#### 2. meterpreter无法获取session问题 +#### 2. ~~meterpreter无法获取session问题~~ + +> demo代码中meterpreter单词拼写错误导致 使用`msfvenom`生成一个木马并在目标执行。在msf服务端使用MSF RPC进行监听。使用`session.list`成功获取session列表。返回结果如下: @@ -796,4 +798,4 @@ read meterpreter {b'error': True, b'error_class': b'ArgumentError', b'error_stri # 总结 -该文档由浅入深地描述了MSF API调用开发的方式及常见问题。并且由于每个人的环境不同,相同的代码在不同的环境中可能无法运行,需自行解决环境及依赖问题。封装方法精力允许的情况下推荐第二种封装方式。更为专业及具有可扩展性。 \ No newline at end of file +该文档由浅入深地描述了MSF API调用开发的方式及常见问题。并且由于每个人的环境不同,相同的代码在不同的环境中可能无法运行,需自行解决环境及依赖问题。封装方法精力允许的情况下推荐第二种封装方式。更为专业及具有可扩展性。 From 8171153ccf979efb3c0ad9500602735d763b603e Mon Sep 17 00:00:00 2001 From: ty <751300962@qq.com> Date: Fri, 23 Jul 2021 13:27:08 +0800 Subject: [PATCH 2/2] Update README.md --- README.md | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/README.md b/README.md index b7c6f1b..c812bf1 100644 --- a/README.md +++ b/README.md @@ -765,15 +765,15 @@ def convert(data): > demo代码中meterpreter单词拼写错误导致 -使用`msfvenom`生成一个木马并在目标执行。在msf服务端使用MSF RPC进行监听。使用`session.list`成功获取session列表。返回结果如下: +~~使用`msfvenom`生成一个木马并在目标执行。在msf服务端使用MSF RPC进行监听。使用`session.list`成功获取session列表。返回结果如下:~~ ```json {14: {b'type': b'meterpreter', b'tunnel_local': b'10.10.11.180:3355', b'tunnel_peer': b'10.10.11.180:55656', b'via_exploit': b'exploit/multi/handler', b'via_payload': b'payload/windows/meterpreter/reverse_tcp', b'desc': b'Meterpreter', b'info': b'LAPTOP-0IG64IBE\\dr0op @ LAPTOP-0IG64IBE', b'workspace': b'false', b'session_host': b'10.10.11.180', b'session_port': 55656, b'target_host': b'10.10.11.180', b'username': b'dr0op', b'uuid': b'j3oe1mtk', b'exploit_uuid': b'nxyfbzx4', b'routes': b'', b'arch': b'x86', b'platform': b'windows'}} ``` -session ID为14。 +~~session ID为14。~~ -成功获取session列表后,就可以向session读写meterpreter命令。 +~~成功获取session列表后,就可以向session读写meterpreter命令。~~ ```python c.write_meterpreter(14,'getuid\n') @@ -783,7 +783,7 @@ c.write_meterpreter(14,'getuid\n') c.read_meterpreter(14) ``` -然而,MSF RPC端返回如下: +~~然而,MSF RPC端返回如下:~~ ```json write meterpreter {b'error': True, b'error_class': b'ArgumentError', b'error_string': b'Unknown API Call: \'"rpc_meterperter_write"\'', b'error_backtrace': [b"lib/msf/core/rpc/v10/service.rb:143:in `process'", b"lib/msf/core/rpc/v10/service.rb:91:in `on_request_uri'", b"lib/msf/core/rpc/v10/service.rb:72:in `block in start'", b"lib/rex/proto/http/handler/proc.rb:38:in `on_request'", b"lib/rex/proto/http/server.rb:368:in `dispatch_request'", b"lib/rex/proto/http/server.rb:302:in `on_client_data'", b"lib/rex/proto/http/server.rb:161:in `block in start'", b"lib/rex/io/stream_server.rb:48:in `on_client_data'", b"lib/rex/io/stream_server.rb:199:in `block in monitor_clients'", b"lib/rex/io/stream_server.rb:197:in `each'", b"lib/rex/io/stream_server.rb:197:in `monitor_clients'", b"lib/rex/io/stream_server.rb:73:in `block in start'", b"lib/rex/thread_factory.rb:22:in `block in spawn'", b"lib/msf/core/thread_manager.rb:100:in `block in spawn'"], b'error_message': b'Unknown API Call: \'"rpc_meterperter_write"\''} @@ -794,7 +794,7 @@ write meterpreter {b'error': True, b'error_class': b'ArgumentError', b'error_str read meterpreter {b'error': True, b'error_class': b'ArgumentError', b'error_string': b'Unknown API Call: \'"rpc_meterperter_read"\'', b'error_backtrace': [b"lib/msf/core/rpc/v10/service.rb:143:in `process'", b"lib/msf/core/rpc/v10/service.rb:91:in `on_request_uri'", b"lib/msf/core/rpc/v10/service.rb:72:in `block in start'", b"lib/rex/proto/http/handler/proc.rb:38:in `on_request'", b"lib/rex/proto/http/server.rb:368:in `dispatch_request'", b"lib/rex/proto/http/server.rb:302:in `on_client_data'", b"lib/rex/proto/http/server.rb:161:in `block in start'", b"lib/rex/io/stream_server.rb:48:in `on_client_data'", b"lib/rex/io/stream_server.rb:199:in `block in monitor_clients'", b"lib/rex/io/stream_server.rb:197:in `each'", b"lib/rex/io/stream_server.rb:197:in `monitor_clients'", b"lib/rex/io/stream_server.rb:73:in `block in start'", b"lib/rex/thread_factory.rb:22:in `block in spawn'", b"lib/msf/core/thread_manager.rb:100:in `block in spawn'"], b'error_message': b'Unknown API Call: \'"rpc_meterperter_read"\''} ``` -暂未找到解决方案。 +~~暂未找到解决方案。~~ # 总结