forked from j5s/vshell
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
9 changed files
with
19 additions
and
43 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,61 +1,37 @@ | ||
# vshell 2.0 | ||
# vshell 3.0 | ||
**CobaltStrike难用?来试试vshell吧** | ||
|
||
[English](https://github.com/veo/vshell/blob/main/README_en.md) | ||
|
||
vshell 是一款go编写的主机群管理工具(RAT) | ||
|
||
使用蚁剑控制台及插件管理主机 | ||
# 改动 | ||
1.之前版本是自写协议,但有众多问题不稳定容易掉线。后续彻底放弃采用 [NPS](https://github.com/ehang-io/nps) 的协议,现在已经非常稳定不会掉线, | ||
|
||
基本框架为 | ||
2.现在支持TCP,UDP/KCP 协议上线 | ||
|
||
client <-> vshell <-> 蚁剑 | ||
3.逐步弃用蚁剑连接的方式,直接使用web管理主机,目前还可以使用蚁剑连接 (注意:蚁剑连接类型 CUSTOM,如乱码编码类型可选GBK) | ||
|
||
注意:蚁剑连接类型 CUSTOM,如乱码编码类型可选GBK | ||
|
||
# Options | ||
``` | ||
-LPORT Listen PORT (default 10080) | ||
-WPORT Web Port (default 10081) | ||
-USER Web User (default "admin") | ||
-PWD Web Pass (default "vshell") | ||
``` | ||
# WEB界面 | ||
data:image/s3,"s3://crabby-images/3abb8/3abb82e99394a195e23f001a74e7a0cca3874eb1" alt="" | ||
data:image/s3,"s3://crabby-images/c55d9/c55d93715126c281af0aa0d8666f90dd1db35fa8" alt="" | ||
|
||
# 控制台功能: | ||
data:image/s3,"s3://crabby-images/98145/98145840f8a1f375d5dda682f91329fe4fbdaf66" alt="" | ||
# 功能: | ||
|
||
## 1.蚁剑控制台所有已有功能 | ||
## 1.Vshell功能 | ||
``` | ||
1.文件上传/下载 | ||
2.文件复制/粘贴/预览/新建/删除 | ||
2.控制台编辑文件 | ||
3.虚拟终端 | ||
4.数据库操作(暂时只支持mysql) | ||
5.修改文件时间戳 | ||
6.WGET下载 | ||
... | ||
1.文件管理 | ||
2.交互式虚拟终端 | ||
3.旧版vshell蚁剑连接的功能 | ||
功能陆续添加中... | ||
``` | ||
data:image/s3,"s3://crabby-images/70647/70647d3d579641ddcbf74a40491e4d8d5b56732f" alt="img.png" | ||
data:image/s3,"s3://crabby-images/d8c43/d8c43245f3688aeb3680742163f2b31425f3c71a" alt="" | ||
|
||
|
||
## 2.蚁剑插件 vshell | ||
## 2.NPS代理功能 | ||
``` | ||
1.基本信息 | ||
2.主机列表 | ||
3.杀软识别 | ||
4.开机启动服务管理 | ||
5.屏幕截图 | ||
6.Procdump | ||
7.浏览器数据获取 | ||
8.socks5代理(上线即代理,不需要额外配置) | ||
9.漏洞测试 | ||
10.内存运行(支持exe和shellcode两种模式,支持内存上线 Metasploit 或 CobaltStrike等,支持运行mimikatz) | ||
11.管道仿冒技术提权(msf 中的 getsystem) | ||
12.卸载vshell | ||
支持NPS的所有已有的功能 | ||
``` | ||
data:image/s3,"s3://crabby-images/20459/20459c2c72fd07e4d2879f9ba081da8272775861" alt="" | ||
data:image/s3,"s3://crabby-images/0b4bb/0b4bb12b091ddcf5c19c7175a83a420c4e633629" alt="" | ||
|
||
## 3.后台运行 | ||
所有版本直接运行即可后台运行 | ||
## 3.服务端直接生成客户端 | ||
data:image/s3,"s3://crabby-images/94cf4/94cf4e0d0595f0a193e56623370d26d07e8607df" alt="" | ||
可以使用服务端直接生成客户端,客户端不需要任何参数和配置文件即可运行 |
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.