Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

cs4.1 CrossC2 能生成Payload 但是无法上线 #84

Closed
ysssysssy opened this issue May 31, 2021 · 10 comments
Closed

cs4.1 CrossC2 能生成Payload 但是无法上线 #84

ysssysssy opened this issue May 31, 2021 · 10 comments

Comments

@ysssysssy
Copy link

ysssysssy commented May 31, 2021

WEB日志能看到去访问服务端了 但是不会返回数据
Dingtalk_20210531101626

@ysssysssy ysssysssy reopened this May 31, 2021
@ysssysssy ysssysssy changed the title cs cs4.1 CrossC2 能生成Payload 但是无法上线 May 31, 2021
@ysssysssy
Copy link
Author

服务端
Dingtalk_20210531103003

@gloxec
Copy link
Owner

gloxec commented May 31, 2021

有没有出现[conf]: alive的信息提示呢?

@ysssysssy
Copy link
Author

没有 什么提示也没有

@gloxec
Copy link
Owner

gloxec commented May 31, 2021

那可能是listener设定的端口无法访问,beacon在运行时,首先会尝试与设定的listener端口建立一次网络连接,如果网络可达的话,是会出现alive的提示的

@ysssysssy
Copy link
Author

是这个的原因吗
image

@gloxec
Copy link
Owner

gloxec commented May 31, 2021

listener 是windows_https类型的吗,beacon目前强制设定为https

@ysssysssy
Copy link
Author

是的 https的监听器

@gloxec
Copy link
Owner

gloxec commented May 31, 2021

netstat中能看到beacon与teamserver通信的记录吗?或者tcpdump抓包查看下是否成功建立过连接以及试试更换监听端口。未出现[conf]: alive信息,怀疑可能是beacon所在环境无法访问外部40043端口

@ysssysssy
Copy link
Author

抓到的包是这样的
image

@gloxec
Copy link
Owner

gloxec commented Jun 7, 2021

经过排查,v2.2.3版本确实存在问题,可使用早期版本或最新的v2.2.4版本 https://github.com/gloxec/CrossC2/releases/tag/v2.2.4

@gloxec gloxec closed this as completed Jun 29, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants