├── .gitignore ├── README.md ├── application.config ├── base64.png ├── hashsumJar ├── raw.png └── wxgroup.png /.gitignore: -------------------------------------------------------------------------------- 1 | # Compiled class file 2 | *.class 3 | 4 | # Log file 5 | *.log 6 | 7 | # BlueJ files 8 | *.ctxt 9 | 10 | # Mobile Tools for Java (J2ME) 11 | .mtj.tmp/ 12 | 13 | # Package Files # 14 | *.jar 15 | *.war 16 | *.nar 17 | *.ear 18 | *.zip 19 | *.tar.gz 20 | *.rar 21 | 22 | # virtual machine crash logs, see http://www.java.com/en/download/help/error_hotspot.xml 23 | hs_err_pid* 24 | -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- 1 | # Godzilla 2 | 3 | # 哥斯拉不存在任何商业版本/收费版本 4 | 5 | ## 运行环境 6 | 1. JavaDynamicPayload -> java1.0及以上 7 | 2. CShapDynamicPayload -> .net2.0及以上 8 | 3. PhpDynamicPayload -> 4.3.0及以上 9 | 4. AspDynamicPayload -> 全版本 10 | 11 | ## 简介 12 | 13 | 14 | 15 | ### Payload以及加密器支持 16 | 17 | 哥斯拉内置了3种Payload以及6种加密器,6种支持脚本后缀,20个内置插件 18 | 19 | 1. JavaDynamicPayload 20 | 1. JAVA_AES_BASE64 21 | 1. jsp 22 | 2. jspx 23 | 2. JAVA_AES_RAW 24 | 1. jsp 25 | 2. jspx 26 | 27 | 2. CShapDynamicPayload 28 | 1. CSHAP_AES_BASE64 29 | 1. aspx 30 | 2. asmx 31 | 3. ashx 32 | 2. JAVA_AES_RAW 33 | 1. aspx 34 | 2. asmx 35 | 3. ashx 36 | 3. PhpDynamicPayload 37 | 1. PHP_XOR_BASE64 38 | 1. php 39 | 2. PHP_XOR_RAW 40 | 1. php 41 | 42 | ### Raw or Base64 加密器区别 43 | 44 | Raw : Raw是将加密后的数据直接发送或者输出 45 | 46 | ![raw](https://raw.githubusercontent.com/BeichenDream/Godzilla/master/raw.png) 47 | 48 | Base64 : Base64是将加密后的数据再进行Base64编码 49 | 50 | ![base64](https://raw.githubusercontent.com/BeichenDream/Godzilla/master/base64.png) 51 | 52 | ## 插件支持 53 | 54 | 1. JavaDynamicPayload 55 | 1. MemoryShell 56 | 57 | ``` 58 | 支持 哥斯拉 冰蝎 菜刀 ReGeorg 的内存shell 并且支持卸载 59 | ``` 60 | 61 | 2. Screen 62 | 63 | ``` 64 | 屏幕截图 65 | ``` 66 | 67 | 3. JRealCmd 68 | 69 | ``` 70 | 虚拟终端 可以用netcat连接 71 | ``` 72 | 73 | 4. JMeterpreter 74 | 75 | ``` 76 | 与MSF联动 77 | ``` 78 | 79 | 5. ServletManage 80 | 81 | ``` 82 | Servlet管理 Servlet卸载 83 | ``` 84 | 85 | 6. JarLoader 86 | 87 | ``` 88 | 内存加载Jar 将Jar加载到 SystemClassLoader 89 | ``` 90 | 91 | 7. JZip 92 | 93 | ``` 94 | ZIP压缩 ZIP解压 95 | ``` 96 | 2. CShapDynamicPayload 97 | 1. CZip 98 | ``` 99 | ZIP压缩 ZIP解压 100 | 101 | ``` 102 | 103 | 2. ShellcodeLoader 104 | 105 | ``` 106 | Shellcode加载 与MSF联动 107 | ``` 108 | 109 | 3. SafetyKatz 110 | 111 | ``` 112 | Mimikatz 113 | ``` 114 | 115 | 4. lemon 116 | 117 | ``` 118 | 读取服务器 FileZilla navicat sqlyog Winscp xmangager 的配置信息以及密码 119 | ``` 120 | 121 | 5. CRevlCmd 122 | 123 | ``` 124 | 虚拟终端 可以用netcat连接 125 | ``` 126 | 127 | 6. BadPotato 128 | 129 | ``` 130 | Windows权限提升 2012-2019 131 | ``` 132 | 133 | 7. ShapWeb 134 | ``` 135 | 读取服务器 谷歌 IE 火狐 浏览器保存的账号密码 136 | ``` 137 | 8. SweetPotato 138 | 139 | ``` 140 | Windwos权限提升 烂土豆的C#版本 甜土豆 141 | ``` 142 | 3. PhpDynamicPayload 143 | 1. PMeterpreter 144 | 145 | ``` 146 | 与MSF联动 147 | ``` 148 | 149 | 2. ByPassOpenBasedir 150 | 151 | ``` 152 | 绕过OpenBasedir 153 | ``` 154 | 155 | 3. PZip 156 | 157 | ``` 158 | ZIP压缩 ZIP解压 159 | ``` 160 | 161 | 4. P_Eval_Code 162 | 163 | ``` 164 | 代码执行 165 | ``` 166 | 167 | 5. BypassDisableFunctions 168 | 169 | ``` 170 | 绕过 DisableFunctions 171 | ``` 172 | 173 | [![Stargazers over time](https://starchart.cc/BeichenDream/Godzilla.svg)](https://starchart.cc/BeichenDream/Godzilla) 174 | -------------------------------------------------------------------------------- /application.config: -------------------------------------------------------------------------------- 1 | currentVersion:4.01 2 | gitUrl:https://github.com/BeichenDream/Godzilla 3 | isShowGroup:false 4 | wxGroupImageUrl:https://raw.githubusercontent.com/BeichenDream/Godzilla/master/wxgroup.png 5 | showGroupTitle:扫码加入微信交流群 6 | isShowAppTip:false 7 | appTip:Test 8 | -------------------------------------------------------------------------------- /base64.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/BeichenDream/Godzilla/a5558e6c37139ebb0b7b4491dc3ea7ce8d8f9e49/base64.png -------------------------------------------------------------------------------- /hashsumJar: -------------------------------------------------------------------------------- 1 | 2.92 : 55854f13c66dd088230feb9f151ff65e5564f9553877de64765fe38c5c7ad48d7cc6fc9664f58541ee47d4d230581a63cbda242c1710dbf553874402d514eeff 2 | 2.93 : 0e54e3f7b2888f091ce75ca7f0269f6b933510286a4fb5895c0972a5408fe516c6c3d01855f812737123305f4811674a2868dfba65175377f7a79d7d35f94a73 3 | 2.95 : ce803b2f17f2edce6784f6dbb08388e3d5f1b517a8f90cec9a82f59bb06058f68abd23ed582cfe0c4cdde7baf057849d11b6b43b2fce6fcb5c81f4152f57da60 4 | 2.96 : 6053116ca6ae76d6abd0b6b2a4f13a20674f71824315e14b48bd3df28ef280d602ba3758daadd5c6252df35f291baa226aac5e0cebfb4d371e850876228832ad 5 | 2.97 : 2030b0bfef952962863fff3c939d6c4b5514d80481cadf0dade0a030b6ce3a6649a4969dc6eeaf0997e08f863b2e09b627676f3e71a4d6feff7b72262ffcae77 6 | 2.98 : a24f8bd63abb080ba8fb6c9571ef247fdd12bfb8fbe8ce7dd7a7d59541ea348e9594f62a8697fc575d5462640502f04e8adfe97ee1c4011a857904801eae0c68 7 | 3.00 : 56083d5d23e7a0b4aa06683175e090812aa46a03b8fc6b1b8265f42ebf339f603cd28dfae614bcf1a4fb7c8f179d1c43252cea4876d208bd51e3252935f25ebe 8 | 3.01:e50ef51aa1714b9ccfe6d733714317e1d7adb37de264eae990d69394fb71367d28601c99cd1358fa5ab44a26a171f21203b932ad6ef11b104dbeac99bd1be96b 9 | 3.02: 660b6b8a10f243b8ef8719bb96a28003bdd2fedd7ae968f27ddb6f058d32008ea0bb32312ce019db562f267a37fe2f86f68d8c1e6c0e4e7399ed917693a6e0f0 10 | 3.03: 6c98dc9cb6a9d0b879330bca0521ed655dbe7fac88395542bfb36804e420c1abba00979e93ab591e74dcde446bfb31465e94e1b25c51e63696284de5dc0a3507 11 | 4.00: ee58883eda44edad641a528adabbe193fddbc89039ae4252d3d1488d89f1750573feb7791d6387c8115ef930f469d8fbe2895859e1c2b0db932af14bb3adac8d 12 | 4.01: 7bd209b54e9e5e8ba13bb8b527722457156f89d5f4b342cd832f0bb51877fb0b34e8b886422ba0a176a023813f2afc282ad0028312d527b3eeaa33b289442e39 13 | -------------------------------------------------------------------------------- /raw.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/BeichenDream/Godzilla/a5558e6c37139ebb0b7b4491dc3ea7ce8d8f9e49/raw.png -------------------------------------------------------------------------------- /wxgroup.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/BeichenDream/Godzilla/a5558e6c37139ebb0b7b4491dc3ea7ce8d8f9e49/wxgroup.png --------------------------------------------------------------------------------