Really nice. thanks!
New release (v1.7). For “git cloners” just git pull to update. for ruby gem users just “gem install evil-winrm” ← yes, same command as the first time again.
New feature added… now compatibility to load donut payloads . I bet you know what is. Read the documentation at Readme. Cheers!
Had the same problem on some scripts:
When I loaded the v2 (main branch) PowerView script, it worked fine
When I loaded the v3 (dev branch) PowerView script, it gives me connection issues.
Debugging - you can debug the ruby script with the -rdebug switch - this gave me:
Error: Can’t establish connection. Check connection params
Error: Exiting with code 1
evil-winrm.rb:270: Bad HTTP response returned from server. Body(if present): (413).' (WinRM::WinRMHTTPTransportError) from evil-winrm.rb:433:in
rescue in main’
from evil-winrm.rb:328:in main' from evil-winrm.rb:449:in
’
evil-winrm.rb:270: exit(exit_code)
However: updating your evil-winrm to the latest version - today this is v1.9 - fixes this. Check your CHANGELOG.md file to make sure you have the latest version
I’m getting
7: from /usr/local/bin/evil-winrm:23:in <main>' 6: from /usr/local/bin/evil-winrm:23:in
load’
5: from /var/lib/gems/2.5.0/gems/evil-winrm-1.9/bin/evil-winrm:3:in <top (required)>' 4: from /usr/lib/ruby/2.5.0/rubygems/core_ext/kernel_require.rb:59:in
require’
3: from /usr/lib/ruby/2.5.0/rubygems/core_ext/kernel_require.rb:59:in require' 2: from /var/lib/gems/2.5.0/gems/evil-winrm-1.9/lib/evil-winrm.rb:556:in
<top (required)>’
1: from /var/lib/gems/2.5.0/gems/evil-winrm-1.9/lib/evil-winrm.rb:380:in main' /var/lib/gems/2.5.0/gems/evil-winrm-1.9/lib/evil-winrm.rb:524:in
rescue in main’: uninitialized constant EvilWinRM::GSSAPI (NameError)
error and i dont really understand where’s that coming from anyone knows what to do?
edit:fixed after changing to dev branch
Thank you for sharing.
Thanks for sharing!!!
Thank you for this! It actually works where as the alamot’s kept failing on me. I’m going to have to work through the errors on Alamot’s as well it’s probably just some dependency I failed to install
Nice, really nice tools, git cloned then installed gem dependencies and worked like a charm. Used recently, thanks for sharing !!!
Recently had an issue where some zip-related dependency was broken and had to gem install evil-winrm
to fix it
please send me pm with hint to get root. i manage to get user.txt flag, thanks for above comments.
I think you were wrong about the forum. This is to talk about Evil-WinRM. By the way, thanks to all who use it and give us back your opinions.
Great tool
Thank you for this tool. I used it for one of the machines.
When I use control c out of a command on the remote machinethe whole shell dies. Not sure if this is something you can fix just like SSH? I think this would be quite helpful as well. If not, all good.
what causes error on upload feature? I got
Error: Upload failed. Check filenames or paths
Trying on local autocomplete path and full path from source file but still fail
Succeed on downloading files tho
@rmn0x01 said:
what causes error on upload feature? I got
Error: Upload failed. Check filenames or paths
Trying on local autocomplete path and full path from source file but still failSucceed on downloading files tho
Maybe you don’t have write permissions
Type your comment> @clubby789 said:
@rmn0x01 said:
what causes error on upload feature? I got
Error: Upload failed. Check filenames or paths
Trying on local autocomplete path and full path from source file but still failSucceed on downloading files tho
Maybe you don’t have write permissions
make sense. Thanks
menu → Bypass-4MSI → then try to upload again
Thanks for sharing! Using it on daily basis. One of the most used tools from my toolbox.
Type your comment> @CurioCT said:
Any idea what’s wrong with my Ruby install. Had this message using your script and the other one in mentioned in the heist thread
/usr/lib/ruby/vendor_ruby/net/ntlm/client/session.rb:39: warning: constant OpenSSL::Cipher::Cipher is deprecated
/usr/lib/ruby/vendor_ruby/net/ntlm/client/session.rb:128: warning: constant OpenSSL::Cipher::Cipher is deprecatedAll ruby newly installed added the winrm gem and the others colorizer etc
in case anyone is seeing this same annoyance it is fixed by updating the ntlm gem
gem install rubyntlm
thanks for this fantastic script
For who faced error just run this two-line (root*)
sudo gem install evil-winrm
sudo gem install rubyntlm
Enjoy