2025/08/11 14:12:53 common config info honeypot: 0 rabbish: 0 rabbish-md5: 0
2025/08/11 14:12:53 common config info honeypot: 0 rabbish: 0 rabbish-md5: 0
2025/08/11 14:12:53 init repleace log regex len: 3
2025/08/11 14:12:53 Grab version: grab_version_1.9.1.0
2025/08/11 14:12:53 Support 353 protocols, 820 ports
2025/08/11 14:12:53 [DEBUG] runtime.NumCPU():16, runtime.GOMAXPROCS():14
2025/08/11 14:12:53 try to load user products rules: D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\rules\user\rule.json
2025/08/11 14:12:53 read user rule file ok: 0
2025/08/11 14:12:53 load json dir D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795 error: CreateFile D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795: The system cannot find the file specified.
2025/08/11 14:12:53 load archive dir D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795 error: open D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795: The system cannot find the file specified.
2025/08/11 14:12:53 Version: v2.9.13 beta
2025/08/11 14:12:53 BuildTime: 2025-02-28 17:08:10
2025/08/11 14:12:53 load poc D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\exploits\user\Apache Solr Log4j JNDI RCE.go error: 7Dcf7eC4FbfD9Dfe.go:98:8: illegal character U+FF1A ':' (and 1 more errors)
2025/08/11 14:12:54 API Server listen at 127.0.0.1:8361
2025/08/11 14:12:55 vul name contains ',' which is not allowed: Cisco-Small-Business-RV-Series-Routers-Multiple-Command-Execution-Vulnerabilities-(CVE-2022-20705 --CVE-2022-20707 ).json
2025/08/11 14:12:56 load poc D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\exploits\user\Panabit_Panalog_cmdhandle.php_backstage_RCE.go error: fe4dcfe0e9d09bFe.go:99:12: not enough arguments in call to
2025/08/11 14:12:56 [WARNING] ParseString error: 1 error(s) decoding:
'Request.Header' expected a map, got 'slice'
2025/08/11 14:12:56 [WARNING] ParseString error: 1 error(s) decoding:
'Request.Header' expected a map, got 'slice'
2025/08/11 14:12:57 2314 POC were successfully loaded
2025/08/11 14:12:57 pcap version: Npcap version 1.60, based on libpcap version 1.10.2-PRE-GIT
2025/08/11 14:12:58 found device from route table for 8.8.8.8: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] get adapter of device \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] devices: [{\Device\NPF_{26B61885-1A81-469E-9E84-FCE0C1C39C83} WAN Miniport (IPv6) 22 []} {\Device\NPF_{44AF6995-73E1-4794-96C0-1A9C05B2FD77} WAN Miniport (IP) 22 []} {\Device\NPF_{0525D75C-B04C-470C-8B9C-B9E289DABDDD} WAN Miniport (Network Monitor) 22 []} {\Device\NPF_{B9F9E2E9-B9A9-441A-AC9A-660FBF7ABDBA} Bluetooth Device (Personal Area Network) 46 [{fe80::8df8:a845:9d9e:5644 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.8.146 ffff0000 169.254.255.255 }]} {\Device\NPF_{DBCD27D7-7FD5-4E78-B800-A1847A030684} VMware Virtual Ethernet Adapter for VMnet5 22 [{fe80::c7a4:16e1:45f9:4b51 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.85.213 ffff0000 169.254.255.255 }]} {\Device\NPF_{9B865FE2-F4FE-4CCD-903C-256604FA361B} VMware Virtual Ethernet Adapter for VMnet8 22 [{fe80::a4af:353b:2118:2602 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.44.73 ffff0000 169.254.255.255 }]} {\Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} RZ608 Wi-Fi 6E 80MHz 30 [{fe80::1db9:469a:c5f4:1bf8 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {192.168.31.32 ffffff00 192.168.31.255 }]} {\Device\NPF_{D12BB4D7-D25E-462B-B5E4-11F30B32A870} Microsoft Wi-Fi Direct Virtual Adapter 网站截图能不能点击后放大 #3 46 [{fe80::8964:9ebe:a148:bff4 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.128.203 ffff0000 169.254.255.255 }]} {\Device\NPF_{1081EF86-A624-4A2B-B798-E2CD786E7187} Microsoft Wi-Fi Direct Virtual Adapter 46 [{fe80::ea59:9032:1504:5f6b ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.22.190 ffff0000 169.254.255.255 }]} {\Device\NPF_Loopback Adapter for loopback traffic capture 55 []} {\Device\NPF_{8167F52C-E0A4-4D2C-A01A-90CE5A220603} Realtek Gaming 2.5GbE Family Controller 38 [{fe80::4e1a:ff15:f3eb:5922 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.199.25 ffff0000 169.254.255.255 }]} {\Device\NPF_{D7D87596-14A0-4562-9AAC-9C48CF002AC4} iNode VPN Virtual NIC 38 [{fe80::ef9f:ab3f:9ee1:a47d ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {100.100.67.2 ffff0000 100.100.255.255 } {169.254.91.194 ffff0000 169.254.255.255 }]} {\Device\NPF_{77607E32-DC2A-4793-BB91-90D5C445E4D3} SdpTap Adapter 38 [{fe80::aa5f:ae10:9464:d5a4 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.210.143 ffff0000 169.254.255.255 }]}]
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{26B61885-1A81-469E-9E84-FCE0C1C39C83} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{44AF6995-73E1-4794-96C0-1A9C05B2FD77} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{0525D75C-B04C-470C-8B9C-B9E289DABDDD} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{B9F9E2E9-B9A9-441A-AC9A-660FBF7ABDBA} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{DBCD27D7-7FD5-4E78-B800-A1847A030684} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{9B865FE2-F4FE-4CCD-903C-256604FA361B} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] getGatewayMac: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} 8.8.8.8
2025/08/11 14:13:00 find router mac is c8:bf:4c:37:f4:07
2025/08/11 14:13:01 [DEBUG] fetch mac address: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} c8:bf:4c:37:f4:07
2025/08/11 14:13:01 [DEBUG] close pcap handler for getGatewayMac
2025/08/11 14:13:01 select adapter of to send packets: &{\Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} 192.168.31.32 [fe80::1db9:469a:c5f4:1bf8] {192.168.31.32 ffffff00} ffffff00 4c:d5:77:f1:33:8b RZ608 Wi-Fi 6E 80MHz c8:bf:4c:37:f4:07}
2025/08/11 14:12:53 common config info honeypot: 0 rabbish: 0 rabbish-md5: 0
2025/08/11 14:12:53 common config info honeypot: 0 rabbish: 0 rabbish-md5: 0
2025/08/11 14:12:53 init repleace log regex len: 3
2025/08/11 14:12:53 Grab version: grab_version_1.9.1.0
2025/08/11 14:12:53 Support 353 protocols, 820 ports
2025/08/11 14:12:53 [DEBUG] runtime.NumCPU():16, runtime.GOMAXPROCS():14
2025/08/11 14:12:53 try to load user products rules: D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\rules\user\rule.json
2025/08/11 14:12:53 read user rule file ok: 0
2025/08/11 14:12:53 load json dir D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795 error: CreateFile D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795: The system cannot find the file specified.
2025/08/11 14:12:53 load archive dir D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795 error: open D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\128c8a759a3ee795: The system cannot find the file specified.
2025/08/11 14:12:53 Version: v2.9.13 beta
2025/08/11 14:12:53 BuildTime: 2025-02-28 17:08:10
2025/08/11 14:12:53 load poc D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\exploits\user\Apache Solr Log4j JNDI RCE.go error: 7Dcf7eC4FbfD9Dfe.go:98:8: illegal character U+FF1A ':' (and 1 more errors)
2025/08/11 14:12:54 API Server listen at 127.0.0.1:8361
2025/08/11 14:12:55 vul name contains ',' which is not allowed: Cisco-Small-Business-RV-Series-Routers-Multiple-Command-Execution-Vulnerabilities-(CVE-2022-20705--CVE-2022-20707).json
2025/08/11 14:12:56 load poc D:\tools\goby-win-x64-2.9.13\goby-win-x64-2.9.13\golib\exploits\user\Panabit_Panalog_cmdhandle.php_backstage_RCE.go error: fe4dcfe0e9d09bFe.go:99:12: not enough arguments in call to
2025/08/11 14:12:56 [WARNING] ParseString error: 1 error(s) decoding:
'Request.Header' expected a map, got 'slice'
2025/08/11 14:12:56 [WARNING] ParseString error: 1 error(s) decoding:
'Request.Header' expected a map, got 'slice'
2025/08/11 14:12:57 2314
POCwere successfully loaded2025/08/11 14:12:57 pcap version: Npcap version 1.60, based on libpcap version 1.10.2-PRE-GIT
2025/08/11 14:12:58 found device from route table for 8.8.8.8: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] get adapter of device \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] devices: [{\Device\NPF_{26B61885-1A81-469E-9E84-FCE0C1C39C83} WAN Miniport (IPv6) 22 []} {\Device\NPF_{44AF6995-73E1-4794-96C0-1A9C05B2FD77} WAN Miniport (IP) 22 []} {\Device\NPF_{0525D75C-B04C-470C-8B9C-B9E289DABDDD} WAN Miniport (Network Monitor) 22 []} {\Device\NPF_{B9F9E2E9-B9A9-441A-AC9A-660FBF7ABDBA} Bluetooth Device (Personal Area Network) 46 [{fe80::8df8:a845:9d9e:5644 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.8.146 ffff0000 169.254.255.255 }]} {\Device\NPF_{DBCD27D7-7FD5-4E78-B800-A1847A030684} VMware Virtual Ethernet Adapter for VMnet5 22 [{fe80::c7a4:16e1:45f9:4b51 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.85.213 ffff0000 169.254.255.255 }]} {\Device\NPF_{9B865FE2-F4FE-4CCD-903C-256604FA361B} VMware Virtual Ethernet Adapter for VMnet8 22 [{fe80::a4af:353b:2118:2602 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.44.73 ffff0000 169.254.255.255 }]} {\Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} RZ608 Wi-Fi 6E 80MHz 30 [{fe80::1db9:469a:c5f4:1bf8 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {192.168.31.32 ffffff00 192.168.31.255 }]} {\Device\NPF_{D12BB4D7-D25E-462B-B5E4-11F30B32A870} Microsoft Wi-Fi Direct Virtual Adapter 网站截图能不能点击后放大 #3 46 [{fe80::8964:9ebe:a148:bff4 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.128.203 ffff0000 169.254.255.255 }]} {\Device\NPF_{1081EF86-A624-4A2B-B798-E2CD786E7187} Microsoft Wi-Fi Direct Virtual Adapter 46 [{fe80::ea59:9032:1504:5f6b ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.22.190 ffff0000 169.254.255.255 }]} {\Device\NPF_Loopback Adapter for loopback traffic capture 55 []} {\Device\NPF_{8167F52C-E0A4-4D2C-A01A-90CE5A220603} Realtek Gaming 2.5GbE Family Controller 38 [{fe80::4e1a:ff15:f3eb:5922 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.199.25 ffff0000 169.254.255.255 }]} {\Device\NPF_{D7D87596-14A0-4562-9AAC-9C48CF002AC4} iNode VPN Virtual NIC 38 [{fe80::ef9f:ab3f:9ee1:a47d ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {100.100.67.2 ffff0000 100.100.255.255 } {169.254.91.194 ffff0000 169.254.255.255 }]} {\Device\NPF_{77607E32-DC2A-4793-BB91-90D5C445E4D3} SdpTap Adapter 38 [{fe80::aa5f:ae10:9464:d5a4 ffffffffffffffff0000000000000000 fe80::ffff:ffff:ffff:ffff } {169.254.210.143 ffff0000 169.254.255.255 }]}]
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{26B61885-1A81-469E-9E84-FCE0C1C39C83} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{44AF6995-73E1-4794-96C0-1A9C05B2FD77} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{0525D75C-B04C-470C-8B9C-B9E289DABDDD} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{B9F9E2E9-B9A9-441A-AC9A-660FBF7ABDBA} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{DBCD27D7-7FD5-4E78-B800-A1847A030684} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] device name is not match: \Device\NPF_{9B865FE2-F4FE-4CCD-903C-256604FA361B} != \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD}
2025/08/11 14:12:58 [DEBUG] getGatewayMac: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} 8.8.8.8
2025/08/11 14:13:00 find router mac is c8:bf:4c:37:f4:07
2025/08/11 14:13:01 [DEBUG] fetch mac address: \Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} c8:bf:4c:37:f4:07
2025/08/11 14:13:01 [DEBUG] close pcap handler for getGatewayMac
2025/08/11 14:13:01 select adapter of to send packets: &{\Device\NPF_{003A22F2-4E4D-4A3C-9A4D-42A8441D5FCD} 192.168.31.32 [fe80::1db9:469a:c5f4:1bf8] {192.168.31.32 ffffff00} ffffff00 4c:d5:77:f1:33:8b RZ608 Wi-Fi 6E 80MHz c8:bf:4c:37:f4:07}