Payloads testadas✓
=> Payload Normal CONNECT
porta openSSH a ser usada
Remote Proxy (80 , 8080) / squid (80 , 8080)
=> Payload squid+socks
porta socks= qualquer porta
remote Proxy squid: 80 , 8080;
=> Payload squid+dropbear
porta dropbear= qualquer porta
remote Proxy squid: 80 , 8080;
obs.:
Em Payload Normal,
[host_port]= localhost
host= ip do servidor;
Port= porta openSSH;
Em Payload squid+socks, [host_port]=
host= 127.0.0.1
Port= porta socks;
Em Payload squid+dropbear, [host_port]=
host= 127.0.0.1
Port= porta dropbear;
Carga Útil para modo Normal
sem Host / sem URL
C [host_port][split][crlf] HTTP/ [crlf][crlf]|
com Host / com URL
C [host_port][split][crlf] HTTP/ [crlf]Host: mail.google.com[crlf][crlf]|
Payoad direct - Proxy Socks (python Port 80 , 8080);
sem Host / sem URL
HTTP/ [crlf][crlf]|
com Host / com URL
HTTP/ [crlf]Host: mail.google.com[crlf][crlf]|[crlf]
Payload direct - dropbear (porta 80 , 8080);
com Host / com URL
HTTP/ [crlf]Host: mail.google.com[crlf][crlf]|[crlf]
Payload WAP:
obs:
usar porta openSSH do servidor;
remote proxy (padrão): 200.142.130.166:80 / 8080 ,
200.142.133.21:80 / 8080 ou 200.142.130.104:80 /8080
apn: wap.vivo.com.br (ativar DNS)
Rede 3G primeiro:
C [host_port] HTTP/1.1[crlf]Host: [host_port][crlf][crlf]
Claro modo SSL -> SSH (qualquer porta)
SSL (Tunnel)
SNI: web.whatsapp.com (claro prezão semanal, controle, mix, flex, play, app, pós)
SNI: media.whatsapp.net (claro prezão semanal, controle, mix, flex, play, app, pós)
SNI: instagram.com (claro Flex)
claro Planos (controle, mix, Flex, play, app, pós)
SNI: m.waze.com (claro controle, mix, flex, play, app, pós)
SNI: twitter.com (claro Flex)
claro Planos (controle, mix, Flex, play, app, pós):
DIRECT - Proxy Socks - DROPBEAR (qualquer porta);
GET [host_port] HTTP/1.1[crlf]Host: m.waze.com[crlf]
outras requisições disponíveis (na Claro Planos): HEAD, PUT, PROPFIND, LOCK, UNLOCK, DELETE, TRACE