Skip to content
KitploitKITPLOIT
도구익스플로잇블로그
Log in
제출
도구익스플로잇블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
ip-obfuscation — DWORD, 8진수, 16진수, IPv6 매핑, 가짜 도메인 @ 트릭을 사용하여 난독화된 IP 주소와 URL을 생성합니다. 침투 테스트, 피싱 인식 교육, URL 필터 테스트에 활용됩니다. | Kitploit
도구/GitHubGitHub/hackinglz/ip-obfuscation
Impersonation ToolsPhishingWAF BypassWeb SecurityPenetration TestingSocial EngineeringUtilities & FrameworksLearning & EducationRed Teaming
GitHubhackinglz/ip-obfuscation

ip-obfuscation

DWORD, 8진수, 16진수, IPv6 매핑, 가짜 도메인 @ 트릭을 사용하여 난독화된 IP 주소와 URL을 생성합니다. 침투 테스트, 피싱 인식 교육, URL 필터 테스트에 활용됩니다.

445939개월 전Kitploit 검토 완료

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
공유
저장소 보기

IP Obfuscator

난독화된 IP 주소와 URL을 생성하기 위한 보안 테스트 툴킷입니다. 침투 테스트, 보안 연구, 피싱 인식 교육, URL 파서/필터 테스트에 유용합니다.

개요

이 툴킷은 두 가지 인터페이스를 제공합니다:

  • ip_obfuscator.html - 대화형 사용을 위한 웹 기반 GUI
  • ip_obfuscator.py - 스크립팅 및 자동화를 위한 명령줄 도구

두 도구 모두 동일한 난독화 기법을 생성하며, 다음을 포함합니다:

  • DWORD/정수 형식 (10진수, 16진수, 8진수)
  • 점 표기법 변형 (16진수, 8진수, 혼합 진법)
  • IPv6 매핑 주소
  • URL authority 트릭 (@를 사용한 가짜 도메인)
  • Class B/C 축약 표기법
  • 오버플로 기법
  • URL 인코딩 변형

웹 인터페이스 (ip_obfuscator.html)

최신 브라우저에서 ip_obfuscator.html을 엽니다. 서버가 필요하지 않습니다.

기능

  • HTTPS 토글 - HTTP와 HTTPS 프로토콜 간 전환
  • 필터/검색 - 키워드로 결과 실시간 필터링
  • 내보내기 - 결과를 JSON 또는 CSV로 다운로드
  • 브라우저에서 테스트 - 생성된 URL을 새 탭에서 열기
  • 접을 수 있는 카테고리 - 헤더를 클릭하여 섹션 펼치기/접기
  • 보안 영역 분석 - 어떤 형식이 Windows 인트라넷 영역을 트리거하는지 확인

스크린샷 워크플로

  1. 대상 IP 주소 입력 (예: 192.168.1.100)
  2. @ 트릭을 위한 가짜 도메인 설정 (예: secure.bank.com)
  3. 필요에 따라 경로와 포트 구성
  4. 필요한 경우 HTTPS 토글
  5. "Generate Obfuscations" 클릭
  6. 탭을 사용하여 URLs, IP Formats, Security Zones 간 전환
  7. 결과를 클릭하여 복사하거나 "Test in Browser" 사용

명령줄 도구 (ip_obfuscator.py)

요구 사항

  • Python 3.6+
  • 외부 의존성 없음 (표준 라이브러리만 사용)

기본 사용법

# Show all obfuscation formats for an IP
python3 ip_obfuscator.py 192.168.1.100

# Generate obfuscated URLs
python3 ip_obfuscator.py 192.168.1.100 --url

# With fake domain and path
python3 ip_obfuscator.py 192.168.1.100 --url --fake-domain secure.bank.com --path /login

명령줄 옵션

OptionShortDescription
--url-uIP 형식만이 아닌 전체 URL 생성
--fake-domain-f@ 트릭을 위한 가짜 도메인 (기본값: google.com)
--fake-pass-wuser:pass@host 형식을 위한 가짜 비밀번호
--path-pURL 경로 (기본값: /)
--port-P포트 번호
--https-sHTTP 대신 HTTPS 사용
--json-jJSON으로 출력
--filter-F키워드로 결과 필터링
--list-l간결한 목록 출력 (값만)
--zones-zWindows 보안 영역 영향 분석
--decode-d난독화된 IP를 표준 형식으로 디코딩

예제

가짜 도메인으로 URL 생성

python3 ip_obfuscator.py 192.168.1.100 --url --fake-domain secure.bank.com --path /login

출력:

================================================================================
OBFUSCATED URL GENERATOR
================================================================================
  Target IP:     192.168.1.100
  Fake Domain:   secure.bank.com
  Fake Password: (none)
  Port:          (default)
  Path:          /login
  Protocol:      HTTP
================================================================================

DWORD/INTEGER FORMATS
--------------------------------------------------------------------------------

  Standard (no obfuscation):
  http://192.168.1.100/login

  Decimal DWORD:
  http://3232235876/login

  Hex DWORD:
  http://0xC0A80164/login

  Octal DWORD:
  http://030052000544/login

...

JSON 출력으로 결과 필터링

python3 ip_obfuscator.py 192.168.1.100 --url --fake-domain secure.bank.com --filter "fake auth" --json

출력:

{
  "Fake Auth + Decimal DWORD": "http://secure.bank.com@3232235876/",
  "Fake Auth + Hex DWORD": "http://secure.bank.com@0xc0a80164/",
  "Fake Auth + Octal DWORD": "http://secure.bank.com@030052000544/",
  "Fake Auth + Dotted Hex": "http://[email protected]/",
  "Fake Auth + Dotted Octal": "http://[email protected]/",
  "Fake Auth + IPv6 Mapped (hex)": "http://secure.bank.com@[::ffff:c0a8:164]/",
  "Fake Auth + IPv6 Mapped (decimal)": "http://secure.bank.com@[::ffff:192.168.1.100]/",
  "Fake Auth + IPv6 Mapped (full)": "http://secure.bank.com@[0000:0000:0000:0000:0000:ffff:c0a8:0164]/",
  "Fake Auth + Class B": "http://[email protected]/",
  "Fake Auth + Class C": "http://[email protected]/"
}

HTTPS URL 생성

python3 ip_obfuscator.py 192.168.1.100 --url --https --filter ipv6

IPv6 형식만 나열

python3 ip_obfuscator.py 192.168.1.100 --list --filter ipv6

출력:

All obfuscated forms of 192.168.1.100:

  ::ffff:192.168.1.100
  ::ffff:c0a8:164
  0000:0000:0000:0000:0000:ffff:c0a8:0164
  0:0:0:0:0:ffff:c0a8:164
  ::ffff:c0a80164
  ::192.168.1.100
  ::c0a8:164
  [::ffff:c0a8:164]
  [::ffff:192.168.1.100]
  [0000:0000:0000:0000:0000:ffff:c0a8:0164]

난독화된 URL 디코딩

python3 ip_obfuscator.py --decode "http://secure.bank.com@3232235876/login"

출력:

Input:   http://secure.bank.com@3232235876/login
Decoded: 192.168.1.100

보안 영역 분석

python3 ip_obfuscator.py 192.168.1.100 --zones

출력:

================================================================================
MICROSOFT SECURITY ZONES ANALYSIS
================================================================================

The 'Dot Rule' (PlainHostName rule):
  • Hostname WITHOUT dots → Local Intranet Zone
  • Hostname WITH dots    → Internet Zone

⚠️  SECURITY IMPACT of Intranet Zone:
  • Automatic NTLM/Kerberos credential release (credential theft!)
  • Less restrictive ActiveX/script policies
  • May bypass security prompts and Mark-of-the-Web

================================================================================
Target IP: 192.168.1.100
================================================================================

🔴 DOTLESS → LOCAL INTRANET ZONE (HIGH RISK - credential leak)
--------------------------------------------------------------------------------
  Decimal DWORD
    URL: http://3232235876/
    Note: CONFIRMED: MS98-016 specifically documents this as Intranet Zone bypass

  Hex DWORD (0x prefix)
    URL: http://0xC0A80164/
    Note: CONFIRMED: Numeric hostname without dots → Intranet Zone

  Octal DWORD
    URL: http://030052000544/
    Note: Octal integer without dots → Intranet Zone

🟢 DOTTED → INTERNET ZONE (normal security)
--------------------------------------------------------------------------------
  Standard Dotted Decimal
    URL: http://192.168.1.100/

  Dotted Hex
    URL: http://0xC0.0xA8.0x1.0x64/
...

난독화 기법 참조

CategoryExampleDescription
Decimal DWORD323223587632비트 정수 표현
Hex DWORD0xC0A8016416진수 정수
Octal DWORD0300520005448진수 정수 (선행 0)
Dotted Hex0xC0.0xA8.0x1.0x64각 옥텟을 16진수로
Dotted Octal0300.0250.01.0144각 옥텟을 8진수로
Mixed Bases192.0xa8.01.10010진수/16진수/8진수 조합
Class B192.11010404첫 번째 옥텟 + 24비트 값
Class C192.168.356두 옥텟 + 16비트 값
IPv6 Mapped::ffff:c0a8:164IPv4 매핑 IPv6 주소
Fake Authsecure.bank.com@IPURL authority 섹션 트릭
Overflow7527203172값 + 2^32 (래핑 어라운드)

보안 고려 사항

이 도구는 다음 용도로 사용됩니다:

  • 침투 테스트 (승인 하에)
  • 보안 연구
  • 피싱 인식 교육
  • URL 필터 및 파서 테스트
  • CTF 챌린지

악의적인 목적으로 사용하지 마십시오.

참고 자료

  • MS98-016: Internet Explorer URL Parsing Vulnerability
  • SANS ISC Diary on IP Obfuscation
  • Mandiant: URL Schema Obfuscation techniques
  • inet_aton() man page (BSD sockets)

라이선스

MIT License - 책임감 있게 사용하십시오.

도구 다운로드