Giter Club home page Giter Club logo

undetectable-reverse-shell-win10's Introduction

______                          _____ _          _ _ 
| ___ \                        /  ___| |        | | |
| |_/ /_____   _____ _ __ ___  \ `--.| |__   ___| | |
|    // _ \ \ / / _ \ '__/ __|  `--. \ '_ \ / _ \ | |
| |\ \  __/\ V /  __/ |  \__ \ /\__/ / | | |  __/ | |
\_| \_\___| \_/ \___|_|  |___/ \____/|_| |_|\___|_|_|

Undetectable Revers Shell Window10πŸ’»

What is it?

This is the tweaked version from the original work of this repo posted on 2016 by Etienne Stalmans. Created as a power shell script to bind a shell to the remote host shell. This modification and tweak of the script is under 2 main purpose:

  • For education purpose of how a patched script can still be execute without any malware detection
  • How to bind a shell actively using TCP

**The original script are patched already and will be detect as malware when run a ps1 script πŸ±β€πŸ

Why this?

To experiment and education purpose showing how the combination of useful tool could tweak a patched script can still be execute without detected. In this scenario I am using various step and tool including the a big contribution from KeyEmu to make this happened.

How it work?

There are various skill and tool involve such as:

  • Batch Scripting
  • KeyEmu
  • Advanced BAT to EXE Converter PRO
  • Ncat

These are the step to I follow:

  1. Make sure I have a working version of KeyEmu which will help me to paste the original ps1 script line by line
  2. Write a batch file to open PowerShell and using KeyEmu text and return feature to execute script line by line
  3. Using the Advanced BAT to EXE Converter PRO to embed KeyEmu file in and convert the bat to exe so when the bat code will execute directly in PowerShell instead of CMD

Does it really work?

This is the analysis and snapshot of all process when the program execute: app.any.run

enter image description here

enter image description here

🐫Last Message

Please use it at your own risk.

undetectable-reverse-shell-win10's People

Contributors

panhavad avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    πŸ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. πŸ“ŠπŸ“ˆπŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❀️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.