[ Topic ] BadUSB - Payload Under SYSTEM
by 0x27 - Saturday July 8, 2023 at 12:47 AM
#11
Cool man! Sounds like we have some skilled craftsman here.
Reply
#12
(07-08-2023, 12:54 AM)bytemafia Wrote: More powerful when using with hoaxshell

Is hoaxshell undetectable again?
[Image: image.png?ex=657e45e6&is=656bd0e6&hm=d13...4979c0a26&]
Reply
#13
(12-11-2023, 10:05 PM)ikmodule Wrote:
(07-08-2023, 12:54 AM)bytemafia Wrote: More powerful when using with hoaxshell

Is hoaxshell undetectable again?

You need to make it undetectable yourself. It's unlikely that openly available stuff will work out of the box, and if it does then certainly not for too long.
Reply
#14
Voyons de quoi il est capable .
Reply
#15
Looks cool and amazing! Could give it a try
Reply
#16
(07-08-2023, 12:47 AM)0x27 Wrote:
[Image: 2pdXomC.png]



So you've got a badusb or cheaper equivalent (malduino / digispark) that performs HID attacks. Well, lets see what we can do with that. I've created a malicious powershell command that downloads your malware / shellcode and executes it on the victims machine and attempts to elevate your malicious process to run under the SYSTEM context. Below is the script and a more detailed explanation as what takes place. Enjoy.
I wrote this to see the hidden conten Big Grin
Reply
#17
thank you man Smile
Reply
#18
Thanks for sharing, it could be interesting
Reply
#19
thanks for share
Reply
#20
kk let's see what's the script
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [ Topic ] Malware Evasion - What is Code Signing? 0x27 40 7,701 04-04-2025, 07:55 PM
Last Post: NX000
  [ Topic ] Malware Evasion - Persistent Malware WatchDog DLL 0x27 10 6,254 02-06-2025, 05:02 PM
Last Post: exynos01
  Embed Payload In Png Aanya 4 653 10-30-2024, 05:03 AM
Last Post: Aanya
  [ Topic ] ChatGPT - Progression of Malware [Part II] 0x27 6 3,769 01-12-2024, 04:18 AM
Last Post: 0x27
  [ TOPIC ] We need to see more activity here. 0x27 5 2,409 01-11-2024, 10:09 PM
Last Post: GrassCrab

Forum Jump:


 Users browsing this thread: 1 Guest(s)