
Automatische UAC-Umgehung für benutzerdefinierte Payloads während Privilege-Escalation-Tests
/$$$$$$ /$$ /$$$$$$$$ /$$ /$$ /$$$$$$$$
/$$__ $$ | $$ | $$_____/| $$ / $$| $$_____/
| $$ \__/ /$$$$$$$ /$$$$$$ /$$$$$$ | $$ /$$ /$$ /$$| $$ | $$/ $$/| $$
| $$$$$$ | $$__ $$ /$$__ $$ |____ $$| $$ /$$/| $$ | $$| $$$$$ \ $$$$/ | $$$$$
\____ $$| $$ \ $$| $$$$$$$$ /$$$$$$$| $$$$$$/ | $$ | $$| $$__/ >$$ $$ | $$__/
/$$ \ $$| $$ | $$| $$_____/ /$$__ $$| $$_ $$ | $$ | $$| $$ /$$/\ $$| $$
| $$$$$$/| $$ | $$| $$$$$$$| $$$$$$$| $$ \ $$| $$$$$$$| $$$$$$$$| $$ \ $$| $$$$$$$$
\______/ |__/ |__/ \_______/ \_______/|__/ \__/ \____ $$|________/|__/ |__/|________/
/$$ | $$
| $$$$$$/
\______/
Ein Tool, das Ihnen hilft, eine UAC-Bypassing-Funktion in Ihre benutzerdefinierten Win32-Payloads einzubetten (speziell x86_64-Architektur)
| Linux | Windows | |
|---|---|---|
| Architektur | Optional | x86_64 |
| Python 3.x > | JA | NEIN |
| Modul | termcolor | NEIN |
| Distributionen | Beliebig | Windows |
| Version | Beliebig | Windows 7,8,10 |
Linux :
Dieses Tool benötigt ein Python-Modul namens
termcolor. Wenn Sie das Skript ausführen, wird es automatisch installiert, falls Sie es nicht haben, aber wenn das Tool schneller funktionieren soll, empfehle ich Ihnen, es vorher manuell zu installieren
$ pip3 install termcolor #installing termcolor
$ #Temporary usage only, installation below
$ git clone https://github.com/Zenix-Blurryface/SneakyEXE.git
$ cd SneakyEXE/Linux
$ chmod +x sneakyexe.py
$ ./sneakyexe <option>=<path to payload/code> out=<where you wanna save>
[ Windows ]:
- HINWEIS -
Der Payload kann nur erfolgreich von einem Benutzer mit Administratorrechten ausgeführt werden. Benutzer mit eingeschränktem Token würden keinen Erfolg haben.
$ git clone https://github.com/Zenix-Blurryface/SneakyEXE.git $ cd SneakyEXE $ chmod +x install.sh $ sudo ./install.sh
[ Windows ]:
* `NICHT VERFÜGBAR`
* (Bald, wenn viele Leute es fordern)
### Build:
---
- Erstellt auf Opensuse Leap 15.0
- Entwickelt mit `Python 3.6.5`
- Entwickelt mit `gcc (MinGW.org GCC-8.2.0-3) 8.2.0` für die Payload-Kompilierung
###### [ Payload-Einbettung ]
- Um den Elevator aus dem Quellcode zu erstellen, benötigen Sie `gcc gcc 8.2.0` ( `c11` ) und eine AMD64-Maschine mit installiertem Windows 10(7/8) 64-bit.
```sh
# Windows 10/7/8 (AMD64)
# Öffnen Sie cmd.exe / powershell.exe
>> gcc -mwindows -o <ausgabe>.exe /source/main.c
Python 3.5.6 (oder höher) mit Modulen wie Pyinstaller, Pillow und eine AMD64-Maschine mit installiertem Windows 7 64-bit.# Nehmen wir an, wir haben bereits Python vorinstalliert
# Öffnen Sie cmd.exe / powershell.exe
>> pip install pillow # Installing Pillow
>> pip install pyinstaller # Installing Pyinstaller
>> mkdir compile # Optionaler Verzeichnisname
>> cd compile
>> pyinstaller --windowed --onefile --icon=Icon.ico /source/Win32/GUI.py # Für systemische Version ( /sys ), entfernen Sie --onefile
>> cd dist
>> GUI.exe # Die kompilierte ausführbare Datei :}
missbrauchen.Dieses Tool enthält UACme, das ursprünglich von hfiref0x programmiert wurde, aber der Rest wurde größtenteils von mir (Zenix Blurryface) programmiert.
Copyright © 2019 von Zenix Blurryface