<p>In this research, we developed seven malware programs utilizing Windows Notepad, NJRAT, and MSFvenom malware development environment. Two BAT viruses were created using Windows Notepad, one to simulate a Matrix effect and another for app bombing. We also developed three types of spyware using MSFvenom targeting Android, macOS, and Windows systems, designed to transmit information from these victims back to the Kali machine. When the spyware was deployed on a Windows system, it was capable of extracting password hashes, taking screenshots, uploading and executing payloads, downloading files, and performing various other exploits through the meterpreter shell. When the spyware was installed on an Android device, it allowed access to call logs, contacts, and geolocation, as well as the ability to send SMS messages and delete apps on the victim's device. When we executed spyware on a&#xa0;Mac machine, we got the&#xa0;process ID of all running applications on Mac, we were able to kill those running applications. The seventh spyware, built using the NJRAT Danger Edition, enabled a range of attacks, such as opening File Explorer and deleting specific folders to gain control over the victim's computer. The entire research and development process took place at the R&amp;D Lab of Gyancity Research Consultancy, located at latitude 28.6519 and longitude 77.2315. We utilized an IP location tracker to obtain the geoinformatics coordinates based on the IP address of our Kali machine.</p>

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Development of malware in Windows sandbox and Kali MSFvenom for hacking Android and Windows Operating Systems

  • Bishwajeet Pandey,
  • Man Mohan Shukla,
  • Pushpanjali Pandey,
  • W. A. W. A. Bakar

摘要

In this research, we developed seven malware programs utilizing Windows Notepad, NJRAT, and MSFvenom malware development environment. Two BAT viruses were created using Windows Notepad, one to simulate a Matrix effect and another for app bombing. We also developed three types of spyware using MSFvenom targeting Android, macOS, and Windows systems, designed to transmit information from these victims back to the Kali machine. When the spyware was deployed on a Windows system, it was capable of extracting password hashes, taking screenshots, uploading and executing payloads, downloading files, and performing various other exploits through the meterpreter shell. When the spyware was installed on an Android device, it allowed access to call logs, contacts, and geolocation, as well as the ability to send SMS messages and delete apps on the victim's device. When we executed spyware on a Mac machine, we got the process ID of all running applications on Mac, we were able to kill those running applications. The seventh spyware, built using the NJRAT Danger Edition, enabled a range of attacks, such as opening File Explorer and deleting specific folders to gain control over the victim's computer. The entire research and development process took place at the R&D Lab of Gyancity Research Consultancy, located at latitude 28.6519 and longitude 77.2315. We utilized an IP location tracker to obtain the geoinformatics coordinates based on the IP address of our Kali machine.