Home
Forums
New posts
Search forums
What's new
New posts
New profile posts
Latest activity
Members
Current visitors
New profile posts
Search profile posts
Log in
Register
What's new
Search
Search
Search titles only
By:
New posts
Search forums
Menu
Log in
Register
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Reply to thread
Home
Forums
CARDING & HACKING
HOSTING & BOTNET
One of the ways to extract traffic in 2023
Message
<blockquote data-quote="Ghosthunter" data-source="post: 541" data-attributes="member: 6"><p>You get these launchers with the downloadandexecute function, of course this is better than inflating the file to hell knows how many MB, so the best option. Because of the scarcity, I decided to open it, see how it works and make it for myself, it turned out in the end:</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.eafb45e2f077ac471b1dc7a17fda5174.png" alt="image.png.eafb45e2f077ac471b1dc7a17fda5174.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.a36d9f70bb8a59cafb0bc060ff33214d.png" alt="image.png.a36d9f70bb8a59cafb0bc060ff33214d.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p>Of course, we won't shoot the whole office, but it's beautiful and not in public. Much more convenient, more beautiful. more original. The advantage is that a person gets what they downloaded, and I get goodies from them. That is, if a person downloaded a crack, he gets a crack, if he downloaded software, he gets this software.</p><p></p><p>If this is not enough, then you can of course use the creation of installers. There are a whole bunch of them, so there is a wide choice. We throw up a bunch of unnecessary files, create an installer with a shortcut. Optimal in my opinion:</p><p></p><p><em>Nullsoft Scriptable Install System</em></p><p><em></em></p><p><em>Advanced Installer</em></p><p><em></em></p><p><em>Inno Setup</em></p><p><em></em></p><p><em>WIX Toolset</em></p><p></p><p>Guides on how to use them can be found in Google and on YouTube, so I don't see any point in describing how to use them.</p><p></p><p><strong>Name.xll</strong></p><p></p><p>Add-in files for mircosoft excel have become quite common at the moment</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.b975da02d4bf17724d20d27d11d06cf8.png" alt="image.png.b975da02d4bf17724d20d27d11d06cf8.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p>Their advantage is that, at the moment, they are relevant for spam and google chrome does not aggra on them, which contributes to the open files, since they can not be opened on ios, from the phone too, the online file is not supported, so you will have to download and run. Quite an interesting thing, who has good smtp servers for the masses of spam. Prices range from 100 bach for a single crypt to 5k per month.</p><p></p><p><strong>Name.lnk</strong></p><p></p><p>Quite a new method, which became relevant in the public not so long ago. There are current sellers on the forum, you can view them in a little more detail.</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.a382ffe7a3662ea6d944dbb346bc96de.png" alt="image.png.a382ffe7a3662ea6d944dbb346bc96de.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p>Here is such a thing I was recently sent for testing, of course, I immediately saw through the chip, so developers, take a closer look at what you are working on and what files you are opening. The essence is the same as with xll - you open a file, get a document or text file, but the victim's PC gets infected.</p><p></p><p><strong>The rest</strong></p><p></p><p>Here it will be in a couple of words and screenshots.</p><p></p><p><strong>.iso \. img</strong> - suitable for those who keep sites with large software and games. Suitable for torrents, if the file is well-scripted, then everything will be ok.</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.56155e8c98473a6cd2f7e6cf0a942db1.png" alt="image.png.56155e8c98473a6cd2f7e6cf0a942db1.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.deacb245f9257a5387a17969f96cfd82.png" alt="image.png.deacb245f9257a5387a17969f96cfd82.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p><strong>.pif</strong> is the same as .lnk, but it looks different. The response to it is also not very quick and easy to trigger.</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.2ee15e7bf8366a3afc1b8257999c0c4d.png" alt="image.png.2ee15e7bf8366a3afc1b8257999c0c4d.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p><strong>.html</strong> - I haven't seen them for 2-3 weeks already, but in fact, they usually put them to normal software under the guise of a manual. Av triggers on them as well as on the exe file.</p><p></p><p><img src="https://forum.exploit.in/uploads/monthly_2022_07/image.png.fe3bf0874b37564f04880728696816e1.png" alt="image.png.fe3bf0874b37564f04880728696816e1.png" class="fr-fic fr-dii fr-draggable " style="" /></p><p></p><p></p><p>Well, from those files that I caught or did myself, I unsubscribed. There is no point in telling about .ps1 and other things here, since the article is for beginners. Now let's move on to the methods themselves, otherwise I probably already tired you out with some incomprehensible writing.</p><p></p><p><strong>File delivery methods</strong></p></blockquote><p></p>
[QUOTE="Ghosthunter, post: 541, member: 6"] You get these launchers with the downloadandexecute function, of course this is better than inflating the file to hell knows how many MB, so the best option. Because of the scarcity, I decided to open it, see how it works and make it for myself, it turned out in the end: [IMG alt="image.png.eafb45e2f077ac471b1dc7a17fda5174.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.eafb45e2f077ac471b1dc7a17fda5174.png[/IMG] [IMG alt="image.png.a36d9f70bb8a59cafb0bc060ff33214d.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.a36d9f70bb8a59cafb0bc060ff33214d.png[/IMG] Of course, we won't shoot the whole office, but it's beautiful and not in public. Much more convenient, more beautiful. more original. The advantage is that a person gets what they downloaded, and I get goodies from them. That is, if a person downloaded a crack, he gets a crack, if he downloaded software, he gets this software. If this is not enough, then you can of course use the creation of installers. There are a whole bunch of them, so there is a wide choice. We throw up a bunch of unnecessary files, create an installer with a shortcut. Optimal in my opinion: [I]Nullsoft Scriptable Install System Advanced Installer Inno Setup WIX Toolset[/I] Guides on how to use them can be found in Google and on YouTube, so I don't see any point in describing how to use them. [B]Name.xll[/B] Add-in files for mircosoft excel have become quite common at the moment [IMG alt="image.png.b975da02d4bf17724d20d27d11d06cf8.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.b975da02d4bf17724d20d27d11d06cf8.png[/IMG] Their advantage is that, at the moment, they are relevant for spam and google chrome does not aggra on them, which contributes to the open files, since they can not be opened on ios, from the phone too, the online file is not supported, so you will have to download and run. Quite an interesting thing, who has good smtp servers for the masses of spam. Prices range from 100 bach for a single crypt to 5k per month. [B]Name.lnk[/B] Quite a new method, which became relevant in the public not so long ago. There are current sellers on the forum, you can view them in a little more detail. [IMG alt="image.png.a382ffe7a3662ea6d944dbb346bc96de.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.a382ffe7a3662ea6d944dbb346bc96de.png[/IMG] Here is such a thing I was recently sent for testing, of course, I immediately saw through the chip, so developers, take a closer look at what you are working on and what files you are opening. The essence is the same as with xll - you open a file, get a document or text file, but the victim's PC gets infected. [B]The rest[/B] Here it will be in a couple of words and screenshots. [B].iso \. img[/B] - suitable for those who keep sites with large software and games. Suitable for torrents, if the file is well-scripted, then everything will be ok. [IMG alt="image.png.56155e8c98473a6cd2f7e6cf0a942db1.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.56155e8c98473a6cd2f7e6cf0a942db1.png[/IMG] [IMG alt="image.png.deacb245f9257a5387a17969f96cfd82.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.deacb245f9257a5387a17969f96cfd82.png[/IMG] [B].pif[/B] is the same as .lnk, but it looks different. The response to it is also not very quick and easy to trigger. [IMG alt="image.png.2ee15e7bf8366a3afc1b8257999c0c4d.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.2ee15e7bf8366a3afc1b8257999c0c4d.png[/IMG] [B].html[/B] - I haven't seen them for 2-3 weeks already, but in fact, they usually put them to normal software under the guise of a manual. Av triggers on them as well as on the exe file. [IMG alt="image.png.fe3bf0874b37564f04880728696816e1.png"]https://forum.exploit.in/uploads/monthly_2022_07/image.png.fe3bf0874b37564f04880728696816e1.png[/IMG] Well, from those files that I caught or did myself, I unsubscribed. There is no point in telling about .ps1 and other things here, since the article is for beginners. Now let's move on to the methods themselves, otherwise I probably already tired you out with some incomprehensible writing. [B]File delivery methods[/B] [/QUOTE]
Name
Verification
Post reply
Home
Forums
CARDING & HACKING
HOSTING & BOTNET
One of the ways to extract traffic in 2023
Top