Ms Office Exploit 2003,2007,2010,2013 Embed exe in doc,xls
Here's the tutorial:
Step 1:
Download and install MetaSploit.
Step 2:
Open metasploit Console from start menu.
step 3:
Open a system console within metasploit console.
step 4:
place your infected exe in c:\metasploit\apps\pro\msf3\tools
step 5:
Go to c:\metasploit\apps\pro\msf3\tools within system console, which you opened in step 3.
and write this command.
exe2vba.rb infected.exe evil.vba
*change infected.exe's name to your exe filename.
step 6:
check in c:\metasploit\apps\pro\msf3\tools , Your malicious vba file will be there with the name of evil.vba
step 7:
Open Microsoft Word (Any Version).
And go to macros. creat a macro and put first portion of the vba file(Open the vba in notepad to view the code).
Now save it as Word97-2003Doc.
step 8:
Close the Macro Panel(Visual basic editor), and past the remaining shellcode(Copied from the evil.vba file) into the document itself.
Now Save it.
Your Infectious Word Document is ready to spread. You can send it in the email. User just have to enable the macro and it will be infected by your botnet/Rat.
Nice tut man.. Keep it up
ReplyDeletePlease can you email me,, I want to ask you some questions
ReplyDeleteWilliamjone.ce@gmail.com