Giter Site home page Giter Site logo

Comments (14)

quantumcore avatar quantumcore commented on June 5, 2024 1

Strange, I just tested it and it works for me. I'll try to reproduce the problem and fix it.

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

Did you try waiting? Give some time to the client. Maybe if you do this when some background process is pending, like if you do reflective dll injection and the server disconnects. It may take some time for the client to clear up used memory and realize it's disconnected.

(For a simple experiment you can check that when the bug happens, The client is taking alot of memory. You can check this in task manager)

Anyway, Give it a moment. I think this might be a bug. So for a temporal fix if used in real world scenarios, Install persistence as backup just in case.

I'll look into it.

Thanks for reporting! 😅

from remote_hacker_probe.

nobeltnium avatar nobeltnium commented on June 5, 2024

hi quantumcore, i did some test like you suggest waiting for about 2 hours. But the connection wont establish back.
This is a screenshot of the memory usage when it was disconnected.
image
FYI Both machine are within LAN and no any kind of AV is running on the windows machine

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

What was the cause of the disconnection?

from remote_hacker_probe.

nobeltnium avatar nobeltnium commented on June 5, 2024

well, closing the server and open it back on and the client won't reconnect, as i mentioned above.
Sorry for the late reply, i was so busy lately

from remote_hacker_probe.

nobeltnium avatar nobeltnium commented on June 5, 2024

To recreate the situation, first i execute the evil file on a windows machine while the server is listening. Once the file is executed, connection is established
image

then close the server, and run it again
image

Once the server is back, the connection cannot be establish. Even after a long period of time (up to 2 hours).

The evil file is still running on windows machine
image

To be able to reconnect to the server, the evil file need to be executed again. Result in 2 instances of it running
image

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

What is the payload you're using?

from remote_hacker_probe.

nobeltnium avatar nobeltnium commented on June 5, 2024

I'm using the standard payload builder that comes with Remote Hacker Probe. With server host and server port information. Without any other options (no Infect USB Drives, no DLL Loader).
image

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

Hey! Can you try testing if this error still exists with the latest release?

from remote_hacker_probe.

Elmani335 avatar Elmani335 commented on June 5, 2024

Hey! Can you try testing if this error still exists with the latest release?

Hey ! I have this issue too, I'll try the new version and tell if it does work soon ! thx

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

@Elmani335 Yes please do so asap.

from remote_hacker_probe.

Elmani335 avatar Elmani335 commented on June 5, 2024

Hey I tried on my vm the new version is working, but i have few questions :

image
on this image ^ how to use the reflective loader handler ? i dont' have any machines apperaing here and I don't know how to use it

image
and on this images ^ on the persistance panel, what does the key mean ? what does it actually do ?

Thx !

from remote_hacker_probe.

Elmani335 avatar Elmani335 commented on June 5, 2024

@quantumcore

from remote_hacker_probe.

quantumcore avatar quantumcore commented on June 5, 2024

@Elmani335 Yo that's off the issue, hit me up on discord, I'll explain you over there.

also will add a wiki for detailed explanations, later.
Meanwhile, Read about the Reflective Loader here ; https://quantumcored.com/index.php/2021/03/11/running-completely-in-memory-using-remote-hacker-probes-new-dll-loader-payload/

from remote_hacker_probe.

Related Issues (19)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.