📘
✦ Selling Carding Services
I am selling My Carding Services — Western Union Transfer, Bank and PayPal
We are a group of Russian hackers with over 15 years of experience; we specialize on Western union Carding and professional Bank, PayPal transfer services.
VIEW My Services Thread →

POSTSHELL - POST EXPLOITATION BIND - BACKCONNECT SHELL

Tor carder's

TOR SELLER — Your Trusted Source For Secure Digita
Staff member
✨ REGISTERED MEMBER ✨
💎 VERIFIED & TRUSTED SELLER 💎
PostShell is a post-exploitation shell that includes both a bind and a back connect shell. It creates a fully interactive TTY which allows for job control. The stub size is around 14kb and can be compiled on any Unix like system.

Why not use a traditional Backconnect/Bind Shell?
PostShell allows for easier post-exploitation by making the attacker less dependant on dependencies such as Python and Perl. It also incorporates both a back connect and bind shell, meaning that if a target doesn't allow outgoing connections an operator can simply start a bind shell and connect to the machine remotely. PostShell is also significantly less suspicious than a traditional shell due to the fact both the name of the processes and arguments are cloaked.

Features
​
  • Anti-Debugging, if ptrace is detected as being attached to the shell it will exit.​
  • Process Name/Thread names are cloaked, a fake name overwrites all of the system arguments and file name to make it seem like a legitimate program.​
  • TTY, a TTY is created which essentially allows for the same usage of the machine as if you were connected via SSH.​
  • Bind/Backconnect shell, both a bind shell and back connect can be created.​
  • Small Stub Size, a very small stub(<14kb) is usually generated.​
  • Automatically Daemonizes​
  • Tries to set GUID/UID to 0 (root)​
 
Back
Top