ddoor: Install backdoor via DNS txt files

Ddoor is a lightweight cross-platform script that uses .txt dns to execute commands on infected machines.

Specifications

  • Allows a txt record to have separate commands for both Linux and Windows computers
  • List of about 10 public DNS servers from which to randomly select the one to use
  • Return connection at unforeseen times
  • Encrypts txt files using xor with custom access

Installation

git clone https://github.com/rek7/ddoor.git pip3 install -r requirements.txt

Use

Run the payload_manager.py file with python3 to generate an encoded and then update or create a txt record to gain access. Make sure TTL is set to 300 seconds!!!

$ ./payload_manager.py -h @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ @ @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@!  @@@ @@!  @@@ @@!  @@@ @@!  @@@ @@!  @@@
!@!  @!@  !@!  @!@  !@!  @!@  !@!  @!@  !@!  @!@ @!@  !@!  @!@  !@!  @!@  !@!  @!@  !@!  @!@!!@!
!@!  !!!  !@!  !!!  !@!  !!!  !@!  !!!  !!@!@!
!!:  !!!  !!:  !!!  !!:  !!!  !!:  !!!  !!::!!
:!:  !:!  :!:  !:!  :!:  !:!  :!:  !:!  :!:  !:!
 :::: :: :::: :: ::::: :: ::::: :: :: ::: :: :  :   :: :  :    : :  :    : :  :    :   : :
usage: payload_manager.py [-h] [-l LINUX_CMD] [-w WINDOWS_CMD] [-d DOMAIN_SEARCH] ddoor, crossplatform dns 

optional arguments: -h, --help show this help message and exit
  -l LINUX_CMD Linux 
  -w WINDOWS_CMD Windows Command -d DOMAIN_SEARCH Domain to Check Commands On

Snapshots ς

 

You can download the program from here.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).