Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Permissions question #76

Open
oscarmoraog opened this issue Nov 11, 2024 · 2 comments
Open

Permissions question #76

oscarmoraog opened this issue Nov 11, 2024 · 2 comments

Comments

@oscarmoraog
Copy link

oscarmoraog commented Nov 11, 2024

It's not a bug, only a thread for an open question.

I'm testing the capabilities of this code but I didn't find the way to run it permanently within my windows.

  • I already added as exception within my Windows defender.
  • Already added the evil_file.exe to the task scheduler to start runing by every time windows starts.
  • It works perfectly when windows starts, but at some point it starts to send blank logs and a black screenshots to my inbox.
  • Also, when the computer got suspended and return, the code stop working, are there ways to keep those services running forever?
  • When running manually (From a double-click), it works perfectly but I can't make it persistence. (At least I don't know how to do that.)

I've tried restarting the services by every 10 minutes, (pointing to my evil file, not the svchost.exe)
I've tried adding it to the startup folder.
Already tested several task_manager configs, but no one solved my issue.

It sounds to me likely a permission issue, but I didn't figure out how to solve, do you have any windows hints or guide for that? I'm a linux user, so not very used to work with windows tho.

Thanks.

@PushpenderIndia
Copy link
Owner

most probably av is detecting and killing the persistence exe, try disabling defender or any other av completely

@oscarmoraog
Copy link
Author

I've added the files as whitelist within AV setup. But still getting this issue

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants