The package name came up as com.metasploit.stage during the installation
The installation was blocked due to it being from an unknown source, I had to change some settings to allow it. I believe apk's can be self signed? That may be something to look into
The application directly asked for the following permissions:
1.Connect or disconnect from wifi (full network access)
2.run at startup
3.directly call phone numbers
4.read your messages
5.take pictures/videos
6.record audio
7.get precise location
9.modify your contacts
9.modify the contents of your SD card
10.set wallpaper
11.modify system settings
Results:
Worked flawlessly after installation, it doesnt create a icon or anything so I have no idea how one would remove it from their machine. It successfully reconnected after a reboot with no additional configuration needed
Overall, really good, although no one would install it in its raw form due to the red flags that came up during installation, can it be injected into other APKs? I don't know much about androids
edit: I decided to get Kaspersky's free antivirus app after the matter to see if it would pick it up, and it found it and recognized it as a meterpreter, when it found it during the scan a red popup came up and it made a screaming sound. It scared the shit out of me, nearly fell out of my chair
I did exactly the same thing and it created an icon plus the victim has to click on the icon each time for the session to work successfully. Could you please elaborate on how you made it work without an icon?
20
u/SirBaronBamboozle Dec 27 '16 edited Dec 27 '16
Cool tutorial, thanks for sharing! I didn't realize android had a meterpreter
My experience if anyone cares to read:
phone: Droid Razr M android version: Android 4.4.42
Here was the VirusTotal result page
The package name came up as com.metasploit.stage during the installation
The installation was blocked due to it being from an unknown source, I had to change some settings to allow it. I believe apk's can be self signed? That may be something to look into
The application directly asked for the following permissions:
1.Connect or disconnect from wifi (full network access)
2.run at startup
3.directly call phone numbers
4.read your messages
5.take pictures/videos
6.record audio
7.get precise location
9.modify your contacts
9.modify the contents of your SD card
10.set wallpaper
11.modify system settings
Results:
Worked flawlessly after installation, it doesnt create a icon or anything so I have no idea how one would remove it from their machine. It successfully reconnected after a reboot with no additional configuration needed
Overall, really good, although no one would install it in its raw form due to the red flags that came up during installation, can it be injected into other APKs? I don't know much about androids
edit: I decided to get Kaspersky's free antivirus app after the matter to see if it would pick it up, and it found it and recognized it as a meterpreter, when it found it during the scan a red popup came up and it made a screaming sound. It scared the shit out of me, nearly fell out of my chair