-->
BLANTERWISDOM101

HOW TO CREATE A ANDROID TROJAN

Tuesday, September 1, 2020

Everybody install and use apps these days. So, the easiest way to hack an android by embedding a Backdoor to a normal apk File. Now, install this apk file on your Victim's phone by using some Social Engineering trick. When it is executed the user will see a normal app but at the same time, our Backdoor will be running in the Background.

REQUIREMENTS

  • A Legitimate android apk file.
  • Kali Linux 
  • The FATRAT (Linux Tool)
  • PROCEDURE 
  • To embed Backdoor in any legitimate apk, we use fatrat. We have to install Fatrat in out terminal. Fatrat is used to generate local or remote listeners. It can generate payloads in various formats. 
  • To Install Fatrat we'll have to use the following commands: (git clone https://github.com/Screetsec/TheFatRat.git)
After cloning into TheFatRat now type:
  1. ls (enter)
  2. cd TheFatRat (enter)
  3. ls (enter)
  4. chmod +x setup.sh (enter)
  5. ls (enter)
  6. ./setup.sh (enter)
It will automatically install all the required dependencies please be patient while it's installing. 
(ping me in the comment section if  you get any error in installing the fatrat with a screenshot)
After installing fatrat now u should change your kali machine to use JAVA 8 by default because in JAVA 10 we cant decompile the APK so to change it to JAVA 8 use the following command: 

update-alternatives --config java

Now, just check the given options and change it to the java8 as default. 
 
Note - Not all apk files will work with these you need to try many variants to successfully embed your backdoor.

Now, run a fat rat tool by typing fat in your terminal and after entering into the fatrat tool, use the option backdooring original apk.

Now, set your LHOST to your IP address and LPORT I prefer 8080. Choose your path where apk file is stored press enter and select the payload you need to choose and the method you need to embed your backdoor to apk file. Choose whether you need to modify the apk file or keep the original file I prefer not to change the file and press enter. Now thefatrat starts to embed your backdoor with the apk. After finishing, use msfconsole and send the apk file to the victim and wait for the reverse connection.
Voila!! Y'll are done!!

Happy Hacking..

   
For any Query - https://telegram.me/techpedal
                          https://instagram.com/techpedal
Share This :
Rajeshwaran

Rajeshwaran is a blogger who is always fascinated with technology and the amount of knowledge he can gather from the internet. He is trying to nerdify everyone around him with that same knowledge, through his writings. Website: Techpedal

0 Comments

:)
:(
hihi
:-)
:D
=D
:-d
;(
;-(
@-)
:P
:o
-_-
(o)
[-(
:-?
(p)
:-s
(m)
8-)
:-t
:-b
b-(
:-#
=p~
$-)
(y)
(f)
x-)
(k)
(h)
(c)
cheer
(li)
(pl)