bytecode77 / living-off-the-land

Fileless attack with persistence
https://bytecode77.com/living-off-the-land
BSD 2-Clause "Simplified" License
286 stars 54 forks source link

Example of UI error #2

Closed Ekultek closed 3 years ago

Ekultek commented 3 years ago

Would you be kind enough to show an example of the UI issues in regedit from the null byte key?

bytecode77 commented 3 years ago

You can just run LivingOffTheLand.exe to install it. Then, go to the registry Run\ key as seen on the screenshot. You will see the error message from RegEdit caused by the null embedded character.

When you run Uninstall.exe, both registry values are removed, which is a complete uninstallation. RegEdit will display the Run\ key normally again.

Ekultek commented 3 years ago

@bytecode77 i found one online also, thank you i appreciate your time. (I totally forgot I made this issue lol)