From 7f31ef875fb37a855557a7c72422810dfa60ad39 Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:28:43 -0700 Subject: [PATCH 1/6] Update payload.txt - Added DS3 ATTACKMODE for ease of use - Changed a capitol to lowercase to appease DS3 - Tweaked batch commands slightly --- payloads/library/prank/Rick_Rolling_Forever/payload.txt | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/payloads/library/prank/Rick_Rolling_Forever/payload.txt b/payloads/library/prank/Rick_Rolling_Forever/payload.txt index 14173d86..cd134a2b 100644 --- a/payloads/library/prank/Rick_Rolling_Forever/payload.txt +++ b/payloads/library/prank/Rick_Rolling_Forever/payload.txt @@ -5,9 +5,10 @@ REM REM Description: Creates a batch file that opens a Rick Roll every 5 mins in default browser REM Notes: Creates batch file, starts batch file, minimizes the window REM Target: Windows but fairly easily modified to work on any OS with a browser -REM Version: 1.3 +REM Version: 1.5 REM Category: Prank REM Source: https://github.com/UberGuidoZ/OMG-Payloads +ATTACKMODE HID STORAGE DELAY 2000 GUI r DELAY 500 @@ -20,6 +21,7 @@ DELAY 1000 STRING copy con rr.bat ENTER STRING @ECHO OFF +ENTER STRING PING 127.0.0.1 -n 5 > NUL ENTER STRING :LOOP @@ -30,7 +32,8 @@ STRING PING 127.0.0.1 -n 300 > NUL ENTER STRING GOTO LOOP ENTER -CTRL C +CTRL c DELAY 1000 STRING cls && rr.bat +ENTER GUI DOWNARROW From aac80c93addd64435876130a52f7de48df8419e6 Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:29:44 -0700 Subject: [PATCH 2/6] Update payload.txt - Added DS3 ATTACKMODE for ease of use --- payloads/library/prank/Hacker_Typer/payload.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/payloads/library/prank/Hacker_Typer/payload.txt b/payloads/library/prank/Hacker_Typer/payload.txt index 15b9f8f1..bc76c22a 100644 --- a/payloads/library/prank/Hacker_Typer/payload.txt +++ b/payloads/library/prank/Hacker_Typer/payload.txt @@ -2,9 +2,10 @@ REM Title: Hacker Typer REM Author: UberGuidoZ REM Description: Opens a harmless website and types like a hacker REM Target: Windows but easily modified to work on any OS with a browser -REM Version: 1.0 +REM Version: 1.1 REM Category: Prank REM Source: https://github.com/UberGuidoZ/OMG-Payloads +ATTACKMODE HID STORAGE REM DELAY 1500 GUI r From b967bd9dc551411ae28f4833ff2551937deb218f Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:44:34 -0700 Subject: [PATCH 3/6] Adding to OMG as well since it works - This has been around on RD section for a bit but works on OMG as well. --- .../prank/The_Matrix-Wake_Up/ReadMe.md | 9 ++ .../prank/The_Matrix-Wake_Up/payload.txt | 152 ++++++++++++++++++ 2 files changed, 161 insertions(+) create mode 100644 payloads/library/prank/The_Matrix-Wake_Up/ReadMe.md create mode 100644 payloads/library/prank/The_Matrix-Wake_Up/payload.txt diff --git a/payloads/library/prank/The_Matrix-Wake_Up/ReadMe.md b/payloads/library/prank/The_Matrix-Wake_Up/ReadMe.md new file mode 100644 index 00000000..8a9f7e9e --- /dev/null +++ b/payloads/library/prank/The_Matrix-Wake_Up/ReadMe.md @@ -0,0 +1,9 @@ +This is a simple Ducky Script that recreates the "Wake up Neo" or "Follow the white rabbit" [terminal scene from The Matrix](https://youtu.be/6IDT3MpSCKI?t=28). + +![Short_Example](https://user-images.githubusercontent.com/57457139/165814938-259abe8e-9d9a-4ca9-b40b-f2214b7c3fb4.gif) + +Basic Ducky Script, should work on all supported devices. Beeps at the end require Powershell 2.0 or above, everything else is just text in the CMD prompt. + +Launches CMD, changes to green text, makes full screen, types out the scene, then obscures the prompt and beeps (knocks) twice, then exits. + +Kudos to [Kalani](https://github.com/kalanihelekunihi), [MG](https://github.com/OMG-MG), [I-Am-Jakoby](https://github.com/I-Am-Jakoby), and [Hak5](https://hak5.org/) for help and support! diff --git a/payloads/library/prank/The_Matrix-Wake_Up/payload.txt b/payloads/library/prank/The_Matrix-Wake_Up/payload.txt new file mode 100644 index 00000000..2dd6819b --- /dev/null +++ b/payloads/library/prank/The_Matrix-Wake_Up/payload.txt @@ -0,0 +1,152 @@ +REM Title: The Matrix Wake Up +REM Description: Recreates the Wake Up Neo terminal scene in The Matrix +REM Author: UberGuidoZ +REM Target: Windows (including Powershell 2.0 or above) +ATTACKMODE HID STORAGE +DELAY 3000 +GUI r +DELAY 750 +STRING cmd +ENTER +DELAY 750 +STRING color 02 && ECHO OFF && cls +ENTER +ALT ENTER +DELAY 1000 +STRING W +DELAY 100 +STRING a +DELAY 100 +STRING k +DELAY 100 +STRING e +DELAY 100 +SPACE +DELAY 100 +STRING u +DELAY 100 +STRING p +DELAY 100 +STRING . +DELAY 100 +SPACE +DELAY 1000 +STRING N +DELAY 250 +STRING e +DELAY 250 +STRING o +DELAY 250 +STRING . +DELAY 250 +STRING . +DELAY 250 +STRING . +DELAY 3500 +CTRL HOME +DELAY 1500 +STRING T +DELAY 300 +STRING h +DELAY 300 +STRING e +DELAY 300 +SPACE +DELAY 300 +STRING M +DELAY 300 +STRING a +DELAY 300 +STRING t +DELAY 300 +STRING r +DELAY 300 +STRING i +DELAY 300 +STRING x +DELAY 300 +SPACE +DELAY 300 +STRING h +DELAY 300 +STRING a +DELAY 300 +STRING s +DELAY 300 +SPACE +DELAY 300 +STRING y +DELAY 300 +STRING o +DELAY 300 +STRING u +DELAY 300 +STRING . +DELAY 300 +STRING . +DELAY 300 +STRING . +DELAY 3500 +CTRL HOME +STRING F +DELAY 100 +STRING o +DELAY 100 +STRING l +DELAY 100 +STRING l +DELAY 100 +STRING o +DELAY 100 +STRING w +DELAY 100 +SPACE +DELAY 100 +STRING t +DELAY 100 +STRING h +DELAY 100 +STRING e +DELAY 100 +SPACE +DELAY 100 +STRING w +DELAY 100 +STRING h +DELAY 100 +STRING i +DELAY 100 +STRING t +DELAY 100 +STRING e +DELAY 100 +SPACE +DELAY 100 +STRING r +DELAY 100 +STRING a +DELAY 100 +STRING b +DELAY 100 +STRING b +DELAY 100 +STRING i +DELAY 100 +STRING t +DELAY 100 +STRING . +DELAY 3500 +CTRL HOME +DELAY 1500 +STRING Knock, knock, Neo. +DELAY 3500 +CTRL HOME +STRING COLOR 7F +ENTER +ALT ENTER +STRING mode con:cols=18 lines=1 +ENTER +STRING powershell [console]::beep(200,325); [console]::beep(200,325) +ENTER +DELAY 1500 +ALT F4 From a3fc6908d4d0cecf611ab5e8c0fe3aaa17dcc479 Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:50:58 -0700 Subject: [PATCH 4/6] Update payload.txt - Updated for OMG vs RD --- payloads/library/prank/The_Matrix-Wake_Up/payload.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/payloads/library/prank/The_Matrix-Wake_Up/payload.txt b/payloads/library/prank/The_Matrix-Wake_Up/payload.txt index 2dd6819b..10ed5377 100644 --- a/payloads/library/prank/The_Matrix-Wake_Up/payload.txt +++ b/payloads/library/prank/The_Matrix-Wake_Up/payload.txt @@ -2,7 +2,7 @@ REM Title: The Matrix Wake Up REM Description: Recreates the Wake Up Neo terminal scene in The Matrix REM Author: UberGuidoZ REM Target: Windows (including Powershell 2.0 or above) -ATTACKMODE HID STORAGE +REM Version: v1.0 DELAY 3000 GUI r DELAY 750 From cf929705fda10332afca56c7dc253ee77897868d Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:51:22 -0700 Subject: [PATCH 5/6] Update payload.txt - Updated for OMG vs RD --- payloads/library/prank/Rick_Rolling_Forever/payload.txt | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/payloads/library/prank/Rick_Rolling_Forever/payload.txt b/payloads/library/prank/Rick_Rolling_Forever/payload.txt index cd134a2b..2fd7cc8d 100644 --- a/payloads/library/prank/Rick_Rolling_Forever/payload.txt +++ b/payloads/library/prank/Rick_Rolling_Forever/payload.txt @@ -5,10 +5,9 @@ REM REM Description: Creates a batch file that opens a Rick Roll every 5 mins in default browser REM Notes: Creates batch file, starts batch file, minimizes the window REM Target: Windows but fairly easily modified to work on any OS with a browser -REM Version: 1.5 +REM Version: 1.4 REM Category: Prank REM Source: https://github.com/UberGuidoZ/OMG-Payloads -ATTACKMODE HID STORAGE DELAY 2000 GUI r DELAY 500 From c3e54f4b6f2d600dac0591e1e9bcfd64e4d7ecbc Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sun, 27 Oct 2024 14:51:47 -0700 Subject: [PATCH 6/6] Update payload.txt - Updated for OMG vs DS3 --- payloads/library/prank/Hacker_Typer/payload.txt | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/payloads/library/prank/Hacker_Typer/payload.txt b/payloads/library/prank/Hacker_Typer/payload.txt index bc76c22a..15b9f8f1 100644 --- a/payloads/library/prank/Hacker_Typer/payload.txt +++ b/payloads/library/prank/Hacker_Typer/payload.txt @@ -2,10 +2,9 @@ REM Title: Hacker Typer REM Author: UberGuidoZ REM Description: Opens a harmless website and types like a hacker REM Target: Windows but easily modified to work on any OS with a browser -REM Version: 1.1 +REM Version: 1.0 REM Category: Prank REM Source: https://github.com/UberGuidoZ/OMG-Payloads -ATTACKMODE HID STORAGE REM DELAY 1500 GUI r