In this article, I will show you how you can bind the exe file with any file (like image, PDF, video, audio). When the victim clicks on that file we get the Meterpreter session in our Metasploit console.
Steps to Hide an EXE file inside an Image
Requirement
- WinRAR
- An EXE file
In this example, I am using these two files. One is the image skull image and another one is the exe file.
2. Now convert the jpg image to icon(.ico) format. Open your browser and google for "ico converter" and choose any of them. Upload the file and choose the size 64*64.
3. Now select both two files right-click on your mouse and select WinRAR, and then Click on Add to archive.
- Change the archive name (If it is an image then jpg, png, or if it is a pdf file then .pdf).
- Check the box to create an SFX archive.
4. Click on the advanced tab.
- Click on the SFX option.
5. A window will appear.
- Now click on setup.
- Here type both files in a manner.
6. Now go to the modes Tab.
- Check the box unpack to the temporary folder
- Click Hide all
7. Now click on the Text and icon. Here choose the converted ico file.
- Now click update.
8. Here click on extract and update file. Here click on Overwrite all files. Now click ok. OK.
9. All done! Now a new file is generated.