-
Notifications
You must be signed in to change notification settings - Fork 210
Page 7. User Manual
- APK Builder
- πΆ Configuring Payloads With Tunneling Services
- π Listening
- π¬ Victims Lab
- Manually Template Original APK Files
To build a standalone AhMyth payload, all you need to do is the following;
-
Launch AhMyth
-
Click the
APK Builder
Tab -
Type your IP address into the Server IP box
-
Type your Port number into the Server Port Box. You can choose any port number between 1024 & 65535
-
Click the Red
β‘|Build
Button
If you face problems while building then consult the AhMyth Troubleshoot Wiki
To use a legit APK as a Template for your next AhMyth payload, all you need to do is the following;
-
In the APK Builder Tab, click the Bind with another APK Check box
-
Click the black Browse APK button and browse for the original APK you want to use a template for your next AhMyth Payload
-
Type your IP address into the Server IP box
-
Type your Port number into the Server Port Box. You can choose any port number between 1024 & 65535
-
Select a Binding Method.
-
On Boot Method - This method requires the victim device to restart in order for the client to establish a connection to the server upon the infected APK being launched.
-
On Launch Method - This method establishes connection from the client to the server upon the infected APK being launched at any time after installation, No restart is required for the victim device using this method.
- Click the Green
π¨|Bind
Button.
If you face problems while binding then consult the AhMyth Troubleshoot Wiki.
AhMyth is very unique in the sense that it contains a MultiPort Listener which is capable of listening on and receiving multiple connections, from multiple Ports at the same time, all while keeping any of the connections received, alive with one another!
Using the MultiPort Listener is very simple.
- Type the Port number that was used when you built the payload APK and Click
>_ Listen
. - Wait for the infected APK to be launched/opened on the Victim Device.
- Once you are done with your victims, you can go ahead and click the
>_ Stop
button to disconnect the Server from all active clients/payloads on any specific port, make sure you type the port you want to drop client connections from beforehand.
Standalone payloads will connect straight away, both on Boot and on Launch! Bound payloads however, will only connect based on the Binding method you chose.
The Camera option in the Victims Lab, allows the user to snap photos using the Victim Devices camera without a Preview.
It's simple, to snap photos from the Victim Device, just do the following;
-
Click the
Camera Tab
in the Victims Lab -
In the Top-middle of the
Camera Tab
, click the small drop menu to select the Camera you want to snap from.
-
From here, you can choose two options;
- Front Camera
- Back Camera
-
After selecting the Camera to be used, you can go ahead and click the Snap Button.
-
Click the Red Save button at the top of the image holder, to save the the snapped photo.
Do take note that the payload APK must be in use (AKA open and running) for the Camera to work properly, this is not a bug, it's due to One-time Permissions in Android version 9 and up, a way to bypass this will be found for future use!
-
Click the
File Browser
tab next to theCamera
Tab in the Victims Lab, -
Start browsing the Victim Device's storage
-
If you find a file you want to save then double click it, and click the red Save button.
Take note this feature is still beta, as it only grants access to storage/emulated/0/
, this will be updated, so be patient!
To record from the Victim Device Microphone, just do the following
- Input the amount of seconds to record in the Duration box
2 Click the Red Record button to start recording and be patient for the audio to return, the audio will return after the amount of time you inputted to record for, is up.
- Click the Red Save button to save the recording if you wish.
The Geolocation Manager will automatically display the current geographical whereabouts of the victim device while also displaying the Longitude and Latitude of the devices whereabouts in the black Log box.
Take note that the Labs location feature only works when the Victim Device's GPS is turned on.
If the Geolocation Manager fails to find the devices whereabouts, and you know for sure that devices GPS is active, then click the Black Refresh Button, if it still fails then open an Issue Ticket.
The SMS manager has 2 features;
- Sending Messages
- Reading Messages
-
In the "Send SMS" Tab, type out the message to be sent into the Large Blank Message Box
-
Input the Phone Number the message will be sent to, then click the "Send" button
-
Click the "SMS List" Tab within the SMS tab in the Victims Lab
-
Click any of the messages you see to read them
-
Click the Red "Save" button to save the message being viewed if you wish.
The Contacts Manager is very simple, to use the contacts manager just do the following;
-
Click the Contacts Tab in the Victims Lab
-
Click the Red Save Button to save any number you see.