Ghost-Audit is an advanced post-exploitation and reconnaissance tool designed for BadUSB devices (Flipper Zero, USB Rubber Ducky, Digispark Attiny85). It targets Windows systems to gather comprehensive system, network, hardware, and Wi-Fi information in seconds using optimized command chains.
EN: This project is intended for educational purposes and authorized security auditing only. Usage of these scripts on systems without prior mutual consent is illegal. The author assumes no liability and is not responsible for any misuse or damage caused by this program.
TR: Bu proje yalnΔ±zca eΔitim amaΓ§lΔ± ve yetkili gΓΌvenlik denetimleri iΓ§in geliΕtirilmiΕtir. Δ°zinsiz sistemlerde kullanΔ±mΔ± yasadΔ±ΕΔ±dΔ±r. Bu yazΔ±lΔ±mΔ±n kΓΆtΓΌye kullanΔ±mΔ±ndan doΔacak sorumluluk tamamen kullanΔ±cΔ±ya aittir.
Ghost-Audit features two distinct operational modes tailored for different engagement scenarios:
Designed for speed and invisibility. It executes chained commands in a minimized window to grab essential data instantly.
- Payload Name:
Stealth_Mode_PAYLOAD - Execution Time: ~5-8 Seconds
- Technique: Minimized CMD window (
cols=20), optimized command chaining (&). - Output:
%USERPROFILE%\Desktop\Logs - Data: Basic IP/DNS, ARP Table, Wi-Fi Profiles, User Info.
Designed for deep system analysis. It creates a structured log hierarchy and digs deep into the system internals using stable delays.
- Payload Name:
Detailed_Mode_PAYLOAD - Execution Time: ~30-40 Seconds
- Technique: Stable execution flow, detailed queries, registry parsing.
- Output:
%USERPROFILE%\Desktop\PC_Audit_Logs - Data:
- π₯οΈ System: CPU/RAM/Disk details, Installed Software (Registry), USB Connection History, Services, Processes.
- π Network: Full IP Config, DNS History, Route Table, Active Connections (Ports), Shares, Firewall State.
- π Wi-Fi: Exports ALL saved Wi-Fi profiles (SSID & Passwords) to XML files.
Ghost-Audit/
βββ Payloads/
β βββ FlipperZero/ # .txt payloads for Flipper Zero / Rubber Ducky
β β βββ Stealth_Mode_PAYLOAD.txt
β β βββ Detailed_Mode_PAYLOAD.txt
β β
β βββ Digispark/ # .ino sketches for Arduino IDE
β βββ Stealth_Mode_PAYLOAD/
β β βββ Stealth_Mode_PAYLOAD.ino
β βββ Detailed_Mode_PAYLOAD/
β βββ Detailed_Mode_PAYLOAD.ino
β
βββ LICENSE # MIT License
βββ README.md # Documentation