Avoiding Detection
Malware often tries to stay hidden so it cannot be easily detected. This script will hide the console window when the script is run:
import ctypes #access Windows C functions kernel32 = ctypes.windll.kernel32 #kernel level user32 = ctypes.windll.user32 #user level user32.ShowWindow(kernel32.GetConsoleWindow(), False) #hide console while True: pass
Because you do not have a console window to close, you can kill this Python process using Task Manager when it is run:
data:image/s3,"s3://crabby-images/1f214/1f2144afc8cbf249f85693b23d9ce87f28779f94" alt=""
A rudimentary method of hiding a script is to change an icon:
data:image/s3,"s3://crabby-images/1d671/1d67101d19b44801a4a8b6e3fff58440b57247e6" alt=""
data:image/s3,"s3://crabby-images/e634f/e634f8204b67dbc29d9bcf98e70a536a6f7cce22" alt=""
A more sophisticated method of hiding a script is to disable Task Manager (do not try this):
data:image/s3,"s3://crabby-images/1ab75/1ab753afc27254c109816d0f308574a8f5365aa0" alt=""
n.b. - exam browsers (such as NAPLAN) work this way