This post is by a banned member (zVeqsxy) - Unhide
01 October, 2022 - 10:02 PM
Reply
(23 May, 2021 - 05:38 PM)RegisteredUser Wrote: Show MoreUse it on your own risk, we are not responsible for anything.
About this rat:Main Features
- .NET
- Coded in Visual Basic .NET, Client required framework 2.0 or 4.0 dependency, And server is 4.0
- Connection
- Using pastebin.com as ip:port , Instead of noip.com DNS. And Also using multi-ports
- Plugin
- Using plugin system to decrease stub's size and lower the AV detection
- Encryption
- The communication between server & client is encrypted with AES
- Spreading
- Infecting all files and folders on USB drivers
- Bypass
- Low AV detection and undetected startup method
- Lightweight
- Payload size is about 25 KB
- Anti Virtual Machines
- Uninstall itself if the machine is virtual to avoid scanning or analyzing
- Ransomware
- Encrypting files on all HHD and USB with .Lime extension
- XMR Miner
- High performance Monero CPU miner with user idle\active optimizations
- DDoS
- Creating a powerful DDOS attack to make an online service unavailable
- Crypto Stealer
- Stealing Cryptocurrency sensitive data
- Screen-Locker
- Prevents user from accessing their Windows GUI
- And more
- On Connect Auto Task
- Force enable Windows RDP
- Persistence
- File manager
- Passowrds stealer
- Remote desktop
- Bitcoin grabber
- Downloader
- Keylogger
Please give me likes and rap if you enjoyed this rat!!!!
thanks mate
This post is by a banned member (turkzeb1) - Unhide
03 October, 2022 - 04:19 PM
Reply
This post is by a banned member (SkallePer) - Unhide
27 October, 2022 - 03:52 PM
Reply
This post is by a banned member (y1059) - Unhide
12 November, 2022 - 06:09 PM
Reply
[font][font]thanks[/font][/font]
This post is by a banned member (devilssh) - Unhide
07 December, 2022 - 02:59 PM
Reply
The AES connection looks pretty interesting... thanks for sharing
This post is by a banned member (Savvilicious) - Unhide
22 December, 2022 - 12:42 AM
Reply
(23 May, 2021 - 05:38 PM)RegisteredUser Wrote: Show MoreUse it on your own risk, we are not responsible for anything.
About this rat:Main Features
- .NET
- Coded in Visual Basic .NET, Client required framework 2.0 or 4.0 dependency, And server is 4.0
- Connection
- Using pastebin.com as ip:port , Instead of noip.com DNS. And Also using multi-ports
- Plugin
- Using plugin system to decrease stub's size and lower the AV detection
- Encryption
- The communication between server & client is encrypted with AES
- Spreading
- Infecting all files and folders on USB drivers
- Bypass
- Low AV detection and undetected startup method
- Lightweight
- Payload size is about 25 KB
- Anti Virtual Machines
- Uninstall itself if the machine is virtual to avoid scanning or analyzing
- Ransomware
- Encrypting files on all HHD and USB with .Lime extension
- XMR Miner
- High performance Monero CPU miner with user idle\active optimizations
- DDoS
- Creating a powerful DDOS attack to make an online service unavailable
- Crypto Stealer
- Stealing Cryptocurrency sensitive data
- Screen-Locker
- Prevents user from accessing their Windows GUI
- And more
- On Connect Auto Task
- Force enable Windows RDP
- Persistence
- File manager
- Passowrds stealer
- Remote desktop
- Bitcoin grabber
- Downloader
- Keylogger
Please give me likes and rap if you enjoyed this rat!!!!
thanks my boyy
This post is by a banned member (flydool) - Unhide
22 December, 2022 - 01:52 AM
Reply
This post is by a banned member (boilingice) - Unhide
22 December, 2022 - 09:38 PM
Reply