• XSS.stack #1 – первый литературный журнал от юзеров форума

💯Rhadamanthys Stealer -Keylogger-Clipper-Loader-reverse proxy-Wallet Brute Force-Shellcode -V0.6.0 💯

В этой теме можно использовать автоматический гарант!

Статус
Закрыто для дальнейших ответов.

freeide

Developer
Забанен
Регистрация
14.04.2021
Сообщения
131
Реакции
53
Гарант сделки
10
Пожалуйста, обратите внимание, что пользователь заблокирован
Цена
199
Контакты
TOX:5BCB80569AC334FDA5B7806ABC05DDFE3AF8F126E08D0EA6D21DA3C13B43F164188C3EEE89E9
!!!!!!!Please note that I only sell programs, and I don't have other businesses including smtp accounts. Beware of scammers in the forum, who use their identities to deceive people! ! ! Please DM to verify all transactions! ! ! Thanks!!!!!!!!

Telegram ID was reported BAN, before recovering, please use TOX to contact.
TOX:5BCB80569AC334FDA5B7806ABC05DDFE3AF8F126E08D0EA6D21DA3C13B43F164188C3EEE89E9

@klngcrete (t.me/klngcrete) on Telegram This person is a fake, please note that his kingcrete is klngcrete !!!!!!!!

@kinqcrete (t.me/kinqcrete) on Telegram This person is a fake, please note that his kingcrete is kinqcrete !!!!!!!!

🆕current working version is V0.6.0


v0.6.0
Update:

1. Both main server and temporary server support Block geo &ip . Function. Blocking or cancellation of IP or country/region blocking can be disabled or cancelled by simple operation on the panel.
2. Modify the process of writing library when the server receives client data, now you can save it while receiving. Optimised for clients with large log volume and slow network speed, there will not be a situation where log details cannot be listed.
3. Add new extended wallets (Leap Cosmos, compass-wallet-for-sei, Venom Wallet, Rise - Aptos Wallet, Rainbow) in the built-in collection, and fix the problem of incomplete data collection of COINBASE wallet.
4. A special icon is added to the panel to mark whether the collected files are seeded or not.
5. Restore factory mode added index library cleanup function, which can release the space occupied by index library and synchronously clean up the useless or obsolete space occupied by other directories.
6. export browser password and cookie operation, add refresh cache operation, reduce log deletion.
7. Enhance the protection of the index database.
8. Modify the composition of the extended wallet directory in the log, remove the use of [ ] symbols, to avoid the problem that the user's later automatic processing tools can not identify the processing.
9. build stub clean, bypass windows defender.
The next version is planned to be updated:
Open API interface
Add log file FTP or cloud storage distribution function.


V0.5.0 Change List

01. Added observer mode
02. Diversify the construction of stubs and provide x86 x32 native Exe Shellcode Dotnet4 Dotnet2 to better adapt to various usage scenarios and crypt service needs.
03. The client execution process is completely rewritten, and the BUG in the syscall unhook code that caused the crash in the old version is fixed. The execution success rate is very high, and the runtime status is better.
04. Fixed the wallet upgrade support for several wallets where the cracking algorithm fails. Currently supported
(UniSat Wallet
Tronlink
Trust
Terra Station
TokenPocket
Phantom
Metamask
KardiaChain
Exodus Desktop
Exodus Web3
Binance
) Online real-time brute force cracking
05. Fixed Discord token acquisition, the correct encrypted token can now be decoded.
06. Break through the browser data acquisition when the browser is protected by third-party programs, and add the login data decryption algorithm of 360 Secure Browser
07. The panel search condition settings have been upgraded. You can now select conditions in batches and select categories with one click.
08. Add a quick setting search filter menu to directly menu the search conditions you need to check frequently.
09. Modify some changes required by users in the Telegram notification module and add new templates for use
10. When building a page, the traffic source tag can directly set the previously used tag, and the URL address will be updated simultaneously.
11. If permissions permit, data collection under other user accounts used on the same machine is supported.
12. The file collection module adds browser extension collection settings. For the Chrome kernel browser, you only need to provide the extension directory name and whether to collect Local Storage data at the same time. Firefox kernel browser can provide extension ID
13. Fix the issue of using the browser to use the online password library after logging in to a Google account in Chrome, and obtaining the login password.
14. The task module has been greatly upgraded, and a new plug-in module has been introduced to support users in secondary development of their own plug-ins.
Supports multiple task execution modes:
Normal execution
In Memory LoadPE Execution
Powershell Execution
DotNet Reflection Execution
DotNet Extension Execution
DotNet Extension with Zip Execution
VbScript Execution
JScript Execution
X86 shellcode execution
X64 shellcode execution
Native Plugin Loader
15. Keylogger: supports recording all keyboard input, process details, file name, window title, supports setting process filtering, sending time, buffer size
16. Data spy plug-in: currently supports correct login access and IP username and password for remote RDP access. The correct certificate file and password imported by the user.
17. Plug-ins and loader modules support secondary development and provide SDK support.
Important Important.
For fast delivery, please prepare the part of the server you need before buying: VPS or dedicated hosting running Centos version 8.9.
All data is stored on top of your machine.

Важно Важно.
Для быстрой доставки, пожалуйста, подготовьте необходимую вам часть сервера перед покупкой: VPS или выделенный хостинг под управлением Centos версии 8.9.
Все данные хранятся поверх вашей машины.

Rhadamanthys Stealer -- Stealer Filegrab Loader wallets seed checker ALL IN ONE

The client uses C language to compile without dependency, is compatible with xp-win11, and adaptively supports x86 & x64
Server back end golang front end panel Centos & Ubuntu one click operation
## Client features;
Operating system support: WINXP --11, X86 X64 support all functions.​
Does not rely on CRT STD, low requirements for user operation, full memory operation,and better hidden.​
All network communications are encrypted. Each structure has a unique encryption key.​
All retrieved information is transmitted to the server for instant encryption and storage.​
Transmit and store data as promptly as possible each time it is acquired.​
None of these operations will cause new temporary files to appear on the physical disk,​
Reduce the probability of being detected by the EDR AV system, powerful native information acquisition capabilities​
Note: This program does not support running in the Commonwealth of Independent States, and is identified according to the system language and country​

System information:
  • Computer name
  • Username
  • RAM capacity
  • CPU cores
  • Screen resolution
  • Timezone
  • GEOIP
  • Environment
  • Installed Software
  • Screenshot
info-1.jpg
info-4.jpg
info-3.jpg
Browsers:
Identification all browsers with “Trident“ ”Gecko“ ”Chromium” kernel,Normal installation and portable version
  • Cookies
  • History​
  • Autofil​
  • Credits​
  • Downloads​
  • Favorites​
  • Extension​
  • 360ChromeX 360se6 7Star AVAST Browser AVG Browser Atom Avant Browser
    BlackHawk Blisk Brave CCleaner Browser CentBrowser Chedot CometBrowser
    CocCoc Coowon Cyberfox Dragon Element Browser Epic Privacy Browser
    Falkon Firefox Firefox Nightly GhostBrowser Google Chrome Hummingbird
    IceDragon Iridium K-Meleon Kinza Kometa Browser Lebao Lenovo SLBrowser
    MapleStudio Maxthon Naver Whale Opera Opera GX Opera Neon QQBrowser
    SRWare Iron SeaMonkey Sleipnir5 Slimjet Superbird Twinkstar UCBrowser
    Xvast citrio palemonon torch web ur-browser vivaldi .......
  • binfo.jpg
    info-2.jpg
WALLEETS:
  • Armory
  • AtomicWallet
  • Atomicdex
  • Binance Wallet
  • Bisq
  • BitcoinCore
  • BitcoinGold
  • Bytecoin
  • Coinomi wallets
  • DashCore
  • DeFi-Wallet
  • Defichain-electrum
  • Dogecoin
  • Electron Cash
  • Electrum
  • Electrum-LTC
  • Ethereum Wallet
  • Exodus
  • Frame
  • Guarda
  • Jaxx
  • LitecoinCore
  • Monero
  • MyCrypto
  • MyMonero
  • Safepay
  • Solar wallet
  • Tokenpocket
  • WalletWasabi
  • Zap
  • Zcash
  • Zecwallet Lite
  • Auvitas Wallet
  • BitApp
  • Crocobit
  • Exodus
  • Finnie
  • GuildWallet
  • ICONex
  • Jaxx
  • Keplr
  • Liquality
  • MTV Wallet
  • Math
  • Metamask
  • Mobox
  • Nifty
  • Oxygen
  • Phantom
  • Rabet Wallet
  • Ronin Wallet
  • Slope Wallet
  • Sollet
  • Starcoin
  • Swash
  • Terra Station
  • Tron
  • XinPay
  • Yoroi Wallet
  • ZilPay Wallet
  • binance
  • coin98
  • ........
FTP Clients:
  • Cyberduck
  • FTP Navigator
  • FTPRush
  • FlashFXP
  • Smartftp
  • TotalCommander
  • Winscp
  • Ws_ftp
  • Coreftp
  • ftp.jpg
Mail Clients:
  • CheckMail
  • Claws-mail
  • GmailNotifierPro
  • Mailbird
  • Outlook
  • PostboxApp
  • Thebat!
  • Thunderbird
  • TrulyMail
  • eM Client
  • Foxmail
2FA & Pass:
  • RoboForm
  • WinAuth
  • Authy Desktop
  • KeePass (Memory interception password key DAT)
VPN:
  • AzireVPN
  • NordVPN
  • OpenVPN
  • PrivateVPN_Global_AB
  • ProtonVPN
  • WindscribeVPN
NOTE:
  • NoteFly
  • Notezilla
  • Simple Sticky Notes
  • Windows Sticky Notes of win7 10
Messenger:
  • Psi+
  • Pidgin
  • tox
  • Discord
  • Telegram
Game: Steam
Other programs: TeamViewer SecureCRT

File grab module:
filegrab.jpg
The client has a built-in file collection module. Search rules are passed from the server backend configuration. Real-time modification can be flexibly configured.​
Windows system variables and wildcards are supported as search criteria. Recursive operations are supported.​
Wildcard operations are fully compatible: https://documentation.help/PuTTY/psftp-wildcards.html

POWERSHELLScript execution extension

psdownexe.jpg
Can be made simple setting operation through the panel ,​
Achieve the interactive operation between program and main procedure ,​
Complete complex functional operations , Not just limited to the simple function-- simple download the execution program ,​
BYpass AMSI ETW ,​
Can run with independent process , Do not affect the stability of the main program , Provide practical demo documentation for learning , Just use your imagination​


Functional characteristics of Service panel

Service one-click deployment
Based on the full dynamic construction of VUE, and no refresh mode for the page
WEB Entrance security camouflage
Permission identification
Intelligent template system
Multiple language suppor:RU/ENG/CN/UA
Plug-in system
Intuitive statistics
Task tracking
Using AES256 to get communications and with elliptical curve encryption.
Server CenTOS7 (Ubuntu 16) CPU2 RAM2G SSD10G Minimum installation requirements (Do not think that the hard disk space is too large!)
login (sm).jpg
infoaaaa.jpg
list-6.jpg
SEE.JPG
Log processing
With powerful and flexible log processing , Various conditions can be flexibly set for result filtering.
Can be presented and displayed directly on the panel , It can also be packaged and downloaded , COOKIE PASS All the records can be multi-format formed by TXT JSON ,Of strong compatibility and convenient for later use.
list-5.jpg
list-4.jpg
logzip.jpg

When the server background receives the browser extension wallet, it will start the password cracking and crack it according to the collected user information.
Successful cracking will be displayed on the panel in real time, and written to the corresponding record document. Greatly reduces the user's operating intensity. (This function is VIP function)
seeds.jpg
seeds-2.jpg
Built-in IP TDS function to intercept abnormal requests as much as possible (this function is VIP function)​
Flexibly and independently rebuild new domain name IP access,Just replace the cheap relay server (shim server) later.the​
backend server is not affected and continues to work.​

Program build:
gen.jpg
During the validity period of the license, users can freely build clients, freely change domain names, and cooperate with transit servers to keep the backend servers online for a long time without replacement. Support generating antivm antidbg,Perfect support for memory load execution(bypassAV),

V0.4.1 update content
1. When the ALL TAG record is empty, the global download task push is not triggered
2. Repair the major security vulnerability that the panel session is not affected by password modification
3. Add telegram notification message template customization
4. Re-modify the client's construction form to fully support third-party encryption services. It has been verified that all services available on the market have been tested. You are also welcome to tell me about service providers that I don't know yet.
5. Increase the one-click summary export of CC ftp phrase mnemonic words
6. Enhance the anti-ETW function of the client

Содержание обновления V0.4.1
1. Когда запись ALL TAG пуста, отправка глобальной задачи загрузки не запускается.
2. Устраните серьезную уязвимость безопасности, заключающуюся в том, что на сеанс панели не влияет изменение пароля.
3. Добавить настройку шаблона сообщения уведомления телеграммы
4. Повторно измените форму построения клиента, чтобы полностью поддерживать сторонние сервисы шифрования. Было проверено, что все услуги, доступные на рынке, были протестированы. Вы также можете рассказать мне о поставщиках услуг, которых я еще не знаю.
5. Увеличьте экспорт одним щелчком сводки мнемонических слов фразы CC ftp.
6. Улучшить функцию анти-ETW клиента



Terms of purchase

1.Transfer of software to (revocation of license) is prohibited
2. Prohibit personal software cracking (reverse) (revoke license)
3. The software price may vary according to the update
4. Purchase of software license will not be accepted after the license is activated

New license rules, purchase all open VIP access
License purchase.
- US $199 - 1 month
- US $499 - 3 months
Accept BTC USDT payments
Guaranteed transaction support
Customers who are not familiar with LINUX, they can help complete the installation and delivery.
Contact to buy.
TG: https://t.me/kingcrete
 

Вложения

  • seeds-1.jpg
    seeds-1.jpg
    40 КБ · Просмотры: 777
Последнее редактирование:
Пожалуйста, обратите внимание, что пользователь заблокирован
Export the cookies saved in the specified browser by domain name, export format json or txt, this operation is only for the logs recorded by a single machine
cookie-0.png

cookie-1.png
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Directly in the panel you can export all browser password records by domain name, save format txt josn optional
E-0.png

e-1.png
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Support secured transactions, how should I get specific, please tell, thank you
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Support secured transactions, how should I get specific, please tell, thank you
Please use the secured transaction at the top of the posting
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Brothers, please make sure that you have the will to buy before contacting, do not waste the time of both sides. Thank you
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Brothers, please make sure that you have the will to buy before contacting, do not waste the time of both sides. Thank you
Add contact Tox:5BCB80569AC334FDA5B7806ABC05DDFE3AF8F126E08D0EA6D21DA3C13B43F164188C3EEE89E9
 
Пожалуйста, обратите внимание, что пользователь заблокирован
whats the difference between the normal and the VIP ?
 
Пожалуйста, обратите внимание, что пользователь заблокирован
We welcome new information gathering goals and new feature suggestions from our brothers

Add contact Tox:5BCB80569AC334FDA5B7806ABC05DDFE3AF8F126E08D0EA6D21DA3C13B43F164188C3EEE89E9
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Weekly licenses will be added to
Gecko (Firefox kernel) extension wallet blocking and cracking
Client-side BIP39 seed phrase comprehensive search
Stay tuned!




Еженедельно будут добавляться лицензии
Сбор и взлом кошелька расширения для браузера Gecko (Firefox Core)
Родовой поиск семенных фраз BIP39
Следите за новостями!
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Пожалуйста, обратите внимание, что пользователь заблокирован
Important Important.
For fast delivery, please prepare the part of the server you need before buying: VPS or dedicated hosting running Centos version 7.8.9.
All data is stored on top of your machine.

Важно Важно.
Для быстрой доставки, пожалуйста, подготовьте необходимую вам часть сервера перед покупкой: VPS или выделенный хостинг под управлением Centos версии 7.8.9.
Все данные хранятся поверх вашей машины.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
The bip39 helper word analysis function is completed and will be updated and sent to users soon.

Функция анализа слов-помощников bip39 завершена и скоро будет обновлена и разослана пользователям.
Mnemonic.png
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Чо значит подписка на стиллер?
Закладка в панели, отключающая через время функционал? Закладка в екзешнике?
то и значит
по истечению срока доступ в панель офнут и все
 
Пожалуйста, обратите внимание, что пользователь заблокирован
The thief is not MAAS, it is running on your own server, and the data is stored on your server. The license is server-side authentication, and when it expires, the server will not work.
Чо значит подписка на стиллер?
Закладка в панели, отключающая через время функционал? Закладка в екзешнике?
Вор не является MAAS, он работает на вашем собственном сервере, и данные хранятся на вашем сервере. Лицензия - это аутентификация на стороне сервера, и когда она истечет, сервер не будет работать.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
******************
New support for OTRv2 Jabber: Rhadamanthys2023@exploit.im
Новая поддержка OTRv2 Jabber:
Rhadamanthys2023@exploit.im

*******************
 
Последнее редактирование:
Прекрасный стиллер, стучит отлично. Очень приятная и удобная админ панель, удобная и гибкая настройка стиллера, так же понравилась функция просмотра стиллера пряма в панели, выгрузка паролей с логов. Работать стала в разы удобнее. В панели сразу есть такие языки как (Английский/Русский/Украинский/Китайский)
Кодер всё время помогает, помог поставить на хостинг и настроить билд. За свою цену - отличный продукт. Всем рекомендую!

[IMG]

[IMG]

[IMG]
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Thank you, brother support, I will try to do better!
 
Статус
Закрыто для дальнейших ответов.
Верх