• XSS.stack #1 – первый литературный журнал от юзеров форума
Doesn't seem that your UAC bypass works tried with the latest win 10 and 11.
Yes, seems to got patched recently

I know some different uac bypass and will upd it soon once I got more time again
 
Am I the only one to encounter this error? Tried on 32 bit local pc as well as an azure rdp, got the same error. The stealer file when installed manually executed without the reg dropper works and I get the results on my telegram. The CMD also opens after the reboot and is not hidden. Any help would be appreciated. Thanks.
photo_2022-12-31_08-47-18 (2).jpg
 
Am I the only one to encounter this error? Tried on 32 bit local pc as well as an azure rdp, got the same error. The stealer file when installed manually executed without the reg dropper works and I get the results on my telegram. The CMD also opens after the reboot and is not hidden. Any help would be appreciated. Thanks.
Посмотреть вложение 49029
Use direct File hoster
 
I used anonfiles' cdn direct link, let me try with gofile's direct cdn link
anonfiles expire after some time, If it works without the reg dropper, its prob download a HTML from your link
 
anonfiles expire after some time, If it works without the reg dropper, its prob download a HTML from your link
Thanks for that, I tried with a direct link and opened the reg file on the rdp. And on reboot i was greeted with this screen. Is this in accordance with the functions of the reg dropper? Because I don't seem to get an output on Telegram. (The telegram bot and group is working fine, I tested it with manual install and got an output over there.)
 

Вложения

  • photo_2022-12-31_17-35-04.jpg
    photo_2022-12-31_17-35-04.jpg
    52.7 КБ · Просмотры: 146
It happens when you run the reg builder 2 times without clearing the old reg values
Thanks for that, I tried with a direct link and opened the reg file on the rdp. And on reboot i was greeted with this screen. Is this in accordance with the functions of the reg dropper? Because I don't seem to get an output on Telegram. (The telegram bot and group is working fine, I tested it with manual install and got an output over there.)
 
It happens when you run the reg builder 2 times without clearing the old reg values
This does not seem to solve that issue. I extracted the builder on a new computer proceded and got the reg file. Pasted the reg file on a new rdp and encountered the same screen on reboot. Is it something to do with the built of the stealer itself?
 
I'm still testing the dropper but unfortunately now it gets detected by Defender.
I'm making new reg files via the source code but again it get detected.
Idk maybe it only me?
Is there a way to make it undetectable again by myself?
/And as I said on dm I hope DoKitO find time to fix the last cmd windows after restart running visible on desktop)
Thanks in advance
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Doesn't seem that your UAC bypass works tried with the latest win 10 and 11.
yea UAC bypass doesn't seem to work. but thanks for your efforts.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Will there be an update bro
Chill out, he doesnt have to release any of this for free but decides to anyway, let him breathe lol....
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх