Navigation X
ALERT
Click here to register with a few steps and explore all our cool stuff we have to offer!



   53606

GHOST rat. Advanced Remote Administration Tool. Undetected. MEGA DOWNLOAD LINK

by PhantomLiar - 08 April, 2023 - 10:57 PM
This post is by a banned member (Code0x100) - Unhide
Code0x100  
Registered
59
Posts
0
Threads
1 Year of service
Great Thanks if safe
This post is by a banned member (nipom) - Unhide
This post is by a banned member (hazesecc) - Unhide
hazesecc  
Registered
91
Posts
0
Threads
1 Year of service
[font]ty[/font]
This post is by a banned member (suyash_3) - Unhide
suyash_3  
Registered
38
Posts
0
Threads
1 Year of service
  • Remote command execution
  • Silent background process
  • Download and run file (Hidden)
  • Safe Mode startup
  • UAC Bypass
  • Will automatically connect to the server
  • Data sent and received is encrypted (substitution cipher)
  • Files are hidden
  • File Infector
  • Symmetric Cryptography
  • Hijack Execution Flow: DLL Side-Loading
  • Deobfuscate/Decode Files or Information
  • Input Capture Keylogging
  • Command and Scripting Interpreter
  • Installed Antivirus shown to server
  • Indicator Removal: Clear Windows Event Logs
  • Indicator Removal: File Deletion
  • Easily spread malware through download feature
  • Startup info doesn't show in msconfig or other startup checking programs like CCleaner
  • Disable Task Manager
  • TCP Connections
  • Non-Application Layer Protocol
  • ActiveWindows
  • StartupManager
  • Registry Editor
  • Process Manager
  •  Clipboard Manager
  •  Shell
  •  Installed Programs
  •  DDos Attack
  • VB Net Compiler
  •  Location Manager [GPS - IP]
  •  File Manager
  • Client [Restart - Close - Uninstall - Update - Block - Note]
  • Power [Shutdown - Restart - Logoff]
  • More
This post is by a banned member (KhAhmedNasir) - Unhide
7
Posts
0
Threads
1 Year of service
(08 April, 2023 - 10:57 PM)Deluxo Wrote: Show More
Advanced Remote Administration Tool

Technical Information:
https://leaked.wiki/p/6xtX6rAZ9V

Features:
  • Remote command execution
  • Silent background process
  • Download and run file (Hidden)
  • Safe Mode startup
  • UAC Bypass
  • Will automatically connect to the server
  • Data sent and received is encrypted (substitution cipher)
  • Files are hidden
  • File Infector
  • Symmetric Cryptography
  • Hijack Execution Flow: DLL Side-Loading
  • Deobfuscate/Decode Files or Information
  • Input Capture Keylogging
  • Command and Scripting Interpreter
  • Installed Antivirus shown to server
  • Indicator Removal: Clear Windows Event Logs
  • Indicator Removal: File Deletion
  • Easily spread malware through download feature
  • Startup info doesn't show in msconfig or other startup checking programs like CCleaner
  • Disable Task Manager
  • TCP Connections
  • Non-Application Layer Protocol
  • ActiveWindows
  • StartupManager
  • Registry Editor
  • Process Manager
  •  Clipboard Manager
  •  Shell
  •  Installed Programs
  •  DDos Attack
  • VB Net Compiler
  •  Location Manager [GPS - IP]
  •  File Manager
  • Client [Restart - Close - Uninstall - Update - Block - Note]
  • Power [Shutdown - Restart - Logoff]
  • More


Download Link:


Virus Scans:
Virus total Report: https://www.virustotal.com/gui/file/b0bc.../community
HTML Report: https://www.joesandbox.com/analysis/379667/0/html
PDF Report: https://www.joesandbox.com/analysis/379667/0/pdf
Executive Report: https://www.joesandbox.com/analysis/379667/0/executive
Incident Report: https://www.joesandbox.com/analysis/379667/0/irxml
IOCs: https://www.joesandbox.com/analysis/3796...analysisid
lets check
This post is by a banned member (cwvfquw) - Unhide
cwvfquw  
74
Posts
0
Threads
1 Year of service
ty
This post is by a banned member (deadsnake) - Unhide
deadsnake  
Registered
40
Posts
0
Threads
1 Year of service
(08 April, 2023 - 10:57 PM)Deluxo Wrote: Show More
Ferramenta de Administração Remota Avançada

[font]Informações técnicas:https://leaked.wiki/p/6xtX6rAZ9V

Características:[/font]
  • Execução remota de comandos
  • Processo silencioso em segundo plano
  • Baixar e executar arquivo (oculto)
  • Inicialização no Modo de Segurança
  • Desvio do UAC
  • Liga-se automaticamente ao servidor
  • Os dados enviados e recebidos são criptografados (cifra de substituição)
  • Os arquivos estão ocultos
  • Infector de arquivos
  • Criptografia Simétrica
  • Fluxo de execução do seqüestramento: DLL side-loading
  • Desofuscar/decodificar arquivos ou informações
  • Keylogging de captura de entrada
  • Interpretador de Comandos e Scripts
  • Antivírus instalado mostrado ao servidor
  • Remoção do indicador: Limpar logs de eventos do Windows
  • Remoção do indicador: Exclusão de arquivos
  • Espalhe facilmente malware através do recurso de download
  • As informações de inicialização não são exibidas no msconfig ou em outros programas de verificação de inicialização como o CCleaner
  • Desativar o Gerenciador de Tarefas
  • Conexões TCP
  • Protocolo de camada não relacionada a aplicativos
  • ActiveWindows
  • Gerenciador de Inicialização
  • Editor do Registro
  • Gerente de Processos
  • Gerenciador da Área de Transferência
  • Concha
  • Programas Instalados
  • Ataque DDos
  • Compilador VB Net
  • Gerenciador de Localização [GPS - IP]
  • Gerenciador de arquivos
  • Cliente [Reiniciar - Fechar - Desinstalar - Atualizar - Bloquear - Nota]
  • Energia [Desligamento - Reiniciar - Logoff]
  • Mais


[font]Link para download:Varreduras de vírus:Relatório total de vírus: Relatório
HTML https://www.virustotal.com/gui/file/b0bc.../community: Relatório
https://www.joesandbox.com/analysis/379667/0/html PDF: Relatório
Executivo https://www.joesandbox.com/analysis/379667/0/pdf:



https://www.joesandbox.com/analysis/379667/0/executive
Relatório de incidentes: https://www.joesandbox.com/analysis/379667/0/irxml
COI: https://www.joesandbox.com/analysis/3796...analysisid[/font]

[font]900[/font]
This post is by a banned member (SidiHarazem) - Unhide
154
Posts
0
Threads
1 Year of service
Tysm

Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Forum Jump:


Users browsing this thread: 1 Guest(s)