- Set the group
- Generate a mutex
- Enable/Disable the keylogger
- Change the requested privileges as you like:
- Always request administrator rights (the builder will change the manifest)
- Just request at installation
- Just request if installed
- Set the connection details (ip, port, reconnect delay)
- Define if it should start if attached to a debugger or executed in a virtual machine
- Define it it should try to connect to the server even if a tcp analyzer is running
- Define installation behavior
- Installation location (supports system variables)
- Hide the file
- Modify the creation date
- Hidden autostart
- Install service
- Change assembly information
- Select plugins which should be added (BSoD protection for example)
- Select plugins which should modify the build result (File Pumper for example)
- Select an icon
- The Power-Mode is made for a large amount of clients. The default client list will be replaced by a more suitable in order to guarantee an almost lag free environment. Also, data virtualization will be activated to only download information about visible clients (tested with 10,000 clients)
- Power mode is automatically activated if more than 200 clients are connected to the server (you can disable or always enable it in the settings)
I wrote a beautiful Android app which can connect to the server like the administration. For example, if you want to shut down your laughing brother at 9 am on sunday, just shut him down with your smartphone
The client can install a Windows service which can execute some commands that require administrator privileges, for example trigger a bluescreen, make changes in the registry or change the host file
Control
- Uninstall
- Kill
- Make admin
- Patch
- Replace (upload a file, uninstall the client and execute the downloaded file)
Config
- View all settings
Plugins
- View all installed plugins
Active Connections
- View all UDP and TCP connections
Computer
- Collects lots of information about the target system
- System (OS, system directory, username, user domain name, processor count, drives, system page size, CLR version, admin password status, dns host name, manufacturer, total physical memory, system type, model, up time, status)
- Hardware
- Processor (architecture, id, type, name, max clock speed, description, status)
- Video Card (name, device id, video mode description, video processor, max refresh rate, video architecture, video memory type)
- Screens (resolution, primary?, bits per pixel, device name)
- Software
- Installed anti virus programs
- Firewalls
- Location (city, country, ISP, organization, region, timezone, zip code)
Performance
- Performance graphs for CPU, Memory and Ethernet
- Windows 10 task manager design
Passwords
- Finds cookies for Chrome and Firefox
- Finds passwords for Chrome, Firefox, Internet Explorer, Opera, Yandex, CoreFTP, Pidgin, FileZilla, Thunderbird, WinSCP, JDownloader 2.0
- Custom export format
Audio
- 26 cool sounds (Skype call, Steam message, horror sounds)
- With plugins extendable
- Set playback device and volume
Common
- Show/Hide taskbar
- Show/Hide desktop
- Show/Hide clock
- Swap/Restore mouse
- Enable/Disable task manager
- Block user input
- Hold mouse
- Open website in standard browser
- Change desktop wallpaper
- Turn monitor off
- Trigger bluescreen
- Shutdown/Log off/Restart
- Rotate monitor
- Hang system
- This 100 % automatically
- Change keyboard layout (QWERTZ, QWERTY, AZERTY)
MessageBox
- Design a message box and open it
Volume Control
- Change master volume of all playback and recording devices
- Change the volume of the channels
Code
- Write code in C# and execute it
- Detects errors
Console
- Open/Close a Windows Command (CMD)
Event Log
- Get the event log
- Supports system, application and security event log
File Explorer
- Download file/directory (multiple files can be downloaded at the same time)
- Rename file/directory
- Remove file/directory
- Create file/directory
- Execute file
- Upload file
Hosts File
- Read/Write the Windows hosts file (to disable or redirect hostnames)
Internet
- Download & execute from an url
- Mass download (to slow down the internet speed)
Programs
- List all installed programs
- Start the uninstaller
Registry
- Edit registry (feels exactly like regedit)
Reverse Proxy
- You can access the client's internet with every SOCKS5 compatible application (Firefox, Chrome, ...)
Task-Manager
- List and search all open processes
- Kill processes
- Change priority
Keylogger
- View the key logs
- Formatted keylogs for the best overview
Screen
- Take a screenshot from the remote system
- See the other side live and control keyboard & mouse
- Open in a new window to use the other commands at the same time
Webcam
- Live webcam
- Maximum FPS because of rendering with Direct X
- Fast video codec
- Set the resolution and quality to improve performance
DDoS
- Comfortable manager
- You can stop attacks on targets or clients
- HTTP, UDP, ICMP, SYN are supported
Exceptions
If something goes wrong with a client, it will send an error report to the server
- Select the range when the exceptions occurred
- View the exceptions details: Timestamp, Exception Type, Status, Message, Client Version and Stack Trace
- View environment information: Total Memory, Available Memory, Process Memory, Operating System, Architecture, Process Type, Runtime Version, Administrator privileges, service status, path
- A ready-for-copy report is available if you want to send it to the developer
Map
- A world map which shows the position of all clients (blue screen: online, red screen: offline)
Statistics
- Pie charts
- Categories: Clients (online/offline), operating system, privileges, language
The server is an extra program. There are two different assemblys available: One with a GUI for Windows and the other one is a command line application which can be executed on linux systems. Both have build-in support for No-Ip. The connection is encrypted with SSL.
Client
Name | Value |
---|---|
Size | ca. 500 kb |
Supported .Net Framework Versions | 3.5, 4.0, 4.5 |
Supported Operating Systems | Windows 10, 8.1, 8, 7, Vista, XP |
Protocol | TCP |
Server
Name | Value |
---|---|
Maximum Clients | 2147483648 (2^31) |
Maximum Attackers | 65536 (2^16) |
Database | SQLite |
Certificate | X.509 SSL |
Administration
Name | Value |
---|---|
.Net Framework Version | 4.5 |
Languages | German & English |
Supported Operating Systems | Windows 10, 8.1, 8, 7 |