Skip to content

RubyRAT v1.9

Choose a tag to compare

@WilleLX1 WilleLX1 released this 15 Oct 10:17
· 9 commits to main since this release

Release 1.9 of RubyRAT, this release is a builder that can build the RubyRAT v1.9
This release is smaller, but useful. I've added 3 methods of presistence instead of just one simple, a interactive terminal and a chrome password stealer.

PASSWORD TO ZIPPED: RubyRAT

Building Settings:
Elevate on start
Install on start
Encrypt payload
Debug mode

Features in RubyRAT:
Basics
!help (Displays a help menu of all commands)
!kill (Disconnects Client from C2)
!restart (Restarts client)
!version (Prints out current version of RubyRAT)
!cmd (Execute a shell command)
!interactive_cmd (Starts a CMD terminal in discord. (Avoid using commands that output much information, like "dir"))

Surveillance
!screenshot (Takes a screenshot on client side and sends to C2)
!webcam (Grabs a picture using clients webcam and sends it)
!dumplog (Sends a file containing the keyloggers log to C2)
!startlog (Start the keylogging)
!stoplog (Stop the keylogging)
!geolocate (Calculates position using google maps API.)

Elevation / Persistence
!elevate (Tryies to elevate from User to Admin)
!install (Will try to gain persistence on the client system)
!uninstall (Will remove persistence from client system)
!better_install (Gets presistence on system with 3 diffrent methods.)
!better_uninstall (Removes 3 diffrent methods of presistence from client system.)

Files
!upload (Upload a file from C2 to client.)
!download (Download file from client to C2)
!encrypt (Encrypt a file with a special password.)
!decrypt (Decrypt a file with the special password.)
!cat (Reads and outputs the content of a file)

Information
!history (Gather and download all web history from client.)
!info (Get system info such as GPU, CPU, RAM, HDD/SSD and more.)
!network (Retrieve all saved network names their passwords)
!passwords_chrome (If client has chrome, it will retrieve all saved usernames, passwords and URL's to the website.)

Fun
!volume <volume_amount> (Changes volume to the given procentage)
!sendkey <Hello-World!> (Sends keystrokes to client, "-" is space)
!messagebox <error\warning\info> <title> (Sends a custom made messagebox to client.)

PASSWORD TO ZIPPED: RubyRAT

Full Changelog: RubyRAT1.8...RubyRAT1.9