Active Plan Capture config for 123apps.com, made by ~ AURA
Online Tools for Video, Audio, PDF, and File Conversion
Target:
Capture: Plan status (Active/Paused/Free) & Email verification.
Hits: Only active paid plans goes to HITS
Proxies: LQ or Public Proxies will work fine. (Tested with proxyscape free proxies)
Combo: Mail : Pass
Bots: Keep it around 50, but you can go higher with good proxies.
Config By:(AURA)
Special thanks to Electric Cloud for providing the logs that allowed me to extract these Test Accounts!
If you need access to HQ Private Cloud (Paid) then contact AURA for details. Config By: ~ (AURA) This config wasn’t copied nor recommended by anyone. I hunted, tested, and made everything myself. If you find this config anywhere else then you know where it was leeched from.
Need Paid HQ Private Cloud Access? ➡️ Contact AURA
What is Kraken V2 Android Banking RAT?
Originally emerging as an evolution of the Kraken V1 malware, this newer version includes enhanced obfuscation, anti-analysis techniques, and banking fraud capabilities. It primarily targets online banking apps, cryptocurrency wallets, and payment services like PayPal, Google Pay, and banking apps worldwide. Key Features of Kraken V2 Android Banking RAT
1. Remote Device Control
Live Screen Viewing – Attackers can see the victim’s screen in real time.
Keylogging – Records keystrokes to steal passwords and PINs.
File Management – Downloads, uploads, or deletes files remotely.
2. Banking Fraud & Credential Theft
Overlay Attacks – Displays fake login screens on top of legitimate banking apps.
SMS Interception – Captures OTPs (One-Time Passwords) for 2FA bypass.
Auto-Fill Abuse – Steals saved credentials from password managers.
3. Persistence & Evasion Techniques
Disguised as Legitimate Apps – Often hidden inside cracked APKs, fake updates, or pirated apps.
Anti-Emulation Checks – Detects if running in a sandbox (e.g., Android Virtual Device).
Rooting Exploits – Gains admin access for deeper infection.
4. Data Exfiltration & Spyware Capabilities
Contacts & Call Logs – Harvests personal data for phishing attacks.
GPS Tracking – Monitors victim’s location.
Microphone & Camera Access – Secretly records audio/video.
5. C2 (Command & Control) Communication
Encrypted C2 Servers – Uses HTTPS/TOR to avoid detection.
GhostDZ RAT (Remote Access Trojan) v1.1d is a highly malicious and covert software tool engineered specifically to grant unauthorized remote control over a victim’s computer system. Unlike legitimate remote administration tools such as TeamViewer or AnyDesk, which are designed to facilitate authorized remote support and collaboration, RATs like GhostDZ serve predominantly criminal purposes and are employed by cybercriminals to conduct a wide range of illicit activities. This malware enables attackers to stealthily infiltrate compromised devices, giving them near-total control over the system without the knowledge or consent of the user. Once installed, GhostDZ RAT v1.1d can execute numerous dangerous operations including but not limited to data theft, surveillance, espionage, keylogging, file manipulation, and even the deployment of additional malware payloads.
Full-capture config for Yourstore.IO, made by ~ AURA @auuura This config also captures Stripe and Razorpay API keys AND secret keys if available.
Target:
Capture: Full Capture with gateway keys Like Stripe & Razorpay
Proxies: LQ or Public Proxies will work fine. (Tested with proxyscape free proxies)
Combo: Mail : Pass
Bots: Keep it around 50, but you can go higher with good proxies.
Config By:
(AURA)
Special thanks to Electric Cloud for providing the logs that allowed me to extract these Test Accounts!
If you need access to HQ Private Cloud (Paid) then contact
for details. Config By:
~ (AURA) This config wasn’t copied nor recommended by anyone. I hunted, tested, and made everything myself. If you find this config anywhere else then you know where it was leeched from.
Echelon Stealer v5 is a highly dangerous and sophisticated piece of malicious software categorized as an information stealer, or infostealer, designed specifically to infiltrate compromised computer systems and exfiltrate a wide range of sensitive data without the user’s knowledge or consent. Unlike legitimate security or monitoring tools that operate transparently and with authorization, Echelon Stealer v5 functions covertly, employing stealthy techniques to avoid detection by antivirus software, endpoint detection and response (EDR) solutions, and network security monitoring tools. Its primary goal is to harvest valuable personal and corporate information such as login credentials, browser cookies, cryptocurrency wallet keys, saved passwords, credit card data, email accounts, FTP credentials, and other confidential files stored on the victim’s device. The stolen data is then transmitted to remote command-and-control (C2) servers controlled by cybercriminals, who can use or sell the information for financial fraud, identity theft, espionage, or further malicious operations.