I made a configurable Windows malware written in Rust with persistence, infostealing, keylogging and screenshots features.

It consists of 2 cargo projects, one for the payload that contains the features, and one for the injector (to be hidden as a file) that will download the payload and make it persistent on the machine.

The malware exfiltrates data to a Discord webhook that acts as a C2 server.

Features

The malware has multiple features that can be toggled in payload/constants.rs and injector/constants.rs:

  • Browser cookies and saved passwords stealing in Chromium-based browsers
  • Keylogging
  • Regular screenshots
  • Anti-analysis with Antilysis

Github