MALWARE OXYGON STEALER
by Feuer - Wednesday February 19, 2025 at 05:19 AM
#1
[Image: Oxygon-stealer.png]
Today I bring Oxygon Stealer MaaS
It is a poor man's Lumma

Features:
Extract System Information
Extract Browser Credentials
(Chrome, Edge, Brave, Vivaldi, Opera)
Extract Important Files
(Crypto, Identification, Passwords, Databases, Emails, Communications)
Auto Zip Exfiltrated Data
(7z Default, Windows Compress as Backup)
Custom Hidden C2 Verification
Obfuscated Build
Anti-VM & Anti-Debug
1.2MB / 400kb Packed
Low Detect + Easy FUD

Customization Offering:
Can add multiple exfiltration C2
Custom File Keyword Search
Custom Extension Filtering
Filesize Limit Adjust

Cost & What you Get:
$150
Custom Oxygon Build
Python Script for Receive Exfiltrated Data

$500
Full Oxygon SRC (Full Comment, Easy Expand)

ESCROW ACCEPTED ++ YOU WILL BE HAPPY


Reply
#2
UPDATE V2 02/24/2025
30 New Browser Support
90+ Browser Extension Support
[u](Password Managers, Crypto Wallets) [/u]
60+ Software Grab Support
(Password Managers, VPN, Crypto Wallets)
Outlook SMTP Credential Support
Reply
#3
UPDATE V2.1 02/26/2025
Custom Dynamic Obfuscation
[*]Unique key generation per build
[*]Decryption happens lazily only when strings accessed
[*]No hardcoded keys that could be extracted
[*]
Configuration file protected
[*]The configuration file is now encrypted + compress
[*]File Size Decrease
[*]Now only 1MB unpacked
[*]Server Script IP Ban
[*]The server auto ban on verification failure
[*]Configuration file protected
[*]The configuration file is now encrypted + compressed
MiniZ Compression

[*]Final exfil ZIP compressed with zlib-based MiniZ
[*](replaced windows powershell compress)
MiniZ Compression

[*]Final exfil ZIP compressed with zlib-based MiniZ
[*](replaced windows powershell compress)


Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  SELLING Globalhacker.pro Hacker Marketplaces methods, services and others Darkode1 14 1,782 1 hour ago
Last Post: Darkode1
  SELLING Egypt | Mansoura University +10GB | ~1M pii | images | docs INT3X 1 69 2 hours ago
Last Post: hazardous
  Selling Government Emails and Police Emails for EDRs and forged court orders and doma 0056113 1 176 8 hours ago
Last Post: draagon
  SELLING DOMAIN SUSPENSION SERVICE + PRIVATE METHOD REGISTRAR-LEVEL SUSPENSIONS | $500 PER HIT convince 0 204 Yesterday, 10:00 PM
Last Post: convince
  SELLING SELLING: GOVERNMENT EMAILS AND POLICE EMAILS + LAW ENFORCEMENT PANELS FOR EMERGENCY D convince 0 236 Yesterday, 09:48 PM
Last Post: convince

Forum Jump:


 Users browsing this forum: 1 Guest(s)