Ready to build. Select platforms and click "Start Build".
Built Clients
Raw HTTPS Server List
Instead of baking a single server address into the agent, point it at a
plain-text file you host somewhere. The agent fetches that file every
time it starts, parses the lines, and uses the URLs inside as its
actual C2 endpoints.
This lets you rotate, retire, or add C2 hosts without rebuilding and
redeploying agents — just edit the file.
File format
One server per line
Bare domain (example.com:5173) or full wss:// URL
Lines starting with # are comments
Blank lines are ignored
Must contain at least one valid line, otherwise the agent gives up
The agent does a plain HTTP GET and reads the response body line by
line. If the URL returns an HTML page (the GitHub web view, the
Pastebin web view, a Notion page, etc.) the agent will try to parse
the HTML as server URLs and fail.
Good sources:
GitHub: use the raw.githubusercontent.com/… URL, not the github.com/…/blob/… page
Gist: click Raw, copy that URL
Pastebin: pastebin.com/raw/<id>, not pastebin.com/<id>
S3 / R2 / any object storage serving the file as text/plain
Any web server returning the raw file body
Use HTTPS
Use an https:// URL so the list itself
can't be tampered with in transit. http://
is accepted but anyone on the network path can rewrite the response
and redirect your agents.