DuckLogs is MaaS (Malware-as-a-Service) advertised on cybercrime forums with a range of features including remote access, keylogging, capturing screenshots, and exfiltrating stolen data to command-and-control servers.
The malware provides a web panel to build malicious binaries, monitor infected devices, and download data.
The malware establishes persistence by copying files into the Startup folder and bypasses the UAC (User Access Control) to gain elevated privileges.