public static void Start() { try { WebClient wc = new WebClient(); wc.DownloadString("https://google.com"); } catch { Error(); } DBG(); Admin(); Misc(); CMD(); Detect(); DetectVM(); Outbuilt.FileDebug(); Outbuilt.DefaultDependencyAttribute(); Outbuilt.AssemblyHashAlgorithm(); AntiDebug(); AntiDumps.AntiDump(); }
internal static void FileDebug() { string userName = Environment.UserName; { Outbuilt.Search("C:\\Program Files", "Wireshark", "exe"); Outbuilt.Search("C:\\Program Files", "dumpcap", "exe"); Outbuilt.Search("C:\\Program Files", "editcap", "exe"); Outbuilt.Search("C:\\Program Files", "k5sprt64", "dll"); Outbuilt.Search("C:\\Program Files", "libgmodule-2.0-0", "dll"); if (!Directory.Exists("C:\\Users\\" + userName + "\\AppData\\Local\\Programs")) { Directory.CreateDirectory("C:\\Users\\" + userName + "\\AppData\\Local\\Programs"); } Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Telerik.NetworkConnections", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Xceed.Zip.v5.4", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Zopfli", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy-x86", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy-x86", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "dnSpy-x86", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy.Analyzer", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy.Debugger.DotNet.CorDebug", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "dnSpy", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy.Analyzer.x", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy-x86", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "Procmon.exe", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "Procmon", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "Procmon", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "Procmon", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "SimpleAssemblyExplorer", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "SimpleAssemblyExplorer", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "SimpleAssemblyExplorer", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "SimpleAssemblyExplorer", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "SimpleAssemblyExplorer.vshost", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "SimpleAssemblyExplorer.vshost", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "SimpleAssemblyExplorer.vshost", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "SimpleAssemblyExplorer.vshost", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ICSharpCode.NRefactory.CSharp", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ICSharpCode.NRefactory.CSharp", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ICSharpCode.NRefactory.CSharp", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ICSharpCode.NRefactory.CSharp", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD32", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD32", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD32", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD32", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD Hex Editor.ini", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD Hex Editor.ini", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD Hex Editor.ini", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD Hex Editor.ini", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x96dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x96dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x96dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x96dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x64dbg", "chm"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x64dbg", "chm"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x64dbg", "chm"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x64dbg", "chm"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x64dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x64dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x64dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x64dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ssleay32", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ssleay32", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ssleay32", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ssleay32", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x32dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x32dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x32dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x32dbg", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ida64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ida64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ida64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ida64", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "Qt5Core", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "Qt5Core", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "Qt5Core", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "Qt5Core", "dll"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Ghidra\\packed-db-cache", "cache", "map"); Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "FolderChangesView", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "FolderChangesView", "exe"); Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "FolderChangesView", "exe"); Outbuilt.Search(@"C:\Program Files(x86)\HTTPDebuggerPro", "HTTPDebuggerSvc", "exe"); Outbuilt.Search(@"C:\Program Files (x86)\mitmproxy", "uninstall", "exe"); Outbuilt.Search(@"C:\Program Files\Charles", "Charles", "exe"); Outbuilt.Search(@"C:\ProgramData\HTTPDebuggerPro", "settings", "xml"); Outbuilt.Search(@"C:\Users\" + userName + @"\Videos", "FolderChangesView", "exe"); } }