Пример #1
0
 public static void Start()
 {
     try
     {
         WebClient wc = new WebClient();
         wc.DownloadString("https://google.com");
     }
     catch
     {
         Error();
     }
     DBG();
     Admin();
     Misc();
     CMD();
     Detect();
     DetectVM();
     Outbuilt.FileDebug();
     Outbuilt.DefaultDependencyAttribute();
     Outbuilt.AssemblyHashAlgorithm();
     AntiDebug();
     AntiDumps.AntiDump();
 }
Пример #2
0
 internal static void FileDebug()
 {
     string userName = Environment.UserName;
     {
         Outbuilt.Search("C:\\Program Files", "Wireshark", "exe");
         Outbuilt.Search("C:\\Program Files", "dumpcap", "exe");
         Outbuilt.Search("C:\\Program Files", "editcap", "exe");
         Outbuilt.Search("C:\\Program Files", "k5sprt64", "dll");
         Outbuilt.Search("C:\\Program Files", "libgmodule-2.0-0", "dll");
         if (!Directory.Exists("C:\\Users\\" + userName + "\\AppData\\Local\\Programs"))
         {
             Directory.CreateDirectory("C:\\Users\\" + userName + "\\AppData\\Local\\Programs");
         }
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Telerik.NetworkConnections", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Xceed.Zip.v5.4", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Programs", "Zopfli", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy-x86", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy-x86", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "dnSpy-x86", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy.Analyzer", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy.Debugger.DotNet.CorDebug", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "dnSpy", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "dnSpy", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "dnSpy", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy.Analyzer.x", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "dnSpy-x86", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "Procmon.exe", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "Procmon", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "Procmon", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "Procmon", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "SimpleAssemblyExplorer", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "SimpleAssemblyExplorer", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "SimpleAssemblyExplorer", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "SimpleAssemblyExplorer", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "SimpleAssemblyExplorer.vshost", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "SimpleAssemblyExplorer.vshost", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "SimpleAssemblyExplorer.vshost", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "SimpleAssemblyExplorer.vshost", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ICSharpCode.NRefactory.CSharp", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ICSharpCode.NRefactory.CSharp", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ICSharpCode.NRefactory.CSharp", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ICSharpCode.NRefactory.CSharp", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD32", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD32", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD32", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD32", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "HxD Hex Editor.ini", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "HxD Hex Editor.ini", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "HxD Hex Editor.ini", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "HxD Hex Editor.ini", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x96dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x96dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x96dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x96dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x64dbg", "chm");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x64dbg", "chm");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x64dbg", "chm");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x64dbg", "chm");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x64dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x64dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x64dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x64dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ssleay32", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ssleay32", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ssleay32", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ssleay32", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "x32dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "x32dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "x32dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "x32dbg", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "ida64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "ida64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "ida64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "ida64", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "Qt5Core", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "Qt5Core", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "Qt5Core", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Videos", "Qt5Core", "dll");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Ghidra\\packed-db-cache", "cache", "map");
         Outbuilt.Search("C:\\Users\\" + userName + "\\AppData\\Local\\Temp", "FolderChangesView", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Downloads", "FolderChangesView", "exe");
         Outbuilt.Search("C:\\Users\\" + userName + "\\Desktop", "FolderChangesView", "exe");
         Outbuilt.Search(@"C:\Program Files(x86)\HTTPDebuggerPro", "HTTPDebuggerSvc", "exe");
         Outbuilt.Search(@"C:\Program Files (x86)\mitmproxy", "uninstall", "exe");
         Outbuilt.Search(@"C:\Program Files\Charles", "Charles", "exe");
         Outbuilt.Search(@"C:\ProgramData\HTTPDebuggerPro", "settings", "xml");
         Outbuilt.Search(@"C:\Users\" + userName + @"\Videos", "FolderChangesView", "exe");
     }
 }