From c7415f1a75545cdd4afb381772dba2e607fab93b Mon Sep 17 00:00:00 2001 From: Stone_Red <56473591+Stone-Red-Code@users.noreply.github.com> Date: Thu, 6 Jan 2022 00:38:19 +0100 Subject: [PATCH] Initial commit --- .gitattributes | 2 + .gitignore | 334 ++++++++++++++++++++ FraudCapturer.sln | 31 ++ FraudCapturer/App.xaml | 8 + FraudCapturer/App.xaml.cs | 15 + FraudCapturer/AssemblyInfo.cs | 10 + FraudCapturer/FraudCapturer - Backup.csproj | 20 ++ FraudCapturer/FraudCapturer.csproj | 18 ++ FraudCapturer/MainWindow.xaml | 16 + FraudCapturer/MainWindow.xaml.cs | 26 ++ FraudCapturer/MainWindowViewModel.cs | 147 +++++++++ FraudCapturer/ReqestBody.cs | 9 + FraudCapturer/Result.cs | 21 ++ FraudCapturer/ResultBody.cs | 13 + FraudCapturer/ScreenshotHandler.cs | 5 + README.md | 2 + 16 files changed, 677 insertions(+) create mode 100644 .gitattributes create mode 100644 .gitignore create mode 100644 FraudCapturer.sln create mode 100644 FraudCapturer/App.xaml create mode 100644 FraudCapturer/App.xaml.cs create mode 100644 FraudCapturer/AssemblyInfo.cs create mode 100644 FraudCapturer/FraudCapturer - Backup.csproj create mode 100644 FraudCapturer/FraudCapturer.csproj create mode 100644 FraudCapturer/MainWindow.xaml create mode 100644 FraudCapturer/MainWindow.xaml.cs create mode 100644 FraudCapturer/MainWindowViewModel.cs create mode 100644 FraudCapturer/ReqestBody.cs create mode 100644 FraudCapturer/Result.cs create mode 100644 FraudCapturer/ResultBody.cs create mode 100644 FraudCapturer/ScreenshotHandler.cs create mode 100644 README.md diff --git a/.gitattributes b/.gitattributes new file mode 100644 index 0000000..dfe0770 --- /dev/null +++ b/.gitattributes @@ -0,0 +1,2 @@ +# Auto detect text files and perform LF normalization +* text=auto diff --git a/.gitignore b/.gitignore new file mode 100644 index 0000000..4d13c54 --- /dev/null +++ b/.gitignore @@ -0,0 +1,334 @@ +## Ignore Visual Studio temporary files, build results, and +## files generated by popular Visual Studio add-ons. +## +## Get latest from https://github.com/github/gitignore/blob/master/VisualStudio.gitignore + +# User-specific files +*.rsuser +*.suo +*.user +*.userosscache +*.sln.docstates + +# User-specific files (MonoDevelop/Xamarin Studio) +*.userprefs + +# Build results +[Dd]ebug/ +[Dd]ebugPublic/ +[Rr]elease/ +[Rr]eleases/ +x64/ +x86/ +bld/ +[Bb]in/ +[Oo]bj/ +[Ll]og/ + +# Visual Studio 2015/2017 cache/options directory +.vs/ +# Uncomment if you have tasks that create the project's static files in wwwroot +#wwwroot/ + +# Visual Studio 2017 auto generated files +Generated\ Files/ + +# MSTest test Results +[Tt]est[Rr]esult*/ +[Bb]uild[Ll]og.* + +# NUNIT +*.VisualState.xml +TestResult.xml + +# Build Results of an ATL Project +[Dd]ebugPS/ +[Rr]eleasePS/ +dlldata.c + +# Benchmark Results +BenchmarkDotNet.Artifacts/ + +# .NET Core +project.lock.json +project.fragment.lock.json +artifacts/ + +# StyleCop +StyleCopReport.xml + +# Files built by Visual Studio +*_i.c +*_p.c +*_h.h +*.ilk +*.meta +*.obj +*.iobj +*.pch +*.pdb +*.ipdb +*.pgc +*.pgd +*.rsp +*.sbr +*.tlb +*.tli +*.tlh +*.tmp +*.tmp_proj +*_wpftmp.csproj +*.log +*.vspscc +*.vssscc +.builds +*.pidb +*.svclog +*.scc + +# Chutzpah Test files +_Chutzpah* + +# Visual C++ cache files +ipch/ +*.aps +*.ncb +*.opendb +*.opensdf +*.sdf +*.cachefile +*.VC.db +*.VC.VC.opendb + +# Visual Studio profiler +*.psess +*.vsp +*.vspx +*.sap + +# Visual Studio Trace Files +*.e2e + +# TFS 2012 Local Workspace +$tf/ + +# Guidance Automation Toolkit +*.gpState + +# ReSharper is a .NET coding add-in +_ReSharper*/ +*.[Rr]e[Ss]harper +*.DotSettings.user + +# JustCode is a .NET coding add-in +.JustCode + +# TeamCity is a build add-in +_TeamCity* + +# DotCover is a Code Coverage Tool +*.dotCover + +# AxoCover is a Code Coverage Tool +.axoCover/* +!.axoCover/settings.json + +# Visual Studio code coverage results +*.coverage +*.coveragexml + +# NCrunch +_NCrunch_* +.*crunch*.local.xml +nCrunchTemp_* + +# MightyMoose +*.mm.* +AutoTest.Net/ + +# Web workbench (sass) +.sass-cache/ + +# Installshield output folder +[Ee]xpress/ + +# DocProject is a documentation generator add-in +DocProject/buildhelp/ +DocProject/Help/*.HxT +DocProject/Help/*.HxC +DocProject/Help/*.hhc +DocProject/Help/*.hhk +DocProject/Help/*.hhp +DocProject/Help/Html2 +DocProject/Help/html + +# Click-Once directory +publish/ + +# Publish Web Output +*.[Pp]ublish.xml +*.azurePubxml +# Note: Comment the next line if you want to checkin your web deploy settings, +# but database connection strings (with potential passwords) will be unencrypted +*.pubxml +*.publishproj + +# Microsoft Azure Web App publish settings. Comment the next line if you want to +# checkin your Azure Web App publish settings, but sensitive information contained +# in these scripts will be unencrypted +PublishScripts/ + +# NuGet Packages +*.nupkg +# The packages folder can be ignored because of Package Restore +**/[Pp]ackages/* +# except build/, which is used as an MSBuild target. +!**/[Pp]ackages/build/ +# Uncomment if necessary however generally it will be regenerated when needed +#!**/[Pp]ackages/repositories.config +# NuGet v3's project.json files produces more ignorable files +*.nuget.props +*.nuget.targets + +# Microsoft Azure Build Output +csx/ +*.build.csdef + +# Microsoft Azure Emulator +ecf/ +rcf/ + +# Windows Store app package directories and files +AppPackages/ +BundleArtifacts/ +Package.StoreAssociation.xml +_pkginfo.txt +*.appx + +# Visual Studio cache files +# files ending in .cache can be ignored +*.[Cc]ache +# but keep track of directories ending in .cache +!*.[Cc]ache/ + +# Others +ClientBin/ +~$* +*~ +*.dbmdl +*.dbproj.schemaview +*.jfm +*.pfx +*.publishsettings +orleans.codegen.cs + +# Including strong name files can present a security risk +# (https://github.com/github/gitignore/pull/2483#issue-259490424) +#*.snk + +# Since there are multiple workflows, uncomment next line to ignore bower_components +# (https://github.com/github/gitignore/pull/1529#issuecomment-104372622) +#bower_components/ + +# RIA/Silverlight projects +Generated_Code/ + +# Backup & report files from converting an old project file +# to a newer Visual Studio version. Backup files are not needed, +# because we have git ;-) +_UpgradeReport_Files/ +Backup*/ +UpgradeLog*.XML +UpgradeLog*.htm +ServiceFabricBackup/ +*.rptproj.bak + +# SQL Server files +*.mdf +*.ldf +*.ndf + +# Business Intelligence projects +*.rdl.data +*.bim.layout +*.bim_*.settings +*.rptproj.rsuser + +# Microsoft Fakes +FakesAssemblies/ + +# GhostDoc plugin setting file +*.GhostDoc.xml + +# Node.js Tools for Visual Studio +.ntvs_analysis.dat +node_modules/ + +# Visual Studio 6 build log +*.plg + +# Visual Studio 6 workspace options file +*.opt + +# Visual Studio 6 auto-generated workspace file (contains which files were open etc.) +*.vbw + +# Visual Studio LightSwitch build output +**/*.HTMLClient/GeneratedArtifacts +**/*.DesktopClient/GeneratedArtifacts +**/*.DesktopClient/ModelManifest.xml +**/*.Server/GeneratedArtifacts +**/*.Server/ModelManifest.xml +_Pvt_Extensions + +# Paket dependency manager +.paket/paket.exe +paket-files/ + +# FAKE - F# Make +.fake/ + +# JetBrains Rider +.idea/ +*.sln.iml + +# CodeRush personal settings +.cr/personal + +# Python Tools for Visual Studio (PTVS) +__pycache__/ +*.pyc + +# Cake - Uncomment if you are using it +# tools/** +# !tools/packages.config + +# Tabs Studio +*.tss + +# Telerik's JustMock configuration file +*.jmconfig + +# BizTalk build output +*.btp.cs +*.btm.cs +*.odx.cs +*.xsd.cs + +# OpenCover UI analysis results +OpenCover/ + +# Azure Stream Analytics local run output +ASALocalRun/ + +# MSBuild Binary and Structured Log +*.binlog + +# NVidia Nsight GPU debugger configuration file +*.nvuser + +# MFractors (Xamarin productivity tool) working folder +.mfractor/ + +# Local History for Visual Studio +.localhistory/ diff --git a/FraudCapturer.sln b/FraudCapturer.sln new file mode 100644 index 0000000..66a0923 --- /dev/null +++ b/FraudCapturer.sln @@ -0,0 +1,31 @@ + +Microsoft Visual Studio Solution File, Format Version 12.00 +# Visual Studio Version 17 +VisualStudioVersion = 17.0.32014.148 +MinimumVisualStudioVersion = 10.0.40219.1 +Project("{FAE04EC0-301F-11D3-BF4B-00C04F79EFBC}") = "FraudCapturer", "FraudCapturer\FraudCapturer.csproj", "{B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}" +EndProject +Global + GlobalSection(SolutionConfigurationPlatforms) = preSolution + Debug|Any CPU = Debug|Any CPU + Debug|x64 = Debug|x64 + Release|Any CPU = Release|Any CPU + Release|x64 = Release|x64 + EndGlobalSection + GlobalSection(ProjectConfigurationPlatforms) = postSolution + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Debug|Any CPU.ActiveCfg = Debug|Any CPU + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Debug|Any CPU.Build.0 = Debug|Any CPU + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Debug|x64.ActiveCfg = Debug|x64 + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Debug|x64.Build.0 = Debug|x64 + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Release|Any CPU.ActiveCfg = Release|Any CPU + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Release|Any CPU.Build.0 = Release|Any CPU + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Release|x64.ActiveCfg = Release|x64 + {B7D42E3E-C88C-4043-BA19-3B5BCA3E2EB8}.Release|x64.Build.0 = Release|x64 + EndGlobalSection + GlobalSection(SolutionProperties) = preSolution + HideSolutionNode = FALSE + EndGlobalSection + GlobalSection(ExtensibilityGlobals) = postSolution + SolutionGuid = {30D2158E-A51D-4915-A6AB-D04475461C47} + EndGlobalSection +EndGlobal diff --git a/FraudCapturer/App.xaml b/FraudCapturer/App.xaml new file mode 100644 index 0000000..97846e1 --- /dev/null +++ b/FraudCapturer/App.xaml @@ -0,0 +1,8 @@ + + + + \ No newline at end of file diff --git a/FraudCapturer/App.xaml.cs b/FraudCapturer/App.xaml.cs new file mode 100644 index 0000000..49a25f8 --- /dev/null +++ b/FraudCapturer/App.xaml.cs @@ -0,0 +1,15 @@ +using System; +using System.Collections.Generic; +using System.Configuration; +using System.Data; +using System.Linq; +using System.Threading.Tasks; +using System.Windows; + +namespace FraudCapturer; +/// +/// Interaction logic for App.xaml +/// +public partial class App : Application +{ +} diff --git a/FraudCapturer/AssemblyInfo.cs b/FraudCapturer/AssemblyInfo.cs new file mode 100644 index 0000000..8b5504e --- /dev/null +++ b/FraudCapturer/AssemblyInfo.cs @@ -0,0 +1,10 @@ +using System.Windows; + +[assembly: ThemeInfo( + ResourceDictionaryLocation.None, //where theme specific resource dictionaries are located + //(used if a resource is not found in the page, + // or application resource dictionaries) + ResourceDictionaryLocation.SourceAssembly //where the generic resource dictionary is located + //(used if a resource is not found in the page, + // app, or any theme specific resource dictionaries) +)] diff --git a/FraudCapturer/FraudCapturer - Backup.csproj b/FraudCapturer/FraudCapturer - Backup.csproj new file mode 100644 index 0000000..d985707 --- /dev/null +++ b/FraudCapturer/FraudCapturer - Backup.csproj @@ -0,0 +1,20 @@ + + + + WinExe + 8.0 + net6.0-windows + enable + true + AnyCPU;x64 + + + + + + + + + + + diff --git a/FraudCapturer/FraudCapturer.csproj b/FraudCapturer/FraudCapturer.csproj new file mode 100644 index 0000000..6c55889 --- /dev/null +++ b/FraudCapturer/FraudCapturer.csproj @@ -0,0 +1,18 @@ + + + + WinExe + net6.0-windows + enable + true + AnyCPU;x64 + + + + + + + + + + diff --git a/FraudCapturer/MainWindow.xaml b/FraudCapturer/MainWindow.xaml new file mode 100644 index 0000000..d9f569e --- /dev/null +++ b/FraudCapturer/MainWindow.xaml @@ -0,0 +1,16 @@ + + + + + + + + + \ No newline at end of file diff --git a/FraudCapturer/MainWindow.xaml.cs b/FraudCapturer/MainWindow.xaml.cs new file mode 100644 index 0000000..3e4672a --- /dev/null +++ b/FraudCapturer/MainWindow.xaml.cs @@ -0,0 +1,26 @@ +using System; +using System.Collections.Generic; +using System.Linq; +using System.Text; +using System.Threading.Tasks; +using System.Windows; +using System.Windows.Controls; +using System.Windows.Data; +using System.Windows.Documents; +using System.Windows.Input; +using System.Windows.Media; +using System.Windows.Media.Imaging; +using System.Windows.Navigation; +using System.Windows.Shapes; + +namespace FraudCapturer; +/// +/// Interaction logic for MainWindow.xaml +/// +public partial class MainWindow : Window +{ + public MainWindow() + { + InitializeComponent(); + } +} diff --git a/FraudCapturer/MainWindowViewModel.cs b/FraudCapturer/MainWindowViewModel.cs new file mode 100644 index 0000000..49e9928 --- /dev/null +++ b/FraudCapturer/MainWindowViewModel.cs @@ -0,0 +1,147 @@ +using IronOcr; + +using System; +using System.Collections.Generic; +using System.Diagnostics; +using System.Drawing; +using System.Drawing.Imaging; +using System.Net.Http; +using System.Text; +using System.Text.Json; +using System.Text.RegularExpressions; +using System.Threading.Tasks; +using System.Windows.Forms; + +namespace FraudCapturer; + +internal class MainWindowViewModel +{ + private readonly Dictionary domainCache = new(); + + public MainWindowViewModel() + { + Run(); + } + + private Task Run() + { + return Task.Run(async () => + { + Dictionary results = await ProcessScreenshot(); + + if (results.Count == 0) + { + return; + } + else + { + string alarmText = string.Empty; + + foreach (Result result in results.Values) + { + alarmText += Environment.NewLine; + alarmText += $"{Environment.NewLine}Domain: {result.Domain}"; + alarmText += $"{Environment.NewLine}Type: {result.Type}"; + alarmText += $"{Environment.NewLine}TrustRating: {result.TrustRating}"; + alarmText += $"{Environment.NewLine}Followed: {result.Followed}"; + alarmText += $"{Environment.NewLine}Source: {result.Source}"; + } + + MessageBox.Show(alarmText.Trim(), "Alarm!", MessageBoxButtons.OK, MessageBoxIcon.Warning, MessageBoxDefaultButton.Button1, MessageBoxOptions.DefaultDesktopOnly); + } + }).ContinueWith(t => Run()); + } + + private int count = 0; + + private async Task> ProcessScreenshot() + { + count++; + Debug.WriteLine(count); + + Rectangle rect = new Rectangle(Cursor.Position.X - 300, Cursor.Position.Y - 300, 600, 600); + Bitmap bitmap = new Bitmap(rect.Width, rect.Height, PixelFormat.Format32bppArgb); + Graphics g = Graphics.FromImage(bitmap); + g.CopyFromScreen(rect.Left, rect.Top, 0, 0, bitmap.Size, CopyPixelOperation.SourceCopy); + + string resultText; + + IronTesseract? ocr = new IronTesseract(); + + using OcrInput? input = new OcrInput(bitmap); + + // Fast Dictionary + ocr.Language = OcrLanguage.EnglishFast; + + // Latest Engine + ocr.Configuration.TesseractVersion = TesseractVersion.Tesseract5; + + //AI OCR only without font analysis + ocr.Configuration.EngineMode = TesseractEngineMode.LstmOnly; + + //Turn off unneeded options + ocr.Configuration.ReadBarCodes = false; + ocr.Configuration.RenderSearchablePdfsAndHocr = false; + + // Assume text is laid out neatly in an orthagonal document + ocr.Configuration.PageSegmentationMode = TesseractPageSegmentationMode.SparseText; + + OcrResult? result = ocr.Read(input); + resultText = result.Text; + Debug.WriteLine(resultText); + return await ProcessMatches(resultText); + } + + private async Task> ProcessMatches(string text) + { + string newDomains = string.Empty; + Dictionary results = new(); + MatchCollection matchCollection = Regex.Matches(text.ToLower(), @"(?:[a-z0-9](?:[a-z0-9-]{0,61}[a-z0-9])?\.)+[a-z0-9][a-z0-9-]{0,61}[a-z0-9]"); + + foreach (Match match in matchCollection) + { + if (domainCache.ContainsKey(match.Value)) + { + results.Add(match.Value, domainCache[match.Value]); + continue; + } + + newDomains += $"{match.Value} "; + } + if (!string.IsNullOrWhiteSpace(newDomains)) + { + HttpClient httpClient = new HttpClient(); + httpClient.DefaultRequestHeaders.Add("User-Agent", "FraudCapturer - (coming soon)"); + + ReqestBody reqestBody = new ReqestBody() + { + Message = newDomains + }; + + HttpContent httpContent = new StringContent(JsonSerializer.Serialize(reqestBody), Encoding.UTF8, "application/json"); + + HttpResponseMessage responseMessage = await httpClient.PostAsync("https://anti-fish.bitflow.dev/check", httpContent); + + string resultString = await responseMessage.Content.ReadAsStringAsync(); + ResultBody? resultBody = JsonSerializer.Deserialize(resultString); + + if (resultBody is null || resultBody.Matches is null || resultBody.Match == false) + { + return results; + } + + foreach (Result result in resultBody.Matches) + { + if (result?.Domain is null) + { + continue; + } + + domainCache.Add(result.Domain, result); + results.Add(result.Domain, result); + } + } + + return results; + } +} \ No newline at end of file diff --git a/FraudCapturer/ReqestBody.cs b/FraudCapturer/ReqestBody.cs new file mode 100644 index 0000000..0ddc9c3 --- /dev/null +++ b/FraudCapturer/ReqestBody.cs @@ -0,0 +1,9 @@ +using System.Text.Json.Serialization; + +namespace FraudCapturer; + +internal class ReqestBody +{ + [JsonPropertyName("message")] + public string? Message { get; set; } +} \ No newline at end of file diff --git a/FraudCapturer/Result.cs b/FraudCapturer/Result.cs new file mode 100644 index 0000000..05aab3e --- /dev/null +++ b/FraudCapturer/Result.cs @@ -0,0 +1,21 @@ +using System.Text.Json.Serialization; + +namespace FraudCapturer; + +internal class Result +{ + [JsonPropertyName("followed")] + public bool Followed { get; set; } + + [JsonPropertyName("domain")] + public string? Domain { get; set; } + + [JsonPropertyName("source")] + public string? Source { get; set; } + + [JsonPropertyName("type")] + public string? Type { get; set; } + + [JsonPropertyName("trust_rating")] + public double TrustRating { get; set; } +} \ No newline at end of file diff --git a/FraudCapturer/ResultBody.cs b/FraudCapturer/ResultBody.cs new file mode 100644 index 0000000..47aae26 --- /dev/null +++ b/FraudCapturer/ResultBody.cs @@ -0,0 +1,13 @@ +using System.Collections.Generic; +using System.Text.Json.Serialization; + +namespace FraudCapturer; + +internal class ResultBody +{ + [JsonPropertyName("match")] + public bool Match { get; set; } + + [JsonPropertyName("matches")] + public List? Matches { get; set; } +} \ No newline at end of file diff --git a/FraudCapturer/ScreenshotHandler.cs b/FraudCapturer/ScreenshotHandler.cs new file mode 100644 index 0000000..57251ce --- /dev/null +++ b/FraudCapturer/ScreenshotHandler.cs @@ -0,0 +1,5 @@ +namespace FraudCapturer; + +internal class ScreenshotHandler +{ +} \ No newline at end of file diff --git a/README.md b/README.md new file mode 100644 index 0000000..c10ea95 --- /dev/null +++ b/README.md @@ -0,0 +1,2 @@ +# FraudCapturer +