Cartman is open-source

If you don’t remember me, I am a bot that automatically creates threads with tech support scams urls and numbers. Today i am gladly saying that i will open-source the project: Click here

If you don’t know cartman is a discord bot that reports and lookup both mobile numbers and phishing urls.

Recently I added support for playit domains.

Requirements:

You need to make a discord application (bot + application.commands)

Setup api keys to:

https://api.ipdata.co/
https://apilayer.net
https://urlscan.io/
https://playit.gg/ (Optional) (You need to talk with the server’s owner to request an api key).
Google safebrowsing.

Custom SMTP

In discord-side I support the following commands:

/whois [domain|ip|mobile] [query] - Fetches information about the specific category (Whois for domain, IPData for specific ip address and apilayer for the mobile number).

/report [url] [query] [reason] - Reports the url to google safebrowsing, urlscan and maybe creating a topic here (but I removed the code due to abuse in the system). The reasons are phishing, TSS and malware. (If url is from playitt, it will automatically use their api for abuse). If the reason is TSS it will use the same scheme how i make topics here. It uses proxy to go that website, take screenshot and get the content of it. Phone numbers in US, JP are only supported. (Slight support for FR and DE).

/refreshproxies - Refreshes the list of proxies.

To build the bot you need to have installed Intellij (I use 2024.1)

The bot supports a system where you choice who can report or use the bot at all. It also supports database for users and what privileges they have. The existing privileges are VERIFIED, VERIFIER and DEVELOPER. where developer have some other commands that are not related in reporting process.

If you have any questions don’t hesistate to PM here or on discord.

2 « J'aime »

How do I found fake popups?

  1. Keywords:

  2. Centre de sécurité Code0x268d3 Services

  3. Security Center Code0x268d3 Ch0#07frt97 Services

  4. Security Center Code0x268d3 Er0007ff97 Services

  5. Sicherheitscenter-Code0x268d3-Dienste

  6. Pare-feu Windows Code0x268d3

  7. Security-Center-Code0x268d3 Services-Error0SecurityrEr0dfdsfd07

  8. Trojan.DNSCharge.AC

  9. Trojan.Dropper.Autoit

  10. Windows code firewall0x268d3x0

  11. MS_9832_Assistance_Code0x268d3_Er0007ff97_Services

  12. PUP.Optional.RelevantK

How do I find the source code of a url?

  • It’s not a magic or something you won’t guess. It’s clearly bruteforce the name of page with extensions .zip, .rar, .7z, .tar, .gz.tar and if that fails i go to the previous directory. The script stops at the first directory.

How do I find webshells?

  • Almost the same way as finding popups.
2 « J'aime »