Inplex-sys / Sordeal-Stealer-NoDualHook

[NEW] Discord token grabber, Grab Passwords/cookies/history/credit cards for all browsers/Antivirus/wifi Passwords/Anti Debug/Kill Discord/AntiUpdate/Add Startup/Fake Error/steal all Cord Tokens/Steal Wallet/address replacer,GUI builder,Discord Injection/steal passwords/credit card/paypal/antidelete/new login/logout/nitro autobuy

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Sordeal Stealer v3 without Dual Hook

Proofs that Sordeal Stealer is a Dual Hook :

An investigation has uncovered that the main.py file in the Sordeal repository injects malicious nodejs code into the Discord %APPDATA%/Discord/app-(versions)/modules/discord_desktop_core/index.js module. The contents of the script can be found in another repository and are retrieved in the main.py file (see link).

The index.js file, which is executed by the main thread of Electron (Discord), is responsible for stealing the Discord session token and collecting various information about the victim. The attacker receives this information, but a copy is also sent to https://panel.sordeal.com:3000/ using a POST method (see link).

A review of the code link reveals that we send the same HTTP request 2 times, one time for config.webhook and one time for config.uwu who is the dualhook url.

Sordeal's Code is fully undetectable, the only detections are the fault of pyinstaller we recommend to use Cx_Freeze to compile it.

NOTE:

  • Disclaimer - I'm not responsible for any damages this software may cause after being acquired. This software was made for personal education and sandbox testing

🌐 〢 Content

📁 〢 Setting up Sordeal

  1. Install Python
  2. Install Sordeal Files
  3. Install all requirements install.bat
  4. Click on start.bat start.bat
  5. Complete the configuration
  6. You have your .exe/.py file enjoy

🔰 〢 Features

💎 = Premium Features Join the discord to buy

> Default:

- Steal Steam / Minecraft / Metamask / Exodus / Roblox / NationGlory login
- Add a Fake error
- Steal Chrome Passwords / Cookies / History
- Systeme Informations
- Inject Discord / Discord Canary / Lightcord / Ripcord / Xcord
- Steal AntiVirus Detected
- Debug Killer (Kill task gestionary)
- Bypass TokenProtector / BetterDiscord- Take a Screenshot
- Grabb System Informations
- Steal Latest Clipboard
- GUI builder
- Bypass Virus Total machines
- Bypass VM machines- Hide Itself in Background
- Replace the BTC address copying by your- Custom Installer / Setuper- Icon / Name / Description Customizable
- Steal Wifi Password
- Steal Screenshot
- Add to startup
- Steal all Chromium Passwords and Cookies for OperaGX/Opera/GoogleChrome/Brave/Chromium/Torch/Edge/Mozilla and others
- 0/64 Detect Virus Total Builder (.exe) (💎)
- Cookies Exploiter Tech (💎)
- Grabb Sensitive Files exodus login / a2f backup codes / tokens / passwords... (can be customizable) (💎)


> Injection:

- Nitro Auto Buy
- First Start Reporter
- New Passwords
- New Emails
- New Login
- New Credit Card
- New PayPal (💎)
- Anti Delete system (re install after Discord uninstall /  Bypass Discord Update) (💎)



> + More!

👁️ 〢 Explanations of Features and options

💭 〢 ChangeLog

v1.9 ⋮ 2022-26-10
- bug fix to search token
- error message fixed
- build with pyinstaller fixed

v2.0 : 2022-30-10
- enoent zipfile bug fixed
+ Place .exe in startup
+ Add Fake Error

v2.1: 2022-30-10
+ New builder
+ Ping on run
+ Task Manager killer

v2.1.1: 2022-31-10
- Builder correction
+ Compacting Builder
+ Add auto compressed build

v2.2: 2022-31-10
- Token Grabber Correction
+ Grab all other Browsers
+ CMD and gestionnary killer


v2.2.5: 2022-14-11
+ Detect New Discord Active Developer Badge


v2.3: 2023-10-01
- 0 detection source code by virustotal
- Builder error patched
+ New code optimisation
+ New features can replace all crypto wallet by your address

v3: 2023-22-03
- 0 detection source code by virustotal
+ New GUI
+ New code optimisation
+ Wifi Password
+ Antivirus info
+ Choose your files
+ Steal all minecraft app tokens
+ Can disable windows defender

v3.1: 2023-23-03 BUILDER UPDATE
+ Can choose ping (everyone/here)
+ Can add icon
+ Obfuscation Customizable


v3.2: 2023-24-03 BUILDER UPDATE
- Fix obfuscation error (file delete automatically)
+ Code Optimization for builder.py


v3.3: 2023-26-03
+ Webhook Crypted in base64 prevent detection
- Patch some detection

v3.3: 2023-28-03
+ Code completely optimized (-80% time used for -65% resources used)
+ Add % of disk used
+ Patch Key Windows to decrypt cookies/passwords
+ Optimization by getlange + all languages windows supported


v3.3: 2023-29-03
+ Fix Bypass discord token protector
+ Fix getlange error

Authors

  • Inplex-sys ( The cool guy who removed the hidden stealer )
  • ShamanOracle ( ⚠️ Using Github As Infection Source )
  • NolayDsc ( ⚠️ Using Github As Infection Source )
  • 0xKatashiOracle
  • blackkface
  • choumi1
  • IrxOracle
  • M4T-Dev

Contributors

🕵️‍♂️ 〢 Forked From:

  • Hazard Grabber
  • Wasp-stealer
  • Blackcap Grabber

💼 〢 Terms Of Usage

  • Educational purpose only
  • Reselling is forbidden
  • You can use the source code if you keep credits (in embed + in markdown), it has to be open-source
  • We are NOT responsible of anything you do with our software (if its illegal)

Back to Top

About

[NEW] Discord token grabber, Grab Passwords/cookies/history/credit cards for all browsers/Antivirus/wifi Passwords/Anti Debug/Kill Discord/AntiUpdate/Add Startup/Fake Error/steal all Cord Tokens/Steal Wallet/address replacer,GUI builder,Discord Injection/steal passwords/credit card/paypal/antidelete/new login/logout/nitro autobuy


Languages

Language:Python 78.1%Language:JavaScript 21.8%Language:Batchfile 0.1%