360 Netlab

423 posts

360 Netlab

360 Netlab

@360Netlab

Network Security Research Lab at 360

Beijing Katılım Ocak 2018
12 Takip Edilen4.7K Takipçiler
360 Netlab
360 Netlab@360Netlab·
So, we published our Fodcha botnet blog two days ago, and the author behind this botnet pushed an updated new sample with the following message inside....🤪
360 Netlab tweet media
English
1
3
24
0
360 Netlab
360 Netlab@360Netlab·
What are the most active P2P based botnets on the internet now, and what are their sizes? We(360netlab) have a tracking system in place for a while and here are some basic information about Pink,Mozi,Hajime,FritzFrog and Panchan. blog.netlab.360.com/p2p-botnets-re…
English
0
6
6
0
360 Netlab
360 Netlab@360Netlab·
New version of Fodcha is bigger and probably better, and attacking various websites like there is no tomorrow. (in previous version, the author left a note saying "Netlab pls leave me alone I surrender", it does not seem so) blog.netlab.360.com/fodcha-is-comi…
English
0
7
9
0
Virus Bulletin
Virus Bulletin@virusbtn·
Netlab researchers look into the PureCrypter loader's communication activities from the perspective of C2 and the communication chain, and analyse its operation process. blog.netlab.360.com/purecrypter/
Virus Bulletin tweet media
English
1
17
31
0
360 Netlab
360 Netlab@360Netlab·
We have noticed that some malware authors pay attention to who downloads their malwares from their downloader servers, aka, they do their security data analysis, if a device other than their own bots connect to their downloader, they DDoS these device IPs.
English
1
3
13
0
360 Netlab
360 Netlab@360Netlab·
Our latest blog is about a new Monroe coin mining botnet Orchard, among other things, this botnet uses Satoshi Nakamoto's Bitcoin account transaction information to generate DGA domain names to evade detection. blog.netlab.360.com/a-new-botnet-o…
English
0
5
7
0
360 Netlab
360 Netlab@360Netlab·
Okay, one botnet author has this written in his new program..🤪
360 Netlab tweet media
English
1
4
51
0
360 Netlab
360 Netlab@360Netlab·
A new updated fbot have been attacking various big names, it is now one of the most active DDos botnets that we have observed recently, more details can be found from our recently published blog blog.netlab.360.com/botnet-group-b… (in Chinese, but google translate will do the trick).
360 Netlab tweet media360 Netlab tweet media360 Netlab tweet media
English
0
5
12
0
360 Netlab
360 Netlab@360Netlab·
Our latest blog, a new DDoS botnet Fodcha, which is big, and very active attacking various targets, some of the victims are the world top popular domains(top 10 companies) blog.netlab.360.com/fodcha-a-new-d…
English
0
5
11
0
Peter Lowe
Peter Lowe@pgl·
@johullrich Hey @360Netlab, nice report, thanks for this. Just checking into our logs, we haven't seen this domain in use @DNSFilter so far. We're still looking but it doesn't seem very active.
English
1
0
0
0
360 Netlab
360 Netlab@360Netlab·
We observed that ripprbot botnet has instructed its bots to attack targets 147.237.0.0, 147.237.64.0 and 147.237.68.0, all belong to Israeli Government Network
360 Netlab tweet media
Doug Madory (also on Bluesky)@DougMadory

A DDoS attack today against Israel reportedly took down the country's government websites. @kentikinc observed a DDoS attack focused primarily against AS8867 (Israeli E-Government Project) beginning just before 15:30 UTC (5:30pm local). haaretz.com/israel-news/.p…

English
1
8
22
0
360 Netlab
360 Netlab@360Netlab·
Our latest blog about the recent Ukraine and Russia DDoS attacks, takeaway: botnets are actively been recruited for attacks on both sides and Russia actually receives more DDoS than Ukraine does. blog.netlab.360.com/some_details_o…
English
1
13
25
0