Sabitlenmiş Tweet
sysopfb
947 posts

sysopfb
@sysopfb
Threat Intel as a reverse-engineer in Crimeware domain. Dubbed "Malware Mangler" by TheRegister. [email protected]
Katılım Ağustos 2016
758 Takip Edilen4.3K Takipçiler

medium.com/walmartglobalt… Kudos to GitHub they were taking stuff down very fast
English

DFIRReport pastebin link also lines up with one of the pastebins I saw in my blog - "cLika3dt"; thedfirreport.com/2025/03/31/fak…
sysopfb@sysopfb
Auto decoding IOCs from Arechclient and the onboard browser extension they drop medium.com/walmartglobalt…
English

Auto decoding IOCs from Arechclient and the onboard browser extension they drop medium.com/walmartglobalt…
English

medium.com/walmartglobalt… go through a little of the panel they are using for the fake invites also
English

@diego_gg95 Oh well take what I said as a best guess, also don’t feel too bad all the detections from av on vt were less than 5 out of 60+ or however many vt uses nowadays and most were very generic detections
English

@diego_gg95 The recent ones I’ve seen are LummaC with a c2 of the domain I posted. If you still have yours you can upload it to virustotal and shoot out the link to the file and we can verify if you want.
English

Samples look like stealers. Some of the recent ones being Lumma placekeawe(.my
Diego@diego_gg95
I got drained, fully drained. Hi everyone, I'm just coming to share with you all the worst day of my life, and how it happened so that you guys don't ever have to pass through it. Thread below.
English

Was fun to dig back into some inject systems medium.com/walmartglobalt…
English




