Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @3xp0rtblog
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @3xp0rtblog
-
Pinned Tweet
My first blog post about
#Mars#Stealer is out:https://3xp0rt.com/posts/mars-stealer …Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#Malware#Miner#Sapphire Packed with UPX update.exe: https://www.virustotal.com/gui/file/0094d3f44091633d863c94bc2fe63279aa50b40540f1fee23b523cf0b8ed1f9f/ … https://bazaar.abuse.ch/sample/0094d3f44091633d863c94bc2fe63279aa50b40540f1fee23b523cf0b8ed1f9f/ … Additional information is in the comments
pic.twitter.com/Qj5KJuOeiQ
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
Thanks. Twitter will use this info to make your timeline better. UndoUndo
-
Posted on: lolz[.]guru/threads/3707473/ Telegram: whisperproject_bot (5200576854) whisperstealer (-1001160109012) xthreenine (1843530387) saintsellerbot (2067635141)
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
#Malware#Stealer#Whisper The same that#Saint#Stealer but with sending logs to C2 that redirects them to the telegram bot. saintgang.exe: https://www.virustotal.com/gui/file/a6f5342f31a4f7e5b787f369dbb416f2b7117ceb291b55389ef97a08a6494fb4 … https://bazaar.abuse.ch/sample/a6f5342f31a4f7e5b787f369dbb416f2b7117ceb291b55389ef97a08a6494fb4/ …@malwrhunterteam@JAMESWT_MHT https://twitter.com/malwrhunterteam/status/1510206526933417987 …pic.twitter.com/Vf4mUMLwq2
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
CryptBot is an information stealer distributed by fake cracked software, it is an advanced and mature operation providing many of the underground shops with its stolen credentials. Read the analysis here: https://fr3d.hk/blog/cryptbot-too-good-to-be-true … Thx2
@SteveD3 for the editsShow this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
Thanks. Twitter will use this info to make your timeline better. UndoUndo
-
Thanks. Twitter will use this info to make your timeline better. UndoUndo
-
Posted on: xss[.]is/threads/63627/ cracked[.]io/Thread-Sellix-SAPPHIRE-MULTI-COIN-MINER-v1-1-100-NATIVE-SELECT-COIN-DEPENDING-ON-GPU hackforums[.]net/showthread.php?tid=6191352 nulled[.]to/topic/1382288-sapphire-multi-coin-miner-v11-100-native-select-coin-depending-on-gpu/pic.twitter.com/HimnLbOgO3
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
#Malware#Miner#Sapphire Packed with UPX update.exe: https://www.virustotal.com/gui/file/0094d3f44091633d863c94bc2fe63279aa50b40540f1fee23b523cf0b8ed1f9f/ … https://bazaar.abuse.ch/sample/0094d3f44091633d863c94bc2fe63279aa50b40540f1fee23b523cf0b8ed1f9f/ … Additional information is in the comments
pic.twitter.com/Qj5KJuOeiQ
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#Octo Android banking#Trojan frequently mentioned on dark-web forums is in fact#ExobotCompact (#Coper) enhanced with On-Device Fraud capabilities and spread via Google Play Store. Read more details in our latest blog:https://threatfabric.com/blogs/octo-new-odf-banking-trojan.html …Thanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
We also shared
#IoCs,#YARA rules and a#Mars#Stealer C2 extractor in our Github repository https://github.com/SEKOIA-IO/Community/tree/main/IOCs/marsstealer …https://github.com/SEKOIA-IO/Community/blob/main/scripts/mars_stealer_c2_extractor.py …Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#Mars#Stealer has recently gain in popularity among information stealers, we try to demystify its different versions and explain our tracking process in our article https://blog.sekoia.io/mars-a-red-hot-information-stealer …#Malware#TrackerShow this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
I share some additional samples and a Yara rule of
#Vovabol ransomware. This is active since mid-March 2022. H/T@Amigo_A_@malwrhunterteam Samples : https://bazaar.abuse.ch/browse/tag/Vovabol/ … Yara: https://github.com/StrangerealIntel/Orion/blob/main/Ransomware/RAN_Vovabol_Apr_2022_1.yara … Hunting: https://www.hybrid-analysis.com/yara-search/results/29835f9cd0fdf9533a8421f3087bc71e5148c192c3e9a55b36ad306de35b32a4 …https://twitter.com/Amigo_A_/status/1511597724340215808 …
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
Our large
#bitrat actors are back...still rolling with the creative c2 names.... bitratnew9200[.]duckdns[.]orghttps://app.any.run/tasks/bd0eae1d-a5cd-4355-821d-60744feb7c6e …Thanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#Malware#mars#Stealer c2: hxxp://194.87.218(.)39/RyC66VfSGP.php hash: 4bcff4386ce8fadce358ef0dbe90f8d5aa7b4c7aec93fca2e605ca2cbc52218b cc:@3xp0rtblog@1ZRR4H@ViriBackpic.twitter.com/qCGokb9sDG
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
ISC Diary:
@malware_traffic reviews new#MetaStealer malware first seen on 2022-03-30 https://i5c.us/d28522 pic.twitter.com/1561uSr7WK
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
FLARE dropping tool bombs on github that I haven't seen mentioned around the place. Been waiting for this to go public so I could share some scripts I have to dump .Net functions generating yara rules
#100daysofyarahttps://github.com/mandiant/dncilShow this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#CERTUA and the@CyberpoliceUA reported on a new cyber-attack aimed at gaining access to Telegram accounts. This activity is tracked by UAC-0094: https://bit.ly/35Lr4z2#war#CyberAttack#HybridWar#Ukraine️Thanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
I'm taking advantage while I share the samples of the X86 version of
#Hive V5 for sharing also the Yara rule at the same time. Samples: https://bazaar.abuse.ch/browse/tag/Hive/ … Yara : https://github.com/StrangerealIntel/Orion/blob/main/Ransomware/RAN_Hive_March_2021_2.yara … cc@BushidoToken@c3rb3ru5d3d53c@cPeterr@h2jazi@Amigo_A_Thanks. Twitter will use this info to make your timeline better. UndoUndo -
3xp0rt Retweeted
#Malware#Stealer#000Stealer Stealer and panel are written in Go Loader.exe (build): https://www.virustotal.com/gui/file/5d6c176341db385db8e279629a038781c08e15e33e052ac4c26ad58457871e4e/ … https://bazaar.abuse.ch/sample/5d6c176341db385db8e279629a038781c08e15e33e052ac4c26ad58457871e4e/ … 185.112.83.228 (C2): https://www.virustotal.com/gui/ip-address/185.112.83.228/ … 000Stealer[.]zip (panel resources): https://www.virustotal.com/gui/file/ac19b7f447357d84241e3067d7ad24a4056a7322b715e4c3f1518b56030c65ce/ … https://bazaar.abuse.ch/sample/ac19b7f447357d84241e3067d7ad24a4056a7322b715e4c3f1518b56030c65ce/ …pic.twitter.com/JFTteep34u
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.