d00rt

@D00RT_RM

Reversing - Malware Analysis - File Formats - Is it really necessary to say that my opinions are mine and nobody else's?

PEDICOM
Vrijeme pridruživanja: siječanj 2017.

Tweetovi

Blokirali ste korisnika/cu @D00RT_RM

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @D00RT_RM

  1. Prikvačeni tweet
    21. lis 2019.

    I just published an in-depth analysis of how the network protocol works. Also I've released a tool which emulated this protocol and is capable to download new & from the C&Cs. It's integrated with and .

    Prikaži ovu nit
    Poništi
  2. proslijedio/la je Tweet
    Odgovor korisniku/ci

    There’s also a really cool one here, which looks for a bunch of stuff and is very effective.

    Poništi
  3. proslijedio/la je Tweet
    4. velj

    これ凄い! CAPEやTriageに上がってるemotet検体を指定すると、解析結果にあるC2にアクセスしてモジュールをダウンロードしてくれる。 ダウンロードしてきたのが何かは調べなきゃあかんのが辛い。spamモジュールはどれだ?

    Poništi
  4. proslijedio/la je Tweet
    31. sij

    I just updated the emulator (Emutet). It works correctly right now. Thanks to . CODE: In the image below you can find the changes on the network protocol =)

    Prikaži ovu nit
    Poništi
  5. proslijedio/la je Tweet
    31. sij

    I also just released a vaccine for . A protection and detection tool to avoid get infected by Emotet payload. The code and the binaries are in my repository.

    Prikaži ovu nit
    Poništi
  6. proslijedio/la je Tweet
    31. sij

    に感染しているかの確認と感染を防ぐツールがリリースされています。 makeする必要があるので素人には使いづらいですが。 企業での予防や大規模感染している場合のインシデントレスポンスには良さそうです。 (感染確認ツールには出来ればどこのパスに本体があるか教えて欲しかった)

    Poništi
  7. proslijedio/la je Tweet
    1. velj
    Poništi
  8. proslijedio/la je Tweet
    1. velj

    Buenísima la charla de en la . Estás hecho un crack!

    Poništi
  9. proslijedio/la je Tweet
    31. sij

    Partiéndome la polla con la charla de

    Poništi
  10. proslijedio/la je Tweet
    31. sij
    Poništi
  11. proslijedio/la je Tweet
    31. sij
    Poništi
  12. 31. sij

    I also just released a vaccine for . A protection and detection tool to avoid get infected by Emotet payload. The code and the binaries are in my repository.

    Prikaži ovu nit
    Poništi
  13. 31. sij

    I just updated the emulator (Emutet). It works correctly right now. Thanks to . CODE: In the image below you can find the changes on the network protocol =)

    Prikaži ovu nit
    Poništi
  14. proslijedio/la je Tweet
    2. sij

    26 charlas, 8 talleres, CTF, arsenal... nunca habíamos tenido tantos ponentes en . Los próximos 31 de enero y 1 de febrero llega a gracias a ellos. Abrimos hilo 🤙

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet
    20. sij

    malware was active 4 years ago and then disappeared. We just discovered it was under the radar for the last years, after changing its tools to stay undetected. Read the technical post by

    Poništi
  16. proslijedio/la je Tweet
    17. sij
    Prikaži ovu nit
    Poništi
  17. proslijedio/la je Tweet
    11. sij
    Poništi
  18. proslijedio/la je Tweet
    7. sij

    Interested in Powershell fun or data on 50,000 Emotet analyses from our public cloud? Have a look at our latest blogpost! Stay tuned for more news in the next weeks!

    Poništi
  19. proslijedio/la je Tweet
    3. sij

    🚀 Launch Day 🚀 It’s official this project that and I have been a part of for 5 years is now available as a free public Beta! Automated malware unpacking!

    Poništi
  20. proslijedio/la je Tweet
    25. pro 2019.

    I uploaded a video example using DbgChild plugin for x64dbg:

    Poništi
  21. proslijedio/la je Tweet
    24. pro 2019.

    There are 2 types of people, those who are writing and sharing tooling, publishing research and building innovative solutions to protect systems... and those who argue about OST on Twitter because they can’t. Choose your path.

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·