Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @Vishnyak0v
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @Vishnyak0v
-
April,
, Barcelona ...
Let's dive deeper into high-level threats at @TheSAScon together. See you all!
#TheSAS2020pic.twitter.com/hDkpeAE5eu
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Suddenly old signed (DUHANEY LIMITED) DnsShellClient under
#TA505 group packer 5dedfd0d766de680e5a7bb0612bee53c \\Mac\Home\dev\e-spy\DnsShellClient\bin\Win32\Release\installer.pdb ns1[.]dot[.]net[.]in A few links with#FrameworkPOS https://redcanary.com/blog/frameworkpos-and-the-adequate-persistent-threat/ …#APT#FIN6pic.twitter.com/COz8HtdO2M
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Alexey Vishnyakov proslijedio/la je Tweet
Alexey Vishnyakov, Senior Specialist, Threats Analysis Group at
@ptsecurity will deliver a talk on "Mlw #41: a new sophisticated loader by#APT group TA505" at#Nullcon2020.
Register today & avail pre-con discount to save up to Rs. 6,000
http://bit.ly/2uDTJzF
#Nullconpic.twitter.com/wHda4tiS7S
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A quite convenient approach for choosing the domain name by
#StrongPity group: apt5-secure3-state[.]com ab6d150d745053afae1d86f464954c42 a9c7d342359cb7a6180f71c6dc18be2b Fake overlaps with#Manganese and a false trace to China? ...#APT#PROMETHIUMpic.twitter.com/UqWVimvKZp
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Nice! The talk about advanced loader of
#TA505 group has been accepted to#Nullcon2020 in India
. Let's come back to Goa
https://nullcon.net/website/goa-2020/speakers/alexey-vishnyakov.php …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
One more
#Bisonal#APT malware from recent attacks against Russia and South Korea. XOR encrypted payload. RC4 encrypted strings and C2 communication remains the same. 221b9de416d42a979288cfa196912af4 15af764731c257caf1ee26d1cfc049a9 etude.servemp3[.]com https://app.any.run/tasks/861c9b52-c59b-4763-8a94-3e64d03e94ed/ …pic.twitter.com/HKjmMt4ch7
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
New Year wishes from the
#TA505 group (with love for russian researchers): MD5: a7cea801e0382676ff8e800187607276 hxxp://jopanovigod.xyz/f8h7ghd8gd8/index.php jopanovigod -> jopa novi god -> ass new year#ServHelperpic.twitter.com/dgaLTXrh6D
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
The
#BronzeUnion/#LuckyMouse/#APT27 infection checker. Possibly from http://cert.ir MD5: 86c9e95dcf69f6eca2a176407dcb99ff RahaSecIOC-x86.exepic.twitter.com/dthcwWUB2M
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A wonderful gift for the Christmas and upcoming birthday. The lightning talk "Mlw #41: a new sophisticated loader by APT group TA505" has been accepted! Looking forward to attend
@WEareTROOPERS#TR20https://twitter.com/WEareTROOPERS/status/1208095304698007553 …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
The way of thinking: an example of the TI investigation in Russian
.https://www.ptsecurity.com/ru-ru/research/pt-esc-threat-intelligence/tureckie-fokusy-s-chervyami-krysami-i-frilanserom/ …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
dfsugfygeyy4ggf[.]xyz dsigoisdijgjg[.]xyz asfasfijfjsi55[.]xyz dsgsdgpogsdj24dgoiu[.]xyz kiparis[.]xyz ofiughfuu[.]xyz dsnnguyrygfu[.]xyz hxxp://almagel.icu/cp.exe hxxp://almagel.icu/ssh.zip hxxp://gabardina.xyz/log.txt hxxp://kuarela.xyz/1.txt
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
f8a436fdf56a55cdc50b783e8d76f5e4 942436cfe7b54865a5dfe7460610d763 ca411b87c7f85d7ea15b8d1b4bfd000b 1814164fbd7b5507bcb48be080817942 c982570ca4be486ffd1337e8c61db972 asggh554tgahhr[.]pw sgahugu4ijgji[.]xyz dfsgu747hugr[.]pw kilimadzhara[.]xyz d8ufhhhfa448[.]xyz
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A few fresh and rebuilt
#ServHelper samples related to#TA505 group. The Vigenere encryption for strings remains the same.pic.twitter.com/S2nDqYYiA1
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
#TA505 group started using the#AZORult stealer under their packer: ccdc3f83d847daf09e6c10be46b63b2e 185.203.117[.]232pic.twitter.com/KjKfxiZ64W
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
#DADJOKE loader from Malaysian attacks linked to TEMP.Periscope#APT group: 8a133a382499e08811dceadcbe07357e accountsx.bounceme[.]net https://app.any.run/tasks/ed03d492-688e-4182-9a06-6f65d8cb18fc/ …#Leviathan#APT40pic.twitter.com/0B9chg2FGO
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Problems with an office document? Nothing after opening? Seems that suspicious? Try to print out it! 27a10e250f846dbfca0f56b12913d60d
#InfoSec#Funpic.twitter.com/fc7e5b1Xed
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A funny korean fake_konni.doc with
#Russian text and#Ahnlab domain as C2. Some kind of joke? :-) bf27815282d53d4182f54507e83b8c5a hxxp://file.ahnlab.com/1.txtpic.twitter.com/zMlDhJKZlG
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
One more overlap between groups:
#Silence MainModule backdoor under#TA505 packer. A config is compressed with the adaptive#Huffman -based algorithm. 692c4e4db4aaec596dc570b1f12b8c2a 45.84.0[.]201 Special thanks to@immortalp0ny#APTpic.twitter.com/8r3anZLHST
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
