more gafgyt with encrypted (a bit differently than the list time) floating around https://www.virustotal.com/en/file/ea487aa529eb61f0baade8ad2eb4b2288595e20e49a6ddfb7d8ab723597ba347/analysis/ … cc @MalwareMustDie @bartblaze
-
-
Replying to @michalmalik
@michalmalik@MalwareMustDie@bartblaze "gafgyt" is this, https://github.com/gh0std4ncer/lizkebab … - correct?1 reply 0 retweets 0 likes -
Replying to @timstrazz
@timstrazz@MalwareMustDie@bartblaze yes. mentioned encoded sample lacks a few strings, but the characteristics and behav. are there1 reply 0 retweets 0 likes -
Replying to @michalmalik
@michalmalik@MalwareMustDie@bartblaze right - ok, I hadn't seen that family name before, keep seeing it as "fgt" - there are a good 1/22 replies 0 retweets 0 likes -
Replying to @timstrazz
@michalmalik@MalwareMustDie@bartblaze amount of them lately which are using upx / modified upx 2/22 replies 0 retweets 0 likes
Replying to @timstrazz
@timstrazz @michalmalik @MalwareMustDie Yeah, they are becoming a bit more 'clever' so to speak. Nice find Sir!
12:28 AM - 18 Dec 2015
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.