malwareresearch | Unsorted

Telegram-канал malwareresearch - Malware Research

9687

Group for Malware Analysts. Pinned message with resources and rules: https://t.me/MalwareResearch/38033

Subscribe to a channel

Malware Research

some stealer in marketplace also have hashes(public in ressearch article) when combine with others exe i think when extract compressed files in it we found exact stealer inside

Читать полностью…

Malware Research

that's new, you have any download samples link ?

Читать полностью…

Malware Research

Guys am dealing with a bunch of stealer files with naming "node.exe" i guess its nodejs file also some of them are electron apps, is there any means to deal with it?

One of them I just found is using *asar* which can be used to extract the actual code

Читать полностью…

Malware Research

Hi, any recommedations for an EDR with a friendly trial or free seats for learning?

Читать полностью…

Malware Research

Thanks for the integration

Читать полностью…

Malware Research

Parmanu [1113907741] is currently banned in Libra's Empire.
Reason:
cracks

Date of ban: 25/02/2023
FedAdmin: ❤🦦

Читать полностью…

Malware Research

The following federations have caused Parmanu to be banned in chats:
- b578caf1-07e7-4e92-9226-f69346180d99: Libra's Empire

If you would like to know more about the fedban reason in a specific federation, use /fbanstat <UserID> <FedID>.

Читать полностью…

Malware Research

User info:
ID: 1113907741
First Name: Parmanu
Username: @parmanoo
User link: link
Status: banned

This user has been fbanned in the current fed, Libra's Empire.
Reason: cracks

Читать полностью…

Malware Research

User Parmanu is banned in the current federation (Libra's Empire), and so has been removed.
Reason: cracks

Читать полностью…

Malware Research

Hello Sagor, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

Hello @MEERFARAZ787, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

Remind me in about an hour

Читать полностью…

Malware Research

Maybe if this is feasible, we can keep a track of the campaign before they are used ITW

Читать полностью…

Malware Research

Well thats nice because I was unaware of it

Читать полностью…

Malware Research

The paid github api allpws you to do so

Читать полностью…

Malware Research

and with the AZstealer-Build.exe in virus total you found it as stealer ?

Читать полностью…

Malware Research

Context : https://www.virustotal.com/gui/file/a2b284d185326ef5a6031fd2278302a715181989230b54f9e4e4d79545a0dde7/details

Читать полностью…

Malware Research

On GitHub there are 2

https://github.com/ComodoSecurity/openedr

https://github.com/0xrawsec/whids

I use whids at home, but be careful how you configure it. I think I have a setting that backs up my VM and ate up all my storage space because of some detections and I had to hunt that down

Читать полностью…

Malware Research

Hello Unkle, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

Hello @Lorddevilhunter, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

/fbanstat @parmanoo b578caf1-07e7-4e92-9226-f69346180d99

Читать полностью…

Malware Research

/fedstat @parmanoo

Читать полностью…

Malware Research

/info @parmanoo

Читать полностью…

Malware Research

Hello Roshan, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

Hello @apostol0s, welcome to the Malware Research group! Please read the pinned message before you post!

Читать полностью…

Malware Research

There have many opinion in I have seeing, let me share my experinece.

You may install the EDR agent in endpoint and perform attack using Atomic Red Team https://atomicredteam.io/

In our office, when we take trail for huntress, I tested in VM. also, caldera, spider monkey etc. advisory emulation you may use. Which actually purple teaming, for understood the capability of defender product like EDR.

And bitter truth, no EDR is the BEST of BEST. They have lackings, they try to improve to beat the hackers. Thanks.

Читать полностью…

Malware Research

Thanks @Libranalysis

Читать полностью…

Malware Research

Recently I have been monitoring a simple yet very busy stealer abusing github as its downloader for second stager

Читать полностью…

Malware Research

The free version too, but is limited

Читать полностью…

Malware Research

Folks do let me know if I am wrong, but do we have any tool, " which can help us search certain code fragements on github, on a daily basis, like lets say, I wanna search "H-e-l-l-o,W_o_r_l_d" content ovet entire github code repositories and on a daily basis, and once we have any new repo updating this content, we get a hit or a notification.."

Читать полностью…
Subscribe to a channel