I wrote a detailed and technical article about ransomware identification for analysts. 😃
I put my 💙into this. Enjoy!
#GDataTechblog#GData#ransomware
https://t.co/pqgphYoqg9
These are adversaries IP who had tried very hard to hack #MalwareMustDie infrastructure in past week:
213[.]136[.]86[.]40
193[.]188[.]22[.]253
185[.]153[.]198[.]200
194[.]28[.]112[.]50
193[.]188[.]22[.]12
198[.]108[.]67[.]48
210[.]245[.]89[.]85
124[.]128[.]225[.]190
#BLOCK!
Hello @Arubait,
please check your server (hXXp://80.211.90.168/) which is delivering #ELF#IoT#Malware for #DDoS attack.
This time the #DDoS attack commands are codified in the .rodata area, down there, near the exploit 😜
Thank you @0xrb
A wave of extortion emails came with this serious transcript, don't fall on this scam, NEVER ever pay them anything. What it is written are bluff & what they truly just aim is your pocket.
If you could, report this as victim to your nearest cyber police for further process.
#MalwareMustDie was formed in twitter in August 2012.
Back then was a "taboo" to raise awareness to resist #malware threat openly in twitter by sharing stuff & back then the knowhow for malware RE was controlled by security vendors leaving the #infosec blind
We broke the taboo.
Updated #STOP#Ransomware decrypter with a bunch of OFFLINE IDs/keys for extensions .kroput1, .charck, .kropun, .doples, .luces, .luceq, .chech, .pulsar1, and .proden. https://t.co/YY90BUqeMm
New #FalloutEK is using PoC on GitHub!
(CC: @kafeine, @jeromesegura, @malware_traffic)
https://t.co/L1J5QOwJWn
https://t.co/ehhwtQqC5j
https://t.co/7opIhvSxg4
#GandCrab 5.2 new undecryptable version in-the-wild 🦀response to the new BitDefender decryption tool in the strings 🧐☺️cc//@bbotezatu
MD5: ba2960ce267dc0f11e2683679ce038f7 catch by @tamas_boczan