Tweet
- Tweet, pagina attuale.
- Tweet e risposte
- Contenuti
Hai bloccato @demonslay335
Sei sicuro di voler vedere questi Tweet? Visualizzare i Tweet non sbloccherà @demonslay335
-
Tweet fissato
ID
#Ransomware is live! Special thanks to@malwrhunterteam for the sub-domain. http://id-ransomware.malwarehunterteam.com/Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
Microsoft Releases KB4090913 Update to Fix Critical USB Driver Issue https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-kb4090913-update-to-fix-critical-usb-driver-issue/ …
#microsoft#windows#USBpic.twitter.com/flyi3p7HDI
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Looks like
#Cryakl#Ransomware has updated to v1.5.1.0. ID Ransomware picked up on example file named "[email protected] http://1.5.1.0.id -1614714137-578233478334310455516964.fname-README.txt.doubleoffset"Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
ScammerLocker (Hidden Tear) ransomware: https://www.virustotal.com/en/file/d261aaddc36b42cd3ab3b78021998f5c988c47a9174cbeafe8bcb3b052767d80/analysis/1519860262/ … Ext: .jodis Based on name & the GUI (it won't appear if you just run, it will only encrypt & drop note), prob. will target scammers.
Also, first time I hear about IOTA related to RW.
@BleepinComputer@demonslay335pic.twitter.com/cMU4P8MK1t
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
New Ladon ransomware portal cdmsxo25y4lfht6v[.]onion cc:
@demonslay335@malwrhunterteampic.twitter.com/5RibWLCkSK
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Spanish
#Jigsaw#Ransomware with extension ".jes" and a sweet Cthulhu image. Decrypter updated. https://www.virustotal.com/#/file/447567f9cbbd5b9930b49733585b1a8f3171eb56481a692151dbcbe325ce6a39/ …pic.twitter.com/tYod2SoTrW
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
#CrystalCrypt#Ransomware, possible extension ".BLOCKED". Has a function for every possible drive of the system... talk about inefficient. Crashes with a 403 on trying to contact its C2, lol. Seems based on LightningCrypt and other junk ones according to@malwrhunterteampic.twitter.com/Rvrhv5er5K
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Weird changes for
#RotorCrypt#Ransomware, this one appends extension "! ,--, Revert Access ,--, [email protected] ,--,.BlockBax_v3.2" (lots of spaces in there) to files. https://www.virustotal.com/#/file/bfb543ce93b97fa301c695fdcd5cf23ab5942a6c1a2f8a6e1f7360892d4ae11b/ …pic.twitter.com/VVeRGAcays
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Anyone familiar with
#gpg command line? I'm not sure from the commands used by the malware in the screenshots if we can help victims decrypt.https://twitter.com/demonslay335/status/969233325641601025 …
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
It works! / Это работает! https://www.experts-exchange.com/articles/31579/Decrypting-Cryakl-1-4-0-0-1-4-1-0-FAIRYTAIL-Ransomware.html …pic.twitter.com/KlgmDAuU92
Mostra questa discussioneGrazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
So, the new GandCrab is arrived.
And they are using a new extension, note name & even TOR domain, so we are good (https://twitter.com/malwrhunterteam/status/968893590125637633 …).
Thanks guys.
They now linking to the decryption tutorial on NoMoreRansom, and says that won't work...
@BleepinComputer@demonslay335Mostra questa discussioneGrazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
SpyHunter again deceives usershttps://www.bleepingcomputer.com/forums/t/672272/help-detoxcrypto-ransomware-removal-windows-10/ …
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Interesting
#Jigsaw#Ransomware here, using extension ".Bitconnect" and some new extortion text wanting you to take a photo of yourself to post on Instagram. https://www.virustotal.com/#/file/8b3b6230713899cce2239dec5bb2da679123eeff4fa1e16451604b018b11e646/ …pic.twitter.com/4gThGBWXvn
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
just found this site infected with "Awesomeware"
#Ransomware#Malware#Infosec#CyberSecurity.@DanielGallagher an email for the list xDpic.twitter.com/4kP00V5sLY
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
If anyone has been hit by
#CryptConsole#Ransomware, please contact me. The current published decrypter can't decrypt your files right away, I have to actually bruteforce your keys manually at the present time.Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
I've updated
#Magniber#Ransomware detection on ID Ransomware. Seems they've started using "READ_ME.txt" for the note, which is way too generic... but I can detect based on format of the URLs in the note dynamically now.pic.twitter.com/8kdASo9RZt
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Michael Gillespie ha ritwittato
The Week in Ransomware - March 2nd 2018 - GandCrab Decrypted, RaaS, and More - by
@LawrenceAbramshttps://www.bleepingcomputer.com/news/security/the-week-in-ransomware-march-2nd-2018-gandcrab-decrypted-raas-and-more/ …Mostra questa discussioneGrazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
#PrincessLocker#Ransomware seems to be still out there. ID Ransomware just got a submission with note "=_HOW_TO_FIX_RQZLIN.txt" and Tor address royal25fphqilqft[.]onion. Seeing no references to this address yet, site is still up as of now.pic.twitter.com/COEFAS0zu7
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Oh, we got 2 victim submissions to IDR this week that were false-positive for an old HiddenTear-based ransomware (sorry). This one definitely isn't HiddenTear.pic.twitter.com/nirzAWGtBx
Mostra questa discussioneGrazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
Interesting
#ransomware spotted by@malwrhunterteam, tries to use GPG to do its encryption for it, then sdelete. Supposed to use extension ".<number>.qwerty", but since I didn't have those exes bundled, just drops the note and does nothing. ¯\_(ツ)_/¯ https://www.virustotal.com/#/file/f5cd435ea9a1c9b7ec374ccbd08cc6c4ea866bcdc438ea8f1523251966c6e88b/ …pic.twitter.com/JUg3cwuKE9
Mostra questa discussioneGrazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla -
ID Ransomware spotted a new extension for
#Dharma#Ransomware yesterday - ".id-<id>.[<email>].arrow"pic.twitter.com/XCGHGNyuNH
Grazie. Twitter lo utilizzerà per migliorare la tua cronologia. AnnullaAnnulla
Il caricamento sembra essere lento.
Twitter potrebbe essere sovraccarico o avere un problema temporaneo. Riprova o visita Twitter Status per ulteriori informazioni.