கீச்சுகள்

@demonslay335 -ஐத் தடைசெய்துள்ளீர்கள்

நிச்சயமாக இந்தக் கீச்சுகளைப் பார்க்க விரும்புகிறீர்களா? கீச்சுகளைப் பார்ப்பது, @demonslay335 -ஐத் தடைநீக்காது.

  1. பின்செய்த ட்விட்
    24 மார்., 2016

    ID is live! Special thanks to for the sub-domain.

    மீளமை
  2. மறுட்விட் செய்துள்ளார்
    15 மணிநேரம் முன்
    மீளமை
  3. 14 மணிநேரம் முன்

    Looks like has updated to v1.5.1.0. ID Ransomware picked up on example file named "[email protected] -1614714137-578233478334310455516964.fname-README.txt.doubleoffset"

    மீளமை
  4. மறுட்விட் செய்துள்ளார்
    17 மணிநேரம் முன்

    ScammerLocker (Hidden Tear) ransomware: Ext: .jodis Based on name & the GUI (it won't appear if you just run, it will only encrypt & drop note), prob. will target scammers. 🤔 Also, first time I hear about IOTA related to RW.

    மீளமை
  5. மறுட்விட் செய்துள்ளார்
    19 மணிநேரம் முன்

    New Ladon ransomware portal cdmsxo25y4lfht6v[.]onion cc:

    மீளமை
  6. 22 மணிநேரம் முன்
    மீளமை
  7. மார். 5

    , possible extension ".BLOCKED". Has a function for every possible drive of the system... talk about inefficient. Crashes with a 403 on trying to contact its C2, lol. Seems based on LightningCrypt and other junk ones according to

    மீளமை
  8. மார். 5

    Weird changes for , this one appends extension "! ,--, Revert Access ,--, [email protected] ,--,.BlockBax_v3.2" (lots of spaces in there) to files.

    மீளமை
  9. மார். 5

    Anyone familiar with command line? I'm not sure from the commands used by the malware in the screenshots if we can help victims decrypt.

    மீளமை
  10. மறுட்விட் செய்துள்ளார்
    மார். 4
    இந்தத் தொடர்ச்சியைக் காண்பி
    மீளமை
  11. மறுட்விட் செய்துள்ளார்
    மார். 5

    So, the new GandCrab is arrived. 👏 And they are using a new extension, note name & even TOR domain, so we are good (). Thanks guys. 😂 They now linking to the decryption tutorial on NoMoreRansom, and says that won't work...

    இந்தத் தொடர்ச்சியைக் காண்பி
    மீளமை
  12. மறுட்விட் செய்துள்ளார்
    மார். 4
    மீளமை
  13. மார். 4

    Interesting here, using extension ".Bitconnect" and some new extortion text wanting you to take a photo of yourself to post on Instagram.

    மீளமை
  14. மறுட்விட் செய்துள்ளார்
    மார். 3

    just found this site infected with "Awesomeware" . an email for the list xD

    மீளமை
  15. மார். 3

    If anyone has been hit by , please contact me. The current published decrypter can't decrypt your files right away, I have to actually bruteforce your keys manually at the present time.

    மீளமை
  16. மார். 3

    I've updated detection on ID Ransomware. Seems they've started using "READ_ME.txt" for the note, which is way too generic... but I can detect based on format of the URLs in the note dynamically now.

    மீளமை
  17. மறுட்விட் செய்துள்ளார்
    மார். 2
    இந்தத் தொடர்ச்சியைக் காண்பி
    மீளமை
  18. மார். 1

    seems to be still out there. ID Ransomware just got a submission with note "=_HOW_TO_FIX_RQZLIN.txt" and Tor address royal25fphqilqft[.]onion. Seeing no references to this address yet, site is still up as of now.

    மீளமை
  19. மார். 1

    Oh, we got 2 victim submissions to IDR this week that were false-positive for an old HiddenTear-based ransomware (sorry). This one definitely isn't HiddenTear.

    இந்தத் தொடர்ச்சியைக் காண்பி
    மீளமை
  20. மார். 1

    Interesting spotted by , tries to use GPG to do its encryption for it, then sdelete. Supposed to use extension ".<number>.qwerty", but since I didn't have those exes bundled, just drops the note and does nothing. ¯\_(ツ)_/¯

    இந்தத் தொடர்ச்சியைக் காண்பி
    மீளமை
  21. மார். 1

    ID Ransomware spotted a new extension for yesterday - ".id-<id>.[<email>].arrow"

    மீளமை

சுமையேற்ற அதிக நேரமெடுக்கிறது போல் தெரிகிறது.

Twitter -இல் அதிக கொள்ளளவு அல்லது தற்காலிக சிக்கல் ஒன்று ஏற்பட்டிருக்கலாம். மீண்டும் முயற்சிக்கவும் அல்லது மேலும் தகவலுக்கு Twitter நிலை என்பதைப் பார்க்கவும்.

    நீங்கள் இதையும் விரும்பலாம்

    ·