Advertisement ยท 728 ร— 90

Posts by Cryptolaemus

Samples ๐Ÿ‘‡

bazaar.abuse.ch/sample/336e3...

bazaar.abuse.ch/sample/658b8...

bazaar.abuse.ch/sample/c3baf...

1 year ago 5 0 0 0

distro:
hxxps://aurestorage.cfd/?id=hefwtPsf22F
hxxps://ateen.life/fes.php

BRC4

hxxps://huanvn.com:6542/stop.php
hxxps://vutarf.com:6542/gop.php

Latro

hxxps://reateberam.com/test/
hxxps://dogirafer.com/test/

(2/3) ๐Ÿ‘‡

1 year ago 6 0 1 0
Post image

#BruteRatel - #Latrodectus - url > .js > .msi > .dll

wscript.exe Document-v15-51-07.js

msiexec.exe /I C:\Users\Admin\AppData\Local\Temp\fes.msi

rundll32.exe C:\Users\Admin\AppData\Roaming\avutil.dll, DLLMain

(1/3)๐Ÿ‘‡

IOC's
github.com/pr0xylife/La...

1 year ago 20 8 1 0