Cerberus Android -- AndroidGuncelleme.apk Türkçe Güncelleme Lure, Chrome Hedef | Kritik
Cerberus 1.9MB Android. "AndroidGuncelleme.apk" Türkçe Android güncelleme lure. Chrome + chrome_elf.dll hedefi.
Analyses de menaces complètes, IOC et rapports de recherche sur RAT, Infostealer, Backdoor et autres familles de malwares.
Qakbot xlsb dropper. http://skifashion.pl/ds/161120.gif ele geçirilmiş Polonyalı site GIF C2. metasta.me + OCp3.li.
Cerberus 1.9MB Android. "AndroidGuncelleme.apk" Türkçe Android güncelleme lure. Chrome + chrome_elf.dll hedefi.
AvosLocker 826KB. CryptoPP AES SIMD rijndael_simd.cpp PDB. EC2NPoint ECDH anahtar değişimi. BTC 3q4QKcv.
HydraAndroid 1.1MB. "Commerzbank Sicherheitszertifikat.apk" Alman bankacılık lure. action.DE. Accessibility kötüye kullanım.
HelloKitty 488KB. 6x7dp6h3w...onion Tor C2. WMI Win32_ShadowCopy silme. VMware ESXi hedefi. Kriptolama.
Hancitor putty.exe.bin 150KB. PuTTY SSH istemci taklidi. IsDebuggerPresent+GetTickCount anti-debug.
Matanbuchus 495KB DLL. notepad-plus-plus.org sahte URL (whitelist bypass). GetTickCount anti-debug.
PrivateLoader sysmon.exe 401KB. Microsoft Sysmon güvenlik aracı taklidi! chrome + chrome_elf.dll hedefi.
AnubisRAT 5.4MB APK. "RTO E CHALLAN (19).apk" Hindistan trafik cezasi lure. action.IN domain. Hindistan hedefi.
Adwind2 (jRAT) anal.jar.bin 654KB Java RAT. eL9.c2q, PC2MD C2 config. Cross-platform RAT.
Kimsuky PDF.LNK North Korea APT. vmxnet PowerShell VM tespiti. hex.Su C2. Kurgusal roman lure.
DarkComet2 f168pro.exe 354KB. NtQuerySystemInformation anti-debug. 123<67890ABC2 + DC2_?S config.
Bumblebee2 1.8MB. odoca.com C2 (Bumblebee ailesinin devam eden C2). GlobalSign TLS sertifikası.
RedLine2 SPECIFICATIONS SAMPLE & QUANTITY.exe. HutStaff.Com + Tumblr/Giphy sosyal medya dead drop.
SectopRAT2 (ArechClient2) PS1 794KB. gtLane6906.Su .su C2. rMZIRioWL base64 config. Powershell dropper.
NetSupportRAT2 Rate_RATE_AGR_Jun29.exe 201KB. 29 Haziran 2026 tarihli borsa anlaşması lure. Meşru RAT trojanı.
SOVA Android dump.apk 6.5MB. assets/chrome.html sahte Chrome overlay. C2apc config. Bankacılık trojanı.
KeyBase invoice.exe 256KB. "noitcelfeR.me" = "Reflection" tersine yazılmış domain obfuskasyonu. .me TLD.
Carbanak/FIN7 out.dll 449KB. ukc2a7qgRRR C2 URL fragmenti. Finans APT operasyonu.
Gootkit2 RIBA UK bina sozlesmesi lure. Stanford + astron-soc.in dead drop. hex.su C2. Rotspider APT.