PCMaticResearch's profile picture. PC Matic Malware Research

PC Matic Research

@PCMaticResearch

PC Matic Malware Research

What do you think??

This post is unavailable.

Also covered IDA Pro and rundll32.exe


PC Matic Research reposted

Catching some phishing domain names 👌 github.com/x0rz/phishing_…


PC Matic Research reposted

Good news everyone, now that Russian APT can't use VPNs anymore, attribution will be stupid easy :) amp.businessinsider.com/ap-law-outlawi…


PC Matic Research reposted

Latest #BinaryNinja Blog post: State of the Ninja Ep. 9. binary.ninja/2017/10/16/sta…


Check out this tricky ransomware variant

We have our first in-dev Halloween 2017 Ransomware called Trick or Treat. Doesn't encrypt & only shows this screen. virustotal.com/#/file/8c974f9…

LawrenceAbrams's tweet image. We have our first in-dev Halloween 2017 Ransomware called Trick or Treat. Doesn't encrypt & only shows this screen.
virustotal.com/#/file/8c974f9…


PC Matic Research reposted

In-dev ViiperWare - Ransomware. Only encrypts %Desktop%\Test. Appends .viiper. virustotal.com/#/file/5e905b3…

LawrenceAbrams's tweet image. In-dev ViiperWare - Ransomware. Only encrypts %Desktop%\Test. Appends .viiper.
virustotal.com/#/file/5e905b3…
LawrenceAbrams's tweet image. In-dev ViiperWare - Ransomware. Only encrypts %Desktop%\Test. Appends .viiper.
virustotal.com/#/file/5e905b3…

PC Matic Research reposted

Scammers are serving customized #TechSupportScam pages using info about the OS (which the web server gets from the browser’s user agent)

MsftSecIntel's tweet image. Scammers are serving customized #TechSupportScam pages using info about the OS (which the web server gets from the browser’s user agent)

PC Matic Research reposted

Oct-10,2017(JST) night. MalSpam attached base64 -> 7z -> vbs script error. Infects #Locky encrypted file ext #ASASIN changed. #Ransomware

tmmalanalyst's tweet image. Oct-10,2017(JST) night. MalSpam attached base64 -> 7z -> vbs script error. Infects #Locky encrypted file ext #ASASIN changed. #Ransomware
tmmalanalyst's tweet image. Oct-10,2017(JST) night. MalSpam attached base64 -> 7z -> vbs script error. Infects #Locky encrypted file ext #ASASIN changed. #Ransomware
tmmalanalyst's tweet image. Oct-10,2017(JST) night. MalSpam attached base64 -> 7z -> vbs script error. Infects #Locky encrypted file ext #ASASIN changed. #Ransomware
tmmalanalyst's tweet image. Oct-10,2017(JST) night. MalSpam attached base64 -> 7z -> vbs script error. Infects #Locky encrypted file ext #ASASIN changed. #Ransomware

Check out the new article on unpacking and debugging binaries/malware: techtalk.pcpitstop.com/2017/10/04/deb…


PC Matic Research reposted

Oct-03,2017(JST). Japanese MalSpam attached XLS. Macro enabled infects #Ursnif #Malware. Leads file VT: virustotal.com/ja/file/f6e22d…

tmmalanalyst's tweet image. Oct-03,2017(JST). Japanese MalSpam attached XLS. Macro enabled infects #Ursnif #Malware. Leads file VT: virustotal.com/ja/file/f6e22d…
tmmalanalyst's tweet image. Oct-03,2017(JST). Japanese MalSpam attached XLS. Macro enabled infects #Ursnif #Malware. Leads file VT: virustotal.com/ja/file/f6e22d…
tmmalanalyst's tweet image. Oct-03,2017(JST). Japanese MalSpam attached XLS. Macro enabled infects #Ursnif #Malware. Leads file VT: virustotal.com/ja/file/f6e22d…
tmmalanalyst's tweet image. Oct-03,2017(JST). Japanese MalSpam attached XLS. Macro enabled infects #Ursnif #Malware. Leads file VT: virustotal.com/ja/file/f6e22d…

PC Matic Research reposted

Fun with malware. Today: Manifestus Ransomware. Looks like someone clicked too carelessly and tasted their own medicine in the past. xD

malpedia's tweet image. Fun with malware. Today: Manifestus Ransomware.
Looks like someone clicked too carelessly and tasted their own medicine in the past. xD

Loading...

Something went wrong.


Something went wrong.