MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile
MalwareHunterTeam

@malwrhunterteam

Official MHT Twitter account.
Check out ID Ransomware (created by @demonslay335).
More photos & gifs, less malware.

ID: 2847021941

linkhttps://id-ransomware.malwarehunterteam.com calendar_today27-10-2014 17:46:31

66,66K Tweet

226,226K Followers

36 Following

JaromirHorejsi (@jaromirhorejsi) 's Twitter Profile Photo

MalwareHunterTeam Max is 17, he is bored and loves making RATsπŸ˜€. All of us should talk to him. "Hello my name is Max Im 17 I love making RAT and I will love you too if you use me You can also write to me and talk to me I often get bored"

<a href="/malwrhunterteam/">MalwareHunterTeam</a> Max is 17, he is bored and loves making RATsπŸ˜€. All of us should talk to him.

"Hello my name is Max Im 17 I love making RAT and I will love you too if you use me You can also write to me and talk to me I often get bored"
MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile Photo

"vulfix-dde-daemon_5.16.16_amd64.tar.gz": b62f4998dece330a582f0431f7d6cd22fa1a8f79880d5aec4ea9068eeab25497 -> "vulfix-dde-daemon_5.16.16_amd64.deb.patch1": c78b176380b094089115a432251b21f4283f84a8f6253ca9d2b45fefd3b129c0 152.32.131[.]171

"vulfix-dde-daemon_5.16.16_amd64.tar.gz": b62f4998dece330a582f0431f7d6cd22fa1a8f79880d5aec4ea9068eeab25497
-&gt;
"vulfix-dde-daemon_5.16.16_amd64.deb.patch1": c78b176380b094089115a432251b21f4283f84a8f6253ca9d2b45fefd3b129c0
152.32.131[.]171
TG Soft (@viritexplorer) 's Twitter Profile Photo

Interesting #CobaltStrike from "apt-99" with C2: pythongo[.]online LNK -> Silverlight.exe (sideloading coreclr.dll) -> bin.dat -> CS C:\Users\admin\Desktop\Project\cs4.5(apt-99)\cs4.5 2\external\beacon\Release\beacon.pdb moto_sato StrikeReady Labs

Interesting #CobaltStrike from "apt-99" with C2:
pythongo[.]online

LNK -&gt; Silverlight.exe (sideloading coreclr.dll) -&gt; bin.dat -&gt; CS

C:\Users\admin\Desktop\Project\cs4.5(apt-99)\cs4.5 2\external\beacon\Release\beacon.pdb

<a href="/58_158_177_102/">moto_sato</a> <a href="/StrikeReadyLabs/">StrikeReady Labs</a>
MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile Photo

"Daivinchik.apk": 30afff95d7a4c4af2a82682ecc02ea4a41772ace88f2ddb7af37466813f24dd8 From (404 now): https://google-download[.]one/apk/Daivinchik.apk

"Daivinchik.apk": 30afff95d7a4c4af2a82682ecc02ea4a41772ace88f2ddb7af37466813f24dd8
From (404 now): https://google-download[.]one/apk/Daivinchik.apk
MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile Photo

50b628bc603d846c04ab5dc56a5bc40b32b219c29211661f663ec7bb160a0554 Contains 4 .lnk files, same "glorytoukraine\.zip" as next stage archive: 92af5439d1fc0172fcd8068957d132fb89256ab1d93457120e7b4f1a1910e757 From: http://5.181.156[.]117/glorytoukraine.zip

50b628bc603d846c04ab5dc56a5bc40b32b219c29211661f663ec7bb160a0554
Contains 4 .lnk files, same "glorytoukraine\.zip" as next stage archive: 92af5439d1fc0172fcd8068957d132fb89256ab1d93457120e7b4f1a1910e757
From: http://5.181.156[.]117/glorytoukraine.zip
MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile Photo

"telegramviewerv.apk": 027014be763384f64f2720dc1edecc2eae76025e4bfa6b90a8ec977d2d43e92f From: https://alinmaexchange[.]com/telegramviewerv.apk

"telegramviewerv.apk": 027014be763384f64f2720dc1edecc2eae76025e4bfa6b90a8ec977d2d43e92f
From: https://alinmaexchange[.]com/telegramviewerv.apk
MalwareHunterTeam (@malwrhunterteam) 's Twitter Profile Photo

"Update_Browser.zip": 896983dee48b90e2d2663255959e3018dcd0d0669cb5aa9dd972d98b0a72974e From: https://irp.cdn-website[.]com/defd6f61/files/uploaded/Update_Browser.zip

"Update_Browser.zip": 896983dee48b90e2d2663255959e3018dcd0d0669cb5aa9dd972d98b0a72974e
From: https://irp.cdn-website[.]com/defd6f61/files/uploaded/Update_Browser.zip