π€‘
28.12.2023 17:53 β π 1 π 0 π¬ 0 π 0@securesh3ll.bsky.social
Gray Hat π Posix π Hyperactive and Hypersensitive β¨ Libertarian/Alterglobalist πΈ Music π΅ π€‘ I am scary according to some. π€‘ π *A guy trying stuff* π https://twitter.com/SecureSh3ll
π€‘
28.12.2023 17:53 β π 1 π 0 π¬ 0 π 0ποΈ
22.12.2023 19:50 β π 0 π 0 π¬ 0 π 0#CryptoJacker #China π¨π³
Wallet : 4B7vD4PrcGdES1grKPBH5jbsh4SgknSzkFFRHxWMqux7bJrieQoawCiFnd36wKTPtAUXJLeQBZWKRKza7qJaQscx2kCCrZo
Pool: c3pool
Total paid :
20,767746 #XMR == 3274,1 β¬ == 3606,19 $
That's good, but there's still a lot of work to do, my boy. ποΈ
17.12.2023 22:54 β π 0 π 0 π¬ 0 π 0π€‘
17.12.2023 19:09 β π 0 π 0 π¬ 0 π 0However, CNC is active.
91.92.244.25:23 #fakeTelnet
Code name : Sokkyo
Launcher : 91.92.244.25/bins.sh
Last visible deployment date: Nov 26 03:08
But files nots avalaibles.
ip: 91.92.244.25
city: Amsterdam
region: North Holland
country: NL
loc: 52.3740,4.8897
org: AS394711 Limenet
πΊ Apple Tv π
25.11.2023 23:15 β π 0 π 0 π¬ 0 π 0#CNC : 2.56.247.223:666
25.11.2023 19:23 β π 0 π 0 π¬ 0 π 0ip: 2.56.247.223
city: Paris
region: Γle-de-France
country: FR
loc: 48.8637,2.2769
org: AS216167 Skoali SAS
postal: 75784 CEDEX 16
HΓ©bergement de serveur de distribution de trojan.gafgyt/mirai
Name : SolidCorp PBot v2.0
Malware : trojan.perl/shellbot
ip : 168.181.185.230
hostname : vps-3019526-x.dattaweb.com
city : Rosario / Santa Fe / π¦π·
org : AS27823 Dattatec/.com
See also : 168.181.185.230/archivos/
Url : 168.181.185.230/archivos/perl
π
05.11.2023 01:30 β π 0 π 0 π¬ 0 π 0π€‘
05.11.2023 01:06 β π 0 π 0 π¬ 1 π 0- aliases: #Unix.#Trojan.#DarkNexus ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, no section header
- Chrome: #hacktool.#portscan/ulxhm : ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, for GNU/Linux 2.6.24, stripped
" Savior by passion " π€‘
Domain : dinpasiune.com
ip: 91.92.247.224
city: Amsterdam
region: North Holland
country: NL
loc: 52.3740,4.8897
org: AS394711 Limenet
Actor : Roumanian π·π΄
Urls :
91.92.247.224/.x/Chrome
91.92.247.224/.x/aliases
cat Succefully.txt
frenchflairesourcing.co.uk/wp-content/p...
recentresearchstudies.com/wp-content/p...
equaljusticetour.com/wp-content/p...
jayvarma.com/wp-content/p...
ninicniskogradnja.com/wp-content/p...
Script looking for the following string :
"<pre align=center><form method=post>Password<br><input type=password name=pass style='...' required><input type=submit name='watching' value='submit' style='...'></form></pre>"
In : wp-content/plugins/WordPressCore/include.php
#Hacker #kali πΈοΈ
city: Amsterdam,
region: North Holland,
country: NL,
loc: 52.3740,4.8897,
org: AS216419 Matrix Telecom Ltd
Sometimes it's hard not to want to troll. π«
15.10.2023 16:21 β π 0 π 0 π¬ 0 π 0Welcome on BlueSky @d9security.bsky.social
13.10.2023 15:10 β π 1 π 0 π¬ 0 π 0www.youtube.com/watch?v=jV0W... βοΈ
12.10.2023 23:03 β π 1 π 0 π¬ 0 π 0www.youtube.com/watch?v=Qbwd... πΈοΈ
09.10.2023 23:36 β π 0 π 0 π¬ 0 π 0dropper[.]sh : Shell script for multi-architecture botnet generation. βοΈ
08.10.2023 22:08 β π 0 π 0 π¬ 0 π 0www.youtube.com/watch?v=5jBv... π
08.10.2023 22:07 β π 0 π 0 π¬ 0 π 0103.67.197.87
103.67.197.87/Sodomy_By_Sh...
Good night NhαΊt PhΓΉng
City: Ho Chi Minh City
Region: Ho Chi Minh
Country: VN
loc: 10.8230,106.6296
Telegram: @\quannotj
Real Name : nhαΊt phΓΉng
Fb : nhatmrx.blue
#CNC on server.
CNC DOWN π«£ OUPS !
Hacker : tcp_cn Activities : Botnet / DDOS / Services
π
BEFORE / AFTER π