<tutorialjinni.com/>

HermeticWiper Malware

Posted Under: YARA on Feb 24, 2022
HermeticWiper Malware
HermeticWiper is data and MBR Wiper that is being targeting Ukraine and is allegedly link to Russia. It intentionally cleans data on a device make it unrecoverable. It also deletes the MBR of the machine so that the operating system wont boot again.

LockBit ESXi Linux Ransomware

Posted Under: YARA on Jan 30, 2022
LockBit ESXi Linux Ransomware
Lockbit Linux ESXi Ransomware uses a combination of Advanced Encryption Standard (AES) and elliptic curve cryptography (ECC) algorithms for data encryption. This variant could have a big impact on victim organizations because of how ESXi, VMware’s hypervisor helps in managing servers.

Loup ATM Malware Download

Posted Under: YARA on Dec 30, 2021
Loup ATM Malware Download
Loup is a small cli-tool to cash out NCR devices. The Loup malware injects code into the application for kernel32 operations, thus it seems to use the debugger...

Log4Shell YARA IOC

Posted Under: YARA on Dec 11, 2021
Log4Shell YARA IOC
Log4Shell is an Remote Code Execution (RCE) vulnerability (CVE-2021-44228) in one of the most used enterprise Logging product Apache Log4j. Its affecting Apache Log4j versions 2.0 through 2.14.1.

Babuk Locker Ransomware Sample Download

Posted Under: YARA on Jan 4, 2021
Babuk Locker Ransomware Sample Download
Babuk Locker Ransomware uses its own implementation of SHA256 hashing, ChaCha8 encryption, and Elliptic-curve Diffie–Hellman (ECDH) key generation and exchange algorithm to encrypt victim files and protection of the encryption keys.