/home/richt3r
238 subscribers
734 photos
213 videos
3 files
63 links
CHWDCBZC
Download Telegram
Forwarded from Deranged Posting
Forwarded from vx-underground
> check tele
> "smelly i think someone sent me malware"
> "they sent me weird .zip"
> "be careful"
> wtf i love malware
> download file
> look inside
> .txt + alternate data stream file
> ads doesnt work with 7z
> ok lol
> look inside
> 7z x "dox[.]zip" -so > payload.vbs
> winhttp request to github
> github\minecraftstuff\discordemojis.txt
> download discordemojis.txt
> look inside
> heavily obfuscated .bat file
> bonk with stick
> powershell script
> ???
> checks for av stuff
> does steganography
> downloads from ibb.co
> look inside
> quasar rat
> hides in made fonts directory in roaming

most work ive seen put into a malware payload in awhile with 2 stages and stego, usually its FAKE_GAME_INSTALLER.JPEG.EXE
why does ayugram use so much data it's been two days wtf
Forwarded from SaltFurry All Stars
new monster flavor in żabka
🍌1
Forwarded from Stonetoss
🇺🇸🇮🇱⚡️- President Trump shared an article written by disgraced Jewish activist Gavin Wax who last year led a public doxing and harassment campaign against Young Republican activists who personally opposed him last Fall.

Despite widespread calls for Wax to be fired from his job in the Trump Admin he remains in place and now openly endorsed by the President.
Forwarded from Ziegler Channel (Dantes)
Forwarded from [🪨] romu's repository
>it's real
Forwarded from Deleted Account
Myth busted
Forwarded from Internet puke
Forwarded from Warren Balogh
Media is too big
VIEW IN TELEGRAM
Trump lies like a 5 year old
Forwarded from King Koopa's Shellposting Kingdom (Cristiano Rosa)