Subscribe via feed.
Archive for May, 2022

Ransom.Conti Code Execution

Posted by deepcore under exploit (No Respond)

Conti ransomware looks for and executes DLLs in its current directory. Therefore, we can potentially hijack a DLL to execute our own code to control and terminate the malware pre-encryption. The exploit dll will check if the current directory is “C:WindowsSystem32”. If not, we grab our process ID and terminate. We do not need to […]

REvil.Ransom Code Execution

Posted by deepcore under exploit (No Respond)

REvil ransomware looks for and executes DLLs in its current directory. Therefore, we can potentially hijack a DLL to execute our own code in order to control and terminate the malware pre-encryption. The exploit dll will check if the current directory is “C:WindowsSystem32” and if not we grab our process ID and terminate. We do […]

Ransom.WannaCry Code Execution

Posted by deepcore under exploit (No Respond)

WannaCry ransomware looks for and executes DLLs in its current directory. Therefore, we can hijack a DLL to execute our own code in order to control and terminate the malware pre-encryption. The exploit DLL checks if the current directory is “C:WindowsSystem32” and if not we grab our process ID and terminate. We do not need […]

https://ict.amnat-ed.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

https://ict.amnat-ed.go.th/readmee.htm notified by AnonCoders

Tags:

https://e-office.amnat-ed.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

https://e-office.amnat-ed.go.th/readmee.htm notified by AnonCoders

Tags:

https://e-news.amnat-ed.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

https://e-news.amnat-ed.go.th/readmee.htm notified by AnonCoders

Tags:

https://e-network.amnat-ed.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

https://e-network.amnat-ed.go.th/readmee.htm notified by AnonCoders

Tags:

https://salary.amnat-ed.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

https://salary.amnat-ed.go.th/readmee.htm notified by AnonCoders

Tags:

http://cmarea3.go.th/readmee.htm

Posted by deepcore under defacement (No Respond)

http://cmarea3.go.th/readmee.htm notified by AnonCoders

Tags:

http://loei3.go.th/readme.txt

Posted by deepcore under defacement (No Respond)

http://loei3.go.th/readme.txt notified by AnonCoders

Tags: