Old XTunnel Stuff
GhostShell
BALLCONTROL
0xFancyFilter (kinda)
IMAP:
OCEANMAP (get it????)
SMB:
NavRAT
SSL:
PhantomNet
SManger
JSSLoader
TLS:
QUICKHEAL
WhiteBird
Old XTunnel Stuff
GhostShell
BALLCONTROL
0xFancyFilter (kinda)
IMAP:
OCEANMAP (get it????)
SMB:
NavRAT
SSL:
PhantomNet
SManger
JSSLoader
TLS:
QUICKHEAL
WhiteBird
Mirage
DanBot
RokRAT
Remexi
FlagPro
BLACKCOFFEE
Derusbi
WhiteBird
SManager
QUICKHEAL
ExplosiveRAT
Families that reference the GUID and do not import the API include some variants of the above and:
NetTraveler
PhantomNet
Mirage
DanBot
RokRAT
Remexi
FlagPro
BLACKCOFFEE
Derusbi
WhiteBird
SManager
QUICKHEAL
ExplosiveRAT
Families that reference the GUID and do not import the API include some variants of the above and:
NetTraveler
PhantomNet
TidePool
DADJOKE
ENDCMD
Mirage
WhiteBird
QUICKHEAL
Hannotag
https://github.com/g-les/100DaysofYARA/blob/main/100_days_of_yara.yar
TidePool
DADJOKE
ENDCMD
Mirage
WhiteBird
QUICKHEAL
Hannotag
https://github.com/g-les/100DaysofYARA/blob/main/100_days_of_yara.yar
svchost in PDB:
BALLCONTROL
TREASUREMAP
GhostShell
TAIDOOR
EternalRocks
svchost in OriginalFilename:
Zebrocy
CASPER
GH0ST_RAT
MarkiRAT
GhostEmperor
Skipper
svchost in DLLName:
QUASARRAT
DUSTPAN
TAIDOOR
SIG31
QUICKHEAL
TypeHash
XDll
Carbon
Uroburos
svchost in PDB:
BALLCONTROL
TREASUREMAP
GhostShell
TAIDOOR
EternalRocks
svchost in OriginalFilename:
Zebrocy
CASPER
GH0ST_RAT
MarkiRAT
GhostEmperor
Skipper
svchost in DLLName:
QUASARRAT
DUSTPAN
TAIDOOR
SIG31
QUICKHEAL
TypeHash
XDll
Carbon
Uroburos
Unveiling Sharp Panda’s New Loader : securite360.net/unveiling-sh...
Unveiling Sharp Panda’s New Loader : securite360.net/unveiling-sh...
https://blogs.quickheal.com/quick-heals-new-update-with-enahnced-ransomware-protection/
##Infosec ##Security ##Cybersecurity ##CeptBiro ##QuickHeal ##RansomwareProtection
https://blogs.quickheal.com/quick-heals-new-update-with-enahnced-ransomware-protection/
##Infosec ##Security ##Cybersecurity ##CeptBiro ##QuickHeal ##RansomwareProtection
CVSS N/A
Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level privileges to arbitrarily modify antivirus settings.
#security #infosec #cve-alert
CVSS N/A
Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level privileges to arbitrarily modify antivirus settings.
#security #infosec #cve-alert
#LPU #TechTalk #CyberShield #QuickHeal #CyberSecurity #TechInnovation #DigitalSecurity #DrSanjayKatkar #CyberEducation #AIInCyberSecurity #QuickHealTechnologies
#LPU #TechTalk #CyberShield #QuickHeal #CyberSecurity #TechInnovation #DigitalSecurity #DrSanjayKatkar #CyberEducation #AIInCyberSecurity #QuickHealTechnologies
But also there's not many other attractive blue charms?
But also there's not many other attractive blue charms?
Всім треба Quickheal в Hollow Knight.
Всім треба Quickheal в Hollow Knight.
CVSS N/A
An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows authenticated attackers to escalate privileges.
#security #infosec #cve-alert
CVSS N/A
An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows authenticated attackers to escalate privileges.
#security #infosec #cve-alert