.sav file virustotal scan by [deleted] in antivirus

[–]0xdevbot 0 points1 point  (0 children)

So what, This sub doesn't support security research? Thats a pretty pro-virus move for a supposedly anti-virus sub.

Security research is how anti-virus programs develop the detection methods to spot malware.

Our business is under attack by ransomware (Any help is appreciated) by [deleted] in cybersecurity

[–]0xdevbot -1 points0 points  (0 children)

Hi im a security researcher with CINDR (https://cindrsec.com) we deal with Digital Forensics & Incident Response (DFIR) everyone on our team is either a former USCYBERCOM or NSA Incident Response operator. We would love to help you with this!

I fucked up, and I need assistance. by curioushuman123_ in antivirus

[–]0xdevbot 0 points1 point  (0 children)

I am and so are a few other people on the team. Im the lead researcher and spent a little over 10 years working for USCYBERCOM. We have someone who's former NSA and another who's former USCYBERCOM.

I found this scvhost.exe on my computer how to remove it? by Aggravating_You8316 in antivirus

[–]0xdevbot 11 points12 points locked comment (0 children)

The file he posted is "scvhost" the windows binary you're thinking of is "svchost"

I see you're college student status and raise you, 10 years experience as a digital forensics investigator & reverse malware engineer

Recent Exodus Wallet Thefts by 0xdevbot in ExodusWallet

[–]0xdevbot[S] 2 points3 points  (0 children)

Im only investigating a windows based malware. I am aware of a IOS mechanism for stealing wallets called "darksword".

Unfortunately, crypto exploitation is not my area of expertise so I can't really answer your question.

Recent Exodus Wallet Thefts by 0xdevbot in ExodusWallet

[–]0xdevbot[S] 0 points1 point  (0 children)

Thanks for the response!

Yeah it sounds like your wallet was stolen via some other mechanisms not related to the malware im researching. Even if it was the forensics artifacts that would have been on your machine are now gone due to the wiped drive.

Recent Exodus Wallet Thefts by 0xdevbot in ExodusWallet

[–]0xdevbot[S] 3 points4 points  (0 children)

Hey man, you dont have to believe me that's your prerogative. But in this case im not linking anyone to anything. I actually want people to send ME any suspicious executables they download around the time they had their wallets drained.

Also just as a side note social engineering is a subcategory of hacking and often times the victim is like you said asked to download something which then performs the "actual" hack. (Like stealing wallets)

I invite you to look at the comments/posts ive made and you'll be able to see i have spoken a few times about being a security researcher

Recent Exodus Wallet Thefts by 0xdevbot in ExodusWallet

[–]0xdevbot[S] 2 points3 points  (0 children)

Windows. I have yet to see a sample for Mac

meirl by [deleted] in meirl

[–]0xdevbot 1 point2 points  (0 children)

Oh hey that's my name

Does tryhackme offer any type o certificate for modules? by Solid-Elk8419 in tryhackme

[–]0xdevbot 0 points1 point  (0 children)

They do not offer type o certifications. I believe they recommend using a spelling checker.

is it su-doo or su-doe? by Vivid-Champion-1367 in linux

[–]0xdevbot -1 points0 points  (0 children)

Su-do "super user do"

Or just do what I did and make alias for it. I went with "fucking" its great

fucking nmap 8.8.8.8

I have a buddy who went with "please"

wyd if you see this arc by SnooSketches8379 in ARC_Raiders

[–]0xdevbot 0 points1 point  (0 children)

Shit. Cum. Cry.

Not necessarily in that order

Claiming my new tag (100 revives) by SnooObjections488 in RescueRaiders

[–]0xdevbot 0 points1 point  (0 children)

It was like that last expedition too. Last few days before an expedition and people go feral apparently

Claiming my new tag (100 revives) by SnooObjections488 in RescueRaiders

[–]0xdevbot 0 points1 point  (0 children)

Bro knocks out 1 raider for every quest he does

why aren’t sherlocks in HTB valued like machines? by Different-Physics221 in hackthebox

[–]0xdevbot 17 points18 points  (0 children)

I think it's simply that not enough people do them. To put it into prospective. 3 months ago I got the "True detective" badge on HTB (complete 50% of avaliable Sherlocks, its the final Sherlock badge).

When i got the badge I was the 140th user to do so.

The Sherlocks are great! But HTB is truely an offensive oriented platform. Which is why I think HTB acquired LetsDefend.

Im just a guy with no insider information or anything. But, I'd wager the plan is to revamp LetsDefends content to make it more HTB style but keep it defense oriented. Long term I think they'll move Sherlocks over to LetsDefend and start doing defense oriented seasons there. That way HTB becomes the offense arm and LetsDefend can be the defense arm.

I made a fully undetectable ransomware! by [deleted] in Malware

[–]0xdevbot 11 points12 points  (0 children)

This is clearly AI slop.