-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
0 parents
commit 7cd6ba7
Showing
718 changed files
with
29,020 additions
and
0 deletions.
There are no files selected for viewing
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+83.1 KB
2011/Alerts DL-2011 Alerts-A-2011-02-18-01 Night Dragon Attachment 1.pdf
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+743 KB
....03.30.crowdstrike.chopping-packets-decoding-china-chopper-web-shell-traffic-over-ssl.pdf
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+12 MB
2013/US-13-Yarochkin-In-Depth-Analysis-of-Escalated-APT-Attacks-Slides.pdf
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+2.76 MB
2014/2014.02.20.deep-panda-webshells/Mo' Shells Mo' Problems - File List Stacking ».pdf
Binary file not shown.
Binary file added
BIN
+1.52 MB
2014/2014.02.20.deep-panda-webshells/Mo' Shells Mo' Problems - Network Detection ».pdf
Binary file not shown.
Binary file added
BIN
+2.28 MB
2014/2014.02.20.deep-panda-webshells/Mo' Shells Mo' Problems - Web Server Log Analysis ».pdf
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+405 KB
...nch-connection-french-aerospace-focused-cve-2014-0322-attack-shares-similarities-2012.pdf
Binary file not shown.
Binary file added
BIN
+1.84 MB
...ckers Targeted US Officials in Elaborate Social Media Attack Operation _ SecurityWeek.pdf
Binary file not shown.
Binary file added
BIN
+1.15 MB
2014/2014.05.28.NewsCaster_An_Iranian_Threat_Within_Social_Networks/file-2581720763-pdf.pdf
Binary file not shown.
Binary file added
BIN
+140 KB
...n_Iranian_Threat_Within_Social_Networks/newscaster-iranian-threat-inside-social-media.pdf
Binary file not shown.
Binary file added
BIN
+2.29 MB
...Deep_in_Thought/Deep in Thought_ Chinese Targeting of National Security Think Tanks ».pdf
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
197 changes: 197 additions & 0 deletions
197
2014/2014.08.18.Syrian_Malware_House_of_Cards/KL_report_syrian_malware.IoCs
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,197 @@ | ||
# Hashes | ||
## md5 | ||
* 1827acc1cf53e6ac9d9b638fc81f50a1 | ||
* a3493689114f75a61a8102d875001429 | ||
* b5c7a04ae3eed7fd9f076d2a400ba660 | ||
* 54c178ba89d752be2ae3307fd40db45f | ||
* ec165a9be618283b6f37646761002f32 | ||
* 52c3674e584ea31aef53b7dc4b2a33c5 | ||
* 217fe391d46cfd84653e36bc05a32f44 | ||
* debb0beac6414b681d050f2fbc2f2719 | ||
* 846983dc879f12e9dd0500434769856f | ||
* fa77151f7677e1602338e57c13aeab13 | ||
* 7ba45daccca21db2e353b9144b29f2e8 | ||
* b717adfd7a4997ebae49308171d09b1f | ||
* ce47d484447dff1036e2100883320431 | ||
* ad9a18e1db0b43cb38da786eb3bf7c00 | ||
* 38e3bc8776915dbd2e55a4d90f85a872 | ||
* 69133513990f6e186cded6745cfade2f | ||
* ec62a59b10b0e587529d431db18d7b77 | ||
* 40527942833ac6ffa25e4f875ab0bd17 | ||
* 4851de5e6d72f428c4e557b91417c1b4 | ||
* 12d63168bac9de71bb9142aa9cf0e533 | ||
* 9424b355a3670fd7749d3d25cbea18cb | ||
* f8f868b750a24f1a5be6083e80b06f30 | ||
* 0d4bbd0d646cedea1c3eb5d2079ce804 | ||
* ed9b62e17543b948da81c75ad4db88ad | ||
* abf93ad254cd01997935863c9e556af8 | ||
* 96ca1d7e45b03f438804d3b46d22df8a | ||
* a57f6c06ba7ca5758f1ca48eaa0a9cc5 | ||
* da98248ab1e4a287ac46023eacd08f5b | ||
* 0d2f0807233cff088cf69f553553c3bc | ||
* ab75661f837537c4efb20ba6e99f23de | ||
* cd92e50ba570b6cc018fbafb6ea7e0ad | ||
* 23ae669639c1d970aaee6f9f551b82b1 | ||
* f0a8a1556efbb106b6297700d4cce61b | ||
* ebb2acc6e6ff596dea4f034e6e941eea | ||
* e81bdf099a5e31f955d1d582dabed1d2 | ||
* 23e936f189611430fffbdd8e1f2a077f | ||
* 387a285597d3ac51637f6ecc07ba0d5b | ||
* cddaf92765fd465fcea63a6e4a4e4cbc | ||
* ab3da3252b698b3c7903a824b11418ed | ||
* 10300846f75eb36ad87091ed7f04b5d8 | ||
* 93195146c13ba6fd75b3c0062e3abf05 | ||
* 946ab0068e5ab64c3c19fb171f55b31a | ||
* 8918b499ef2015f6988e806da0df8f12 | ||
* 1a6061d02794969ba7d57f808a64c1c2 | ||
* 0125a39deb6c0fb37853faa9a90162d3 | ||
* d96606d128ee726760f84eb8d37918b6 | ||
* f9acce2596443c80254a016f426b1c41 | ||
* f73c643863b20d5843da4636330ff30e | ||
* bb5d66b921a4499c23a339ba2690650f | ||
* 12cbe97c89634db754bae817e3b177b3 | ||
* dd0965b9bb4d8fa833b59ab41b405c0b | ||
* 95a5c3e91bbb4a3a323433841fbef82a | ||
* f457f4ee2e2532466f180b86fb01c91d | ||
* fb2fbca3be381bb1a0b410f66e04f114 | ||
* deb4c47abfc873f163693e2cfc9c7800 | ||
* cd97b9b7494470274e7df66059348d6d | ||
* af77e56fbf9259c5242adb964d0773a5 | ||
* d3f957963f56b8bc5e883984857379d4 | ||
* 31aeb34a57ae6b79ffa3d962316f3ec8 | ||
* e65107c5aeea5c3b3a59d4912905c3de | ||
* 21ec25f685843ec03fdba24837fc61e4 | ||
* bc00e320aebb6f780ac4e70a6e183978 | ||
* 0e8e1d9bd9d7ae36cda747d6fdd284a3 | ||
* 86e6cc8827bce4837a55ad76133f3125 | ||
* 3f86102e70a3d2fc2f94137599e8d9c2 | ||
* 45d4479bdd7d9a3e06e955ad358f1b6a | ||
* d2561f4259da6784894ffb1a559c6952 | ||
* 402d806f1b61753bba0ea9bc7a8f76c2 | ||
* a7caf08fba073ac3e92d1faea340cb59 | ||
* 3828971a77d94b6a226064ede528e408 | ||
* c46f72cb68b8d729fea8952fc01e1f13 | ||
* 08947709640922b2d8e3b8d0e5b8e84e | ||
* ab5bf9780d365c648fe39e70dc317ca5 | ||
* 3eb93fd8129aadbcce8d303047a18c9f | ||
* 1a44d73596b0f6755b4ed9651708c9e9 | ||
* 1b1bdfdd0c5218354d7c979afbbf4a76 | ||
* 05574551467d6730800f7d098b17c98a | ||
* 796cafc1983bc4e8a5d80d390d3cd33a | ||
* 3eeb1677da86e97a12205ff237a3df7d | ||
* f387eb11a402c9abb8700604906c00d6 | ||
* 4c881505fe577e8d94227bb3e39b9f75 | ||
* e5c13f46b8fe119f77d0144c78ca9f60 | ||
* 8995ff66bacaf76d1c24660f3092583c | ||
* b7be9a74048fd64f0562a94e5fa66db2 | ||
* 430c8f11ce5a77e154ebcd0d7eb1501d | ||
* fd42186ffe642d10ea03d5cbec0cb3a0 | ||
* 409a0b6954d4ff1000a6d7b78cde2b44 | ||
* 288a4ee20880be85af60b1bad4d1d4d7 | ||
* faebf06b7113f47ec2f3089879d765b4 | ||
* 978ad00b35e8ea6f280cd375778884d3 | ||
* a91cf2847fa49fa5422244f85af0d3c5 | ||
* ef644d0b444d894d10e7fa8a5072a2e3 | ||
* 037d1cf1f8231f41dd6ae425488445fc | ||
* c85480f1e4731f98e28dc007056615a4 | ||
* 6ec76cfd10c6ee8e3d8fd81e445abb7b | ||
* 24db21293792639a3567bf8c1f651885 | ||
* b4eb0cb0fae200d09e6744f0ede10810 | ||
* e1f2b15ec9f9a282065c931ec32a44b0 | ||
* ac54c78f37eec21d167b1571fc442e84 | ||
* ea4542ef5fa6a2682b8c00f97c88ed70 | ||
* c71ccf5b1354d847fd7fae1e5668ea77 | ||
* 6c3e84a601b48eefc716936aee7c8374 | ||
* b8e7f3b4cbe8e58b0509fc7fde71ddbf | ||
|
||
## sha1 | ||
|
||
## sha256 | ||
|
||
# countries | ||
* Algeria | ||
* Bahrain | ||
* Brazil | ||
* Egypt | ||
* France | ||
* India | ||
* Iraq | ||
* Israel | ||
* Jordan | ||
* Kuwait | ||
* Lebanon | ||
* Malaysia | ||
* Mali | ||
* Mexico | ||
* Morocco | ||
* Oman | ||
* Qatar | ||
* Russian Federation | ||
* Saudi Arabia | ||
* Syria | ||
* Tunisia | ||
* Turkey | ||
* United Arab Emirates | ||
* United States | ||
|
||
# ips | ||
* 216.6.0.28 | ||
* 178.52.158.22 | ||
* 95.212.148.21 | ||
* 31.9.48.119 | ||
* 46.213.235.105 | ||
* 46.57.213.64 | ||
* 64.4.10.33 | ||
* 31.9.48.84 | ||
* 94.252.217.145 | ||
* 46.213.188.88 | ||
* 82.137.200.48 | ||
* 94.252.216.187 | ||
* 178.52.30.28 | ||
* 108.161.189.5 | ||
* 178.52.203.80 | ||
* 46.53.11.244 | ||
* 46.213.210.210 | ||
* 178.52.194.35 | ||
* 46.213.100.97 | ||
* 46.57.188.15 | ||
* 200.17.216.14 | ||
* 46.213.123.97 | ||
* 31.8.48.7 | ||
* 178.52.223.166 | ||
* 95.212.148.74 | ||
* 69.65.5.104 | ||
* 178.52.0.233 | ||
* 188.139.228.179 | ||
* 31.9.48.7 | ||
* 31.9.48.0 | ||
* 81.9.48.11 | ||
* 31.9.48.1 | ||
* 193.227.183.171 | ||
* 31.9.48.164 | ||
* 31.9.48.141 | ||
* 31.9.48.147 | ||
* 31.9.48.146 | ||
* 95.212.148.233 | ||
* 65.49.68.142 | ||
* 178.52.166.61 | ||
* 31.8.47.7 | ||
* 31.9.48.11 | ||
* 178.52.165.92 | ||
* 178.52.108.207 | ||
* 178.52.254.161 | ||
|
||
# urls | ||
* http://ar.rghost.net/54001947 | ||
* https://www.facebook.com/photo. | ||
* https://www.facebook.com/ | ||
* https://www.facebook.com/AlhyytAl | ||
* http://www.youtube.com/ | ||
* https://www.dropbox.com/s/ | ||
* https://www.dropbox.com/ | ||
* http://ge.tt/14hNebG1/v/0 | ||
* http://ge.tt/1v3NB7y/v/0 | ||
|
||
# emails | ||
* [email protected] | ||
* [email protected] |
Binary file added
BIN
+4.9 MB
2014/2014.08.18.Syrian_Malware_House_of_Cards/KL_report_syrian_malware.pdf
Binary file not shown.
Binary file added
BIN
+560 KB
...14.08.18.Syrian_Malware_House_of_Cards/The Syrian Malware House of Cards - Securelist.pdf
Binary file not shown.
Binary file added
BIN
+383 KB
2014/2014.09.04.Gholee/Gholee_Protective_Edge_themed_spear_phishing_campaign.pdf
Binary file not shown.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,3 @@ | ||
d00b3169f45e74bb22a1cd684341b14a | ||
ae6f33f6cdc25dc4bda24b2bccff79fe | ||
0c2674c3a97c53082187d930efb645c2 |
Binary file added
BIN
+758 KB
....Ironman/ironman-deep-panda-uses-sakula-malware-target-organizations-multiple-sectors.pdf
Binary file not shown.
Binary file not shown.
Binary file added
BIN
+8.43 MB
2014/2014.12.02.Operation_Cleaver/Cylance_Operation_Cleaver_Report.pdf
Binary file not shown.
Oops, something went wrong.