NoGoolag
4.76K subscribers
21.7K photos
12.3K videos
820 files
21.3K links
Live free!

๐Ÿ“ก @NoGoolag

FAQ:
http://t.me/NoGoolag/169

โ˜…Group:
https://t.me/joinchat/nMOOE4YJPDFhZjZk

๐Ÿ“ก @Libreware

๐Ÿ“š @SaveAlexandria

๐Ÿ“ก @BallMemes

FORWARDS ARE NOT ENDORSEMENTS

๐Ÿ’ฏ % satire OSRET
Download Telegram
CloudSorcerer Malware Targets Russian Government | CyberExpress

Researchers from Kaspersky believe that a new APT group is behind the CloudSorcerer malware. The malware is a single Portable Executable (PE) binary written in the C language and adjusts Its functionality depending on the process from which it is executed.

The malwareโ€™s backdoor module begins by collecting system information about the victim machine, while running in a separate thread. This information includes computer name, user name, Windows subversion information, and system uptime.

All the collected data is stored in a specially created structure. Once the information gathering is complete, the data is written to the named pipe \.\PIPE[1428] connected to the C2 module process.


#APT #Russia #CloudSourcerer