Quantcast
Channel: XyliBox
Browsing all 128 articles
Browse latest View live
↧

Image may be NSFW.
Clik here to view.

News !

I will start to do a series of post about real life 'hacking' and subculture.to make you wait until next post here is some photos of 3d skimmer:I will also do a huge post about skimming soon.

View Article


Image may be NSFW.
Clik here to view.

How i carded myself

After talking to some carders, one told me directly to try carding.Not a bad idea the magnetic strip always intrigued me, so i've started to think like a carder obviously without the goal to harm...

View Article


Image may be NSFW.
Clik here to view.

Citadel 1.3.5.1 Rain Edition

I know i've says i will do some articles about real life 'underground' before starting again on malwares but i've received  (like many) a fake LinkedIn Spam who send you on Blackhole Exploit Kit and...

View Article

Image may be NSFW.
Clik here to view.

Sh*t happens

So, what's happend ?Shit.Like i've says on my previous article "researchers will always have your crapwares sooner or later"Now a builder was leaked ¬.¬Not the latest but...And about Citadel...With a...

View Article

Image may be NSFW.
Clik here to view.

Silence Winlocker 5.0

 Having a look on a version who play MP3 file.Now let's start the boring part (reversing)At first it call the time service dept and retrieve the date and check it with 29 Oct(I've passed on some part...

View Article


Image may be NSFW.
Clik here to view.

BackDoor-ARD/BackDoor.Feardoor

Old school malwares are fun especialy 'Acid Drop' a RAT not complicated to use I've found it by error when i was searching another threat, you can find a description of Acid Drop here:...

View Article

Image may be NSFW.
Clik here to view.

Knucker.C/LoveLetter

A lame vb script found on Facebook.Fun to see how AV fails on this. (5/44 According to...

View Article

Image may be NSFW.
Clik here to view.

Fake French administrative documents

Fake documents are a plague in France.On internet you can easily contact someone to make fake documents (driver license, french national id, utility bill etc...) You can even found 'how to' if you know...

View Article


Image may be NSFW.
Clik here to view.

W32/PixSteal.A

Another weird malware...It stealing images (JPG, .JPEG, and .DMP files.) in the infected drive then send it to a remote FTP server.If you want more infos:...

View Article


Image may be NSFW.
Clik here to view.

Troj/Skimer-A

Sophos guys published an article in 2009 about a malware who target Diebold ATM:http://nakedsecurity.sophos.com/2009/03/17/credit-card-skimming-malware-targeting-atms/...

View Article

Image may be NSFW.
Clik here to view.

Backdoor.Nucleroot/Win32.Umbald.A (Umbra Loader)

Almost FUD, detected by NOD32 and Kaspersky. (2/44)Crypted with a dirty DotNet crapOnce unpacked it's another story (33/44)Read the ressources DLL0/1/2 and CFGGet the config.Do some registry shit,...

View Article

Image may be NSFW.
Clik here to view.

Nano Wincor Skimmer

Found on a forum."Used 3 times, sold as unnecessary"

View Article

Image may be NSFW.
Clik here to view.

DUMPSLOGS.COM Card shop

Found this one on scan4you• dns: 1 ›› ip: 84.22.106.86 - adresse: DUMPSLOGS.COMDomain Name:    DUMPLOGS.COMRegistrar:  BIZCN.COM, INC.Whois Server:   whois.bizcn.comReferral URL:...

View Article


Image may be NSFW.
Clik here to view.

Epubb winlock affiliate

Named epubb due to a domain they used before "epubblamed.pro"Advert:Login:Main:Stats:Vouchers:EXE file is on...

View Article

Image may be NSFW.
Clik here to view.

Serenity Exploit Kit

Says hello to another (lame) kit...Coded by 'Oakley' the advert look like a HF crap:We got warned hours later by MDL on TwitterThe kit itself is pretty lame and vulnerable (lol, what an irony), Malekal...

View Article


Image may be NSFW.
Clik here to view.

vksh0p.com card shop

Found via spam, "wlecome"• dns: 1 ›› ip: 37.221.166.121 - adresse: VKSH0P.COMDomain Name: VKSH0P.COMRegistrar: BIZCN.COM, INC.Whois Server: whois.bizcn.comReferral URL: http://www.bizcn.comName Server:...

View Article

Image may be NSFW.
Clik here to view.

Barracuda Loader

Advert:Login:Dashboard:Bots:Commands:Access logs:Logs:Settings:There is also some faggotry like Micro WormUDP Flooders:Booter:Stealer panel:Some malwares crypted with .NET crap:???Typical lamer nothing...

View Article


Image may be NSFW.
Clik here to view.

Multi Locker

I've seen it on kernelmode for the first time on a post, i've looked fastly just the panel...Dashboard:Edit a file:Rename:More recent, a friend gived me this link via IRC:...

View Article

Image may be NSFW.
Clik here to view.

Ice.IX.v1.2.5.Keygen-RED/Ice.IX.v1.2.6.Keygen-RED

Haven't released a crack since a quite old time now...Ice IX 1.2.5: f22e47deb86d6ddaaced55eb5f29c7e7Keygen: f2298e9b2b445014414746a278826ad6Ice IX 1.2.6: cc474ee65cfb0a498add7863e9df799bKeygen:...

View Article

Image may be NSFW.
Clik here to view.

Point-of-Sale and memory scrappers

I got access to a compromised POS recently (thanks Zora)POS Designer:POS interface (password protected)The guys who hacked it first leaved alot of traces... gentlemen i present to you......

View Article
Browsing all 128 articles
Browse latest View live