I’ll create a custom game, to hide the malware for scambaiting purposes and obfuscate it, and protect with Enigma for scammers to play. It’ll drop a dll with a malware obfuscated, then running rundll32.exe to load the dll. Then, the dll will create the service to load itself automatically. The RAT will be a Telegram, or Discord bot, due to port forwarding is expensive for a poor college student like me.
Today, a few hours ago.
Someone has used my discord account to send the message you see in the image to my friends and servers.
Suspicious link: https://gidthub.com/ee/game/raw/main/SkyBlade/
hey, my brother had clicked the link and opened the downloaded file . I had deleted the msg which was sent from my account but is the bot or malware removed from the system.If not how do I do so
Hi, my friend’s account sent me an identical message with the same link. I clicked on it, opened the folder but did not unpack it and then deleted it. Is something still in danger? I have scanned Norton 360 and Malwarebytes multiple times since (April 28) and found nothing. (earlier before 28 April , Malwarebytes detected “Adware.Yontoo” “Adware.Elex” and “PUP.Optional” but have been removed by the program, after deleting them after scanning PC for 4 days straight i got zero detections) What is there to fear and what to do?
My friend’s account also sent this in our class server and I fell for it too ugh. He said he hasn’t been opening his discord for 2 days and immediately changed his password once I told him about it. Here’s the link they sent https://githxub.com/ee/game/raw/main/Skyblade