vxunderground | Unsorted

Telegram-канал vxunderground - vx-underground

40629

The largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/

Subscribe to a channel

vx-underground

For those curious regarding Epstein files redactions and general information: based on Mr. Massie's visit to the United States Department of Justice today, and his "hint" of this being from "A Sultan", this implicates Sultan Ahmed bin Sulayem.

Around April, 2009, footage was leaked of Issa bin Zayed Al Nahyan a/k/a "Isa", son of Zayed bin Sultan Al Nahyan, beating an Afghanistan merchant. In the video, Isa does the following:
- Hog ties him
- Beats the man with a wooden plank, with nails protruding
- Fires an automatic weapon around the man
- Forces a cattle prod into the mans anus
- Places the cattle prod onto the man
- Runs the man over with a Mercedes SUV
- Ignites the mans genitals with lighter fluid
- Pours salt on the wounds

All of this was performed while Abu Dhabi police were present (seen in the video).

Issa bin Zayed Al Nahyan was found not guilty in court. The Judge proceeding over the case did not explain why Isa was exonerated on all charges.

This appears to be the video Epstein "loved".

Читать полностью…

vx-underground

tl;dr SmartLoader malware campaign, multi-staged obfuscated Lua payload to evade detection, currently very effective. Interesting malware find.

Some nerd named bleuonbase was looking for some random "Effect-native SDK" (whatever that is), the 2nd indexed URL on Google was a spoopy looking GitHub repo.

He showed it to me. I was bored (I'm very sick), so I poked it with a stick. To make a long story short, this looks like a new malware campaign from SmartLoader

The thing is an obfuscated Lua Loader and it comes packaged with the traditional Lua dependency junk (Lua JIT and DLL). The payload launches from a .cmd which just passes a .txt to the Lua JIT binary. This is all standard stuff for SmartLoader from early and mid 2025.

If you're curious, lookup the SHA256 for the obfuscated Lua script on VirusTotal: c36ce9080f624c14dd4e1d451228293f786168f4de2d35690d2cffb6cccbae87 (Image 1)

You'll see some of the other thing it's trying to masquerade as. This is all very silly shenanigans.

It's currently exfiltrating to some German IP address and inserting fake Cloudflare headers to make it look like it's Cloudflare: 213.176.73.145

Look up that IP address on VirusTotal and you'll see even more silly shenanigans (Image 2)

Oh, and uses Socket3.lua for stuff, I've uploaded that to VirusTotal and Triage. Was not seen on VT before: f2e4088ebf9d98bcc7cccff153a26a786927ae8de570889af160e695b35d1624

Читать полностью…

vx-underground

Starting March, 2026, Discord will require a facial scan or copy of your government issued ID to use 'adult features' on Discord such as participating in stages or viewing Discords and/or channels marked as 18+

Читать полностью…

vx-underground

holy shit this guy is a genius

Читать полностью…

vx-underground

> "hey smelly i ran this game, is it malware?"
> doubt_it.png
> bored
> look inside
> game
> look inside
> electron app
> look inside
> weird .png embedded inside
> look inside
> electron app inside png
> wtf
> look inside
> .zip inside png inside of electron app
> wtf
> look inside
> electron app
> ???
> .js inside .zip inside .png inside .asar inside .exe
> look inside
> heavily obfuscated

Читать полностью…

vx-underground

> Find malware campaign
> Check VT
> (Looks) New
> Currently undetected
> Look inside
> Obfuscated Lua

Seriously? Lua? You guys are a bunch of sick fucks

Читать полностью…

vx-underground

I'm really sick (STILL), don't have mental capacity to shit talk Microsoft, or talk about some weird malware shit, or describe the latest Epstein computer-related gossip and news.

I'm going to steal memes from /g/ Tech Meme's and crawl back into bed.

Читать полностью…

vx-underground

Dawg, who the FUCK setup these vx-underground posters in London? This isn't something you can just do in a few minutes. This requires planning and visiting a print shop and stuff.

There is no venue listed, the artists aren't real.

WHO ARE YOU PEOPLE

Читать полностью…

vx-underground

I wasn't sure if I was on an FBI watchlist. Getting that autograph from Mikhail Matveev from FBI Most Wanted was definitely pushing it, but an e-mail from a compromised Epstein e-mail address is the cherry on top.

Pic related (FBI watching me)

Читать полностью…

vx-underground

Hello,

If you're in the United Kingdom and happen to be near:

27 Osborn St, 24 B134, London, England

You will see a cool and badass UK DRILL hip-hop rap thingie that I am supposedly hosting (I'm not, but someone is using the name).

If you happen to find it, please take a silly picture with it. I will share it online and you can tell your friends you got into a hip-hop beef, or something, I don't know.

Читать полностью…

vx-underground

I'm really confused.

There is someone claiming to be "VX UNDERGROUND" in London and they're sponsoring some UK rap thing.

They link directly to the telegram channel I own.

????????????

Читать полностью…

vx-underground

A lot of people don't know this but since the United States government was shutdown for 43 days in 2025 you don't have to pay taxes for those days

You don't pay taxes for days not worked

Читать полностью…

vx-underground

Contracting Influenza Type A has been an eye opening religious experience. I've seen God.

While I briefly had an extremely high temperature, exceeding 104f, I also unknowingly passed Influenza Type A to my 10 month old son.

Thankfully, by the grace of God, my wife's forethought and her intelligence, he got his seasonal Flu shot. However, the flu shot does not guarantee immunity.

While I have been experiencing a fever, aches and pains all over my body, and coughing up mystery goo, my 10 month son got a mild tummy ache.

While a baby with a tummy ache isn't bad, there is nothing that makes you more aware of your existence than your baby boy heap spraying green diarrhea all over the bed while simultaneously laughing at it. When you take this lunatic behavior and couple with it severe illness, you can feel your soul leaving your body.

I was begging my 10 month old son, on the verge of tears, to stop trying to roll around in his feces while I battled aches, pains, chronic fatigue, and mystery goo leaving my lungs.

He's totally fine. He doesn't have a fever. He is playful and talkative. He's eating good. Meanwhile I'm shopping for coffins on Temu (they're cheaper there).

Читать полностью…

vx-underground

Can I decode these documents? No

Can I provide a silly picture of a cat? Yes

Читать полностью…

vx-underground

Chat, nerds have decoded more Epstein attachments.

The recently decoded attachment contains victim information. It is nothing but victim information. I will not share the decoded attachment because I do not believe it would be in good faith to share this victims face to the world.

In summary, he was paying people to stalk and spy on a teenage girl who had substance abuse problems. In the email his "detectives" we're sending Epstein photos of her social media profile. His "detectives" also shared photos of this teenage girl and her boyfriend.

In the email they inform Epstein they will increase surveillance on the teenage girl and her boyfriend.

Читать полностью…

vx-underground

This all lines up with what SmartLoader did in August.

tl;dr haven't changed shit

https://asec.ahnlab.com/en/89551/

Читать полностью…

vx-underground

More information: https://www.theverge.com/tech/875309/discord-age-verification-global-roll-out

Читать полностью…

vx-underground

"when i ran it smelly, windows deleted the malicious jar file"

THE MALICIOUS JAR FILE?! WHERE THE FUCK IS THE JAR FILE

> jar inside .js inside .zip inside .png inside .asar inside .exe

Читать полностью…

vx-underground

What the actual fuck is your problem? Why do you people keep finding weird ass obfuscated Electron.JS malware?

Читать полностью…

vx-underground

I'm still sick. I've basically got dysentery from this Influenza Type A. I'm not sure what's worse, pissing out my ass or working with obfuscated Lua. Right now I'm thinking I'd prefer pissing out my ass

Читать полностью…

vx-underground

WHO IS PUTTING UP THESE POSTERS IN LONDON

Is this some kind of esoteric Britbong humor us Ameriburgers aren't familiar with?

Читать полностью…

vx-underground

I'm being told this is a real thing.

I don't know what's real and what isn't, but August 6th is also DEFCON.

I have no idea, dawg. I give up.

Читать полностью…

vx-underground

Nerds on KiwiFarms made an absolutely disgusting discovery.

Some of the videos in the Epstein files are completely unredacted.

To spare you the details, one particularly horrific video is a 15 year old girl in her underwear. She explicitly tells the camera man her age, name, country of origin, and body measurements.

KiwiFarms currently has a COLOSSAL thread going, over 350 pages and counting, of people collectively reviewing files and sharing information.

Читать полностью…

vx-underground

> be me
> log into email
> email from jeffrey epstein
> actual email from epstein documents
> lolwtf
> look inside
> silly picture of kitty cats

Thank you to whoever logged into Epstein's e-mail and thought to send me these cat pictures. It makes me very happy.

Читать полностью…

vx-underground

I was unaware posting silly photos of cats means you're a homosexual

Читать полностью…

vx-underground

Imagine internet nerds spend all this time trying to decode these Epstein attachments and when they finally crack the code this is what they find

Читать полностью…

vx-underground

> be Islamic activist hacker group
> want positive attention to iraq
> decide to DdoS internet archive
> "That'll get people's attention!"
> "Now people will care about our cause!"
> piss everyone off
> people hate their cause now

???

Читать полностью…

vx-underground

Big shout out to OpenClaw.

One of the most downloaded OpenClaw skills was AmosStealer

Chat, MacOS malware is so fucking back

https://1password.com/blog/from-magic-to-malware-how-openclaws-agent-skills-become-an-attack-surface

Читать полностью…

vx-underground

"Hey can you try to decode this document?"

Dawg, I collect pictures of cats on the internet. I don't fucking know how these nerds are doing this shit. I'm just regurgitating what the real brains are doing

Pic related

Читать полностью…

vx-underground

Chat, it's the space race. Except we're not racing to space, we're racing to programmatically decode attached Epstein email documents.

Last time on Dragon Ball Z: nerds noted that in the Epstein documents the DoJ failed to censor Base64 encoded email attachments. This means we have the means to extract the email attachments from the Epstein documents and see what is inside and uncensored.

Big problems occured. Upon further inspection nerds noted the Epstein documents use Corrier New. This font is a pain in the ass to work with. In summary, they cannot reliably tell the difference (programmatically) between an L and a 1.

Now we're off to the races. Who can solve it first and (probably) be murdered by a spooky shadowy government? (but have lots of clout on the internet)

The first proposed solution was brute force. Swap the L's and 1's, try every possible combination until it is successfully decoded. The problem with this method is that even a simple document has over 1,000,000 unique permutations. To swap every L and 1, try to decode, then test the file, would take (if your computer is fast as fuck boi) 3 seconds... so a small document would take (worse case scenario) 34 days to brute force.

The second proposed solution was transforming the PDF documents into high resolution images then programmatically enhancing the L's and 1's to make it easier to work with. While this sounds easy, it has proven to be challenging. Not all L's and 1's have the same characteristics visually. In other words, there's lots of edge cases that need to be accounted for. This will take a long time too.

The third proposed solution was using Claude or ChatGPT. While initially laughed it, Claude did have some minor success and did manage to successfully decode one document. Claude has subsequently failed on every other attempt thus far. Claude fails because of the points referenced in the proposed solution two up above (too many edge cases, font is inconsistent, not aligned, etc).

While nerds are off the races and working tirelessly to reverse engineer and decode these documents, internet non-nerds have also chimed in. Most notably by saying things such as:
- Why isn't it done yet?
- Just don't fix the L and 1
- This isn't hard, bro. I could do it
- You're doing it all wrong

While they remain critical, these people have not contributed meaningfully to the collective goal. I have no idea why they're back seat driving this project. It's actually very frustrating to read.

For reasons I do not understand, some people seem to be under the impression they're capable of solving a problem that hundreds, possibly thousands, of other people are actively trying to solve or are unable to solve.

Will nerds find a solution that works consistently? Will people on the internet stop back seat driving? Will we give up and instead do a mass brute force campaign? Is the government concerned by the tsunami wave of weaponized autism?

Find out next time on Dragon Ball Z

Читать полностью…
Subscribe to a channel