40629
The largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/
> get dm
> "is this malware?"
> look inside
> malicious libre office macro
> looks funny tho
> raw shellcode
> 2,0,1,187,192,168,45,246
> malware tries connecting to IP address
> 192.168.45.246:443
> malware delivered from a live website
these dumb fucks vibe coded a malware payload and had it connect back to a local ip address. are they actually fucking retarded???
We desperately need someone to update noob malware literature.
The shit for malware noobs looks like it was written in 1995 and by someone who doesn't know shit about malware or how it actually works.
It reads like someone describing swimming who hasn't ever been in a pool
Wait, no. The C2 domain changed and the C2 blocked my IP.
Give me your goopies.
> be me
> havent taken malware inventory in a long time
> lol how much malware do i actually have?
> usually estimate 32,000,000-ish
> look inside
Argus Collection (archived): 24,830
ATM Malware (archived): 285
Bazaar (actively collected): 733,985
Families (retired): 122,888
InTheWild (actively collected): 8,195,377
Malware Analysis (actively collected): 53,746
Malware Ingestion (retired): 7,511,822
OpenSourceMalware (archived): 40
Twitter IOC Collection (archived): 40,324
VirusShare (actively collected): 23,775,600
VirusSign (actively collected): 1,786,542
Total malwares: 42,225,439
Total archives (7z files): 128,786
Total size: 12.9TB (7z ultra compressed)
Time performed collecting malware: 2,618 days
Have you ever accidentally lost 50,000 malwares?
I downloaded 50,000 malwares and I don't know where it went.
No, I'm serious, I actually have no idea where the malware went. I'm confused and scared.
Have you seen my malware?
Administrative update:
1. I am going to begin the process of thanking people for malware submissions and/or papers and/or recommendations. They will be placed somewhere on the website. You can exaggerate yourself on LinkedIn and say you're a collaborator.
2. I have a large volume of malware papers and malwares in queue. It is 175,000 malwares, 20 or so papers. As is tradition, malware analysis will be coupled with the papers too. That is expanded every month as new material comes in.
3. I have no plans to resurrect the virus exchange for the time being, unless someone (preferably a large company) is willing to bank roll the entire thing. I can provide the malware goopies, but computers are expensive.
4. Per request from OG vx-underground nerds, in more serious posts discussing technical topics, I will drop the silly cats and instead revive the classic edgy vx-underground dark. I will introduce a balance between seriousness, and edgy Hot Topic Goth, and generate kitty cat stuff.
Thank you everyone for the love and support. I see your messages and e-mails. I am enjoying the summer with my son and family, so I am simply less inside at the moment. I will (hopefully) do more malwares soon.
The kids are making anti government surveillance memes and I love it.
Читать полностью…
Was laying in bed this morning thinking of Satya Nadella (CEO of Microsoft).
He makes me feel warm and fuzzy inside.
I'm so excited to hear about the new additions to Windows next quarter. It's going to be more features we can use for malware. I'm so excited. He's awesome
> x ad revenue sharing?
> down.
> monthly vx-underground donors?
> losing more.
> vx-underground sponsors?
> lost more.
> pictures of silly cats?
> up 8000%
Maybe a year ago, I don't remember, a game appeared on Steam called BlockBlasters. BlockBlasters was actually malware, and it gained recognition primarily because it was used to crypto drain a terminally ill cancer patient.
I was the first person (to the best of my knowledge) to reverse engineer BlockBlasters after people began notifying me about the game on Steam potentially being malware.
It ended up being a huge deal, primarily because BlockBlasters was used for targeted crypto draining campaigns.
Anyway, the FBI has begun arresting the people. The first person arrested was 21 year old Zyaire Dontaevious Zamarion Wilkins, based out of Florida. I assume more arrests are coming.
This person specifically made $220,000 from the malware campaign, with $32,000 coming from a terminally ill (now deceased) cancer patient.
The FBI after I keep sending them e-mails with pictures of cats for literally no reason (they hate my guts)
Читать полностью…
After receiving an e-mail from the FBI, or EUROPOL, or whatever, about Operation Leak, I decided to establish a line of communication with the FBI.
I am now Super Top Secret (STS) FBI Agent Smelly Smellington, in charge of silly cat picture collection intelligence
HOLY.
The two nerds from Scattered Spider got FIVE YEARS for profiting millions from ransomware and, most notably, ransoming critical infrastructure in the United Kingdom.
Dawg, move to the UK and do cyber crime. It's basically legal there. They don't even extradite you
> wake up
> take a shit
> get out of bed
> check email
> email from fbi
> not spoofed
> something something leakbase
> "On behalf of the International Law Enforcement Operation Leak"
> "Law enforcement takes this type of crime extremely seriously and will not hesitate to act against offenders"
> think
> "did i make a leakbase account?"
> flash back
> made account to check out website
> spoke with admin briefly
> unironically sent him pictures of cats
> now fbi and europol sending me mean emails
> is sending cats a crime?
Chat, my entire life I've hated going outside. I like being on beep boop machine and doing malware stuff.
However, my son is 16 months old and, despite everything, I have been extremely happy and fulfilled spending time with my son and extended family outside.
For the first time in my life I do not hate outside because my son is happy outside. He plays in the dirt, farts, and says "Dad?" while pointing at stuff.
It is cool and badass. Being a Dad is super cool and super badass.
Anyway, I see your malwares you've sent me. I plan on getting to it. I have lots of stuff planned. However, it is low priority for me at the moment because my son and I are busy (playing in the dirt, farting, etc).
Overall I'd rate having children a 10/10. Having a little dude call you "Dad" makes you feel good inside in a way nothing else can
As an example, if I search "malware intro", the first page is from CISCO. CISCO writes that there is seven different types of malware.
- Virus
- Worm
- Trojan Virus
- Spyware
- Adware
- Ransomware
- Fileless malware
These definitions are too vague, I think a better explanation (although a little bit trickier...)
- Infector
- Stager
- Module
- Stealer
- Spyware
- Ransomware
- Loader
- Toolkit
However, this doesn't accurately capture the nuance of web based malware or IOT and/or ICS/SCADA malware.
> be me
> sleepin good
> hear wife scream
> ???
> throws open bedroom door
> "I NEED HELP"
> ???
> get up
> run into living room
> baby boy took off diaper
> pooped on floor
> stepped on poop
> poopy foot prints all over house
Found a compromised website with ClickFix that successfully bypasses uBlock. The ClickFix payload uses LOLBINs and uses a WebDAV server. It was promising.
The C2 is dead.
YOU LIED TO ME
Hello, People Living Inside My Computer (PLIMC),
If you're someone who enjoys malware, I have good news.
If you're someone who dislikes malware, I have bad news.
I have uploaded 176,000 malwares and some malware papers. Please download it.
https://vx-underground.org/Updates
Oh, I forgot. One other thing.
I had a few people say I should focus more on news. People said using keywords like "breaking" can improve engagement and potentially bring more people to this social media account.
I appreciate the insight, feedback, and thoughtfulness. However, I am very much ... I don't know the word ... I guess I don't really give a fuck bro. Yes, people and monies and stuff is cool, but I don't want to be a slop account. I'm just going to continue doing what I'm doing.
Malware source code, samples, and papers for free, forever.
Cheers
If this were a meme made by someone in my age group it would be something like, "how I walk when I have hemorrhoids"
Читать полностью…
Literally every 3 or 4 months Satya Nadella serves us up a big slop pot of abusable features. He's a malware factory
Читать полностью…
Chat, big shenanigans are afoot. Zyaire Dontaevious Zamarion Wilkins, one of the individuals behind the "BlockBlasters" steam malware campaign, also social engineered people online by pretending to be a woman.
Wilkins, and a currently unlisted number of people, worked to spearphish people who owned cryptocurrency. They published a fake game on Steam named "BlockBlasters" which received international attention for crypto draining a terminally ill cancer patient.
It turns out Wilkins also impersonated a person named sibeleth
That girl who was flirting with you, asking about how much money you hold in crypto, was actually a 21 year old African American man
tldr you sending me malware is good, sometimes really interesting things happen. Thank you for sending me malware.
Also, I really want to note I didn't do any investigative work or whatever, I just reverse engineered it, explained how it works, noted some IPs or crypto wallets, nothing else. I'm just the malware guy. I'm nothing else. There were a lot of people who came together after BlockBlasters appeared that did really cool stuff and helped a lot of people. Lots of people shared information publicly which identified people. I'm just bonking stuff with sticks and looking at cats
> be UK
> post racism memes
> say schizo stuff
> 2 years in prison
> ransom critical infrastructure
> make millions from cybercrime
> 5 years prison
> eligible for release in 2 years
I don't understand the UK
They'll probably get out in two years. The United Kingdom is badass bro wtf ransomware is basically legal
Читать полностью…
Dawg, I'll tell you something right now though, if my son is like six, and he's like, "Dad, you're on beep boop machine a lot. Can you teach me how to malware?".
I'll say, "My son, my flesh and blood, my beautiful baby boy. Sit down. We begin now".
Then I will transfer everything I know about malware from my brain into his brain over several years. When he is a pre-teen he will possess all of my malware knowledge and he will inherit vx-underground when I die.
Or maybe he'll think malware is stinky nerd shit and instead want to play video games with his friends and do psychologically normal things. Only time will tell.
> be United States
> sanction VPN
> used for ransomware
> ransomware VPN uses Telegram
> Advertisement and customer support
> US Treasury publishes sanction thingie
> list VPNs Telegram channel
> Domain people see it
> See t.me/ransomwarethingie
> "OMG BLOCK T.ME!!!"
> Put global block on t.me
> Breaks Telegram URLs
> Telegram owner mad af
> Complains, says they can't read
> "hehe oops, me no think good"
> Resolved like, 24 hours later