vx-underground
44.9K subscribers
3.87K photos
410 videos
83 files
1.42K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Tbh bro girls who go into computer stuff are way fuckin braver than me

A long time ago I was considering going into healthcare. I enrolled in this nursing class thingie.

I went into the enrollment place and it was literally all women and 1 super buff Chad looking dude.

I walked into the room. I glanced in. The women turned and looked at me, this weird stinky nerd, and I got so nervous I turned around and left

P much pooped my pants. Idk why I got so scared. But it was scary.
🀣118πŸ₯°18❀8😒8πŸ‘4πŸ’―3πŸ‘2
vx-underground
Tbh bro girls who go into computer stuff are way fuckin braver than me A long time ago I was considering going into healthcare. I enrolled in this nursing class thingie. I went into the enrollment place and it was literally all women and 1 super buff Chad…
Tbf tho I was like, 16 at the time. I'm in my 30s now. If I had to enroll now id probably just walk in, sit down, poop my pants, and lock in. Idk
πŸ€“76🀣52πŸ”₯15πŸ₯°4❀3πŸ‘1😒1πŸ’―1
πŸ₯°79😱11πŸ‘7🀯5❀4πŸ”₯3😒1🀩1
Hello,

I'm a little behind schedule, but I've pushed a pretty big update to vx-underground. Please look at it and download the malware (or don't, whatever)

https://vx-underground.org/Updates
❀38🫑14❀‍πŸ”₯8πŸ‘2πŸ”₯1πŸ₯°1😒1
Why are you down again, Cloudflare?
🀣220😒33❀‍πŸ”₯17❀8πŸ‘4πŸ₯°4πŸ€“4😱3
The United States government has indicted a state-sponsored Threat Actor named Victoria Eduardovna Dubranova a/k/a Vika a/k/a Sovasonya

tl;dr she is facing 30 years to LIFE IN PRISON.

She is a citizen of Ukraine, however she acted on-behalf of the Russian Federation. Her colleagues were members of the Russian Federations military.

Initially I planned on doing write-up on her indictment, discuss her charges, etc, but the United States Department of Justice has documented her being tied to 99 offensive cybersecurity campaigns.

NINETY-NINE. 99.

It's 38 pages detailing her crimes, and this isn't even the full court documents because some are still sealed. The list of charges goes back to 2022.

She kind of got fucked over though, her criminal complaint is her and a bunch of other people who (in some capacity) were associated with the Russian government. By all accounts, it appears Ms. Dubranova was primarily responsible for video editing, managing money, running social media profiles, and misinformation campaigns.

She's in big trouble though because her associates (who she aided and abetted) in one instance compromised an ICS/SCADA in for a children's water park in the Netherlands, tampered with water temperature, and intentionally modified the chlorination levels.

In another instance, her colleagues compromised an oil and gas company, modified system temperatures, and caused an unknown amount of damage to the company.

In yet another instance, her colleagues compromised (another) oil and gas company, depleted onsite chemical supplies, and increased injection rates into oil wells

In yet another (another) instance, her colleagues compromised a public water system in the United States (Indiana), activated all pumps, and tampered with public water supply.

In yet (yet) another (another) instance, her colleagues compromised (another) public water system in the United States (Texas), shutdown pump set points, which resulted in the loss of 200,000 gallons of water for people in the State of Texas

In yet another (another one), her colleagues compromised an ICS/SCADA system in the United States (Pennsylvania), which resulted in the damage to a water treatment system, tampering with water pumps and levels of parasitic acid contamination

SHE'S TIED TO 99 OF THESE DAWG. SHE'S IN SO MUCH TROUBLE. SHE'S COOKED. IT'S GAME OVER.
🀣140🀯40πŸ₯°12❀11🫑7😒4πŸ”₯3πŸ‘2πŸ€”2πŸ’―1
vx-underground
The United States government has indicted a state-sponsored Threat Actor named Victoria Eduardovna Dubranova a/k/a Vika a/k/a Sovasonya tl;dr she is facing 30 years to LIFE IN PRISON. She is a citizen of Ukraine, however she acted on-behalf of the Russian…
I'm actually laughing. One of the compromises is so dumb.

Her and her colleagues were responsible for compromising A CAR WASH in the United States (Florida). They modified car wash systems and system placements

What kind of petty shit is this? This is like a small business owner who charges $6 a car wash. Imagine being the poor bastard who owns the business and being informed by the United States government that your small business was compromised by the Russian Federation because ???
🀣235😒23πŸ₯°10❀7❀‍πŸ”₯6πŸ€”4😁3
Hello,

I have updated malware city. New malware has arrived. Please greet the malware. They're new in town.

https://vx-underground.org/Updates
πŸ₯°75❀30πŸ”₯13πŸ‘4😁4πŸŽ‰4😱2😒1
I have a website for my malware source code. I have named it "malwaresourcecode", a very unique and inspiring name

malwaresourcecode.com
❀90😁44πŸ”₯12πŸ‘6πŸ’―6πŸ€“3🀣2πŸ€”1😒1πŸŽ‰1🫑1
Hi,

I've made updates to that website where I share my malware proof-of-concept and malware source code snippets. I have no idea what to call it yet other than malwaresourcecode-dot-com.

I've added updated definitions of the Process Environment Block and Thread Environment Block. My previous definitions were extremely outdated. New definitions are the work of m417z
.

I've introduced new string hashing code segments. These are all well-known and famous string hashing algorithms. I've written them to be more Windows-specific. None make usage of the CRT in the event you are writing PIC.

Moving forward, all code will have a basic usage example. Newly updated string hashing methods display show basic usage.

For the curious: are all these string hashing methods necessary? No. Most will use Djb2, Rotr32+13, or LoseLose. However, if you want to write slightly more unique malware code, or you're just curious what they look like, they're there for you to poke with a stick. I had a lot of fun rewriting them and looking at them (math is for nerds)

https://malwaresourcecode.com/
❀42πŸ₯°12πŸ”₯5πŸ‘2❀‍πŸ”₯1😒1πŸ’―1🀝1
Firefox is adding AI to the web browser.

Yeah, I'm killing myself tonight.

https://www.phoronix.com/news/Mozilla-New-CEO-AI
😒215🀣28😱11🫑8🀝4❀2❀‍πŸ”₯1πŸ‘1πŸ™1
vx-underground
Firefox is adding AI to the web browser. Yeah, I'm killing myself tonight. https://www.phoronix.com/news/Mozilla-New-CEO-AI
I JUST WANT A REGULAR COMPUTER. LEAVE ME ALONE.
❀151πŸ’―79πŸ₯°20😒6🫑4😁3πŸ‘2
I've updated malwaresourcecode.com

I've demonstrated some unusual ways to achieve rand() (random integer) using RtlUniform, IOCTL Cng, IOCTL KsecDD, and CryptographicBufferStatics

Why? Because I like weird stuff

Love you
❀87πŸ‘11😘3😒1
United States Department of Justice, Nebraska, indicts over 50 people involved in transnational gang TdA for deploying malware onto ATMs for "ATM Jackpotting"

Wtf that's badass (except the murder, extortion, maiming, etc. just interested in the malware)

https://www.justice.gov/usao-ne/pr/tren-de-aragua-members-and-leaders-indicted-multi-million-dollar-atm-jackpotting-scheme
πŸ₯°28🀯11❀7πŸ”₯2😁1😒1
vx-underground
United States Department of Justice, Nebraska, indicts over 50 people involved in transnational gang TdA for deploying malware onto ATMs for "ATM Jackpotting" Wtf that's badass (except the murder, extortion, maiming, etc. just interested in the malware) …
Yeah, these guys are not the brains behind the operation. I can't imagine someone technically savvy enough to develop ATM malware to then brag on social media about it
🀣77πŸ₯°10❀4😱1😒1
Me wondering if I should try to contact Tren De Aragua, a violent, transnational prison-formed street gang which operates as a cartel, rival to the infamous MS13, who is involved in murder for hire, kidnapping, maiming, drug trafficking, prostitution, money laundering, bribery, and extortion.

... so I can send them cat pictures and ask for their ATM malware
πŸ₯°76❀14πŸ’―14🀣9😱2🫑2πŸ‘1😒1
> make post about trying to contact Tren De Aragua
> get DMs
> "Uhhh hey, Smelly. TdA is very dangerous. I really don't think you should get involved with them

Bro, you think I'd actually try to contact them? They fucking murder people.

Also, I don't judge a book by it's cover, okay? I don't wanna sound like a hater but these individuals do not look friendly and I have a feeling they won't like my cat pictures
πŸ‘58🀣46😁19🫑13😒7πŸ₯°5❀3πŸ™2❀‍πŸ”₯1πŸ”₯1πŸ€”1
On Monday someone sent me a URL to a website trying to do click-fix targeting MacOS. I missed the message because the X DM system is a broken piece of shit.

The website is 100% malicious, but the final C2 part is dead. Staging payload still works.

I MISSED FREE MAC MALWARE
πŸ₯°57🀣35😒24😁7❀1