en
Feedback
vx-underground

vx-underground

Open in Telegram

The largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/

Show more

πŸ“ˆ Analytical overview of Telegram channel vx-underground

Channel vx-underground (@vxunderground) in the English language segment is an active participant. Currently, the community unites 55 189 subscribers, ranking 1 741 in the Technologies & Applications category and 654 in the USA region.

πŸ“Š Audience metrics and dynamics

Since its creation on Π½Π΅Π²Ρ–Π΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 55 189 subscribers.

According to the latest data from 10 June, 2025, the channel demonstrates stable activity. Although there has been a change in the number of participants by 8 644 over the last 30 days and by 0 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 17.26%. Within the first 24 hours after publication, content typically collects 10.81% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 9 526 views. Within the first day, a publication typically gains 5 966 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 191.
  • Thematic interests: Content is focused on key topics such as nerd, bubble, cybersecurity, threat, healthcare.

πŸ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
β€œThe largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/”

Thanks to the high frequency of updates (latest data received on 18 March, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

55 189
Subscribers
No data24 hours
-137 days
+8 64430 days
Posts Archive
Updates to the vx-underground collection: - 2011-07-04 - Mixing x86 with x64 code - 2018-04-11 - WoW64 internals - 2023-04-19
Updates to the vx-underground collection: - 2011-07-04 - Mixing x86 with x64 code - 2018-04-11 - WoW64 internals - 2023-04-19 - WOW64 Callback Table - FinFisher - 2025-04-16 - Control Flow Hijacking via Data Pointers

Imma be real with you, Chat. I've been unfathomably busy IRL and it's brought me immense joy schizo-posting satirical nonsense to thousands of people.

The naming convention "Trojan" easily confuses people i.e. Remote Access Trojan. Unfortunately, due to successful media campa
The naming convention "Trojan" easily confuses people i.e. Remote Access Trojan. Unfortunately, due to successful media campaigns, the term Trojan is now closely affiliated to condoms. Instead we petition to formally change the term to something which is reminiscent of the term "Trojan Horse", and carries the same meaning Suggestion: Horse Example(s): - Remote Access Horse - Sophisticated Horse - "... The Threat Actors inserted a Horse payload into the Word document..." Laymen can easily identify a horse and they will understand the concept of a horse on the loose is very dangerous. You can explain to customers there is a horse loose in their computer and the horse is causing serious damage.

This is pretty much what it's like dealing with malware droppers You're like, oh sweet, it's a kitty cat. But then you discov
This is pretty much what it's like dealing with malware droppers You're like, oh sweet, it's a kitty cat. But then you discover it's actually a barrage of kitty cats and that's fine but you didn't expect so many at once

It's so privacy focused, it takes images of what you're doing every 90 seconds to ensure you're not making any opsec mistakes. It then saves it in a super secure location (APP DATA) so then you can review it later if you want

Windows 11 is the more secure and privacy focused Operating System Only real privacy enthusiasts use it

Hello, To work in IT and/or cyber security... You don't like have to like Linux, you don't have to like C (or Assembly), you don't have to like Mr Robot, you don't have to go to conferences or meetups, you don't have to prefer IRC over Discord, you don't have to have a fancy setup You can like or dislike whatever you want. Don't feel pressured to think or behave a certain way. ok ttyl love u, kissies - smelly

TeamSpeak is in the restroom, shadowboxing in their underwear, praying to God that Discord does something stupid(er) and results in a user base collapse

Discord CEO stepped down. The new upcoming CEO was previously the CEO of Activision. His resume includes the implementation of micro-transactions in Call of Duty. Imagine if Discord suddenly introduces micro-transactions, like paying $10/month for unlimited call times πŸ˜‚

Updates to the vx-underground collection: - 2025-03-02 - Abusing IDispatch for Trapped COM Object Access Injecting into PPL P
Updates to the vx-underground collection: - 2025-03-02 - Abusing IDispatch for Trapped COM Object Access Injecting into PPL Processes - 2025-04-03 - CreateFileMapping to replace ReadFile - 2025-04-08 - Notes on bypassing mailbox audit logs

No idea what's going on, but the bucket they reference has millions upon millions of malicious binaries. How did miss the other 36,999,999 malwares

Today virus exchange was banned from our (other) hosting provider (Wasabi). They claim our domain virus-dot-exchange has malware on it. They cited 1 specific file hash and stated virus exchange is disabled until we can explain why we have 1 malware on the server What the fuck?

getting emotional right now, thinking of windows xp and listening to evanescence https://www.youtube.com/watch?v=5anLPw0Efmo

Updates to the vx-underground collection: Papers: - 2004-06-06 - Execution redirection thru Image File Execution Options key
Updates to the vx-underground collection: Papers: - 2004-06-06 - Execution redirection thru Image File Execution Options key - 2025-04-07 - Bypass WDAC WinDbg Preview - 2025-04-17 - Notes on RtlGetUnloadEventTraceEx Malwares: - InTheWild.0152 - InTheWild.0153 - InTheWild.0154 - InTheWild.0155 - InTheWild.0156 - InTheWild.0157 - InTheWild.0158 - InTheWild.0159

I hate seeing people write and/or say "cyber" in the context of cybersecurity i.e. "I'm studying for cyber right now". The word "cyber" is an adjective β€” do you study big, tall, short, tiny, blue, stinky? /me flips desk

April 14th, 2025, David M. Dorbish Jr., passed away as a result of a suspected drug overdose. David M. Dorbish Jr. was a prolific online serial swatter who plead guilty to 15 charges in 2020.

wtf my cat has a computer virus
wtf my cat has a computer virus

Cats 🀝 Malware
Cats 🀝 Malware

>be me >work on crappy computer virus website >uploading 200gb of bad computer programs >bored >listening to Primer 55 >looking at cat pictures ok ttyl, gonna let stuff upload

ultra rare kitty cat