Smuggling malware family
Smuggling is a malware family tracked by MalwareAnalyzer by Cyble across 6 publicly analyzed samples. First seen 2026-08-19, most recently 2026-08-22. Observed ATT&CK techniques include T1059.001.
Corpus statistics
- Publicly analyzed samples: 6
- First seen: 2026-08-19
- Last seen: 2026-08-22
- Verdicts: malicious 5, suspicious 1
- File types: script 3, html 2, pe 1
ATT&CK techniques used by Smuggling
- T1059.001 - 1 sample
Extracted command-and-control infrastructure
- http://doc.babylonjs.com/how_to/load_from_any_file_type - 1 sample
- http://go.wpbakery.com/licensing - 1 sample
- https://605a7baede844d278b89dc95ae0a9123@sentry-next.wixpress.com/68 - 1 sample
- https://assets.babylonjs.com/environments/backgroundGround.png - 1 sample
- https://assets.babylonjs.com/environments/backgroundSkybox.dds - 1 sample
- https://assets.babylonjs.com/environments/environmentSpecular.env - 1 sample
- https://assets.babylonjs.com/particles - 1 sample
- https://browser.sentry-cdn.com/6.13.3/bundle.min.js - 1 sample
- https://controllers.babylonjs.com/generic/ - 1 sample
- https://controllers.babylonjs.com/microsoft/ - 1 sample
- https://controllers.babylonjs.com/oculus/ - 1 sample
- https://controllers.babylonjs.com/vive/ - 1 sample
- https://ezopet.abcibd.com - 1 sample
- https://ezopet.com - 1 sample
- https://ezopet.com/ - 1 sample
- https://ezopet.com/#organization - 1 sample
- https://ezopet.com/#richSnippet - 1 sample
- https://ezopet.com/#webpage - 1 sample
- https://ezopet.com/#website - 1 sample
- https://ezopet.com/author/ezopet/ - 1 sample
Recent Smuggling samples
- 0c32e55d652bb8e2994a2a58fe36dc81f6915eac6f9e2f31b3f7da7b32dc676c - malicious (2026-08-22)
- 630d51fd622d82e09c557c6ded08b3cd920c519321910c6f3a97c1e1fab90dcc - malicious (2026-08-22)
- ad13fe15582def936d8edae946492709ad62f6201d59b719dc4f6277aa4b2faa - malicious (2026-08-21)
- 0a671d84672e367bebf78293820b8f9a3d2f2bd372d1ad1ce366bd018589d242 - suspicious (2026-08-20)
- virussign.com_70c33cfe9e9cff147a4885ffd3828580.vir - malicious (2026-08-19)
- 1dd6afb1968dbf5ec6f28f68e6f5e7fdfa8c7e37b5644383aee70fb2d13a232b - malicious (2026-08-19)
Frequently asked about Smuggling
- What is Smuggling?
- Smuggling is a malware family tracked by MalwareAnalyzer by Cyble across 6 publicly analyzed samples. First seen 2026-08-19, most recently 2026-08-22. Observed ATT&CK techniques include T1059.001.
- How many Smuggling samples have been analyzed?
- MalwareAnalyzer by Cyble holds 6 publicly analyzed samples attributed to Smuggling, first seen 2026-08-19 and most recently 2026-08-22. This counts public submissions to this platform only, so it is a measure of what we have seen rather than of the family's total prevalence.
- What MITRE ATT&CK techniques does Smuggling use?
- Across our Smuggling samples the most frequently observed techniques are T1059.001 (1). Counts are the number of analyzed samples in which each technique was observed.
- What file types does Smuggling use?
- Smuggling samples in this corpus are distributed as script (3), html (2), pe (1).
- Does Smuggling use command-and-control infrastructure?
- Yes. 50 distinct command-and-control indicators have been extracted from Smuggling samples, either from static configuration or from traffic captured during sandbox detonation. The full list is published on the family page.
- Is Smuggling malicious?
- 5 of 6 analyzed Smuggling samples were scored malicious by the fused verdict, which combines multi-engine static scanning, YARA and hash reputation with behavior captured during real sandbox detonation. Each report lists every signal that contributed to its score.
Latest analyzed threats · ATT&CK coverage across the corpus · Threat trends