UPX malware family
UPX is a malware family tracked by MalwareAnalyzer by Cyble across 18 publicly analyzed samples. First seen 2026-08-09, most recently 2026-08-24. Observed ATT&CK techniques include T1057, T1105, T1112.
Corpus statistics
- Publicly analyzed samples: 18
- First seen: 2026-08-09
- Last seen: 2026-08-24
- Verdicts: malicious 18
- File types: pe 18
ATT&CK techniques used by UPX
Recent UPX samples
- fe7fb3bceefb1d551628179a2f3430d25ab3b9b17739957a0e3212ea6eb12bab - malicious (2026-08-24)
- e8051c7a11cf0de07f0e4a27ff796b111e31ca84595d1216449c89ec9194faab - malicious (2026-08-23)
- 1f75a4a2b26ab22faa34514a18ac9053c46317bda1dc0883019f0398c8b35882 - malicious (2026-08-23)
- e54a96d1bb917a453af9e52bf49ff6fd09794294d391ab7b2c458c36699f46e6 - malicious (2026-08-23)
- 071ef2b18fe76a4f1f685c57393ff07e132c761331018a78dd40a4d59bc4d48c - malicious (2026-08-23)
- 4e00055b3b7f412de28197e6c0ad06331d9162e52909135e4772b6c53d91b6e1 - malicious (2026-08-21)
- f97110e7aae2c97d9a1d83df3e5c409369761bab1543f2a34e444f10e4b720d8 - malicious (2026-08-20)
- b503c190a36b561767a2c82e864fbf979297b69af6cb6149f13c95fa1e7276fa - malicious (2026-08-20)
- b195b45292c51bba3acb42d834e5033b9c4985cff89f071921bf920f133648b4 - malicious (2026-08-19)
- f1b30e1e8224af3dde100c1ec1180c6437681c100f646e33a4ba930beb928dd4 - malicious (2026-08-17)
- 3a4a008f2a8f54387272522e8fcd242e18ace7d37285adba149b1ebc7eddfd5c - malicious (2026-08-16)
- 2d3fe615219613f8658193512fa3ea84571ccf8d05ec8f79eb59c11c7c7c71cb - malicious (2026-08-16)
- c0fdf15da0e4aef98371f262400bc3baa557870ee83b6514ea2bd3fc64ea060e - malicious (2026-08-15)
- 0a2f8f406612a475fe665c13c5dad71b03c98e7486061de8c4e850a6f56fa1e0 - malicious (2026-08-13)
- ba47329a6787cdc7337c5e039183e1bfd83571ea2c5a97f1be6878998b15376b - malicious (2026-08-13)
- 101799fca22dec1c23fe8624f0d12f3500d8666a65f7978644c6929b2b8b7259 - malicious (2026-08-12)
- ae9f9dc4604d00276503a5baca9bdcf2a5557cea8ff3bba8be7ac57ec44c83e7 - malicious (2026-08-09)
- 543d58e9d93993e0d0d556a464592e5f7b0f95cde2a3325aa9d6699e597b4f62 - malicious (2026-08-09)
Frequently asked about UPX
- What is UPX?
- UPX is a malware family tracked by MalwareAnalyzer by Cyble across 18 publicly analyzed samples. First seen 2026-08-09, most recently 2026-08-24. Observed ATT&CK techniques include T1057, T1105, T1112.
- How many UPX samples have been analyzed?
- MalwareAnalyzer by Cyble holds 18 publicly analyzed samples attributed to UPX, first seen 2026-08-09 and most recently 2026-08-24. This counts public submissions to this platform only, so it is a measure of what we have seen rather than of the family's total prevalence.
- What MITRE ATT&CK techniques does UPX use?
- Across our UPX samples the most frequently observed techniques are T1057 (18), T1105 (10), T1112 (1). Counts are the number of analyzed samples in which each technique was observed.
- What file types does UPX use?
- UPX samples in this corpus are distributed as pe (18).
- Is UPX malicious?
- 18 of 18 analyzed UPX samples were scored malicious by the fused verdict, which combines multi-engine static scanning, YARA and hash reputation with behavior captured during real sandbox detonation. Each report lists every signal that contributed to its score.
Latest analyzed threats · ATT&CK coverage across the corpus · Threat trends