VELETRIX
- First seen
- 2023-06-01 00:00:00
- Malware type
- loader
- Last IoC activity
- 2026-04-24 08:14:53
- Profile updated
- 2026-07-07 15:25:21
Targeted industries: government-and-public-sector
Context
According to Seqrite, VELETRIX as been observed as a loader for VShell.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Veletrix_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Veletrix (report)
- seqrite.com — Operation Dragonclone Chinese Telecom Veletrix Vshell Malware (report)
- 0x0d4y.blog — Veletrix Loader Infection A Look From A Digital Forensic Perspective (report)
- 0x0d4y.blog — Telecommunications Supply Chain China Nexus Threat Technical Analysis Of Veletrix Loaders Strategic Infrastructure Positioning (report)