Spoofer V0.2.exe -

It has been observed attempting to inject code into explorer.exe or svchost.exe to mask its activity. Malicious Capabilities

Analysis shows some versions include modules designed to scrape browser cookies and saved passwords (targeting Chrome, Edge, and Discord tokens). spoofer v0.2.exe

This file is commonly distributed via "free cheat" Discord servers or YouTube descriptions, which are unverified and high-risk sources. If you have already run this file, It has been observed attempting to inject code into explorer

Potentially Unwanted Application (PUA) / Trojan / Infostealer spoofer v0.2.exe

Do not execute. If already run, disconnect the machine from the internet and perform a full offline scan.

The executable often attempts to modify HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\IDConfigDB to alter hardware identifiers.