Get 40% Off
🚨 Volatile Markets? Find Hidden Gems for Serious Outperformance
Find Stocks Now

Alert: This Malware Steals Your Crypto Via 'Free Bitcoin Mining' Links On YouTube

Published 06/07/2022, 09:37
Updated 06/07/2022, 10:10
© Reuters.  Alert: This Malware Steals Your Crypto Via 'Free Bitcoin Mining' Links On YouTube

A new type of crypto-malware identified on Alphabet (NASDAQ:GOOGL) Inc-owned (NASDAQ: GOOG) (NASDAQ: GOOGL) Google's YouTube has been found to infect users' devices and steal from 30 different types of cryptocurrency wallets and browsers.

What Happened: According to a recent report from cyber intelligence firm Cyble Research Labs, the newly developed cryptocurrency stealer named “PennyWise” uses multithreading to steal user data.

The threat actors (TA) reportedly spread the PennyWise stealer as a link to download free Bitcoin (CRYPTO: BTC) mining software.

See Also: Axie Infinity's Ronin Bridge Restarts Following $625 Million Exploit, Providing Compensation To Victims Of The Hack

“When a user visits the link, the TA instructs them to download the malware hosted on the file hosting service. The malware file is zipped and password protected. To appear legitimate, the TA has shared a VirusTotal link of a clean file that is not related to the file available for download,” explained the Cyble researchers.

The malware targets a host of cold crypto wallets, including Ethereum (CRYPTO: ETH) and Zcash (CRYPTO: ZEC) wallets. One feature that stands out in the malware’s design is that it will stop in its tracks if it identifies that the victim is based in Russia, Ukraine, Belarus, or Kazakhstan.

“This could indicate that the TA is trying to avoid scrutiny by Law Enforcement Agencies in these particular countries,” stated the researchers.

So far, reports that there are over 80 videos on the threat actor’s YouTube channel that appear to have been created for the purpose of mass infection.

3rd party Ad. Not an offer or recommendation by Investing.com. See disclosure here or remove ads .

Last month, cybercriminals targeted followers of Elon Musk with deepfake videos impersonating the Tesla Inc (NASDAQ: TSLA) CEO. Users were encouraged to connect their crypto wallets to an illicit website and deposit Bitcoin.

Read Next: Crypto Lender Voyager Files For Chapter 11 Bankruptcy Protection

Photo via JLStock on Shutterstock

© 2022 Benzinga.com. Benzinga does not provide investment advice. All rights reserved.

Read the original article on Benzinga

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.