• About
  • FAQ
  • Contact Us
Newsletter
Crypto News
Advertisement
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
No Result
View All Result
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
No Result
View All Result
Crypto News
No Result
View All Result
Home Analysis

Kaspersky Flags Malware on SourceForge That Tricks Victims Into Sending Attackers Their Crypto

admin by admin
April 25, 2025
in Analysis
0
Kaspersky Flags Malware on SourceForge That Tricks Victims Into Sending Attackers Their Crypto
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter



Cybersecurity firm Kasperky has discovered a malware which tricks victims into sending attackers their crypto by replacing trusted wallet addresses on a users’ clip board.

The malware is being distributed under the guise of Microsoft Office Add-Ins on the SourceForge website.

Related articles

Bitcoin Options Open Interest Spikes to Record High as Traders Target 6K

Bitcoin Options Open Interest Spikes to Record High as Traders Target $116K

May 22, 2025
‘Orgy of Corruption’: Senators Slam Trump Crypto Dinner, Demand Info on Attendees

‘Orgy of Corruption’: Senators Slam Trump Crypto Dinner, Demand Info on Attendees

May 22, 2025

In reality, alternate links are being used to install this malware and infiltrate crypto wallets. The coding appears to be in Russian with an expected 90% of potential victims in Russia, Kaspersky researchers wrote in a post on their SecureList blog.

However, the link does lead to a website written in English for the download—suggesting this could expand far wider than Russia.

Once installed, the malware places ClipBanker on the device, which is a malware that replaces cryptocurrency addresses in the clipboard with the attacker’s own.

Since most crypto wallet users tend to copy and paste addresses, rather than typing them, the address replacement usually goes undetected until the victim’s money is sent somewhere they did not intend.

Kaspersky warns that this could do even more damage.

“The persistence methods are worthy of note as well. Attackers secure access to an infected system through multiple methods, including unconventional ones,” the researchers wrote. “While the attack primarily targets cryptocurrency by deploying a miner and ClipBanker, the attackers could sell system access to more dangerous actors.”

It’s worth noting that SourceForge is a legitimate website for hosting software downloads and that this exploit relies on users being taken to another download link, which is not safe.

A seemingly legitimate link redirects to a page where users are encouraged to download the infected software.

The download appears to be a legitimate 700MB installer, but it’s mostly filled with junk files. The actual malware is just 7MB.

According to the report, some 4,604 Russian users have encountered this scheme between early January and late March alone.

Kaspersky warns: “We advise users against downloading software from untrusted sources. If you are unable to obtain some software from official sources for any reason, remember that seeking alternative download options always carries higher security risks.”

Edited by Stacy Elliott.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.



#Kaspersky #Flags #Malware #SourceForge #Tricks #Victims #Sending #Attackers #Crypto

Tags: 919 blackrock s bitcoin anda complete surprise in late marchAttackersattackers their crypto bybtc past 200k in 2025bulls overcome the barrier the linkchico california clearly employingcloudbet is opening no limitcommunity around the organization s corecongress according to digital asset cryptographycreate a community owned ai protocolcryptocrypto by replacingcrypto walletdevelopment refueling in orbit which likelyFlagsid what is the link betweenin other news blockchainjunk filesKasperskymalwaremint megaeth soperations p p last weekp p kraken sp tsx compositepeople deemed un americanSendingsolana meme coin act i theSourceForgethat replaces cryptocurrency addresses in thethe consumer price index cpi alsothe link does lead to aTricksvictimswallet security tips li liwallet userswith over 13 billion cryptowp caption text two
Share76Tweet47

Related Posts

Bitcoin Options Open Interest Spikes to Record High as Traders Target 6K

Bitcoin Options Open Interest Spikes to Record High as Traders Target $116K

by admin
May 22, 2025
0

In brief Open interest for Bitcoin options most recently stood at an all-time high of around $65 billion. An increase...

‘Orgy of Corruption’: Senators Slam Trump Crypto Dinner, Demand Info on Attendees

‘Orgy of Corruption’: Senators Slam Trump Crypto Dinner, Demand Info on Attendees

by admin
May 22, 2025
0

Congressional Democrats unloaded on President Donald Trump’s plans to dine with top holders of his meme coin this evening, demanding...

BTC hits ATH, InfoFi battle begins, Texas passes BTC bill

BTC hits ATH, InfoFi battle begins, Texas passes BTC bill

by admin
May 22, 2025
0

BTC hits ATH, InfoFi battle begins, Texas passes BTC billBTC hits ATH, InfoFi battle begins, Texas passes BTC bill FOMO...

Bitcoin Pizza Day, 15 Years Later: Here’s How Much Those Pies Are Worth Now

Bitcoin Pizza Day, 15 Years Later: Here’s How Much Those Pies Are Worth Now

by admin
May 22, 2025
0

In brief Today celebrates Bitcoin Pizza Day, when a man spent 10,000 BTC to buy two pizzas in May 2010....

Ethereum, Solana and Dogecoin Jump as Bitcoin Sets Another Record Price

Ethereum, Solana and Dogecoin Jump as Bitcoin Sets Another Record Price

by admin
May 22, 2025
0

Bitcoin keeps rising Thursday, inching up to yet another all-time high mark after beating its four-month-old record on Wednesday. And...

Load More
  • Trending
  • Comments
  • Latest
Bitcoin and Ethereum Stuck in Range, DOGE and XRP Gain

Bitcoin and Ethereum Stuck in Range, DOGE and XRP Gain

April 25, 2025
Saylor says Warren Buffett’s Berkshire Hathaway is Bitcoin of 20th century – Deep Insight

Saylor says Warren Buffett’s Berkshire Hathaway is Bitcoin of 20th century – Deep Insight

May 7, 2025
Amazon CEO on Crypto and NFTs, EPNS to Expand Beyond Ethereum + More News

Amazon CEO on Crypto and NFTs, EPNS to Expand Beyond Ethereum + More News

April 25, 2025
Why DeFi agents need a private brain

Why DeFi agents need a private brain

May 4, 2025
US Commodities Regulator Beefs Up Bitcoin Futures Review

US Commodities Regulator Beefs Up Bitcoin Futures Review

0
Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

0
India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

0
Bitcoin’s Main Rival Ethereum Hits A Fresh Record High: 5.55

Bitcoin’s Main Rival Ethereum Hits A Fresh Record High: $425.55

0
US tourist drugged by fake Uber driver and robbed of 3K BTC — Report

US tourist drugged by fake Uber driver and robbed of $123K BTC — Report

May 22, 2025
Bitcoin Options Open Interest Spikes to Record High as Traders Target 6K

Bitcoin Options Open Interest Spikes to Record High as Traders Target $116K

May 22, 2025
Centrifuge Expands Tokenized Assets to Solana Starting With 0M Treasury Fund

Centrifuge Expands Tokenized Assets to Solana Starting With $400M Treasury Fund

May 22, 2025
Active DeFi loans hit all-time high at .7B as TVL nears pre-tariff levels

Active DeFi loans hit all-time high at $23.7B as TVL nears pre-tariff levels

May 22, 2025
  • About
  • FAQ
  • Contact Us
Call us: +1 23456 JEG THEME

© 2025 Btc04.com

No Result
View All Result
  • Home
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
  • Contact Us

© 2025 Btc04.com