Scammers pretend to be popular Bitcoin ”profit” system to distribute malware

Cyber criminals are posing as the well-known Bitcoin trading platform, BTC ERA, with the aim of infecting its users with malware.

A security firm found that hackers were sending emails purportedly from BTC Era, encouraging Bitcoin users to give money for an alleged investment.

- Advertisement -

The automated email is addressed to the recipient by name and says a Bitcoin transaction has been approved, requiring a minimum deposit of $250 to start.

The message includes a hidden URL with text that says “create an account” and once this link is clicked, multiple redirects are made and the user is eventually directed to the theverifycheck.com. Once the user arrives on the page, a pop-up appears that asks permission to display notifications from the site.

If the user clicks to allow notifications, he or she gives permission to run an Adware on his device. Users don’t understand anything, but the site allows you to track their activities and show ads and spam.

Abnormal Security added that the scammers used email marketing provider Constant Contact, which allowed them to hand over malicious emails to multiple recipients at the same time.

- Advertisement -

Ken Liao, chief executive of Abnormal Security, said: “We have seen that in recent months the weekly volume of attacks posing as Bitcoin platforms have remained relatively stable. But we have seen an increased proportion of these impersonations between the end of March and the beginning of May.”

He added: “We would advise organisations and their employees to check senders and email addresses well to ensure they come from legitimate sources. Don’t just trust the name it looks like. In addition, we recommend that everyone always check the URL of the Web page before logging in. Hackers often hide malicious links or host them on separate sites that you can reach with secure links. This allows them to bypass the link scanning offered by traditional email security solutions. If the URL looks suspicious, don’t put your credentials on and always verify with the IT part of your organization.”

Previous Articles:

- Advertisement -

Latest News

Crypto.com Launches OG Prediction Markets Amid Regulatory Pushback

crypto.com launched a new standalone prediction markets platform named OG, which will offer CFTC-regulated...

Shiba Inu, Dogecoin Lose $5 Billion as Traders Flee to Altcoins

Shiba Inu and Dogecoin have collectively lost $5 billion in market capitalization in 2026.Major...

Shady Crypto Projects Use Press Wires to Buy Fake News Legitimacy

Over 60% of analyzed crypto press releases came from dubious projects with red flags...

Microsoft Warns of macOS Infostealer Attacks Via Fake Ads

Microsoft warned in February 2026 that information-stealing malware is aggressively targeting macOS systems through...

XRP’s 56% Price Plunge Sparks ‘Best Time to Buy’ Debate

Ripple's XRP hit a seven-year all-time high of $3.65 in July 2025 following its...
- Advertisement -

Must Read

How to Set Up a Simple Bitcoin Tip Jar for Your Site or Stream

QUICK LINKSWhat a tip jar is, in plain wordsWhat you needBuild a payment link that just worksAdd a QR code that actually scansWhere to...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!