KryptoCibule: The Cryptostealing Malware

ESET antivirus researchers have announced the discovery of an unknown trojan malware family that spreads through malicious torrents and uses multiple methods to extract as many cryptocurrencies from its victims as possible while remaining undetected.

- Advertisement -

ESET named the threat KryptoCibule and, according to its telemetry, the malware appears to target mainly users in the Czech Republic and Slovakia.

Triple Threat

This malware poses a triple threat to cryptocurrencies. It uses the victim’s resources to mine currencies, attempts to infiltrate transactions by replacing wallet addresses on the clipboard, extracts files related to cryptocurrencies, and develops multiple techniques to remain undetected. KryptoCibule makes extensive use of the Tor network and BitTorrent protocol in its communication infrastructure.

How KryptoCibule malware works
How KryptoCibule works. Source: WeLiveSecurity

ESET has identified many versions of KryptoCibule, allowing them to study its evolution from December 2018 to the present day. The malware remains active, new features were added during its lifetime and is under constant development.

Victims Located in Czech Republic and Slovakia

Most of the victims are located in the Czech Republic and Slovakia, and this reflects the user base of the site where the infected torrents are located. Almost all malicious torrents were available on uloz.to, a popular file-sharing site in both countries.

In addition, KryptoCibule specifically checks for the presence of ESET, Avast and AVG security products.

More technical details about KryptoCibule can be read in the relevant blogpost on WeLiveSecurity.

Previous Articles:

- Advertisement -

Latest

US-UK Trade Deal Sets New Terms While Maintaining Base Tariffs

The US-UK trade deal maintains 10% base tariffs but eliminates 25% steel and aluminum tariffs, creating a free trade zone for these metals.British car...

Steak ‘n Shake to Accept Bitcoin at All US Locations Starting May 16

Steak ‘n Shake will start accepting Bitcoin as payment at all U.S. locations beginning May 16. The move marks one of the first...

Illinois Senate Advances Bill to Regulate Crypto Kiosks Statewide

Illinois lawmakers are advancing a bill to regulate operators of virtual currency kiosks. The proposed law would put these kiosks under the authority of the...

Bitcoin Tops $104,000 as Bullish Index, Trade Deal Boost Sentiment

Bitcoin surpassed $104,000, marking its highest price since January and reflecting strong bullish sentiment.Recent rallies were fueled by an optimistic Bitcoin sentiment index, a...

SEC Commissioner Slams Ripple Settlement, Cites Investor Risk

SEC and Ripple have asked a New York court to dissolve an injunction and return $75 million of penalties held in escrow.SEC Commissioner Caroline...

Must Read

5 Best Crypto Jobs Sites To Land Your Next Six Figure Job

The cryptocurrency and blockchain job market has exploded. With new blockchain start-ups and projects being founded at a blistering pace, the demand for workers...