CoinInsight360.com logo CoinInsight360.com logo
A company that is changing the way the world mines bitcoin

WallStreet Forex Robot 3.0
Crypto Potato 2025-01-25 16:52:15

Fake Ross Ulbricht Accounts Used in New Malware Campaign

Ross Ulbricht, the controversial creator of the Silk Road, has long been at the heart of debates about the intersection of technology and criminal activity. Following a full pardon from US President Donald Trump, a new wave of cybercrime has emerged, leveraging news of Ulbricht’s case to deliver malware to unsuspecting targets. Exploiting the news surrounding him, threat actors on X are redirecting users to a Telegram channel where they are duped into running PowerShell scripts that infect their devices with malware. Ross Ulbricht Malware Campaign According to vx-underground researchers’ latest update , the attack uses a new variation of the popular “Click-Fix” tactic, but with a twist. Rather than disguising itself as a common error fix, this version pretends to be a captcha or verification process required to join the channel. In this case, cybercriminals are impersonating Ulbricht using fake but verified accounts on X to lure users to Telegram channels falsely claimed to be official. Once on Telegram, users encounter a fraudulent “Safeguard” identity verification process, which leads them to a mini app that generates a fake verification dialog and automatically copies a PowerShell command to their clipboard. Users are then instructed to run the command via the Windows Run dialog. As such, executing the command triggers a chain of events. Initially, it downloads a PowerShell script, which retrieves a ZIP file from http://openline[.]cyou. The ZIP file contains several files, including identity-helper.exe, suspected to be a Cobalt Strike loader – a tool frequently used by attackers for remote access and launching ransomware or data theft campaigns. The entire process is carefully worded to avoid detection. Ross Ulbricht Released This development comes after Ulbricht was pardoned and released this week after being imprisoned since 2013 for founding and operating the infamous dark web marketplace Silk Road. Silk Road was an online marketplace on the Tor network that allowed people to trade illegal items, such as narcotics. Ulbricht operated the site using the pseudonym “Dread Pirate Roberts.” The FBI arrested him in October 2013 and took the site offline. In 2015, Ulbricht was found guilty of charges including drug distribution and money laundering. He received a life sentence without parole, and his appeals in 2017 and 2018 were denied. The post Fake Ross Ulbricht Accounts Used in New Malware Campaign appeared first on CryptoPotato .

阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约