BTC $57054.0562
ETH $3243.0497
BNB $394.9600
SOL $108.4177
XRP $0.5865
stETH $3239.3493
ADA $0.6239
AVAX $39.2702
DOGE $0.0977
TRX $0.1428
wstETH $3750.7519
DOT $8.3691
LINK $19.0300
WETH $3348.6813
MATIC $1.0282
UNI $10.8579
WBTC $56903.9273
IMX $3.3452
ICP $13.0217
BCH $292.5040
LTC $74.0124
CAKE $3.1570
ETC $28.0992
LEO $4.3640
FIL $7.6578
KAS $0.1689
RNDR $7.2011
DAI $1.0000
ATOM $11.2097
HBAR $0.1082
INJ $40.1071
VET $0.0489
TON $2.1280
OKB $51.4855
FDUSD $0.9985
LDO $3.4670
STX $2.9465
XMR $135.8398
XLM $0.1230
ARB $1.8948
NEAR $3.9608
TIA $17.0031
WEMIX $2.3756
GRT $0.2795
ENS $22.1963
MKR $2154.9330
APEX $2.3329
BTC $57054.0562
ETH $3243.0497
BNB $394.9600
SOL $108.4177
XRP $0.5865
stETH $3239.3493
ADA $0.6239
AVAX $39.2702
DOGE $0.0977
TRX $0.1428
wstETH $3750.7519
DOT $8.3691
LINK $19.0300
WETH $3348.6813
MATIC $1.0282
UNI $10.8579
WBTC $56903.9273
IMX $3.3452
ICP $13.0217
BCH $292.5040
LTC $74.0124
CAKE $3.1570
ETC $28.0992
LEO $4.3640
FIL $7.6578
KAS $0.1689
RNDR $7.2011
DAI $1.0000
ATOM $11.2097
HBAR $0.1082
INJ $40.1071
VET $0.0489
TON $2.1280
OKB $51.4855
FDUSD $0.9985
LDO $3.4670
STX $2.9465
XMR $135.8398
XLM $0.1230
ARB $1.8948
NEAR $3.9608
TIA $17.0031
WEMIX $2.3756
GRT $0.2795
ENS $22.1963
MKR $2154.9330
APEX $2.3329
  • Catalog
  • Blog
  • Tor Relay
  • Jabber
  • One-Time notes
  • Temp Email
  • What is TOR?
  • We are in tor
  • New LOBSHOT cryptocurrency thief targets Google users

    Elastic Security Labs reports that in recent months there has been an increase in Google ads being misused to distribute a new malware called "LOBSHOT". Based on the analysis, the experts attributed the campaign to the TA505 malware group associated with Dridex, Locky and Necurs malware.

    The detected campaign is aimed at users who search Google for links to download various programs. In one case, a malicious ad promoting the AnyDesk application was found in Google search. The landing pages looked very similar to the original website and included a download button for the MSI installer. As soon as the victim pressed the button, the LOBSHOT malware was downloaded to the system and launched without the user's knowledge.

    Experts have suggested that LOBSHOT is designed to steal funds, including cryptocurrencies. The backdoor also has the ability to steal information.

    LOBSHOT is able to steal crypto from 32 Google Chrome wallet extensions, 9 Microsoft Edge wallet extensions, and 11 Mozilla Firefox wallet extensions. One of the main features of LOBSHOT is the use of the Hidden Virtual Network Computing (HVNC) component, which makes it difficult for antivirus solutions to detect.

    The spread of LOBSHOT through malicious ad campaigns indicates that cybercriminals will continue to use this method to expand their attacks. Although this type of malware has not yet expanded its attack surface, it ultimately has features that help attackers act quickly at an early stage, allowing them to take full control of systems remotely.

    Author DeepWeb
    Akira extortion gang attacks corporate networks around the world
    RapperBot botnet combines DDoS and cryptojacking: new versions target IoT devices

    Comments 0

    Add comment