BTC $57054.0562
ETH $3243.0497
BNB $394.9600
SOL $108.4177
XRP $0.5865
stETH $3239.3493
ADA $0.6239
AVAX $39.2702
DOGE $0.0977
TRX $0.1428
wstETH $3750.7519
DOT $8.3691
LINK $19.0300
WETH $3348.6813
MATIC $1.0282
UNI $10.8579
WBTC $56903.9273
IMX $3.3452
ICP $13.0217
BCH $292.5040
LTC $74.0124
CAKE $3.1570
ETC $28.0992
LEO $4.3640
FIL $7.6578
KAS $0.1689
RNDR $7.2011
DAI $1.0000
ATOM $11.2097
HBAR $0.1082
INJ $40.1071
VET $0.0489
TON $2.1280
OKB $51.4855
FDUSD $0.9985
LDO $3.4670
STX $2.9465
XMR $135.8398
XLM $0.1230
ARB $1.8948
NEAR $3.9608
TIA $17.0031
WEMIX $2.3756
GRT $0.2795
ENS $22.1963
MKR $2154.9330
APEX $2.3329
BTC $57054.0562
ETH $3243.0497
BNB $394.9600
SOL $108.4177
XRP $0.5865
stETH $3239.3493
ADA $0.6239
AVAX $39.2702
DOGE $0.0977
TRX $0.1428
wstETH $3750.7519
DOT $8.3691
LINK $19.0300
WETH $3348.6813
MATIC $1.0282
UNI $10.8579
WBTC $56903.9273
IMX $3.3452
ICP $13.0217
BCH $292.5040
LTC $74.0124
CAKE $3.1570
ETC $28.0992
LEO $4.3640
FIL $7.6578
KAS $0.1689
RNDR $7.2011
DAI $1.0000
ATOM $11.2097
HBAR $0.1082
INJ $40.1071
VET $0.0489
TON $2.1280
OKB $51.4855
FDUSD $0.9985
LDO $3.4670
STX $2.9465
XMR $135.8398
XLM $0.1230
ARB $1.8948
NEAR $3.9608
TIA $17.0031
WEMIX $2.3756
GRT $0.2795
ENS $22.1963
MKR $2154.9330
APEX $2.3329
  • Catalog
  • Blog
  • Tor Relay
  • Jabber
  • One-Time notes
  • Temp Email
  • What is TOR?
  • We are in tor
  • ViperSoftX malware is back after two years of hibernation


    According to the latest reports from Avast, since the beginning of 2022, attacks using a malicious extension for the Google Chrome browser called "VenomSoftX", which steals the contents of the clipboard, have become more frequent. As the experts found out, this addon is part of the ViperSoftX JavaScript Trojan, which steals passwords and cryptocurrency.

    It is known that ViperSoftX has been quietly existing since 2020, because the Trojan was previously reported by researchers from Cerberus and Colin Cowie. In addition, a separate report from Fortinet was dedicated to him.

    And in a new report by Avast Threat Labs, experts revealed additional details about the functionality of the malware and the VenomSoftX extension. In addition, the report states that since the beginning of 2022, Avast specialists have detected and stopped about 93,000 ViperSoftX infection attempts. The main part of the infected users was in the USA, Italy, India and Brazil.

    ViperSoftX's main distribution channel is cracked torrent files for games and paid software activators. The attackers' crypto wallet addresses are hard-coded in the ViperSoftX and VenomSoftX samples. In total, there were two such wallets, at the time of November 8, 2022, they stored 130 thousand dollars. The key feature of ViperSoftX is the installation of the VenomSoftX addon for Chrome, Brave, Edge and Opera browsers. The extension masquerades as the supposedly useful application "Google Sheets 2.1".

    VenomSoftX is known to be able to modify the HTML code on websites and redirect cryptocurrency transactions to the wallets of malware operators. In addition to the currency itself, the Trojan can easily steal user passwords. In addition, the extension is capable of intercepting API requests to crypto services in order to collect information about the victim's assets.


    Author DeepWeb
    Crypto exchange Genesis may file for bankruptcy
    How to reduce harm and negative consequences after using amphetamine

    Comments 0

    Add comment