Bitcoin Forum
April 04, 2026, 05:03:42 PM *
News: Latest Bitcoin Core release: 30.2 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: [PSA]: New PS1Bot malware target a lot of cryptocurrency wallets  (Read 246 times)
alegotardo
Legendary
*
Offline Offline

Activity: 3108
Merit: 1663


☢️ alegotardo™


View Profile WWW
August 17, 2025, 02:35:45 PM
 #21

Cyber security researchers have unraveled a new malware framework known as PS1Bot.

What's dangerous about it is that it is a multi-stage malware, and it's capability for information theft, keylogging, reconnaissance, and the establishment of persistent system access.

~~~


Wow, this PS1Bot has been active since the beginning of this year, and I'd never heard about it!
From what I've seen, its operates almost entirely in memory without leaving much evidence of contamination with traces in hard drive. This makes it much harder for the most traditional antivirus programs detectd it.

But whats most frightening about how it operates is that, in addition to its classic e-logging and screenshot capabilities, it can also collect information about the antivirus programs installed on the machine, then "camouflage" itself and adjust your actions to know what to do and what not to avoid detection. Absurd!!!
This isn't something developed by just any hacker, especially since it has received updated and adapted versions to continue hiding as antivirus programs try to create vaccines and protections against it.

As always... the best thing to protect your self by being very cautious about suspicious activity on the web and whenever possible, always use a hardware wallet or even a dedicated device just for handling financial and crypto transactions.

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits PREDICT..
█████████████████████████
█████████████████████████
███████████▀▀░░░░▀▀██████
██████████░░▄████▄░░████
█████████░░████████░░████
█████████░░████████░░████
█████████▄▀██████▀▄████
████████▀▀░░░▀▀▀▀░░▄█████
██████▀░░░░██▄▄▄▄████████
████▀░░░░▄███████████████
█████▄▄█████████████████
█████████████████████████
█████████████████████████
.
.WHERE EVERYTHING IS A MARKET..
█████
██
██







██
██
██████
Will Bitcoin hit $200,000
before January 1st 2027?

    No @1.15         Yes @6.00    
█████
██
██







██
██
██████

  CHECK MORE > 
Alphakilo
Sr. Member
****
Offline Offline

Activity: 1036
Merit: 314


⭐ Razed.com ⭐ The Best Crypto Casino


View Profile
August 22, 2025, 07:22:38 PM
 #22

The point of delivery of this malware is thru a malvertising or search engine optimization (SEO) poisoning in a zip file. Once you download this zip and extract, it contains a Javascript payload. This payload is going to get a script from another server and then write to a file on your local machine and execute it.
I am right now as I am reading this thinking to myself that since most of the malware require the user to make a download, and that we may not be too sure of the download even if it is from a reputable site. Is there any invention to download it but not directly to your machine and test it out for malwares between your machine and the download site before proceeding to installation?

I would love to see this happen as it would reduce these attacks.


RAZED | 100%  
WELCOME
BONUS
█████████████████████
█████████████████████████
████████████▀░░░░▀███████
██████████▀░░▄▀▀▄░░▀█████
██████████▄▄██▄▄██▄░▀████
█████▀░░░░░░░▀██░░█░░████
████░░████▀▀█░░██▀░░▄████
████░░████▄▄█░░█░░▄██████
████░░█▀▀████░░██████████
████░░█▄▄███▀░░██████████
█████▄░░░░░░░▄███████████
█████████████████████████
█████████████████████
█████████████████████
█████████████████████████
██████████▀▀░░░░░▀▀██████
████████▀░░▄▄█░░▀▄░░█████
██████▀░░▄█████▄░░▀░░████
█████░░▄████▄▀░░█▄▄░░████
████░░▄███▄▀░░▄▀██▀░░████
████░░▀▀██░░▄▀███▀░░█████
████░░▄░░▀█████▀░░▄██████
█████░░▀▄░░█▀▀░░▄████████
██████▄▄░░░░░▄▄██████████
█████████████████████████
█████████████████████
|
NO
KYC
██████████████████
 RAZE THE LIMITS   PLAY NOW
██████████████████
Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!