{"id":175304,"date":"2017-02-06T14:53:10","date_gmt":"2017-02-06T19:53:10","guid":{"rendered":"http:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/malware-alert-a-banking-email-that-steals-cryptocurrencies-newsbtc\/"},"modified":"2017-02-06T14:53:10","modified_gmt":"2017-02-06T19:53:10","slug":"malware-alert-a-banking-email-that-steals-cryptocurrencies-newsbtc","status":"publish","type":"post","link":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/cryptocurrency-2\/malware-alert-a-banking-email-that-steals-cryptocurrencies-newsbtc\/","title":{"rendered":"Malware Alert! A Banking Email That Steals Cryptocurrencies &#8230; &#8211; newsBTC"},"content":{"rendered":"<p><p>    The cryptocurrency community is currently under threat! A new    malware is reportedly making rounds on the internet, infecting    computers and stealing cryptocurrency from compromised    machines.  <\/p>\n<p>    The yet to be named malicious software was detected by Cyren, the internet security    company. According to the companys     latest blog, published during the last week of January    2017, the malware disguises itself as an email communication    from reputed banking institutions. These emails appear like    fund transfer notifications, and they are found to originate    from bots in the United States and Singapore. The attachment    contained in these emails are embedded with a versatile    keylogger malware.  <\/p>\n<\/p>\n<p>    The next time somebody receives an email from reputed banking    institutions like Emirates NBD or DBS, they are better off not    knowing what the attachment contains unless of course, they are    sure about its authenticity. If the user ends up clicking on    the malware-containing executable email attachment, the malware    executes itself, creating a filename.vbs file in the Windows    startup directory. Once the file is created, the attachment    deletes itself.  <\/p>\n<p>    Whenever the computer restarts, the saved .vbs file runs a    script, executing the malware. The malware scours the    computers registry for passwords and other sensitive    information. It goes through the installed browsers and email    clients, gathering stored information, usernames, passwords,    browsing history, cache, cookies, etc. At the same time, it    also looks for well-known cryptocurrency wallets on the    computer.  <\/p>\n<p>    Cyrens lists the vulnerable wallets on its blog,  <\/p>\n<p>      Among the wallets it tries to find: Anoncoin, BBQcoin,      Bitcoin, Bytecoin, Craftcoin, Devcoin, Digitalcoin, Fastcoin,      Feathercoin, Florincoin, Freicoin, I0coin, Infinitecoin,      Ixcoin, Junkcoin, Litecoin, Luckycoin, Megacoin, Mincoin,      Namecoin, Phoenixcoin, Primecoin, Quarkcoin, Tagcoin,      Terracoin, Worldcoin, Yacoin, and Zetacoin.    <\/p>\n<p>    The infected machines stay vulnerable for a long time as the    malware creates hooks for mouse and keyboard, logging every    keystroke and mouse movement. Even if the software fails to    find any sensitive data in the cache, it can easily capture    usernames, passwords, etc., as and when it is typed and send it    to the command and control server. This leaves the individuals    accounts vulnerable to hacking.  <\/p>\n<p>    Few     media reports indicate that this particular malware was    reported earlier in 2015 as well. At that time, it was    distributed along with pirated video games. The extensive list    of targeted cryptocurrencies and the convincing appearance of    the email communication makes it much dangerous, capable of    targeting a wider group of audience.  <\/p>\n<p><!-- Auto Generated --><\/p>\n<p>Go here to see the original:<br \/>\n<a target=\"_blank\" href=\"http:\/\/www.newsbtc.com\/2017\/02\/05\/malware-alert-banking-email-steals-cryptocurrencies\/\" title=\"Malware Alert! A Banking Email That Steals Cryptocurrencies ... - newsBTC\">Malware Alert! A Banking Email That Steals Cryptocurrencies ... - newsBTC<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> The cryptocurrency community is currently under threat! A new malware is reportedly making rounds on the internet, infecting computers and stealing cryptocurrency from compromised machines. The yet to be named malicious software was detected by Cyren, the internet security company. According to the companys latest blog, published during the last week of January 2017, the malware disguises itself as an email communication from reputed banking institutions.  <a href=\"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/cryptocurrency-2\/malware-alert-a-banking-email-that-steals-cryptocurrencies-newsbtc\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":7,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[94874],"tags":[],"class_list":["post-175304","post","type-post","status-publish","format-standard","hentry","category-cryptocurrency-2"],"_links":{"self":[{"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/posts\/175304"}],"collection":[{"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/comments?post=175304"}],"version-history":[{"count":0,"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/posts\/175304\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/media?parent=175304"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/categories?post=175304"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.euvolution.com\/prometheism-transhumanism-posthumanism\/wp-json\/wp\/v2\/tags?post=175304"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}