Fun

Fake Zoom malware steals crypto while it’s ‘stuck’ loading, user warns

News Feed - 2024-07-23 12:07:28

Martin Young5 hours agoFake Zoom malware steals crypto while it’s ‘stuck’ loading, user warnsA malicious Zoom look-alike makes it seem like a video conference is stuck in infinite loading, prompting users to install and run even better-disguised malware than before.1052 Total views11 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksCrypto scammers are up to no good again, and their latest weapon appears to be malicious links to a webpage that looks and feels almost exactly like the video conferencing platform Zoom, which prompts users to install malware when clicked.


On July 22, non-fungible token collector and cybersecurity engineer “NFT_Dreww” alerted X users to a new “extremely sophisticated” crypto scam involving fake links for Zoom.Malicious Zoom link. Source: NFT_Dreww


Drew said the scammers have already stolen $300,000 worth of crypto from the method.How the scam works


Like many social engineering scams, Drew explained that scammers typically target non-fungible token (NFT holders or crypto whales, asking if they would be interested in licensing their intellectual property, inviting them to Twitter Spaces, or asking them to join a team for a new project.


The scammers will insist on using Zoom and hurry the target to join a meeting in progress using a hard-to-notice malicious link.Comparing the malicious domain with the genuine one. Source: NFT_Dreww“It"s extremely easy to fall for this... I doubt 80% of people verify each character in a link that"s sent, especially a Zoom link.”


Once the link is clicked, the user will be met with a “stuck” page showing an infinite loading screen. The page will then prompt the user to download and install ZoomInstallerFull.exe, which is actually malware.Screenshot of malware being installed. Source: any.run


Once installed, the page will redirect back to the official Zoom platform, making the user believe it worked, but by then, the malware has already infiltrated the target computer and stolen the data and loot, explained Drew.


According to technologist “Cipher0091,” whom Drew also credits for his X thread, when the malware is first executed, it adds itself to the Windows Defender exclusion list to prevent antivirus systems from blocking it.


“Then it begins executing and extracting all your information while the software is distracting you with the “spinning loading page” and going through the process of accepting T&Cs, etc,” explained Drew.


He added that the scammers will keep changing domain names to prevent them from being flagged, and this was their fifth domain so far for this scam.


Related:Coinbase-posing scammers steal $1.7M from a user amid a string of attacks


Social engineering crypto scams are not new, but they do keep evolving. Several crypto community members have reported receiving malicious emails this week from scammers impersonating other crypto influencers and executives.


The email contains a malicious attachment that will likely install crypto-stealing malware if executed.


Related:Lazarus Group laundered over $200M in hacked crypto since 2020# Twitter# Malware# Video# Scams# NFTAdd reaction

News Feed

Russians Have Invested Over $67 Billion in Cryptocurrency, Lawmaker Reveals
Russians Have Invested Over $67 Billion in Cryptocurrency, Lawmaker Reveals Interest in cryptocurrencies has been growing in Russia, not least among non-qualified investors. Accord
MultiversX and Cornell launch sponsored blockchain education program
Tristan Greene7 hours agoMultiversX and Cornell launch sponsored blockchain education programOnce students complete the course, they’ll be eligible for follow-on mentorship, support and funding.705 Total views6 Total s
Friend​.tech v2 airdrop could introduce nontransferable token
Zoltan Vardai12 hours agoFriend​.tech v2 airdrop could introduce nontransferable tokenMaking the token nontransferable could force users to pay the 1.5% Friend.tech platform fee in an “ironic” shift from the platfo
Abraxas Capital Faces $100M Unrealized Loss On $800M Crypto Short Positions – Details
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Bitcoin, Ethereum Technical Analysis: ETH Finds Temporary Support, After Hitting 3-Week Low
Bitcoin, Ethereum Technical Analysis: ETH Finds Temporary Support, After Hitting 3-Week Low Ethereum found support on Tuesday, following a drop to a three-week low earlier in today
Over 75% of Bitcoin short-term holders in profit as BTC breaches $67K
Zoltan Vardai10 hours agoOver 75% of Bitcoin short-term holders in profit as BTC breaches $67KBitcoin price is finally seeing some relief, but it faces significant resistance at the $68,000 mark, which would trigger over
Bill Miller’s Multibillion-Dollar Hedge Fund to Add Bitcoin Exposure via GBTC
Bill Miller"s Multibillion-Dollar Hedge Fund to Add Bitcoin Exposure via GBTC Billionaire hedge fund manager Bill Miller’s flagship fund will soon be able
Buy Dogecoin Now? Analyst Says This Is the Spot
Este artículo también está disponible en español. Crypto analyst Kevin (known on X as @Kev_Capital_TA) has outlined what he deems a potentially ideal accumulation window
Working Study Says Despite Legal Tender Status, Bitcoin Is Not a Widely Accepted Medium of Exchange in El Salvador
Working Study Says Despite Legal Tender Status, Bitcoin Is Not a Widely Accepted Medium of Exchange in El Salvador According to a working study published by the U.S. National Burea
MetaBlox Concluded the Seed Round, Plans for the Future
MetaBlox Concluded the Seed Round, Plans for the Future press release PRESS RELEASE. Vancouver, Canada – MetaBlox has completed their seed round and have raised over $2 milli
Tether Scoops $1 Billion In Bitcoin, Strengthening $10-B Stockpile
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Savannah Fortis12 hours agoSam Bankman-Fried’s jets are subject to forfeiture, says prosecutionThe U.S. Department of Justice says the two jets purchased by Bankman-Fried via FTX are now property subject to forfeiture