ALERT!!! Evrial Trojan and Trojan.Coinbitclip Malware Info Stealing Trojan Modifies Addresses to Steal Cryptocurrency

in cryptocurrency •  7 years ago 

The security of the Bitcoin is very important, specifically as the amount of bitcoin persistently increases. It is strongly suggest that the leading cryptocurrency is secured against steal and fraud by using tools such as encryption status and registering of transaction on the Blockchain. Yes, there are other digital currency is most likely to steal and fraud not like other currencies. As the price of the certain cryptocurrency like bitcoin increases, the hackers are generating and working susceptible tools to steal bitcoin.

A bitcoin malware called Trojan.Coinbitclip was created. This malware has to take control the infected computer's clipboard and replace the original bitcoin address to different bitcoin address.

Trojan.Coinbitclip is a new type of malware discovered by Symantec on early February. This malware supports with a substantial file of bitcoin address and use the same match when making a transaction.

Virus Details:

Discovered: February 2, 2016
Type: Trojan
Infection Length: Varies
Systems Affected: Windows

Malware Trojans are common and I think most has been affected by this malware. Be careful and scan your devices from time to time to eliminate this Malware.

Yes, I am affected with this malware too. Below is the screenshot of my Original bitcoin address and it changed when I paste it on Notepad.

bitcoin malware.jpg

Malware Trojans are common and I think most has been affected by this malware. Be careful and scan your devices fro time to time to eliminate this Malware. All bitcoin users must be informed of the state of this malware. Be extra careful on sending coins from one bitcoin address to another. Always check the bitcoin address carefully when pasting, check the prefix and suffix of the address prior of sending cryptocurrency

Evrial Trojan Switches Bitcoin Addresses Copied to Windows Clipboard

Evrial's feature is to monitor the clipboard and replace with one used by the stealer or attacker. This allow to deliver the cyrptocurrency payment to another address desired by the attacker. Attacker has the control on the destination of the payment.

When the Evrial Malware recognizes a bitcoin address in the clipboard, the function is to replace the address into the almost "same look" one address under the control of the attacker. The user or sender paste the address not knowing its been modified and then click send. It will be sent to attacker address when the bitcoins are sent.

Password Document can also be stealed by Evrial

Bitoin wallet stored password can also be stealed by Evrial Malware by controlling the destination of bitcoin's wallet.file from the registry key. All the information saved to your stored password will be consolidated into a zip file and send to the hacker web panel.

Always check, recheck and triple check your Bitcoin Addresses before you click the confirm button.

How to protect from Evrial

-Install updated Security Software
-Always scan files when opening and downloading to your computer
-Do not run suspicious .exe file
-Look for misspelled names, morphed logos n cryptic permissions.

Authors get paid when people like you upvote their post.
If you enjoyed what you read here, create your account today and start earning FREE STEEM!
Sort Order:  

These worms are super scary! Thanks for the info. I don't install software often.

Your Post Has Been Featured on @Resteemable!
Feature any Steemit post using resteemit.com!
How It Works:
1. Take Any Steemit URL
2. Erase https://
3. Type re
Get Featured Instantly – Featured Posts are voted every 2.4hrs
Join the Curation Team Here

You got a 10.45% upvote from @bid4joy courtesy of @jimcustodio!

This post has received a 11.94 % upvote from @aksdwi thanks to: @jimcustodio.

You got upvoted from @adriatik bot! Thank you to you for using our service. We really hope this will hope to promote your quality content!

This post has received a 0.05 % upvote from @drotto thanks to: @banjo.