Skip to content

Crypto Wallets Hijacked by USB Malware

New Malware Targets Crypto Wallets and Spreads via USB Drives

  • The malware monitors the Windows clipboard every 500 milliseconds for crypto wallet seed phrases and private keys.
  • Captured data is sent to an attacker’s server via the Tor network, along with five screenshots taken ten seconds apart.
  • If a user copies a recipient address, the malware replaces it with an attacker-controlled address before pasting.
  • The worm spreads by infecting clean USB drives, replacing ordinary files with shortcut files that lead to infection.
  • Microsoft recommends disabling AutoRun for removable media and blocking .lnk file execution on USB drives to mitigate risks.

This malware poses significant risks to users by hijacking sensitive information related to Bitcoin and Ethereum wallets, making it crucial for users to adopt recommended security measures.

With its ability to replace recipient addresses silently, this malware can facilitate unauthorized transfers without user awareness, highlighting the importance of vigilance in cryptocurrency transactions. (Source)

Share