• Contact Us
  • About Us
Thursday, June 19, 2025
  • Login
MetroBusinessNews
  • Home
  • Economy
  • Politics
  • News
  • Companies and Markets
  • Energy
  • Sports
  • Real Estate
No Result
View All Result
  • Home
  • Economy
  • Politics
  • News
  • Companies and Markets
  • Energy
  • Sports
  • Real Estate
No Result
View All Result
MetroBusinessNews
No Result
View All Result
ADVERTISEMENT
Home Technology

Microsoft Warns Crypto Users Of StilachiRat Malware

metro by metro
March 18, 2025
in Technology
0
Microsoft Warns Crypto Users Of StilachiRat Malware
0
SHARES
0
VIEWS

 

 

Read Also

Russia’s Putin Calls For Quick Development Of Drone Forces

Five new creators go all-in with Sportsbet.io

SAP experts, partners, customers converge in Sun City for SAPHILA 2025

Microsoft has alerted users to a newly identified malware, StilachiRAT.

In an announcement, Microsoft described StilachiRAT as a remote access trojan (RAT) with advanced capabilities to evade detection and steal data.

StilachiRAT targets cryptocurrency wallets and collects sensitive browser information, including data from Google Chrome.

The malware poses significant risks to cryptocurrency users by actively scanning for wallet extensions in Chrome, targeting at least 20 wallets such as MetaMask, Trust Wallet, Phantom, Coinbase, BNB Chain, and Bitget Wallet.

Once it identifies wallet extensions, StilachiRAT extracts credentials and configuration details, enabling attackers to drain funds from victims’ wallets.

StilachiRAT also monitors clipboard activity, searching for cryptocurrency keys or passwords that users may have copied. This makes it a serious security threat for digital asset holders.

The malware grants attackers the ability to execute remote commands, clear logs, and manipulate registry settings to maintain persistent access. It uses anti-forensic techniques, including identifying analysis tools and delaying execution, to bypass security defences.
One of StilachiRAT’s most concerning features is its capability for system reconnaissance. The malware collects detailed information about infected devices, such as operating system data, hardware identifiers, and active applications.
Additionally, it monitors Remote Desktop Protocol sessions, allowing attackers to impersonate users and spread laterally across networks.

READ ALSO:House Of Reps Passes Tax Reform Bills
While the malware is not yet widespread, Microsoft has emphasised the importance of proactive defence. “Malware like StilachiRAT can be installed through multiple vectors; therefore, it is critical to implement security hardening measures to prevent the initial compromise,” the company warned.

StilachiRAT can launch various commands received from the C2 server. These commands include system reboot, log clearing, credential theft, executing applications, and manipulating system windows.

Additionally, it can suspend the system, modify Windows registry values, and enumerate open windows, indicating a versatile command set for both espionage and system manipulation. The C2 server’s command structure assigns specific numbers to what commands it will initiate.

To mitigate risks, Microsoft recommended several measures such as downloading software only from official sources, enabling Microsoft Defender real-time protection, turning on cloud-delivered security, and utilising SmartScreen to block malicious websites.

 

Previous Post

House Of Reps Passes Tax Reform Bills

Next Post

Court Dismisses FCCPC’s Request To Challenge Dangote Refinery’s N100 billion Import License Suit

Related Posts

Putin Takes Oath For Record Fifth Presidential Term
Technology

Russia’s Putin Calls For Quick Development Of Drone Forces

June 13, 2025
English News Releases

Five new creators go all-in with Sportsbet.io

June 3, 2025
English News Releases

SAP experts, partners, customers converge in Sun City for SAPHILA 2025

June 2, 2025
English News Releases

Leading brands showcase SAP-fuelled AI, cloud innovation at Sapphire 2025

May 28, 2025
Next Post
Dangote

Court Dismisses FCCPC’s Request To Challenge Dangote Refinery’s N100 billion Import License Suit

Zenith Bank

Zenith Says Dividend Freeze, Temporary, Exits CBN Forbearance Arrangements By End Of June, 2025

June 18, 2025

Angola to Host ATIDI’s 25th Annual General Meeting as Africa’s Multilateral Insurer Marks 25 years of Impact

June 18, 2025
CBN

CBN’s Forbearance Policy, CRR, LRR May Threaten Banks’ Lending, Proposed $1tn Economy

June 18, 2025
MetroBusinessNews

© 2022 Metro Business News

Navigate Site

  • Contact Us
  • About Us

Follow Us

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Economy
  • Politics
  • News
  • Companies and Markets
  • Energy
  • Sports
  • Real Estate

© 2022 Metro Business News

Go to mobile version