Feb 18, 2023

Malicious Crypto Campaign Targets Investors

In December 2022, two malicious computer programs were identified by the threat intelligence research team, Cisco Talos, as actively targeting crypto investors in a desktop environment. Dubbed MortalKombat ransomware and Laplas Clipper malware, the malicious software work in partnership to steal cryptocurrencies from unwary investors.

The campaign’s victims were predominantly located in the United States, with a smaller percentage of victims in the United Kingdom, Turkey and the Philippines. The attack relies on the user’s inattentiveness to the sender’s wallet address, which would send the cryptocurrencies to the unidentified attacker.

Once infected, the MortalKombat ransomware encrypts the user’s files and drops a ransom note with payment instructions. The malicious software is propagated by unknown sources and reaches an attacker-controlled server via IP address 193[.]169[.]255[.]78, based in Poland, to download the MortalKombat ransomware.

The attack begins with a cryptocurrency-themed email containing a malicious attachment which, when opened, runs a BAT file that helps download and execute the ransomware.

Fortunately, investors can proactively prevent this attack from impacting their financial well-being. Cointelegraph advises investors to perform extensive due diligence before investing, while ensuring the official source of communications. Additionally, investors should check out this Cointelegraph Magazine article to learn how to keep crypto assets safe.

Despite the malicious campaign, ransomware revenues for attackers plummeted 40% to $456.8 million in 2022. However, this does not necessarily mean the number of attacks is down from the previous year.

Disclaimer: All investment or financial opinions expressed by MoonLanding Media are not recommendations and are intended for entertainment purposes only. Do your own research prior to making any kind of investment. This article has been generated based on trending topics, has not been fact checked and may contain incorrect information. Please verify all information before relying on it.