Author

Topic: Vertcoin pumping malware (Read 236 times)

newbie
Activity: 13
Merit: 0
October 29, 2017, 10:18:35 AM
#1
On THE official GitHub repository for the Vertcoin electrum wallet what do we find you may ask? Cheesy

V2.9.3.3 [RELEASE] SIGNED
electrum-vtc-2.9.3.3-windows.exe
SHA256 : 65629cf7daf15beb8042e020c1eed8640c7436016887011693df80a5f8e1e2ce


https://www.virustotal.com/#/file/65629cf7daf15beb8042e020c1eed8640c7436016887011693df80a5f8e1e2ce/detection
Win32.Trojan.WisdomEyes

Windows defender is also deleting this file. (you can download it and see for yourself)
Obviously I thought this was initially a false positive but after windows defender ( a reputable AV) starting to lock and delete the file I knew something was up, I will disassemble the exe myself and keep you posted
Jump to: