Post
Topic
Board Announcements (Altcoins)
Re: [ANN] KARLSEN (KLS) - GPU PoW - a fork of kaspa with kheavyhash ASIC restistance
by
TCLL
on 23/11/2023, 17:26:23 UTC
Whats that kind of shit ?

Looks like a Fake Ann with just an cheap Website and the files from Github not looking good.
The User Account just registered today.

Code:
Matches rule CoViper Malware by Ariel Millahuel at SOC Prime Threat Detection Marketplace
CoViper is a Wiper that appears during the COVID-19 situation

Processes created
C:\Users\user\AppData\Local\Temp\g1405dva.5td\genkeypair.exe
C:\Windows\SysWOW64\cmd.exe cmd.exe" /C "C:\Users\user\AppData\Local\Temp\g1405dva.5td\genkeypair.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

Registry keys opened
HKEY_CURRENT_USER\Control Panel\International
HKEY_CURRENT_USER\Software\Microsoft\.NETFramework
HKEY_CURRENT_USER\Software\Microsoft\Fusion
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders

Watch out when you downloading from that github , possible Malware !

You have to verify your discord account using the "/verify" command in the #welcome channel. This will give you the Member role. It's just anti-spam protection like in most discord servers...
Also this Account after 1 year not writing anything writes something.
Looks all a bit suspicious


I don't know who you are to make such accusations but I'm just not very active in here... Most of the time I'm not even logged in when checking the posts here.

I have been using the wallet and node for days now and my computer is fine. If you are too paranoid of malware, just a VM.

Kind Regards