Post
Topic
Board Meta
Merits 2 from 2 users
Re: Report Malware and Suspicious Links here so Mods can take Action !
by
Lafu
on 01/12/2024, 17:29:47 UTC
⭐ Merited by N.O (1) ,mole0815 (1)
And again he have an Fake Ann Thread with an Fake Website Link where you can download a Malware Wallet File for Viltracoin (VLC) !

Fake Webpage :
Code:
https://viltrac.com/

Fake Github : github.com/viltra-network

Fake Wallet download on the Webpage :
Code:
https://download.viltrac.com/files/viltracoin-qt.zip

If you download that Wallet and install and start it a lot of things will be happen:

Files that will be droped
Code:
StartupProfileData-Interactive
powershell.exe.log
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\RegAsm.exe.log
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tempup.url
C:\Users\user\Documents\20241201\PowerShell_transcript.783875.VpVKuWe3.20241201085041.txt

On top of that its full of Malware and Trojan shit:
Code:
Zenbox flags this file as: MALWARE TROJAN EVADER RAT

Drops script at startup location
Bad Opsec Defaults Sacrificial Processes With Improper Arguments
Dot net compiler compiles file from suspicious location
Suspicious DNS Query for IP Lookup Service APIs
PowerShell Script Run in AppData
Startup Folder File Write

ET MALWARE Observed Malicious SSL Cert (Quasar CnC)
ET MALWARE Generic AsyncRAT Style SSL Cert
ET INFO External IP Lookup Domain in DNS Lookup
SURICATA STREAM excessive retransmissions

A Variant Of Generik.USQOLA
Win64:Evo-gen [Trj]
Source : https://www.virustotal.com/gui/file/0c904ce53aeca5d0e078e752c24dc3bed47b74d22f9158b6b4fb56d55c178ae0/detection

Account : Sventreste  <--- Please ban or Lock that Account and delete the Thread
This user recently woke up from a long period of inactivity.
This Account is Registered since October 04, 2021, Hacked or sold Account

Fake Ann Thread :  [ANN] Viltracoin (VLC): Redefining Decentralized Finance!

Viltracoin (VLC)
Code:
[b]Website:[/b] https://viltrac.com
[b]Github:[/b] https://github.com/viltra-network/viltracoin

This post is also a reference for the Github Report !