• CONTACT
  • MARKETCAP
  • BLOG
Crypto NEWS
  • BOOKMARKS
  • Home
  • Shop
  • Bitcoin
  • Crypto News
  • Altcoin
  • Blockchain
  • Market Trends
  • Legal Docs
    • Contact
    • Privacy Policy
    • Terms and Conditions
    • About CryptoNewsUpdate.com
Reading: Microsoft Uncovers New Crypto-Stealing Malware—Is Your Wallet at Risk?
Share

Crypto NEWS

0
Font ResizerAa
  • Home
  • Shop
  • Bitcoin
  • Crypto News
  • Altcoin
  • Blockchain
  • Market Trends
  • Legal Docs
Search
  • Home
  • Shop
  • Bitcoin
  • Crypto News
  • Altcoin
  • Blockchain
  • Market Trends
  • Legal Docs
    • Contact
    • Privacy Policy
    • Terms and Conditions
    • About CryptoNewsUpdate.com
Have an existing account? Sign In
Follow US
© Crypto NEWS Update. All Rights Reserved.
Crypto NEWS > Blog > Crypto News > Microsoft Uncovers New Crypto-Stealing Malware—Is Your Wallet at Risk?
Crypto News

Microsoft Uncovers New Crypto-Stealing Malware—Is Your Wallet at Risk?

yangzeph4@gmail.com
Last updated: March 19, 2025 5:37 am
yangzeph4@gmail.com Published March 19, 2025
Share
Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

Microsoft has identified a new remote access trojan (RAT) designed to steal cryptocurrency from users by targeting digital wallet extensions on Google Chrome.

The malware, dubbed StilachiRAT, has been under investigation since November 2024, and security experts warn it poses a significant threat to crypto holders.

How StilachiRAT Operates

According to Microsoft’s Incident Response Team, StilachiRAT is capable of extracting credentials stored in the browser, scanning devices for crypto wallet extensions, and intercepting sensitive information such as private keys and passwords.

The malware has been found to specifically target at least 20 cryptocurrency wallets, including Bitget Wallet (formerly BitKeep), Trust Wallet, Coinbase Wallet, MetaMask, TronLink and OKX Wallet. Once deployed, it can steal stored digital assets by accessing clipboard data and extracting private credentials.

Microsoft’s research indicates that StilachiRAT operates stealthily, using various evasion techniques to avoid detection. The malware installs itself through a compromised library file, WWStartupCtrl64.dll, which executes remote commands to manipulate infected systems.

Once active, it scans the device for crypto wallet extensions and extracts saved credentials from Google Chrome’s local state files. A key feature of the malware is its ability to monitor clipboard activity, meaning if users copy and paste crypto wallet addresses or passwords, StilachiRAT can capture and redirect that information to the attacker.

Microsoft also found that the trojan includes anti-forensic capabilities, such as clearing event logs and detecting sandbox environments to avoid being analyzed by cybersecurity researchers.

Microsoft’s Response and Security Recommendations

At present, Microsoft has not attributed the attack to any specific hacker group but has warned that due to the nature of the malware ecosystem, StilachiRAT could evolve rapidly.  In a blog post, the company stated:

Based on Microsoft’s current visibility, the malware does not exhibit widespread distribution at this time. However, due to its stealth capabilities and the rapid changes within the malware ecosystem, we are sharing these findings as part of our ongoing efforts to monitor, analyze, and report on the evolving threat landscape.

Microsoft advises users to take precautionary measures to avoid falling victim to StilachiRAT and similar threats. The company recommends installing antivirus software, enabling cloud-based anti-phishing and anti-malware protection, and ensuring all browser extensions come from trusted sources.

Users should also be cautious when copying and pasting wallet addresses and passwords, as malware like StilachiRAT specifically exploits clipboard data.

With increasing security risks in the crypto space, Microsoft’s warning highlights the importance of staying vigilant against cyber threats. As hackers develop more advanced techniques to compromise digital wallets, investors and everyday users must take proactive steps to secure their assets.

The global crypto market cap value on TradingView
The global digital currency market cap value on the 1-day chart. Source: TradingView.com

Featured image created with DALL-E, Chart from TradingView

Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

You Might Also Like

Bitcoin Bears Take The Wheel — Why $94,000 May Be The Next Critical Zone

$96,000 Or $144,000? Bitcoin Mayer Multiple Chart Present Price Target Options

A Double-Edged Sword For The Market – Here’s Why

$312M ETH Transfer Triggers Sell-Off Fears As Ethereum Price Crashes Below Support

Dogecoin Falls Below $0.16: Here’s How Its Price Action Could Play Out

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.

By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Copy Link Print
Previous Article Raydium unveils LaunchLab, Pump.fun’s fork, RAY soars 28%
Next Article The Digital Revolution in Property Deal Management
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Follow US

Find US on Socials

Subscribe to our newslettern

Get Newest Articles Instantly!

Popular News
Bitcoin Bears Take The Wheel — Why $94,000 May Be The Next Critical Zone
Blocktech Brew Join Hands With Qila To Promote Web3 Services Across Industries!
$150M money market funds added to Arbitrum’s RWA ecosystem

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Crypto NEWS

We influence 20 million users and is the number one business blockchain and crypto news network on the planet.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad image
© Crypto NEWS Update. All Rights Reserved.
Welcome Back!

Sign in to your account

Lost your password?