financetom
Cryptocurrency
financetom
/
Cryptocurrency
/
Fake Ross Ulbricht Accounts Used in New Malware Campaign
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Fake Ross Ulbricht Accounts Used in New Malware Campaign
Jan 25, 2025 9:12 AM

Ross Ulbricht, the controversial creator of the Silk Road, has long been at the heart of debates about the intersection of technology and criminal activity. Following a full pardon from US President Donald Trump, a new wave of cybercrime has emerged, leveraging news of Ulbrichts case to deliver malware to unsuspecting targets.

Exploiting the news surrounding him, threat actors on X are redirecting users to a Telegram channel where they are duped into running PowerShell scripts that infect their devices with malware.

Ross Ulbricht Malware Campaign

According to vx-underground researchers latest update, the attack uses a new variation of the popular Click-Fix tactic, but with a twist. Rather than disguising itself as a common error fix, this version pretends to be a captcha or verification process required to join the channel.

In this case, cybercriminals are impersonating Ulbricht using fake but verified accounts on X to lure users to Telegram channels falsely claimed to be official. Once on Telegram, users encounter a fraudulent Safeguard identity verification process, which leads them to a mini app that generates a fake verification dialog and automatically copies a PowerShell command to their clipboard.

Users are then instructed to run the command via the Windows Run dialog. As such, executing the command triggers a chain of events. Initially, it downloads a PowerShell script, which retrieves a ZIP file from http://openline[.]cyou. The ZIP file contains several files, including identity-helper.exe, suspected to be a Cobalt Strike loader a tool frequently used by attackers for remote access and launching ransomware or data theft campaigns.

The entire process is carefully worded to avoid detection.

Ross Ulbricht Released

This development comes after Ulbricht was pardoned and released this week after being imprisoned since 2013 for founding and operating the infamous dark web marketplace Silk Road.

Silk Road was an online marketplace on the Tor network that allowed people to trade illegal items, such as narcotics. Ulbricht operated the site using the pseudonym Dread Pirate Roberts. The FBI arrested him in October 2013 and took the site offline.

In 2015, Ulbricht was found guilty of charges including drug distribution and money laundering. He received a life sentence without parole, and his appeals in 2017 and 2018 were denied.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Could Ethereum be Primed For a Massive Short Squeeze?
Could Ethereum be Primed For a Massive Short Squeeze?
Feb 10, 2025
Short positions on ETH have increased dramatically by about 40% in one week and 500% since November, resulting in record levels. “Never in history have Wall Street hedge funds been so short of Ethereum, and its not even close,” exclaimed the Kobeissi Letter on Feb. 10. The effects of this “extreme positioning” were seen earlier this month when crypto markets...
4 Things That Could Impact Crypto Markets in Volatile Week Ahead
4 Things That Could Impact Crypto Markets in Volatile Week Ahead
Feb 9, 2025
Another volatile week is in store with two big inflation reports due alongside retail sales data. Last week’s mixed recent economic reports still reflect a robust economy and elevated inflation, supporting the case for the Federal Reserve to remain on hold with rate cuts for now. “Meanwhile, ongoing trade war headlines will carry over from last weeks volatility,” commented the...
Litecoin Takes the Spotlight While Bitcoin Defends $95K (Market Watch)
Litecoin Takes the Spotlight While Bitcoin Defends $95K (Market Watch)
Feb 10, 2025
Bitcoins price slipped below $95,000 for the first time in about a week, but the bulls managed to defend that level, and the asset jumped to as high as $98,000 a few hours later. Most altcoins have had mixed performances over the past day, with BNB retracing hard while SUI is heading north. Litecoin has stolen the show. BTC Defends...
Pi Network (PI) News Recap Feb 10th
Pi Network (PI) News Recap Feb 10th
Feb 10, 2025
TL;DR Pi Network postponed its KYC and migration deadline to February 28, 2025, with the Open Network expected in Q1 this year. Despite the constant delays, the project sees rising interest, with recent community gatherings in India, Nigeria, and China. Whats New? Instead of launching its long-awaited native token and open mainnet, Pi Network the cryptocurrency project that claims to...
Copyright 2023-2026 - www.financetom.com All Rights Reserved