New user data theft virus Meduza Stealer exposure
CTOnews.com July 6 news, the network security company uptycs recently released a report, found very complex, used to steal user data of Meduza Stealer malware.
Meduza Stealer monitors user activity on the Internet and extracts a large amount of data related to browsers.
Meduza Stealer hijacks browser-extended data such as cryptocurrency wallets, password managers, and two-factor authentication tools.
Meduza Stealer has a strong anti-tracking, anti-detection mode, after disconnecting from the attacker's server, it will stop working; if it is scanned in CIS and Turkmenistan, it will start the self-destruct mechanism.
During operation, the virus intercepts browser data, collects information from the Windows system registry, and even sends a list of games installed on the victim's computer to the control server.
The developers of the software also take into account the convenience of malware management: the web interface displays information collected by Meduza on the victim's computer, as well as tools for downloading or deleting the data.
Meduza Stealer is being sold secretly online, with a subscription price of $199per month (CTOnews.com Note: currently about 1443 yuan) and an one-time buyout price of $1199 (currently about 8693 yuan).