Close Menu
FintechFetch
    FintechFetch
    • Home
    • Fintech
    • Financial Technology
    • Credit Cards
    • Finance
    • Stock Market
    • More
      • Business Startups
      • Blockchain
      • Bitcoin News
      • Cryptocurrency
    FintechFetch
    Home»Bitcoin News»Fake Microsoft Office Extensions Used To Spread Crypto-Stealing Malware, Kaspersky Warns
    Bitcoin News

    Fake Microsoft Office Extensions Used To Spread Crypto-Stealing Malware, Kaspersky Warns

    FintechFetchBy FintechFetchApril 10, 2025No Comments4 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Cybersecurity firm Kaspersky has issued a warning about malicious Microsoft Office extensions being used to spread malware that targets cryptocurrency users.

    The malware, hidden in fake software packages uploaded to SourceForge, is designed to steal funds by altering copied crypto wallet addresses.

    In its April 8 report, Kaspersky’s Anti-Malware Research Team revealed that one malicious listing, called “officepackage.” It appears to contain legitimate Microsoft Office add-ins but is bundled with a program known as ClipBanker.

    EXPLORE: Best New Cryptocurrencies to Invest in 2025

    Clipboard-Hijacking Malware Swaps Crypto Wallet Addresses To Steal Funds

    The malware monitors a user’s clipboard and, if it detects a copied crypto wallet address, replaces it with an address controlled by the attacker.

    “Users of crypto wallets typically copy addresses instead of typing them. If the device is infected with ClipBanker, the victim’s money will end up somewhere entirely unexpected,” Kaspersky’s team stated.

    The malware campaign is designed to mimic legitimate software, complete with a polished page on SourceForge and fake download buttons.

    The malware also collects sensitive data from infected devices—such as IP addresses, countries, and usernames. These are sent to the attackers via Telegram. Some files in the installer are suspiciously small, while others are padded with junk data to appear more convincing.

    Kaspersky also found that the malware avoids detection by checking for existing antivirus software and removing itself if identified. While the malware’s primary function is to steal crypto funds via mining and address swapping, the attackers may also sell access to compromised systems to more dangerous actors.

    The Russian-language interface suggests the malware may be targeting Russian-speaking users specifically. Kaspersky noted that 90% of detected victims were based in Russia, with over 4,600 users affected between January and March 2025.

    ALERT:

    A malware disguised as Microsoft Office add-ins on SourceForge is targeting crypto users with a clipboard-hijacking technique, according to Kaspersky.

    The malware replaces copied crypto wallet addresses with the attacker’s address. $sol $eth #cybercrime pic.twitter.com/p8rLsEbUos

    — Tom Bibiyan 🇺🇸 (@realtombibiyan) April 9, 2025

    The company advises users to download software only from official, trusted sources, warning that pirated or alternative software versions are often used as vehicles for malware. “Attackers keep looking for new ways to make their websites look legit,” Kaspersky noted.

    Other cybersecurity firms are also flagging new malware threats. Threat Fabric recently reported a new malware family targeting Android devices by overlaying fake interfaces to trick users into revealing their crypto wallet seed phrases.

    EXPLORE: 10 Best AI Crypto Coins to Invest in 2025

    Crypto Hacks Top $1.6B In Q1 2025, With Bybit Exploit Driving Bulk Of Losses

    Over $1.63 billion in cryptocurrency was stolen during the first quarter of 2025, with a staggering 92% of the total attributed to the massive Bybit hack in February, according to blockchain security firm PeckShield.

    While January recorded $87 million in losses, February saw an unprecedented surge to $1.53 billion, including additional attacks on Infini, zkLend, and Ionic.

    However, March brought some relief, with hack-related losses dropping sharply to $33 million — a 97% decline from February. Some stolen funds were also recovered, offering a partial reprieve for affected users and platforms.

    DISCOVER: Best Meme Coin ICOs to Invest in April 2025

    Join The 99Bitcoins News Discord Here For The Latest Market Updates

    Key Takeaways

    • Kaspersky warns of malware hidden in fake Microsoft Office add-ins designed to steal crypto by hijacking copied wallet addresses.
    • The malware, dubbed ClipBanker, also collects user data and evades detection by removing itself if antivirus software is found.
    • Over 90% of victims were Russian users, prompting Kaspersky to urge downloads only from official and trusted software sources.

    The post Fake Microsoft Office Extensions Used To Spread Crypto-Stealing Malware, Kaspersky Warns appeared first on 99Bitcoins.





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleWhy is the Pi Network Price Up Today?
    Next Article I Employ 75 People Across 10 Countries — Here Are the 3 Skills That Helped Me Build My Global Team
    FintechFetch
    • Website

    Related Posts

    Bitcoin News

    Is It Finally Time to PUMP? PUMP Price Analysis Shifts Bullish Amid Bitcoin Strength

    August 7, 2025
    Bitcoin News

    Did the SEC Just Back Down on Liquid Staking: SEC Commissioner Shuts Down Staking ETF Hopes

    August 7, 2025
    Bitcoin News

    USDC Drives 3x Surge in Crypto Payrolls Over Past Year

    August 7, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    XRP Must Close Above This Level For Bullish Breakout: Analyst

    March 17, 2025

    XRP Price Rejected at Resistance—Are Bears Taking Control?

    March 27, 2025

    FLOKI and Rice Robotics Launch AI Companion Robot With Token Rewards

    May 1, 2025

    The importance of contingency planning as you age

    February 10, 2025

    Vietnam Lays Groundwork for Digital Asset Regulation, Effective 2026

    June 16, 2025
    Categories
    • Bitcoin News
    • Blockchain
    • Business Startups
    • Credit Cards
    • Cryptocurrency
    • Finance
    • Financial Technology
    • Fintech
    • Stock Market
    Most Popular

    Bitcoin Ignites Intraday Optimism With A Step Past $119,000 Threshold

    July 14, 2025

    BNPL Regulation in Asia Pacific and What It Means for the Industry

    April 4, 2025

    Bitcoin Boom Still In Play? Analyst Predicts Final Leg Up

    April 4, 2025
    Our Picks

    Stablecoin regulation is here – but what comes next for banks?: By Carlos Kazuo Missao

    August 8, 2025

    Skyee Obtains Major Payment Institution (MPI) License from the Monetary Authority of Singapore (MAS)

    August 7, 2025

    OpenAI, ChatGPT Releases ‘Smarter’ New Model: GPT-5

    August 7, 2025
    Categories
    • Bitcoin News
    • Blockchain
    • Business Startups
    • Credit Cards
    • Cryptocurrency
    • Finance
    • Financial Technology
    • Fintech
    • Stock Market
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us
    Copyright © 2024 Fintechfetch.comAll Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.