And we have the next Fake Ann Topic with an Fake Github Account Malware download Link , this time its for Vault Protocol !The Github Account was just created 12 Hours ago.
Fake Github :
github.com/VaultProtocolsIf you download that Wallet File you getting this:
CAPE Sandbox flags this file as: STEALER RAT
Suspicious Script Execution From Temp Folder
Powershell Defender Exclusion
Windows Defender Exclusions Added - PowerShell
Recon Command Output Piped To Findstr.EXE
Non Interactive PowerShell Process Spawned
Load Of RstrtMgr.DLL By An Uncommon Process
ET MALWARE Observed Malicious SSL Cert (Quasar CnC)
ET MALWARE Generic AsyncRAT/zgRAT Style SSL Cert
Source :
https://www.virustotal.com/gui/file/9148a6749464f74633af6c5cf6e4d88bd5ab0aba64eca9420a15b3e8a546a183/behaviorAccount :
VaultProtocol <--- Please ban or Lock that Account and delete the ThreadAccount joind the Forum yesterday.
Fake Ann Thread : [ANN] Vault Protocol - encrypted storage for personal data (kawpow algo)Vault Protocol
Wallets: https://github.com/VaultProtocols/VaultMain/releases/tag/v1.0.0
Source: https://github.com/VaultProtocols/VaultMain (in process)
This post is also a reference for the Github Report !