New Bitcoin malware steals Bitcoin wallets: Infostealer.Coinbit

New Bitcoin malware steals Bitcoin wallets: Infostealer.Coinbit

Summary: New malware seeks to exploit one of the few flaws of Bitcoin: Unencrypted Bitcoin wallets.

SHARE:
TOPICS: Malware, Security
5
Well, it was only a matter of time before something like this came along. Following the latest crazy about Bitcoin, new malware has been created to steal a Bitcoin user's wallet. To quote Symantec's Infostealer.Coinbit technical specifications page:
When the threat is executed, it searches for a Bitcoin wallet in the following location: %UserProfile%\AppData\Roaming\Bitcoin\wallet.dat It then attempts to email the wallet to the attacker using the following SMTP server: smtp.wp.pl
This malware exploits perhaps the only facet of Bitcoin that its users have expressed concern over: unencrypted Bitcoin wallets. And since everything is anonymously transferred over the Bitcoin network, if someone were to successfully steal a Bitcoin wallet, there would be no way to tell that they bitcoins they use are stolen vs. mined or obtained through trade. Already, one Bitcoin user has allegedly had hundreds of thousands of dollars worth of bitcoins stolen from them by a hacker. In addition to that and this malware, another potential concern will be those who store their Bitcoin wallets on wide-open indexes on their Web site while having no idea that Google and other search engines can see and index it. This data could then be mined by any searcher using queries like the following: intitle:index.of wallet filetype:dat intitle:index.of "wallet.dat" For a high-level overview of Bitcoin, watch the following promotional video:

 

To read up on Bitcoin further, have a look at our exhaustive Bitcoin resource right here on ZDNet. Source: Techdirt -Stephen Chapman SEO Whistleblower Related Articles:

Topics: Malware, Security

Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.

Talkback

5 comments
Log in or register to join the discussion
  • RE: New Bitcoin malware steals Bitcoin wallets: Infostealer.Coinbit

    Well, that was fast.
    nickswift498
  • Nothing physical and no record?

    Now the big question. When the stolen bitwallet was raided and given its new key, and the equal credit applied to some other wallet also given a new key, was the transaction recorded anywhere?<br><br>If so, somebody can follow the money from wallet to wallet. They might not be able to find the thief, but they can find his wallet and get the money back!<br><br>If not, how do we trust bitcoin or hackers on their servers not to slip unmatching credits into their friends' wallets as they make transactions amongst one another?
    PassingWind
  • It was an ...

    ... inside job.
    Return_of_the_jedi
  • LMAO

    That's another criticism about bitcoin. Ohwell, just like a sac of gold, you can't trace bitcoins :)
    MrElectrifyer
  • RE: New Bitcoin malware steals Bitcoin wallets: Infostealer.Coinbit

    I concede, I have not seen this page for a long time, however, it was another joy to see such an best topic and neglect it. Many thanks for assisting making people realize that important notions. <a href="http://bestmaleenhancementpillsreviews.net">Best Male Enhancement Pills</a>
    jamalgordon410